Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

"MSN Featured" Spam - Cannot get rid of at ALL!!!

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

"MSN Featured" Spam - Cannot get rid of at ALL!!!

Unread postby refco48 » January 1st, 2009, 8:48 pm

I cannot get rid of MSN Featured spam emails sent to me by my own email address - mostly from a Canadian Pharmacy outlet. I have attached the required log as show below:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:10:25 PM, on 1/1/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe
C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe
C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\eAcceleration\Station\station.exe
C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe
C:\Windows\sttray.exe
C:\Program Files\eAcceleration\OnAccess\onaccess.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\eFax Messenger 4.3\J2GTray.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe
C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.EXE
C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe
C:\Program Files\ScanSoft\PDF Professional 4.0\PdfPro4Hook.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\IEUser.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://att.my.yahoo.com/p/3.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer provided by Dell
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=C:\Windows\system32\Userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [Corel Photo Downloader] C:\Program Files\Corel\Corel Snapfire Plus\PhotoDownloader.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [PDVDDXSrv] "C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [eFax 4.3] "C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe" /R
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files\ScanSoft\PaperPort\Ereg\ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\ereg.ini"
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKLM\..\Run: [LVCOMSX] "C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe"
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [ECenter] c:\dell\E-Center\EULALauncher.exe
O4 - HKLM\..\Run: [PDF4 Registry Controller] "C:\Program Files\ScanSoft\PDF Professional 4.0\RegistryController.exe"
O4 - HKLM\..\Run: [ScanSoft PDF Professional 4-reminder] "C:\Program Files\ScanSoft\PDF Professional 4.0\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PDF Professional\4\Ereg\Ereg.ini
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [SoftwareStation] "C:\Program Files\eAcceleration\Station\station.exe" /b Startup
O4 - HKLM\..\Run: [webscan] "C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe" -k
O4 - HKLM\..\Run: [Carbonite Backup] C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Performance Center] C:\Program Files\Ascentive\Performance Center\APCMain.exe -m
O4 - HKLM\..\Run: [PC SpeedScan Pro] C:\Program Files\Ascentive\PC SpeedScan Pro\PCSpeedScan.exe -m
O4 - HKLM\..\Run: [PC ScanAndSweep] C:\Program Files\Ascentive\PC ScanAndSweep\PCScanAndSweep.exe -m
O4 - HKLM\..\Run: [SigmatelSysTrayApp] sttray.exe
O4 - HKLM\..\Run: [GoToMyPC] "C:\Program Files\Citrix\GoToMyPC\g2svc.exe" -logon
O4 - HKLM\..\Run: [OnAccess] "C:\Program Files\eAcceleration\OnAccess\onaccess.exe" -erk
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Startup: PaperMaster Live Menu 7.0.lnk = C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe
O4 - Global Startup: Desktop Manager.lnk = C:\Program Files\Research In Motion\BlackBerry\DesktopMgr.exe
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O4 - Global Startup: eFax 4.3.lnk = C:\Program Files\eFax Messenger 4.3\J2GTray.exe
O4 - Global Startup: Logitech SetPoint.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Open with ScanSoft PDF Converter 4.1 - res://C:\Program Files\ScanSoft\PDF Professional 4.0\cnvres_eng.dll /100
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {94B82441-A413-4E43-8422-D49930E69764} (TLIEFlashObj Class) - https://chat1.j2.com/Media/VisitorchatEnu/TLIEFlash.CAB
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {F5131C24-E56D-11CF-B78A-444553540000} (Ikonic Menu Control) - https://wc.wachovia.com/common/cab/ikcntrls.cab
O18 - Protocol: bw+0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O23 - Service: CarboniteService - Carbonite, Inc. (http://www.carbonite.com) - C:\Program Files\Carbonite\Carbonite Backup\carboniteservice.exe
O23 - Service: eAcceleration Notification Service (eac_notifysvc) - eAcceleration Corp - C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_svc.exe
O23 - Service: eAcceleration Product Manager Service (eac_productsvc) - eAcceleration Corp - C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_productsvc.exe
O23 - Service: FWService - eAcceleration Corp - C:\Program Files\eAcceleration\Firewall\FWService.exe
O23 - Service: GoToMyPC - Citrix Online, a division of Citrix Systems, Inc. - C:\Program Files\Citrix\GoToMyPC\g2svc.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Roxio UPnP Renderer 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe
O23 - Service: Roxio Upnp Server 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe
O23 - Service: LiveShare P2P Server 9 (RoxLiveShare9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: StopSign Update Manager - eAcceleration - C:\Program Files\Common Files\eAcceleration\eacsvc.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 22503 bytes
refco48
Regular Member
 
Posts: 16
Joined: January 1st, 2009, 8:20 pm
Advertisement
Register to Remove

Re: "MSN Featured" Spam - Cannot get rid of at ALL!!!

Unread postby Sharagoz » January 2nd, 2009, 3:01 am

Hello refco48, welcome to MWR.
Please take note of the following before we begin the cleaning process:
  • The whole process will often take several days to complete, so please stay patient
  • Hang in there until I give you the 'All clean'. If you leave prematurely because your computer seems to be back to its old self, the risk of re-infection will be very high
  • Perform all actions in the order given
  • The instructions I give expect that you're using an account with administrator privileges and that the language of your operating system is English.
  • Dont be afraid to ask questions if something is unclear or you run into issues during cleaning steps
  • I recommend you read through each set of instructions before you actually perform them

Download and run RSIT
  • Please download Random's System Information Tool by random/random from here and save it to your desktop
  • Right-click on RSIT.exe and chose Run as administrator to run RSIT
  • Click Continue at the disclaimer screen to start the scanner
  • Once it has finished, two logs will open:
    • log.txt will be opened maximized
    • info.txt will be opened minimized
  • Post the contents of both log.txt and info.txt in your next reply


Questions:
The spam you are receiving, are they emails or messages in MSN messenger?
Are you experiencing any other problems beside this?
User avatar
Sharagoz
Retired Graduate
 
Posts: 985
Joined: February 22nd, 2008, 4:31 pm
Location: Norway

Re: "MSN Featured" Spam - Cannot get rid of at ALL!!!

Unread postby refco48 » January 2nd, 2009, 11:13 am

The messages are in the form of advertisement pages. when i go to 'unsubscribe' all i get is more ads. Almost all are from the same Canadian Pharmacy - recently started getting some 'male enhancers ssent from my own email to me under the MSN Featured auspicies.

also so note, i have another email address xxxxxxxxxxx which is included in Outlook and the spam filter just does not work on it - at all. I continue to maek things as junk and for some reason it is not rememebring or helping identify - my Yahoo spam filter seems to work (my isp is yahoo through AT&T) but everything gets to and through Outlook - maybe different problem but it started about the same time as the MSN featured problem. I do not have the general spam problem on xxxxxxxxxxxx (but i do have the MSN featured problem there, but not on the xxxxxxxxxxx) - All extremely frustrating.Logfile of random's system information tool 1.05 (written by random/random)
Run by Robert at 2009-01-02 09:01:27
Microsoft® Windows Vista™ Business Service Pack 1
System drive C: has 90 GB (63%) free of 142 GB
Total RAM: 2037 MB (41% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:01:45 AM, on 1/2/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe
C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe
C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\eAcceleration\Station\station.exe
C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe
C:\Windows\sttray.exe
C:\Program Files\eAcceleration\OnAccess\onaccess.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\eFax Messenger 4.3\J2GTray.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe
C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.EXE
C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe
C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
C:\Windows\system32\SearchProtocolHost.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEUser.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Robert\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8T2ROJ9U\RSIT[1].exe
C:\Program Files\Trend Micro\HijackThis\Robert.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://att.my.yahoo.com/p/3.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer provided by Dell
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=C:\Windows\system32\Userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [Corel Photo Downloader] C:\Program Files\Corel\Corel Snapfire Plus\PhotoDownloader.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [PDVDDXSrv] "C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [eFax 4.3] "C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe" /R
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files\ScanSoft\PaperPort\Ereg\ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\ereg.ini"
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKLM\..\Run: [LVCOMSX] "C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe"
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [ECenter] c:\dell\E-Center\EULALauncher.exe
O4 - HKLM\..\Run: [PDF4 Registry Controller] "C:\Program Files\ScanSoft\PDF Professional 4.0\RegistryController.exe"
O4 - HKLM\..\Run: [ScanSoft PDF Professional 4-reminder] "C:\Program Files\ScanSoft\PDF Professional 4.0\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PDF Professional\4\Ereg\Ereg.ini
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [SoftwareStation] "C:\Program Files\eAcceleration\Station\station.exe" /b Startup
O4 - HKLM\..\Run: [webscan] "C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe" -k
O4 - HKLM\..\Run: [Carbonite Backup] C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Performance Center] C:\Program Files\Ascentive\Performance Center\APCMain.exe -m
O4 - HKLM\..\Run: [PC SpeedScan Pro] C:\Program Files\Ascentive\PC SpeedScan Pro\PCSpeedScan.exe -m
O4 - HKLM\..\Run: [PC ScanAndSweep] C:\Program Files\Ascentive\PC ScanAndSweep\PCScanAndSweep.exe -m
O4 - HKLM\..\Run: [SigmatelSysTrayApp] sttray.exe
O4 - HKLM\..\Run: [GoToMyPC] "C:\Program Files\Citrix\GoToMyPC\g2svc.exe" -logon
O4 - HKLM\..\Run: [OnAccess] "C:\Program Files\eAcceleration\OnAccess\onaccess.exe" -erk
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Startup: PaperMaster Live Menu 7.0.lnk = C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe
O4 - Global Startup: Desktop Manager.lnk = C:\Program Files\Research In Motion\BlackBerry\DesktopMgr.exe
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O4 - Global Startup: eFax 4.3.lnk = C:\Program Files\eFax Messenger 4.3\J2GTray.exe
O4 - Global Startup: Logitech SetPoint.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Open with ScanSoft PDF Converter 4.1 - res://C:\Program Files\ScanSoft\PDF Professional 4.0\cnvres_eng.dll /100
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {94B82441-A413-4E43-8422-D49930E69764} (TLIEFlashObj Class) - https://chat1.j2.com/Media/VisitorchatEnu/TLIEFlash.CAB
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F5131C24-E56D-11CF-B78A-444553540000} (Ikonic Menu Control) - https://wc.wachovia.com/common/cab/ikcntrls.cab
O18 - Protocol: bw+0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O23 - Service: CarboniteService - Carbonite, Inc. (http://www.carbonite.com) - C:\Program Files\Carbonite\Carbonite Backup\carboniteservice.exe
O23 - Service: eAcceleration Notification Service (eac_notifysvc) - eAcceleration Corp - C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_svc.exe
O23 - Service: eAcceleration Product Manager Service (eac_productsvc) - eAcceleration Corp - C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_productsvc.exe
O23 - Service: FWService - eAcceleration Corp - C:\Program Files\eAcceleration\Firewall\FWService.exe
O23 - Service: GoToMyPC - Citrix Online, a division of Citrix Systems, Inc. - C:\Program Files\Citrix\GoToMyPC\g2svc.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Roxio UPnP Renderer 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe
O23 - Service: Roxio Upnp Server 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe
O23 - Service: LiveShare P2P Server 9 (RoxLiveShare9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: StopSign Update Manager - eAcceleration - C:\Program Files\Common Files\eAcceleration\eacsvc.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 22684 bytes

======Scheduled tasks folder======

C:\Windows\tasks\User_Feed_Synchronization-{CB66F83E-71A1-4728-8C2D-0272E93ADB3A}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2008-03-17 370296]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - c:\Program Files\Java\jre1.6.0\bin\ssv.dll [2007-05-02 501384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA6319C0-31B7-401E-A518-A07C3DB8F777}]
CBrowserHelperObject Object - C:\Program Files\BAE\BAE.dll [2006-11-17 98304]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2007-02-09 98304]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2007-02-09 106496]
"Persistence"=C:\Windows\system32\igfxpers.exe [2007-02-09 81920]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2006-09-29 151552]
"Corel Photo Downloader"=C:\Program Files\Corel\Corel Snapfire Plus\PhotoDownloader.exe []
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2006-09-11 86960]
"PDVDDXSrv"=C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe [2006-10-20 118784]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2007-08-30 205480]
"eFax 4.3"=C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe [2007-03-06 116224]
"SSBkgdUpdate"=C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"PPort11reminder"=C:\Program Files\ScanSoft\PaperPort\Ereg\ereg.exe [2006-03-09 1404928]
"PaperPort PTD"=C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe [2006-05-05 36864]
"MskAgentexe"=C:\Program Files\McAfee\MSK\MskAgent.exe []
"LVCOMSX"=C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe [2006-05-17 243248]
"LogitechCommunicationsManager"=C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe [2006-05-17 480816]
"Logitech Hardware Abstraction Layer"=C:\Windows\KHALMNPR.EXE [2006-05-10 94208]
"IndexSearch"=C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe [2006-05-05 40960]
"ECenter"=c:\dell\E-Center\EULALauncher.exe [2006-11-17 17920]
"PDF4 Registry Controller"=C:\Program Files\ScanSoft\PDF Professional 4.0\RegistryController.exe [2007-01-16 46632]
"ScanSoft PDF Professional 4-reminder"=C:\Program Files\ScanSoft\PDF Professional 4.0\Ereg\Ereg.exe [2006-11-16 35368]
"TkBellExe"=C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2008-03-17 185896]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2008-03-28 413696]
""= []
"RoxWatchTray"=C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe [2007-04-23 228088]
"SoftwareStation"=C:\Program Files\eAcceleration\Station\station.exe [2008-04-15 173392]
"webscan"=C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe [2008-05-14 763232]
"Carbonite Backup"=C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe [2008-06-13 600000]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
"Performance Center"=C:\Program Files\Ascentive\Performance Center\APCMain.exe -m []
"PC SpeedScan Pro"=C:\Program Files\Ascentive\PC SpeedScan Pro\PCSpeedScan.exe -m []
"PC ScanAndSweep"=C:\Program Files\Ascentive\PC ScanAndSweep\PCScanAndSweep.exe -m []
"SigmatelSysTrayApp"=C:\Windows\sttray.exe [2007-02-07 303104]
"GoToMyPC"=C:\Program Files\Citrix\GoToMyPC\g2svc.exe [2008-09-30 258856]
"OnAccess"=C:\Program Files\eAcceleration\OnAccess\onaccess.exe [2008-06-09 238944]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LDM"=C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe [2007-05-10 32768]
"ISUSPM"=C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [2007-08-30 205480]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Desktop Manager.lnk - C:\Program Files\Research In Motion\BlackBerry\DesktopMgr.exe
Digital Line Detect.lnk - C:\Program Files\Digital Line Detect\DLG.exe
eFax 4.3.lnk - C:\Program Files\eFax Messenger 4.3\J2GTray.exe
Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\SetPoint.exe
WinZip Quick Pick.lnk - C:\Program Files\WinZip\WZQKPICK.EXE

C:\Users\Robert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
PaperMaster Live Menu 7.0.lnk - C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2007-02-09 212992]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{42DD0873-5FA9-465D-90DE-0826020416A5}"=C:\Program Files\eAcceleration\OnAccess\onaccess_hk32.dll [2008-06-09 165216]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"EnableShellExecuteHooks"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"EnableShellExecuteHooks"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e5456dfb-e539-11dc-a27e-0019d1469d16}]
shell\AutoRun\command - G:\LaunchU3.exe


======List of files/folders created in the last 1 months======

2009-01-02 09:01:27 ----D---- C:\rsit
2009-01-01 18:09:14 ----D---- C:\Program Files\Trend Micro
2008-12-19 08:53:28 ----A---- C:\Windows\system32\mshtml.dll
2008-12-11 03:03:47 ----SHD---- C:\Config.Msi
2008-12-11 03:02:22 ----A---- C:\Windows\system32\tzres.dll
2008-12-10 22:41:19 ----A---- C:\Windows\system32\gdi32.dll
2008-12-10 22:41:13 ----A---- C:\Windows\system32\Apphlpdm.dll
2008-12-10 22:41:12 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2008-12-10 22:41:02 ----A---- C:\Windows\system32\shell32.dll
2008-12-10 22:40:48 ----A---- C:\Windows\explorer.exe
2008-12-10 22:40:41 ----A---- C:\Windows\system32\urlmon.dll
2008-12-10 22:40:41 ----A---- C:\Windows\system32\ieframe.dll
2008-12-10 22:40:40 ----A---- C:\Windows\system32\wininet.dll
2008-12-10 22:40:40 ----A---- C:\Windows\system32\mstime.dll
2008-12-10 22:40:39 ----A---- C:\Windows\system32\jsproxy.dll
2008-12-10 22:40:39 ----A---- C:\Windows\system32\iertutil.dll
2008-12-10 22:40:34 ----A---- C:\Windows\system32\mf.dll
2008-12-10 22:40:33 ----A---- C:\Windows\system32\WMVCORE.DLL
2008-12-10 22:40:32 ----A---- C:\Windows\system32\WMNetMgr.dll
2008-12-10 22:40:32 ----A---- C:\Windows\system32\logagent.exe

======List of files/folders modified in the last 1 months======

2009-01-02 09:01:37 ----D---- C:\Windows\Prefetch
2009-01-02 09:01:35 ----D---- C:\Windows\Temp
2009-01-02 08:59:32 ----D---- C:\Windows\System32
2009-01-02 08:59:32 ----D---- C:\Windows\inf
2009-01-02 08:59:32 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-01-02 08:53:22 ----D---- C:\MDT
2009-01-02 08:53:02 ----SHD---- C:\System Volume Information
2009-01-01 18:09:14 ----RD---- C:\Program Files
2008-12-30 18:21:40 ----D---- C:\Users\Robert\AppData\Roaming\Corel
2008-12-19 08:53:48 ----D---- C:\Windows\winsxs
2008-12-19 08:53:39 ----D---- C:\Windows\system32\catroot2
2008-12-19 08:53:39 ----D---- C:\Windows\system32\catroot
2008-12-17 22:55:31 ----SD---- C:\Windows\Downloaded Program Files
2008-12-11 03:30:53 ----D---- C:\Windows\rescache
2008-12-11 03:10:27 ----D---- C:\Windows\AppPatch
2008-12-11 03:10:27 ----D---- C:\Program Files\Windows Mail
2008-12-11 03:10:26 ----D---- C:\Windows\system32\en-US
2008-12-11 03:10:26 ----D---- C:\Windows
2008-12-11 03:05:01 ----SHD---- C:\Windows\Installer
2008-12-11 03:04:57 ----D---- C:\ProgramData\Microsoft Help
2008-12-09 17:24:37 ----A---- C:\Windows\system32\mrt.exe
2008-12-03 18:06:24 ----SD---- C:\Users\Robert\AppData\Roaming\Microsoft
2008-12-03 17:58:51 ----D---- C:\Windows\Minidump

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 CSC;Offline Files Driver; C:\Windows\system32\drivers\csc.sys [2008-01-18 350720]
R1 DLACDBHM;DLACDBHM; C:\Windows\System32\Drivers\DLACDBHM.SYS [2007-02-08 12856]
R1 DLARTL_M;DLARTL_M; C:\Windows\System32\Drivers\DLARTL_M.SYS [2007-02-08 28120]
R1 FWCore;FWCore; C:\Windows\system32\drivers\fwcore.sys [2008-04-23 58456]
R2 DLABMFSM;DLABMFSM; C:\Windows\System32\DLA\DLABMFSM.SYS [2006-10-26 35096]
R2 DLABOIOM;DLABOIOM; C:\Windows\System32\DLA\DLABOIOM.SYS [2006-10-26 32472]
R2 DLADResM;DLADResM; C:\Windows\System32\DLA\DLADResM.SYS [2006-10-26 9400]
R2 DLAIFS_M;DLAIFS_M; C:\Windows\System32\DLA\DLAIFS_M.SYS [2006-10-26 104536]
R2 DLAOPIOM;DLAOPIOM; C:\Windows\System32\DLA\DLAOPIOM.SYS [2006-10-26 26296]
R2 DLAPoolM;DLAPoolM; C:\Windows\System32\DLA\DLAPoolM.SYS [2006-10-26 14520]
R2 DLAUDF_M;DLAUDF_M; C:\Windows\System32\DLA\DLAUDF_M.SYS [2006-10-26 97848]
R2 DLAUDFAM;DLAUDFAM; C:\Windows\System32\DLA\DLAUDFAM.SYS [2006-10-26 94648]
R2 DRVNDDM;DRVNDDM; C:\Windows\System32\Drivers\DRVNDDM.SYS [2007-02-09 51768]
R2 LBeepKE;LBeepKE; C:\Windows\System32\Drivers\LBeepKE.sys [2006-05-24 3712]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2006-08-04 8192]
R3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\Windows\system32\DRIVERS\e1e6032.sys [2008-01-18 220672]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2006-10-18 986624]
R3 HSXHWBS2;HSXHWBS2; C:\Windows\system32\DRIVERS\HSXHWBS2.sys [2006-10-18 258048]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2007-02-09 1476608]
R3 LHidKe;Logitech SetPoint HID Mouse Filter Driver; C:\Windows\system32\DRIVERS\LHidKE.Sys [2006-05-10 27264]
R3 LMouKE;Logitech SetPoint Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouKE.Sys [2006-05-10 71680]
R3 RimVSerPort;RIM Virtual Serial Port v2; C:\Windows\system32\DRIVERS\RimSerial.sys [2007-01-18 26496]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2008-01-18 8192]
R3 STHDA;SigmaTel High Definition Audio CODEC; C:\Windows\system32\drivers\stwrt.sys [2007-02-07 647680]
R3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2006-10-18 659968]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-18 5632]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-18 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-18 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-18 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-18 6016]
S3 R300;R300; C:\Windows\system32\DRIVERS\atikmdag.sys [2006-11-02 2028032]
S3 RimUsb;BlackBerry Device; C:\Windows\System32\Drivers\RimUsb.sys [2006-11-07 22272]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2006-11-02 14848]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys []
S3 winusb;WinUSB Service; C:\Windows\system32\DRIVERS\WinUSB.SYS [2008-01-18 31616]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-19 39936]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-18 83328]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 BcmSqlStartupSvc;Business Contact Manager SQL Server Startup Service; C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe [2008-01-11 30312]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 CarboniteService;CarboniteService; C:\Program Files\Carbonite\Carbonite Backup\carboniteservice.exe [2008-06-13 1700288]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 eac_notifysvc;eAcceleration Notification Service; C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_svc.exe [2008-09-03 111952]
R2 eac_productsvc;eAcceleration Product Manager Service; C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_productsvc.exe [2008-10-22 263504]
R2 FWService;FWService; C:\Program Files\eAcceleration\Firewall\FWService.exe [2008-04-23 337232]
R2 GoToMyPC;GoToMyPC; C:\Program Files\Citrix\GoToMyPC\g2svc.exe [2008-09-30 258856]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2006-09-29 81920]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 SQLBrowser;SQL Server Browser; c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2007-02-10 242544]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2007-02-10 89968]
R2 StopSign Update Manager;StopSign Update Manager; C:\Program Files\Common Files\eAcceleration\eacsvc.exe [2008-04-15 103760]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2006-08-04 386560]
R3 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2008-02-26 29183504]
S2 Roxio Upnp Server 9;Roxio Upnp Server 9; C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe [2007-04-22 359160]
S2 RoxLiveShare9;LiveShare P2P Server 9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe [2007-04-23 310008]
S2 RoxWatch9;Roxio Hard Drive Watcher 9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe [2007-04-23 166648]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\Windows\system32\fxssvc.exe [2008-01-19 523776]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Roxio UPnP Renderer 9;Roxio UPnP Renderer 9; C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe [2007-04-22 88824]
S3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2007-04-23 1010424]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2006-09-14 73728]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2008-01-19 21504]
S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\Windows\system32\wbengine.exe [2008-01-19 917504]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2005-10-14 45272]

