Thanks for replying. Here are the logs:
SDFix: Version 1.76
Run by StreetBaller89 - 04/03/2007 Tue - 21:56:08.64
Microsoft Windows XP [Version 5.1.2600]
Running From: C:\SDFix
Safe Mode:
Checking Services:
Name:
AVG
Control Task Manager
ImagePath:
"C:\WINDOWS\avgav.exe"
"C:\WINDOWS\system32\cvsys.exe"
AVG Deleted
Control Task Manager Deleted
Killing PID 148 'smss.exe'
Killing PID 216 'winlogon.exe'
Restoring Windows Registry Entries
Restoring Default Hosts File
Rebooting...
Normal Mode:
Checking Files:
Below files will be copied to Backups folder then removed:
C:\WINDOWS\system32\cvsys.exe - Deleted
C:\WINDOWS\system32\rpcc.dll - Deleted
ADS Check:
C:\WINDOWS\system32
No streams found.
Final Check:
Remaining Services:
------------------
Remaining Files:
---------------
Backups Folder: - C:\SDFix\backups\backups.zip
Checking For Files with Hidden Attributes :
C:\Program Files\BitComet\Downloads\TNT321@Vol.1\_desktop.ini
C:\Program Files\BitComet\Downloads\TNT321@Vol.2\Desktop_.ini
C:\Program Files\Common Files\Adobe\ESD\DLMCleanup.exe
C:\Program Files\Netscape\Communicator\Program\netscape.exe\_desktop.ini
C:\Program Files\Netscape\Communicator\Program\netscape.exe\Desktop_.ini
C:\Program Files\Netscape\Communicator\Program\netscape.exe\Plugins\_desktop.ini
C:\Program Files\Netscape\Communicator\Program\netscape.exe\Plugins\Desktop_.ini
C:\Program Files\Netscape\Communicator\Program\netscape.exe\java\_desktop.ini
C:\Program Files\Netscape\Communicator\Program\netscape.exe\java\Desktop_.ini
C:\Program Files\Netscape\Communicator\Program\netscape.exe\java\classes\_desktop.ini
C:\Program Files\Netscape\Communicator\Program\netscape.exe\java\classes\Desktop_.ini
C:\WINDOWS\system32\telecomes.exe
C:\WINDOWS\system32\xvlaomn.exe
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL0007.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL0098.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL0137.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL0168.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL0410.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL0519.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL0818.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL0910.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL0929.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL0965.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL1122.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL1162.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL1251.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL1252.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL1461.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL1466.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL1545.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL1750.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL1755.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL1852.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL1866.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL2154.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL2426.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL2681.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL2736.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL2784.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL3698.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL3744.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL3763.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL3802.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL4033.tmp
C:\Documents and Settings\Street Baller.AMD\My Documents\~WRL4089.tmp
C:\Documents and Settings\Nancy Voon\My Documents\personal\qing\2006\my class\class bbq gathering\SIV1.tmp
C:\Documents and Settings\Nancy Voon\My Documents\personal\qing\2006\my class\class bbq gathering\SIV9.tmp
C:\Documents and Settings\Nancy Voon\My Documents\personal\qing\2006\2nd cs presentation n klcc\SIV2C.tmp
C:\Documents and Settings\Nancy Voon\My Documents\personal\qing\2006\2nd cs presentation n klcc\SIV2D.tmp
C:\Documents and Settings\Nancy Voon\Desktop\~WRL3449.tmp
C:\Documents and Settings\Nancy Voon\Desktop\~WRL0732.tmp
C:\Documents and Settings\Nancy Voon\Desktop\~WRL2475.tmp
C:\Documents and Settings\Nancy Voon\Desktop\~WRL0376.tmp
C:\Documents and Settings\Nancy Voon\Desktop\~WRL2921.tmp
