I ran a scan using SUPERAntispyware program and that stopped the constant flood of system alerts and browser hijacking but the other issues I mentioned above are still going on. I posted that log after the HijackThis
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 02:44: VIRUS ALERT!, on 2008-06-17
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Apps\overclocking shat\CPUCooL\CooLSrv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Linksys Wireless-G PCI Network Adapter with SpeedBooster\WLService.exe
C:\Program Files\Linksys Wireless-G PCI Network Adapter with SpeedBooster\WMP54GSv1_1.exe
C:\Program Files\TortoiseSVN\bin\TSVNCache.exe
C:\Program Files\Hewlett-Packard\PC COE\IDA.EXE
C:\WINDOWS\ALCXMNTR.EXE
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpotdd01.exe
C:\Apps\peer guardian\PeerGuardian2\pg2.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\explorer.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 68.4.98.167:80
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Winamp Toolbar BHO - {25CEE8EC-5730-41bc-8B58-22DDC8AB8C20} - C:\Program Files\Winamp Toolbar\winamptb.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar4.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\en-us\msntb.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\util\AIRoboform\RoboForm.dll (file missing)
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\en-us\msntb.dll
O3 - Toolbar: ImageShack Toolbar - {6932D140-ABC4-4073-A44C-D4A541665E35} - C:\WINDOWS\ImageShackToolbar\ImageShackToolbar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar4.dll
O3 - Toolbar: Winamp Toolbar - {EBF2BA02-9094-4c5a-858B-BB198F3D8DE2} - C:\Program Files\Winamp Toolbar\winamptb.dll
O4 - HKLM\..\Run: [DownloadAccelerator] C:\PROGRA~1\DAP\DAP.EXE /STARTUP
O4 - HKLM\..\Run: [IDA] C:\Program Files\Hewlett-Packard\PC COE\IDA.EXE
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Apps\Daemon\DAEMON Tools\daemon.exe" -lang 1033 -noicon
O4 - HKLM\..\Run: [PC Pitstop Optimize Scheduler] C:\Program Files\PCPitstop\Optimize\PCPOptimize.exe -boot
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [54ad38dc] rundll32.exe "C:\WINDOWS\system32\ssivjgyj.dll",b
O4 - HKCU\..\Run: [igndlm.exe] C:\Program Files\FilePlanet\Download Manager\DLM.exe /windowsstart /startifwork
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_9 -reboot 1
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Startup: hp psc 1000 series.lnk = ?
O4 - Startup: hpoddt01.exe.lnk = ?
O4 - Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: hp psc 1000 series.lnk = ?
O4 - Global Startup: hpoddt01.exe.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\DAP\dapextie.htm
O8 - Extra context menu item: &Winamp Toolbar Search - C:\Documents and Settings\All Users\Application Data\Winamp Toolbar\ieToolbar\resources\en-US\local\search.html
O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\DAP\dapextie2.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Post Image to Blog - res://C:\WINDOWS\ImageShackToolbar\ImageShackToolbar.dll/5003
O8 - Extra context menu item: Tag This Image - res://C:\WINDOWS\ImageShackToolbar\ImageShackToolbar.dll/5002