-----------------EOF-----------------
Logfile of random's system information tool 1.05 (written by random/random)
Run by Robert at 2009-01-02 09:01:27
Microsoft® Windows Vista™ Business Service Pack 1
System drive C: has 90 GB (63%) free of 142 GB
Total RAM: 2037 MB (41% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:01:45 AM, on 1/2/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe
C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe
C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\eAcceleration\Station\station.exe
C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe
C:\Windows\sttray.exe
C:\Program Files\eAcceleration\OnAccess\onaccess.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\eFax Messenger 4.3\J2GTray.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe
C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.EXE
C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe
C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
C:\Windows\system32\SearchProtocolHost.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEUser.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Robert\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8T2ROJ9U\RSIT[1].exe
C:\Program Files\Trend Micro\HijackThis\Robert.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://att.my.yahoo.com/p/3.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer provided by Dell
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=C:\Windows\system32\Userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [Corel Photo Downloader] C:\Program Files\Corel\Corel Snapfire Plus\PhotoDownloader.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [PDVDDXSrv] "C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [eFax 4.3] "C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe" /R
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files\ScanSoft\PaperPort\Ereg\ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\ereg.ini"
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKLM\..\Run: [LVCOMSX] "C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe"
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [ECenter] c:\dell\E-Center\EULALauncher.exe
O4 - HKLM\..\Run: [PDF4 Registry Controller] "C:\Program Files\ScanSoft\PDF Professional 4.0\RegistryController.exe"
O4 - HKLM\..\Run: [ScanSoft PDF Professional 4-reminder] "C:\Program Files\ScanSoft\PDF Professional 4.0\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PDF Professional\4\Ereg\Ereg.ini
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [SoftwareStation] "C:\Program Files\eAcceleration\Station\station.exe" /b Startup
O4 - HKLM\..\Run: [webscan] "C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe" -k
O4 - HKLM\..\Run: [Carbonite Backup] C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Performance Center] C:\Program Files\Ascentive\Performance Center\APCMain.exe -m
O4 - HKLM\..\Run: [PC SpeedScan Pro] C:\Program Files\Ascentive\PC SpeedScan Pro\PCSpeedScan.exe -m
O4 - HKLM\..\Run: [PC ScanAndSweep] C:\Program Files\Ascentive\PC ScanAndSweep\PCScanAndSweep.exe -m
O4 - HKLM\..\Run: [SigmatelSysTrayApp] sttray.exe
O4 - HKLM\..\Run: [GoToMyPC] "C:\Program Files\Citrix\GoToMyPC\g2svc.exe" -logon
O4 - HKLM\..\Run: [OnAccess] "C:\Program Files\eAcceleration\OnAccess\onaccess.exe" -erk
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Startup: PaperMaster Live Menu 7.0.lnk = C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe
O4 - Global Startup: Desktop Manager.lnk = C:\Program Files\Research In Motion\BlackBerry\DesktopMgr.exe
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O4 - Global Startup: eFax 4.3.lnk = C:\Program Files\eFax Messenger 4.3\J2GTray.exe
O4 - Global Startup: Logitech SetPoint.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Open with ScanSoft PDF Converter 4.1 - res://C:\Program Files\ScanSoft\PDF Professional 4.0\cnvres_eng.dll /100
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {94B82441-A413-4E43-8422-D49930E69764} (TLIEFlashObj Class) - https://chat1.j2.com/Media/VisitorchatEnu/TLIEFlash.CAB
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F5131C24-E56D-11CF-B78A-444553540000} (Ikonic Menu Control) - https://wc.wachovia.com/common/cab/ikcntrls.cab
O18 - Protocol: bw+0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O23 - Service: CarboniteService - Carbonite, Inc. (http://www.carbonite.com) - C:\Program Files\Carbonite\Carbonite Backup\carboniteservice.exe
O23 - Service: eAcceleration Notification Service (eac_notifysvc) - eAcceleration Corp - C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_svc.exe
O23 - Service: eAcceleration Product Manager Service (eac_productsvc) - eAcceleration Corp - C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_productsvc.exe
O23 - Service: FWService - eAcceleration Corp - C:\Program Files\eAcceleration\Firewall\FWService.exe
O23 - Service: GoToMyPC - Citrix Online, a division of Citrix Systems, Inc. - C:\Program Files\Citrix\GoToMyPC\g2svc.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Roxio UPnP Renderer 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe
O23 - Service: Roxio Upnp Server 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe
O23 - Service: LiveShare P2P Server 9 (RoxLiveShare9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: StopSign Update Manager - eAcceleration - C:\Program Files\Common Files\eAcceleration\eacsvc.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 22684 bytes

======Scheduled tasks folder======

C:\Windows\tasks\User_Feed_Synchronization-{CB66F83E-71A1-4728-8C2D-0272E93ADB3A}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2008-03-17 370296]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - c:\Program Files\Java\jre1.6.0\bin\ssv.dll [2007-05-02 501384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA6319C0-31B7-401E-A518-A07C3DB8F777}]
CBrowserHelperObject Object - C:\Program Files\BAE\BAE.dll [2006-11-17 98304]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2007-02-09 98304]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2007-02-09 106496]
"Persistence"=C:\Windows\system32\igfxpers.exe [2007-02-09 81920]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2006-09-29 151552]
"Corel Photo Downloader"=C:\Program Files\Corel\Corel Snapfire Plus\PhotoDownloader.exe []
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2006-09-11 86960]
"PDVDDXSrv"=C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe [2006-10-20 118784]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2007-08-30 205480]
"eFax 4.3"=C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe [2007-03-06 116224]
"SSBkgdUpdate"=C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"PPort11reminder"=C:\Program Files\ScanSoft\PaperPort\Ereg\ereg.exe [2006-03-09 1404928]
"PaperPort PTD"=C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe [2006-05-05 36864]
"MskAgentexe"=C:\Program Files\McAfee\MSK\MskAgent.exe []
"LVCOMSX"=C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe [2006-05-17 243248]
"LogitechCommunicationsManager"=C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe [2006-05-17 480816]
"Logitech Hardware Abstraction Layer"=C:\Windows\KHALMNPR.EXE [2006-05-10 94208]
"IndexSearch"=C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe [2006-05-05 40960]
"ECenter"=c:\dell\E-Center\EULALauncher.exe [2006-11-17 17920]
"PDF4 Registry Controller"=C:\Program Files\ScanSoft\PDF Professional 4.0\RegistryController.exe [2007-01-16 46632]
"ScanSoft PDF Professional 4-reminder"=C:\Program Files\ScanSoft\PDF Professional 4.0\Ereg\Ereg.exe [2006-11-16 35368]
"TkBellExe"=C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2008-03-17 185896]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2008-03-28 413696]
""= []
"RoxWatchTray"=C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe [2007-04-23 228088]
"SoftwareStation"=C:\Program Files\eAcceleration\Station\station.exe [2008-04-15 173392]
"webscan"=C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe [2008-05-14 763232]
"Carbonite Backup"=C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe [2008-06-13 600000]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
"Performance Center"=C:\Program Files\Ascentive\Performance Center\APCMain.exe -m []
"PC SpeedScan Pro"=C:\Program Files\Ascentive\PC SpeedScan Pro\PCSpeedScan.exe -m []
"PC ScanAndSweep"=C:\Program Files\Ascentive\PC ScanAndSweep\PCScanAndSweep.exe -m []
"SigmatelSysTrayApp"=C:\Windows\sttray.exe [2007-02-07 303104]
"GoToMyPC"=C:\Program Files\Citrix\GoToMyPC\g2svc.exe [2008-09-30 258856]
"OnAccess"=C:\Program Files\eAcceleration\OnAccess\onaccess.exe [2008-06-09 238944]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LDM"=C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe [2007-05-10 32768]
"ISUSPM"=C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [2007-08-30 205480]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Desktop Manager.lnk - C:\Program Files\Research In Motion\BlackBerry\DesktopMgr.exe
Digital Line Detect.lnk - C:\Program Files\Digital Line Detect\DLG.exe
eFax 4.3.lnk - C:\Program Files\eFax Messenger 4.3\J2GTray.exe
Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\SetPoint.exe
WinZip Quick Pick.lnk - C:\Program Files\WinZip\WZQKPICK.EXE

C:\Users\Robert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
PaperMaster Live Menu 7.0.lnk - C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2007-02-09 212992]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{42DD0873-5FA9-465D-90DE-0826020416A5}"=C:\Program Files\eAcceleration\OnAccess\onaccess_hk32.dll [2008-06-09 165216]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"EnableShellExecuteHooks"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"EnableShellExecuteHooks"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e5456dfb-e539-11dc-a27e-0019d1469d16}]
shell\AutoRun\command - G:\LaunchU3.exe


======List of files/folders created in the last 1 months======

2009-01-02 09:01:27 ----D---- C:\rsit
2009-01-01 18:09:14 ----D---- C:\Program Files\Trend Micro
2008-12-19 08:53:28 ----A---- C:\Windows\system32\mshtml.dll
2008-12-11 03:03:47 ----SHD---- C:\Config.Msi
2008-12-11 03:02:22 ----A---- C:\Windows\system32\tzres.dll
2008-12-10 22:41:19 ----A---- C:\Windows\system32\gdi32.dll
2008-12-10 22:41:13 ----A---- C:\Windows\system32\Apphlpdm.dll
2008-12-10 22:41:12 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2008-12-10 22:41:02 ----A---- C:\Windows\system32\shell32.dll
2008-12-10 22:40:48 ----A---- C:\Windows\explorer.exe
2008-12-10 22:40:41 ----A---- C:\Windows\system32\urlmon.dll
2008-12-10 22:40:41 ----A---- C:\Windows\system32\ieframe.dll
2008-12-10 22:40:40 ----A---- C:\Windows\system32\wininet.dll
2008-12-10 22:40:40 ----A---- C:\Windows\system32\mstime.dll
2008-12-10 22:40:39 ----A---- C:\Windows\system32\jsproxy.dll
2008-12-10 22:40:39 ----A---- C:\Windows\system32\iertutil.dll
2008-12-10 22:40:34 ----A---- C:\Windows\system32\mf.dll
2008-12-10 22:40:33 ----A---- C:\Windows\system32\WMVCORE.DLL
2008-12-10 22:40:32 ----A---- C:\Windows\system32\WMNetMgr.dll
2008-12-10 22:40:32 ----A---- C:\Windows\system32\logagent.exe

======List of files/folders modified in the last 1 months======

2009-01-02 09:01:37 ----D---- C:\Windows\Prefetch
2009-01-02 09:01:35 ----D---- C:\Windows\Temp
2009-01-02 08:59:32 ----D---- C:\Windows\System32
2009-01-02 08:59:32 ----D---- C:\Windows\inf
2009-01-02 08:59:32 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-01-02 08:53:22 ----D---- C:\MDT
2009-01-02 08:53:02 ----SHD---- C:\System Volume Information
2009-01-01 18:09:14 ----RD---- C:\Program Files
2008-12-30 18:21:40 ----D---- C:\Users\Robert\AppData\Roaming\Corel
2008-12-19 08:53:48 ----D---- C:\Windows\winsxs
2008-12-19 08:53:39 ----D---- C:\Windows\system32\catroot2
2008-12-19 08:53:39 ----D---- C:\Windows\system32\catroot
2008-12-17 22:55:31 ----SD---- C:\Windows\Downloaded Program Files
2008-12-11 03:30:53 ----D---- C:\Windows\rescache
2008-12-11 03:10:27 ----D---- C:\Windows\AppPatch
2008-12-11 03:10:27 ----D---- C:\Program Files\Windows Mail
2008-12-11 03:10:26 ----D---- C:\Windows\system32\en-US
2008-12-11 03:10:26 ----D---- C:\Windows
2008-12-11 03:05:01 ----SHD---- C:\Windows\Installer
2008-12-11 03:04:57 ----D---- C:\ProgramData\Microsoft Help
2008-12-09 17:24:37 ----A---- C:\Windows\system32\mrt.exe
2008-12-03 18:06:24 ----SD---- C:\Users\Robert\AppData\Roaming\Microsoft
2008-12-03 17:58:51 ----D---- C:\Windows\Minidump

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 CSC;Offline Files Driver; C:\Windows\system32\drivers\csc.sys [2008-01-18 350720]
R1 DLACDBHM;DLACDBHM; C:\Windows\System32\Drivers\DLACDBHM.SYS [2007-02-08 12856]
R1 DLARTL_M;DLARTL_M; C:\Windows\System32\Drivers\DLARTL_M.SYS [2007-02-08 28120]
R1 FWCore;FWCore; C:\Windows\system32\drivers\fwcore.sys [2008-04-23 58456]
R2 DLABMFSM;DLABMFSM; C:\Windows\System32\DLA\DLABMFSM.SYS [2006-10-26 35096]
R2 DLABOIOM;DLABOIOM; C:\Windows\System32\DLA\DLABOIOM.SYS [2006-10-26 32472]
R2 DLADResM;DLADResM; C:\Windows\System32\DLA\DLADResM.SYS [2006-10-26 9400]
R2 DLAIFS_M;DLAIFS_M; C:\Windows\System32\DLA\DLAIFS_M.SYS [2006-10-26 104536]
R2 DLAOPIOM;DLAOPIOM; C:\Windows\System32\DLA\DLAOPIOM.SYS [2006-10-26 26296]
R2 DLAPoolM;DLAPoolM; C:\Windows\System32\DLA\DLAPoolM.SYS [2006-10-26 14520]
R2 DLAUDF_M;DLAUDF_M; C:\Windows\System32\DLA\DLAUDF_M.SYS [2006-10-26 97848]
R2 DLAUDFAM;DLAUDFAM; C:\Windows\System32\DLA\DLAUDFAM.SYS [2006-10-26 94648]
R2 DRVNDDM;DRVNDDM; C:\Windows\System32\Drivers\DRVNDDM.SYS [2007-02-09 51768]
R2 LBeepKE;LBeepKE; C:\Windows\System32\Drivers\LBeepKE.sys [2006-05-24 3712]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2006-08-04 8192]
R3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\Windows\system32\DRIVERS\e1e6032.sys [2008-01-18 220672]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2006-10-18 986624]
R3 HSXHWBS2;HSXHWBS2; C:\Windows\system32\DRIVERS\HSXHWBS2.sys [2006-10-18 258048]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2007-02-09 1476608]
R3 LHidKe;Logitech SetPoint HID Mouse Filter Driver; C:\Windows\system32\DRIVERS\LHidKE.Sys [2006-05-10 27264]
R3 LMouKE;Logitech SetPoint Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouKE.Sys [2006-05-10 71680]
R3 RimVSerPort;RIM Virtual Serial Port v2; C:\Windows\system32\DRIVERS\RimSerial.sys [2007-01-18 26496]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2008-01-18 8192]
R3 STHDA;SigmaTel High Definition Audio CODEC; C:\Windows\system32\drivers\stwrt.sys [2007-02-07 647680]
R3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2006-10-18 659968]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-18 5632]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-18 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-18 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-18 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-18 6016]
S3 R300;R300; C:\Windows\system32\DRIVERS\atikmdag.sys [2006-11-02 2028032]
S3 RimUsb;BlackBerry Device; C:\Windows\System32\Drivers\RimUsb.sys [2006-11-07 22272]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2006-11-02 14848]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys []
S3 winusb;WinUSB Service; C:\Windows\system32\DRIVERS\WinUSB.SYS [2008-01-18 31616]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-19 39936]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-18 83328]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 BcmSqlStartupSvc;Business Contact Manager SQL Server Startup Service; C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe [2008-01-11 30312]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 CarboniteService;CarboniteService; C:\Program Files\Carbonite\Carbonite Backup\carboniteservice.exe [2008-06-13 1700288]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 eac_notifysvc;eAcceleration Notification Service; C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_svc.exe [2008-09-03 111952]
R2 eac_productsvc;eAcceleration Product Manager Service; C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_productsvc.exe [2008-10-22 263504]
R2 FWService;FWService; C:\Program Files\eAcceleration\Firewall\FWService.exe [2008-04-23 337232]
R2 GoToMyPC;GoToMyPC; C:\Program Files\Citrix\GoToMyPC\g2svc.exe [2008-09-30 258856]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2006-09-29 81920]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 SQLBrowser;SQL Server Browser; c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2007-02-10 242544]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2007-02-10 89968]
R2 StopSign Update Manager;StopSign Update Manager; C:\Program Files\Common Files\eAcceleration\eacsvc.exe [2008-04-15 103760]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2006-08-04 386560]
R3 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2008-02-26 29183504]
S2 Roxio Upnp Server 9;Roxio Upnp Server 9; C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe [2007-04-22 359160]
S2 RoxLiveShare9;LiveShare P2P Server 9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe [2007-04-23 310008]
S2 RoxWatch9;Roxio Hard Drive Watcher 9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe [2007-04-23 166648]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\Windows\system32\fxssvc.exe [2008-01-19 523776]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Roxio UPnP Renderer 9;Roxio UPnP Renderer 9; C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe [2007-04-22 88824]
S3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2007-04-23 1010424]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2006-09-14 73728]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2008-01-19 21504]
S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\Windows\system32\wbengine.exe [2008-01-19 917504]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2005-10-14 45272]

-----------------EOF-----------------
Logfile of random's system information tool 1.05 (written by random/random)
Run by Robert at 2009-01-02 09:01:27
Microsoft® Windows Vista™ Business Service Pack 1
System drive C: has 90 GB (63%) free of 142 GB
Total RAM: 2037 MB (41% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 9:01:45 AM, on 1/2/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe
C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe
C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\eAcceleration\Station\station.exe
C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe
C:\Windows\sttray.exe
C:\Program Files\eAcceleration\OnAccess\onaccess.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\eFax Messenger 4.3\J2GTray.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe
C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.EXE
C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe
C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
C:\Windows\system32\SearchProtocolHost.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEUser.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Robert\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\8T2ROJ9U\RSIT[1].exe
C:\Program Files\Trend Micro\HijackThis\Robert.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://att.my.yahoo.com/p/3.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer provided by Dell
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=C:\Windows\system32\Userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [Corel Photo Downloader] C:\Program Files\Corel\Corel Snapfire Plus\PhotoDownloader.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [PDVDDXSrv] "C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [eFax 4.3] "C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe" /R
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files\ScanSoft\PaperPort\Ereg\ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\ereg.ini"
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKLM\..\Run: [LVCOMSX] "C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe"
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [ECenter] c:\dell\E-Center\EULALauncher.exe
O4 - HKLM\..\Run: [PDF4 Registry Controller] "C:\Program Files\ScanSoft\PDF Professional 4.0\RegistryController.exe"
O4 - HKLM\..\Run: [ScanSoft PDF Professional 4-reminder] "C:\Program Files\ScanSoft\PDF Professional 4.0\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PDF Professional\4\Ereg\Ereg.ini
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [SoftwareStation] "C:\Program Files\eAcceleration\Station\station.exe" /b Startup
O4 - HKLM\..\Run: [webscan] "C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe" -k
O4 - HKLM\..\Run: [Carbonite Backup] C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Performance Center] C:\Program Files\Ascentive\Performance Center\APCMain.exe -m
O4 - HKLM\..\Run: [PC SpeedScan Pro] C:\Program Files\Ascentive\PC SpeedScan Pro\PCSpeedScan.exe -m
O4 - HKLM\..\Run: [PC ScanAndSweep] C:\Program Files\Ascentive\PC ScanAndSweep\PCScanAndSweep.exe -m
O4 - HKLM\..\Run: [SigmatelSysTrayApp] sttray.exe
O4 - HKLM\..\Run: [GoToMyPC] "C:\Program Files\Citrix\GoToMyPC\g2svc.exe" -logon
O4 - HKLM\..\Run: [OnAccess] "C:\Program Files\eAcceleration\OnAccess\onaccess.exe" -erk
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Startup: PaperMaster Live Menu 7.0.lnk = C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe
O4 - Global Startup: Desktop Manager.lnk = C:\Program Files\Research In Motion\BlackBerry\DesktopMgr.exe
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O4 - Global Startup: eFax 4.3.lnk = C:\Program Files\eFax Messenger 4.3\J2GTray.exe
O4 - Global Startup: Logitech SetPoint.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Open with ScanSoft PDF Converter 4.1 - res://C:\Program Files\ScanSoft\PDF Professional 4.0\cnvres_eng.dll /100
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {94B82441-A413-4E43-8422-D49930E69764} (TLIEFlashObj Class) - https://chat1.j2.com/Media/VisitorchatEnu/TLIEFlash.CAB
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O16 - DPF: {F5131C24-E56D-11CF-B78A-444553540000} (Ikonic Menu Control) - https://wc.wachovia.com/common/cab/ikcntrls.cab
O18 - Protocol: bw+0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O23 - Service: CarboniteService - Carbonite, Inc. (http://www.carbonite.com) - C:\Program Files\Carbonite\Carbonite Backup\carboniteservice.exe
O23 - Service: eAcceleration Notification Service (eac_notifysvc) - eAcceleration Corp - C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_svc.exe
O23 - Service: eAcceleration Product Manager Service (eac_productsvc) - eAcceleration Corp - C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_productsvc.exe
O23 - Service: FWService - eAcceleration Corp - C:\Program Files\eAcceleration\Firewall\FWService.exe
O23 - Service: GoToMyPC - Citrix Online, a division of Citrix Systems, Inc. - C:\Program Files\Citrix\GoToMyPC\g2svc.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Roxio UPnP Renderer 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe
O23 - Service: Roxio Upnp Server 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe
O23 - Service: LiveShare P2P Server 9 (RoxLiveShare9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: StopSign Update Manager - eAcceleration - C:\Program Files\Common Files\eAcceleration\eacsvc.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 22684 bytes

======Scheduled tasks folder======

C:\Windows\tasks\User_Feed_Synchronization-{CB66F83E-71A1-4728-8C2D-0272E93ADB3A}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2008-03-17 370296]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - c:\Program Files\Java\jre1.6.0\bin\ssv.dll [2007-05-02 501384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA6319C0-31B7-401E-A518-A07C3DB8F777}]
CBrowserHelperObject Object - C:\Program Files\BAE\BAE.dll [2006-11-17 98304]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2007-02-09 98304]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2007-02-09 106496]
"Persistence"=C:\Windows\system32\igfxpers.exe [2007-02-09 81920]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2006-09-29 151552]
"Corel Photo Downloader"=C:\Program Files\Corel\Corel Snapfire Plus\PhotoDownloader.exe []
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2006-09-11 86960]
"PDVDDXSrv"=C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe [2006-10-20 118784]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2007-08-30 205480]
"eFax 4.3"=C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe [2007-03-06 116224]
"SSBkgdUpdate"=C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"PPort11reminder"=C:\Program Files\ScanSoft\PaperPort\Ereg\ereg.exe [2006-03-09 1404928]
"PaperPort PTD"=C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe [2006-05-05 36864]
"MskAgentexe"=C:\Program Files\McAfee\MSK\MskAgent.exe []
"LVCOMSX"=C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe [2006-05-17 243248]
"LogitechCommunicationsManager"=C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe [2006-05-17 480816]
"Logitech Hardware Abstraction Layer"=C:\Windows\KHALMNPR.EXE [2006-05-10 94208]
"IndexSearch"=C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe [2006-05-05 40960]
"ECenter"=c:\dell\E-Center\EULALauncher.exe [2006-11-17 17920]
"PDF4 Registry Controller"=C:\Program Files\ScanSoft\PDF Professional 4.0\RegistryController.exe [2007-01-16 46632]
"ScanSoft PDF Professional 4-reminder"=C:\Program Files\ScanSoft\PDF Professional 4.0\Ereg\Ereg.exe [2006-11-16 35368]
"TkBellExe"=C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2008-03-17 185896]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2008-03-28 413696]
""= []
"RoxWatchTray"=C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe [2007-04-23 228088]
"SoftwareStation"=C:\Program Files\eAcceleration\Station\station.exe [2008-04-15 173392]
"webscan"=C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe [2008-05-14 763232]
"Carbonite Backup"=C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe [2008-06-13 600000]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
"Performance Center"=C:\Program Files\Ascentive\Performance Center\APCMain.exe -m []
"PC SpeedScan Pro"=C:\Program Files\Ascentive\PC SpeedScan Pro\PCSpeedScan.exe -m []
"PC ScanAndSweep"=C:\Program Files\Ascentive\PC ScanAndSweep\PCScanAndSweep.exe -m []
"SigmatelSysTrayApp"=C:\Windows\sttray.exe [2007-02-07 303104]
"GoToMyPC"=C:\Program Files\Citrix\GoToMyPC\g2svc.exe [2008-09-30 258856]
"OnAccess"=C:\Program Files\eAcceleration\OnAccess\onaccess.exe [2008-06-09 238944]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LDM"=C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe [2007-05-10 32768]
"ISUSPM"=C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [2007-08-30 205480]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Desktop Manager.lnk - C:\Program Files\Research In Motion\BlackBerry\DesktopMgr.exe
Digital Line Detect.lnk - C:\Program Files\Digital Line Detect\DLG.exe
eFax 4.3.lnk - C:\Program Files\eFax Messenger 4.3\J2GTray.exe
Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\SetPoint.exe
WinZip Quick Pick.lnk - C:\Program Files\WinZip\WZQKPICK.EXE