C:\Documents and Settings\Nancy Voon\Desktop\~WRL3031.tmp
C:\Documents and Settings\Nancy Voon\Desktop\~WRL2514.tmp
C:\Documents and Settings\Nancy Voon\Desktop\~WRL3033.tmp
C:\Documents and Settings\Nancy Voon\Desktop\~WRL1075.tmp
C:\Documents and Settings\Nancy Voon\Desktop\~WRL0778.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS7E84C53F-DBF7-4A0B-8CB2-C9AB821E3A0B.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS20EE7C95-9406-441B-A124-73B44BA9B9D6.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS9172DC8C-66DE-4DE0-BAED-3B85FA8CC4BE.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS38F2BBC4-497A-43A5-92A0-B9E2256DB2AB.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS68B02ABA-4E44-4558-B6D5-37DB35299648.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSA517936D-B03A-44C8-A14C-3BB0B3CCB3D0.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSAA0BF2EC-33FF-463D-A22E-43D9A497D8C9.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSFFB6F426-FE10-4425-A4D0-94C39D0976F4.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS86B3E5F9-8291-4227-A57A-B1DA8EC19BCE.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSA9B3910F-BB7C-498D-87A3-C6D0E29F96CA.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS03755062-4BD4-42C8-B8C4-89BD1AE37F0E.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS06C8DDBE-89E2-440A-9111-460712ACD5F7.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS667402D0-3310-4DC4-8A42-F53D69D0BD8C.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS87319731-D3A8-46F9-9EAB-9BECC7623B7D.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS809FFC54-9E6C-4ADC-AC27-FDFF20EB36E7.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS0C11C790-336E-4045-8993-0C5CAA59AFA6.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS6B721A86-D679-46BB-93C3-FDFF44AA0055.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS1ADCBAA4-51AF-421A-B254-F6B5D3C9550C.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS62B4E817-5321-4DC0-A61D-CF38527209B5.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS79B3B84B-D8EE-4618-B362-B5348596F643.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS49318F4A-596C-4BEA-A078-70DB2922EE6C.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS55EFE7E9-D729-4C5B-ABC2-AC4FFFD6F584.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS04C6B3CB-E429-4CFF-A8E2-E3DFDF2AA28C.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS811CD61A-F105-4E79-9FF8-48EEC083F90B.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS85944534-F85F-45BC-8D18-207A79F0A18E.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS9A94899C-C208-46BF-B222-1EB317E7CF3F.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS0844C1B2-D0B3-4F5B-BDD6-1055A5AC09F3.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS41231B96-F230-43A5-ACC5-F3937483EFE5.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS7C697626-9643-4A22-B830-1738D9FE032E.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS61969E6B-5820-45FA-A0E6-5E601CD5DB89.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSBF76A573-0978-4D15-8EA9-D35195AA2863.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS2140DC09-F79B-40A6-B4C8-00F85DF97599.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSBC02B2B5-8492-4DEC-BE9D-F91229867C83.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS4123D9F1-71F1-43E7-867F-2ECDD83297BE.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS8179C0B9-C32E-4929-BA16-C0E6A3E43E2F.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS22B1452F-EB53-400E-87FE-F6017DFEBC5D.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSA41C3591-99ED-4BB1-946C-CAC26EC5B982.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS618D0A8C-EDA1-43E2-8113-4D064B1D4C7F.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS47DAF46D-A58B-4922-9371-E92DBD6E996C.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS891B131F-9784-437A-B31C-97F405EB8F5E.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS834CF54A-9FA0-4CED-8077-BD248F7BC3C8.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS03197FA1-6BA1-4DCD-B715-C85359A15B77.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS747D91F4-D3BB-49B2-A212-19355E59FE93.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS1BF9BD1B-E9B7-4885-91B6-610F49549EED.