O8 - Extra context menu item: Upload All Images to ImageShack - res://C:\WINDOWS\ImageShackToolbar\ImageShackToolbar.dll/5000
O8 - Extra context menu item: Upload Image to ImageShack - res://C:\WINDOWS\ImageShackToolbar\ImageShackToolbar.dll/5001
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\AIM\aim.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O15 - Trusted Zone: http://toolbar.imageshack.us
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://pcpitstop.com/pcpitstop/PCPitStop.CAB
O16 - DPF: {15589FA1-C456-11CE-BF01-00AA0055595A} - http://w4s2.work4sure.com/c/ge/w4sgeen9.exe
O16 - DPF: {2D8ED06D-3C30-438B-96AE-4D110FDC1FB8} (ActiveScan 2.0 Installer Class) - http://acs.pandasoftware.com/activescan ... stubie.cab
O16 - DPF: {31B7EB4E-8B4B-11D1-A789-00A0CC6651A8} (Cult3D ActiveX Player) - http://www.cult3d.com/download/cult.cab
O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (CDownloadCtrl Object) - http://www.fileplanet.com/fpdlmgr/cabs/ ... .6.108.cab
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex ... 0-3-36.cab
O16 - DPF: {6932D140-ABC4-4073-A44C-D4A541665E35} (ImageShack Toolbar) - http://toolbar.imageshack.us/toolbar/Im ... oolbar.cab
O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) - http://www.crucial.com/controls/cpcScanner.cab
O16 - DPF: {B030900C-746A-47BF-8B1D-EA3FB3395563} (CoxFastConnect20 Control) - https://fastconnect.cox.net/cd20/CoxFastConnect20.ocx
O16 - DPF: {BE833F39-1E0C-468C-BA70-25AAEE55775E} (System Requirements Lab) - http://www.systemrequirementslab.com/sysreqlab.cab
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O21 - SSODL: xvorfwbd - {D7E823CD-164E-49C4-8232-54AC0F066FD1} - C:\WINDOWS\xvorfwbd.dll (file missing)
O21 - SSODL: wpvmqosg - {5C40665A-211E-4A17-871D-0C1A6FD6EDFE} - C:\WINDOWS\wpvmqosg.dll (file missing)
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe (file missing)
O23 - Service: Kaspersky Anti-Virus 6.0 (AVP) - Kaspersky Lab - C:\Apps\Kap antivirus\avp.exe
O23 - Service: Boonty Games - BOONTY - C:\Program Files\Common Files\BOONTY Shared\Service\Boonty.exe
O23 - Service: CPUCooLServer Service (CPUCooLServer) - Unknown owner - C:\Apps\overclocking shat\CPUCooL\CooLSrv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: PnkBstrA - Unknown owner - C:\WINDOWS\system32\PnkBstrA.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
O23 - Service: WMP54GSSVC - GEMTEKS - C:\Program Files\Linksys Wireless-G PCI Network Adapter with SpeedBooster\WLService.exe
----------------------------------------------------------------------------------------------------------------------------------
SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 06/17/2008 at 00:17 AM
Application Version : 4.15.1000
Core Rules Database Version : 3483
Trace Rules Database Version: 1474
Scan type : Complete Scan
Total Scan Time : 01:08:54
Memory items scanned : 399
Memory threats detected : 6
Registry items scanned : 5518
Registry threats detected : 46
File items scanned : 36851
File threats detected : 47
Trojan.Vundo-Variant/Small-GEN