C:\Users\Robert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
PaperMaster Live Menu 7.0.lnk - C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2007-02-09 212992]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{42DD0873-5FA9-465D-90DE-0826020416A5}"=C:\Program Files\eAcceleration\OnAccess\onaccess_hk32.dll [2008-06-09 165216]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"EnableShellExecuteHooks"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"EnableShellExecuteHooks"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e5456dfb-e539-11dc-a27e-0019d1469d16}]
shell\AutoRun\command - G:\LaunchU3.exe


======List of files/folders created in the last 1 months======

2009-01-02 09:01:27 ----D---- C:\rsit
2009-01-01 18:09:14 ----D---- C:\Program Files\Trend Micro
2008-12-19 08:53:28 ----A---- C:\Windows\system32\mshtml.dll
2008-12-11 03:03:47 ----SHD---- C:\Config.Msi
2008-12-11 03:02:22 ----A---- C:\Windows\system32\tzres.dll
2008-12-10 22:41:19 ----A---- C:\Windows\system32\gdi32.dll
2008-12-10 22:41:13 ----A---- C:\Windows\system32\Apphlpdm.dll
2008-12-10 22:41:12 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2008-12-10 22:41:02 ----A---- C:\Windows\system32\shell32.dll
2008-12-10 22:40:48 ----A---- C:\Windows\explorer.exe
2008-12-10 22:40:41 ----A---- C:\Windows\system32\urlmon.dll
2008-12-10 22:40:41 ----A---- C:\Windows\system32\ieframe.dll
2008-12-10 22:40:40 ----A---- C:\Windows\system32\wininet.dll
2008-12-10 22:40:40 ----A---- C:\Windows\system32\mstime.dll
2008-12-10 22:40:39 ----A---- C:\Windows\system32\jsproxy.dll
2008-12-10 22:40:39 ----A---- C:\Windows\system32\iertutil.dll
2008-12-10 22:40:34 ----A---- C:\Windows\system32\mf.dll
2008-12-10 22:40:33 ----A---- C:\Windows\system32\WMVCORE.DLL
2008-12-10 22:40:32 ----A---- C:\Windows\system32\WMNetMgr.dll
2008-12-10 22:40:32 ----A---- C:\Windows\system32\logagent.exe

======List of files/folders modified in the last 1 months======

2009-01-02 09:01:37 ----D---- C:\Windows\Prefetch
2009-01-02 09:01:35 ----D---- C:\Windows\Temp
2009-01-02 08:59:32 ----D---- C:\Windows\System32
2009-01-02 08:59:32 ----D---- C:\Windows\inf
2009-01-02 08:59:32 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-01-02 08:53:22 ----D---- C:\MDT
2009-01-02 08:53:02 ----SHD---- C:\System Volume Information
2009-01-01 18:09:14 ----RD---- C:\Program Files
2008-12-30 18:21:40 ----D---- C:\Users\Robert\AppData\Roaming\Corel
2008-12-19 08:53:48 ----D---- C:\Windows\winsxs
2008-12-19 08:53:39 ----D---- C:\Windows\system32\catroot2
2008-12-19 08:53:39 ----D---- C:\Windows\system32\catroot
2008-12-17 22:55:31 ----SD---- C:\Windows\Downloaded Program Files
2008-12-11 03:30:53 ----D---- C:\Windows\rescache
2008-12-11 03:10:27 ----D---- C:\Windows\AppPatch
2008-12-11 03:10:27 ----D---- C:\Program Files\Windows Mail
2008-12-11 03:10:26 ----D---- C:\Windows\system32\en-US
2008-12-11 03:10:26 ----D---- C:\Windows
2008-12-11 03:05:01 ----SHD---- C:\Windows\Installer
2008-12-11 03:04:57 ----D---- C:\ProgramData\Microsoft Help
2008-12-09 17:24:37 ----A---- C:\Windows\system32\mrt.exe
2008-12-03 18:06:24 ----SD---- C:\Users\Robert\AppData\Roaming\Microsoft
2008-12-03 17:58:51 ----D---- C:\Windows\Minidump

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 CSC;Offline Files Driver; C:\Windows\system32\drivers\csc.sys [2008-01-18 350720]
R1 DLACDBHM;DLACDBHM; C:\Windows\System32\Drivers\DLACDBHM.SYS [2007-02-08 12856]
R1 DLARTL_M;DLARTL_M; C:\Windows\System32\Drivers\DLARTL_M.SYS [2007-02-08 28120]
R1 FWCore;FWCore; C:\Windows\system32\drivers\fwcore.sys [2008-04-23 58456]
R2 DLABMFSM;DLABMFSM; C:\Windows\System32\DLA\DLABMFSM.SYS [2006-10-26 35096]
R2 DLABOIOM;DLABOIOM; C:\Windows\System32\DLA\DLABOIOM.SYS [2006-10-26 32472]
R2 DLADResM;DLADResM; C:\Windows\System32\DLA\DLADResM.SYS [2006-10-26 9400]
R2 DLAIFS_M;DLAIFS_M; C:\Windows\System32\DLA\DLAIFS_M.SYS [2006-10-26 104536]
R2 DLAOPIOM;DLAOPIOM; C:\Windows\System32\DLA\DLAOPIOM.SYS [2006-10-26 26296]
R2 DLAPoolM;DLAPoolM; C:\Windows\System32\DLA\DLAPoolM.SYS [2006-10-26 14520]
R2 DLAUDF_M;DLAUDF_M; C:\Windows\System32\DLA\DLAUDF_M.SYS [2006-10-26 97848]
R2 DLAUDFAM;DLAUDFAM; C:\Windows\System32\DLA\DLAUDFAM.SYS [2006-10-26 94648]
R2 DRVNDDM;DRVNDDM; C:\Windows\System32\Drivers\DRVNDDM.SYS [2007-02-09 51768]
R2 LBeepKE;LBeepKE; C:\Windows\System32\Drivers\LBeepKE.sys [2006-05-24 3712]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2006-08-04 8192]
R3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\Windows\system32\DRIVERS\e1e6032.sys [2008-01-18 220672]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2006-10-18 986624]
R3 HSXHWBS2;HSXHWBS2; C:\Windows\system32\DRIVERS\HSXHWBS2.sys [2006-10-18 258048]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2007-02-09 1476608]
R3 LHidKe;Logitech SetPoint HID Mouse Filter Driver; C:\Windows\system32\DRIVERS\LHidKE.Sys [2006-05-10 27264]
R3 LMouKE;Logitech SetPoint Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouKE.Sys [2006-05-10 71680]
R3 RimVSerPort;RIM Virtual Serial Port v2; C:\Windows\system32\DRIVERS\RimSerial.sys [2007-01-18 26496]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2008-01-18 8192]
R3 STHDA;SigmaTel High Definition Audio CODEC; C:\Windows\system32\drivers\stwrt.sys [2007-02-07 647680]
R3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2006-10-18 659968]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-18 5632]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-18 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-18 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-18 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-18 6016]
S3 R300;R300; C:\Windows\system32\DRIVERS\atikmdag.sys [2006-11-02 2028032]
S3 RimUsb;BlackBerry Device; C:\Windows\System32\Drivers\RimUsb.sys [2006-11-07 22272]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2006-11-02 14848]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys []
S3 winusb;WinUSB Service; C:\Windows\system32\DRIVERS\WinUSB.SYS [2008-01-18 31616]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-19 39936]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-18 83328]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 BcmSqlStartupSvc;Business Contact Manager SQL Server Startup Service; C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe [2008-01-11 30312]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 CarboniteService;CarboniteService; C:\Program Files\Carbonite\Carbonite Backup\carboniteservice.exe [2008-06-13 1700288]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 eac_notifysvc;eAcceleration Notification Service; C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_svc.exe [2008-09-03 111952]
R2 eac_productsvc;eAcceleration Product Manager Service; C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_productsvc.exe [2008-10-22 263504]
R2 FWService;FWService; C:\Program Files\eAcceleration\Firewall\FWService.exe [2008-04-23 337232]
R2 GoToMyPC;GoToMyPC; C:\Program Files\Citrix\GoToMyPC\g2svc.exe [2008-09-30 258856]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2006-09-29 81920]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 SQLBrowser;SQL Server Browser; c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2007-02-10 242544]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2007-02-10 89968]
R2 StopSign Update Manager;StopSign Update Manager; C:\Program Files\Common Files\eAcceleration\eacsvc.exe [2008-04-15 103760]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2006-08-04 386560]
R3 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2008-02-26 29183504]
S2 Roxio Upnp Server 9;Roxio Upnp Server 9; C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe [2007-04-22 359160]
S2 RoxLiveShare9;LiveShare P2P Server 9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe [2007-04-23 310008]
S2 RoxWatch9;Roxio Hard Drive Watcher 9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe [2007-04-23 166648]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\Windows\system32\fxssvc.exe [2008-01-19 523776]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Roxio UPnP Renderer 9;Roxio UPnP Renderer 9; C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe [2007-04-22 88824]
S3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2007-04-23 1010424]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2006-09-14 73728]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2008-01-19 21504]
S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\Windows\system32\wbengine.exe [2008-01-19 917504]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2005-10-14 45272]

-----------------EOF-----------------

Edit: Email address obfuscated
Orac
refco48
Regular Member
 
Posts: 16
Joined: January 1st, 2009, 8:20 pm

Re: "MSN Featured" Spam - Cannot get rid of at ALL!!!

Unread postby Sharagoz » January 3rd, 2009, 12:21 pm

Hi
You only posted one of the logs, and posted it three times.
Could you please repost the RSIT logs, and make sure both logs are posted?
User avatar
Sharagoz
Retired Graduate
 
Posts: 985
Joined: February 22nd, 2008, 4:31 pm
Location: Norway

Re: "MSN Featured" Spam - Cannot get rid of at ALL!!!

Unread postby refco48 » January 3rd, 2009, 1:25 pm

THIS IS THE ONLY LOG THAT COMES UP-I AM NOT GIVEN AN OPTION FOR ANYTHING BUT THIS. AM I DOING SOMETHING WRONG?



Logfile of random's system information tool 1.05 (written by random/random)
Run by Robert at 2009-01-03 11:19:15
Microsoft® Windows Vista™ Business Service Pack 1
System drive C: has 90 GB (63%) free of 142 GB
Total RAM: 2037 MB (37% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:19:29 AM, on 1/3/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe
C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe
C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe
C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe
C:\Windows\sttray.exe
C:\Program Files\eAcceleration\OnAccess\onaccess.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\eFax Messenger 4.3\J2GTray.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe
C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.EXE
C:\Program Files\eAcceleration\Station\station_bk.exe
C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEUser.exe
C:\Windows\system32\SearchFilterHost.exe
C:\Users\Robert\Desktop\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Robert.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://att.my.yahoo.com/p/3.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer provided by Dell
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=C:\Windows\system32\Userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [Corel Photo Downloader] C:\Program Files\Corel\Corel Snapfire Plus\PhotoDownloader.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [PDVDDXSrv] "C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [eFax 4.3] "C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe" /R
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files\ScanSoft\PaperPort\Ereg\ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\ereg.ini"
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKLM\..\Run: [LVCOMSX] "C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe"
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [ECenter] c:\dell\E-Center\EULALauncher.exe
O4 - HKLM\..\Run: [PDF4 Registry Controller] "C:\Program Files\ScanSoft\PDF Professional 4.0\RegistryController.exe"
O4 - HKLM\..\Run: [ScanSoft PDF Professional 4-reminder] "C:\Program Files\ScanSoft\PDF Professional 4.0\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PDF Professional\4\Ereg\Ereg.ini
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [SoftwareStation] "C:\Program Files\eAcceleration\Station\station.exe" /b Startup
O4 - HKLM\..\Run: [webscan] "C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe" -k
O4 - HKLM\..\Run: [Carbonite Backup] C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Performance Center] C:\Program Files\Ascentive\Performance Center\APCMain.exe -m
O4 - HKLM\..\Run: [PC SpeedScan Pro] C:\Program Files\Ascentive\PC SpeedScan Pro\PCSpeedScan.exe -m
O4 - HKLM\..\Run: [PC ScanAndSweep] C:\Program Files\Ascentive\PC ScanAndSweep\PCScanAndSweep.exe -m
O4 - HKLM\..\Run: [SigmatelSysTrayApp] sttray.exe
O4 - HKLM\..\Run: [GoToMyPC] "C:\Program Files\Citrix\GoToMyPC\g2svc.exe" -logon
O4 - HKLM\..\Run: [OnAccess] "C:\Program Files\eAcceleration\OnAccess\onaccess.exe" -erk
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Startup: PaperMaster Live Menu 7.0.lnk = C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe
O4 - Global Startup: Desktop Manager.lnk = C:\Program Files\Research In Motion\BlackBerry\DesktopMgr.exe
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O4 - Global Startup: eFax 4.3.lnk = C:\Program Files\eFax Messenger 4.3\J2GTray.exe
O4 - Global Startup: Logitech SetPoint.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Open with ScanSoft PDF Converter 4.1 - res://C:\Program Files\ScanSoft\PDF Professional 4.0\cnvres_eng.dll /100
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {94B82441-A413-4E43-8422-D49930E69764} (TLIEFlashObj Class) - https://chat1.j2.com/Media/VisitorchatEnu/TLIEFlash.CAB
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {F5131C24-E56D-11CF-B78A-444553540000} (Ikonic Menu Control) - https://wc.wachovia.com/common/cab/ikcntrls.cab
O18 - Protocol: bw+0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O23 - Service: CarboniteService - Carbonite, Inc. (www.carbonite.com) - C:\Program Files\Carbonite\Carbonite Backup\carboniteservice.exe
O23 - Service: eAcceleration Notification Service (eac_notifysvc) - eAcceleration Corp - C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_svc.exe
O23 - Service: eAcceleration Product Manager Service (eac_productsvc) - eAcceleration Corp - C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_productsvc.exe
O23 - Service: FWService - eAcceleration Corp - C:\Program Files\eAcceleration\Firewall\FWService.exe
O23 - Service: GoToMyPC - Citrix Online, a division of Citrix Systems, Inc. - C:\Program Files\Citrix\GoToMyPC\g2svc.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Roxio UPnP Renderer 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe
O23 - Service: Roxio Upnp Server 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe
O23 - Service: LiveShare P2P Server 9 (RoxLiveShare9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: StopSign Update Manager - eAcceleration - C:\Program Files\Common Files\eAcceleration\eacsvc.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 22571 bytes

======Scheduled tasks folder======

C:\Windows\tasks\User_Feed_Synchronization-{CB66F83E-71A1-4728-8C2D-0272E93ADB3A}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2008-03-17 370296]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - c:\Program Files\Java\jre1.6.0\bin\ssv.dll [2007-05-02 501384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA6319C0-31B7-401E-A518-A07C3DB8F777}]
CBrowserHelperObject Object - C:\Program Files\BAE\BAE.dll [2006-11-17 98304]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2007-02-09 98304]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2007-02-09 106496]
"Persistence"=C:\Windows\system32\igfxpers.exe [2007-02-09 81920]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2006-09-29 151552]
"Corel Photo Downloader"=C:\Program Files\Corel\Corel Snapfire Plus\PhotoDownloader.exe []
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2006-09-11 86960]
"PDVDDXSrv"=C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe [2006-10-20 118784]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2007-08-30 205480]
"eFax 4.3"=C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe [2007-03-06 116224]
"SSBkgdUpdate"=C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"PPort11reminder"=C:\Program Files\ScanSoft\PaperPort\Ereg\ereg.exe [2006-03-09 1404928]
"PaperPort PTD"=C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe [2006-05-05 36864]
"MskAgentexe"=C:\Program Files\McAfee\MSK\MskAgent.exe []
"LVCOMSX"=C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe [2006-05-17 243248]
"LogitechCommunicationsManager"=C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe [2006-05-17 480816]
"Logitech Hardware Abstraction Layer"=C:\Windows\KHALMNPR.EXE [2006-05-10 94208]
"IndexSearch"=C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe [2006-05-05 40960]
"ECenter"=c:\dell\E-Center\EULALauncher.exe [2006-11-17 17920]
"PDF4 Registry Controller"=C:\Program Files\ScanSoft\PDF Professional 4.0\RegistryController.exe [2007-01-16 46632]
"ScanSoft PDF Professional 4-reminder"=C:\Program Files\ScanSoft\PDF Professional 4.0\Ereg\Ereg.exe [2006-11-16 35368]
"TkBellExe"=C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2008-03-17 185896]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2008-03-28 413696]
""= []
"RoxWatchTray"=C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe [2007-04-23 228088]
"SoftwareStation"=C:\Program Files\eAcceleration\Station\station.exe [2008-04-15 173392]
"webscan"=C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe [2008-05-14 763232]
"Carbonite Backup"=C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe [2008-06-13 600000]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
"Performance Center"=C:\Program Files\Ascentive\Performance Center\APCMain.exe -m []
"PC SpeedScan Pro"=C:\Program Files\Ascentive\PC SpeedScan Pro\PCSpeedScan.exe -m []
"PC ScanAndSweep"=C:\Program Files\Ascentive\PC ScanAndSweep\PCScanAndSweep.exe -m []
"SigmatelSysTrayApp"=C:\Windows\sttray.exe [2007-02-07 303104]
"GoToMyPC"=C:\Program Files\Citrix\GoToMyPC\g2svc.exe [2008-09-30 258856]
"OnAccess"=C:\Program Files\eAcceleration\OnAccess\onaccess.exe [2008-06-09 238944]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LDM"=C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe [2007-05-10 32768]
"ISUSPM"=C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [2007-08-30 205480]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Desktop Manager.lnk - C:\Program Files\Research In Motion\BlackBerry\DesktopMgr.exe
Digital Line Detect.lnk - C:\Program Files\Digital Line Detect\DLG.exe
eFax 4.3.lnk - C:\Program Files\eFax Messenger 4.3\J2GTray.exe
Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\SetPoint.exe
WinZip Quick Pick.lnk - C:\Program Files\WinZip\WZQKPICK.EXE

C:\Users\Robert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
PaperMaster Live Menu 7.0.lnk - C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2007-02-09 212992]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{42DD0873-5FA9-465D-90DE-0826020416A5}"=C:\Program Files\eAcceleration\OnAccess\onaccess_hk32.dll [2008-06-09 165216]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"EnableShellExecuteHooks"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"EnableShellExecuteHooks"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e5456dfb-e539-11dc-a27e-0019d1469d16}]
shell\AutoRun\command - G:\LaunchU3.exe


======List of files/folders created in the last 1 months======

2009-01-02 09:01:27 ----D---- C:\rsit
2009-01-01 18:09:14 ----D---- C:\Program Files\Trend Micro
2008-12-19 08:53:28 ----A---- C:\Windows\system32\mshtml.dll
2008-12-11 03:03:47 ----SHD---- C:\Config.Msi
2008-12-11 03:02:22 ----A---- C:\Windows\system32\tzres.dll
2008-12-10 22:41:19 ----A---- C:\Windows\system32\gdi32.dll
2008-12-10 22:41:13 ----A---- C:\Windows\system32\Apphlpdm.dll
2008-12-10 22:41:12 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2008-12-10 22:41:02 ----A---- C:\Windows\system32\shell32.dll
2008-12-10 22:40:48 ----A---- C:\Windows\explorer.exe
2008-12-10 22:40:41 ----A---- C:\Windows\system32\urlmon.dll
2008-12-10 22:40:41 ----A---- C:\Windows\system32\ieframe.dll
2008-12-10 22:40:40 ----A---- C:\Windows\system32\wininet.dll
2008-12-10 22:40:40 ----A---- C:\Windows\system32\mstime.dll
2008-12-10 22:40:39 ----A---- C:\Windows\system32\jsproxy.dll
2008-12-10 22:40:39 ----A---- C:\Windows\system32\iertutil.dll
2008-12-10 22:40:34 ----A---- C:\Windows\system32\mf.dll
2008-12-10 22:40:33 ----A---- C:\Windows\system32\WMVCORE.DLL
2008-12-10 22:40:32 ----A---- C:\Windows\system32\WMNetMgr.dll
2008-12-10 22:40:32 ----A---- C:\Windows\system32\logagent.exe