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS24A2B8ED-F94D-4B65-AC1F-A8E22A0352BA.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS12D9653A-B6EE-43BF-8757-18F685A9684E.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS5CECA981-EEB0-430A-82AD-BD738946943E.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS849C8A3D-A5DA-4E35-A07C-1C4A52982C84.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS0435BF00-77FA-4356-8E25-8F3DC8C3AE6C.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS4B03118A-8134-48C6-BE3E-92CB352FD1C4.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS7DC365DB-6DAD-4378-963B-88B4A8311D25.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS4824CF61-CC94-42BB-AFB0-96AE48CA0E60.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS86442441-0F92-48EB-B91F-89EA87841AA7.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS9490A9E7-20D1-4249-90E2-3512A1BE728A.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSDDF63902-6AB6-44FD-B653-73AFF12357D0.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS16837ED3-C9AF-44FB-9CBB-D7A33314C17A.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSE427E833-03F4-49FE-A023-5FE2AA607047.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS3FCE81E9-3631-484F-85F0-980121E619C9.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS88BCB0A5-D363-477E-A275-EE4C9813F6C6.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS9A85CE99-4314-439A-B520-215AEEB13789.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS860CB125-7ED6-4924-B4C4-80F00E397E4A.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS99FE96F5-3800-4617-A81F-DCB43F6F0A76.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS7F39C78F-DB7A-4F87-9CE5-D0DE547D41DA.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS8951ECF6-2851-4DF7-A65F-70777374A560.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS6C10D647-A257-4C77-80D7-23E9BF96F481.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSAB4A3A5B-1078-4AAB-BFAD-1C586D0BF095.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS60BFF947-B892-4AA2-BAB7-31A1207C7842.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSB52718ED-B51C-4060-A8F0-89EDEE5461A8.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS2F50BC28-CC67-4A0D-844F-D4D683639869.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS009D06A8-C103-4796-A4BD-CE8D2DAD2F78.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS76F99261-B8C5-4545-9A2F-A0CCA41F5590.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS81FB82F9-B76C-484E-9D2E-E171C7297562.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS207C2C61-4F9F-4EBB-AD85-42B13BDAC008.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS67C0A265-EA02-42CD-9450-148D38D82A33.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS52C3718B-293D-42F8-9273-A533A9CC2DC2.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS25B7F85C-6EF8-40E4-A851-F781C1DBEFE4.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSE4783A38-11EA-4940-B383-42F088B77EC8.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSD2BDC67B-7DB8-4878-850B-9A667957EF87.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS668941CD-E359-4425-B4F9-39031C415B62.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS383B66DB-74AB-4BF3-9597-30C247664056.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS4D0CE691-A62A-4699-B805-7FD0E0CBE9D9.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSD9DB42E4-952F-4B49-8687-F1718B470E53.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSA04401E6-F1EB-4280-A658-599E8F572D8D.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS91DBAD45-71CA-494B-B207-E3904867FDC9.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS7F07B646-3860-482E-A600-5351AC585915.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS2BAB8D00-33AF-437F-AC78-C1FEB279BF97.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS5EBF0B9C-7C49-406D-A58E-E2CFCAA11B9E.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS8E8CD3F6-02E3-4989-85AC-4789295B1499.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSD5A16B97-FEFD-464C-BE45-81E9F08A242E.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS0655904B-6D51-44A0-BD4D-26F40839C119.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS6681F6C4-6DB8-4EBB-BA5A-DE40ABB3EE43.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS6666F75F-0002-4179-B44A-C8C012DDD5D3.