C:\WINDOWS\SYSTEM32\DDCARJJB.DLL
C:\WINDOWS\SYSTEM32\DDCARJJB.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6DBF9C97-0E1F-4EFD-B404-0308D4FCF994}
HKCR\CLSID\{6DBF9C97-0E1F-4EFD-B404-0308D4FCF994}
HKCR\CLSID\{6DBF9C97-0E1F-4EFD-B404-0308D4FCF994}\InprocServer32
HKCR\CLSID\{6DBF9C97-0E1F-4EFD-B404-0308D4FCF994}\InprocServer32#ThreadingModel
Adware.Vundo Variant/Resident
C:\WINDOWS\SYSTEM32\URQRJAPP.DLL
C:\WINDOWS\SYSTEM32\URQRJAPP.DLL
Adware.VideoAccessCodec/Gen
C:\WINDOWS\XVORFWBD.DLL
C:\WINDOWS\XVORFWBD.DLL
Adware.Vundo-Variant/J
C:\WINDOWS\WPVMQOSG.DLL
C:\WINDOWS\WPVMQOSG.DLL
Trojan.Unclassified/GTS
C:\WINDOWS\VRMDTNEG.DLL
C:\WINDOWS\VRMDTNEG.DLL
HKLM\Software\Microsoft\Internet Explorer\Toolbar#{778DC3F7-1699-4A2F-8D32-143C0D00854C}
HKCR\CLSID\{778DC3F7-1699-4A2F-8D32-143C0D00854C}
HKCR\CLSID\{778DC3F7-1699-4A2F-8D32-143C0D00854C}
HKCR\CLSID\{778DC3F7-1699-4A2F-8D32-143C0D00854C}\InprocServer32
HKCR\CLSID\{778DC3F7-1699-4A2F-8D32-143C0D00854C}\InprocServer32#ThreadingModel
HKCR\CLSID\{778DC3F7-1699-4A2F-8D32-143C0D00854C}\ProgID
HKCR\CLSID\{778DC3F7-1699-4A2F-8D32-143C0D00854C}\Programmable
HKCR\CLSID\{778DC3F7-1699-4A2F-8D32-143C0D00854C}\TypeLib
HKCR\CLSID\{778DC3F7-1699-4A2F-8D32-143C0D00854C}\VersionIndependentProgID
HKCR\vrmdtneg.1
HKCR\vrmdtneg
HKCR\TypeLib\{8BE255A8-2C24-4969-A642-1BE88EFD6986}
HKCR\TypeLib\{8BE255A8-2C24-4969-A642-1BE88EFD6986}\1.0
HKCR\TypeLib\{8BE255A8-2C24-4969-A642-1BE88EFD6986}\1.0\0
HKCR\TypeLib\{8BE255A8-2C24-4969-A642-1BE88EFD6986}\1.0\0\win32
HKCR\TypeLib\{8BE255A8-2C24-4969-A642-1BE88EFD6986}\1.0\FLAGS
HKCR\TypeLib\{8BE255A8-2C24-4969-A642-1BE88EFD6986}\1.0\HELPDIR
Trojan.Net-MSV/VPS-Variant
C:\WINDOWS\KSENDLBTDPL.DLL
C:\WINDOWS\KSENDLBTDPL.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{72492997-CCC3-4C07-BCB8-D2D7BFB65F7F}
HKCR\CLSID\{72492997-CCC3-4C07-BCB8-D2D7BFB65F7F}
HKCR\CLSID\{72492997-CCC3-4C07-BCB8-D2D7BFB65F7F}
HKCR\CLSID\{72492997-CCC3-4C07-BCB8-D2D7BFB65F7F}\InprocServer32
HKCR\CLSID\{72492997-CCC3-4C07-BCB8-D2D7BFB65F7F}\InprocServer32#ThreadingModel
HKCR\CLSID\{72492997-CCC3-4C07-BCB8-D2D7BFB65F7F}\ProgID
HKCR\CLSID\{72492997-CCC3-4C07-BCB8-D2D7BFB65F7F}\Programmable
HKCR\CLSID\{72492997-CCC3-4C07-BCB8-D2D7BFB65F7F}\TypeLib
HKCR\CLSID\{72492997-CCC3-4C07-BCB8-D2D7BFB65F7F}\VersionIndependentProgID
Adware.Vundo Variant
HKLM\Software\Classes\CLSID\{6C23AB0C-0244-4B01-8253-BEE724D0D2EC}
HKCR\CLSID\{6C23AB0C-0244-4B01-8253-BEE724D0D2EC}
HKCR\CLSID\{6C23AB0C-0244-4B01-8253-BEE724D0D2EC}\InprocServer32
HKCR\CLSID\{6C23AB0C-0244-4B01-8253-BEE724D0D2EC}\InprocServer32#ThreadingModel
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{6C23AB0C-0244-4B01-8253-BEE724D0D2EC}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks#{CFDE1CF9-75B3-4B1E-B9A7-B5FB88A171E6}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks#{6C23AB0C-0244-4B01-8253-BEE724D0D2EC}
HKCR\CLSID\{6C23AB0C-0244-4B01-8253-BEE724D0D2EC}
Trojan.Vundo-Variant/Small
Software\Microsoft\Windows NT\CurrentVersion\WinLogon\Notify\ddcARjJb
Adware.Tracking Cookie
C:\Documents and Settings\User\Cookies\west@doubleclick[1].txt
C:\Documents and Settings\User\Cookies\west@empornium[1].txt