======List of files/folders modified in the last 1 months======

2009-01-03 11:19:28 ----D---- C:\Windows\Temp
2009-01-03 11:19:26 ----D---- C:\Windows\Prefetch
2009-01-03 11:17:04 ----SHD---- C:\System Volume Information
2009-01-03 11:12:01 ----D---- C:\Windows\System32
2009-01-03 11:12:01 ----D---- C:\Windows\inf
2009-01-03 11:12:01 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-01-03 11:06:20 ----D---- C:\MDT
2009-01-01 18:09:14 ----RD---- C:\Program Files
2008-12-30 18:21:40 ----D---- C:\Users\Robert\AppData\Roaming\Corel
2008-12-19 08:53:48 ----D---- C:\Windows\winsxs
2008-12-19 08:53:39 ----D---- C:\Windows\system32\catroot2
2008-12-19 08:53:39 ----D---- C:\Windows\system32\catroot
2008-12-17 22:55:31 ----SD---- C:\Windows\Downloaded Program Files
2008-12-11 03:30:53 ----D---- C:\Windows\rescache
2008-12-11 03:10:27 ----D---- C:\Windows\AppPatch
2008-12-11 03:10:27 ----D---- C:\Program Files\Windows Mail
2008-12-11 03:10:26 ----D---- C:\Windows\system32\en-US
2008-12-11 03:10:26 ----D---- C:\Windows
2008-12-11 03:05:01 ----SHD---- C:\Windows\Installer
2008-12-11 03:04:57 ----D---- C:\ProgramData\Microsoft Help
2008-12-09 17:24:37 ----A---- C:\Windows\system32\mrt.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 CSC;Offline Files Driver; C:\Windows\system32\drivers\csc.sys [2008-01-18 350720]
R1 DLACDBHM;DLACDBHM; C:\Windows\System32\Drivers\DLACDBHM.SYS [2007-02-08 12856]
R1 DLARTL_M;DLARTL_M; C:\Windows\System32\Drivers\DLARTL_M.SYS [2007-02-08 28120]
R1 FWCore;FWCore; C:\Windows\system32\drivers\fwcore.sys [2008-04-23 58456]
R2 DLABMFSM;DLABMFSM; C:\Windows\System32\DLA\DLABMFSM.SYS [2006-10-26 35096]
R2 DLABOIOM;DLABOIOM; C:\Windows\System32\DLA\DLABOIOM.SYS [2006-10-26 32472]
R2 DLADResM;DLADResM; C:\Windows\System32\DLA\DLADResM.SYS [2006-10-26 9400]
R2 DLAIFS_M;DLAIFS_M; C:\Windows\System32\DLA\DLAIFS_M.SYS [2006-10-26 104536]
R2 DLAOPIOM;DLAOPIOM; C:\Windows\System32\DLA\DLAOPIOM.SYS [2006-10-26 26296]
R2 DLAPoolM;DLAPoolM; C:\Windows\System32\DLA\DLAPoolM.SYS [2006-10-26 14520]
R2 DLAUDF_M;DLAUDF_M; C:\Windows\System32\DLA\DLAUDF_M.SYS [2006-10-26 97848]
R2 DLAUDFAM;DLAUDFAM; C:\Windows\System32\DLA\DLAUDFAM.SYS [2006-10-26 94648]
R2 DRVNDDM;DRVNDDM; C:\Windows\System32\Drivers\DRVNDDM.SYS [2007-02-09 51768]
R2 LBeepKE;LBeepKE; C:\Windows\System32\Drivers\LBeepKE.sys [2006-05-24 3712]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2006-08-04 8192]
R3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\Windows\system32\DRIVERS\e1e6032.sys [2008-01-18 220672]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2006-10-18 986624]
R3 HSXHWBS2;HSXHWBS2; C:\Windows\system32\DRIVERS\HSXHWBS2.sys [2006-10-18 258048]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2007-02-09 1476608]
R3 LHidKe;Logitech SetPoint HID Mouse Filter Driver; C:\Windows\system32\DRIVERS\LHidKE.Sys [2006-05-10 27264]
R3 LMouKE;Logitech SetPoint Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouKE.Sys [2006-05-10 71680]
R3 RimVSerPort;RIM Virtual Serial Port v2; C:\Windows\system32\DRIVERS\RimSerial.sys [2007-01-18 26496]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2008-01-18 8192]
R3 STHDA;SigmaTel High Definition Audio CODEC; C:\Windows\system32\drivers\stwrt.sys [2007-02-07 647680]
R3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2006-10-18 659968]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-18 5632]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-18 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-18 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-18 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-18 6016]
S3 R300;R300; C:\Windows\system32\DRIVERS\atikmdag.sys [2006-11-02 2028032]
S3 RimUsb;BlackBerry Device; C:\Windows\System32\Drivers\RimUsb.sys [2006-11-07 22272]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2006-11-02 14848]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys []
S3 winusb;WinUSB Service; C:\Windows\system32\DRIVERS\WinUSB.SYS [2008-01-18 31616]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-19 39936]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-18 83328]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 BcmSqlStartupSvc;Business Contact Manager SQL Server Startup Service; C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe [2008-01-11 30312]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 CarboniteService;CarboniteService; C:\Program Files\Carbonite\Carbonite Backup\carboniteservice.exe [2008-06-13 1700288]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 eac_notifysvc;eAcceleration Notification Service; C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_svc.exe [2008-09-03 111952]
R2 eac_productsvc;eAcceleration Product Manager Service; C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_productsvc.exe [2008-10-22 263504]
R2 FWService;FWService; C:\Program Files\eAcceleration\Firewall\FWService.exe [2008-04-23 337232]
R2 GoToMyPC;GoToMyPC; C:\Program Files\Citrix\GoToMyPC\g2svc.exe [2008-09-30 258856]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2006-09-29 81920]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 SQLBrowser;SQL Server Browser; c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2007-02-10 242544]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2007-02-10 89968]
R2 StopSign Update Manager;StopSign Update Manager; C:\Program Files\Common Files\eAcceleration\eacsvc.exe [2008-04-15 103760]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2006-08-04 386560]
R3 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2008-02-26 29183504]
S2 Roxio Upnp Server 9;Roxio Upnp Server 9; C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe [2007-04-22 359160]
S2 RoxLiveShare9;LiveShare P2P Server 9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe [2007-04-23 310008]
S2 RoxWatch9;Roxio Hard Drive Watcher 9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe [2007-04-23 166648]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\Windows\system32\fxssvc.exe [2008-01-19 523776]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Roxio UPnP Renderer 9;Roxio UPnP Renderer 9; C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe [2007-04-22 88824]
S3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2007-04-23 1010424]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2006-09-14 73728]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2008-01-19 21504]
S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\Windows\system32\wbengine.exe [2008-01-19 917504]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2005-10-14 45272]

-----------------EOF-----------------
refco48
Regular Member
 
Posts: 16
Joined: January 1st, 2009, 8:20 pm

Re: "MSN Featured" Spam - Cannot get rid of at ALL!!!

Unread postby Sharagoz » January 3rd, 2009, 1:30 pm

Try deleting this folder: C:\rsit
And then re-run RSIT.
Two logs should now open. Let me know if it doesnt.
User avatar
Sharagoz
Retired Graduate
 
Posts: 985
Joined: February 22nd, 2008, 4:31 pm
Location: Norway

Re: "MSN Featured" Spam - Cannot get rid of at ALL!!!

Unread postby refco48 » January 3rd, 2009, 1:47 pm

How about this?

info.txt logfile of random's system information tool 1.05 2009-01-02 09:01:48

======Uninstall list======

-->"C:\Program Files\Acceleration Software\Anti-Virus\ws_uninst.exe" -s
-->"C:\Program Files\eAcceleration\OnAccess\onaccess.exe" -u -s
-->"C:\Program Files\eAcceleration\Station\station.exe" /UnRegister
-->C:\PROGRA~1\ACCELE~1\ANTI-V~1\regsvr32.exe /u /s C:\PROGRA~1\ACCELE~1\ANTI-V~1\ssupload.dll
-->C:\PROGRA~1\ACCELE~1\ANTI-V~1\regsvr32.exe /u /s C:\PROGRA~1\ACCELE~1\ANTI-V~1\vclnr.dll
-->C:\PROGRA~1\COMMON~1\EACCEL~1\SysSnap\syssnap.exe -UnregServer
-->C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
-->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
-->MsiExec.exe /I{07159635-9DFE-4105-BFC0-2817DB540C68}
-->MsiExec.exe /I{0D397393-9B50-4C52-84D5-77E344289F87}
-->MsiExec.exe /I{83FFCFC7-88C6-41C6-8752-958A45325C82}
-->MsiExec.exe /I{C8B0680B-CDAE-4809-9F91-387B6DE00F7C}
-->MsiExec.exe /X{11F93B4B-48F0-4A4E-AE77-DFA96A99664B}
2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}
2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}
2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}
2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}
2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {4CA4ECC1-DBD4-4591-8F4C-AA12AD2D3E59}
2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0409-0000-0000000FF1CE} /uninstall {3EC77D26-799B-4CD8-914F-C1565E796173}
2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-040C-0000-0000000FF1CE} /uninstall {430971B1-C31E-45DA-81E0-72C095BAB72C}
2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-001F-0C0A-0000-0000000FF1CE} /uninstall {F7A31780-33C4-4E39-951A-5EC9B91D7BF1}
2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {FAD8A83E-9BAC-4179-9268-A35948034D85}
2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {90120000-0115-0409-0000-0000000FF1CE} /uninstall {FAD8A83E-9BAC-4179-9268-A35948034D85}
2007 Microsoft Office Suite Service Pack 1 (SP1)-->msiexec /package {91120000-00CA-0000-0000-0000000FF1CE} /uninstall {BEE75E01-DD3F-4D5F-B96C-609E6538D419}
Adobe AIR-->C:\Program Files\Common Files\Adobe AIR\Versions\1.0\Adobe AIR Updater.exe -arp:uninstall
Adobe AIR-->MsiExec.exe /I{00203668-8170-44A0-BE44-B632FA4D780F}
Adobe Flash Player 10 ActiveX-->C:\Windows\system32\Macromed\Flash\uninstall_activeX.exe
Adobe Reader 9-->MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A90000000001}
BlackBerry Desktop Software 4.2.2-->MsiExec.exe /i{98605CAA-5F52-44EC-8AF7-2EC1A4C35F2D}
BlackBerry Desktop Software 4.2.2-->MsiExec.exe /I{98605CAA-5F52-44EC-8AF7-2EC1A4C35F2D}
Business Contact Manager for Outlook 2007 SP1-->"C:\Program Files\Microsoft Small Business\Business Contact Manager\SetupBootstrap\Setup.exe" /remove {B32C4059-6E7A-41EF-AD20-56DF1872B923}
Business Contact Manager for Outlook 2007 SP1-->MsiExec.exe /X{B32C4059-6E7A-41EF-AD20-56DF1872B923}
Carbonite-->C:\Program Files\Carbonite\Carbonite Backup\CarboniteSetup.exe /remove
Compatibility Pack for the 2007 Office system-->MsiExec.exe /X{90120000-0020-0409-0000-0000000FF1CE}
Conexant D850 PCI V.92 Modem-->C:\Program Files\CONEXANT\CNXT_MODEM_PCI_VEN_14F1&DEV_2F20&SUBSYS_200F14F1\HXFSETUP.EXE -U -IDel200fz.inf
Corel Paint Shop Pro Photo XI-->MsiExec.exe /I{93A1B09E-BAFA-4628-A5B6-921CB026955A}
Corel Snapfire Plus-->MsiExec.exe /I{7ADE3A47-B425-45E9-8FF6-11BE2B775645}
Dell System Customization Wizard-->MsiExec.exe /I{13BA7B44-B712-4DEE-A7B8-1DD564F37AE5}
Digital Line Detect-->C:\Program Files\InstallShield Installation Information\{E646DCF0-5A68-11D5-B229-002078017FBF}\Setup.exe -runfromtemp -l0x0009 -removeonly
DivX Codec-->C:\Program Files\DivX\DivXCodecUninstall.exe /CODEC
DivX Content Uploader-->C:\Program Files\DivX\DivXContentUploaderUninstall.exe /CUPLOADER
DivX Converter-->C:\Program Files\DivX\DivXConverterUninstall.exe /CONVERTER
DivX Player-->C:\Program Files\DivX\DivXPlayerUninstall.exe /PLAYER
DivX Web Player-->C:\Program Files\DivX\DivXWebPlayerUninstall.exe /PLUGIN
Documentation & Support Launcher-->MsiExec.exe /I{89CEAE14-DD0F-448E-9554-15781EC9DB24}
eFax Messenger 4.3-->C:\Program Files\eFax Messenger 4.3\Uninstall.exe
Games, Music, & Photos Launcher-->MsiExec.exe /I{3E25E350-949F-4DB7-8288-2A60E018B4C1}
GDR 3068 for SQL Server Database Services 2005 ENU (KB948109)-->C:\Windows\SQL9_KB948109_ENU\Hotfix.exe /Uninstall
GoToMyPC-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{58F4D4FD-1814-4068-B316-C28FC776C6DD}\Setup.exe" -l0x9 AddRemovePrograms
HijackThis 2.0.2-->"C:\Program Files\Trend Micro\HijackThis\HijackThis.exe" /uninstall
HP Driver Diagnostics-->MsiExec.exe /I{ED3F469E-D9EC-4DF1-968F-5812CE2F30F8}
Intel(R) Graphics Media Accelerator Driver-->C:\Windows\system32\igxpun.exe -uninstall
Intel(R) Matrix Storage Manager-->C:\Windows\System32\Imsmudlg.exe
Intellisync® for Yahoo!-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{395131D0-71C3-4411-8DDD-84E7A4EC8754}\Setup.exe" -l0x9 YahooUninstall2
Java(TM) SE Runtime Environment 6-->MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0160000}
KhalSetup-->MsiExec.exe /I{EE7B9A8D-19F0-450D-8E94-3E391E6044CD}
Logitech Communications Manager-->MsiExec.exe /I{BD202930-5F70-4B35-B875-1E28604F328D}
Logitech Desktop Messenger-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{900B1197-53F5-4F46-A882-2CFFFE2EEDCB}\SETUP.exe" -l0x9 UNINSTALL -removeonly
Logitech SetPoint-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{2E8EAC71-BFE4-417A-88F0-5A1BDFBCF5D3}\setup.exe" -l0x9 -removeonly
Microsoft Office 2003 Web Components-->MsiExec.exe /I{90A40409-6000-11D3-8CFE-0150048383C9}
Microsoft Office Accounting 2007-->"C:\Program Files\Microsoft Small Business\Small Business Accounting 2007\SetupBootstrap\Setup.exe" /remove {B0717D5A-1976-482B-9ADF-F19631A541A4}
Microsoft Office Accounting 2007-->MsiExec.exe /X{B0717D5A-1976-482B-9ADF-F19631A541A4}
Microsoft Office Excel MUI (English) 2007-->MsiExec.exe /X{90120000-0016-0409-0000-0000000FF1CE}
Microsoft Office Outlook MUI (English) 2007-->MsiExec.exe /X{90120000-001A-0409-0000-0000000FF1CE}
Microsoft Office PowerPoint MUI (English) 2007-->MsiExec.exe /X{90120000-0018-0409-0000-0000000FF1CE}
Microsoft Office Proof (English) 2007-->MsiExec.exe /X{90120000-001F-0409-0000-0000000FF1CE}
Microsoft Office Proof (French) 2007-->MsiExec.exe /X{90120000-001F-040C-0000-0000000FF1CE}
Microsoft Office Proof (Spanish) 2007-->MsiExec.exe /X{90120000-001F-0C0A-0000-0000000FF1CE}
Microsoft Office Proofing (English) 2007-->MsiExec.exe /X{90120000-002C-0409-0000-0000000FF1CE}
Microsoft Office Publisher MUI (English) 2007-->MsiExec.exe /X{90120000-0019-0409-0000-0000000FF1CE}
Microsoft Office Shared MUI (English) 2007-->MsiExec.exe /X{90120000-006E-0409-0000-0000000FF1CE}
Microsoft Office Shared Setup Metadata MUI (English) 2007-->MsiExec.exe /X{90120000-0115-0409-0000-0000000FF1CE}
Microsoft Office Small Business 2007-->"C:\Program Files\Common Files\Microsoft Shared\OFFICE12\Office Setup Controller\setup.exe" /uninstall SMALLBUSINESSR /dll OSETUP.DLL
Microsoft Office Small Business 2007-->MsiExec.exe /X{91120000-00CA-0000-0000-0000000FF1CE}
Microsoft Office Small Business Connectivity Components-->MsiExec.exe /X{A939D341-5A04-4E0A-BB55-3E65B386432D}
Microsoft Office Word MUI (English) 2007-->MsiExec.exe /X{90120000-001B-0409-0000-0000000FF1CE}
Microsoft Save as PDF or XPS Add-in for 2007 Microsoft Office programs-->MsiExec.exe /X{90120000-00B2-0409-0000-0000000FF1CE}
Microsoft Silverlight-->MsiExec.exe /I{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}
Microsoft SQL Server 2005 Express Edition (MSSMLBIZ)-->MsiExec.exe /I{2AFFFDD7-ED85-4A90-8C52-5DA9EBDC9B8F}
Microsoft SQL Server 2005-->"c:\Program Files\Microsoft SQL Server\90\Setup Bootstrap\ARPWrapper.exe" /Remove
Microsoft SQL Server Native Client-->MsiExec.exe /I{F9B3DD02-B0B3-42E9-8650-030DFF0D133D}
Microsoft SQL Server Setup Support Files (English)-->MsiExec.exe /X{53F5C3EE-05ED-4830-994B-50B2F0D50FCE}
Microsoft SQL Server VSS Writer-->MsiExec.exe /I{E9F44C98-B8B6-480F-AF7B-E42A0A46F4E3}
Microsoft Visual C++ 2005 Redistributable-->MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
Modem Diagnostic Tool-->MsiExec.exe /I{F63A3748-B93D-4360-9AD4-B064481A5C7B}
MSXML 4.0 SP2 (KB927978)-->MsiExec.exe /I{37477865-A3F1-4772-AD43-AAFC6BCFF99F}
MSXML 4.0 SP2 (KB936181)-->MsiExec.exe /I{C04E32E0-0416-434D-AFB9-6969D703A9EF}
MSXML 4.0 SP2 (KB941833)-->MsiExec.exe /I{C523D256-313D-4866-B36A-F3DE528246EF}
MSXML 4.0 SP2 (KB954430)-->MsiExec.exe /I{86493ADD-824D-4B8E-BD72-8C5DCDC52A71}
NetWaiting-->C:\Program Files\InstallShield Installation Information\{3F92ABBB-6BBF-11D5-B229-002078017FBF}\setup.exe -runfromtemp -l0x0009 -removeonly
PaperMaster Pro 7.0-->"C:\Program Files\PaperMaster Pro 7.0\Uninstall.exe" "C:\Program Files\PaperMaster Pro 7.0\J2GInstall.log"
PC ScanAndSweep-->C:\Program Files\InstallShield Installation Information\{323C7763-A048-4E06-A339-729632A3F95E}\setup.exe -runfromtemp -l0x0009 -removeonly
PC SpeedScan Pro-->C:\Program Files\InstallShield Installation Information\{80F24F31-F641-4349-83F3-59E335976D16}\setup.exe -runfromtemp -l0x0009 -removeonly
PowerDVD-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\11\00\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{281ECE39-F043-492B-8337-F2E546B5604A}\Setup.exe" -l0x9 -cluninstall
QuickTime-->MsiExec.exe /I{1838C5A2-AB32-4145-85C1-BB9B8DFA24CD}
RealPlayer-->C:\Program Files\Common Files\Real\Update_OB\r1puninst.exe RealNetworks|RealPlayer|6.0
Rhapsody Player Engine-->MsiExec.exe /I{22DE1881-9D24-4981-B5CC-EC7E9F2F4D52}
Rhapsody Player Engine-->MsiExec.exe /I{2DFF31F9-7893-4922-AF66-C9A1EB4EBB31}
Roxio Creator BDAV Plugin-->MsiExec.exe /I{880AF49C-34F7-4285-A8AD-8F7A3D1C33DC}
Roxio Creator Copy-->MsiExec.exe /I{619CDD8A-14B6-43a1-AB6C-0F4EE48CE048}
Roxio Creator Tools-->MsiExec.exe /I{0394CDC8-FABD-4ed8-B104-03393876DFDF}
Roxio Drag-to-Disc-->MsiExec.exe /I{2F4C24E6-CBD4-4AAC-B56F-C9FD44DE5668}
Roxio Express Labeler-->MsiExec.exe /I{6675CA7F-E51B-4F6A-99D4-F8F0124C6EAA}
Roxio Media Manager-->MsiExec.exe /X{66D171AA-670F-4309-9C74-5BA7F7DBA0B3}
Roxio Update Manager-->MsiExec.exe /I{30465B6C-B53F-49A1-9EBA-A3F187AD502E}
ScanSoft PaperPort 11-->MsiExec.exe /I{02E73E50-6513-4802-8600-B5A5BA185BE3}
ScanSoft PDF Professional 4-->MsiExec.exe /X{12E3B2CD-530F-4643-9A64-23E0D214A79D}
Security Update for 2007 Microsoft Office System (KB951550)-->msiexec /package {91120000-00CA-0000-0000-0000000FF1CE} /uninstall {B243E9A5-ED77-4F1B-B338-2486FD82DC85}
Security Update for 2007 Microsoft Office System (KB951944)-->msiexec /package {91120000-00CA-0000-0000-0000000FF1CE} /uninstall {797AE457-BA17-4BBC-B501-25FB3A0103C7}
Security Update for 2007 Microsoft Office System (KB958439)-->msiexec /package {91120000-00CA-0000-0000-0000000FF1CE} /uninstall {6491B8AA-D11C-4648-A461-6234B31EB7E2}
Security Update for Microsoft Office Excel 2007 (KB958437)-->msiexec /package {91120000-00CA-0000-0000-0000000FF1CE} /uninstall {648FC016-2D6B-4A16-8D87-404533642F4B}
Security Update for Microsoft Office PowerPoint 2007 (KB951338)-->msiexec /package {91120000-00CA-0000-0000-0000000FF1CE} /uninstall {558B709B-821B-4FC5-90FC-9A8890641E77}
Security Update for Microsoft Office Publisher 2007 (KB950114)-->msiexec /package {91120000-00CA-0000-0000-0000000FF1CE} /uninstall {F9C3CDBA-1F00-4D4D-959D-75C9D3ACDD85}
Security Update for Microsoft Office system 2007 (KB954326)-->msiexec /package {91120000-00CA-0000-0000-0000000FF1CE} /uninstall {5F7F6FFF-395D-480E-8450-64F385D82C5F}
Security Update for Microsoft Office system 2007 (KB956828)-->msiexec /package {91120000-00CA-0000-0000-0000000FF1CE} /uninstall {885E081B-72BD-4E76-8E98-30B4BE468FAC}
Security Update for Microsoft Office Word 2007 (KB956358)-->msiexec /package {91120000-00CA-0000-0000-0000000FF1CE} /uninstall {4551666D-0FD6-4C69-8A81-1C6F2E64517C}
Security Update for Visio 2007 (KB947590)-->msiexec /package {91120000-00CA-0000-0000-0000000FF1CE} /uninstall {6BAD036C-261F-4BEF-96CF-C20678D07A41}
SigmaTel Audio-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\10\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{A462213D-EED4-42C2-9A60-7BDD4D4B0B17}\setup.exe" -l0x9 -remove -removeonly
Sonic Activation Module-->MsiExec.exe /I{35E1EC43-D4FC-4E4A-AAB3-20DDA27E8BB0}
StopSign by eAcceleration-->C:\PROGRA~1\COMMON~1\EACCEL~1\INSTAL~1\eaccelsetup.exe -AddRemove
Uniblue RegistryBooster 2-->"C:\Program Files\Uniblue\RegistryBooster 2\unins000.exe"
Update for Microsoft Office 2007 Help for Common Features (KB957244)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {C8C72583-C907-4D20-8973-C3858D96BD9E}
Update for Microsoft Office Excel 2007 Help (KB957242)-->msiexec /package {90120000-0016-0409-0000-0000000FF1CE} /uninstall {51864046-74C8-487B-97CD-6167A4B1DB56}
Update for Microsoft Office Outlook 2007 (KB952142)-->msiexec /package {91120000-00CA-0000-0000-0000000FF1CE} /uninstall {4AD3A076-427C-491F-A5B7-7D1DE788A756}
Update for Microsoft Office Outlook 2007 Help (KB957246)-->msiexec /package {90120000-001A-0409-0000-0000000FF1CE} /uninstall {6F0E4983-E419-4591-B7DD-EFB0073D3E47}
Update for Microsoft Office PowerPoint 2007 Help (KB957247)-->msiexec /package {90120000-0018-0409-0000-0000000FF1CE} /uninstall {B20E2C59-EEC5-4102-9E50-5DBB2093C37D}
Update for Microsoft Office Publisher 2007 Help (KB957249)-->msiexec /package {90120000-0019-0409-0000-0000000FF1CE} /uninstall {4E140A5A-4A90-404A-B955-10C2D98CD3EE}
Update for Microsoft Office Word 2007 Help (KB957252)-->msiexec /package {90120000-001B-0409-0000-0000000FF1CE} /uninstall {54DF3345-0720-4224-9740-C7E00303F565}
Update for Microsoft Script Editor Help (KB957253)-->msiexec /package {90120000-006E-0409-0000-0000000FF1CE} /uninstall {F21BF703-548C-47B2-B92A-6876E9566C42}
Update for Office 2007 (KB946691)-->msiexec /package {91120000-00CA-0000-0000-0000000FF1CE} /uninstall {A420F522-7395-4872-9882-C591B4B92278}
Update for Outlook 2007 Junk Email Filter (kb958619)-->msiexec /package {91120000-00CA-0000-0000-0000000FF1CE} /uninstall {79B301C1-DBC0-467C-AFDA-2A6CDAFA4302}
URL Assistant-->regsvr32 /u /s "C:\Program Files\BAE\BAE.dll"
User's Guides-->RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{5CD29180-A95E-11D3-A4EB-00C04F7BDB2C}\setup.exe"
WinZip 11.1-->MsiExec.exe /X{CD95F661-A5C4-44F5-A6AA-ECDD91C240B5}

======Security center information======

AS: Windows Defender

System event log

Computer Name: Robert-PC
Event Code: 7036
Message: The KtmRm for Distributed Transaction Coordinator service entered the running state.
Record Number: 168815
Source Name: Service Control Manager
Time Written: 20090102145533.000000-000
Event Type: Information
User:

Computer Name: Robert-PC
Event Code: 7036
Message: The TPM Base Services service entered the stopped state.
Record Number: 168816
Source Name: Service Control Manager
Time Written: 20090102145533.000000-000
Event Type: Information
User:

Computer Name: Robert-PC
Event Code: 7036
Message: The Security Center service entered the running state.
Record Number: 168817
Source Name: Service Control Manager
Time Written: 20090102145535.000000-000
Event Type: Information
User:

Computer Name: Robert-PC
Event Code: 537
Message: A compatible Trusted Platform Module (TPM) Security Device cannot be found on this computer. TBS could not be started.
Record Number: 168818
Source Name: Microsoft-Windows-TBS
Time Written: 20090102145533.452144-000
Event Type: Information
User: NT AUTHORITY\LOCAL SERVICE

Computer Name: Robert-PC
Event Code: 7036
Message: The Windows Update service entered the running state.
Record Number: 168819
Source Name: Service Control Manager
Time Written: 20090102145540.000000-000
Event Type: Information
User:

Application event log

Computer Name: Robert-PC
Event Code: 1
Message: The Windows Security Center Service has started.
Record Number: 3273463
Source Name: SecurityCenter
Time Written: 20090102145538.000000-000
Event Type: Information
User:

Computer Name: Robert-PC
Event Code: 1001
Message: Performance counters for the WmiApRpl (WmiApRpl) service were removed successfully. The Record Data contains the new values of the system Last Counter and Last Help registry entries.
Record Number: 3273464
Source Name: Microsoft-Windows-LoadPerf
Time Written: 20090102145932.000000-000
Event Type: Information
User:

Computer Name: Robert-PC
Event Code: 1000
Message: Performance counters for the WmiApRpl (WmiApRpl) service were loaded successfully. The Record Data in the data section contains the new index values assigned to this service.
Record Number: 3273465
Source Name: Microsoft-Windows-LoadPerf
Time Written: 20090102145932.000000-000
Event Type: Information
User:

Computer Name: Robert-PC
Event Code: 32
Message: The store C:\Users\Robert\AppData\Local\Microsoft\Outlook\archive.pst has detected a catalog checkpoint.
Record Number: 3273466
Source Name: Outlook
Time Written: 20090102150205.000000-000
Event Type: Information
User:

Computer Name: Robert-PC
Event Code: 32
Message: The store C:\Users\Robert\AppData\Local\Microsoft\Outlook\Outlook.pst has detected a catalog checkpoint.
Record Number: 3273467
Source Name: Outlook
Time Written: 20090102150205.000000-000
Event Type: Information
User:

Security event log

Computer Name: Robert-PC
Event Code: 5038
Message: Code integrity determined that the image hash of a file is not valid. The file could be corrupt due to unauthorized modification or the invalid hash could indicate a potential disk device error.