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSA0C7323F-7579-423D-A37E-1B8CEE869FED.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSD6FBD482-DD85-4115-A78F-F8F744F969CC.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS1D2E7B7E-61F8-450E-AA11-62A289CEF2A3.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSD7D2E175-F320-4A56-BEAE-33B80EF4A6A7.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSB79FA981-F48E-4E5F-BAB6-4DC8EFA4710F.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS26E1C520-4D6B-4F31-A8FF-DDC03782D578.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS7AE8534B-9466-4307-825B-83675BB1AF3D.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSAACAD6AF-631B-4BD6-9DDD-806846FA27F5.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSC90EDB14-A7A4-4672-B198-2D7FDB0401B6.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSD99A6B1F-1BA6-4CDA-8AF4-9BA2411D8840.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSCACD36DA-7A2E-43EB-ABAB-32F69A951130.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS211FBA10-8A89-44A5-8300-17C907FB6945.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSE55FE699-836F-4171-9A94-40DBB7C3CAEB.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS6627C8E2-F5C2-45ED-9635-C128EB794477.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCS78277C6A-FFA2-4A3B-B5B1-2928F3FBCCF1.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSDBB423AD-997A-4300-8C6C-FB65B8D874F7.tmp
C:\Documents and Settings\LocalService.NT AUTHORITY.001\Application Data\Webroot\Spy Sweeper\Temp\SSCSBCE5CFD3-43FB-4DDF-9BB0-2062C70FA316.tmp
C:\Documents and Settings\Thomas\Application Data\Microsoft\Word\~WRL2905.tmp
C:\Documents and Settings\Swee Ching\Desktop\qing\2006\2nd cs presentation n klcc\SIV2C.tmp
C:\Documents and Settings\Swee Ching\Desktop\qing\2006\2nd cs presentation n klcc\SIV2D.tmp
C:\Documents and Settings\Swee Ching\Desktop\qing\2006\my class\class bbq gathering\SIV1.tmp
C:\Documents and Settings\Swee Ching\Desktop\qing\2006\my class\class bbq gathering\SIV9.tmp
C:\Documents and Settings\ThomasVoon.AMD\My Documents\~WRL0003.tmp
C:\Documents and Settings\ThomasVoon.AMD\My Documents\Insurance\~WRL0001.tmp
C:\Documents and Settings\ThomasVoon.AMD\Desktop\New Folder (5)\Selling Idea\~WRL1721.tmp
C:\WINDOWS\LastGood.Tmp\INF\oem0.inf
C:\WINDOWS\LastGood.Tmp\INF\oem0.PNF
C:\WINDOWS\LastGood.Tmp\INF\oem1.inf
C:\WINDOWS\LastGood.Tmp\INF\oem1.PNF
C:\WINDOWS\LastGood.Tmp\INF\oem2.inf
C:\WINDOWS\LastGood.Tmp\INF\oem2.PNF
C:\WINDOWS\LastGood.Tmp\INF\oem3.inf
C:\WINDOWS\LastGood.Tmp\INF\oem3.PNF
C:\WINDOWS\LastGood.Tmp\INF\oem4.inf
C:\WINDOWS\LastGood.Tmp\INF\oem4.PNF
C:\WINDOWS\LastGood.Tmp\INF\oem5.inf
C:\WINDOWS\LastGood.Tmp\INF\oem5.PNF
C:\WINDOWS\LastGood.Tmp\INF\oem6.inf
C:\WINDOWS\LastGood.Tmp\INF\oem6.PNF
C:\WINDOWS\LastGood.Tmp\INF\oem7.inf
C:\WINDOWS\LastGood.Tmp\INF\oem7.PNF
C:\WINDOWS\LastGood.Tmp\INF\oem8.inf
C:\WINDOWS\LastGood.Tmp\INF\oem8.PNF
Finished
Logfile of HijackThis v1.99.1
Scan saved at 10:12:15 PM, on 4/3/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe
C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\HJT\HijackThis.exe
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FLASHGET\fgiebar.dll
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [avgnt] "C:\Program Files\AntiVir PersonalEdition Classic\avgnt.exe" /min
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_03\bin\jusched.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [KeySetState] C:\Documents and Settings\StreetBaller89\Local Settings\Temp\wzf69c\KeySet.exe /keyset
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_03\bin\npjpi150_03.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FLASHGET\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FLASHGET\flashget.exe
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) -
http://messenger.zone.msn.com/binary/Me ... b56907.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{BBD34D7A-E679-4044-86F1-E8E5D21D073F}: NameServer = 202.188.0.133 202.188.1.5
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O23 - Service: AntiVir PersonalEdition Classic Scheduler (AntiVirScheduler) - Avira GmbH - C:\Program Files\AntiVir PersonalEdition Classic\sched.exe
O23 - Service: AntiVir PersonalEdition Classic Guard (AntiVirService) - AVIRA GmbH - C:\Program Files\AntiVir PersonalEdition Classic\avguard.exe