C:\Documents and Settings\User\Cookies\west@ads.techguy[2].txt
C:\Documents and Settings\User\Cookies\west@toseeka[2].txt
C:\Documents and Settings\User\Cookies\west@ad.yieldmanager[1].txt
C:\Documents and Settings\User\Cookies\west@insightexpressai[1].txt
C:\Documents and Settings\User\Cookies\west@atdmt[1].txt
C:\Documents and Settings\User\Cookies\west@countomat[1].txt
C:\Documents and Settings\User\Cookies\west@insightexpresserdd[1].txt
C:\Documents and Settings\User\Cookies\west@femalefirst.co[2].txt
C:\Documents and Settings\User\Cookies\west@forums.empornium[1].txt
C:\Documents and Settings\User\Cookies\west@porn.iwantanewgirlfriend[1].txt
C:\Documents and Settings\User\Cookies\west@nir.regaccount[2].txt
C:\Documents and Settings\User\Cookies\west@findarticles[2].txt
C:\Documents and Settings\User\Cookies\west@www.popuptraffic[2].txt
C:\Documents and Settings\User\Cookies\west@www.ftvteen[2].txt
C:\Documents and Settings\User\Cookies\west@kontera[2].txt
C:\Documents and Settings\User\Cookies\west@www.traffic[2].txt
C:\Documents and Settings\User\Cookies\west@pornhost[1].txt
C:\Documents and Settings\User\Cookies\west@data.coremetrics[1].txt
C:\Documents and Settings\User\Cookies\west@hornymatches[1].txt
C:\Documents and Settings\User\Cookies\west@myaccount.turbine[2].txt
C:\Documents and Settings\User\Cookies\west@traffic[1].txt
C:\Documents and Settings\User\Cookies\west@shopica[1].txt
C:\Documents and Settings\User\Cookies\west@free.porndirt[1].txt
C:\Documents and Settings\User\Cookies\west@findlaw[1].txt
C:\Documents and Settings\User\Cookies\west@teenbodybuilding[1].txt
C:\Documents and Settings\User\Cookies\west@writ.lp.findlaw[1].txt
C:\Documents and Settings\User\Cookies\west@caloriecount[1].txt
C:\Documents and Settings\User\Cookies\west@traffic.prod.cobaltgroup[1].txt
C:\Documents and Settings\User\Cookies\west@lacounty[1].txt
C:\Documents and Settings\User\Cookies\west@82.98.235[1].txt
C:\Documents and Settings\User\Cookies\west@clickbank[2].txt
Browser Hijacker.Internet Explorer Settings Hijack
HKU\S-1-5-21-583907252-1284227242-725345543-1003\Software\Microsoft\Internet Explorer\Main#Start Page [ http://softwarereferral.com/jump.php?wm ... Ojg5&lid=2 ]
Desktop Hijacker.AboutYourPrivacy
C:\Documents and Settings\User\Desktop\Error Cleaner.url
C:\Documents and Settings\User\Desktop\Privacy Protector.url
C:\Documents and Settings\User\Desktop\Spyware&Malware Protection.url
C:\Documents and Settings\User\Favorites\Error Cleaner.url
C:\Documents and Settings\User\Favorites\Privacy Protector.url
C:\Documents and Settings\User\Favorites\Spyware&Malware Protection.url
Trojan.Net-MU/Gen
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WebVideo
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WebVideo#DisplayName
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WebVideo#uninstallString
Adware.Vundo Variant/Rel
HKLM\SOFTWARE\Microsoft\aoprndtws
HKLM\SOFTWARE\Microsoft\RemoveRP
HKU\S-1-5-21-583907252-1284227242-725345543-1003\Software\Microsoft\rdfa
Trojan.Dropper/Gen
C:\WINDOWS\EXWD.EXE
C:\WINDOWS\NELTABXW.EXE