File Name: \Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys
Record Number: 73756
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20090102150144.412144-000
Event Type: Audit Failure
User:

Computer Name: Robert-PC
Event Code: 5038
Message: Code integrity determined that the image hash of a file is not valid. The file could be corrupt due to unauthorized modification or the invalid hash could indicate a potential disk device error.

File Name: \Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys
Record Number: 73757
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20090102150144.470144-000
Event Type: Audit Failure
User:

Computer Name: Robert-PC
Event Code: 5038
Message: Code integrity determined that the image hash of a file is not valid. The file could be corrupt due to unauthorized modification or the invalid hash could indicate a potential disk device error.

File Name: \Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys
Record Number: 73758
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20090102150144.520144-000
Event Type: Audit Failure
User:

Computer Name: Robert-PC
Event Code: 5038
Message: Code integrity determined that the image hash of a file is not valid. The file could be corrupt due to unauthorized modification or the invalid hash could indicate a potential disk device error.

File Name: \Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys
Record Number: 73759
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20090102150144.561144-000
Event Type: Audit Failure
User:

Computer Name: Robert-PC
Event Code: 5038
Message: Code integrity determined that the image hash of a file is not valid. The file could be corrupt due to unauthorized modification or the invalid hash could indicate a potential disk device error.

File Name: \Device\HarddiskVolume3\Windows\System32\drivers\tcpip.sys
Record Number: 73760
Source Name: Microsoft-Windows-Security-Auditing
Time Written: 20090102150144.628144-000
Event Type: Audit Failure
User:

======Environment variables======

"ComSpec"=%SystemRoot%\system32\cmd.exe
"FP_NO_HOST_CHECK"=NO
"OS"=Windows_NT
"Path"=%SystemRoot%\system32;%SystemRoot%;%SystemRoot%\System32\Wbem;C:\Program Files\Common Files\Roxio Shared\DLLShared\;C:\Program Files\Common Files\Roxio Shared\DLLShared\;C:\Program Files\Common Files\Roxio Shared\9.0\DLLShared\;c:\Program Files\Microsoft SQL Server\90\Tools\binn\;C:\Program Files\QuickTime\QTSystem\
"PATHEXT"=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH;.MSC
"PROCESSOR_ARCHITECTURE"=x86
"TEMP"=%SystemRoot%\TEMP
"TMP"=%SystemRoot%\TEMP
"USERNAME"=SYSTEM
"windir"=%SystemRoot%
"PROCESSOR_LEVEL"=15
"PROCESSOR_IDENTIFIER"=x86 Family 15 Model 6 Stepping 5, GenuineIntel
"PROCESSOR_REVISION"=0605
"NUMBER_OF_PROCESSORS"=2
"CLASSPATH"=.;C:\Program Files\Java\jre1.6.0\lib\ext\QTJava.zip
"QTJAVA"=C:\Program Files\Java\jre1.6.0\lib\ext\QTJava.zip
"RoxioCentral"=C:\Program Files\Common Files\Roxio Shared\9.0\Roxio Central33\

-----------------EOF-----------------
Logfile of random's system information tool 1.05 (written by random/random)
Run by Robert at 2009-01-03 11:22:50
Microsoft® Windows Vista™ Business Service Pack 1
System drive C: has 90 GB (63%) free of 142 GB
Total RAM: 2037 MB (37% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:22:53 AM, on 1/3/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe
C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe
C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe
C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe
C:\Windows\sttray.exe
C:\Program Files\eAcceleration\OnAccess\onaccess.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\eFax Messenger 4.3\J2GTray.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe
C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.EXE
C:\Program Files\eAcceleration\Station\station_bk.exe
C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEUser.exe
C:\Users\Robert\Desktop\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Robert.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://att.my.yahoo.com/p/3.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer provided by Dell
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=C:\Windows\system32\Userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [Corel Photo Downloader] C:\Program Files\Corel\Corel Snapfire Plus\PhotoDownloader.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [PDVDDXSrv] "C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [eFax 4.3] "C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe" /R
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files\ScanSoft\PaperPort\Ereg\ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\ereg.ini"
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKLM\..\Run: [LVCOMSX] "C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe"
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [ECenter] c:\dell\E-Center\EULALauncher.exe
O4 - HKLM\..\Run: [PDF4 Registry Controller] "C:\Program Files\ScanSoft\PDF Professional 4.0\RegistryController.exe"
O4 - HKLM\..\Run: [ScanSoft PDF Professional 4-reminder] "C:\Program Files\ScanSoft\PDF Professional 4.0\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PDF Professional\4\Ereg\Ereg.ini
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [SoftwareStation] "C:\Program Files\eAcceleration\Station\station.exe" /b Startup
O4 - HKLM\..\Run: [webscan] "C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe" -k
O4 - HKLM\..\Run: [Carbonite Backup] C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Performance Center] C:\Program Files\Ascentive\Performance Center\APCMain.exe -m
O4 - HKLM\..\Run: [PC SpeedScan Pro] C:\Program Files\Ascentive\PC SpeedScan Pro\PCSpeedScan.exe -m
O4 - HKLM\..\Run: [PC ScanAndSweep] C:\Program Files\Ascentive\PC ScanAndSweep\PCScanAndSweep.exe -m
O4 - HKLM\..\Run: [SigmatelSysTrayApp] sttray.exe
O4 - HKLM\..\Run: [GoToMyPC] "C:\Program Files\Citrix\GoToMyPC\g2svc.exe" -logon
O4 - HKLM\..\Run: [OnAccess] "C:\Program Files\eAcceleration\OnAccess\onaccess.exe" -erk
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Startup: PaperMaster Live Menu 7.0.lnk = C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe
O4 - Global Startup: Desktop Manager.lnk = C:\Program Files\Research In Motion\BlackBerry\DesktopMgr.exe
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O4 - Global Startup: eFax 4.3.lnk = C:\Program Files\eFax Messenger 4.3\J2GTray.exe
O4 - Global Startup: Logitech SetPoint.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Open with ScanSoft PDF Converter 4.1 - res://C:\Program Files\ScanSoft\PDF Professional 4.0\cnvres_eng.dll /100
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {94B82441-A413-4E43-8422-D49930E69764} (TLIEFlashObj Class) - https://chat1.j2.com/Media/VisitorchatEnu/TLIEFlash.CAB
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {F5131C24-E56D-11CF-B78A-444553540000} (Ikonic Menu Control) - https://wc.wachovia.com/common/cab/ikcntrls.cab
O18 - Protocol: bw+0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O23 - Service: CarboniteService - Carbonite, Inc. (www.carbonite.com) - C:\Program Files\Carbonite\Carbonite Backup\carboniteservice.exe
O23 - Service: eAcceleration Notification Service (eac_notifysvc) - eAcceleration Corp - C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_svc.exe
O23 - Service: eAcceleration Product Manager Service (eac_productsvc) - eAcceleration Corp - C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_productsvc.exe
O23 - Service: FWService - eAcceleration Corp - C:\Program Files\eAcceleration\Firewall\FWService.exe
O23 - Service: GoToMyPC - Citrix Online, a division of Citrix Systems, Inc. - C:\Program Files\Citrix\GoToMyPC\g2svc.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Roxio UPnP Renderer 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe
O23 - Service: Roxio Upnp Server 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe
O23 - Service: LiveShare P2P Server 9 (RoxLiveShare9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: StopSign Update Manager - eAcceleration - C:\Program Files\Common Files\eAcceleration\eacsvc.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 22529 bytes

======Scheduled tasks folder======

C:\Windows\tasks\User_Feed_Synchronization-{CB66F83E-71A1-4728-8C2D-0272E93ADB3A}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2008-03-17 370296]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - c:\Program Files\Java\jre1.6.0\bin\ssv.dll [2007-05-02 501384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA6319C0-31B7-401E-A518-A07C3DB8F777}]
CBrowserHelperObject Object - C:\Program Files\BAE\BAE.dll [2006-11-17 98304]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2007-02-09 98304]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2007-02-09 106496]
"Persistence"=C:\Windows\system32\igfxpers.exe [2007-02-09 81920]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2006-09-29 151552]
"Corel Photo Downloader"=C:\Program Files\Corel\Corel Snapfire Plus\PhotoDownloader.exe []
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2006-09-11 86960]
"PDVDDXSrv"=C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe [2006-10-20 118784]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2007-08-30 205480]
"eFax 4.3"=C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe [2007-03-06 116224]
"SSBkgdUpdate"=C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"PPort11reminder"=C:\Program Files\ScanSoft\PaperPort\Ereg\ereg.exe [2006-03-09 1404928]
"PaperPort PTD"=C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe [2006-05-05 36864]
"MskAgentexe"=C:\Program Files\McAfee\MSK\MskAgent.exe []
"LVCOMSX"=C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe [2006-05-17 243248]
"LogitechCommunicationsManager"=C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe [2006-05-17 480816]
"Logitech Hardware Abstraction Layer"=C:\Windows\KHALMNPR.EXE [2006-05-10 94208]
"IndexSearch"=C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe [2006-05-05 40960]
"ECenter"=c:\dell\E-Center\EULALauncher.exe [2006-11-17 17920]
"PDF4 Registry Controller"=C:\Program Files\ScanSoft\PDF Professional 4.0\RegistryController.exe [2007-01-16 46632]
"ScanSoft PDF Professional 4-reminder"=C:\Program Files\ScanSoft\PDF Professional 4.0\Ereg\Ereg.exe [2006-11-16 35368]
"TkBellExe"=C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2008-03-17 185896]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2008-03-28 413696]
""= []
"RoxWatchTray"=C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe [2007-04-23 228088]
"SoftwareStation"=C:\Program Files\eAcceleration\Station\station.exe [2008-04-15 173392]
"webscan"=C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe [2008-05-14 763232]
"Carbonite Backup"=C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe [2008-06-13 600000]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
"Performance Center"=C:\Program Files\Ascentive\Performance Center\APCMain.exe -m []
"PC SpeedScan Pro"=C:\Program Files\Ascentive\PC SpeedScan Pro\PCSpeedScan.exe -m []
"PC ScanAndSweep"=C:\Program Files\Ascentive\PC ScanAndSweep\PCScanAndSweep.exe -m []
"SigmatelSysTrayApp"=C:\Windows\sttray.exe [2007-02-07 303104]
"GoToMyPC"=C:\Program Files\Citrix\GoToMyPC\g2svc.exe [2008-09-30 258856]
"OnAccess"=C:\Program Files\eAcceleration\OnAccess\onaccess.exe [2008-06-09 238944]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LDM"=C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe [2007-05-10 32768]
"ISUSPM"=C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [2007-08-30 205480]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Desktop Manager.lnk - C:\Program Files\Research In Motion\BlackBerry\DesktopMgr.exe
Digital Line Detect.lnk - C:\Program Files\Digital Line Detect\DLG.exe
eFax 4.3.lnk - C:\Program Files\eFax Messenger 4.3\J2GTray.exe
Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\SetPoint.exe
WinZip Quick Pick.lnk - C:\Program Files\WinZip\WZQKPICK.EXE

C:\Users\Robert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
PaperMaster Live Menu 7.0.lnk - C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2007-02-09 212992]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{42DD0873-5FA9-465D-90DE-0826020416A5}"=C:\Program Files\eAcceleration\OnAccess\onaccess_hk32.dll [2008-06-09 165216]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"EnableShellExecuteHooks"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"EnableShellExecuteHooks"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e5456dfb-e539-11dc-a27e-0019d1469d16}]
shell\AutoRun\command - G:\LaunchU3.exe


======List of files/folders created in the last 1 months======

2009-01-02 09:01:27 ----D---- C:\rsit
2009-01-01 18:09:14 ----D---- C:\Program Files\Trend Micro
2008-12-19 08:53:28 ----A---- C:\Windows\system32\mshtml.dll
2008-12-11 03:03:47 ----SHD---- C:\Config.Msi
2008-12-11 03:02:22 ----A---- C:\Windows\system32\tzres.dll
2008-12-10 22:41:19 ----A---- C:\Windows\system32\gdi32.dll
2008-12-10 22:41:13 ----A---- C:\Windows\system32\Apphlpdm.dll
2008-12-10 22:41:12 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2008-12-10 22:41:02 ----A---- C:\Windows\system32\shell32.dll
2008-12-10 22:40:48 ----A---- C:\Windows\explorer.exe
2008-12-10 22:40:41 ----A---- C:\Windows\system32\urlmon.dll
2008-12-10 22:40:41 ----A---- C:\Windows\system32\ieframe.dll
2008-12-10 22:40:40 ----A---- C:\Windows\system32\wininet.dll
2008-12-10 22:40:40 ----A---- C:\Windows\system32\mstime.dll
2008-12-10 22:40:39 ----A---- C:\Windows\system32\jsproxy.dll
2008-12-10 22:40:39 ----A---- C:\Windows\system32\iertutil.dll
2008-12-10 22:40:34 ----A---- C:\Windows\system32\mf.dll
2008-12-10 22:40:33 ----A---- C:\Windows\system32\WMVCORE.DLL
2008-12-10 22:40:32 ----A---- C:\Windows\system32\WMNetMgr.dll
2008-12-10 22:40:32 ----A---- C:\Windows\system32\logagent.exe

======List of files/folders modified in the last 1 months======

2009-01-03 11:22:52 ----D---- C:\Windows\Temp
2009-01-03 11:19:41 ----D---- C:\Windows\Prefetch
2009-01-03 11:18:48 ----SHD---- C:\System Volume Information
2009-01-03 11:12:01 ----D---- C:\Windows\System32
2009-01-03 11:12:01 ----D---- C:\Windows\inf
2009-01-03 11:12:01 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-01-03 11:06:20 ----D---- C:\MDT
2009-01-01 18:09:14 ----RD---- C:\Program Files
2008-12-30 18:21:40 ----D---- C:\Users\Robert\AppData\Roaming\Corel
2008-12-19 08:53:48 ----D---- C:\Windows\winsxs
2008-12-19 08:53:39 ----D---- C:\Windows\system32\catroot2
2008-12-19 08:53:39 ----D---- C:\Windows\system32\catroot
2008-12-17 22:55:31 ----SD---- C:\Windows\Downloaded Program Files
2008-12-11 03:30:53 ----D---- C:\Windows\rescache
2008-12-11 03:10:27 ----D---- C:\Windows\AppPatch
2008-12-11 03:10:27 ----D---- C:\Program Files\Windows Mail
2008-12-11 03:10:26 ----D---- C:\Windows\system32\en-US
2008-12-11 03:10:26 ----D---- C:\Windows
2008-12-11 03:05:01 ----SHD---- C:\Windows\Installer
2008-12-11 03:04:57 ----D---- C:\ProgramData\Microsoft Help
2008-12-09 17:24:37 ----A---- C:\Windows\system32\mrt.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 CSC;Offline Files Driver; C:\Windows\system32\drivers\csc.sys [2008-01-18 350720]
R1 DLACDBHM;DLACDBHM; C:\Windows\System32\Drivers\DLACDBHM.SYS [2007-02-08 12856]
R1 DLARTL_M;DLARTL_M; C:\Windows\System32\Drivers\DLARTL_M.SYS [2007-02-08 28120]
R1 FWCore;FWCore; C:\Windows\system32\drivers\fwcore.sys [2008-04-23 58456]
R2 DLABMFSM;DLABMFSM; C:\Windows\System32\DLA\DLABMFSM.SYS [2006-10-26 35096]
R2 DLABOIOM;DLABOIOM; C:\Windows\System32\DLA\DLABOIOM.SYS [2006-10-26 32472]
R2 DLADResM;DLADResM; C:\Windows\System32\DLA\DLADResM.SYS [2006-10-26 9400]
R2 DLAIFS_M;DLAIFS_M; C:\Windows\System32\DLA\DLAIFS_M.SYS [2006-10-26 104536]
R2 DLAOPIOM;DLAOPIOM; C:\Windows\System32\DLA\DLAOPIOM.SYS [2006-10-26 26296]
R2 DLAPoolM;DLAPoolM; C:\Windows\System32\DLA\DLAPoolM.SYS [2006-10-26 14520]
R2 DLAUDF_M;DLAUDF_M; C:\Windows\System32\DLA\DLAUDF_M.SYS [2006-10-26 97848]
R2 DLAUDFAM;DLAUDFAM; C:\Windows\System32\DLA\DLAUDFAM.SYS [2006-10-26 94648]
R2 DRVNDDM;DRVNDDM; C:\Windows\System32\Drivers\DRVNDDM.SYS [2007-02-09 51768]
R2 LBeepKE;LBeepKE; C:\Windows\System32\Drivers\LBeepKE.sys [2006-05-24 3712]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2006-08-04 8192]
R3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\Windows\system32\DRIVERS\e1e6032.sys [2008-01-18 220672]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2006-10-18 986624]
R3 HSXHWBS2;HSXHWBS2; C:\Windows\system32\DRIVERS\HSXHWBS2.sys [2006-10-18 258048]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2007-02-09 1476608]
R3 LHidKe;Logitech SetPoint HID Mouse Filter Driver; C:\Windows\system32\DRIVERS\LHidKE.Sys [2006-05-10 27264]
R3 LMouKE;Logitech SetPoint Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouKE.Sys [2006-05-10 71680]
R3 RimVSerPort;RIM Virtual Serial Port v2; C:\Windows\system32\DRIVERS\RimSerial.sys [2007-01-18 26496]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2008-01-18 8192]
R3 STHDA;SigmaTel High Definition Audio CODEC; C:\Windows\system32\drivers\stwrt.sys [2007-02-07 647680]
R3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2006-10-18 659968]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-18 5632]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-18 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-18 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-18 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-18 6016]
S3 R300;R300; C:\Windows\system32\DRIVERS\atikmdag.sys [2006-11-02 2028032]
S3 RimUsb;BlackBerry Device; C:\Windows\System32\Drivers\RimUsb.sys [2006-11-07 22272]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2006-11-02 14848]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys []
S3 winusb;WinUSB Service; C:\Windows\system32\DRIVERS\WinUSB.SYS [2008-01-18 31616]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-19 39936]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-18 83328]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 BcmSqlStartupSvc;Business Contact Manager SQL Server Startup Service; C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe [2008-01-11 30312]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 CarboniteService;CarboniteService; C:\Program Files\Carbonite\Carbonite Backup\carboniteservice.exe [2008-06-13 1700288]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 eac_notifysvc;eAcceleration Notification Service; C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_svc.exe [2008-09-03 111952]
R2 eac_productsvc;eAcceleration Product Manager Service; C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_productsvc.exe [2008-10-22 263504]
R2 FWService;FWService; C:\Program Files\eAcceleration\Firewall\FWService.exe [2008-04-23 337232]
R2 GoToMyPC;GoToMyPC; C:\Program Files\Citrix\GoToMyPC\g2svc.exe [2008-09-30 258856]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2006-09-29 81920]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 SQLBrowser;SQL Server Browser; c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2007-02-10 242544]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2007-02-10 89968]
R2 StopSign Update Manager;StopSign Update Manager; C:\Program Files\Common Files\eAcceleration\eacsvc.exe [2008-04-15 103760]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2006-08-04 386560]
R3 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2008-02-26 29183504]
S2 Roxio Upnp Server 9;Roxio Upnp Server 9; C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe [2007-04-22 359160]
S2 RoxLiveShare9;LiveShare P2P Server 9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe [2007-04-23 310008]
S2 RoxWatch9;Roxio Hard Drive Watcher 9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe [2007-04-23 166648]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\Windows\system32\fxssvc.exe [2008-01-19 523776]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Roxio UPnP Renderer 9;Roxio UPnP Renderer 9; C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe [2007-04-22 88824]
S3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2007-04-23 1010424]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2006-09-14 73728]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2008-01-19 21504]
S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\Windows\system32\wbengine.exe [2008-01-19 917504]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2005-10-14 45272]

-----------------EOF-----------------
Logfile of random's system information tool 1.05 (written by random/random)
Run by Robert at 2009-01-03 11:22:50
Microsoft® Windows Vista™ Business Service Pack 1
System drive C: has 90 GB (63%) free of 142 GB
Total RAM: 2037 MB (37% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 11:22:53 AM, on 1/3/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe
C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe
C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe
C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe
C:\Windows\sttray.exe
C:\Program Files\eAcceleration\OnAccess\onaccess.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\eFax Messenger 4.3\J2GTray.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe
C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.EXE
C:\Program Files\eAcceleration\Station\station_bk.exe
C:\Program Files\Microsoft Office\Office12\OUTLOOK.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEUser.exe
C:\Users\Robert\Desktop\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Robert.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://att.my.yahoo.com/p/3.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer provided by Dell
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
F2 - REG:system.ini: UserInit=C:\Windows\system32\Userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [Corel Photo Downloader] C:\Program Files\Corel\Corel Snapfire Plus\PhotoDownloader.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [PDVDDXSrv] "C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [eFax 4.3] "C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe" /R
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files\ScanSoft\PaperPort\Ereg\ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\ereg.ini"
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKLM\..\Run: [LVCOMSX] "C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe"
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [ECenter] c:\dell\E-Center\EULALauncher.exe
O4 - HKLM\..\Run: [PDF4 Registry Controller] "C:\Program Files\ScanSoft\PDF Professional 4.0\RegistryController.exe"
O4 - HKLM\..\Run: [ScanSoft PDF Professional 4-reminder] "C:\Program Files\ScanSoft\PDF Professional 4.0\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PDF Professional\4\Ereg\Ereg.ini
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [SoftwareStation] "C:\Program Files\eAcceleration\Station\station.exe" /b Startup
O4 - HKLM\..\Run: [webscan] "C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe" -k
O4 - HKLM\..\Run: [Carbonite Backup] C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Performance Center] C:\Program Files\Ascentive\Performance Center\APCMain.exe -m
O4 - HKLM\..\Run: [PC SpeedScan Pro] C:\Program Files\Ascentive\PC SpeedScan Pro\PCSpeedScan.exe -m
O4 - HKLM\..\Run: [PC ScanAndSweep] C:\Program Files\Ascentive\PC ScanAndSweep\PCScanAndSweep.exe -m
O4 - HKLM\..\Run: [SigmatelSysTrayApp] sttray.exe
O4 - HKLM\..\Run: [GoToMyPC] "C:\Program Files\Citrix\GoToMyPC\g2svc.exe" -logon
O4 - HKLM\..\Run: [OnAccess] "C:\Program Files\eAcceleration\OnAccess\onaccess.exe" -erk
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Startup: PaperMaster Live Menu 7.0.lnk = C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe
O4 - Global Startup: Desktop Manager.lnk = C:\Program Files\Research In Motion\BlackBerry\DesktopMgr.exe
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O4 - Global Startup: eFax 4.3.lnk = C:\Program Files\eFax Messenger 4.3\J2GTray.exe
O4 - Global Startup: Logitech SetPoint.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Open with ScanSoft PDF Converter 4.1 - res://C:\Program Files\ScanSoft\PDF Professional 4.0\cnvres_eng.dll /100
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {94B82441-A413-4E43-8422-D49930E69764} (TLIEFlashObj Class) - https://chat1.j2.com/Media/VisitorchatEnu/TLIEFlash.CAB
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {F5131C24-E56D-11CF-B78A-444553540000} (Ikonic Menu Control) - https://wc.wachovia.com/common/cab/ikcntrls.cab
O18 - Protocol: bw+0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O23 - Service: CarboniteService - Carbonite, Inc. (www.carbonite.com) - C:\Program Files\Carbonite\Carbonite Backup\carboniteservice.exe
O23 - Service: eAcceleration Notification Service (eac_notifysvc) - eAcceleration Corp - C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_svc.exe
O23 - Service: eAcceleration Product Manager Service (eac_productsvc) - eAcceleration Corp - C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_productsvc.exe
O23 - Service: FWService - eAcceleration Corp - C:\Program Files\eAcceleration\Firewall\FWService.exe
O23 - Service: GoToMyPC - Citrix Online, a division of Citrix Systems, Inc. - C:\Program Files\Citrix\GoToMyPC\g2svc.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Roxio UPnP Renderer 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe
O23 - Service: Roxio Upnp Server 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe
O23 - Service: LiveShare P2P Server 9 (RoxLiveShare9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: StopSign Update Manager - eAcceleration - C:\Program Files\Common Files\eAcceleration\eacsvc.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 22529 bytes

======Scheduled tasks folder======

C:\Windows\tasks\User_Feed_Synchronization-{CB66F83E-71A1-4728-8C2D-0272E93ADB3A}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2008-03-17 370296]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - c:\Program Files\Java\jre1.6.0\bin\ssv.dll [2007-05-02 501384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA6319C0-31B7-401E-A518-A07C3DB8F777}]
CBrowserHelperObject Object - C:\Program Files\BAE\BAE.dll [2006-11-17 98304]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2007-02-09 98304]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2007-02-09 106496]
"Persistence"=C:\Windows\system32\igfxpers.exe [2007-02-09 81920]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2006-09-29 151552]
"Corel Photo Downloader"=C:\Program Files\Corel\Corel Snapfire Plus\PhotoDownloader.exe []
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2006-09-11 86960]
"PDVDDXSrv"=C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe [2006-10-20 118784]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2007-08-30 205480]
"eFax 4.3"=C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe [2007-03-06 116224]
"SSBkgdUpdate"=C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"PPort11reminder"=C:\Program Files\ScanSoft\PaperPort\Ereg\ereg.exe [2006-03-09 1404928]
"PaperPort PTD"=C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe [2006-05-05 36864]
"MskAgentexe"=C:\Program Files\McAfee\MSK\MskAgent.exe []
"LVCOMSX"=C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe [2006-05-17 243248]
"LogitechCommunicationsManager"=C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe [2006-05-17 480816]
"Logitech Hardware Abstraction Layer"=C:\Windows\KHALMNPR.EXE [2006-05-10 94208]
"IndexSearch"=C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe [2006-05-05 40960]
"ECenter"=c:\dell\E-Center\EULALauncher.exe [2006-11-17 17920]
"PDF4 Registry Controller"=C:\Program Files\ScanSoft\PDF Professional 4.0\RegistryController.exe [2007-01-16 46632]
"ScanSoft PDF Professional 4-reminder"=C:\Program Files\ScanSoft\PDF Professional 4.0\Ereg\Ereg.exe [2006-11-16 35368]
"TkBellExe"=C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2008-03-17 185896]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2008-03-28 413696]
""= []
"RoxWatchTray"=C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe [2007-04-23 228088]
"SoftwareStation"=C:\Program Files\eAcceleration\Station\station.exe [2008-04-15 173392]
"webscan"=C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe [2008-05-14 763232]
"Carbonite Backup"=C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe [2008-06-13 600000]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
"Performance Center"=C:\Program Files\Ascentive\Performance Center\APCMain.exe -m []
"PC SpeedScan Pro"=C:\Program Files\Ascentive\PC SpeedScan Pro\PCSpeedScan.exe -m []
"PC ScanAndSweep"=C:\Program Files\Ascentive\PC ScanAndSweep\PCScanAndSweep.exe -m []
"SigmatelSysTrayApp"=C:\Windows\sttray.exe [2007-02-07 303104]
"GoToMyPC"=C:\Program Files\Citrix\GoToMyPC\g2svc.exe [2008-09-30 258856]
"OnAccess"=C:\Program Files\eAcceleration\OnAccess\onaccess.exe [2008-06-09 238944]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LDM"=C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe [2007-05-10 32768]
"ISUSPM"=C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [2007-08-30 205480]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Desktop Manager.lnk - C:\Program Files\Research In Motion\BlackBerry\DesktopMgr.exe
Digital Line Detect.lnk - C:\Program Files\Digital Line Detect\DLG.exe
eFax 4.3.lnk - C:\Program Files\eFax Messenger 4.3\J2GTray.exe
Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\SetPoint.exe
WinZip Quick Pick.lnk - C:\Program Files\WinZip\WZQKPICK.EXE

C:\Users\Robert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
PaperMaster Live Menu 7.0.lnk - C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2007-02-09 212992]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{42DD0873-5FA9-465D-90DE-0826020416A5}"=C:\Program Files\eAcceleration\OnAccess\onaccess_hk32.dll [2008-06-09 165216]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"EnableShellExecuteHooks"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"EnableShellExecuteHooks"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e5456dfb-e539-11dc-a27e-0019d1469d16}]
shell\AutoRun\command - G:\LaunchU3.exe


======List of files/folders created in the last 1 months======

2009-01-02 09:01:27 ----D---- C:\rsit
2009-01-01 18:09:14 ----D---- C:\Program Files\Trend Micro
2008-12-19 08:53:28 ----A---- C:\Windows\system32\mshtml.dll
2008-12-11 03:03:47 ----SHD---- C:\Config.Msi
2008-12-11 03:02:22 ----A---- C:\Windows\system32\tzres.dll
2008-12-10 22:41:19 ----A---- C:\Windows\system32\gdi32.dll
2008-12-10 22:41:13 ----A---- C:\Windows\system32\Apphlpdm.dll
2008-12-10 22:41:12 ----A---- C:\Windows\system32\GameUXLegacyGDFs.dll
2008-12-10 22:41:02 ----A---- C:\Windows\system32\shell32.dll
2008-12-10 22:40:48 ----A---- C:\Windows\explorer.exe
2008-12-10 22:40:41 ----A---- C:\Windows\system32\urlmon.dll
2008-12-10 22:40:41 ----A---- C:\Windows\system32\ieframe.dll
2008-12-10 22:40:40 ----A---- C:\Windows\system32\wininet.dll
2008-12-10 22:40:40 ----A---- C:\Windows\system32\mstime.dll
2008-12-10 22:40:39 ----A---- C:\Windows\system32\jsproxy.dll
2008-12-10 22:40:39 ----A---- C:\Windows\system32\iertutil.dll
2008-12-10 22:40:34 ----A---- C:\Windows\system32\mf.dll
2008-12-10 22:40:33 ----A---- C:\Windows\system32\WMVCORE.DLL
2008-12-10 22:40:32 ----A---- C:\Windows\system32\WMNetMgr.dll
2008-12-10 22:40:32 ----A---- C:\Windows\system32\logagent.exe

======List of files/folders modified in the last 1 months======

2009-01-03 11:22:52 ----D---- C:\Windows\Temp
2009-01-03 11:19:41 ----D---- C:\Windows\Prefetch
2009-01-03 11:18:48 ----SHD---- C:\System Volume Information
2009-01-03 11:12:01 ----D---- C:\Windows\System32
2009-01-03 11:12:01 ----D---- C:\Windows\inf
2009-01-03 11:12:01 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-01-03 11:06:20 ----D---- C:\MDT
2009-01-01 18:09:14 ----RD---- C:\Program Files
2008-12-30 18:21:40 ----D---- C:\Users\Robert\AppData\Roaming\Corel
2008-12-19 08:53:48 ----D---- C:\Windows\winsxs
2008-12-19 08:53:39 ----D---- C:\Windows\system32\catroot2
2008-12-19 08:53:39 ----D---- C:\Windows\system32\catroot
2008-12-17 22:55:31 ----SD---- C:\Windows\Downloaded Program Files
2008-12-11 03:30:53 ----D---- C:\Windows\rescache
2008-12-11 03:10:27 ----D---- C:\Windows\AppPatch
2008-12-11 03:10:27 ----D---- C:\Program Files\Windows Mail
2008-12-11 03:10:26 ----D---- C:\Windows\system32\en-US
2008-12-11 03:10:26 ----D---- C:\Windows
2008-12-11 03:05:01 ----SHD---- C:\Windows\Installer
2008-12-11 03:04:57 ----D---- C:\ProgramData\Microsoft Help
2008-12-09 17:24:37 ----A---- C:\Windows\system32\mrt.exe

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 CSC;Offline Files Driver; C:\Windows\system32\drivers\csc.sys [2008-01-18 350720]
R1 DLACDBHM;DLACDBHM; C:\Windows\System32\Drivers\DLACDBHM.SYS [2007-02-08 12856]
R1 DLARTL_M;DLARTL_M; C:\Windows\System32\Drivers\DLARTL_M.SYS [2007-02-08 28120]
R1 FWCore;FWCore; C:\Windows\system32\drivers\fwcore.sys [2008-04-23 58456]
R2 DLABMFSM;DLABMFSM; C:\Windows\System32\DLA\DLABMFSM.SYS [2006-10-26 35096]
R2 DLABOIOM;DLABOIOM; C:\Windows\System32\DLA\DLABOIOM.SYS [2006-10-26 32472]
R2 DLADResM;DLADResM; C:\Windows\System32\DLA\DLADResM.SYS [2006-10-26 9400]
R2 DLAIFS_M;DLAIFS_M; C:\Windows\System32\DLA\DLAIFS_M.SYS [2006-10-26 104536]
R2 DLAOPIOM;DLAOPIOM; C:\Windows\System32\DLA\DLAOPIOM.SYS [2006-10-26 26296]
R2 DLAPoolM;DLAPoolM; C:\Windows\System32\DLA\DLAPoolM.SYS [2006-10-26 14520]
R2 DLAUDF_M;DLAUDF_M; C:\Windows\System32\DLA\DLAUDF_M.SYS [2006-10-26 97848]
R2 DLAUDFAM;DLAUDFAM; C:\Windows\System32\DLA\DLAUDFAM.SYS [2006-10-26 94648]
R2 DRVNDDM;DRVNDDM; C:\Windows\System32\Drivers\DRVNDDM.SYS [2007-02-09 51768]
R2 LBeepKE;LBeepKE; C:\Windows\System32\Drivers\LBeepKE.sys [2006-05-24 3712]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2006-08-04 8192]
R3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\Windows\system32\DRIVERS\e1e6032.sys [2008-01-18 220672]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2006-10-18 986624]
R3 HSXHWBS2;HSXHWBS2; C:\Windows\system32\DRIVERS\HSXHWBS2.sys [2006-10-18 258048]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2007-02-09 1476608]
R3 LHidKe;Logitech SetPoint HID Mouse Filter Driver; C:\Windows\system32\DRIVERS\LHidKE.Sys [2006-05-10 27264]
R3 LMouKE;Logitech SetPoint Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouKE.Sys [2006-05-10 71680]
R3 RimVSerPort;RIM Virtual Serial Port v2; C:\Windows\system32\DRIVERS\RimSerial.sys [2007-01-18 26496]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2008-01-18 8192]
R3 STHDA;SigmaTel High Definition Audio CODEC; C:\Windows\system32\drivers\stwrt.sys [2007-02-07 647680]
R3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2006-10-18 659968]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-18 5632]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-18 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-18 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-18 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-18 6016]
S3 R300;R300; C:\Windows\system32\DRIVERS\atikmdag.sys [2006-11-02 2028032]
S3 RimUsb;BlackBerry Device; C:\Windows\System32\Drivers\RimUsb.sys [2006-11-07 22272]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2006-11-02 14848]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys []
S3 winusb;WinUSB Service; C:\Windows\system32\DRIVERS\WinUSB.SYS [2008-01-18 31616]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-19 39936]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-18 83328]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 BcmSqlStartupSvc;Business Contact Manager SQL Server Startup Service; C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe [2008-01-11 30312]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 CarboniteService;CarboniteService; C:\Program Files\Carbonite\Carbonite Backup\carboniteservice.exe [2008-06-13 1700288]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 eac_notifysvc;eAcceleration Notification Service; C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_svc.exe [2008-09-03 111952]
R2 eac_productsvc;eAcceleration Product Manager Service; C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_productsvc.exe [2008-10-22 263504]
R2 FWService;FWService; C:\Program Files\eAcceleration\Firewall\FWService.exe [2008-04-23 337232]
R2 GoToMyPC;GoToMyPC; C:\Program Files\Citrix\GoToMyPC\g2svc.exe [2008-09-30 258856]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2006-09-29 81920]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 SQLBrowser;SQL Server Browser; c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2007-02-10 242544]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2007-02-10 89968]
R2 StopSign Update Manager;StopSign Update Manager; C:\Program Files\Common Files\eAcceleration\eacsvc.exe [2008-04-15 103760]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2006-08-04 386560]
R3 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2008-02-26 29183504]
S2 Roxio Upnp Server 9;Roxio Upnp Server 9; C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe [2007-04-22 359160]
S2 RoxLiveShare9;LiveShare P2P Server 9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe [2007-04-23 310008]
S2 RoxWatch9;Roxio Hard Drive Watcher 9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe [2007-04-23 166648]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\Windows\system32\fxssvc.exe [2008-01-19 523776]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Roxio UPnP Renderer 9;Roxio UPnP Renderer 9; C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe [2007-04-22 88824]
S3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2007-04-23 1010424]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2006-09-14 73728]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2008-01-19 21504]
S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\Windows\system32\wbengine.exe [2008-01-19 917504]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2005-10-14 45272]

-----------------EOF-----------------
refco48
Regular Member
 
Posts: 16
Joined: January 1st, 2009, 8:20 pm

Re: "MSN Featured" Spam - Cannot get rid of at ALL!!!

Unread postby Sharagoz » January 3rd, 2009, 3:56 pm

How about this?

Yep, that did it :thumbright:

I need to see an uninstall list
  • Launch Hijackthis
  • Click the Open the Misc Tools section button
  • Click the Open Uninstall Manager button.
  • Click the Save list button.
  • Include this log in your next reply

Is eAccelration StopSign an Anti-Virus application you have purchased?
User avatar
Sharagoz
Retired Graduate
 
Posts: 985
Joined: February 22nd, 2008, 4:31 pm
Location: Norway

Re: "MSN Featured" Spam - Cannot get rid of at ALL!!!

Unread postby refco48 » January 3rd, 2009, 4:29 pm

Thanks so much so far - hope this helps. Can't beleive what people do-certainly is not helping them sell the stuff they are sending over the ads for. Yes, I purchased the eAccaceraltion program - is it worth it - maybe not with this stuff on it.

2007 Microsoft Office Suite Service Pack 1 (SP1)
2007 Microsoft Office Suite Service Pack 1 (SP1)
2007 Microsoft Office Suite Service Pack 1 (SP1)
2007 Microsoft Office Suite Service Pack 1 (SP1)
2007 Microsoft Office Suite Service Pack 1 (SP1)
2007 Microsoft Office Suite Service Pack 1 (SP1)
2007 Microsoft Office Suite Service Pack 1 (SP1)
2007 Microsoft Office Suite Service Pack 1 (SP1)
2007 Microsoft Office Suite Service Pack 1 (SP1)
2007 Microsoft Office Suite Service Pack 1 (SP1)
2007 Microsoft Office Suite Service Pack 1 (SP1)
Adobe AIR
Adobe AIR
Adobe Flash Player 10 ActiveX
Adobe Reader 9
BlackBerry Desktop Software 4.2.2
BlackBerry Desktop Software 4.2.2
Business Contact Manager for Outlook 2007 SP1
Business Contact Manager for Outlook 2007 SP1
Carbonite
Compatibility Pack for the 2007 Office system
Conexant D850 PCI V.92 Modem
Corel Paint Shop Pro Photo XI
Corel Snapfire Plus
Dell System Customization Wizard
Digital Line Detect
DivX Codec
DivX Content Uploader
DivX Converter
DivX Player
DivX Web Player
Documentation & Support Launcher
eFax Messenger 4.3
Games, Music, & Photos Launcher
GDR 3068 for SQL Server Database Services 2005 ENU (KB948109)
GoToMyPC
HijackThis 2.0.2
HP Driver Diagnostics
Intel(R) Graphics Media Accelerator Driver
Intel(R) Matrix Storage Manager
Intellisync® for Yahoo!
Java(TM) SE Runtime Environment 6
KhalSetup
Logitech Communications Manager
Logitech Desktop Messenger
Logitech SetPoint
Microsoft Office 2003 Web Components
Microsoft Office Accounting 2007
Microsoft Office Accounting 2007
Microsoft Office Excel MUI (English) 2007
Microsoft Office Outlook MUI (English) 2007
Microsoft Office PowerPoint MUI (English) 2007
Microsoft Office Proof (English) 2007
Microsoft Office Proof (French) 2007
Microsoft Office Proof (Spanish) 2007
Microsoft Office Proofing (English) 2007
Microsoft Office Publisher MUI (English) 2007
Microsoft Office Shared MUI (English) 2007
Microsoft Office Shared Setup Metadata MUI (English) 2007
Microsoft Office Small Business 2007
Microsoft Office Small Business 2007
Microsoft Office Small Business Connectivity Components
Microsoft Office Word MUI (English) 2007
Microsoft Save as PDF or XPS Add-in for 2007 Microsoft Office programs
Microsoft Silverlight
Microsoft SQL Server 2005
Microsoft SQL Server 2005 Express Edition (MSSMLBIZ)
Microsoft SQL Server Native Client
Microsoft SQL Server Setup Support Files (English)
Microsoft SQL Server VSS Writer
Microsoft Visual C++ 2005 Redistributable
Modem Diagnostic Tool
MSXML 4.0 SP2 (KB927978)
MSXML 4.0 SP2 (KB936181)
MSXML 4.0 SP2 (KB941833)
MSXML 4.0 SP2 (KB954430)
NetWaiting
PaperMaster Pro 7.0
PC ScanAndSweep
PC SpeedScan Pro
PowerDVD
QuickTime
RealPlayer
Rhapsody Player Engine
Rhapsody Player Engine
Roxio Creator BDAV Plugin
Roxio Creator Copy
Roxio Creator Tools
Roxio Drag-to-Disc
Roxio Express Labeler
Roxio Media Manager
Roxio Update Manager
ScanSoft PaperPort 11
ScanSoft PDF Professional 4
Security Update for 2007 Microsoft Office System (KB951550)
Security Update for 2007 Microsoft Office System (KB951944)
Security Update for 2007 Microsoft Office System (KB958439)
Security Update for Microsoft Office Excel 2007 (KB958437)
Security Update for Microsoft Office PowerPoint 2007 (KB951338)
Security Update for Microsoft Office Publisher 2007 (KB950114)
Security Update for Microsoft Office system 2007 (KB954326)
Security Update for Microsoft Office system 2007 (KB956828)
Security Update for Microsoft Office Word 2007 (KB956358)
Security Update for Visio 2007 (KB947590)
SigmaTel Audio
Sonic Activation Module
StopSign by eAcceleration
Uniblue RegistryBooster 2
Update for Microsoft Office 2007 Help for Common Features (KB957244)
Update for Microsoft Office Excel 2007 Help (KB957242)
Update for Microsoft Office Outlook 2007 (KB952142)
Update for Microsoft Office Outlook 2007 Help (KB957246)
Update for Microsoft Office PowerPoint 2007 Help (KB957247)
Update for Microsoft Office Publisher 2007 Help (KB957249)
Update for Microsoft Office Word 2007 Help (KB957252)
Update for Microsoft Script Editor Help (KB957253)
Update for Office 2007 (KB946691)
Update for Outlook 2007 Junk Email Filter (kb958619)
URL Assistant
User's Guides
WinZip 11.1
refco48
Regular Member
 
Posts: 16
Joined: January 1st, 2009, 8:20 pm

Re: "MSN Featured" Spam - Cannot get rid of at ALL!!!

Unread postby Sharagoz » January 5th, 2009, 3:20 pm

Yes, I purchased the eAccaceraltion program - is it worth it - maybe not with this stuff on it.

I'll get back to you on that.

I have prepared a fix for you and posted it for approval.
As I am only an undergrad at this uni I need to have all my fixes approved by a teacher before they can be posted.
The downside with this is that things take a little more time. The upside is that you'll have two set of eyes checking your logs, so you can be sure nothing will be missed, and the teachers here are among the best malware removers you'll find anywhere, online or not, so you can feel confident you are in the right hands.
The initial waiting time can take up to 48hrs, depending on how busy the teachers are, so please stay patient.
Once a teacher finds a free slot we'll be on our way to a clean computer, and the subsequent replies will usually be faster.
In the top left corner of your opening post there is a link called Subscribe topic. If you click it you will be subscribed to this thread and will receive instant email notification of new replies. For most people this works better than periodically checking back here to see if there's any new posts.
User avatar
Sharagoz
Retired Graduate
 
Posts: 985
Joined: February 22nd, 2008, 4:31 pm
Location: Norway

Re: "MSN Featured" Spam - Cannot get rid of at ALL!!!

Unread postby refco48 » January 8th, 2009, 11:19 am

48 hours and counting. Not complaining just want to make sure i have not 'lost my place in line'. Thanks.
refco48
Regular Member
 
Posts: 16
Joined: January 1st, 2009, 8:20 pm

Re: "MSN Featured" Spam - Cannot get rid of at ALL!!!

Unread postby Sharagoz » January 8th, 2009, 3:57 pm

Hi, you are first in line as we speak, so it shouldnt be too long now
User avatar
Sharagoz
Retired Graduate
 
Posts: 985
Joined: February 22nd, 2008, 4:31 pm
Location: Norway

Re: "MSN Featured" Spam - Cannot get rid of at ALL!!!

Unread postby Sharagoz » January 10th, 2009, 3:20 pm

1) Disable Windows Defender
You need to temporarily disable windows defender so it doesn't intefere with the tools we use to clean your computer.
  • Open Windows Defender
  • Select Tools and then General Settings
  • Scroll down, and under Real Time Protection Options uncheck Turn on real-time protection
  • Select Save
Note:
We'll re-enable Windows Defender after we're done cleaning your computer.

2) Uninstall through Add/Remove Programs
  • Press the windows key and the R key at the same time to open the Run dialog box
    (The windows key is usually located to the left of the space bar and is labled with a windows logo)
  • A dialog box will Open. Type appwiz.cpl and press enter
  • This will take you to Add/Remove Programs
    (Optionally you can locate Add/Remove Programs through the control panel)
  • Locate and uninstall the below programs if they are present:

    PC ScanAndSweep
    PC SpeedScan Pro

Note:
You uninstall by selecting the program and then clicking the button named Remove or Uninstall

3) Download and run CCleaner
  • Download CCleaner from here
  • Install and launch CCleaner
  • Click the Options button and select Advanced
  • Uncheck the option "Only delete files in Windows Temp folders older than 48 hours"
  • Click the Cleaner button
  • If you wish to avoid being logged out of all websites you're currently logged into, make sure Cookies are unchecked for the web browser(s) you use. Internet Explorer is located under the Windows tab, other browsers are located under the Applications tab
  • Click the Run Cleaner button at the bottom right of the window
  • Click Yes at the prompt and let the cleaner finish
Note:
If there are more than one user account on this computer, run CCleaner using this procedure on all other user accounts as well

4) Download and Run Malwarebytes Anti-Malware
  • Download Malwarebytes' Anti-Malware and install the program
  • At the end, make sure a checkmark is placed next to:
    o Update Malwarebytes' Anti-Malware
    o Launch Malwarebytes' Anti-Malware
  • Click Finish
  • If an update is found, it will download and install the latest version
  • Once the program has loaded, click Check for updates
  • Click select Perform full scan, then click Scan to start scanning
  • When the scan is complete, click OK, then Show Results to view the results
  • Make sure that everything is checked, and click Remove Selected
  • When completed, a log will open in Notepad. Include this log in your next reply
Note:
If you for some reason lose the log, it can be retrieved manually from this location:
C:\Documents and Settings\<your username>\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\mbam-log-date (time).txt

5) Get new RSIT log
  • Delete this folder: C:\rsit
  • Double click on RSIT.exe (on your desktop) to run RSIT
  • Click Continue at the disclaimer screen to start the scanner
  • Once it has finished, two logs will open:
    • log.txt will be opened maximized
    • info.txt will be opened minimized
  • Post the contents of both log.txt and info.txt in your next reply

Logs I need:
Malwarebytes log
Both RSIT logs

Question:
You have GoToMyPC installed. This is software used to remotely control a PC. Did you install this yourself?
User avatar
Sharagoz
Retired Graduate
 
Posts: 985
Joined: February 22nd, 2008, 4:31 pm
Location: Norway

Re: "MSN Featured" Spam - Cannot get rid of at ALL!!!

Unread postby refco48 » January 11th, 2009, 2:29 pm

Logfile of random's system information tool 1.05 (written by random/random)
Run by Robert at 2009-01-11 12:25:05
Microsoft® Windows Vista™ Business Service Pack 1
System drive C: has 92 GB (65%) free of 142 GB
Total RAM: 2037 MB (46% free)

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 12:25:10 PM, on 1/11/2009
Platform: Windows Vista SP1 (WinNT 6.00.1905)
MSIE: Internet Explorer v7.00 (7.00.6001.18000)
Boot mode: Normal

Running processes:
C:\Windows\system32\taskeng.exe
C:\Windows\system32\Dwm.exe
C:\Windows\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Windows\System32\hkcmd.exe
C:\Windows\System32\igfxpers.exe
C:\Program Files\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe
C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe
C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe
C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe
C:\Windows\sttray.exe
C:\Program Files\eAcceleration\OnAccess\onaccess.exe
C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe
C:\Program Files\Windows Media Player\wmpnscfg.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\eFax Messenger 4.3\J2GTray.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe
C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.EXE
C:\Program Files\eAcceleration\Station\station_bk.exe
C:\Program Files\Internet Explorer\IEUser.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Yahoo!\Companion\Installs\cpn\ytbb.exe
C:\Users\Robert\Desktop\RSIT.exe
C:\Program Files\Trend Micro\HijackThis\Robert.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://att.my.yahoo.com/p/3.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer provided by Dell
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
F2 - REG:system.ini: UserInit=C:\Windows\system32\Userinit.exe
O1 - Hosts: ::1 localhost
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [Windows Defender] %ProgramFiles%\Windows Defender\MSASCui.exe -hide
O4 - HKLM\..\Run: [IgfxTray] C:\Windows\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\Windows\system32\hkcmd.exe
O4 - HKLM\..\Run: [Persistence] C:\Windows\system32\igfxpers.exe
O4 - HKLM\..\Run: [IAAnotif] "C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe"
O4 - HKLM\..\Run: [Corel Photo Downloader] C:\Program Files\Corel\Corel Snapfire Plus\PhotoDownloader.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [PDVDDXSrv] "C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [eFax 4.3] "C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe" /R
O4 - HKLM\..\Run: [SSBkgdUpdate] "C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe" -Embedding -boot
O4 - HKLM\..\Run: [PPort11reminder] "C:\Program Files\ScanSoft\PaperPort\Ereg\ereg.exe" -r "C:\ProgramData\ScanSoft\PaperPort\11\Config\Ereg\ereg.ini"
O4 - HKLM\..\Run: [PaperPort PTD] "C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe"
O4 - HKLM\..\Run: [MskAgentexe] C:\Program Files\McAfee\MSK\MskAgent.exe
O4 - HKLM\..\Run: [LVCOMSX] "C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe"
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [IndexSearch] "C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe"
O4 - HKLM\..\Run: [ECenter] c:\dell\E-Center\EULALauncher.exe
O4 - HKLM\..\Run: [PDF4 Registry Controller] "C:\Program Files\ScanSoft\PDF Professional 4.0\RegistryController.exe"
O4 - HKLM\..\Run: [ScanSoft PDF Professional 4-reminder] "C:\Program Files\ScanSoft\PDF Professional 4.0\Ereg\Ereg.exe" -r "C:\ProgramData\ScanSoft\PDF Professional\4\Ereg\Ereg.ini
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [RoxWatchTray] "C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe"
O4 - HKLM\..\Run: [SoftwareStation] "C:\Program Files\eAcceleration\Station\station.exe" /b Startup
O4 - HKLM\..\Run: [webscan] "C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe" -k
O4 - HKLM\..\Run: [Carbonite Backup] C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Performance Center] C:\Program Files\Ascentive\Performance Center\APCMain.exe -m
O4 - HKLM\..\Run: [SigmatelSysTrayApp] sttray.exe
O4 - HKLM\..\Run: [GoToMyPC] "C:\Program Files\Citrix\GoToMyPC\g2svc.exe" -logon
O4 - HKLM\..\Run: [OnAccess] "C:\Program Files\eAcceleration\OnAccess\onaccess.exe" -erk
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [LDM] C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\Run: [WindowsWelcomeCenter] rundll32.exe oobefldr.dll,ShowWelcomeCenter (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /detectMem (User 'NETWORK SERVICE')
O4 - Startup: PaperMaster Live Menu 7.0.lnk = C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe
O4 - Global Startup: Desktop Manager.lnk = C:\Program Files\Research In Motion\BlackBerry\DesktopMgr.exe
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O4 - Global Startup: eFax 4.3.lnk = C:\Program Files\eFax Messenger 4.3\J2GTray.exe
O4 - Global Startup: Logitech SetPoint.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~1\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Open with ScanSoft PDF Converter 4.1 - res://C:\Program Files\ScanSoft\PDF Professional 4.0\cnvres_eng.dll /100
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - c:\Program Files\Java\jre1.6.0\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~1\Office12\REFIEBAR.DLL
O13 - Gopher Prefix:
O16 - DPF: {94B82441-A413-4E43-8422-D49930E69764} (TLIEFlashObj Class) - https://chat1.j2.com/Media/VisitorchatEnu/TLIEFlash.CAB
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/s ... wflash.cab
O16 - DPF: {F5131C24-E56D-11CF-B78A-444553540000} (Ikonic Menu Control) - https://wc.wachovia.com/common/cab/ikcntrls.cab
O18 - Protocol: bw+0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {2F1C3C31-197A-433F-AFA9-B0A39298818F} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O23 - Service: CarboniteService - Carbonite, Inc. (http://www.carbonite.com) - C:\Program Files\Carbonite\Carbonite Backup\carboniteservice.exe
O23 - Service: eAcceleration Notification Service (eac_notifysvc) - eAcceleration Corp - C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_svc.exe
O23 - Service: eAcceleration Product Manager Service (eac_productsvc) - eAcceleration Corp - C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_productsvc.exe
O23 - Service: FWService - eAcceleration Corp - C:\Program Files\eAcceleration\Firewall\FWService.exe
O23 - Service: GoToMyPC - Citrix Online, a division of Citrix Systems, Inc. - C:\Program Files\Citrix\GoToMyPC\g2svc.exe
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Roxio UPnP Renderer 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe
O23 - Service: Roxio Upnp Server 9 - Sonic Solutions - C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe
O23 - Service: LiveShare P2P Server 9 (RoxLiveShare9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: StopSign Update Manager - eAcceleration - C:\Program Files\Common Files\eAcceleration\eacsvc.exe
O23 - Service: XAudioService - Conexant Systems, Inc. - C:\Windows\system32\DRIVERS\xaudio.exe

--
End of file - 23036 bytes

======Scheduled tasks folder======

C:\Windows\tasks\User_Feed_Synchronization-{CB66F83E-71A1-4728-8C2D-0272E93ADB3A}.job

======Registry dump======

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{02478D38-C3F9-4efb-9B51-7695ECA05670}]
&Yahoo! Toolbar Helper - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2008-07-28 882416]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{18DF081C-E8AD-4283-A596-FA578C2EBDC3}]
Adobe PDF Link Helper - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll [2008-06-11 75128]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{3049C3E9-B461-4BC5-8870-4C09146192CA}]
RealPlayer Download and Record Plugin for Internet Explorer - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll [2008-03-17 370296]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}]
SSVHelper Class - c:\Program Files\Java\jre1.6.0\bin\ssv.dll [2007-05-02 501384]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{CA6319C0-31B7-401E-A518-A07C3DB8F777}]
CBrowserHelperObject Object - C:\Program Files\BAE\BAE.dll [2006-11-17 98304]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FDAD4DA1-61A2-4FD8-9C17-86F7AC245081}]
SingleInstance Class - C:\Program Files\Yahoo!\Companion\Installs\cpn\YTSingleInstance.dll [2008-07-28 160496]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
{EF99BD32-C1FB-11D2-892F-0090271D4F88} - Yahoo! Toolbar - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll [2008-07-28 882416]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Run]
"Windows Defender"=C:\Program Files\Windows Defender\MSASCui.exe [2008-01-19 1008184]
"IgfxTray"=C:\Windows\system32\igfxtray.exe [2007-02-09 98304]
"HotKeysCmds"=C:\Windows\system32\hkcmd.exe [2007-02-09 106496]
"Persistence"=C:\Windows\system32\igfxpers.exe [2007-02-09 81920]
"IAAnotif"=C:\Program Files\Intel\Intel Matrix Storage Manager\Iaanotif.exe [2006-09-29 151552]
"Corel Photo Downloader"=C:\Program Files\Corel\Corel Snapfire Plus\PhotoDownloader.exe []
"ISUSScheduler"=C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe [2006-09-11 86960]
"PDVDDXSrv"=C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe [2006-10-20 118784]
"ISUSPM Startup"=C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe [2007-08-30 205480]
"eFax 4.3"=C:\Program Files\eFax Messenger 4.3\J2GDllCmd.exe [2007-03-06 116224]
"SSBkgdUpdate"=C:\Program Files\Common Files\Scansoft Shared\SSBkgdUpdate\SSBkgdupdate.exe [2006-10-25 210472]
"PPort11reminder"=C:\Program Files\ScanSoft\PaperPort\Ereg\ereg.exe [2006-03-09 1404928]
"PaperPort PTD"=C:\Program Files\ScanSoft\PaperPort\pptd40nt.exe [2006-05-05 36864]
"MskAgentexe"=C:\Program Files\McAfee\MSK\MskAgent.exe []
"LVCOMSX"=C:\Program Files\Common Files\Logitech\LComMgr\LVComSX.exe [2006-05-17 243248]
"LogitechCommunicationsManager"=C:\Program Files\Common Files\Logitech\LComMgr\Communications_Helper.exe [2006-05-17 480816]
"Logitech Hardware Abstraction Layer"=C:\Windows\KHALMNPR.EXE [2006-05-10 94208]
"IndexSearch"=C:\Program Files\ScanSoft\PaperPort\IndexSearch.exe [2006-05-05 40960]
"ECenter"=c:\dell\E-Center\EULALauncher.exe [2006-11-17 17920]
"PDF4 Registry Controller"=C:\Program Files\ScanSoft\PDF Professional 4.0\RegistryController.exe [2007-01-16 46632]
"ScanSoft PDF Professional 4-reminder"=C:\Program Files\ScanSoft\PDF Professional 4.0\Ereg\Ereg.exe [2006-11-16 35368]
"TkBellExe"=C:\Program Files\Common Files\Real\Update_OB\realsched.exe [2008-03-17 185896]
"QuickTime Task"=C:\Program Files\QuickTime\QTTask.exe [2008-03-28 413696]
""= []
"RoxWatchTray"=C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatchTray9.exe [2007-04-23 228088]
"SoftwareStation"=C:\Program Files\eAcceleration\Station\station.exe [2008-04-15 173392]
"webscan"=C:\Program Files\Acceleration Software\Anti-Virus\stopsignav.exe [2008-05-14 763232]
"Carbonite Backup"=C:\Program Files\Carbonite\Carbonite Backup\CarboniteUI.exe [2008-06-13 600000]
"Adobe Reader Speed Launcher"=C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe [2008-06-12 34672]
"Performance Center"=C:\Program Files\Ascentive\Performance Center\APCMain.exe -m []
"SigmatelSysTrayApp"=C:\Windows\sttray.exe [2007-02-07 303104]
"GoToMyPC"=C:\Program Files\Citrix\GoToMyPC\g2svc.exe [2008-09-30 258856]
"OnAccess"=C:\Program Files\eAcceleration\OnAccess\onaccess.exe [2008-06-09 238944]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\RunOnce]
"Malwarebytes' Anti-Malware"=C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe [2009-01-04 399504]

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Run]
"LDM"=C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LogitechDesktopMessenger.exe [2007-05-10 32768]
"ISUSPM"=C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe [2007-08-30 205480]
"WMPNSCFG"=C:\Program Files\Windows Media Player\WMPNSCFG.exe [2008-01-19 202240]

C:\ProgramData\Microsoft\Windows\Start Menu\Programs\Startup
Desktop Manager.lnk - C:\Program Files\Research In Motion\BlackBerry\DesktopMgr.exe
Digital Line Detect.lnk - C:\Program Files\Digital Line Detect\DLG.exe
eFax 4.3.lnk - C:\Program Files\eFax Messenger 4.3\J2GTray.exe
Logitech SetPoint.lnk - C:\Program Files\Logitech\SetPoint\SetPoint.exe
WinZip Quick Pick.lnk - C:\Program Files\WinZip\WZQKPICK.EXE

C:\Users\Robert\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\Startup
PaperMaster Live Menu 7.0.lnk - C:\Program Files\PaperMaster Pro 7.0\J2GDllCmd.exe

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
C:\Windows\system32\igfxdev.dll [2007-02-09 212992]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{42DD0873-5FA9-465D-90DE-0826020416A5}"=C:\Program Files\eAcceleration\OnAccess\onaccess_hk32.dll [2008-06-09 165216]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"=msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\System]
"dontdisplaylastusername"=0
"legalnoticecaption"=
"legalnoticetext"=
"shutdownwithoutlogon"=1
"undockwithoutlogon"=1
"EnableUIADesktopToggle"=0

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"EnableShellExecuteHooks"=1

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Policies\explorer]
"EnableShellExecuteHooks"=

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\explorer\mountpoints2\{e5456dfb-e539-11dc-a27e-0019d1469d16}]
shell\AutoRun\command - G:\LaunchU3.exe


======List of files/folders created in the last 1 months======

2009-01-11 11:13:23 ----D---- C:\Users\Robert\AppData\Roaming\Malwarebytes
2009-01-11 11:13:17 ----D---- C:\ProgramData\Malwarebytes
2009-01-11 11:13:17 ----D---- C:\Program Files\Malwarebytes' Anti-Malware
2009-01-11 11:02:14 ----D---- C:\Users\Robert\AppData\Roaming\Yahoo!
2009-01-11 11:02:14 ----D---- C:\ProgramData\Yahoo! Companion
2009-01-11 11:02:10 ----D---- C:\Program Files\CCleaner
2009-01-02 09:01:27 ----D---- C:\rsit
2009-01-01 18:09:14 ----D---- C:\Program Files\Trend Micro
2008-12-19 08:53:28 ----A---- C:\Windows\system32\mshtml.dll

======List of files/folders modified in the last 1 months======

2009-01-11 12:25:03 ----D---- C:\Windows\Temp
2009-01-11 11:55:42 ----SHD---- C:\System Volume Information
2009-01-11 11:13:23 ----D---- C:\Windows\Prefetch
2009-01-11 11:13:20 ----D---- C:\Windows\system32\drivers
2009-01-11 11:13:17 ----RD---- C:\Program Files
2009-01-11 11:13:17 ----HD---- C:\ProgramData
2009-01-11 11:09:45 ----D---- C:\Windows\Minidump
2009-01-11 11:09:45 ----D---- C:\Windows\Debug
2009-01-11 11:09:45 ----D---- C:\Windows
2009-01-11 11:02:15 ----D---- C:\Program Files\Yahoo!
2009-01-11 10:54:48 ----D---- C:\Users\Robert\AppData\Roaming\InstallShield
2009-01-11 10:54:24 ----HD---- C:\Program Files\InstallShield Installation Information
2009-01-11 10:35:46 ----D---- C:\Windows\System32
2009-01-11 10:35:46 ----D---- C:\Windows\inf
2009-01-11 10:35:46 ----A---- C:\Windows\system32\PerfStringBackup.INI
2009-01-11 10:30:14 ----D---- C:\MDT
2009-01-06 18:04:30 ----D---- C:\Users\Robert\AppData\Roaming\Corel
2009-01-06 09:17:00 ----D---- C:\Program Files\Citrix
2009-01-04 18:32:11 ----SD---- C:\Users\Robert\AppData\Roaming\Microsoft
2009-01-04 14:58:59 ----D---- C:\Windows\system32\catroot2
2008-12-19 08:53:48 ----D---- C:\Windows\winsxs
2008-12-19 08:53:39 ----D---- C:\Windows\system32\catroot
2008-12-17 22:55:31 ----SD---- C:\Windows\Downloaded Program Files

======List of drivers (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R1 CSC;Offline Files Driver; C:\Windows\system32\drivers\csc.sys [2008-01-18 350720]
R1 DLACDBHM;DLACDBHM; C:\Windows\System32\Drivers\DLACDBHM.SYS [2007-02-08 12856]
R1 DLARTL_M;DLARTL_M; C:\Windows\System32\Drivers\DLARTL_M.SYS [2007-02-08 28120]
R1 FWCore;FWCore; C:\Windows\system32\drivers\fwcore.sys [2008-04-23 58456]
R2 DLABMFSM;DLABMFSM; C:\Windows\System32\DLA\DLABMFSM.SYS [2006-10-26 35096]
R2 DLABOIOM;DLABOIOM; C:\Windows\System32\DLA\DLABOIOM.SYS [2006-10-26 32472]
R2 DLADResM;DLADResM; C:\Windows\System32\DLA\DLADResM.SYS [2006-10-26 9400]
R2 DLAIFS_M;DLAIFS_M; C:\Windows\System32\DLA\DLAIFS_M.SYS [2006-10-26 104536]
R2 DLAOPIOM;DLAOPIOM; C:\Windows\System32\DLA\DLAOPIOM.SYS [2006-10-26 26296]
R2 DLAPoolM;DLAPoolM; C:\Windows\System32\DLA\DLAPoolM.SYS [2006-10-26 14520]
R2 DLAUDF_M;DLAUDF_M; C:\Windows\System32\DLA\DLAUDF_M.SYS [2006-10-26 97848]
R2 DLAUDFAM;DLAUDFAM; C:\Windows\System32\DLA\DLAUDFAM.SYS [2006-10-26 94648]
R2 DRVNDDM;DRVNDDM; C:\Windows\System32\Drivers\DRVNDDM.SYS [2007-02-09 51768]
R2 LBeepKE;LBeepKE; C:\Windows\System32\Drivers\LBeepKE.sys [2006-05-24 3712]
R2 mdmxsdk;mdmxsdk; C:\Windows\system32\DRIVERS\mdmxsdk.sys [2006-06-19 12672]
R2 XAudio;XAudio; C:\Windows\system32\DRIVERS\xaudio.sys [2006-08-04 8192]
R3 e1express;Intel(R) PRO/1000 PCI Express Network Connection Driver; C:\Windows\system32\DRIVERS\e1e6032.sys [2008-01-18 220672]
R3 HSF_DPV;HSF_DPV; C:\Windows\system32\DRIVERS\HSX_DPV.sys [2006-10-18 986624]
R3 HSXHWBS2;HSXHWBS2; C:\Windows\system32\DRIVERS\HSXHWBS2.sys [2006-10-18 258048]
R3 igfx;igfx; C:\Windows\system32\DRIVERS\igdkmd32.sys [2007-02-09 1476608]
R3 LHidKe;Logitech SetPoint HID Mouse Filter Driver; C:\Windows\system32\DRIVERS\LHidKE.Sys [2006-05-10 27264]
R3 LMouKE;Logitech SetPoint Mouse Filter Driver; C:\Windows\system32\DRIVERS\LMouKE.Sys [2006-05-10 71680]
R3 RimVSerPort;RIM Virtual Serial Port v2; C:\Windows\system32\DRIVERS\RimSerial.sys [2007-01-18 26496]
R3 ROOTMODEM;Microsoft Legacy Modem Driver; C:\Windows\System32\Drivers\RootMdm.sys [2008-01-18 8192]
R3 STHDA;SigmaTel High Definition Audio CODEC; C:\Windows\system32\drivers\stwrt.sys [2007-02-07 647680]
R3 usbscan;USB Scanner Driver; C:\Windows\system32\DRIVERS\usbscan.sys [2008-01-19 35328]
R3 winachsf;winachsf; C:\Windows\system32\DRIVERS\HSX_CNXT.sys [2006-10-18 659968]
S3 drmkaud;Microsoft Kernel DRM Audio Descrambler; C:\Windows\system32\drivers\drmkaud.sys [2008-01-18 5632]
S3 HdAudAddService;Microsoft 1.1 UAA Function Driver for High Definition Audio Service; C:\Windows\system32\drivers\HdAudio.sys [2006-11-02 235520]
S3 MSKSSRV;Microsoft Streaming Service Proxy; C:\Windows\system32\drivers\MSKSSRV.sys [2008-01-18 8192]
S3 MSPCLOCK;Microsoft Streaming Clock Proxy; C:\Windows\system32\drivers\MSPCLOCK.sys [2008-01-18 5888]
S3 MSPQM;Microsoft Streaming Quality Manager Proxy; C:\Windows\system32\drivers\MSPQM.sys [2008-01-18 5504]
S3 MSTEE;Microsoft Streaming Tee/Sink-to-Sink Converter; C:\Windows\system32\drivers\MSTEE.sys [2008-01-18 6016]
S3 R300;R300; C:\Windows\system32\DRIVERS\atikmdag.sys [2006-11-02 2028032]
S3 RimUsb;BlackBerry Device; C:\Windows\System32\Drivers\RimUsb.sys [2006-11-07 22272]
S3 usb_rndisx;USB RNDIS Adapter; C:\Windows\system32\DRIVERS\usb8023x.sys [2006-11-02 14848]
S3 USBAAPL;Apple Mobile USB Driver; C:\Windows\System32\Drivers\usbaapl.sys []
S3 winusb;WinUSB Service; C:\Windows\system32\DRIVERS\WinUSB.SYS [2008-01-18 31616]
S3 WpdUsb;WpdUsb; C:\Windows\system32\DRIVERS\wpdusb.sys [2008-01-19 39936]
S3 WUDFRd;WUDFRd; C:\Windows\system32\DRIVERS\WUDFRd.sys [2008-01-18 83328]
S4 WmiAcpi;Microsoft Windows Management Interface for ACPI; C:\Windows\system32\drivers\wmiacpi.sys [2006-11-02 11264]

======List of services (R=Running, S=Stopped, 0=Boot, 1=System, 2=Auto, 3=Demand, 4=Disabled)======

R2 BcmSqlStartupSvc;Business Contact Manager SQL Server Startup Service; C:\Program Files\Microsoft Small Business\Business Contact Manager\BcmSqlStartupSvc.exe [2008-01-11 30312]
R2 BthServ;@%SystemRoot%\System32\bthserv.dll,-101; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 CarboniteService;CarboniteService; C:\Program Files\Carbonite\Carbonite Backup\carboniteservice.exe [2008-06-13 1700288]
R2 CscService;@%systemroot%\system32\cscsvc.dll,-200; C:\Windows\System32\svchost.exe [2008-01-19 21504]
R2 eac_notifysvc;eAcceleration Notification Service; C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_svc.exe [2008-09-03 111952]
R2 eac_productsvc;eAcceleration Product Manager Service; C:\PROGRA~1\EACCEL~1\FRAMEW~1\eac_productsvc.exe [2008-10-22 263504]
R2 FWService;FWService; C:\Program Files\eAcceleration\Firewall\FWService.exe [2008-04-23 337232]
R2 GoToMyPC;GoToMyPC; C:\Program Files\Citrix\GoToMyPC\g2svc.exe [2008-09-30 258856]
R2 IAANTMON;Intel(R) Matrix Storage Event Monitor; C:\Program Files\Intel\Intel Matrix Storage Manager\Iaantmon.exe [2006-09-29 81920]
R2 RapiMgr;@%windir%\WindowsMobile\rapimgr.dll,-104; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 SQLBrowser;SQL Server Browser; c:\Program Files\Microsoft SQL Server\90\Shared\sqlbrowser.exe [2007-02-10 242544]
R2 SQLWriter;SQL Server VSS Writer; c:\Program Files\Microsoft SQL Server\90\Shared\sqlwriter.exe [2007-02-10 89968]
R2 StopSign Update Manager;StopSign Update Manager; C:\Program Files\Common Files\eAcceleration\eacsvc.exe [2008-04-15 103760]
R2 WcesComm;@%windir%\WindowsMobile\wcescomm.dll,-40079; C:\Windows\system32\svchost.exe [2008-01-19 21504]
R2 XAudioService;XAudioService; C:\Windows\system32\DRIVERS\xaudio.exe [2006-08-04 386560]
R3 MSSQL$MSSMLBIZ;SQL Server (MSSMLBIZ); c:\Program Files\Microsoft SQL Server\MSSQL.1\MSSQL\Binn\sqlservr.exe [2008-02-26 29183504]
S2 Roxio Upnp Server 9;Roxio Upnp Server 9; C:\Program Files\Roxio\Digital Home 9\RoxioUpnpService9.exe [2007-04-22 359160]
S2 RoxLiveShare9;LiveShare P2P Server 9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe [2007-04-23 310008]
S2 RoxWatch9;Roxio Hard Drive Watcher 9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe [2007-04-23 166648]
S3 AppMgmt;@appmgmts.dll,-3250; C:\Windows\system32\svchost.exe [2008-01-19 21504]
S3 Fax;@%systemroot%\system32\fxsresm.dll,-118; C:\Windows\system32\fxssvc.exe [2008-01-19 523776]
S3 IDriverT;InstallDriver Table Manager; C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe [2004-10-22 73728]
S3 odserv;Microsoft Office Diagnostics Service; C:\Program Files\Common Files\Microsoft Shared\OFFICE12\ODSERV.EXE [2007-08-24 443776]
S3 ose;Office Source Engine; C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.EXE [2006-10-26 145184]
S3 Roxio UPnP Renderer 9;Roxio UPnP Renderer 9; C:\Program Files\Roxio\Digital Home 9\RoxioUPnPRenderer9.exe [2007-04-22 88824]
S3 RoxMediaDB9;RoxMediaDB9; C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe [2007-04-23 1010424]
S3 stllssvr;stllssvr; C:\Program Files\Common Files\SureThing Shared\stllssvr.exe [2006-09-14 73728]
S3 UmRdpService;@%SystemRoot%\system32\umrdp.dll,-1000; C:\Windows\System32\svchost.exe [2008-01-19 21504]
S3 wbengine;@%systemroot%\system32\wbengine.exe,-104; C:\Windows\system32\wbengine.exe [2008-01-19 917504]
S4 MSSQLServerADHelper;SQL Server Active Directory Helper; c:\Program Files\Microsoft SQL Server\90\Shared\sqladhlp90.exe [2005-10-14 45272]

-----------------EOF-----------------
refco48
Regular Member
 
Posts: 16
Joined: January 1st, 2009, 8:20 pm

Re: "MSN Featured" Spam - Cannot get rid of at ALL!!!

Unread postby refco48 » January 11th, 2009, 2:31 pm

Sorry this did not get through on my first reply - this has become a real task. Thanks for all your help.

Malwarebytes' Anti-Malware 1.32
Database version: 1616
Windows 6.0.6001 Service Pack 1

1/11/2009 12:20:12 PM
mbam-log-2009-01-11 (12-20-12).txt

Scan type: Full Scan (C:\|D:\|)
Objects scanned: 155377
Time elapsed: 1 hour(s), 4 minute(s), 30 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 19
Files Infected: 991

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
C:\Users\Robert\AppData\Roaming\SpamBlocker (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\eskin (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\DownLoad (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\hstat (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\ustat (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\PrivacyProtector (Rogue.PrivacyProtector) -> Quarantined and deleted successfully.

Files Infected:
C:\Users\Robert\AppData\Roaming\SpamBlocker\Personal Folders (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\eskin\empty_bg_st.htm (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\eskin\FileManager.txt (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\030104_emte10_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\030104_emte11_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\030104_emte12_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\030104_emte13_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\030104_emte14_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\030104_emte19_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\030104_emte20_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\030104_emte21_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\030104_emte9_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\030203lib_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\033102angel_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\033102bigluf_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\033102bigsmile_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\033102birthday_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\033102cheers_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\033102flo_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\033102good_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\033102jump_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\033102king_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\033102lough_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\033102luf_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\033102smiled_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\033102smile_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\033102sor_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\033102thanx_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\033102uhu_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\040103ahh_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\040103wow_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\040104_emi2_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\042102_1134_112_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\050103big_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\050103gig_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\050103hm_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\050103nomail_emoti_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\050103norm_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\060104_ema15_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\060104_ema16_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\060104_ema17_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\060104_ema18_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\060104_ema19_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\060104_ema20_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\060104_ema21_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\060104_ema24_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\060104_ema25_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\060104_ema26_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\060104_ema30_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\060104_ema33_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\060104_ema34_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\062802hippi_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\062802jumpie_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\080402argh_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\080402oops_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\080402ouch_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\082502no_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\082502yes_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\110103_boring1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\110103_confused_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\110103_crying_ugly_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\110103_fantastic_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\110103_feel_better_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\110103_gimme_break_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\110103_heehee_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\110103_hlopaet_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\110103_ign_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\110103_lol_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\110103_no_comment_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\110103_peace_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\110103_smashing_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\110103_talk2thehand_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\blocked.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\blocked2.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\block_sm.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\block_sm2.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\block_smli.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\block_smli2.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\btn_add-but.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\btn_back-but.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\btn_left_cut_enabled_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\btn_left_enabled_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\btn_left_pressed_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\btn_middle_enabled_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\btn_middle_pressed_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\btn_right_cut_enabled_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\btn_right_enabled_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\btn_right_pressed_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\business_promo.htm (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\buttondir.txt (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\components.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\css2_main.css (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\css2_pagingmodule.css (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\css2_topbuttons.css (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\css_cattree.css (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\css_flashpreview.css (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\delete.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\edit_clear_sound.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\edit_fs.htm (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\edit_select.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-511724-512971.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-511724-512972.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-511724-549108.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-511724-589306.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-511724-591943.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-511724-592579.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-511724-598579.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-511724-603763.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-511724-9595.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-email-backgrounds.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-email-bcards.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-email-ecards.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-email-emoticons.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-email-estationery.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-email-funny.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-email-help.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-email-images.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-email-info.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-email-more.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-email-my.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-email-new.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-email-new2.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-email-options.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-email-people.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-email-photo.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-email-SpamBlocked.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-email-tell.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-email-temp.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-email-text.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def-email-voice.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-def.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-premium-email-premium.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\email-t7-bg.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\estatationery.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\flashpatch.js (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\flashpreview.htm (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\fs3.htm (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\hotbar_promo.htm (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\icon_checked_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\icon_close_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\icon_close_pressed_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\icon_edit_preview.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\icon_edit_send.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\icon_flash_preview.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\icon_recently_used.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\icon_remove_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\icon_remove_pressed_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\icon_sand-clock2.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\icon_tell_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\icon_tell_pressed_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\icon_tree_null.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\icon_unchecked_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\icon_unchecked_pressed_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\img_barlayout.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\img_barlayout2.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\img_barlayout4.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\img_corner_left.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\img_local_logo.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\js2_basetemplate.js (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\js2_hbgroups.js (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\js2_hbobject3.js (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\js2_hbobjectset3.js (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\js2_hotbarwrapper.js (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\js2_iteratorsandreaders3nf.js (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\js2_pagingmoduleobj3.js (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\js2_texts3.js (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\js2_xmltree3nf.js (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\layout.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\linkpathlegal.txt (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\n.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\nav_bb_2.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\nav_b_2.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\nav_ff_2.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\nav_f_2.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\progress.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\sales_buttons.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\searchbtn.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\submit.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\s_icons_buttons.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\t6_bg.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\tab_bg.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\tab_bga.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\tab_bgia.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\tab_l.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\tab_la.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\tab_lia.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\tab_r.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\tab_ra.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\tab_ria.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\treedata_animations.xml (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\treedata_backgrounds.xml (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\treedata_ecards.xml (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\treedata_emoticons.xml (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\treedata_notifiers.xml (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\treedata_text.xml (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\tree_dots.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\tree_minus.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\1\tree_plus.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\030104_emte10_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\030104_emte11_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\030104_emte12_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\030104_emte13_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\030104_emte14_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\030104_emte19_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\030104_emte20_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\030104_emte21_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\030104_emte9_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\030203lib_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\033102angel_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\033102bigluf_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\033102bigsmile_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\033102birthday_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\033102cheers_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\033102flo_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\033102good_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\033102jump_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\033102king_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\033102lough_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\033102luf_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\033102smiled_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\033102smile_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\033102sor_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\033102thanx_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\033102uhu_1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\040103ahh_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\040103wow_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\040104_emi2_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\042102_1134_112_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\050103big_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\050103gig_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\050103hm_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\050103nomail_emoti_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\050103norm_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\060104_ema15_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\060104_ema16_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\060104_ema17_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\060104_ema18_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\060104_ema19_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\060104_ema20_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\060104_ema21_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\060104_ema24_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\060104_ema25_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\060104_ema26_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\060104_ema30_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\060104_ema33_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\060104_ema34_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\062802hippi_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\062802jumpie_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\080402argh_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\080402oops_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\080402ouch_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\082502no_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\082502yes_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\110103_boring1_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\110103_confused_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\110103_crying_ugly_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\110103_fantastic_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\110103_feel_better_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\110103_gimme_break_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\110103_heehee_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\110103_hlopaet_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\110103_ign_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\110103_lol_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\110103_no_comment_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\110103_peace_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\110103_smashing_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\110103_talk2thehand_prv.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\blocked.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\blocked2.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\block_sm.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\block_sm2.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\block_smli.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\block_smli2.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\btn_add-but.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\btn_back-but.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\btn_left_cut_enabled_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\btn_left_enabled_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\btn_left_pressed_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\btn_middle_enabled_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\btn_middle_pressed_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\btn_right_cut_enabled_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\btn_right_enabled_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\btn_right_pressed_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\business_promo.htm (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\buttondir.txt (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\components.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\css2_main.css (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\css2_pagingmodule.css (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\css2_topbuttons.css (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\css_cattree.css (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\css_flashpreview.css (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\delete.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\edit_clear_sound.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\edit_fs.htm (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\edit_select.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-511724-512971.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-511724-512972.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-511724-549108.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-511724-589306.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-511724-591943.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-511724-592579.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-511724-598579.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-511724-603763.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-511724-9595.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-email-backgrounds.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-email-bcards.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-email-ecards.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-email-emoticons.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-email-estationery.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-email-funny.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-email-help.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-email-images.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-email-info.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-email-more.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-email-my.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-email-new.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-email-new2.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-email-options.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-email-people.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-email-photo.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-email-SpamBlocked.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-email-tell.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-email-temp.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-email-text.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def-email-voice.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-def.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-premium-email-premium.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\email-t7-bg.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\estatationery.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\flashpatch.js (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\flashpreview.htm (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\fs3.htm (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\hotbar_promo.htm (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\icon_checked_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\icon_close_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\icon_close_pressed_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\icon_edit_preview.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\icon_edit_send.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\icon_flash_preview.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\icon_recently_used.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\icon_remove_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\icon_remove_pressed_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\icon_sand-clock2.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\icon_tell_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\icon_tell_pressed_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\icon_tree_null.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\icon_unchecked_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\icon_unchecked_pressed_1.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\img_barlayout.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\img_barlayout2.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\img_barlayout4.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\img_corner_left.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\img_local_logo.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\js2_basetemplate.js (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\js2_hbgroups.js (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\js2_hbobject3.js (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\js2_hbobjectset3.js (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\js2_hotbarwrapper.js (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\js2_iteratorsandreaders3nf.js (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\js2_pagingmoduleobj3.js (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\js2_texts3.js (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\js2_xmltree3nf.js (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\layout.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\linkpathlegal.txt (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\n.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\nav_bb_2.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\nav_b_2.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\nav_ff_2.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\nav_f_2.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\progress.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\sales_buttons.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\searchbtn.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\submit.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\s_icons_buttons.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\t6_bg.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\tab_bg.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\tab_bga.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\tab_bgia.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\tab_l.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\tab_la.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\tab_lia.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\tab_r.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\tab_ra.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\tab_ria.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\treedata_animations.xml (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\treedata_backgrounds.xml (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\treedata_ecards.xml (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\treedata_emoticons.xml (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\treedata_notifiers.xml (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\treedata_text.xml (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\tree_dots.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\tree_minus.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\2\tree_plus.gif (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\DownLoad\business_promo.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\DownLoad\buttondir.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\DownLoad\code.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\DownLoad\email-def.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\DownLoad\email-t7-bg.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\DownLoad\hotbar_promo.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\DownLoad\images.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\DownLoad\layout.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\DownLoad\linkpathlegal.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\DownLoad\localcontent.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\DownLoad\sales_buttons.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\DownLoad\s_icons_buttons.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\DownLoad\t6_bg.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\HostOL\static\DownLoad\treexml.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\1.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\1049983.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\1056251.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\1056366.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\1059760.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\1065003.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\1066422.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\1383771.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\1385232.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\1385808.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\1391857.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\1418656.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\142708.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\1540331.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\1843061.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\189000.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\1899371.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\1940357.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\2020314.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\2208948.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\221540.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\225132.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\2420318.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\2763070.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\2881352.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\2884323.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\2904113.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\3305670.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\3372490.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\3422762.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\3426120.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\3699937.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\3720900.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\3782389.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\3783112.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\3852348.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\3893131.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\433871.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\478229.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\483256.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\48657.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\498796.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\726494.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\803741.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\828282.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\878262.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\882203.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\890068.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\929861.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\937849.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\992161.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\996555.sdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\ASPL1.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\domains.txt (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\hstat\3527.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\1000030338 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\1000047763 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\1000047858 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\1000048226 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\1000048564 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\1000052173 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\1000068378 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\11891 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\12030 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\12233 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\13117 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\13546 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\13613 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\13617 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\13788 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\1424 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\14747 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\148380 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\1491 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\15162 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\15200 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\15202 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\15473 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\16173 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\17002 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\17025 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\17180 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\1725 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\17805 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\184591 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\19650 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\19661 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\19677 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\197630 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\2021 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\202382 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\202699 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\20516 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\205324 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\20553 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\20570 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\205870 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\214525 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\21889 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\220566 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\22254 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\22257 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\22265 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\223385 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\224717 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\22913 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\234438 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\23607 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\23923 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\23928 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\24341 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\246565 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\250532 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\25469 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\25509 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\25540 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\26185 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\26340 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\26664 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\26869 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\27414 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\27503 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\28185 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\288733 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\290893 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\29115 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\29308 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\29425 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\30121 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\30124 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\30320 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\30931 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\31343 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\31828 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\31979 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\32242 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\32276 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\32506 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\32634 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\32812 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\32980 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\33137 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\33146 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\3338 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\33697 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\34174 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\34186 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\342303 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\34267 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\34831 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\35047 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\35410 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\35463 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\356660 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\35865 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\36072 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\36079 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\361427 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\36598 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\36735 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\367353 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\37135 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\38123 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\386635 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\39007 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\39228 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\39245 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\39689 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\39897 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\39909 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\40999 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\41020 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\41128 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\41333 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\41421 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\41499 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\41980 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\41999 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\42034 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\42076 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\42372 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\42376 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\427075 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\43606 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\43638 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\4382 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\43979 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\44100 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\44228 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\44229 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\44293 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\446994 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\44789 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\44878 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\45437 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\45462 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\45837 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\468327 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\47371 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\475788 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\479954 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\490217 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\49821 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\503508 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\507892 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\50830 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\51166 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\516057 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\51641 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\51666 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\526389 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\53481 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\5358 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\53595 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\53605 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\53813 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\540999 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\54189 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\542538 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\54473 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\549635 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\553087 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\5562 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\5569 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\557591 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\56084 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\56113 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\56133 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\561884 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\57137 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\578458 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\57904 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\579123 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\57942 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\57966 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\580792 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\58197 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\58804 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\59221 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\59231 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\59234 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\59598 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\60739 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\60841 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\6099 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\61779 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\61795 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\61837 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\61853 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\61894 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\63232 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\63770 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\63806 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\64412 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\64451 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\64517 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\64877 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\64966 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\66855 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\68016 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\68055 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\68076 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\68094 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\68102 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\68569 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\687496 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\68829 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\69325 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\69556 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\69626 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\69940 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\70650 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\70907 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\71340 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\71604 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\72786 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\72807 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\72912 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\73119 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\73292 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\73387 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\73476 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\73670 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\737665 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\738022 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\73840 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\73922 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\742100 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\744502 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\744603 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\744810 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\745086 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\745256 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\745326 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\745331 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\745356 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\745378 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\745387 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\745536 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\745556 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\74798 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\75089 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\7515 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\7518 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\7521 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\753010 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\75958 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\76113 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\77712 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\78228 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\78424 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\78592 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\78600 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\79105 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\79132 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\79257 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\79972 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\79977 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\79986 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\79989 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\80026 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\80639 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\80670 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\81293 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\82126 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\82223 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\82292 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\82646 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\8282 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\83216 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\83706 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\83743 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\83757 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\83927 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\84599 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\84642 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\85062 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\85365 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\85445 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\85547 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\85666 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\86023 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\86173 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\86380 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\86440 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\86837 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\87002 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\87385 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\87594 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\87908 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\87995 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\88152 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\89075 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\89129 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\89200 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\89462 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\89500 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\90009 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\90128 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\90358 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\90383 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\91224 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\91231 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\91282 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\91629 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\91876 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\91986 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\92721 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\93568 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\93899 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\93921 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\93934 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\93958 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\94272 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\94407 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\94515 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\95159 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\95610 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\95615 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\95774 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\95777 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\95803 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\95825 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\95849 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\96458 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\96461 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\97498 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\97744 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\97964 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\98120 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\98285 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\98348 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\98732 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\99008 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\99163 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\99795 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\TooltipXML\99857 (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\dynamic\ustat\3527.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\ads.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\btntrans1.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\business_promo.htm (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\buttondir.txt (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\components.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\default.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_bidz.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_bidz1.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_bidz10.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_bidz11.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_bidz12.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_bidz13.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_bidz14.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_bidz15.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_bidz16.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_bidz17.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_bidz18.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_bidz19.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_bidz2.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_bidz20.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_bidz3.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_bidz4.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_bidz5.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_bidz6.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_bidz7.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_bidz8.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_bidz9.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_categorize.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_comparison.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_em_PROFL_CA_flow_b_IEB.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_explorer-Mails.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_explorer-people.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_fastutilities.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_favorites.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_Games.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_Hide.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_hotbarcom.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_Hotmail.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_hsskin.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_jemster.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_jemsterie.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_jemsteruk.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_jobsearch.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_Mails.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_new.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_premium.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_reun.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_ringtones.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_SearchBoxTrapper.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_searchfor.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_searchgo.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_weather.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Default_yellowpages.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\d_icons_buttons_1000.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\d_icons_buttons_2000.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\d_icons_buttons_3000.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\d_icons_buttons_bar.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\d_icons_buttons_bbar1.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\d_icons_buttons_logos.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\d_icons_buttons_other.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\d_icons_weather.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\email-def-511724-9595.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\email-t1-bg.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\hotbar-premium-hotbar-premium.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\hotbar-premium.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\hotbar_promo.htm (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\icons2.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\keywords1.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\layout.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\linkpathlegal.txt (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\progress.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\sales_buttons.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\s_icons_buttons.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\t2_bg.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\theweb.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\top7.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\Top7_theweb.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\1\tsd_bg.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\ads.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\btntrans1.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\business_promo.htm (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\buttondir.txt (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\components.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\default.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz1.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz10.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz11.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz12.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz13.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz14.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz15.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz16.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz17.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz18.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz19.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz2.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz20.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz3.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz4.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz5.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz6.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz7.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz8.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_bidz9.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_categorize.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_comparison.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_em_PROFL_CA_flow_b_IEB.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_explorer-Mails.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_explorer-people.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_fastutilities.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_favorites.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_Games.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_Hide.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_hotbarcom.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_Hotmail.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_hsskin.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_jemster.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_jemsterie.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_jemsteruk.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_jobsearch.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_Mails.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_new.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_premium.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_reun.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_ringtones.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_SearchBoxTrapper.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_searchfor.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_searchgo.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_weather.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Default_yellowpages.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\d_icons_buttons_1000.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\d_icons_buttons_2000.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\d_icons_buttons_3000.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\d_icons_buttons_bar.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\d_icons_buttons_bbar1.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\d_icons_buttons_logos.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\d_icons_buttons_other.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\d_icons_weather.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\email-def-511724-9595.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\email-t1-bg.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\hotbar-premium-hotbar-premium.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\hotbar-premium.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\hotbar_promo.htm (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\icons2.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\keywords1.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\layout.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\linkpathlegal.txt (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\progress.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\sales_buttons.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\s_icons_buttons.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\t2_bg.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\theweb.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\top7.cdf (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\Top7_theweb.mnu (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\2\tsd_bg.res (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\ads.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\BtnTrans.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\BtnTrans1.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\business_promo.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\buttondir.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\default.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\d_icons_buttons_1000.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\d_icons_buttons_2000.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\d_icons_buttons_3000.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\d_icons_buttons_bar.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\d_icons_buttons_bbar1.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\d_icons_buttons_logos.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\d_icons_buttons_other.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\d_icons_weather.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\email-t1-bg.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\hotbar-premium.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\hotbar_promo.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\icons2.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\keywords.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\keywords1.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\layout.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\linkpathlegal.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\sales_buttons.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\samplegroups2.txt (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\samplegroups2.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\s_icons_buttons.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\t2_bg.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\top7.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\SpamBlockerUtility\v3.0\SpamBlockerUtility\static\DownLoad\tsd_bg.xip (Adware.Hotbar) -> Quarantined and deleted successfully.
C:\Users\Robert\AppData\Roaming\PrivacyProtector\activator_info.txt (Rogue.PrivacyProtector) -> Quarantined and deleted successfully.
refco48
Regular Member
 
Posts: 16
Joined: January 1st, 2009, 8:20 pm
Advertisement
Register to Remove

Next

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 290 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware