PDA

View Full Version : Smitfraud troubles



Zanza
2007-06-13, 19:31
I don't know alot about computers, but I tried to follow your instructions the best I could. I hope Idid this right.

Logfile of HijackThis v1.99.1
Scan saved at 1:05:17 PM, on 06/13/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\SM1BG.EXE
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Panasonic\LUMIXSimpleViewer\PhLeAutoRun.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Ventrilo\Ventrilo.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R3 - URLSearchHook: (no name) - _{965A592F-8EFA-4250-8630-7960230792F1} - (no file)
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SM1BG] C:\WINDOWS\SM1BG.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [j3211232] rundll32 C:\WINDOWS\system32\j3211232.dll sook
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [GPLv3] rundll32.exe "C:\WINDOWS\system32\bhtwwpbe.dll",realset
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - HKCU\..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: LUMIX Simple Viewer.lnk = ?
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\MSN Toolbar Suite\DS\02.05.0001.1119\en-us\bin\WindowsSearch.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll/search.htm
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Translate.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://mirs.peoplepc.com/?offername=PeoplePC Online Accelerated&userName=zanza9&firstName=Nikki&qs=OKOMLDFHGMAHEMEANCBKAAIBKKMPDMAKHGNFGOBALEJMBIEOBGFDKKMLHOLJHHIAKEBHHAMMBOGNLMNCACDNPMOFOFPDPDKJCKPIODKLIACDMKKNPBHNDHOMJCGBANOI|GOFLBCBDDGNMCNOPADEEAAGOBAFDFEL
O16 - DPF: Harvest Mania by pogo - http://game1.pogo.com/applet-6.7.3.23/harvest/harvest-en_US.cab
O16 - DPF: Jigsaw Detective by pogo - http://game1.pogo.com/applet-6.7.3.23/jigsaw/jigsaw-en_US.cab
O16 - DPF: Mah Jong Garden by pogo - http://game1.pogo.com/applet-6.7.2.33/mahjong/mahjong-en_US.cab
O16 - DPF: Penguin Blocks by pogo - http://game1.pogo.com/applet-6.5.1.31/penguins/penguins-en_US.cab
O16 - DPF: Pop Fu by pogo - http://game1.pogo.com/applet-6.5.1.31/popfu/popfu-en_US.cab
O16 - DPF: PoppaZoppa by pogo - http://game1.pogo.com/applet-6.7.2.33/poppazoppa/poppazoppa-en_US.cab
O16 - DPF: Ride The Tide by pogo - http://game1.pogo.com/applet-6.5.3.44/ride/ride-en_US.cab
O16 - DPF: Stax by pogo - http://game1.pogo.com/applet-6.5.3.44/stax/stax-en_US.cab
O16 - DPF: WMP10ctrl - http://www.cinemanow.com/WMP10ctrl.CAB
O16 - DPF: Wonderland Memories by pogo - http://game1.pogo.com/applet-6.7.3.23/memories/memories-en_US.cab
O16 - DPF: Yahoo! Spades - http://download.games.yahoo.com/games/clients/y/st2_x.cab
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab30149.cab
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - http://activation.rr.com/install/download/tgctlcm.cab
O16 - DPF: {11F8D6A0-01C6-4A23-A40F-1C3A560B99EA} (MavenInstallerAXControl Class) - http://client.maven.net/client/mavenInstaller.cab
O16 - DPF: {12F7F128-B36C-4843-8AA4-A5F71A969331} (Launcher Control) - https://horizons.istaria.com/controls/launcher.ocx
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {192F9A01-8030-48CE-9BC6-B03DE3E613C6} (PeoplePC Web Installer) - https://www.peoplepc.com/ppcos/ISP60/Download/ppcwebi.cab
O16 - DPF: {1D95A7C7-3282-4DB7-9A48-7C39CE152A19} (TeamOn Import Object) - https://myemail.t-mobile.com/html/web/client_tools/TOImport.cab
O16 - DPF: {2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} (MiniBugTransporterX Class) - http://download.weatherbug.com/minibug/tricklers/AWS/MiniBugTransporter.cab?
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {33E54F7F-561C-49E6-929B-D7E76D3AFEB1} (Pool Control) - http://www.worldwinner.com/games/v48/pool/pool.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/20021205/qtinstall.info.apple.com/borris/us/win/QuickTimeInstaller.exe
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-9.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by107fd.bay107.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {55027008-315F-4F45-BBC3-8BE119764741} (Slide Image Uploader Control) - http://www.slide.com/uploader/SlideImageUploader.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/2413f9376263f0a55105/netzip/RdxIE601.cab
O16 - DPF: {640B39C1-D713-464F-92C3-75BD972B95EE} - http://www.sidestep.com/get/k42037/sb02b.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://go.divx.com/plugin/DivXBrowserPlugin.cab
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) - http://us.games2.yimg.com/download.games.yahoo.com/games/play/client/exentctl_0_0_0_1.ocx
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1181656249625
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www.ca.com/us/securityadvisor/virusinfo/webscan.cab
O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) - http://www.worldwinner.com/games/shared/wwlaunch.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab30149.cab
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://admin.pressplay.com/duet/registration/isetup.cab
O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://autos.msn.com/Components/Ocx/SurVid/MSSurVid.cab
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O16 - DPF: {9903F4ED-B673-456A-A15F-ED90C7DE9EF5} (Sol Control) - http://www.worldwinner.com/games/v45/sol/sol.cab
O16 - DPF: {AF087E66-838E-4A97-8A0B-0DDDA5DEA239} (OTAutoInstall Class) - http://streaming.endeavors.com/microsoft/imaging/clientdownloads/OTAI.CAB
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10/ZIntro.cab32846.cab
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/suite/yautocomplete.cab
O16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) - http://autos.msn.com/Components/Ocx/Exterior/Outside.cab
O16 - DPF: {C4A8A4DA-BD3F-4DEB-9BBB-5B6BD3571EC7} (CDKeyCtl Class) - http://www.cdkey-promotions.com/download/CDKey.cab
O16 - DPF: {C93C1C34-CEA9-49B1-9046-040F59E0E0D8} (Paint Control) - http://www.worldwinner.com/games/v42/paint/paint.cab
O16 - DPF: {CE74A05D-ED12-473A-97F8-85FB0E2F479F} (dlControl.UserControl1) - http://www.cinemanow.com/dlControl.CAB
O16 - DPF: {D06A22B4-6087-4D3D-B7AF-82B113E9ABD4} (CPostLaunch Object) - http://www2.verizon.net/update/msnwebinstall/includes/vzWebIns.CAB
O16 - DPF: {D6016EE7-A8FF-11D1-B37E-A4759ECD7909} (AxPulse Class) - http://www.pulse3d.com/players/english/PulsePlayerAxWin.cab
O16 - DPF: {DC75FEF6-165D-4D25-A518-C8C4BDA7BAA6} (CPlayFirstDinerDashControl Object) - http://games.pogo.com/online2/pogo/diner_dash/DinerDash.1.0.0.80.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://games.pogo.com/online2/pogo/insaniquarium/popcaploader_v6.cab
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O16 - DPF: {EE2589EB-7FC8-44DB-A892-573F2C4B41E0} - http://pdf.forbes.com/forbesnews/triggernews/ForbesDownloaderSigned.cab
O16 - DPF: {EF148DBB-5B6D-4130-B2A1-661571E86260} (Playtime Games Launcher) - http://games.pogo.com/online2/pogo/mahjong_escape_ancient/PTGameLauncher.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/vso/en-us/tools/mcfscan/1,5,0,4267/mcfscan.cab
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} (Yahoo! Toolbar) - http://us.dl1.yimg.com/download.yahoo.com/dl/toolbar/yiebio5_1_3_0.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/bin/msnchat45.cab
O16 - DPF: {F7A05BAC-9778-410A-9CDE-BFBD4D5D2B7F} (iPIX Media Send Class) - http://216.249.24.149/code/iPIX-ImageWell-ipix.cab
O16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/_media/dalaillama/ampx.cab
O16 - DPF: {FF0C042C-98E9-4C36-B2EC-E21FDFDCEF75} - http://download.redswoosh.net/Installer/104/rsinstaller.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: secuload.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Unknown owner - C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

Shaba
2007-06-14, 11:09
Hi Zanza

Rename HijackThis.exe to scanner.exe

Also do this:

Please make sure that you can view all hidden files. Instructions on how to do this can be found here:

How to see hidden files in Windows (http://www.xtra.co.nz/help/0,,4155-1916458,00.html)

Please click this link-->Jotti (http://virusscan.jotti.org/)

When the jotti page has finished loading, click the Browse button and navigate to the following file and click Submit.

c:\windows\system32\mspmspo.dll

Please post back the results of the scan in your next post.

If Jotti is busy, try the same at Virustotal: http://www.virustotal.com/flash/index_en.html

Post:

- virustotal/jotti results
- a fresh hijackthis log.

Zanza
2007-06-14, 15:10
STATUS: FINISHEDComplete scanning result of "MsPMSpo.dll", received in VirusTotal at 06.14.2007, 14:43:53 (CET).

Antivirus Version Update Result
AhnLab-V3 2007.5.9.0 05.09.2007 no virus found
AntiVir 7.4.0.32 06.14.2007 BDS/AFCore.F.2
Authentium 4.93.8 06.14.2007 W32/Trojan.YEF
Avast 4.7.997.0 06.13.2007 no virus found
AVG 7.5.0.467 05.08.2007 no virus found
BitDefender 7.2 06.14.2007 Backdoor.AFCore.F
CAT-QuickHeal 9.00 06.14.2007 no virus found
ClamAV devel-20070416 05.09.2007 no virus found
DrWeb 4.33 06.14.2007 no virus found
eSafe 7.0.15.0 05.08.2007 no virus found
eTrust-Vet 30.7.3718 06.14.2007 no virus found
FileAdvisor 1 06.14.2007 Not analyzed yet
Fortinet 2.85.0.0 06.14.2007 no virus found
F-Prot 4.3.2.48 05.08.2007 W32/Trojan.YEF
F-Secure 6.70.13030.0 05.09.2007 no virus found
Ikarus T3.1.1.7 05.09.2007 Generic.AFCore
Kaspersky 4.0.2.24 06.14.2007 no virus found
McAfee 5052 06.13.2007 no virus found
Microsoft 1.2503 06.14.2007 no virus found
NOD32v2 2329 06.14.2007 no virus found
Norman 5.80.02 06.14.2007 no virus found
Panda 9.0.0.4 06.14.2007 Application/MediaPipe
Prevx1 V2 06.14.2007 Backdoor.Afcore.F
Sophos 4.18.0 06.12.2007 no virus found
Sunbelt 2.2.907.0 05.05.2007 Trojan.AFCore.A8314C6C
Symantec 10 05.09.2007 no virus found
TheHacker 6.1.6.133 06.14.2007 no virus found
VBA32 3.12.0.1 06.13.2007 no virus found
VirusBuster 4.3.23:9 06.13.2007 no virus found
Webwasher-Gateway 6.0.1 05.09.2007 Trojan.AFCore.F.2

Zanza
2007-06-14, 15:12
Logfile of HijackThis v1.99.1
Scan saved at 9:04:14 AM, on 06/14/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\SM1BG.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Panasonic\LUMIXSimpleViewer\PhLeAutoRun.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\hijackthis\scanner.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R3 - URLSearchHook: (no name) - _{965A592F-8EFA-4250-8630-7960230792F1} - (no file)
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: SpywareBlock Class - {0A87E45F-537A-40B4-B812-E2544C21A09F} - C:\Program Files\SpyCatcher\SCActiveBlock.dll (file missing)
O2 - BHO: XNetIEObj Class - {1808648B-3102-4293-8AD3-06AF71D3321B} - C:\Program Files\Endeavors\AppExpress\bho_2_5_5_17070\bho.dll (file missing)
O2 - BHO: (no name) - {20CD9BDC-5E7F-4AA1-9136-75A727F330D6} - C:\WINDOWS\system32\wljlqrud.dll
O2 - BHO: (no name) - {2432F099-F8E2-43C9-B765-3AF002FFC6A7} - C:\WINDOWS\system32\ddccdbx.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {5ADF3862-9E2E-4ad3-86F7-4510E6550CD0} - C:\WINDOWS\system32\ikodeifh.dll
O2 - BHO: UberButton Class - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: YahooTaggedBM Class - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - C:\Program Files\Yahoo!\Common\YIeTagBm.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: MSN Search Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O2 - BHO: (no name) - {C35C3D5C-83E3-4633-BCF8-9D088181FEF6} - C:\WINDOWS\system32\wljlqrud.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll
O2 - BHO: (no name) - {D59E6CE1-7D1F-4D57-BF53-1BC8C6D0B91F} - C:\WINDOWS\system32\pmnnk.dll
O2 - BHO: (no name) - {D71FB4B1-729A-40F1-8F54-DC95599F0351} - (no file)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SM1BG] C:\WINDOWS\SM1BG.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [j3211232] rundll32 C:\WINDOWS\system32\j3211232.dll sook
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [GPLv3] rundll32.exe "C:\WINDOWS\system32\muuyiuhb.dll",realset
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - HKCU\..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: LUMIX Simple Viewer.lnk = ?
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\MSN Toolbar Suite\DS\02.05.0001.1119\en-us\bin\WindowsSearch.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll/search.htm
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Translate.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://mirs.peoplepc.com/?offername=PeoplePC Online Accelerated&userName=zanza9&firstName=Nikki&qs=OKOMLDFHGMAHEMEANCBKAAIBKKMPDMAKHGNFGOBALEJMBIEOBGFDKKMLHOLJHHIAKEBHHAMMBOGNLMNCACDNPMOFOFPDPDKJCKPIODKLIACDMKKNPBHNDHOMJCGBANOI|GOFLBCBDDGNMCNOPADEEAAGOBAFDFEL
O16 - DPF: Harvest Mania by pogo - http://game1.pogo.com/applet-6.7.3.23/harvest/harvest-en_US.cab
O16 - DPF: Jigsaw Detective by pogo - http://game1.pogo.com/applet-6.7.3.23/jigsaw/jigsaw-en_US.cab
O16 - DPF: Mah Jong Garden by pogo - http://game1.pogo.com/applet-6.7.2.33/mahjong/mahjong-en_US.cab
O16 - DPF: Penguin Blocks by pogo - http://game1.pogo.com/applet-6.5.1.31/penguins/penguins-en_US.cab
O16 - DPF: Pop Fu by pogo - http://game1.pogo.com/applet-6.5.1.31/popfu/popfu-en_US.cab
O16 - DPF: PoppaZoppa by pogo - http://game1.pogo.com/applet-6.7.2.33/poppazoppa/poppazoppa-en_US.cab
O16 - DPF: Ride The Tide by pogo - http://game1.pogo.com/applet-6.5.3.44/ride/ride-en_US.cab
O16 - DPF: Stax by pogo - http://game1.pogo.com/applet-6.5.3.44/stax/stax-en_US.cab
O16 - DPF: WMP10ctrl - http://www.cinemanow.com/WMP10ctrl.CAB
O16 - DPF: Wonderland Memories by pogo - http://game1.pogo.com/applet-6.7.3.23/memories/memories-en_US.cab
O16 - DPF: Yahoo! Spades - http://download.games.yahoo.com/games/clients/y/st2_x.cab
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab30149.cab
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - http://activation.rr.com/install/download/tgctlcm.cab
O16 - DPF: {11F8D6A0-01C6-4A23-A40F-1C3A560B99EA} (MavenInstallerAXControl Class) - http://client.maven.net/client/mavenInstaller.cab
O16 - DPF: {12F7F128-B36C-4843-8AA4-A5F71A969331} (Launcher Control) - https://horizons.istaria.com/controls/launcher.ocx
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {192F9A01-8030-48CE-9BC6-B03DE3E613C6} (PeoplePC Web Installer) - https://www.peoplepc.com/ppcos/ISP60/Download/ppcwebi.cab
O16 - DPF: {1D95A7C7-3282-4DB7-9A48-7C39CE152A19} (TeamOn Import Object) - https://myemail.t-mobile.com/html/web/client_tools/TOImport.cab
O16 - DPF: {2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} (MiniBugTransporterX Class) - http://download.weatherbug.com/minibug/tricklers/AWS/MiniBugTransporter.cab?
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {33E54F7F-561C-49E6-929B-D7E76D3AFEB1} (Pool Control) - http://www.worldwinner.com/games/v48/pool/pool.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/20021205/qtinstall.info.apple.com/borris/us/win/QuickTimeInstaller.exe
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-9.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by107fd.bay107.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {55027008-315F-4F45-BBC3-8BE119764741} (Slide Image Uploader Control) - http://www.slide.com/uploader/SlideImageUploader.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/2413f9376263f0a55105/netzip/RdxIE601.cab
O16 - DPF: {640B39C1-D713-464F-92C3-75BD972B95EE} - http://www.sidestep.com/get/k42037/sb02b.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://go.divx.com/plugin/DivXBrowserPlugin.cab
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) - http://us.games2.yimg.com/download.games.yahoo.com/games/play/client/exentctl_0_0_0_1.ocx
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1181656249625
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www.ca.com/us/securityadvisor/virusinfo/webscan.cab
O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) - http://www.worldwinner.com/games/shared/wwlaunch.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab30149.cab
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://admin.pressplay.com/duet/registration/isetup.cab
O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://autos.msn.com/Components/Ocx/SurVid/MSSurVid.cab
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O16 - DPF: {9903F4ED-B673-456A-A15F-ED90C7DE9EF5} (Sol Control) - http://www.worldwinner.com/games/v45/sol/sol.cab
O16 - DPF: {AF087E66-838E-4A97-8A0B-0DDDA5DEA239} (OTAutoInstall Class) - http://streaming.endeavors.com/microsoft/imaging/clientdownloads/OTAI.CAB
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10/ZIntro.cab32846.cab
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/suite/yautocomplete.cab
O16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) - http://autos.msn.com/Components/Ocx/Exterior/Outside.cab
O16 - DPF: {C4A8A4DA-BD3F-4DEB-9BBB-5B6BD3571EC7} (CDKeyCtl Class) - http://www.cdkey-promotions.com/download/CDKey.cab
O16 - DPF: {C93C1C34-CEA9-49B1-9046-040F59E0E0D8} (Paint Control) - http://www.worldwinner.com/games/v42/paint/paint.cab
O16 - DPF: {CE74A05D-ED12-473A-97F8-85FB0E2F479F} (dlControl.UserControl1) - http://www.cinemanow.com/dlControl.CAB
O16 - DPF: {D06A22B4-6087-4D3D-B7AF-82B113E9ABD4} (CPostLaunch Object) - http://www2.verizon.net/update/msnwebinstall/includes/vzWebIns.CAB
O16 - DPF: {D6016EE7-A8FF-11D1-B37E-A4759ECD7909} (AxPulse Class) - http://www.pulse3d.com/players/english/PulsePlayerAxWin.cab
O16 - DPF: {DC75FEF6-165D-4D25-A518-C8C4BDA7BAA6} (CPlayFirstDinerDashControl Object) - http://games.pogo.com/online2/pogo/diner_dash/DinerDash.1.0.0.80.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://games.pogo.com/online2/pogo/insaniquarium/popcaploader_v6.cab
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O16 - DPF: {EE2589EB-7FC8-44DB-A892-573F2C4B41E0} - http://pdf.forbes.com/forbesnews/triggernews/ForbesDownloaderSigned.cab
O16 - DPF: {EF148DBB-5B6D-4130-B2A1-661571E86260} (Playtime Games Launcher) - http://games.pogo.com/online2/pogo/mahjong_escape_ancient/PTGameLauncher.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/vso/en-us/tools/mcfscan/1,5,0,4267/mcfscan.cab
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} (Yahoo! Toolbar) - http://us.dl1.yimg.com/download.yahoo.com/dl/toolbar/yiebio5_1_3_0.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/bin/msnchat45.cab
O16 - DPF: {F7A05BAC-9778-410A-9CDE-BFBD4D5D2B7F} (iPIX Media Send Class) - http://216.249.24.149/code/iPIX-ImageWell-ipix.cab
O16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/_media/dalaillama/ampx.cab
O16 - DPF: {FF0C042C-98E9-4C36-B2EC-E21FDFDCEF75} - http://download.redswoosh.net/Installer/104/rsinstaller.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: secuload.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll
O20 - Winlogon Notify: ddccdbx - C:\WINDOWS\SYSTEM32\ddccdbx.dll
O20 - Winlogon Notify: pmnnk - C:\WINDOWS\system32\pmnnk.dll
O20 - Winlogon Notify: SOFTWARE - C:\WINDOWS\
O20 - Winlogon Notify: SYSTEM - C:\WINDOWS\
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Unknown owner - C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

Shaba
2007-06-14, 15:20
Hi

Download suspicious file packer from here (http://www.safer-networking.org/files/sfp.zip)

Unzip it to desktop, open it & paste in the list of files below, press next & it will create an archive (zip/cab file) on desktop

c:\windows\system32\mspmspo.dll

Go to spykiller (http://www.thespykiller.co.uk/index.php?PHPSESSID=d65884362fbc872b70e1a9a9a7e13700&board=1.0)

Press new topic, make threads title "Files for Shaba"
Include to your message a link to here, then attach the cab/zip file to your message and post the topic
If you cant locate it through the browse button just copy/paste the filename and path.

We'll continue then :)

Shaba
2007-06-14, 15:56
Hi

Thanks for the file :)

Please download VundoFix.exe (http://www.atribune.org/ccount/click.php?id=4) to your desktop.
Double-click VundoFix.exe to run it.
Click the Scan for Vundo button.
Once it's done scanning, click the Remove Vundo button.
You will receive a prompt asking if you want to remove the files, click YES
Once you click yes, your desktop will go blank as it starts removing Vundo.
When completed, it will prompt that it will reboot your computer, click OK.
Please post the contents of C:\vundofix.txt and a new HiJackThis log in a reply to this thread.
Note: It is possible that VundoFix encountered a file it could not remove. In this case, VundoFix will run on reboot, simply follow the above instructions starting from "Click the Scan for Vundo button" when VundoFix appears upon rebooting.

Zanza
2007-06-14, 17:08
VundoFix V6.5.0

Checking Java version...

Scan started at 10:32:23 AM 06/14/2007

Listing files found while scanning....

C:\windows\system32\avntytvm.exe
C:\windows\system32\cbeeg.ini
C:\windows\system32\csfhralo.exe
C:\WINDOWS\system32\ddccdbx.dll
C:\windows\system32\dwghvmqa.dll
C:\windows\system32\dxrwvvli.dll
C:\windows\system32\geebc.dll
C:\windows\system32\gpiwbmdg.exe
C:\windows\system32\gubsodtd.exe
C:\windows\system32\j3211232.dll
C:\windows\system32\jbgnbaqy.dll
C:\windows\system32\keauaaqc.dll
C:\windows\system32\kmbpiyje.exe
C:\windows\system32\knnmp.bak1
C:\windows\system32\knnmp.bak2
C:\windows\system32\knnmp.ini
C:\windows\system32\knnmp.tmp
C:\windows\system32\kvjbjjdu.dll
C:\windows\system32\neqcgyaw.exe
C:\WINDOWS\system32\pmnnk.dll
C:\windows\system32\qttss.ini
C:\windows\system32\rdnoffrr.dll
C:\windows\system32\rthilpcg.exe
C:\windows\system32\shpubbkx.dll
C:\windows\system32\snkkwcax.exe
C:\windows\system32\ssttq.dll
C:\WINDOWS\system32\tmclohfi.dll
C:\windows\system32\wcqnojfm.dll
C:\windows\system32\wggijssn.exe
C:\WINDOWS\system32\wjjgjjcs.dll
C:\windows\system32\wljlqrud.dll
C:\windows\system32\wraqrojs.exe
C:\windows\system32\xkbbuphs.ini
C:\windows\system32\yddfsyns.exe
C:\windows\system32\yqabngbj.ini

Beginning removal...

Attempting to delete C:\windows\system32\avntytvm.exe
C:\windows\system32\avntytvm.exe Has been deleted!

Attempting to delete C:\windows\system32\cbeeg.ini
C:\windows\system32\cbeeg.ini Has been deleted!

Attempting to delete C:\windows\system32\csfhralo.exe
C:\windows\system32\csfhralo.exe Has been deleted!

Attempting to delete C:\WINDOWS\system32\ddccdbx.dll
C:\WINDOWS\system32\ddccdbx.dll Has been deleted!

Attempting to delete C:\windows\system32\dwghvmqa.dll
C:\windows\system32\dwghvmqa.dll Has been deleted!

Attempting to delete C:\windows\system32\dxrwvvli.dll
C:\windows\system32\dxrwvvli.dll Has been deleted!

Attempting to delete C:\windows\system32\geebc.dll
C:\windows\system32\geebc.dll Has been deleted!

Attempting to delete C:\windows\system32\gpiwbmdg.exe
C:\windows\system32\gpiwbmdg.exe Has been deleted!

Attempting to delete C:\windows\system32\gubsodtd.exe
C:\windows\system32\gubsodtd.exe Has been deleted!

Attempting to delete C:\windows\system32\j3211232.dll
C:\windows\system32\j3211232.dll Has been deleted!

Attempting to delete C:\windows\system32\jbgnbaqy.dll
C:\windows\system32\jbgnbaqy.dll Has been deleted!

Attempting to delete C:\windows\system32\keauaaqc.dll
C:\windows\system32\keauaaqc.dll Has been deleted!

Attempting to delete C:\windows\system32\kmbpiyje.exe
C:\windows\system32\kmbpiyje.exe Has been deleted!

Attempting to delete C:\windows\system32\knnmp.bak1
C:\windows\system32\knnmp.bak1 Has been deleted!

Attempting to delete C:\windows\system32\knnmp.bak2
C:\windows\system32\knnmp.bak2 Has been deleted!

Attempting to delete C:\windows\system32\knnmp.ini
C:\windows\system32\knnmp.ini Has been deleted!

Attempting to delete C:\windows\system32\knnmp.tmp
C:\windows\system32\knnmp.tmp Has been deleted!

Attempting to delete C:\windows\system32\kvjbjjdu.dll
C:\windows\system32\kvjbjjdu.dll Has been deleted!

Attempting to delete C:\windows\system32\neqcgyaw.exe
C:\windows\system32\neqcgyaw.exe Has been deleted!

Attempting to delete C:\WINDOWS\system32\pmnnk.dll
C:\WINDOWS\system32\pmnnk.dll Has been deleted!

Attempting to delete C:\windows\system32\qttss.ini
C:\windows\system32\qttss.ini Has been deleted!

Attempting to delete C:\windows\system32\rdnoffrr.dll
C:\windows\system32\rdnoffrr.dll Has been deleted!

Attempting to delete C:\windows\system32\rthilpcg.exe
C:\windows\system32\rthilpcg.exe Has been deleted!

Attempting to delete C:\windows\system32\shpubbkx.dll
C:\windows\system32\shpubbkx.dll Has been deleted!

Attempting to delete C:\windows\system32\snkkwcax.exe
C:\windows\system32\snkkwcax.exe Has been deleted!

Attempting to delete C:\windows\system32\ssttq.dll
C:\windows\system32\ssttq.dll Has been deleted!

Attempting to delete C:\windows\system32\wcqnojfm.dll
C:\windows\system32\wcqnojfm.dll Has been deleted!

Attempting to delete C:\windows\system32\wggijssn.exe
C:\windows\system32\wggijssn.exe Has been deleted!

Attempting to delete C:\windows\system32\wljlqrud.dll
C:\windows\system32\wljlqrud.dll Has been deleted!

Attempting to delete C:\windows\system32\wraqrojs.exe
C:\windows\system32\wraqrojs.exe Has been deleted!

Attempting to delete C:\windows\system32\xkbbuphs.ini
C:\windows\system32\xkbbuphs.ini Has been deleted!

Attempting to delete C:\windows\system32\yddfsyns.exe
C:\windows\system32\yddfsyns.exe Has been deleted!

Attempting to delete C:\windows\system32\yqabngbj.ini
C:\windows\system32\yqabngbj.ini Has been deleted!

Performing Repairs to the registry.
Done!

Zanza
2007-06-14, 17:09
Logfile of HijackThis v1.99.1
Scan saved at 11:04:33 AM, on 06/14/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\SM1BG.EXE
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Panasonic\LUMIXSimpleViewer\PhLeAutoRun.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\hijackthis\scanner.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R3 - URLSearchHook: (no name) - _{965A592F-8EFA-4250-8630-7960230792F1} - (no file)
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: SpywareBlock Class - {0A87E45F-537A-40B4-B812-E2544C21A09F} - C:\Program Files\SpyCatcher\SCActiveBlock.dll (file missing)
O2 - BHO: XNetIEObj Class - {1808648B-3102-4293-8AD3-06AF71D3321B} - C:\Program Files\Endeavors\AppExpress\bho_2_5_5_17070\bho.dll (file missing)
O2 - BHO: (no name) - {20CD9BDC-5E7F-4AA1-9136-75A727F330D6} - C:\WINDOWS\system32\wljlqrud.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {5ADF3862-9E2E-4ad3-86F7-4510E6550CD0} - C:\WINDOWS\system32\ikodeifh.dll
O2 - BHO: UberButton Class - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: YahooTaggedBM Class - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - C:\Program Files\Yahoo!\Common\YIeTagBm.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: MSN Search Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O2 - BHO: (no name) - {C35C3D5C-83E3-4633-BCF8-9D088181FEF6} - C:\WINDOWS\system32\wljlqrud.dll (file missing)
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll
O2 - BHO: (no name) - {D59E6CE1-7D1F-4D57-BF53-1BC8C6D0B91F} - C:\WINDOWS\system32\pmnnk.dll (file missing)
O2 - BHO: (no name) - {D71FB4B1-729A-40F1-8F54-DC95599F0351} - (no file)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SM1BG] C:\WINDOWS\SM1BG.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [j3211232] rundll32 C:\WINDOWS\system32\j3211232.dll sook
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [GPLv3] rundll32.exe "C:\WINDOWS\system32\muuyiuhb.dll",realset
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - HKCU\..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: LUMIX Simple Viewer.lnk = ?
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\MSN Toolbar Suite\DS\02.05.0001.1119\en-us\bin\WindowsSearch.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll/search.htm
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Translate.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://mirs.peoplepc.com/?offername=PeoplePC Online Accelerated&userName=zanza9&firstName=Nikki&qs=OKOMLDFHGMAHEMEANCBKAAIBKKMPDMAKHGNFGOBALEJMBIEOBGFDKKMLHOLJHHIAKEBHHAMMBOGNLMNCACDNPMOFOFPDPDKJCKPIODKLIACDMKKNPBHNDHOMJCGBANOI|GOFLBCBDDGNMCNOPADEEAAGOBAFDFEL
O16 - DPF: Harvest Mania by pogo - http://game1.pogo.com/applet-6.7.3.23/harvest/harvest-en_US.cab
O16 - DPF: Jigsaw Detective by pogo - http://game1.pogo.com/applet-6.7.3.23/jigsaw/jigsaw-en_US.cab
O16 - DPF: Mah Jong Garden by pogo - http://game1.pogo.com/applet-6.7.2.33/mahjong/mahjong-en_US.cab
O16 - DPF: Penguin Blocks by pogo - http://game1.pogo.com/applet-6.5.1.31/penguins/penguins-en_US.cab
O16 - DPF: Pop Fu by pogo - http://game1.pogo.com/applet-6.5.1.31/popfu/popfu-en_US.cab
O16 - DPF: PoppaZoppa by pogo - http://game1.pogo.com/applet-6.7.2.33/poppazoppa/poppazoppa-en_US.cab
O16 - DPF: Ride The Tide by pogo - http://game1.pogo.com/applet-6.5.3.44/ride/ride-en_US.cab
O16 - DPF: Stax by pogo - http://game1.pogo.com/applet-6.5.3.44/stax/stax-en_US.cab
O16 - DPF: WMP10ctrl - http://www.cinemanow.com/WMP10ctrl.CAB
O16 - DPF: Wonderland Memories by pogo - http://game1.pogo.com/applet-6.7.3.23/memories/memories-en_US.cab
O16 - DPF: Yahoo! Spades - http://download.games.yahoo.com/games/clients/y/st2_x.cab
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab30149.cab
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - http://activation.rr.com/install/download/tgctlcm.cab
O16 - DPF: {11F8D6A0-01C6-4A23-A40F-1C3A560B99EA} (MavenInstallerAXControl Class) - http://client.maven.net/client/mavenInstaller.cab
O16 - DPF: {12F7F128-B36C-4843-8AA4-A5F71A969331} (Launcher Control) - https://horizons.istaria.com/controls/launcher.ocx
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {192F9A01-8030-48CE-9BC6-B03DE3E613C6} (PeoplePC Web Installer) - https://www.peoplepc.com/ppcos/ISP60/Download/ppcwebi.cab
O16 - DPF: {1D95A7C7-3282-4DB7-9A48-7C39CE152A19} (TeamOn Import Object) - https://myemail.t-mobile.com/html/web/client_tools/TOImport.cab
O16 - DPF: {2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} (MiniBugTransporterX Class) - http://download.weatherbug.com/minibug/tricklers/AWS/MiniBugTransporter.cab?
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {33E54F7F-561C-49E6-929B-D7E76D3AFEB1} (Pool Control) - http://www.worldwinner.com/games/v48/pool/pool.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/20021205/qtinstall.info.apple.com/borris/us/win/QuickTimeInstaller.exe
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-9.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by107fd.bay107.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {55027008-315F-4F45-BBC3-8BE119764741} (Slide Image Uploader Control) - http://www.slide.com/uploader/SlideImageUploader.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/2413f9376263f0a55105/netzip/RdxIE601.cab
O16 - DPF: {640B39C1-D713-464F-92C3-75BD972B95EE} - http://www.sidestep.com/get/k42037/sb02b.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://go.divx.com/plugin/DivXBrowserPlugin.cab
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) - http://us.games2.yimg.com/download.games.yahoo.com/games/play/client/exentctl_0_0_0_1.ocx
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1181656249625
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www.ca.com/us/securityadvisor/virusinfo/webscan.cab
O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) - http://www.worldwinner.com/games/shared/wwlaunch.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab30149.cab
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://admin.pressplay.com/duet/registration/isetup.cab
O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://autos.msn.com/Components/Ocx/SurVid/MSSurVid.cab
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O16 - DPF: {9903F4ED-B673-456A-A15F-ED90C7DE9EF5} (Sol Control) - http://www.worldwinner.com/games/v45/sol/sol.cab
O16 - DPF: {AF087E66-838E-4A97-8A0B-0DDDA5DEA239} (OTAutoInstall Class) - http://streaming.endeavors.com/microsoft/imaging/clientdownloads/OTAI.CAB
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10/ZIntro.cab32846.cab
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/suite/yautocomplete.cab
O16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) - http://autos.msn.com/Components/Ocx/Exterior/Outside.cab
O16 - DPF: {C4A8A4DA-BD3F-4DEB-9BBB-5B6BD3571EC7} (CDKeyCtl Class) - http://www.cdkey-promotions.com/download/CDKey.cab
O16 - DPF: {C93C1C34-CEA9-49B1-9046-040F59E0E0D8} (Paint Control) - http://www.worldwinner.com/games/v42/paint/paint.cab
O16 - DPF: {CE74A05D-ED12-473A-97F8-85FB0E2F479F} (dlControl.UserControl1) - http://www.cinemanow.com/dlControl.CAB
O16 - DPF: {D06A22B4-6087-4D3D-B7AF-82B113E9ABD4} (CPostLaunch Object) - http://www2.verizon.net/update/msnwebinstall/includes/vzWebIns.CAB
O16 - DPF: {D6016EE7-A8FF-11D1-B37E-A4759ECD7909} (AxPulse Class) - http://www.pulse3d.com/players/english/PulsePlayerAxWin.cab
O16 - DPF: {DC75FEF6-165D-4D25-A518-C8C4BDA7BAA6} (CPlayFirstDinerDashControl Object) - http://games.pogo.com/online2/pogo/diner_dash/DinerDash.1.0.0.80.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://games.pogo.com/online2/pogo/insaniquarium/popcaploader_v6.cab
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O16 - DPF: {EE2589EB-7FC8-44DB-A892-573F2C4B41E0} - http://pdf.forbes.com/forbesnews/triggernews/ForbesDownloaderSigned.cab
O16 - DPF: {EF148DBB-5B6D-4130-B2A1-661571E86260} (Playtime Games Launcher) - http://games.pogo.com/online2/pogo/mahjong_escape_ancient/PTGameLauncher.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/vso/en-us/tools/mcfscan/1,5,0,4267/mcfscan.cab
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} (Yahoo! Toolbar) - http://us.dl1.yimg.com/download.yahoo.com/dl/toolbar/yiebio5_1_3_0.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/bin/msnchat45.cab
O16 - DPF: {F7A05BAC-9778-410A-9CDE-BFBD4D5D2B7F} (iPIX Media Send Class) - http://216.249.24.149/code/iPIX-ImageWell-ipix.cab
O16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/_media/dalaillama/ampx.cab
O16 - DPF: {FF0C042C-98E9-4C36-B2EC-E21FDFDCEF75} - http://download.redswoosh.net/Installer/104/rsinstaller.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: secuload.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll
O20 - Winlogon Notify: SOFTWARE - C:\WINDOWS\
O20 - Winlogon Notify: SYSTEM - C:\WINDOWS\
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Unknown owner - C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

Shaba
2007-06-14, 17:12
Hi

Looking better :)

Open HijackThis, click do a system scan only and checkmark these:

R3 - URLSearchHook: (no name) - _{965A592F-8EFA-4250-8630-7960230792F1} - (no file)
O2 - BHO: SpywareBlock Class - {0A87E45F-537A-40B4-B812-E2544C21A09F} - C:\Program Files\SpyCatcher\SCActiveBlock.dll (file missing)
O2 - BHO: XNetIEObj Class - {1808648B-3102-4293-8AD3-06AF71D3321B} - C:\Program Files\Endeavors\AppExpress\bho_2_5_5_17070\bho.dll (file missing)
O2 - BHO: (no name) - {20CD9BDC-5E7F-4AA1-9136-75A727F330D6} - C:\WINDOWS\system32\wljlqrud.dll (file missing)
O2 - BHO: (no name) - {5ADF3862-9E2E-4ad3-86F7-4510E6550CD0} - C:\WINDOWS\system32\ikodeifh.dll
O2 - BHO: (no name) - {C35C3D5C-83E3-4633-BCF8-9D088181FEF6} - C:\WINDOWS\system32\wljlqrud.dll (file missing)
O2 - BHO: (no name) - {D59E6CE1-7D1F-4D57-BF53-1BC8C6D0B91F} - C:\WINDOWS\system32\pmnnk.dll (file missing)
O2 - BHO: (no name) - {D71FB4B1-729A-40F1-8F54-DC95599F0351} - (no file)
O4 - HKLM\..\Run: [j3211232] rundll32 C:\WINDOWS\system32\j3211232.dll sook
O4 - HKLM\..\Run: [GPLv3] rundll32.exe "C:\WINDOWS\system32\muuyiuhb.dll",realset
O16 - DPF: {2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} (MiniBugTransporterX Class) - http://download.weatherbug.com/minib...ansporter.cab?
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/2413f937...p/RdxIE601.cab
O20 - AppInit_DLLs: secuload.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll
O20 - Winlogon Notify: SOFTWARE - C:\WINDOWS\
O20 - Winlogon Notify: SYSTEM - C:\WINDOWS\

Close all windows including browser and press fix checked.

Reboot.

Delete if present:

C:\WINDOWS\system32\ikodeifh.dll
C:\WINDOWS\system32\muuyiuhb.dll
c:\windows\system32\mspmspo.dll

Empty Recycle Bin

Post a fresh HijackThis log.

Zanza
2007-06-14, 18:18
Logfile of HijackThis v1.99.1
Scan saved at 12:13:33 PM, on 06/14/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\SM1BG.EXE
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Panasonic\LUMIXSimpleViewer\PhLeAutoRun.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\WINDOWS\system32\cidaemon.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\hijackthis\scanner.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: (no name) - {20CD9BDC-5E7F-4AA1-9136-75A727F330D6} - C:\WINDOWS\system32\wljlqrud.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: UberButton Class - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: YahooTaggedBM Class - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - C:\Program Files\Yahoo!\Common\YIeTagBm.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: MSN Search Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SM1BG] C:\WINDOWS\SM1BG.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - HKCU\..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: LUMIX Simple Viewer.lnk = ?
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\MSN Toolbar Suite\DS\02.05.0001.1119\en-us\bin\WindowsSearch.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll/search.htm
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Translate.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://mirs.peoplepc.com/?offername=PeoplePC Online Accelerated&userName=zanza9&firstName=Nikki&qs=OKOMLDFHGMAHEMEANCBKAAIBKKMPDMAKHGNFGOBALEJMBIEOBGFDKKMLHOLJHHIAKEBHHAMMBOGNLMNCACDNPMOFOFPDPDKJCKPIODKLIACDMKKNPBHNDHOMJCGBANOI|GOFLBCBDDGNMCNOPADEEAAGOBAFDFEL
O16 - DPF: Harvest Mania by pogo - http://game1.pogo.com/applet-6.7.3.23/harvest/harvest-en_US.cab
O16 - DPF: Jigsaw Detective by pogo - http://game1.pogo.com/applet-6.7.3.23/jigsaw/jigsaw-en_US.cab
O16 - DPF: Mah Jong Garden by pogo - http://game1.pogo.com/applet-6.7.2.33/mahjong/mahjong-en_US.cab
O16 - DPF: Penguin Blocks by pogo - http://game1.pogo.com/applet-6.5.1.31/penguins/penguins-en_US.cab
O16 - DPF: Pop Fu by pogo - http://game1.pogo.com/applet-6.5.1.31/popfu/popfu-en_US.cab
O16 - DPF: PoppaZoppa by pogo - http://game1.pogo.com/applet-6.7.2.33/poppazoppa/poppazoppa-en_US.cab
O16 - DPF: Ride The Tide by pogo - http://game1.pogo.com/applet-6.5.3.44/ride/ride-en_US.cab
O16 - DPF: Stax by pogo - http://game1.pogo.com/applet-6.5.3.44/stax/stax-en_US.cab
O16 - DPF: WMP10ctrl - http://www.cinemanow.com/WMP10ctrl.CAB
O16 - DPF: Wonderland Memories by pogo - http://game1.pogo.com/applet-6.7.3.23/memories/memories-en_US.cab
O16 - DPF: Yahoo! Spades - http://download.games.yahoo.com/games/clients/y/st2_x.cab
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab30149.cab
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - http://activation.rr.com/install/download/tgctlcm.cab
O16 - DPF: {11F8D6A0-01C6-4A23-A40F-1C3A560B99EA} (MavenInstallerAXControl Class) - http://client.maven.net/client/mavenInstaller.cab
O16 - DPF: {12F7F128-B36C-4843-8AA4-A5F71A969331} (Launcher Control) - https://horizons.istaria.com/controls/launcher.ocx
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {192F9A01-8030-48CE-9BC6-B03DE3E613C6} (PeoplePC Web Installer) - https://www.peoplepc.com/ppcos/ISP60/Download/ppcwebi.cab
O16 - DPF: {1D95A7C7-3282-4DB7-9A48-7C39CE152A19} (TeamOn Import Object) - https://myemail.t-mobile.com/html/web/client_tools/TOImport.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {33E54F7F-561C-49E6-929B-D7E76D3AFEB1} (Pool Control) - http://www.worldwinner.com/games/v48/pool/pool.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/20021205/qtinstall.info.apple.com/borris/us/win/QuickTimeInstaller.exe
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-9.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by107fd.bay107.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {55027008-315F-4F45-BBC3-8BE119764741} (Slide Image Uploader Control) - http://www.slide.com/uploader/SlideImageUploader.cab
O16 - DPF: {640B39C1-D713-464F-92C3-75BD972B95EE} - http://www.sidestep.com/get/k42037/sb02b.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://go.divx.com/plugin/DivXBrowserPlugin.cab
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) - http://us.games2.yimg.com/download.games.yahoo.com/games/play/client/exentctl_0_0_0_1.ocx
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1181656249625
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www.ca.com/us/securityadvisor/virusinfo/webscan.cab
O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) - http://www.worldwinner.com/games/shared/wwlaunch.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab30149.cab
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://admin.pressplay.com/duet/registration/isetup.cab
O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://autos.msn.com/Components/Ocx/SurVid/MSSurVid.cab
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O16 - DPF: {9903F4ED-B673-456A-A15F-ED90C7DE9EF5} (Sol Control) - http://www.worldwinner.com/games/v45/sol/sol.cab
O16 - DPF: {AF087E66-838E-4A97-8A0B-0DDDA5DEA239} (OTAutoInstall Class) - http://streaming.endeavors.com/microsoft/imaging/clientdownloads/OTAI.CAB
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10/ZIntro.cab32846.cab
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/suite/yautocomplete.cab
O16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) - http://autos.msn.com/Components/Ocx/Exterior/Outside.cab
O16 - DPF: {C4A8A4DA-BD3F-4DEB-9BBB-5B6BD3571EC7} (CDKeyCtl Class) - http://www.cdkey-promotions.com/download/CDKey.cab
O16 - DPF: {C93C1C34-CEA9-49B1-9046-040F59E0E0D8} (Paint Control) - http://www.worldwinner.com/games/v42/paint/paint.cab
O16 - DPF: {CE74A05D-ED12-473A-97F8-85FB0E2F479F} (dlControl.UserControl1) - http://www.cinemanow.com/dlControl.CAB
O16 - DPF: {D06A22B4-6087-4D3D-B7AF-82B113E9ABD4} (CPostLaunch Object) - http://www2.verizon.net/update/msnwebinstall/includes/vzWebIns.CAB
O16 - DPF: {D6016EE7-A8FF-11D1-B37E-A4759ECD7909} (AxPulse Class) - http://www.pulse3d.com/players/english/PulsePlayerAxWin.cab
O16 - DPF: {DC75FEF6-165D-4D25-A518-C8C4BDA7BAA6} (CPlayFirstDinerDashControl Object) - http://games.pogo.com/online2/pogo/diner_dash/DinerDash.1.0.0.80.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://games.pogo.com/online2/pogo/insaniquarium/popcaploader_v6.cab
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O16 - DPF: {EE2589EB-7FC8-44DB-A892-573F2C4B41E0} - http://pdf.forbes.com/forbesnews/triggernews/ForbesDownloaderSigned.cab
O16 - DPF: {EF148DBB-5B6D-4130-B2A1-661571E86260} (Playtime Games Launcher) - http://games.pogo.com/online2/pogo/mahjong_escape_ancient/PTGameLauncher.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/vso/en-us/tools/mcfscan/1,5,0,4267/mcfscan.cab
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} (Yahoo! Toolbar) - http://us.dl1.yimg.com/download.yahoo.com/dl/toolbar/yiebio5_1_3_0.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/bin/msnchat45.cab
O16 - DPF: {F7A05BAC-9778-410A-9CDE-BFBD4D5D2B7F} (iPIX Media Send Class) - http://216.249.24.149/code/iPIX-ImageWell-ipix.cab
O16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/_media/dalaillama/ampx.cab
O16 - DPF: {FF0C042C-98E9-4C36-B2EC-E21FDFDCEF75} - http://download.redswoosh.net/Installer/104/rsinstaller.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: c:\windows\system32\mspmspo.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Unknown owner - C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

Shaba
2007-06-14, 18:39
Hi

Download the Killbox (http://download.bleepingcomputer.com/spyware/KillBox.exe).
Save it to the desktop

Double-click Killbox.exe to run it.

Select "Delete on Reboot".
Place the following line (complete path) in bold in the "Full Path of File to Delete" box in Killbox:
c:\windows\system32\mspmspo.dll
Put a mark next to "Delete on Reboot"
Click the red-and-white "Delete File" button. Click "Yes" at the Delete on Reboot prompt. Click "No" at the Pending Operations prompt.
If your computer does not restart automatically, please restart it manually.

Open HijackThis, click do a system scan only and checkmark these:

O2 - BHO: (no name) - {20CD9BDC-5E7F-4AA1-9136-75A727F330D6} - C:\WINDOWS\system32\wljlqrud.dll (file missing)
O20 - AppInit_DLLs: c:\windows\system32\mspmspo.dll

Reboot

Post a fresh HijackThis log.

Zanza
2007-06-14, 19:38
Logfile of HijackThis v1.99.1
Scan saved at 1:35:25 PM, on 06/14/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\cisvc.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\SM1BG.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Panasonic\LUMIXSimpleViewer\PhLeAutoRun.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\cidaemon.exe
C:\hijackthis\scanner.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: UberButton Class - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: YahooTaggedBM Class - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - C:\Program Files\Yahoo!\Common\YIeTagBm.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: MSN Search Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SM1BG] C:\WINDOWS\SM1BG.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - HKCU\..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: LUMIX Simple Viewer.lnk = ?
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\MSN Toolbar Suite\DS\02.05.0001.1119\en-us\bin\WindowsSearch.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll/search.htm
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Translate.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://mirs.peoplepc.com/?offername=PeoplePC Online Accelerated&userName=zanza9&firstName=Nikki&qs=OKOMLDFHGMAHEMEANCBKAAIBKKMPDMAKHGNFGOBALEJMBIEOBGFDKKMLHOLJHHIAKEBHHAMMBOGNLMNCACDNPMOFOFPDPDKJCKPIODKLIACDMKKNPBHNDHOMJCGBANOI|GOFLBCBDDGNMCNOPADEEAAGOBAFDFEL
O16 - DPF: Harvest Mania by pogo - http://game1.pogo.com/applet-6.7.3.23/harvest/harvest-en_US.cab
O16 - DPF: Jigsaw Detective by pogo - http://game1.pogo.com/applet-6.7.3.23/jigsaw/jigsaw-en_US.cab
O16 - DPF: Mah Jong Garden by pogo - http://game1.pogo.com/applet-6.7.2.33/mahjong/mahjong-en_US.cab
O16 - DPF: Penguin Blocks by pogo - http://game1.pogo.com/applet-6.5.1.31/penguins/penguins-en_US.cab
O16 - DPF: Pop Fu by pogo - http://game1.pogo.com/applet-6.5.1.31/popfu/popfu-en_US.cab
O16 - DPF: PoppaZoppa by pogo - http://game1.pogo.com/applet-6.7.2.33/poppazoppa/poppazoppa-en_US.cab
O16 - DPF: Ride The Tide by pogo - http://game1.pogo.com/applet-6.5.3.44/ride/ride-en_US.cab
O16 - DPF: Stax by pogo - http://game1.pogo.com/applet-6.5.3.44/stax/stax-en_US.cab
O16 - DPF: WMP10ctrl - http://www.cinemanow.com/WMP10ctrl.CAB
O16 - DPF: Wonderland Memories by pogo - http://game1.pogo.com/applet-6.7.3.23/memories/memories-en_US.cab
O16 - DPF: Yahoo! Spades - http://download.games.yahoo.com/games/clients/y/st2_x.cab
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab30149.cab
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - http://activation.rr.com/install/download/tgctlcm.cab
O16 - DPF: {11F8D6A0-01C6-4A23-A40F-1C3A560B99EA} (MavenInstallerAXControl Class) - http://client.maven.net/client/mavenInstaller.cab
O16 - DPF: {12F7F128-B36C-4843-8AA4-A5F71A969331} (Launcher Control) - https://horizons.istaria.com/controls/launcher.ocx
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {192F9A01-8030-48CE-9BC6-B03DE3E613C6} (PeoplePC Web Installer) - https://www.peoplepc.com/ppcos/ISP60/Download/ppcwebi.cab
O16 - DPF: {1D95A7C7-3282-4DB7-9A48-7C39CE152A19} (TeamOn Import Object) - https://myemail.t-mobile.com/html/web/client_tools/TOImport.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {33E54F7F-561C-49E6-929B-D7E76D3AFEB1} (Pool Control) - http://www.worldwinner.com/games/v48/pool/pool.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/20021205/qtinstall.info.apple.com/borris/us/win/QuickTimeInstaller.exe
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-9.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by107fd.bay107.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {55027008-315F-4F45-BBC3-8BE119764741} (Slide Image Uploader Control) - http://www.slide.com/uploader/SlideImageUploader.cab
O16 - DPF: {640B39C1-D713-464F-92C3-75BD972B95EE} - http://www.sidestep.com/get/k42037/sb02b.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://go.divx.com/plugin/DivXBrowserPlugin.cab
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) - http://us.games2.yimg.com/download.games.yahoo.com/games/play/client/exentctl_0_0_0_1.ocx
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1181656249625
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www.ca.com/us/securityadvisor/virusinfo/webscan.cab
O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) - http://www.worldwinner.com/games/shared/wwlaunch.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab30149.cab
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://admin.pressplay.com/duet/registration/isetup.cab
O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://autos.msn.com/Components/Ocx/SurVid/MSSurVid.cab
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O16 - DPF: {9903F4ED-B673-456A-A15F-ED90C7DE9EF5} (Sol Control) - http://www.worldwinner.com/games/v45/sol/sol.cab
O16 - DPF: {AF087E66-838E-4A97-8A0B-0DDDA5DEA239} (OTAutoInstall Class) - http://streaming.endeavors.com/microsoft/imaging/clientdownloads/OTAI.CAB
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10/ZIntro.cab32846.cab
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/suite/yautocomplete.cab
O16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) - http://autos.msn.com/Components/Ocx/Exterior/Outside.cab
O16 - DPF: {C4A8A4DA-BD3F-4DEB-9BBB-5B6BD3571EC7} (CDKeyCtl Class) - http://www.cdkey-promotions.com/download/CDKey.cab
O16 - DPF: {C93C1C34-CEA9-49B1-9046-040F59E0E0D8} (Paint Control) - http://www.worldwinner.com/games/v42/paint/paint.cab
O16 - DPF: {CE74A05D-ED12-473A-97F8-85FB0E2F479F} (dlControl.UserControl1) - http://www.cinemanow.com/dlControl.CAB
O16 - DPF: {D06A22B4-6087-4D3D-B7AF-82B113E9ABD4} (CPostLaunch Object) - http://www2.verizon.net/update/msnwebinstall/includes/vzWebIns.CAB
O16 - DPF: {D6016EE7-A8FF-11D1-B37E-A4759ECD7909} (AxPulse Class) - http://www.pulse3d.com/players/english/PulsePlayerAxWin.cab
O16 - DPF: {DC75FEF6-165D-4D25-A518-C8C4BDA7BAA6} (CPlayFirstDinerDashControl Object) - http://games.pogo.com/online2/pogo/diner_dash/DinerDash.1.0.0.80.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://games.pogo.com/online2/pogo/insaniquarium/popcaploader_v6.cab
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O16 - DPF: {EE2589EB-7FC8-44DB-A892-573F2C4B41E0} - http://pdf.forbes.com/forbesnews/triggernews/ForbesDownloaderSigned.cab
O16 - DPF: {EF148DBB-5B6D-4130-B2A1-661571E86260} (Playtime Games Launcher) - http://games.pogo.com/online2/pogo/mahjong_escape_ancient/PTGameLauncher.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/vso/en-us/tools/mcfscan/1,5,0,4267/mcfscan.cab
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} (Yahoo! Toolbar) - http://us.dl1.yimg.com/download.yahoo.com/dl/toolbar/yiebio5_1_3_0.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/bin/msnchat45.cab
O16 - DPF: {F7A05BAC-9778-410A-9CDE-BFBD4D5D2B7F} (iPIX Media Send Class) - http://216.249.24.149/code/iPIX-ImageWell-ipix.cab
O16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/_media/dalaillama/ampx.cab
O16 - DPF: {FF0C042C-98E9-4C36-B2EC-E21FDFDCEF75} - http://download.redswoosh.net/Installer/104/rsinstaller.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Unknown owner - C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

Shaba
2007-06-14, 20:01
Hi

Yes, look pretty good.

Please do an online scan with Kaspersky Online Scanner (http://www.kaspersky.com/downloads/kws/kavwebscan.html). You will be prompted to install an ActiveX component from Kaspersky, Click Yes.
The program will launch and then start to download the latest definition files.
Once the scanner is installed and the definitions downloaded, click Next.
Now click on Scan Settings
In the scan settings make sure that the following are selected:

o Scan using the following Anti-Virus database:

+ Extended (If available otherwise Standard)

o Scan Options:

+ Scan Archives
+ Scan Mail Bases

Click OK
Now under select a target to scan select My Computer
The scan will take a while so be patient and let it run. Once the scan is complete it will display if your system has been infected.
Now click on the Save as Text button
Save the file to your desktop.
Copy and paste that information in your next post.

Post:

- a fresh HijackThis log
- kaspersky report

Zanza
2007-06-15, 01:45
Logfile of HijackThis v1.99.1
Scan saved at 7:39:25 PM, on 06/14/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\SM1BG.EXE
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Panasonic\LUMIXSimpleViewer\PhLeAutoRun.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\SYSTEM32\notepad.exe
C:\hijackthis\scanner.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: UberButton Class - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: YahooTaggedBM Class - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - C:\Program Files\Yahoo!\Common\YIeTagBm.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: MSN Search Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SM1BG] C:\WINDOWS\SM1BG.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - HKCU\..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: LUMIX Simple Viewer.lnk = ?
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\MSN Toolbar Suite\DS\02.05.0001.1119\en-us\bin\WindowsSearch.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll/search.htm
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Translate.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://mirs.peoplepc.com/?offername=PeoplePC Online Accelerated&userName=zanza9&firstName=Nikki&qs=OKOMLDFHGMAHEMEANCBKAAIBKKMPDMAKHGNFGOBALEJMBIEOBGFDKKMLHOLJHHIAKEBHHAMMBOGNLMNCACDNPMOFOFPDPDKJCKPIODKLIACDMKKNPBHNDHOMJCGBANOI|GOFLBCBDDGNMCNOPADEEAAGOBAFDFEL
O16 - DPF: Harvest Mania by pogo - http://game1.pogo.com/applet-6.7.3.23/harvest/harvest-en_US.cab
O16 - DPF: Jigsaw Detective by pogo - http://game1.pogo.com/applet-6.7.3.23/jigsaw/jigsaw-en_US.cab
O16 - DPF: Mah Jong Garden by pogo - http://game1.pogo.com/applet-6.7.2.33/mahjong/mahjong-en_US.cab
O16 - DPF: Penguin Blocks by pogo - http://game1.pogo.com/applet-6.5.1.31/penguins/penguins-en_US.cab
O16 - DPF: Pop Fu by pogo - http://game1.pogo.com/applet-6.5.1.31/popfu/popfu-en_US.cab
O16 - DPF: PoppaZoppa by pogo - http://game1.pogo.com/applet-6.7.2.33/poppazoppa/poppazoppa-en_US.cab
O16 - DPF: Ride The Tide by pogo - http://game1.pogo.com/applet-6.5.3.44/ride/ride-en_US.cab
O16 - DPF: Stax by pogo - http://game1.pogo.com/applet-6.5.3.44/stax/stax-en_US.cab
O16 - DPF: WMP10ctrl - http://www.cinemanow.com/WMP10ctrl.CAB
O16 - DPF: Wonderland Memories by pogo - http://game1.pogo.com/applet-6.7.3.23/memories/memories-en_US.cab
O16 - DPF: Yahoo! Spades - http://download.games.yahoo.com/games/clients/y/st2_x.cab
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab30149.cab
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - http://activation.rr.com/install/download/tgctlcm.cab
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english/kavwebscan_unicode.cab
O16 - DPF: {11F8D6A0-01C6-4A23-A40F-1C3A560B99EA} (MavenInstallerAXControl Class) - http://client.maven.net/client/mavenInstaller.cab
O16 - DPF: {12F7F128-B36C-4843-8AA4-A5F71A969331} (Launcher Control) - https://horizons.istaria.com/controls/launcher.ocx
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {192F9A01-8030-48CE-9BC6-B03DE3E613C6} (PeoplePC Web Installer) - https://www.peoplepc.com/ppcos/ISP60/Download/ppcwebi.cab
O16 - DPF: {1D95A7C7-3282-4DB7-9A48-7C39CE152A19} (TeamOn Import Object) - https://myemail.t-mobile.com/html/web/client_tools/TOImport.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {33E54F7F-561C-49E6-929B-D7E76D3AFEB1} (Pool Control) - http://www.worldwinner.com/games/v48/pool/pool.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/20021205/qtinstall.info.apple.com/borris/us/win/QuickTimeInstaller.exe
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-9.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by107fd.bay107.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {55027008-315F-4F45-BBC3-8BE119764741} (Slide Image Uploader Control) - http://www.slide.com/uploader/SlideImageUploader.cab
O16 - DPF: {640B39C1-D713-464F-92C3-75BD972B95EE} - http://www.sidestep.com/get/k42037/sb02b.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://go.divx.com/plugin/DivXBrowserPlugin.cab
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) - http://us.games2.yimg.com/download.games.yahoo.com/games/play/client/exentctl_0_0_0_1.ocx
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1181656249625
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www.ca.com/us/securityadvisor/virusinfo/webscan.cab
O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) - http://www.worldwinner.com/games/shared/wwlaunch.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab30149.cab
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://admin.pressplay.com/duet/registration/isetup.cab
O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://autos.msn.com/Components/Ocx/SurVid/MSSurVid.cab
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O16 - DPF: {9903F4ED-B673-456A-A15F-ED90C7DE9EF5} (Sol Control) - http://www.worldwinner.com/games/v45/sol/sol.cab
O16 - DPF: {AF087E66-838E-4A97-8A0B-0DDDA5DEA239} (OTAutoInstall Class) - http://streaming.endeavors.com/microsoft/imaging/clientdownloads/OTAI.CAB
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10/ZIntro.cab32846.cab
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/suite/yautocomplete.cab
O16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) - http://autos.msn.com/Components/Ocx/Exterior/Outside.cab
O16 - DPF: {C4A8A4DA-BD3F-4DEB-9BBB-5B6BD3571EC7} (CDKeyCtl Class) - http://www.cdkey-promotions.com/download/CDKey.cab
O16 - DPF: {C93C1C34-CEA9-49B1-9046-040F59E0E0D8} (Paint Control) - http://www.worldwinner.com/games/v42/paint/paint.cab
O16 - DPF: {CE74A05D-ED12-473A-97F8-85FB0E2F479F} (dlControl.UserControl1) - http://www.cinemanow.com/dlControl.CAB
O16 - DPF: {D06A22B4-6087-4D3D-B7AF-82B113E9ABD4} (CPostLaunch Object) - http://www2.verizon.net/update/msnwebinstall/includes/vzWebIns.CAB
O16 - DPF: {D6016EE7-A8FF-11D1-B37E-A4759ECD7909} (AxPulse Class) - http://www.pulse3d.com/players/english/PulsePlayerAxWin.cab
O16 - DPF: {DC75FEF6-165D-4D25-A518-C8C4BDA7BAA6} (CPlayFirstDinerDashControl Object) - http://games.pogo.com/online2/pogo/diner_dash/DinerDash.1.0.0.80.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://games.pogo.com/online2/pogo/insaniquarium/popcaploader_v6.cab
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O16 - DPF: {EE2589EB-7FC8-44DB-A892-573F2C4B41E0} - http://pdf.forbes.com/forbesnews/triggernews/ForbesDownloaderSigned.cab
O16 - DPF: {EF148DBB-5B6D-4130-B2A1-661571E86260} (Playtime Games Launcher) - http://games.pogo.com/online2/pogo/mahjong_escape_ancient/PTGameLauncher.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/vso/en-us/tools/mcfscan/1,5,0,4267/mcfscan.cab
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} (Yahoo! Toolbar) - http://us.dl1.yimg.com/download.yahoo.com/dl/toolbar/yiebio5_1_3_0.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/bin/msnchat45.cab
O16 - DPF: {F7A05BAC-9778-410A-9CDE-BFBD4D5D2B7F} (iPIX Media Send Class) - http://216.249.24.149/code/iPIX-ImageWell-ipix.cab
O16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/_media/dalaillama/ampx.cab
O16 - DPF: {FF0C042C-98E9-4C36-B2EC-E21FDFDCEF75} - http://download.redswoosh.net/Installer/104/rsinstaller.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Unknown owner - C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

Zanza
2007-06-15, 02:40
I didn't forget to include the Kaspersky report. It's just that's it's very long and I couldn't pist it all at once lol I didn't realize it was too long until I tried to post it all at once and couldn't do it. I'm not sure what to do. I guess I can try breaking it up myself.

Zanza
2007-06-15, 09:20
KASPERSKY ONLINE SCANNER REPORT
Thursday, June 14, 2007 7:31:52 PM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.93.0
Kaspersky Anti-Virus database last update: 14/06/2007
Kaspersky Anti-Virus database records: 346771
-------------------------------------------------------------------------------

Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true

Scan Target - My Computer:
A:\
C:\
D:\
E:\
F:\

Scan Statistics:
Total number of scanned objects: 175058
Number of viruses found: 28
Number of infected objects: 104
Number of suspicious objects: 3
Duration of the scan process: 02:29:16

Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\All Users\Application Data\Adobe\Catalogs\My Catalog.psa Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\9e05ed325d63feb867fb53465ccda383_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\ba415befd309584769140b51ddab1b0d_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Windows Defender\Support\MPLog-12062006-171849.log Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temp\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\AcroForm\MRUFormsList Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\AdobeSysFnt06.lst Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Collab\OfflineDocs Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Collab\Reviews Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\JSADM.exv Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Messages\ENU\read0600win_ENUadbe0062v.pdf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Messages\ENU\read0600win_ENUyhoo0014v.pdf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Preferences\AutoFillDefaults.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Preferences\defaultHeuristics.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\TMGrpPrm.sav Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Updater\AdbeRdr70_enu_full.exe Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Updater\udstore.js Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\Whapi\CreatePDFWinColor.ico Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\Whapi\CreatePDFWinGray.ico Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\Whapi\SearchPDFWinColor.ico Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\Whapi\SearchPDFWinGray.ico Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\Whapi\WHA Library.dll Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\Whapi\WHAppList.xml Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\FileBrowser\PhotoshopElements3\index.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\FileBrowser\PhotoshopElements3\My Downloads0 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\FileBrowser\PhotoshopElements3\My Downloads0M Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\FileBrowser\PhotoshopElements3\My Downloads0T Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Online Services\Photoshop Elements\cache\cache.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Online Services\Photoshop Elements\cache\entry.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Online Services\Photoshop Elements\clients\Photoshop Elements\notifications.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Online Services\Photoshop Elements\clients\Photoshop Elements\preferences.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Album\Log.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Album\psa.prf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Album\status.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Browser\adprefs.ini Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Browser\global.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Browser\jswarn.dir Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Browser\opera.dir Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Browser\opera6.ini Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Browser\urlwarn.dir Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Keywords.psp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\New Doc Sizes.psp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Photoshop Elements 3.0 Prefs.psp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\PluginCache.psp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Styles.psp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Swatches.psp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Organizer\customevents.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Organizer\Log.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Organizer\psa.prf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Organizer\status.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Organizer\visualSearchLog.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\AdobeUM\Reader6.ini Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\0\0201D20472 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\0\0201D205A1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\0\0201D21C82 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\0\0201D23E8E Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\0\0201D2411D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\0\0201D25471 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\0\0201E06E77 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\006779240A154CDBD8DBC80E678697C5 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D20472 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D205A1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D21C82 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D23E8E Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D2411D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D24126 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D24292 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D25471 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D29818 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D2981A Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201E06E77 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\05386D696C6532 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0E090DCC8931A08B00E6E5A9842D279A Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\113D851AC3961EB4065A16059B93038D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\1FC5E3CFAADAD3CD98698BCF5588C9EB Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\2040FB0E047821EC3F99EEB490DD0D26 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\20AE24DDC4F9A2EE70E10819BAD1AE3D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\21F0216450D9B8822BF23F0C82CFD820 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\2602B4E0E6A50CD499C200F83131AC0D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\270B8BAE15425346BDF5F9D81B3AC4D9 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\3A542C30183E2FB04300F2C1797C57D6 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\3ECD0BA7A44DFCBC2C8833CECDCF05FC Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\3F9AE97D75FAD638CE251BF96E04E637 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\4417BAD56C70399D9115F58AC321EA52 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\692BAFBE1ADA672DE79A1D51CF2C6CC9 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\737A74AF67767EED74D3 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\749DC53C7F1527048DB44326654E6073 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\778E04ABD14ADB9919D3E9FC95F64DDC Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\7B8A99AE43E29D8C96DC2F8AA8BB580E Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\8506759A5A4B68677288579B0A4F2471 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\86C40C72BDB6565268E1B6BB7B086EB8 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\89F0A0915A42871533B192CE1504871C Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\975BB47746B672BDB4D3 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\A2083F5579BFABF848582FA677D19155 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\A60657C7D83214B0312A7D7975A5DB1E Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\AB68D848131154D928DD6E32652DF2B8 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\AC71EA595A46AC235B188182D19F495C Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\B38441A7EEB669D47BCD748F9423CA7C Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\BACABCD797EB5D77527487958FBA614F Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\BD2EDD31D53C4FE75692758CF2683207 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\CA7A96DA49527058090027FA603A4AF1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\D38D70A8B8B82CFD9B217DA3719FC326 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\D770B4537BEB951085EFD0B3C51C704D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\DC554FCC96727CCB999F12D556AEF28A Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\E246E2CB967B00ADD2FB4CF7ECB52FCE Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\F00BB27D2F3017E3BBEF5488333DFB29 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\F3D394A69C339CCC5DE9C3CFF271A3E4 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\F5B200FA964E6C3FAACB38F4D5101779 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1024\0201D23512 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1024\0201D2440B Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\129\0201D210D1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\129\0201D21557 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\129\0201D22075 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\129\0201D23BA2 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\129\0201D26A6A Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\129\0201D2A1CF Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201D20739 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201D243BE Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201D299B8 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201D299B9 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201D299BF Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201D2A688 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201D2A69F Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201E0111E Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201E055A1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201E07297 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0202562859 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\5\20746564647962656172 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\5\337B51664A05D9BB6A3509112831313F Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\7\EFA7D8E2DB08868B728B0DE6132C3DEA Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\96\0201D20D39 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\96\0201D21E7B Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\96\0201D243BE Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\96\0201D299BF Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\96\0201D2A688 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\addrbook.abk Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\cert8.db Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\info.htm Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\key3.db Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\Resources\aim051823225200.arf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\Resources\aim082020450300.arf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\Resources\aim111414114500.arf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\Resources\CurrentSettings.xml Object is locked skipped

Zanza
2007-06-15, 09:24
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\Resources\Downloads\aim083017120801.arf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\Resources\Downloads\aim083100323403.arf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\Resources\Downloads\aim083121201001.arf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\Resources\Downloads\aim090619392201.arf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\Resources\Downloads\aim091221394101.arf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\secmod.db Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\urlcache\aim47.tmp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\urlcache\aim61.tmp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\urlcache\aimF.tmp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\urlcache\cookie.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\urlcache\urlcache.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\userinfo.bag Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Apple Computer\iTunes\CD Info.cidb Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Apple Computer\iTunes\iPod Software Updates\iPod_13.1.2.1.ipsw Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Apple Computer\iTunes\iPod Software Updates\iPod_13.1.2.1.ipsw.signature Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Apple Computer\iTunes\iPod Updater Logs\iPodUpdater.log Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Apple Computer\iTunes\iTunes.pref Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Apple Computer\iTunes\iTunesPrefs.xml Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Apple Computer\QuickTime\QTPlayerSession.xml Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\DESKTOP.INI Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\FFDesigner\FFDesigner.CLP Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\FFDesigner\FFDesigner.OPT Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\FotoFinish\ExplorerData.ITM Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\FotoFinish\Favorites\New Folder.LNK Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\FotoFinish\Favorites\Picture.LNK Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\FotoFinish\Favorites\Shared Imagez.LNK Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\FotoFinish\Favorites\SmileyFam.LNK Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\GDIPFONTCACHEV1.DAT Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Image Zone Express\AcqSel.db Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Image Zone Express\asset.yos Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Image Zone Express\assets.yos Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Image Zone Express\FolderList.yos Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Image Zone Express\hpis.htm Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Image Zone Express\HPSoftwareUpdate.exe Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Image Zone Express\layouts.db Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Image Zone Express\thumbnail.db Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Image Zone Express\thumbnailSel.db Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Install.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Kontiki\kdx\errorlog.ini Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Kontiki\kdx\kontiki.fp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Kontiki\kdx\thumbnails\1425639.jpg Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Kontiki\kdx\thumbnails\glbl_preview_video_lg0.jpg Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Kontiki\kdx\thumbnails\glbl_preview_video_sm.jpg Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Leadertech\PowerRegister\PowerReg.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\105-bmp.googleadservices.com\bmp\static\movie.swf\x.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\adknowledge.com\dl_obj.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\admin.brightcove.com\login.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\admin.brightcove.com\markers.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\admin.brightcove.com\welcomeScreen.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\ads345.com\sharedObject.swf\Mcookie.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\aiu-online.com\admissionscenter\AIUCampus\SWF\shell_f6.swf\LoadData.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\aiu-online.com\admissionscenter\AIUCampus\SWF\shell_f6.swf\vHostCookie.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\aolcdn.com\_media\aolvh\rootmovie.swf\videoSO.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\aolcdn.com\_media\aolvideo30\rootmovie351.swf\videoSO.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\apps.rockyou.com\board\corkboard.swf\historyData.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\apps.rockyou.com\board\nightsky.swf\historyData.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\badboyonline.com\soul.swf\ap___favs.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\badboyonline.com\soul.swf\ap___sets.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\bandbuilder.com\2pacresurrection\player.swf\BBSO.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\bandbuilder.com\2pacresurrection\player.swf\BBSO_97.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\bandbuilder.com\lloydbanks\player.swf\BBSO.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\bandbuilder.com\lloydbanks\player.swf\BBSO_177.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\bandbuilder.com\mimi\player.swf\BBSO.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\bandbuilder.com\mimi\player.swf\BBSO_283.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\bandbuilder.com\thegame\player.swf\BBSO.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\bandbuilder.com\thegame\player.swf\BBSO_229.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\bandbuilder.com\tupac_loyaltothegame\player.swf\BBSO.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\bandbuilder.com\tupac_loyaltothegame\player.swf\BBSO_258.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\carlthomas.com\devine.swf\ap___favs.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\carlthomas.com\devine.swf\ap___sets.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\cartoonnetwork.com\CN_users.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\chadsspace.com\flash.swf\flashSharedObject.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\chadsspace.com\flash2.swf\flashSharedObject.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\chatango.com\fixed_id.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\chatango.com\mini_login.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\chuckecheese.com\main\frame.swf\CECframe.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\comcast.net\comcastEmail.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\content.yieldmanager.edgesuite.net\atoms\61\1d\611df091a68499e9aecc2c96d4f09966.swf\FlashBoxCookie.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\content.yieldmanager.edgesuite.net\atoms\95\99\9599e18768ca028057dec48150030754.swf\FlashBoxCookie.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\cosmos.bcst.yahoo.com\LCOMMENGINEMGR.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\cosmos.bcst.yahoo.com\vidPlayer.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\dvlabs.com\klipmart\campaigns\amc001\f\amc001f_expand.swf\TestMovie_Config_Info.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\dvlabs.com\klipmart\campaigns\jok008\e_W\jok008e_w_main.swf\TestMovie_Config_Info.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\fanlib.com\FanLib.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\ff0000.com\cosmeoqid.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\flash.revver.com\player\1.0\player.swf\revverplayer.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\fuse.tv\chainsaw\poll.swf\FusePoll.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\grouper.com\mtg\mtgPlayer.swf\grouperExternalPlayer.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\img.emode.com\tests\yourthing\media\test20050927d.swf\testData.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\jaguar.com\us\en\home_15D57A98-4083-41E6-A570-FAA3B38CEFFD.swf\jagHomepage.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\localhost\AVPrefs.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\localhost\core.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\localhost\napsterIMVBG.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\localhost\napsterIMVgen.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\localhost\Program Files\Yahoo!\Messenger\imvcache\irobot\videoTemplate.swf\genericPlayer.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\localhost\PROGRA~1\Yahoo!\MESSEN~1\imvcache\chevy\mm_GENERICPLAYER2.swf\genericPlayer.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\macys.com\is-viewers\flash\genericzoom.swf\#MCY\products\0\optimized\178290%5Ffpx%2Etif_init.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\match.com\physicalseek\PhySeekRepLand.swf\XkpGKQhyRTo=_allowedNumberOfPolls.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\match.com\physicalseek\PhySeekRepLand.swf\XkpGKQhyRTo=_numberOfPolls.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\mediaonenetwork.net\MediaOne.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\mediaplex.com\ft475-23.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\neave.com\games\simon\simon.swf\neaveSimon.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\nywatertaxi.com\images\flash\nywtMap.swf\locationCookie.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\oddcast.com\vhsssecure.php\oddcast_vhss.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\pagead2.googlesyndication.com\pagead\googleadplayer.swf\mediaPlayerUserSettings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\pornotube.com\player\v.swf\views.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\pornotube.com\soundData.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\stat.radioblogclub.com\RbRestoSave.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\static.userplane.com\presence\m\presence.swf\presence.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\static.userplane.com\presence\presence.swf\presence_1.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\suitesmart.com\_f5e.swf\5thElement.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\tvguide.com\include\template\left\closeup2004b.swf\redcarpet2004.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\uncutvideo.aol.com\soundcookie.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\us.i1.yimg.com\LCOMMENGINEMGR.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\usherworld.com\flash\usherworld\usherworld.swf\uwcache.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\valuead.com\rdxu200072821112006.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\vfmii.com\media\resource\viewerSupport\ViewerContainer.swf\vfm.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\vfmii.com\media\resource\viewerSupport\ViewerContainer.swf\vfmCookieObj.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\video.google.com\googleplayer.swf\mediaPlayerUserSettings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\video.hollywoodupclose.com\player.swf\user_profile.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\void.snocap.com\s\store.swf\SharedObjectLock.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\void.snocap.com\s\storefront.swf\SnocapDownloadManager.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\vzwshop.com\html\include\flash\appcat_slider.swf\TestMovie_Config_Info.sol Object is locked skipped

Zanza
2007-06-15, 09:34
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\web.adknowledge.com\dl_obj.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-05.slide.com\publish.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-05.slide.com\user_email.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-05.slide.com\user_loc_lat.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-05.slide.com\user_loc_lon.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-05.slide.com\user_loc_string.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-05.slide.com\user_name.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-3c.slide.com\user_loc_lat.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-3c.slide.com\user_loc_lon.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-3c.slide.com\user_loc_string.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-47.slide.com\ratings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-75.slide.com\user_loc_lat.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-75.slide.com\user_loc_lon.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-75.slide.com\user_loc_string.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-d8.slide.com\user_loc_lat.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-d8.slide.com\user_loc_lon.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-d8.slide.com\user_loc_string.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget.slide.com\publish.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget.slide.com\user_email.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget.slide.com\user_loc_lat.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget.slide.com\user_loc_lon.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget.slide.com\user_loc_string.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget.slide.com\user_name.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widgets.clearspring.com\clearspring.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widgets.clearspring.com\common.Tracker.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.adultswim.com\CN_users.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.akademiks.com\web\jukebox.swf\vp___sets.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.boxofsoap.com\CYOT50Cent.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.boxofsoap.com\CYOT50Cent_v2.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.chuckecheese.com\main\content\index_summer06v2s2.swf\survey06.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.comcast.com\images\flash\main_tracking.swf\welcome.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.frappr.com\visitor_data.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.gofish.com\pervol2.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.heavy.com\channels\btmts0331.swf\TestMovie_Config_Info.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.heavy.com\channels\btmts_v2.swf\TestMovie_Config_Info.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.heavy.com\channels\offsitecover.swf\TestMovie_Config_Info.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.ifilm.com\flash\container.swf\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.kawaiispace.com\shout\shoutbox.swf\TestMovie_Config_Info.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.landroverusa.com\LR3OfferUserData.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.loganfundinggroup.com\FrontEndData493919.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.mtv.com\global\flash\module\com\fi\1.0.0.swf\FISettings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.mtv.com\global\flash\module\com\fi\1.0.3.swf\FISettings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.mtv.com\global\flash\module\com\fi\1.1.3.swf\FISettings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.mtv.com\overdrive\Overdrive.1.2.1.swf\UserPrefs.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.mtv.com\overdrive\Overdrive.1.5.swf\UserPrefs.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.mubility.com\radio.blog.3.0\include\rbCore\rbcore.swf\radioblog.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.mubility.com\radio.blog.3b1\include\rbCore\rbcore.swf\radioblog.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.myheritage.com\FP\Company\FaceRecognize\flash\faceRecognition8_8.swf\tooltip.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.nywatertaxi.com\images\flash\nywtMap.swf\locationCookie.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.rbkcustom.com\RbkCustomConfigurator.swf\rbkCustomPersistentRecipe.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.sho.com\site\lword\season4\flash\carousel\lword_carousel.swf\dateID.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.sho.com\site\video\root.swf\dateID.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.sho.com\site\video\root.swf\sessionID.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.sho.com\site\video\stream\movies\screen_2.swf\sessionID.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.sho.com\site\video\stream\movies\screen_3.swf\sessionID.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.sho.com\site\video\stream\movies\screen_6.swf\sessionID.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.spreadshirt.com\confomat\swf\confomatLoader6_11.swf\confomat6.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.veoh.com\static\flash\players\audio_data.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.veoh.com\static\flash\players\videodetails.swf\user_data.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.vh1.com\UserPrefs.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.vh1.com\vspot\vspot.1.2.7.swf\UserPrefs.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.vh1.com\vspot\vspot.1.5.swf\UserPrefs.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.visualplant.net\video\viral_player.php\RCS_VP_date.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.wutangcorp.de\flash\musicPlayer.swf\WTCMusicPlayerPreferencesObject.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.xatech.com\chat.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.xatech.com\chat207104.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.youtube.com\soundData.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.youtube.com\vidcap.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\yieldmanager.edgesuite.net\atoms\25\0c\250c8e5fb627c19da06c10831808bd9a.swf\hangman.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\yieldmanager.edgesuite.net\fieldh0wintl1852007.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\yieldmanager.edgesuite.net\shelightintl2442007.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\youtube.com\soundData.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\youtube.com\vidcap.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\aliciakeys.com\keys_main.swf\TestMovie_Config_Info.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\bandbuilder.com\defjamaica\player.swf\BBSO.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\bandbuilder.com\defjamaica\player.swf\BBSO_88.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\bandbuilder.com\gunit\player.swf\BBSO.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\bandbuilder.com\gunit\player.swf\BBSO_104.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\localhost\et_mgg_counter.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\localhost\et_mgg_options1.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#105-bmp.googleadservices.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#10minuteresume.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#50cent.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#adknowledge.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#admin.brightcove.com\settings.sol Object is locked skipped

Zanza
2007-06-15, 09:40
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#ads345.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#aiu-online.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#aliciakeys.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#aolcdn.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#apps.rockyou.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#badboyonline.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#bandbuilder.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#bigtigger.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#carlthomas.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cartoonnetwork.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#chadsspace.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#chatango.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#chuckecheese.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#comcast.net\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#content.yieldmanager.edgesuite.net\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cosmos.bcst.yahoo.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#defjam.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#dvlabs.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#fanlib.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#ff0000.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#flash.revver.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#fuse.tv\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#grouper.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#img.emode.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#jaguar.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#lads.myspace.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#lilbowwow.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#local\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#macromedia.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#macys.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#match.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#mediaonenetwork.net\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#mediaplex.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#mtv.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#myspacetotal.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#neave.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#nywatertaxi.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#oddcast.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#ourchart.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#pagead2.googlesyndication.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#pornotube.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#rocafella.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#stat.radioblogclub.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#static.userplane.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#suitesmart.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#tvguide.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#uncutvideo.aol.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#us.i1.yimg.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#usherworld.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#valuead.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#vfmii.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#video.google.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#video.hollywoodupclose.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#void.snocap.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#vzwshop.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#web.adknowledge.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#widget-05.slide.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#widget-3c.slide.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#widget-47.slide.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#widget-75.slide.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#widget-d8.slide.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#widget.slide.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#widgets.clearspring.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.adultswim.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.akademiks.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.boxofsoap.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.chuckecheese.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.comcast.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.frappr.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.gofish.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.heavy.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.ifilm.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.imeem.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.jealous-karma.net\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.kawaiispace.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.landroverusa.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.loganfundinggroup.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.mtv.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.mubility.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.musicane.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.myheritage.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.nywatertaxi.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.rbkcustom.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.sho.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.spreadshirt.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.veoh.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.vh1.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.visualplant.net\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.wutangcorp.de\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.xatech.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.youtube.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#yieldmanager.edgesuite.net\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#youtube.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#zing.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\fpupdateax\fpupdateax.exe Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\zing.com\zmt\ZingVars.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\dirapi.mch Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\Prefs\LEJYH8QE\EZDJ1_GB_data.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\Prefs\LEJYH8QE\EZDJ1_GB_FIZQGA_01_49_54_9546.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\Prefs\LEJYH8QE\EZDJ1_GB_JWVHKM_22_56_03_7856.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\Prefs\LEJYH8QE\EZDJ1_GB_QOIQKY_21_49_42_5442.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\Prefs\LEJYH8QE\EZDJ1_GB_records.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\Prefs\LEJYH8QE\EZDJ1_GB_TGEMLX_17_45_51_2074.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\Prefs\LEJYH8QE\grooveloader.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\Prefs\LEJYH8QE\PJ_addressbook.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\Shockwave Log Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\DirectSound\DirectSound.x32 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\FlashAsset\Flash Asset.x32 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\FontXtra\Font Xtra.x32 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\MacroMix\MacroMix.x32 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\QT6Asset\QT6Asset.X32 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\SoundControl\Sound Control.x32 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\SWA\swadcmpr.x32 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\SWA\SWASTRM.X32 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\TextAsset\Text Asset.x32 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\TextAsset\TextXtra.x32 Object is locked skipped

Zanza
2007-06-15, 09:43
C:\Documents and Settings\Nadia\Application Data\Microsoft\Address Book\Nadia.wab Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Address Book\Nadia.wa~ Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Clip Organizer\mstore10.mgc Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Clip Organizer\Offic10.MGC Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CLR Security Config\v1.0.3705\security.config Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CLR Security Config\v1.0.3705\security.config.cch Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CLR Security Config\v1.0.3705\security.config.old Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CLR Security Config\v1.1.4322\security.config Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CLR Security Config\v1.1.4322\security.config.cch Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Credentials\S-1-5-21-1714693321-1330810867-1763721995-1007\Credentials Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\107367539B7C89418A100A6FF29C5EAC Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\2BBA88436E92E1ABCED8E68D74DC5B38 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\2BF68F4714092295550497DD56F57004 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\303572DF538EDD8B1D606185F1D559B8 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\3130B1871A126520A8C47861EFE3ED4D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\33ECCD4EC2899E5F6A7E306662596E0F Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\486CC6AFD08942336C61FCD401C4A1D1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\561F989D166B9195191D8592AEB81CDD Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\5C8DDA36D60247082B142836039F4636 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\60E31627FDA0A46932B0E5948949F2A5 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\696F3DE637E6DE85B458996D49D759AD Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\6C68A73125F3238F044A8115D96841B6 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\71644221AC231DBD2359C18EBB2118DC Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\74BFD122C0875EC75DBE5C6DB4C59019 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\79841F8EF00FBA86D33CC5A47696F165 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\7C8A03C4580C6B04FDF34357F3474EDC Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\8B40C910A4BD101330D434C846840D24 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\904590238400AD963F77FAAAADC9BAB5 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\94308059B57B3142E455B38A6EB92015 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\A44F4E7CB3133FF765C39A53AD8FCFDD Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\A66496915E372C06F0D8C0CC31F81B97 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\A8FABA189DB7D25FBA7CAC806625FD30 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\B2F4B1D39F0694C6CDB433BC3CCF1418 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\B69D763EB21649DA26F20618312DEE70 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\B82262A5D5DA4DDACE9EDA7F787D0DEB Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\C571B417AAF1F617555A0486AB3F5361 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\CFC456E7E410D69E2C6F3E2DB75C7DB3 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\CFE3BF66E9913B1EDEDFE338EA0280AE Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\DC2135CED98D8A4D7C0CEE202BB0B810 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\E6024EAC88E6B6165D49FE3C95ADD735 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\E891C648621A40AC7F773694A17FE76C Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\F482C95F83F1B59228F1B1E720F2EDF1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\F5A17C00E427F919C4A49EEF5AD0EE53 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\107367539B7C89418A100A6FF29C5EAC Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\2BBA88436E92E1ABCED8E68D74DC5B38 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\2BF68F4714092295550497DD56F57004 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\303572DF538EDD8B1D606185F1D559B8 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\3130B1871A126520A8C47861EFE3ED4D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\33ECCD4EC2899E5F6A7E306662596E0F Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\486CC6AFD08942336C61FCD401C4A1D1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\561F989D166B9195191D8592AEB81CDD Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\5C8DDA36D60247082B142836039F4636 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\60E31627FDA0A46932B0E5948949F2A5 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\696F3DE637E6DE85B458996D49D759AD Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\6C68A73125F3238F044A8115D96841B6 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\71644221AC231DBD2359C18EBB2118DC Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\74BFD122C0875EC75DBE5C6DB4C59019 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\79841F8EF00FBA86D33CC5A47696F165 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\7C8A03C4580C6B04FDF34357F3474EDC Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\8B40C910A4BD101330D434C846840D24 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\904590238400AD963F77FAAAADC9BAB5 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\94308059B57B3142E455B38A6EB92015 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\A44F4E7CB3133FF765C39A53AD8FCFDD Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\A66496915E372C06F0D8C0CC31F81B97 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\A8FABA189DB7D25FBA7CAC806625FD30 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\B2F4B1D39F0694C6CDB433BC3CCF1418 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\B69D763EB21649DA26F20618312DEE70 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\B82262A5D5DA4DDACE9EDA7F787D0DEB Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\C571B417AAF1F617555A0486AB3F5361 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\CFC456E7E410D69E2C6F3E2DB75C7DB3 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\CFE3BF66E9913B1EDEDFE338EA0280AE Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\DC2135CED98D8A4D7C0CEE202BB0B810 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\E6024EAC88E6B6165D49FE3C95ADD735 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\E891C648621A40AC7F773694A17FE76C Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\F482C95F83F1B59228F1B1E720F2EDF1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\F5A17C00E427F919C4A49EEF5AD0EE53 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\1f0b60827a4c7c08356ee212eb67ae05_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\360e9316558dc5fc61c74119e7e1abb7_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\3d8d491b5a40df3e26906f2fc95b862c_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\40f6607c62aacd402d29e07abf974d59_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\48ba90a765b82d3722f32538bdf60660_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\65dba0f110c5574d44890fc7f2abbda5_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\77cb0c374217e92e8dad8694e0d38a9d_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\92afa876358e92d9a76b0c3edace197f_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\a33d10b6c4f5b80ba19b6c5e2a7b2532_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\a644e62647ae14c080dac980fcf295e3_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\bc7c6d74d4f062c25c7fe7264f5ed052_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\d642018b883da684e9c7dcbbfa2f2836_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\f09ebd9a31e826440b22e12df9e46cb9_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\HTML Help\hh.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\IdentityCRL\ppcrlconfig.dll Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\BRNDLOG.BAK Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\BRNDLOG.TXT Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\Desktop.htt Object is locked skipped

Zanza
2007-06-15, 09:44
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\Internet Explorer Wallpaper.bmp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\Quick Launch\AOL Instant Messenger.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\Quick Launch\Dell Jukebox by musicmatch.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\Quick Launch\DESKTOP.INI Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\Quick Launch\iTunes.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\Quick Launch\Launch Internet Explorer Browser.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\Quick Launch\Morpheus.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\Quick Launch\MSN Explorer.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\Quick Launch\MSN Messenger 7.5.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\Quick Launch\Netscape 7.0.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\Quick Launch\PeoplePC Online.LNK Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\Quick Launch\QuickTime Player.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\Quick Launch\Show Desktop.scf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\Quick Launch\Windows Media Player.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\Quick Launch\Yahoo! Mail.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\Quick Launch\Yahoo! Messenger.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\005C4DC2.wpl Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\cyprusPresets.asx Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\OfflineUpdates.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\Age of Mythology MPXP.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\AlienwareTeleport.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\anime.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\Back to the Future Trilogy.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\Catwoman.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\Combat Flight Simulator 3.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\deepbluesomething.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\Dreamcatcher.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\Ducky.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\Erektorset.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\Gorillaz.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\Half-Life_2.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\Jordan.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\Kenwood_MPXP.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\KungFuChaosWMPSKIN.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\MSN.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\Plus!_The_Bionic_Dot.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\portals.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\Raptor.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\Scooby-Doo_2.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\Spider-man.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\T3-Skynet_Media_Player.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\TimesofOld2.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\TripleX for XP.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\Xbox Live Skin.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Media Player\Skins\005C4DC2\xsn_sports.wmz Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MMC\dfrg Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSDAIPP\Offline\0x00000001_R Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSDAIPP\Offline\0x00000003_R Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\0\History\map.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\0\History\TFR1D.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\Backgrounds\map.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\Backgrounds\TFR11D.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\Backgrounds\TFR11E.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\Backgrounds\TFR11F.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\Backgrounds\TFR120.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\Backgrounds\TFR121.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\Backgrounds\TFR122.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\History\map.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\History\TFRBC.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\ListCache.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\UserTile\map.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\UserTile\TFR110.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\UserTile\TFR111.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\UserTile\TFR112.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\UserTile\TFR113.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\UserTile\TFR114.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\UserTile\TFR115.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\UserTile\TFR116.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\UserTile\TFR117.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\UserTile\TFR118.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\UserTile\TFR119.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\UserTile\TFR11A.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\UserTile\TFR3C.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\1766598499\UserTile\TFR3D.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Backgrounds\map.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Backgrounds\TFR8A.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Backgrounds\TFR8B.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Backgrounds\TFR8C.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Backgrounds\TFR8D.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Backgrounds\TFR8E.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Backgrounds\TFR8F.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\ListCache.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\MapFile\TFR20.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\sqmdata00.sqm Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\sqmdata01.sqm Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\UserTile\map.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\UserTile\TFR7D.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\UserTile\TFR7E.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\UserTile\TFR7F.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\UserTile\TFR80.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\UserTile\TFR81.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\UserTile\TFR82.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\UserTile\TFR83.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\UserTile\TFR84.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\UserTile\TFR85.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\UserTile\TFR86.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\UserTile\TFR87.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\UserTile\TFR88.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Winks3\map.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Winks3\TFR11.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Winks3\TFR13.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Winks3\TFR15.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Winks3\TFR17.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Winks3\TFR19.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Winks3\TFR1B.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Winks3\TFR1D.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Winks3\TFR1F.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Winks3\TFR3.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Winks3\TFR5.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Winks3\TFR7.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Winks3\TFR9.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Winks3\TFRB.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Winks3\TFRD.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\MSN Messenger\276986034\Winks3\TFRF.dat Object is locked skipped

Zanza
2007-06-15, 10:03
C:\Documents and Settings\Nadia\UserData\QG4C1TIL\YL[1].xml Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Nikki\Application Data\GTek\GTUpdate\AUpdate\DellSupport\DSAgnt.log Object is locked skipped
C:\Documents and Settings\Nikki\Application Data\GTek\GTUpdate\AUpdate\DellSupport\DSAgnt_GTActions.log Object is locked skipped
C:\Documents and Settings\Nikki\Application Data\GTek\GTUpdate\AUpdate\DellSupport\gdql_d_DSAgnt.log Object is locked skipped
C:\Documents and Settings\Nikki\Application Data\GTek\GTUpdate\AUpdate\DellSupport\glog.log Object is locked skipped
C:\Documents and Settings\Nikki\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{0C83DD50-4ECA-45CE-A5EC-A235103EF272} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{14AD61BD-44B5-4CBA-BA75-2787A7395D4E} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{19B0D2A9-8044-4A05-8859-EC5F6B4CEAB6} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{2610AE17-0DA2-4FE3-95A5-6B5DD332F84B} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{37A0DC4A-AD5B-4EA0-8EF0-AE0BD8CA0C51} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{3D6FCCEC-8BBD-4217-A68C-81E25D4A839C} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{3EBB9395-5BA9-41C9-BCF2-6ACF147EE16E} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{40993C85-B5BE-4D12-AF57-8612A7528F13} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{4C4A4BE7-282B-41E6-9B8F-585FC503B7AB} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{51C86589-3F42-4B32-80E6-5E47FE78E2FD} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{56BD3E11-868C-4A3B-8AB0-388222FBE931} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{56C43873-8EF8-4E85-B30B-59B16E542B1B} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{67B5D163-FA20-4B88-A35C-B4D47E5BA1A8} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{70505056-F30B-499A-B23C-EDC635987344} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{7411E21E-AB33-4B7B-A4E8-00509B54B195} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{7D140798-1C70-4419-B135-E1186FA25592} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{7EEA234D-386D-4E6F-A42E-1A68EC60FD35} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{84628EFA-AB3F-4485-B8F5-24E657469E6D} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{8895A790-BBAB-4319-859B-DC4D1D94B2AC} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{892801DC-1168-4234-A03F-E4ADC1E6591F} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{8AC800F0-0D1D-4557-A14B-C485572C411E} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{965E5FAD-E85C-42E5-9F46-B29BF4275329} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{9BA447DE-98A2-4C64-A874-99013A8DD303} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{A4361217-4980-4804-BDE7-A4035FE41185} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{AA5E530C-0DB9-46C6-94EF-1026231C4283} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{AC24FA81-CC1F-46D0-9824-1E745926ED38} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{BBA8AFCD-FDF4-4B7A-A476-54337573E680} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{BC02972E-1349-4A81-B137-8341C9962D8C} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{BD20AD40-0410-4CC9-86F5-DC2C5DFCC279} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{BD3109F9-F5D3-4F8D-9BF9-23D4D6C81C9F} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{BFAB0541-14C9-40C2-9631-01850FB0B025} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{C1DC576E-90D0-47D2-BB7F-4565199E4C34} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{C6F6F90C-5D70-4651-998C-D52178E2C7C8} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{CDAFF254-5B7A-46FA-800B-9F559342BCF6} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{D259985F-1EE5-430F-AD28-98B695D2EE95} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{D72AC81A-8E41-4FE6-9C73-436891527956} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{DBAC2867-C3BC-42E1-A322-05149CADE689} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{DF72C901-83AC-4A69-8605-D065D5667F21} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{E45A75D9-FD2C-4A80-BE5D-396F0A5C2412} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{E669EA18-6586-4F82-973E-749A5E70B52E} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{E86C0152-2B0E-4D7D-85AB-C9B98CE42CCB} Object is locked skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{EC011B71-F409-404A-9B4E-B738FE54E174} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{EFD1D94B-B05D-4552-92A5-F63B4E186243} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{F1C1E547-8E31-48CA-AEB5-06B4DD52BCDC} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{F6768FF9-7E45-4F1D-9A3B-6FE0E3295A45} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\History\History.IE5\INDEX.DAT Object is locked skipped
C:\Documents and Settings\Nikki\Local Settings\History\History.IE5\MSHist012007061420070615\index.dat Object is locked skipped
C:\Documents and Settings\Nikki\Local Settings\Temp\Free Download Manager\tic13.tmp Object is locked skipped
C:\Documents and Settings\Nikki\Local Settings\Temp\Installer.exe Infected: Backdoor.Win32.Hupigon.gs skipped
C:\Documents and Settings\Nikki\Local Settings\Temp\miniinst.exe Infected: not-a-virus:Downloader.Win32.WinFixer.o skipped
C:\Documents and Settings\Nikki\Local Settings\Temp\~DF802A.tmp Object is locked skipped
C:\Documents and Settings\Nikki\Local Settings\Temp\~DF8038.tmp Object is locked skipped
C:\Documents and Settings\Nikki\Local Settings\Temp\~freesetup.exe/file01 Infected: not-a-virus:Downloader.Win32.WinFixer.o skipped
C:\Documents and Settings\Nikki\Local Settings\Temp\~freesetup.exe/file02/file01 Infected: Trojan-Downloader.Win32.Agent.alr skipped
C:\Documents and Settings\Nikki\Local Settings\Temp\~freesetup.exe/file02 Infected: Trojan-Downloader.Win32.Agent.alr skipped
C:\Documents and Settings\Nikki\Local Settings\Temp\~freesetup.exe/file18 Infected: not-a-virus:FraudTool.Win32.WinAntiVirus.2006 skipped
C:\Documents and Settings\Nikki\Local Settings\Temp\~freesetup.exe/file83 Infected: not-a-virus:Downloader.Win32.WinFixer.x skipped
C:\Documents and Settings\Nikki\Local Settings\Temp\~freesetup.exe Inno: infected - 5 skipped
C:\Documents and Settings\Nikki\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Nikki\My Documents\My Downloads\mirc616.exe/data0001.bin Infected: not-a-virus:Client-IRC.Win32.mIRC.616 skipped
C:\Documents and Settings\Nikki\My Documents\My Downloads\mirc616.exe mIRC: infected - 1 skipped
C:\Documents and Settings\Nikki\ntuser.dat Object is locked skipped
C:\Documents and Settings\Nikki\ntuser.dat.LOG Object is locked skipped

Zanza
2007-06-15, 10:05
C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\integ\avast.int Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\report\Resident protection.txt Object is locked skipped
C:\Program Files\InstallShield Installation Information\{2E0695EE-ED29-4D96-BD77-2A9A17EDF0D6}\setup.ilg Object is locked skipped
C:\Program Files\InstallShield Installation Information\{3D047C15-C859-45F7-81CE-F2681778069B}\Setup.ilg Object is locked skipped
C:\Program Files\InstallShield Installation Information\{8AF3E926-ED59-11D4-A44B-0000E86D2305}\setup.ilg Object is locked skipped
C:\Program Files\InstallShield Installation Information\{D9F4A9F8-92C5-4289-9D04-F0F8F02D580A}\Setup.ilg Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\00D7BCCB-554A-4096-9055-7076B9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\01469748-C7D6-4DA9-A741-37164B Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\0210FF3D-7B47-45A9-9295-46C47D Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\02B4F97C-68E2-4D98-9B9D-A6D8D0 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\03104A3B-84CE-4881-BA2B-A3BE45 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\03733BE6-72B4-4F1E-9D2D-9AA713 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\05371816-B471-45E1-B94F-F201D5 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\072BBA8E-F38B-4912-A009-490F89 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\0911A5B5-C2D0-4624-8E77-2D8606 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\091A811D-1C75-4F87-9AF0-8915C8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\0A722B08-155F-4F12-8983-01A592 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\0A8CCD56-6B08-497D-B5DA-C9CFFC Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\0A901B43-64CF-4031-A659-510C4E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\0E9E453D-E4B5-42D5-AE13-51E73F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\1055668C-EB9B-4F9F-8007-FAD010 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\106C0E2D-E775-4A91-AF22-930148 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\11BB03F3-85CA-48A3-9192-274C78 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\12868B10-2BCA-4D94-B85A-3C7D67 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\13757677-0643-4B9D-BFBB-BB0E53 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\13DADBC3-15BC-4663-8B6D-F92C3E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\147BD362-4502-41AA-AE6B-4C5BE2 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\14999365-DFF7-4724-9EC3-EB2238 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\15009791-CE66-4C32-8107-7AB396 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\1674083D-5C96-4A84-9CB9-96A29D Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\1827C3E0-0C5D-4476-92B0-2383A7 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\18CA02F2-EA15-4C8D-A5BA-31CCFD Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\19547B10-98D1-406E-BB5B-829679 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\19EB1A94-995F-4833-853D-1D87FB Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\1A123EFF-F84B-4975-BA1C-CDC734 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\1C8B0CFB-1EBB-4DC0-BC20-C60193 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\1CB7A73C-A1E4-4CAB-97F8-C8E0B6 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\1DBF31DC-ACC2-4981-AC9C-E3B50A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\209FB6A5-16C2-4F1D-B6B0-3B2B54 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\20B068CA-6812-44F4-8264-CE4E11 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\20E10364-B91C-4CFE-962B-31C23D Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\21EB1495-41C7-4E84-83D5-97A041 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\23A1131B-BFF3-454D-9EC1-9DB447 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\23DD4466-7C2F-4226-A59C-B37DA4 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\24002A12-0E34-448E-8F11-0AA201 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\24FDC5EA-F9D3-4A19-AC03-FA12B5 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\256A20BC-93FC-4087-9C50-AB91BD Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2607E97C-465A-41F3-81A8-715062 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\260D0F50-87BF-4483-AA88-81797A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2635384B-A3F7-4823-A3E4-F5B51E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\263F3EEE-0F3E-403F-9482-C84F87 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\26F4C10D-F992-4C02-9B34-06EFEB Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2731FDC6-A8D2-4378-ABC2-9BF791 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\273FB23B-A1A5-4D13-9986-C3DBD8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\275D33A7-BA04-489C-AAA5-F45214 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2794DC02-8933-4A8A-BF81-E5C8DF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\27C332C1-78B5-4A66-B963-C323ED Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\28C57D12-8022-4861-8E80-1807EB Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\292A462C-6669-4A0D-AED1-31BE60 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\292EC72B-FA69-4855-84A6-26D0A2 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2A05A267-74E3-4067-9E73-CB7838 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2A259426-6A5F-49D0-ACD2-637E23 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2B0C6D22-AB61-4707-9831-821E8E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2B25BBE8-EC75-4B5B-8DE6-9BCE48 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2C661BEB-95F8-487F-94B1-F70F87 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2D1D7058-5B21-4A80-9D13-3A8994 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2E3162C4-C350-4E47-A930-F825A0 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2F346EAD-C673-43DC-AB47-EB1ACD Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3148EE54-2A9C-4C84-BD7E-E28635 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\31570477-5AE5-4848-87B7-D253B8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\31764662-855B-46AB-BA26-58D4AF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\31832A73-B610-4B09-A669-2132F6 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\31E6E03E-75F7-4E2B-919C-585EDA Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3234F2E8-99DA-4DFD-979C-47812C Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3285C54E-BE8F-49B0-A576-C3D8D7 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\340EDD1A-507D-46FA-95F9-4BD0AD Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\34BEDC6E-D8B5-4A1E-8CB6-67A3FE Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\34F2E6C4-FAA3-4378-8563-C28242 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\356E368B-751C-473E-A696-61DCA8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\358E23A0-90E8-46C6-A906-0C0E48 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\35F220D7-B32A-4732-B985-92187C Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3668E699-B8A4-469C-8E11-36FC48 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\36C2A53F-0153-49B2-B8B8-C291F7 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\378BD4A7-7ABA-4ECE-B4D8-CC9D7C Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\37959EDC-A2CB-45E1-AEC7-4F5265 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\379697E5-6E84-4875-A8A2-C94197 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\38011CCC-F978-4071-902E-23161C Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\391D87DF-22BD-45AC-A9A8-036850 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\399A39EB-C83A-4AC5-85B0-7A7A52 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\39C40C96-BA9E-4A19-B757-BD23EF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\39C8E647-6895-4E03-AF80-A3BFB9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\39DDBA70-6B6C-4379-B65A-BEE840 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3A7FAEC6-2A74-4F15-AA1C-FB1893 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3B090BD0-9165-4920-9CC1-E6F6E3 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3BCAC6CC-BDC1-4CD3-8D91-4666CF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3C150E16-AE2B-4AF8-90FE-36CEDA Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3CA05CBE-5936-42F0-BFC8-9BD2BB Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3E43849E-FFEB-4CDB-B6E4-CE1BCE Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3F500C44-80CB-4CDE-80B5-2CF042 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3F8C1A43-5DEC-4901-9234-5EE2F1 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\40721C0B-48C2-47B1-ACAB-9B987E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\40DA1678-CA98-47B7-8A8C-CC55CA Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\41080751-F101-4034-ABE3-7D9759 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\42FAEF1A-5667-4260-943F-37E1A8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\430F0B02-1E63-4C92-B086-5469E2 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\437E845B-33EC-411C-A81A-82615A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\447A162D-015E-448B-A31A-173515 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\458670DD-44B5-496D-9C45-09BA31 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\459A882C-3B4F-4B01-97D4-41140A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\48155A42-E21F-4194-A939-9DA3CC Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\4860CF5E-9549-4EFF-B665-1D9743 Object is locked skipped

Zanza
2007-06-15, 10:08
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\48BF34BE-ADCF-42BA-9924-F35102 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\48F1556F-28B2-469E-88DC-C67910 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\4A2E4603-C6ED-4A7B-9AF4-B07812 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\4AE7C438-1EED-44EF-BB7B-EF4C69 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\4B6BB735-DE48-42DF-B845-386613 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\4B93F918-7A49-4912-B2DF-1C24F8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\4C4AE6FD-531C-4558-8F10-9FE5F3 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\4D4D5372-A90F-4DBA-8CD3-C56690 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\4D8F63D9-7A1D-4998-99E4-FD8FAE Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\4DF9A62F-7850-4E03-96A8-8FBCB9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\4F5B2920-B171-41CA-93DB-DF6328 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\502D8153-7CF3-4F49-8A5C-ADA280 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\509EA82A-744B-4AAF-B613-665B58 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\50BF5338-4D44-4BB7-82A0-9CD4FE Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\51E33E56-7C97-433E-AAB0-D8C72D Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\52BF3D7C-1209-4CC9-AC5E-0C13C5 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\54D92C42-B866-43A0-9D32-F916BD Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\552085AA-728B-472B-A101-5BE3D1 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5654CAD1-A887-43F1-B8A9-28A161 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\57508173-DD4D-4A8B-BC65-06D049 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5764D965-0EE1-45C6-B5D0-D901AF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\57FFB8ED-D125-4C36-A745-76514A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\58BA05DE-EB38-4A12-A6D8-D2BF12 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\59CCB266-58B4-4FB2-8508-94CC93 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5A48BA97-9CF8-41CC-A6CA-28700D Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5A5FE192-F561-42D1-B43D-274ED0 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5C75EF56-65C5-4DB3-93BC-40BC8B Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5CB24071-7FDA-483B-B964-CFE6F1 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5D864079-F2C5-4A38-A21E-B3D56F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5E0B30E3-E44A-442D-8606-394757 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5E44B186-9F02-45AE-99AF-0F2578 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5F249E92-B2D7-4D56-8601-CBB43E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5F2D06E7-8ED3-4C85-BD49-EFD904 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5F9D21CD-6F9A-4FD2-96C2-34D5CF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\606BBE05-27A9-43A1-AE76-47DDC4 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6203FE9D-912E-484F-80FD-86C486 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\647B43F3-DEA9-4868-B12D-9C8B02 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\647D9C87-DE03-4B89-A9D5-21B6F5 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6510942C-F4C8-4FDA-BEAC-F5E29F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\663B1B9C-92E3-4B26-B724-A22AA9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6675B34D-7CC3-46A6-962A-FC26C8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\66E3B0A5-55A2-4E39-A9CB-CB21C4 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6835A318-DFB3-440A-8794-D70C22 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6922F4BB-37AA-4BB6-989C-75D787 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\69248985-446C-4128-8E06-77C9F9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\696DDDC1-D5D7-4BE6-B77B-20804E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6AF84665-6749-4AC0-A0B0-ACDB9D Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6B5CA456-6E59-4DF1-847F-880EFE Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6BA68349-FC4A-4EA2-84CE-F941F8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6C0CFF76-CF5D-45A1-9C4E-706EFF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6C21A4C2-2769-41EF-BF8B-98B9FA Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6CA3246F-153C-4BA9-BE6F-F8E0B7 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6CDE6F86-5D0A-4C93-A30D-CF908F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6D166621-A787-4E1A-8C8B-97C19C Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6D455D8A-D7AB-4168-BE63-6365CF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6D7EC015-57D0-4E3B-AE0B-FD9A93 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6E0BEAD9-EBDA-4F68-856D-90FD57 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6E3143EA-73C9-45C5-8013-6D14BD Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6F253BD2-7A9D-415D-A895-68AB45 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6FC4CF4A-C29A-4E6D-ADDE-C27DE4 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\701CEBF1-1FBF-425D-A755-CD5FED Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\70628F87-D981-41BA-B7CB-CFAC2B Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\70AB91ED-F511-4336-95CC-A3624B Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\70E78361-DCDA-482E-BD84-87A0D0 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\713FEA09-2694-40D1-A457-D45678 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\717A0D4A-44C4-4A45-93D9-87F2A3 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\718FE437-B7B6-437D-8544-59152E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\75EB21EE-49D5-468E-B0E2-ACFA9A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\76918D7C-2DD7-4022-BBEA-3EB1B5 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\77B83ABB-30DE-4300-B5F1-DBCD0C Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\782DBD7C-20C4-4DC4-8F3E-48D1FD Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\78B4E4D0-A62B-439E-A59F-4B6A03 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\79A986BE-5323-4CFD-BD35-DF651A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\79D34847-6EA7-46ED-B227-A00AF9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\7B2DED86-4AA9-4ECF-B2EC-EBBE69 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\7B435252-395E-4CE1-8128-77A691 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\7C60D335-1873-4CB6-9FB3-217CB1 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\7C61C8E4-BBC6-4FDA-B068-568555 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\7CED7031-C2B9-4B77-B63B-8BED21 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\7CF74DF0-4531-4F01-83EE-FD5632 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\7DC5CBA2-100F-4B95-852A-476E4D Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\7FB2A790-C75D-4082-98E5-312BB4 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\81214DE1-44B2-4FDE-9097-6F5F21 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\814D3327-A79A-45FA-AC0F-35B640 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\8198A630-526F-4346-8F74-150C23 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\81ED8984-2221-4A15-BE7C-2C12E9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\864E57F8-E43C-4D55-BEED-B87C4E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\8750138A-D31E-421D-967D-A4AA46 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\88EF1AD0-338A-45AF-B896-2EB630 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\8916FF2F-C2D9-474F-B221-A2B12D Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\89E4DC33-549D-4AF4-A588-5266E2 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\8AC5AA8C-EB29-4CAC-AD5A-40A021 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\8C3EF828-D739-4E01-8D92-7FCA37 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\8D796DEF-09E6-4D7A-A4D9-CAA299 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\8E9782F7-26DA-4A00-9ADE-37D5A9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\8EB7F207-2352-4DD7-A33F-EC71EE Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\8F245C49-795B-4DD6-B739-31A966 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\8F6D89B6-BE5D-498D-BC84-67D0BE Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9090CAA6-AEFC-459C-9E2D-4691A0 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\90B82D65-00ED-405A-8FBA-96798B Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\90C79D6D-9A5E-4A9F-883F-FBEE62 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\915AB063-C027-47D3-A277-BE14CF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\91B37F8D-4813-4854-84FE-DD7DC4 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\91B7E196-772D-4495-84C9-197CE9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9291F4C9-F6DB-400A-ACF7-56960E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\92B61BB0-33AA-4496-B240-218A50 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\92DA41EF-7422-4942-B811-069C60 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9426E123-B93F-4CBC-9536-72E3B3 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\953BD255-71C0-4D4C-8C92-C6F2C6 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\967876A0-6373-4238-9EB0-5FB829 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\970EDEC9-B5A3-4B01-BAB0-0AEEA5 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\972FEA2E-86BD-4608-9F98-53F371 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\97C5102C-8567-43D8-BF0A-EDA32A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\97FD0B71-EDEE-4144-A253-A40528 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\98A23B53-5AC6-4DA2-A3FC-930835 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\98F9AB6C-FF02-4229-B513-FD0D29 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9B5C0F0C-D0F5-4AF5-BF7E-3DB74F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9C0A42F8-34B6-4173-8295-E84589 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9C4C49B5-F342-4FF2-A934-85BF28 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9C8BA23A-57B7-4044-89BA-BC1FA7 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9D4DC5BB-440D-43AF-AE1E-A33BDE Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9D5C998D-996B-410B-9A64-193096 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9DC71E9D-0616-4C6E-BBE6-509340 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9FAF7CC2-29F9-41C5-97CC-A7F028 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A0861C14-21F3-4270-A618-C04114 Object is locked skipped

Zanza
2007-06-15, 10:09
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A0DB9CBC-FFC3-4DBB-9FE5-9B6E27 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A1A81965-4F75-4A8C-BD75-80D44E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A2FE4613-0EE5-488F-849B-626886 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A44E74CE-9543-40D8-A29F-48EF54 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A45CA501-DE4C-4F62-AC66-9DC8A6 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A4BCB38B-C2C8-441B-BA61-88FBE1 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A50B3D0C-6A18-4314-8759-1270E4 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A63450C2-504C-4E09-A689-6D7FA8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A76C31F0-1068-4219-AC70-4DE66F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A7DDB605-C0F7-4306-A964-BD0F66 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A8FE9D4E-AB6D-416F-8F1F-4725CE Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\AA23F0E1-1130-40B7-BB9B-AEBE16 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\AAED7CD6-3BC3-4B9C-883D-8C81A6 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\AD08A2A3-970B-44EC-8DDE-B7FA9F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\AE10086F-EDC9-42F3-8BC0-5E21C0 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\AE9A9AA0-83A3-42C0-BB30-394154 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\AEDA2A15-F678-4F37-85F6-91AF16 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\AEE185F1-3835-4620-B9DF-A83159 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\AF7FEABC-EE19-42AB-AD6A-02E380 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\AF82378E-093F-4510-92AB-3A1E8D Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\AF851E34-C616-4001-BD12-3436CD Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B0B867FE-31AF-4B0F-A369-8D584F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B171A632-CB2B-46C4-929C-B137F9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B214BFDD-A454-4985-BD30-0FFD05 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B38405D8-6F9A-4B12-A07E-B9B174 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B45BBF26-3F51-4F1A-92FA-9E4E19 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B55800AE-6072-4713-A83D-3035B1 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B77D27DC-CDBF-4006-9B04-B9E279 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B7B09DEF-6BDA-46A6-8DEF-789649 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B8593310-2011-4326-8891-516CDC Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B8BFE176-85EF-496F-B3F7-C65486 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B95CE45A-59C4-47FA-8358-A4E061 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B9D5D37A-0319-42AA-BFC3-6116E0 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\BA4DF0E0-1872-43F3-B4D1-C300E8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\BD9ECC4A-9F19-4387-BF9F-D022BB Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\BDE6AAA8-E774-49BF-AB1F-42BBD6 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\BF062243-C272-4634-AD3C-96B36C Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\BF5C26DF-51C1-4733-A276-893F7A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C0087084-5404-4100-9208-DB1BA1 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C076EC56-4046-4CC0-A905-7DB12C Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C1A03AFC-10B3-47A3-AE45-9840EA Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C1DB02C2-CCF0-4662-BE25-B89BA9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C211F5B4-D1DA-49BD-B2F2-4E76A3 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C3306873-DE2B-4302-AF42-0FD9F4 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C3D8D047-0E78-4711-AD1E-E2F294 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C3EFEBBE-4F54-4330-8F0A-34699D Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C4F2BF0E-4FD7-4433-8D57-889246 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C5016E1A-5E24-4A6B-AE9B-D70A0A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C54558DB-C855-40DB-903C-5F2680 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C5C002FD-40BA-4C5B-9972-8F9F83 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C61CA2DE-53DD-47CA-B91C-72BC31 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C68BC4A7-C84B-4CD4-BBA1-A54402 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C6CFFEDE-DB3A-4BA0-BB78-AA22A2 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C87BE2E5-A9FB-4D64-9398-0932F6 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C8FDE351-3701-4C68-939A-1F09B0 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C9FEF4E9-4294-4058-8E4D-EE3711 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\CA14713C-EDF3-4282-8243-F8966F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\CAE01D26-31E4-4F3B-B1C1-1E3ED5 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\CAF17429-415E-4C32-9780-BA5AA0 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\CB551DE2-59CF-4CD6-AEF7-04AA10 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\CBE519AB-F40C-49F0-AE54-778789 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\CDB7DDB2-0CC4-491B-AD0E-B89B4A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\CE6EDE72-1502-492F-9CFC-0631FC Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D0BA696E-16D4-45E5-85D0-96BE45 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D357956C-3DE4-4CDB-A107-2C9413 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D3D3B65F-B54F-4910-B9DA-91A963 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D4923D23-DA9D-43DC-B47E-DA5612 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D4D16F95-7A07-47AE-9EA2-1A9033 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D51ABBD4-D170-41C8-A359-F763C8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D526549A-405C-4915-8E82-30AA5E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D5C5A34B-D6C6-4082-99CE-E51986 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D65D4D97-CFD4-4844-B0C5-267079 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D7B18B4D-EC6D-4DDB-AC6A-341248 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D808B74D-8FDF-4D9C-B23C-7ABBCF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D8E2BF39-626E-4DE4-9FC7-6B14B5 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D92A4E3E-25C3-4E5D-B6B3-3FB64C Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D936CA58-0681-4ED2-85B6-B46EF2 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\DA95E80B-DF3A-44A5-8602-438A6E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\DCD7E89D-0D46-4E07-A88B-EA9A04 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\DD154F6E-5DF8-4CC1-AC40-DFF4AA Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\DDAA35C9-8032-4A90-8E1F-B1FA78 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\DDFC66FE-A757-47CB-B924-9D1B35 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\DF08F88E-95B2-4298-81C3-52CDAF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\DF2C8E97-6FB6-469B-B05E-598D48 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E02F2515-4A3D-4651-916A-3EE4CD Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E0A91CB9-38F6-4DF0-A149-A872FD Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E110131B-227D-486F-AE39-2DE125 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E3417517-15C7-494A-8308-F70CE6 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E3A52D2E-9776-4235-954B-29CF3B Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E41AE4D1-C269-45C9-892A-7D5205 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E6E65781-76C6-4128-B5B4-DE92A3 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E714F70A-C6A6-43BF-8DF9-61AD30 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E769F2EC-A4FC-4E4D-90C0-D85809 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E789C46E-79F2-43D4-BBCD-25A168 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E814F519-3525-403C-AF86-79942F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E8973FA4-DFAB-4637-9CFA-EAC19B Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E8F0EE7C-D25E-4463-A202-8BD4A7 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\EA2DC2DB-1482-411F-9CFB-524E77 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\EA4382B0-01CD-499F-83AE-8C766D Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\EB4CF3F7-44B8-4654-AEC1-602803 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\EB6B1114-5B83-4192-94F5-53EE82 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\EBAD9A88-1CDD-40FB-84B1-991C05 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\EC0205FA-7116-4DDC-82FA-416DBD Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\ECAB37CB-E809-43AD-9E27-140093 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\ED048C7D-E970-44D7-915C-951A62 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\ED8F74CE-688F-43CD-A5CC-450D60 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\F23338A1-BFB5-46A8-BF77-710222 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\F3799A08-BAA7-496C-A2DE-D44699 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\F4667BA7-C16D-4B8A-8127-83AED0 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\F5588423-B543-421C-AB35-1C4089 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\F6CDC2D9-74B1-4C8B-BC1E-AC071F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\F7757A5B-A169-447D-878E-47B9CB Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\F85D1EF0-6AB5-4784-9AFD-2524BA Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\F85E262B-47C0-4FEC-A226-BF37C1 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\FA5B1255-50CA-4BD3-B53E-9CA91A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\FB2ABC60-4753-4C9F-BFBE-242F4C Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\FD40C29A-7F17-4B76-BDC1-689842 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\FE373F27-F79A-4948-B2AC-E13225 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\FEBB8F6C-64AC-41FC-BC31-DE0F40 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\FF340F53-BA78-4F81-943A-F3C60A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\CED071D1-A06F-4A3A-AE6C-7B9201\B4FD5318-468F-4167-8B17-7E6ADE Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\EED496A7-5794-4CC6-9061-4AAA43\6EA968DC-99ED-4927-AC09-04E72E Object is locked skipped
C:\Program Files\mIRC\mirc.exe Infected: not-a-virus:Client-IRC.Win32.mIRC.616 skipped
C:\Program Files\Netscape\Netscape\DaffyScreensaver.exe Object is locked skipped
C:\Program Files\Netscape\Netscape\LT_TweetySnSvr.exe Object is locked skipped
C:\Program Files\Netscape\Netscape\nsradioplus.exe Object is locked skipped
C:\Program Files\Netscape\Netscape\TazScreensaver.exe Object is locked skipped

Zanza
2007-06-15, 10:10
C:\syskfvg.exe Infected: Trojan-Downloader.Win32.Agent.bnn skipped
C:\sysmkdk.exe Infected: Trojan-Downloader.Win32.VB.axs skipped
C:\System Volume Information\catalog.wci\00000002.ps1 Object is locked skipped
C:\System Volume Information\catalog.wci\00000002.ps2 Object is locked skipped
C:\System Volume Information\catalog.wci\00010002.ci Object is locked skipped
C:\System Volume Information\catalog.wci\cicat.fid Object is locked skipped
C:\System Volume Information\catalog.wci\cicat.hsh Object is locked skipped
C:\System Volume Information\catalog.wci\CiCL0001.000 Object is locked skipped
C:\System Volume Information\catalog.wci\CiP10000.000 Object is locked skipped
C:\System Volume Information\catalog.wci\CiP20000.000 Object is locked skipped
C:\System Volume Information\catalog.wci\CiPT0000.000 Object is locked skipped
C:\System Volume Information\catalog.wci\CiSL0001.000 Object is locked skipped
C:\System Volume Information\catalog.wci\CiSP0000.000 Object is locked skipped
C:\System Volume Information\catalog.wci\CiST0000.000 Object is locked skipped
C:\System Volume Information\catalog.wci\CiVP0000.000 Object is locked skipped
C:\System Volume Information\catalog.wci\INDEX.000 Object is locked skipped
C:\System Volume Information\catalog.wci\propstor.bk1 Object is locked skipped
C:\System Volume Information\catalog.wci\propstor.bk2 Object is locked skipped
C:\VundoFix Backups\avntytvm.exe.bad Infected: Trojan.Win32.Agent.anr skipped
C:\VundoFix Backups\csfhralo.exe.bad Infected: Trojan-Clicker.Win32.Small.mw skipped
C:\VundoFix Backups\ddccdbx.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.jp skipped
C:\VundoFix Backups\dwghvmqa.dll.bad Infected: Trojan.Win32.BHO.bd skipped
C:\VundoFix Backups\dxrwvvli.dll.bad Suspicious: Packed.Win32.Morphine.a skipped
C:\VundoFix Backups\geebc.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.fp skipped
C:\VundoFix Backups\gpiwbmdg.exe.bad Infected: Trojan.Win32.Agent.anr skipped
C:\VundoFix Backups\gubsodtd.exe.bad Infected: Trojan.Win32.Agent.anr skipped
C:\VundoFix Backups\j3211232.dll.bad Infected: Trojan-Clicker.Win32.Small.mw skipped
C:\VundoFix Backups\jbgnbaqy.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.ar skipped
C:\VundoFix Backups\keauaaqc.dll.bad Suspicious: Packed.Win32.Morphine.a skipped
C:\VundoFix Backups\kmbpiyje.exe.bad Infected: Trojan.Win32.Agent.anr skipped
C:\VundoFix Backups\kvjbjjdu.dll.bad Suspicious: Packed.Win32.Morphine.a skipped
C:\VundoFix Backups\neqcgyaw.exe.bad Infected: Trojan.Win32.Agent.anr skipped
C:\VundoFix Backups\pmnnk.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.fp skipped
C:\VundoFix Backups\rdnoffrr.dll.bad Infected: not-a-virus:AdWare.Win32.BHO.v skipped
C:\VundoFix Backups\rthilpcg.exe.bad Infected: Trojan.Win32.Agent.anr skipped
C:\VundoFix Backups\shpubbkx.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.ar skipped
C:\VundoFix Backups\snkkwcax.exe.bad Infected: Trojan.Win32.Agent.anr skipped
C:\VundoFix Backups\ssttq.dll.bad Infected: not-a-virus:AdWare.Win32.Virtumonde.fp skipped
C:\VundoFix Backups\wcqnojfm.dll.bad Infected: Trojan.Win32.BHO.bd skipped
C:\VundoFix Backups\wggijssn.exe.bad Infected: Trojan.Win32.Agent.anr skipped
C:\VundoFix Backups\wljlqrud.dll.bad Infected: not-a-virus:AdWare.Win32.BHO.v skipped
C:\VundoFix Backups\wraqrojs.exe.bad Infected: Trojan.Win32.Agent.anr skipped
C:\VundoFix Backups\yddfsyns.exe.bad Infected: Trojan.Win32.Agent.anr skipped
C:\VVSN_STAT0641Inst.exe/data0001.cab/VVSN.exe Infected: not-a-virus:AdWare.Win32.SaveNow.z skipped
C:\VVSN_STAT0641Inst.exe/data0001.cab Infected: not-a-virus:AdWare.Win32.SaveNow.z skipped
C:\VVSN_STAT0641Inst.exe Embedded CAB: infected - 2 skipped
C:\WINDOWS\bbi8019.exe/data0002 Infected: not-a-virus:AdWare.Win32.BargainBuddy.d skipped
C:\WINDOWS\bbi8019.exe/data0003 Infected: not-a-virus:AdWare.Win32.BargainBuddy.a skipped
C:\WINDOWS\bbi8019.exe NSIS: infected - 2 skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\Downloaded Program Files\popcaploader.dll Infected: not-a-virus:Downloader.Win32.PopCap.a skipped
C:\WINDOWS\Fonts\Balth___.ttf Object is locked skipped
C:\WINDOWS\Fonts\Dayton__.ttf Object is locked skipped
C:\WINDOWS\Fonts\Geotype.ttf Object is locked skipped
C:\WINDOWS\Fonts\Greek_I.ttf Object is locked skipped
C:\WINDOWS\Fonts\RussRite.ttf Object is locked skipped
C:\WINDOWS\Fonts\Whimsy.ttf Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\SYSTEM32\aluvttug.dll Object is locked skipped
C:\WINDOWS\SYSTEM32\aooynrri.dll Infected: Trojan.Win32.BHO.o skipped
C:\WINDOWS\SYSTEM32\asskglrg.dll Object is locked skipped
C:\WINDOWS\SYSTEM32\ASWnk-uninstall.exe Infected: not-a-virus:AdWare.Win32.PrimeSoft skipped
C:\WINDOWS\SYSTEM32\bxvfirmj.exe Object is locked skipped
C:\WINDOWS\SYSTEM32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\SYSTEM32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\SYSTEM32\cmkmxpua.dll Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\Antivirus.Evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\AppEvent.Evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\Internet.evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SAM Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SAM.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SecEvent.Evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SECURITY Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SECURITY.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SysEvent.Evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\Windows_OneCare_Evt.evt Object is locked skipped
C:\WINDOWS\SYSTEM32\cymferpa.dll Object is locked skipped
C:\WINDOWS\SYSTEM32\dguhqtkp.dll Object is locked skipped
C:\WINDOWS\SYSTEM32\DRIVERS\ETC\HOSTS Infected: Trojan.Win32.Qhost skipped
C:\WINDOWS\SYSTEM32\DRIVERS\ETC\hosts.msn Infected: Trojan.Win32.Qhost skipped
C:\WINDOWS\SYSTEM32\eeckxoim.dll Object is locked skipped
C:\WINDOWS\SYSTEM32\evfvkcss.dll Object is locked skipped
C:\WINDOWS\SYSTEM32\fcgiitqk.dll Object is locked skipped
C:\WINDOWS\SYSTEM32\ggvomtdx.dll Object is locked skipped
C:\WINDOWS\SYSTEM32\gypgrnww.dll Object is locked skipped
C:\WINDOWS\SYSTEM32\H323LOG.TXT Object is locked skipped
C:\WINDOWS\SYSTEM32\ihjksltc.dll Object is locked skipped
C:\WINDOWS\SYSTEM32\jdigepgj.dll Object is locked skipped
C:\WINDOWS\SYSTEM32\jgceyait.dll Object is locked skipped
C:\WINDOWS\SYSTEM32\jgfrvgwe.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\WINDOWS\SYSTEM32\koanuwvy.dll Object is locked skipped
C:\WINDOWS\SYSTEM32\lslhmtip.dll Object is locked skipped
C:\WINDOWS\SYSTEM32\ndpjjtjb.dll Infected: Trojan.Win32.BHO.o skipped
C:\WINDOWS\SYSTEM32\ohvxlrsd.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped

Zanza
2007-06-15, 10:11
C:\WINDOWS\SYSTEM32\pgrresqp.dll Object is locked skipped
C:\WINDOWS\SYSTEM32\rdjgkgwl.exe Object is locked skipped
C:\WINDOWS\SYSTEM32\rlnroqhv.exe Object is locked skipped
C:\WINDOWS\SYSTEM32\ropgfdan.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\WINDOWS\SYSTEM32\ssdewnnx.dll Object is locked skipped
C:\WINDOWS\SYSTEM32\T1QaSQ\T1QaSQ1065.exe Infected: Trojan-Downloader.Win32.VB.fn skipped
C:\WINDOWS\SYSTEM32\tdiphmlx.exe Object is locked skipped
C:\WINDOWS\SYSTEM32\uhqetipr.exe Object is locked skipped
C:\WINDOWS\SYSTEM32\unpehouj.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\WINDOWS\SYSTEM32\vmpbxpuc.dll Object is locked skipped
C:\WINDOWS\SYSTEM32\vrrwjhbl.dll Object is locked skipped
C:\WINDOWS\SYSTEM32\vviwpebx.dll Infected: Trojan.Win32.BHO.o skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\SYSTEM32\X3Dview.dll Object is locked skipped
C:\WINDOWS\SYSTEM32\xjajsnaw.dll Object is locked skipped
C:\WINDOWS\SYSTEM32\xlmutokx.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\WINDOWS\SYSTEM32\yc207JA0.exe Infected: Backdoor.Win32.VB.kb skipped
C:\WINDOWS\SYSTEM32\ywgjtvvi.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\WINDOWS\SYSTEM32\_msinfosys.dll Infected: not-a-virus:AdWare.Win32.PrimeSoft skipped
C:\WINDOWS\Temp\Perflib_Perfdata_5d4.dat Object is locked skipped
C:\WINDOWS\Temp\setup4.exe/data0002 Infected: not-a-virus:AdWare.Win32.IEDriver.a skipped
C:\WINDOWS\Temp\setup4.exe/data0003 Infected: Trojan-Downloader.Win32.Agent.adz skipped
C:\WINDOWS\Temp\setup4.exe NSIS: infected - 2 skipped
C:\WINDOWS\Temp\_avast4_\Webshlock.txt Object is locked skipped
C:\WINDOWS\WIADEBUG.LOG Object is locked skipped
C:\WINDOWS\WIASERVC.LOG Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
F:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped

Scan process completed.

Shaba
2007-06-15, 11:05
Hi

Empty these folders:

C:\WINDOWS\Temp\
C:\VundoFix Backups\
C:\Documents and Settings\Nikki\Local Settings\Temp\

Delete these:

C:\WINDOWS\SYSTEM32\pgrresqp.dll
C:\WINDOWS\SYSTEM32\rdjgkgwl.exe
C:\WINDOWS\SYSTEM32\rlnroqhv.exe
C:\WINDOWS\SYSTEM32\ropgfdan.dll
C:\WINDOWS\SYSTEM32\ssdewnnx.dll
C:\WINDOWS\SYSTEM32\T1QaSQ
C:\WINDOWS\SYSTEM32\tdiphmlx.exe
C:\WINDOWS\SYSTEM32\uhqetipr.exe
C:\WINDOWS\SYSTEM32\unpehouj.dll
C:\WINDOWS\SYSTEM32\vmpbxpuc.dll
C:\WINDOWS\SYSTEM32\vrrwjhbl.dll
C:\WINDOWS\SYSTEM32\xjajsnaw.dll
C:\WINDOWS\SYSTEM32\xlmutokx.dll
C:\WINDOWS\SYSTEM32\yc207JA0.exe
C:\WINDOWS\SYSTEM32\ywgjtvvi.dll
C:\WINDOWS\SYSTEM32\_msinfosys.dll
C:\VVSN_STAT0641Inst.exe
C:\WINDOWS\bbi8019.exe
C:\WINDOWS\SYSTEM32\aluvttug.dll
C:\WINDOWS\SYSTEM32\aooynrri.dll
C:\WINDOWS\SYSTEM32\asskglrg.dll
C:\WINDOWS\SYSTEM32\ASWnk-uninstall.exe
C:\WINDOWS\SYSTEM32\bxvfirmj.exe
C:\WINDOWS\SYSTEM32\cmkmxpua.dll
C:\WINDOWS\SYSTEM32\cymferpa.dll
C:\WINDOWS\SYSTEM32\dguhqtkp.dll
C:\WINDOWS\SYSTEM32\DRIVERS\ETC\HOSTS
C:\WINDOWS\SYSTEM32\DRIVERS\ETC\hosts.msn
C:\WINDOWS\SYSTEM32\eeckxoim.dll
C:\WINDOWS\SYSTEM32\eeckxoim.dll
C:\WINDOWS\SYSTEM32\evfvkcss.dll
C:\WINDOWS\SYSTEM32\fcgiitqk.dll
C:\WINDOWS\SYSTEM32\ggvomtdx.dll
C:\WINDOWS\SYSTEM32\gypgrnww.dll
C:\WINDOWS\SYSTEM32\ihjksltc.dll
C:\WINDOWS\SYSTEM32\jdigepgj.dll
C:\WINDOWS\SYSTEM32\jgceyait.dll
C:\WINDOWS\SYSTEM32\jgfrvgwe.dll
C:\WINDOWS\SYSTEM32\koanuwvy.dll
C:\WINDOWS\SYSTEM32\lslhmtip.dll
C:\WINDOWS\SYSTEM32\ndpjjtjb.dll
C:\WINDOWS\SYSTEM32\ohvxlrsd.dll
C:\syskfvg.exe
C:\sysmkdk.exe

Empty Recycle Bin

Download HostsXpert (http://www.funkytoad.com/download/HostsXpert.zip) and unzip it to your desktop.

Open HostsXpert that you earlier unzipped on your desktop

Click "Make Hosts Writable?" upper right corner (if available)
Click "Restore Microsoft's Original Hosts File" and then click OK
Close HostsXpert
Note; IF you used any custom Hosts (eg. MVPS Hosts), you will have put them back manually

Re-scan with kaspersky

Post:

- a fresh HijackThis log
- kaspersky report

Zanza
2007-06-15, 22:44
Logfile of HijackThis v1.99.1
Scan saved at 4:38:21 PM, on 06/15/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\SM1BG.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Panasonic\LUMIXSimpleViewer\PhLeAutoRun.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\cidaemon.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\hijackthis\scanner.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: UberButton Class - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: YahooTaggedBM Class - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - C:\Program Files\Yahoo!\Common\YIeTagBm.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: MSN Search Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SM1BG] C:\WINDOWS\SM1BG.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - HKCU\..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: LUMIX Simple Viewer.lnk = ?
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\MSN Toolbar Suite\DS\02.05.0001.1119\en-us\bin\WindowsSearch.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll/search.htm
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Translate.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://mirs.peoplepc.com/?offername=PeoplePC Online Accelerated&userName=zanza9&firstName=Nikki&qs=OKOMLDFHGMAHEMEANCBKAAIBKKMPDMAKHGNFGOBALEJMBIEOBGFDKKMLHOLJHHIAKEBHHAMMBOGNLMNCACDNPMOFOFPDPDKJCKPIODKLIACDMKKNPBHNDHOMJCGBANOI|GOFLBCBDDGNMCNOPADEEAAGOBAFDFEL
O16 - DPF: Harvest Mania by pogo - http://game1.pogo.com/applet-6.7.3.23/harvest/harvest-en_US.cab
O16 - DPF: Jigsaw Detective by pogo - http://game1.pogo.com/applet-6.7.3.23/jigsaw/jigsaw-en_US.cab
O16 - DPF: Mah Jong Garden by pogo - http://game1.pogo.com/applet-6.7.2.33/mahjong/mahjong-en_US.cab
O16 - DPF: Penguin Blocks by pogo - http://game1.pogo.com/applet-6.5.1.31/penguins/penguins-en_US.cab
O16 - DPF: Pop Fu by pogo - http://game1.pogo.com/applet-6.5.1.31/popfu/popfu-en_US.cab
O16 - DPF: PoppaZoppa by pogo - http://game1.pogo.com/applet-6.7.2.33/poppazoppa/poppazoppa-en_US.cab
O16 - DPF: Ride The Tide by pogo - http://game1.pogo.com/applet-6.5.3.44/ride/ride-en_US.cab
O16 - DPF: Stax by pogo - http://game1.pogo.com/applet-6.5.3.44/stax/stax-en_US.cab
O16 - DPF: WMP10ctrl - http://www.cinemanow.com/WMP10ctrl.CAB
O16 - DPF: Wonderland Memories by pogo - http://game1.pogo.com/applet-6.7.3.23/memories/memories-en_US.cab
O16 - DPF: Yahoo! Spades - http://download.games.yahoo.com/games/clients/y/st2_x.cab
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab30149.cab
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - http://activation.rr.com/install/download/tgctlcm.cab
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english/kavwebscan_unicode.cab
O16 - DPF: {11F8D6A0-01C6-4A23-A40F-1C3A560B99EA} (MavenInstallerAXControl Class) - http://client.maven.net/client/mavenInstaller.cab
O16 - DPF: {12F7F128-B36C-4843-8AA4-A5F71A969331} (Launcher Control) - https://horizons.istaria.com/controls/launcher.ocx
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {192F9A01-8030-48CE-9BC6-B03DE3E613C6} (PeoplePC Web Installer) - https://www.peoplepc.com/ppcos/ISP60/Download/ppcwebi.cab
O16 - DPF: {1D95A7C7-3282-4DB7-9A48-7C39CE152A19} (TeamOn Import Object) - https://myemail.t-mobile.com/html/web/client_tools/TOImport.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {33E54F7F-561C-49E6-929B-D7E76D3AFEB1} (Pool Control) - http://www.worldwinner.com/games/v48/pool/pool.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/20021205/qtinstall.info.apple.com/borris/us/win/QuickTimeInstaller.exe
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-9.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by107fd.bay107.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {55027008-315F-4F45-BBC3-8BE119764741} (Slide Image Uploader Control) - http://www.slide.com/uploader/SlideImageUploader.cab
O16 - DPF: {640B39C1-D713-464F-92C3-75BD972B95EE} - http://www.sidestep.com/get/k42037/sb02b.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://go.divx.com/plugin/DivXBrowserPlugin.cab
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) - http://us.games2.yimg.com/download.games.yahoo.com/games/play/client/exentctl_0_0_0_1.ocx
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1181656249625
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www.ca.com/us/securityadvisor/virusinfo/webscan.cab
O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) - http://www.worldwinner.com/games/shared/wwlaunch.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab30149.cab
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://admin.pressplay.com/duet/registration/isetup.cab
O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://autos.msn.com/Components/Ocx/SurVid/MSSurVid.cab
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O16 - DPF: {9903F4ED-B673-456A-A15F-ED90C7DE9EF5} (Sol Control) - http://www.worldwinner.com/games/v45/sol/sol.cab
O16 - DPF: {AF087E66-838E-4A97-8A0B-0DDDA5DEA239} (OTAutoInstall Class) - http://streaming.endeavors.com/microsoft/imaging/clientdownloads/OTAI.CAB
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10/ZIntro.cab32846.cab
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/suite/yautocomplete.cab
O16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) - http://autos.msn.com/Components/Ocx/Exterior/Outside.cab
O16 - DPF: {C4A8A4DA-BD3F-4DEB-9BBB-5B6BD3571EC7} (CDKeyCtl Class) - http://www.cdkey-promotions.com/download/CDKey.cab
O16 - DPF: {C93C1C34-CEA9-49B1-9046-040F59E0E0D8} (Paint Control) - http://www.worldwinner.com/games/v42/paint/paint.cab
O16 - DPF: {CE74A05D-ED12-473A-97F8-85FB0E2F479F} (dlControl.UserControl1) - http://www.cinemanow.com/dlControl.CAB
O16 - DPF: {D06A22B4-6087-4D3D-B7AF-82B113E9ABD4} (CPostLaunch Object) - http://www2.verizon.net/update/msnwebinstall/includes/vzWebIns.CAB
O16 - DPF: {D6016EE7-A8FF-11D1-B37E-A4759ECD7909} (AxPulse Class) - http://www.pulse3d.com/players/english/PulsePlayerAxWin.cab
O16 - DPF: {DC75FEF6-165D-4D25-A518-C8C4BDA7BAA6} (CPlayFirstDinerDashControl Object) - http://games.pogo.com/online2/pogo/diner_dash/DinerDash.1.0.0.80.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://games.pogo.com/online2/pogo/insaniquarium/popcaploader_v6.cab
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O16 - DPF: {EE2589EB-7FC8-44DB-A892-573F2C4B41E0} - http://pdf.forbes.com/forbesnews/triggernews/ForbesDownloaderSigned.cab
O16 - DPF: {EF148DBB-5B6D-4130-B2A1-661571E86260} (Playtime Games Launcher) - http://games.pogo.com/online2/pogo/mahjong_escape_ancient/PTGameLauncher.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/vso/en-us/tools/mcfscan/1,5,0,4267/mcfscan.cab
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} (Yahoo! Toolbar) - http://us.dl1.yimg.com/download.yahoo.com/dl/toolbar/yiebio5_1_3_0.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/bin/msnchat45.cab
O16 - DPF: {F7A05BAC-9778-410A-9CDE-BFBD4D5D2B7F} (iPIX Media Send Class) - http://216.249.24.149/code/iPIX-ImageWell-ipix.cab
O16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/_media/dalaillama/ampx.cab
O16 - DPF: {FF0C042C-98E9-4C36-B2EC-E21FDFDCEF75} - http://download.redswoosh.net/Installer/104/rsinstaller.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Unknown owner - C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe

Zanza
2007-06-15, 22:47
KASPERSKY ONLINE SCANNER REPORT
Friday, June 15, 2007 4:35:43 PM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.93.0
Kaspersky Anti-Virus database last update: 15/06/2007
Kaspersky Anti-Virus database records: 347298
-------------------------------------------------------------------------------

Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true

Scan Target - My Computer:
A:\
C:\
D:\
E:\
F:\

Scan Statistics:
Total number of scanned objects: 172226
Number of viruses found: 27
Number of infected objects: 103
Number of suspicious objects: 1
Duration of the scan process: 01:56:57

Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\All Users\Application Data\Adobe\Catalogs\My Catalog.psa Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\9e05ed325d63feb867fb53465ccda383_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\ba415befd309584769140b51ddab1b0d_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Windows Defender\Support\MPLog-12062006-171849.log Object is locked skipped
C:\Documents and Settings\LocalService\Cookies\INDEX.DAT Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\INDEX.DAT Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temp\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\INDEX.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\AcroForm\MRUFormsList Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\AdobeSysFnt06.lst Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Collab\OfflineDocs Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Collab\Reviews Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\JSADM.exv Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Messages\ENU\read0600win_ENUadbe0062v.pdf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Messages\ENU\read0600win_ENUyhoo0014v.pdf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Preferences\AutoFillDefaults.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Preferences\defaultHeuristics.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\TMGrpPrm.sav Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Updater\AdbeRdr70_enu_full.exe Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Updater\udstore.js Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\Whapi\CreatePDFWinColor.ico Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\Whapi\CreatePDFWinGray.ico Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\Whapi\SearchPDFWinColor.ico Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\Whapi\SearchPDFWinGray.ico Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\Whapi\WHA Library.dll Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\Whapi\WHAppList.xml Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\FileBrowser\PhotoshopElements3\index.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\FileBrowser\PhotoshopElements3\My Downloads0 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\FileBrowser\PhotoshopElements3\My Downloads0M Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\FileBrowser\PhotoshopElements3\My Downloads0T Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Online Services\Photoshop Elements\cache\cache.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Online Services\Photoshop Elements\cache\entry.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Online Services\Photoshop Elements\clients\Photoshop Elements\notifications.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Online Services\Photoshop Elements\clients\Photoshop Elements\preferences.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Album\Log.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Album\psa.prf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Album\status.dat Object is locked skipped

Zanza
2007-06-15, 22:48
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Browser\adprefs.ini Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Browser\global.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Browser\jswarn.dir Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Browser\opera.dir Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Browser\opera6.ini Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Browser\urlwarn.dir Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Keywords.psp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\New Doc Sizes.psp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Photoshop Elements 3.0 Prefs.psp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\PluginCache.psp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Styles.psp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Swatches.psp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Organizer\customevents.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Organizer\Log.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Organizer\psa.prf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Organizer\status.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Organizer\visualSearchLog.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\AdobeUM\Reader6.ini Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\0\0201D20472 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\0\0201D205A1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\0\0201D21C82 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\0\0201D23E8E Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\0\0201D2411D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\0\0201D25471 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\0\0201E06E77 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\006779240A154CDBD8DBC80E678697C5 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D20472 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D205A1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D21C82 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D23E8E Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D2411D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D24126 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D24292 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D25471 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D29818 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D2981A Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201E06E77 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\05386D696C6532 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0E090DCC8931A08B00E6E5A9842D279A Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\113D851AC3961EB4065A16059B93038D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\1FC5E3CFAADAD3CD98698BCF5588C9EB Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\2040FB0E047821EC3F99EEB490DD0D26 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\20AE24DDC4F9A2EE70E10819BAD1AE3D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\21F0216450D9B8822BF23F0C82CFD820 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\2602B4E0E6A50CD499C200F83131AC0D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\270B8BAE15425346BDF5F9D81B3AC4D9 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\3A542C30183E2FB04300F2C1797C57D6 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\3ECD0BA7A44DFCBC2C8833CECDCF05FC Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\3F9AE97D75FAD638CE251BF96E04E637 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\4417BAD56C70399D9115F58AC321EA52 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\692BAFBE1ADA672DE79A1D51CF2C6CC9 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\737A74AF67767EED74D3 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\749DC53C7F1527048DB44326654E6073 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\778E04ABD14ADB9919D3E9FC95F64DDC Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\7B8A99AE43E29D8C96DC2F8AA8BB580E Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\8506759A5A4B68677288579B0A4F2471 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\86C40C72BDB6565268E1B6BB7B086EB8 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\89F0A0915A42871533B192CE1504871C Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\975BB47746B672BDB4D3 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\A2083F5579BFABF848582FA677D19155 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\A60657C7D83214B0312A7D7975A5DB1E Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\AB68D848131154D928DD6E32652DF2B8 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\AC71EA595A46AC235B188182D19F495C Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\B38441A7EEB669D47BCD748F9423CA7C Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\BACABCD797EB5D77527487958FBA614F Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\BD2EDD31D53C4FE75692758CF2683207 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\CA7A96DA49527058090027FA603A4AF1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\D38D70A8B8B82CFD9B217DA3719FC326 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\D770B4537BEB951085EFD0B3C51C704D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\DC554FCC96727CCB999F12D556AEF28A Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\E246E2CB967B00ADD2FB4CF7ECB52FCE Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\F00BB27D2F3017E3BBEF5488333DFB29 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\F3D394A69C339CCC5DE9C3CFF271A3E4 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\F5B200FA964E6C3FAACB38F4D5101779 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1024\0201D23512 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1024\0201D2440B Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\129\0201D210D1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\129\0201D21557 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\129\0201D22075 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\129\0201D23BA2 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\129\0201D26A6A Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\129\0201D2A1CF Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201D20739 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201D243BE Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201D299B8 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201D299B9 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201D299BF Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201D2A688 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201D2A69F Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201E0111E Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201E055A1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201E07297 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0202562859 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\5\20746564647962656172 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\5\337B51664A05D9BB6A3509112831313F Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\7\EFA7D8E2DB08868B728B0DE6132C3DEA Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\96\0201D20D39 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\96\0201D21E7B Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\96\0201D243BE Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\96\0201D299BF Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\96\0201D2A688 Object is locked skipped

Zanza
2007-06-15, 22:51
Trial Edition.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Morpheus\Downloads.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Morpheus\Morpheus.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Morpheus\Uninstall.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Movavi Video Converter 5.3\Movavi Video Converter 5.3 Homepage.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Movavi Video Converter 5.3\Movavi Video Converter 5.3.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Movavi Video Converter 5.3\Uninstall Movavi Video Converter 5.3.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Outlook Express.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Real\Games\3D Ultra Pinball Thrillride.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Real\Games\Cue Club.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Real\Games\Gutterball 3D.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Real\Games\Mini Golf Gold.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Real\Games\Sonic and Knuckles.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Real\Games\Spelvin.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Real\Games\Virtua Fighter 2.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Remote Assistance.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\SaferScan\SaferScan.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Shortcut\PhotoArtist\Order PhotoArtist.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Shortcut\PhotoArtist\PhotoArtist Help.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Shortcut\PhotoArtist\PhotoArtist.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Shortcut\PhotoArtist\Read me.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Shortcut\PhotoArtist\Uninstall PhotoArtist.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\SmartDraw Photo\SmartDraw Photo User's Guide.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\SmartDraw Photo\SmartDraw Photo.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\SmartDraw Photo\Uninstall SmartDraw Photo.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Startup\DESKTOP.INI Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Startup\Scheduler.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Startup\Start Maven Updater.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Windows Media Player.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Xilisoft\iPod Video Converter\Readme.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Xilisoft\iPod Video Converter\Uninstall.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Xilisoft\iPod Video Converter\Xilisoft iPod Video Converter Help.lnk Object is locked skipped
C:\Documents and Settings\Nadia\Start Menu\Programs\Xilisoft\iPod Video Converter\Xilisoft iPod Video Converter.lnk Object is locked skipped
C:\Documents and Settings\Nadia\System\win_qd.jqx Object is locked skipped
C:\Documents and Settings\Nadia\System\win_qs.jqx Object is locked skipped
C:\Documents and Settings\Nadia\Templates\AMIPRO.SAM Object is locked skipped
C:\Documents and Settings\Nadia\Templates\EXCEL.XLS Object is locked skipped
C:\Documents and Settings\Nadia\Templates\EXCEL4.XLS Object is locked skipped
C:\Documents and Settings\Nadia\Templates\LOTUS.WK4 Object is locked skipped
C:\Documents and Settings\Nadia\Templates\POWERPNT.PPT Object is locked skipped
C:\Documents and Settings\Nadia\Templates\PRESENTA.SHW Object is locked skipped
C:\Documents and Settings\Nadia\Templates\QUATTRO.WB2 Object is locked skipped
C:\Documents and Settings\Nadia\Templates\SNDREC.WAV Object is locked skipped
C:\Documents and Settings\Nadia\Templates\WINWORD.DOC Object is locked skipped
C:\Documents and Settings\Nadia\Templates\WINWORD2.DOC Object is locked skipped
C:\Documents and Settings\Nadia\Templates\WORDPFCT.WPD Object is locked skipped
C:\Documents and Settings\Nadia\Templates\WORDPFCT.WPG Object is locked skipped
C:\Documents and Settings\Nadia\UserData\3S6IOI89\BlogIt[1].xml Object is locked skipped
C:\Documents and Settings\Nadia\UserData\3S6IOI89\undefined[1].xml Object is locked skipped
C:\Documents and Settings\Nadia\UserData\3S6IOI89\undefined[2].xml Object is locked skipped
C:\Documents and Settings\Nadia\UserData\5NMEABTE\CoronaRunOnce[1].xml Object is locked skipped
C:\Documents and Settings\Nadia\UserData\5NMEABTE\oXMLStore[1].xml Object is locked skipped
C:\Documents and Settings\Nadia\UserData\5NMEABTE\undefined[1].xml Object is locked skipped
C:\Documents and Settings\Nadia\UserData\K01MOZ1N\sn[1].xml Object is locked skipped
C:\Documents and Settings\Nadia\UserData\K01MOZ1N\undefined[1].xml Object is locked skipped
C:\Documents and Settings\Nadia\UserData\K01MOZ1N\undefined[2].xml Object is locked skipped
C:\Documents and Settings\Nadia\UserData\QG4C1TIL\oWindowsUpdate[1].xml Object is locked skipped
C:\Documents and Settings\Nadia\UserData\QG4C1TIL\undefined[1].xml Object is locked skipped
C:\Documents and Settings\Nadia\UserData\QG4C1TIL\YL[1].xml Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Nikki\Application Data\GTek\GTUpdate\AUpdate\DellSupport\DSAgnt.log Object is locked skipped
C:\Documents and Settings\Nikki\Application Data\GTek\GTUpdate\AUpdate\DellSupport\DSAgnt_GTActions.log Object is locked skipped
C:\Documents and Settings\Nikki\Application Data\GTek\GTUpdate\AUpdate\DellSupport\gdql_d_DSAgnt.log Object is locked skipped
C:\Documents and Settings\Nikki\Application Data\GTek\GTUpdate\AUpdate\DellSupport\glog.log Object is locked skipped
C:\Documents and Settings\Nikki\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Feeds Cache\index.dat Object is locked skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{0C83DD50-4ECA-45CE-A5EC-A235103EF272} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{14AD61BD-44B5-4CBA-BA75-2787A7395D4E} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{19B0D2A9-8044-4A05-8859-EC5F6B4CEAB6} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{2610AE17-0DA2-4FE3-95A5-6B5DD332F84B} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{2E8E90AC-BC02-44EA-959A-564F09110C5A} Object is locked skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{37A0DC4A-AD5B-4EA0-8EF0-AE0BD8CA0C51} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{3D6FCCEC-8BBD-4217-A68C-81E25D4A839C} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{3EBB9395-5BA9-41C9-BCF2-6ACF147EE16E} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{408B7744-69ED-467E-A562-BE957B011DBE} Object is locked skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{40993C85-B5BE-4D12-AF57-8612A7528F13} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{4C4A4BE7-282B-41E6-9B8F-585FC503B7AB} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{51C86589-3F42-4B32-80E6-5E47FE78E2FD} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{56BD3E11-868C-4A3B-8AB0-388222FBE931} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{56C43873-8EF8-4E85-B30B-59B16E542B1B} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{67B5D163-FA20-4B88-A35C-B4D47E5BA1A8} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{70505056-F30B-499A-B23C-EDC635987344} Infected: Trojan.Win32.Qhost skipped

Zanza
2007-06-15, 22:53
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{7411E21E-AB33-4B7B-A4E8-00509B54B195} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{7D140798-1C70-4419-B135-E1186FA25592} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{7EEA234D-386D-4E6F-A42E-1A68EC60FD35} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{84628EFA-AB3F-4485-B8F5-24E657469E6D} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{8895A790-BBAB-4319-859B-DC4D1D94B2AC} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{892801DC-1168-4234-A03F-E4ADC1E6591F} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{8AC800F0-0D1D-4557-A14B-C485572C411E} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{965E5FAD-E85C-42E5-9F46-B29BF4275329} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{9BA447DE-98A2-4C64-A874-99013A8DD303} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{A4361217-4980-4804-BDE7-A4035FE41185} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{AA5E530C-0DB9-46C6-94EF-1026231C4283} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{AC24FA81-CC1F-46D0-9824-1E745926ED38} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{BBA8AFCD-FDF4-4B7A-A476-54337573E680} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{BC02972E-1349-4A81-B137-8341C9962D8C} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{BD20AD40-0410-4CC9-86F5-DC2C5DFCC279} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{BD3109F9-F5D3-4F8D-9BF9-23D4D6C81C9F} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{BFAB0541-14C9-40C2-9631-01850FB0B025} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{C1DC576E-90D0-47D2-BB7F-4565199E4C34} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{C6F6F90C-5D70-4651-998C-D52178E2C7C8} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{CDAFF254-5B7A-46FA-800B-9F559342BCF6} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{D259985F-1EE5-430F-AD28-98B695D2EE95} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{D72AC81A-8E41-4FE6-9C73-436891527956} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{DBAC2867-C3BC-42E1-A322-05149CADE689} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{DF72C901-83AC-4A69-8605-D065D5667F21} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{E45A75D9-FD2C-4A80-BE5D-396F0A5C2412} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{E669EA18-6586-4F82-973E-749A5E70B52E} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{EC011B71-F409-404A-9B4E-B738FE54E174} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{EFD1D94B-B05D-4552-92A5-F63B4E186243} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{F1C1E547-8E31-48CA-AEB5-06B4DD52BCDC} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{F6768FF9-7E45-4F1D-9A3B-6FE0E3295A45} Infected: Trojan.Win32.Qhost skipped
C:\Documents and Settings\Nikki\Local Settings\History\History.IE5\INDEX.DAT Object is locked skipped
C:\Documents and Settings\Nikki\Local Settings\History\History.IE5\MSHist012007061520070616\index.dat Object is locked skipped
C:\Documents and Settings\Nikki\Local Settings\Temp\Free Download Manager\tic34.tmp Object is locked skipped
C:\Documents and Settings\Nikki\Local Settings\Temp\~DF705D.tmp Object is locked skipped
C:\Documents and Settings\Nikki\Local Settings\Temp\~DF7069.tmp Object is locked skipped
C:\Documents and Settings\Nikki\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\Nikki\My Documents\My Downloads\mirc616.exe/data0001.bin Infected: not-a-virus:Client-IRC.Win32.mIRC.616 skipped
C:\Documents and Settings\Nikki\My Documents\My Downloads\mirc616.exe mIRC: infected - 1 skipped
C:\Documents and Settings\Nikki\ntuser.dat Object is locked skipped
C:\Documents and Settings\Nikki\ntuser.dat.LOG Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\aswResp.dat Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\Avast4.db Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\integ\avast.int Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\AshWebSv.ws Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\aswMaiSv.log Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\log\nshield.log Object is locked skipped
C:\Program Files\Alwil Software\Avast4\DATA\report\Resident protection.txt Object is locked skipped
C:\Program Files\InstallShield Installation Information\{2E0695EE-ED29-4D96-BD77-2A9A17EDF0D6}\setup.ilg Object is locked skipped
C:\Program Files\InstallShield Installation Information\{3D047C15-C859-45F7-81CE-F2681778069B}\Setup.ilg Object is locked skipped
C:\Program Files\InstallShield Installation Information\{8AF3E926-ED59-11D4-A44B-0000E86D2305}\setup.ilg Object is locked skipped
C:\Program Files\InstallShield Installation Information\{D9F4A9F8-92C5-4289-9D04-F0F8F02D580A}\Setup.ilg Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\00D7BCCB-554A-4096-9055-7076B9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\01469748-C7D6-4DA9-A741-37164B Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\0210FF3D-7B47-45A9-9295-46C47D Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\02B4F97C-68E2-4D98-9B9D-A6D8D0 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\03104A3B-84CE-4881-BA2B-A3BE45 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\03733BE6-72B4-4F1E-9D2D-9AA713 Object is locked skipped

Zanza
2007-06-15, 22:55
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\05371816-B471-45E1-B94F-F201D5 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\072BBA8E-F38B-4912-A009-490F89 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\0911A5B5-C2D0-4624-8E77-2D8606 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\091A811D-1C75-4F87-9AF0-8915C8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\0A722B08-155F-4F12-8983-01A592 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\0A8CCD56-6B08-497D-B5DA-C9CFFC Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\0A901B43-64CF-4031-A659-510C4E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\0E9E453D-E4B5-42D5-AE13-51E73F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\1055668C-EB9B-4F9F-8007-FAD010 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\106C0E2D-E775-4A91-AF22-930148 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\11BB03F3-85CA-48A3-9192-274C78 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\12868B10-2BCA-4D94-B85A-3C7D67 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\13757677-0643-4B9D-BFBB-BB0E53 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\13DADBC3-15BC-4663-8B6D-F92C3E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\147BD362-4502-41AA-AE6B-4C5BE2 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\14999365-DFF7-4724-9EC3-EB2238 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\15009791-CE66-4C32-8107-7AB396 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\1674083D-5C96-4A84-9CB9-96A29D Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\1827C3E0-0C5D-4476-92B0-2383A7 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\18CA02F2-EA15-4C8D-A5BA-31CCFD Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\19547B10-98D1-406E-BB5B-829679 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\19EB1A94-995F-4833-853D-1D87FB Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\1A123EFF-F84B-4975-BA1C-CDC734 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\1C8B0CFB-1EBB-4DC0-BC20-C60193 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\1CB7A73C-A1E4-4CAB-97F8-C8E0B6 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\1DBF31DC-ACC2-4981-AC9C-E3B50A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\209FB6A5-16C2-4F1D-B6B0-3B2B54 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\20B068CA-6812-44F4-8264-CE4E11 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\20E10364-B91C-4CFE-962B-31C23D Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\21EB1495-41C7-4E84-83D5-97A041 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\23A1131B-BFF3-454D-9EC1-9DB447 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\23DD4466-7C2F-4226-A59C-B37DA4 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\24002A12-0E34-448E-8F11-0AA201 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\24FDC5EA-F9D3-4A19-AC03-FA12B5 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\256A20BC-93FC-4087-9C50-AB91BD Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2607E97C-465A-41F3-81A8-715062 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\260D0F50-87BF-4483-AA88-81797A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2635384B-A3F7-4823-A3E4-F5B51E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\263F3EEE-0F3E-403F-9482-C84F87 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\26F4C10D-F992-4C02-9B34-06EFEB Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2731FDC6-A8D2-4378-ABC2-9BF791 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\273FB23B-A1A5-4D13-9986-C3DBD8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\275D33A7-BA04-489C-AAA5-F45214 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2794DC02-8933-4A8A-BF81-E5C8DF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\27C332C1-78B5-4A66-B963-C323ED Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\28C57D12-8022-4861-8E80-1807EB Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\292A462C-6669-4A0D-AED1-31BE60 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\292EC72B-FA69-4855-84A6-26D0A2 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2A05A267-74E3-4067-9E73-CB7838 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2A259426-6A5F-49D0-ACD2-637E23 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2B0C6D22-AB61-4707-9831-821E8E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2B25BBE8-EC75-4B5B-8DE6-9BCE48 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2C661BEB-95F8-487F-94B1-F70F87 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2D1D7058-5B21-4A80-9D13-3A8994 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2E3162C4-C350-4E47-A930-F825A0 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\2F346EAD-C673-43DC-AB47-EB1ACD Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3148EE54-2A9C-4C84-BD7E-E28635 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\31570477-5AE5-4848-87B7-D253B8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\31764662-855B-46AB-BA26-58D4AF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\31832A73-B610-4B09-A669-2132F6 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\31E6E03E-75F7-4E2B-919C-585EDA Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3234F2E8-99DA-4DFD-979C-47812C Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3285C54E-BE8F-49B0-A576-C3D8D7 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\340EDD1A-507D-46FA-95F9-4BD0AD Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\34BEDC6E-D8B5-4A1E-8CB6-67A3FE Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\34F2E6C4-FAA3-4378-8563-C28242 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\356E368B-751C-473E-A696-61DCA8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\358E23A0-90E8-46C6-A906-0C0E48 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\35F220D7-B32A-4732-B985-92187C Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3668E699-B8A4-469C-8E11-36FC48 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\36C2A53F-0153-49B2-B8B8-C291F7 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\378BD4A7-7ABA-4ECE-B4D8-CC9D7C Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\37959EDC-A2CB-45E1-AEC7-4F5265 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\379697E5-6E84-4875-A8A2-C94197 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\38011CCC-F978-4071-902E-23161C Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\391D87DF-22BD-45AC-A9A8-036850 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\399A39EB-C83A-4AC5-85B0-7A7A52 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\39C40C96-BA9E-4A19-B757-BD23EF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\39C8E647-6895-4E03-AF80-A3BFB9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\39DDBA70-6B6C-4379-B65A-BEE840 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3A7FAEC6-2A74-4F15-AA1C-FB1893 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3B090BD0-9165-4920-9CC1-E6F6E3 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3BCAC6CC-BDC1-4CD3-8D91-4666CF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3C150E16-AE2B-4AF8-90FE-36CEDA Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3CA05CBE-5936-42F0-BFC8-9BD2BB Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3E43849E-FFEB-4CDB-B6E4-CE1BCE Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3F500C44-80CB-4CDE-80B5-2CF042 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\3F8C1A43-5DEC-4901-9234-5EE2F1 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\40721C0B-48C2-47B1-ACAB-9B987E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\40DA1678-CA98-47B7-8A8C-CC55CA Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\41080751-F101-4034-ABE3-7D9759 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\42FAEF1A-5667-4260-943F-37E1A8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\430F0B02-1E63-4C92-B086-5469E2 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\437E845B-33EC-411C-A81A-82615A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\447A162D-015E-448B-A31A-173515 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\458670DD-44B5-496D-9C45-09BA31 Object is locked skipped

Zanza
2007-06-15, 22:56
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\48155A42-E21F-4194-A939-9DA3CC Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\4860CF5E-9549-4EFF-B665-1D9743 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\48BF34BE-ADCF-42BA-9924-F35102 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\48F1556F-28B2-469E-88DC-C67910 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\4A2E4603-C6ED-4A7B-9AF4-B07812 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\4AE7C438-1EED-44EF-BB7B-EF4C69 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\4B6BB735-DE48-42DF-B845-386613 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\4B93F918-7A49-4912-B2DF-1C24F8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\4C4AE6FD-531C-4558-8F10-9FE5F3 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\4D4D5372-A90F-4DBA-8CD3-C56690 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\4D8F63D9-7A1D-4998-99E4-FD8FAE Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\4DF9A62F-7850-4E03-96A8-8FBCB9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\4F5B2920-B171-41CA-93DB-DF6328 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\502D8153-7CF3-4F49-8A5C-ADA280 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\509EA82A-744B-4AAF-B613-665B58 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\50BF5338-4D44-4BB7-82A0-9CD4FE Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\51E33E56-7C97-433E-AAB0-D8C72D Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\52BF3D7C-1209-4CC9-AC5E-0C13C5 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\54D92C42-B866-43A0-9D32-F916BD Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\552085AA-728B-472B-A101-5BE3D1 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5654CAD1-A887-43F1-B8A9-28A161 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\57508173-DD4D-4A8B-BC65-06D049 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5764D965-0EE1-45C6-B5D0-D901AF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\57FFB8ED-D125-4C36-A745-76514A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\58BA05DE-EB38-4A12-A6D8-D2BF12 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\59CCB266-58B4-4FB2-8508-94CC93 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5A48BA97-9CF8-41CC-A6CA-28700D Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5A5FE192-F561-42D1-B43D-274ED0 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5C75EF56-65C5-4DB3-93BC-40BC8B Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5CB24071-7FDA-483B-B964-CFE6F1 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5D864079-F2C5-4A38-A21E-B3D56F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5E0B30E3-E44A-442D-8606-394757 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5E44B186-9F02-45AE-99AF-0F2578 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5F249E92-B2D7-4D56-8601-CBB43E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5F2D06E7-8ED3-4C85-BD49-EFD904 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\5F9D21CD-6F9A-4FD2-96C2-34D5CF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\606BBE05-27A9-43A1-AE76-47DDC4 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6203FE9D-912E-484F-80FD-86C486 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\647B43F3-DEA9-4868-B12D-9C8B02 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\647D9C87-DE03-4B89-A9D5-21B6F5 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6510942C-F4C8-4FDA-BEAC-F5E29F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\663B1B9C-92E3-4B26-B724-A22AA9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6675B34D-7CC3-46A6-962A-FC26C8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\66E3B0A5-55A2-4E39-A9CB-CB21C4 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6835A318-DFB3-440A-8794-D70C22 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6922F4BB-37AA-4BB6-989C-75D787 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\69248985-446C-4128-8E06-77C9F9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\696DDDC1-D5D7-4BE6-B77B-20804E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6AF84665-6749-4AC0-A0B0-ACDB9D Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6B5CA456-6E59-4DF1-847F-880EFE Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6BA68349-FC4A-4EA2-84CE-F941F8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6C0CFF76-CF5D-45A1-9C4E-706EFF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6C21A4C2-2769-41EF-BF8B-98B9FA Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6CA3246F-153C-4BA9-BE6F-F8E0B7 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6CDE6F86-5D0A-4C93-A30D-CF908F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6D166621-A787-4E1A-8C8B-97C19C Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6D455D8A-D7AB-4168-BE63-6365CF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6D7EC015-57D0-4E3B-AE0B-FD9A93 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6E0BEAD9-EBDA-4F68-856D-90FD57 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6E3143EA-73C9-45C5-8013-6D14BD Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6F253BD2-7A9D-415D-A895-68AB45 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\6FC4CF4A-C29A-4E6D-ADDE-C27DE4 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\701CEBF1-1FBF-425D-A755-CD5FED Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\70628F87-D981-41BA-B7CB-CFAC2B Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\70AB91ED-F511-4336-95CC-A3624B Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\70E78361-DCDA-482E-BD84-87A0D0 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\713FEA09-2694-40D1-A457-D45678 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\717A0D4A-44C4-4A45-93D9-87F2A3 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\718FE437-B7B6-437D-8544-59152E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\75EB21EE-49D5-468E-B0E2-ACFA9A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\76918D7C-2DD7-4022-BBEA-3EB1B5 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\77B83ABB-30DE-4300-B5F1-DBCD0C Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\782DBD7C-20C4-4DC4-8F3E-48D1FD Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\78B4E4D0-A62B-439E-A59F-4B6A03 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\79A986BE-5323-4CFD-BD35-DF651A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\79D34847-6EA7-46ED-B227-A00AF9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\7B2DED86-4AA9-4ECF-B2EC-EBBE69 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\7B435252-395E-4CE1-8128-77A691 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\7C60D335-1873-4CB6-9FB3-217CB1 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\7C61C8E4-BBC6-4FDA-B068-568555 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\7CED7031-C2B9-4B77-B63B-8BED21 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\7CF74DF0-4531-4F01-83EE-FD5632 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\7DC5CBA2-100F-4B95-852A-476E4D Object is locked skipped

Zanza
2007-06-15, 22:57
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\7FB2A790-C75D-4082-98E5-312BB4 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\81214DE1-44B2-4FDE-9097-6F5F21 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\814D3327-A79A-45FA-AC0F-35B640 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\8198A630-526F-4346-8F74-150C23 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\81ED8984-2221-4A15-BE7C-2C12E9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\864E57F8-E43C-4D55-BEED-B87C4E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\8750138A-D31E-421D-967D-A4AA46 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\88EF1AD0-338A-45AF-B896-2EB630 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\8916FF2F-C2D9-474F-B221-A2B12D Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\89E4DC33-549D-4AF4-A588-5266E2 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\8AC5AA8C-EB29-4CAC-AD5A-40A021 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\8C3EF828-D739-4E01-8D92-7FCA37 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\8D796DEF-09E6-4D7A-A4D9-CAA299 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\8E9782F7-26DA-4A00-9ADE-37D5A9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\8EB7F207-2352-4DD7-A33F-EC71EE Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\8F245C49-795B-4DD6-B739-31A966 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\8F6D89B6-BE5D-498D-BC84-67D0BE Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9090CAA6-AEFC-459C-9E2D-4691A0 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\90B82D65-00ED-405A-8FBA-96798B Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\90C79D6D-9A5E-4A9F-883F-FBEE62 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\915AB063-C027-47D3-A277-BE14CF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\91B37F8D-4813-4854-84FE-DD7DC4 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\91B7E196-772D-4495-84C9-197CE9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9291F4C9-F6DB-400A-ACF7-56960E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\92B61BB0-33AA-4496-B240-218A50 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\92DA41EF-7422-4942-B811-069C60 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9426E123-B93F-4CBC-9536-72E3B3 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\953BD255-71C0-4D4C-8C92-C6F2C6 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\967876A0-6373-4238-9EB0-5FB829 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\970EDEC9-B5A3-4B01-BAB0-0AEEA5 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\972FEA2E-86BD-4608-9F98-53F371 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\97C5102C-8567-43D8-BF0A-EDA32A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\97FD0B71-EDEE-4144-A253-A40528 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\98A23B53-5AC6-4DA2-A3FC-930835 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\98F9AB6C-FF02-4229-B513-FD0D29 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9B5C0F0C-D0F5-4AF5-BF7E-3DB74F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9C0A42F8-34B6-4173-8295-E84589 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9C4C49B5-F342-4FF2-A934-85BF28 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9C8BA23A-57B7-4044-89BA-BC1FA7 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9D4DC5BB-440D-43AF-AE1E-A33BDE Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9D5C998D-996B-410B-9A64-193096 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9DC71E9D-0616-4C6E-BBE6-509340 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\9FAF7CC2-29F9-41C5-97CC-A7F028 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A0861C14-21F3-4270-A618-C04114 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A0D2F554-93A1-4F3B-AB08-89AE8C Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A0DB9CBC-FFC3-4DBB-9FE5-9B6E27 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A1A81965-4F75-4A8C-BD75-80D44E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A2FE4613-0EE5-488F-849B-626886 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A44E74CE-9543-40D8-A29F-48EF54 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A45CA501-DE4C-4F62-AC66-9DC8A6 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A4BCB38B-C2C8-441B-BA61-88FBE1 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A50B3D0C-6A18-4314-8759-1270E4 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A63450C2-504C-4E09-A689-6D7FA8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A76C31F0-1068-4219-AC70-4DE66F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A7DDB605-C0F7-4306-A964-BD0F66 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\A8FE9D4E-AB6D-416F-8F1F-4725CE Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\AA23F0E1-1130-40B7-BB9B-AEBE16 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\AAED7CD6-3BC3-4B9C-883D-8C81A6 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\AD08A2A3-970B-44EC-8DDE-B7FA9F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\AE10086F-EDC9-42F3-8BC0-5E21C0 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\AE9A9AA0-83A3-42C0-BB30-394154 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\AEDA2A15-F678-4F37-85F6-91AF16 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\AEE185F1-3835-4620-B9DF-A83159 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\AF7FEABC-EE19-42AB-AD6A-02E380 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\AF82378E-093F-4510-92AB-3A1E8D Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\AF851E34-C616-4001-BD12-3436CD Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B0B867FE-31AF-4B0F-A369-8D584F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B171A632-CB2B-46C4-929C-B137F9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B214BFDD-A454-4985-BD30-0FFD05 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B38405D8-6F9A-4B12-A07E-B9B174 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B45BBF26-3F51-4F1A-92FA-9E4E19 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B55800AE-6072-4713-A83D-3035B1 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B77D27DC-CDBF-4006-9B04-B9E279 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B7B09DEF-6BDA-46A6-8DEF-789649 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B8593310-2011-4326-8891-516CDC Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B8BFE176-85EF-496F-B3F7-C65486 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B95CE45A-59C4-47FA-8358-A4E061 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\B9D5D37A-0319-42AA-BFC3-6116E0 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\BA4DF0E0-1872-43F3-B4D1-C300E8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\BD9ECC4A-9F19-4387-BF9F-D022BB Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\BDE6AAA8-E774-49BF-AB1F-42BBD6 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\BF062243-C272-4634-AD3C-96B36C Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\BF5C26DF-51C1-4733-A276-893F7A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C0087084-5404-4100-9208-DB1BA1 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C076EC56-4046-4CC0-A905-7DB12C Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C1A03AFC-10B3-47A3-AE45-9840EA Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C1DB02C2-CCF0-4662-BE25-B89BA9 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C211F5B4-D1DA-49BD-B2F2-4E76A3 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C3306873-DE2B-4302-AF42-0FD9F4 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C3D8D047-0E78-4711-AD1E-E2F294 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C3EFEBBE-4F54-4330-8F0A-34699D Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C4F2BF0E-4FD7-4433-8D57-889246 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C5016E1A-5E24-4A6B-AE9B-D70A0A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C54558DB-C855-40DB-903C-5F2680 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C5C002FD-40BA-4C5B-9972-8F9F83 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C61CA2DE-53DD-47CA-B91C-72BC31 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C68BC4A7-C84B-4CD4-BBA1-A54402 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C6CFFEDE-DB3A-4BA0-BB78-AA22A2 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C87BE2E5-A9FB-4D64-9398-0932F6 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C8FDE351-3701-4C68-939A-1F09B0 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\C9FEF4E9-4294-4058-8E4D-EE3711 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\CA14713C-EDF3-4282-8243-F8966F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\CAE01D26-31E4-4F3B-B1C1-1E3ED5 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\CAF17429-415E-4C32-9780-BA5AA0 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\CB551DE2-59CF-4CD6-AEF7-04AA10 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\CBE519AB-F40C-49F0-AE54-778789 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\CDB7DDB2-0CC4-491B-AD0E-B89B4A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\CE6EDE72-1502-492F-9CFC-0631FC Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D0BA696E-16D4-45E5-85D0-96BE45 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D357956C-3DE4-4CDB-A107-2C9413 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D3D3B65F-B54F-4910-B9DA-91A963 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D4923D23-DA9D-43DC-B47E-DA5612 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D4D16F95-7A07-47AE-9EA2-1A9033 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D51ABBD4-D170-41C8-A359-F763C8 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D526549A-405C-4915-8E82-30AA5E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D5C5A34B-D6C6-4082-99CE-E51986 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D65D4D97-CFD4-4844-B0C5-267079 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D7B18B4D-EC6D-4DDB-AC6A-341248 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D808B74D-8FDF-4D9C-B23C-7ABBCF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D8E2BF39-626E-4DE4-9FC7-6B14B5 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D92A4E3E-25C3-4E5D-B6B3-3FB64C Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\D936CA58-0681-4ED2-85B6-B46EF2 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\DA95E80B-DF3A-44A5-8602-438A6E Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\DCD7E89D-0D46-4E07-A88B-EA9A04 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\DD154F6E-5DF8-4CC1-AC40-DFF4AA Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\DDAA35C9-8032-4A90-8E1F-B1FA78 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\DDFC66FE-A757-47CB-B924-9D1B35 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\DF08F88E-95B2-4298-81C3-52CDAF Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\DF2C8E97-6FB6-469B-B05E-598D48 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E02F2515-4A3D-4651-916A-3EE4CD Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E0A91CB9-38F6-4DF0-A149-A872FD Object is locked skipped

Zanza
2007-06-15, 22:58
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E110131B-227D-486F-AE39-2DE125 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E3417517-15C7-494A-8308-F70CE6 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E3A52D2E-9776-4235-954B-29CF3B Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E41AE4D1-C269-45C9-892A-7D5205 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E6E65781-76C6-4128-B5B4-DE92A3 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E714F70A-C6A6-43BF-8DF9-61AD30 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E769F2EC-A4FC-4E4D-90C0-D85809 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E789C46E-79F2-43D4-BBCD-25A168 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E814F519-3525-403C-AF86-79942F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E8973FA4-DFAB-4637-9CFA-EAC19B Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\E8F0EE7C-D25E-4463-A202-8BD4A7 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\EA2DC2DB-1482-411F-9CFB-524E77 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\EA4382B0-01CD-499F-83AE-8C766D Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\EB4CF3F7-44B8-4654-AEC1-602803 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\EB6B1114-5B83-4192-94F5-53EE82 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\EBAD9A88-1CDD-40FB-84B1-991C05 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\EC0205FA-7116-4DDC-82FA-416DBD Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\ECAB37CB-E809-43AD-9E27-140093 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\ED048C7D-E970-44D7-915C-951A62 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\ED8F74CE-688F-43CD-A5CC-450D60 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\F23338A1-BFB5-46A8-BF77-710222 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\F3799A08-BAA7-496C-A2DE-D44699 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\F4667BA7-C16D-4B8A-8127-83AED0 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\F5588423-B543-421C-AB35-1C4089 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\F6CDC2D9-74B1-4C8B-BC1E-AC071F Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\F7757A5B-A169-447D-878E-47B9CB Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\F85D1EF0-6AB5-4784-9AFD-2524BA Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\F85E262B-47C0-4FEC-A226-BF37C1 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\FA5B1255-50CA-4BD3-B53E-9CA91A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\FB2ABC60-4753-4C9F-BFBE-242F4C Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\FD40C29A-7F17-4B76-BDC1-689842 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\FE373F27-F79A-4948-B2AC-E13225 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\FEBB8F6C-64AC-41FC-BC31-DE0F40 Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\502409DE-4833-496B-A6BA-565BBF\FF340F53-BA78-4F81-943A-F3C60A Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\CED071D1-A06F-4A3A-AE6C-7B9201\B4FD5318-468F-4167-8B17-7E6ADE Object is locked skipped
C:\Program Files\Microsoft AntiSpyware\Quarantine\EED496A7-5794-4CC6-9061-4AAA43\6EA968DC-99ED-4927-AC09-04E72E Object is locked skipped
C:\Program Files\mIRC\mirc.exe Infected: not-a-virus:Client-IRC.Win32.mIRC.616 skipped
C:\Program Files\Netscape\Netscape\DaffyScreensaver.exe Object is locked skipped
C:\Program Files\Netscape\Netscape\LT_TweetySnSvr.exe Object is locked skipped
C:\Program Files\Netscape\Netscape\nsradioplus.exe Object is locked skipped
C:\Program Files\Netscape\Netscape\TazScreensaver.exe Object is locked skipped
C:\System Volume Information\catalog.wci\00000002.ps1 Object is locked skipped
C:\System Volume Information\catalog.wci\00000002.ps2 Object is locked skipped
C:\System Volume Information\catalog.wci\00010003.ci Object is locked skipped
C:\System Volume Information\catalog.wci\cicat.fid Object is locked skipped
C:\System Volume Information\catalog.wci\cicat.hsh Object is locked skipped
C:\System Volume Information\catalog.wci\CiCL0001.000 Object is locked skipped
C:\System Volume Information\catalog.wci\CiP10000.000 Object is locked skipped
C:\System Volume Information\catalog.wci\CiP20000.000 Object is locked skipped
C:\System Volume Information\catalog.wci\CiPT0000.000 Object is locked skipped
C:\System Volume Information\catalog.wci\CiSL0001.000 Object is locked skipped
C:\System Volume Information\catalog.wci\CiSP0000.000 Object is locked skipped
C:\System Volume Information\catalog.wci\CiST0000.000 Object is locked skipped
C:\System Volume Information\catalog.wci\CiVP0000.000 Object is locked skipped
C:\System Volume Information\catalog.wci\INDEX.000 Object is locked skipped
C:\System Volume Information\catalog.wci\propstor.bk1 Object is locked skipped
C:\System Volume Information\catalog.wci\propstor.bk2 Object is locked skipped

Zanza
2007-06-15, 22:59
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498059.dll Infected: Trojan-Spy.Win32.VBStat.h skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498060.exe Infected: Trojan.Win32.Agent.anr skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498061.exe Infected: Trojan.Win32.Agent.anr skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498062.dll Infected: Trojan.Win32.BHO.bd skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498063.exe Infected: Trojan.Win32.Agent.anr skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498064.exe Infected: Trojan.Win32.Agent.anr skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498065.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.kb skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498066.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ar skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498067.dll Infected: Trojan.Win32.BHO.bd skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498106.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498109.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498110.exe Infected: Trojan.Win32.Agent.anr skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498111.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498112.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.kb skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498113.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498114.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.kg skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498115.dll Infected: Trojan.Win32.BHO.bd skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498116.dll Infected: Trojan.Win32.BHO.bd skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498117.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498118.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498119.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498120.dll Infected: not-a-virus:AdWare.Win32.BHO.v skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498121.dll Infected: Trojan.Win32.BHO.bd skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498122.dll Infected: Trojan.Win32.BHO.bd skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498123.dll Suspicious: Packed.Win32.Morphine.a skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498129.exe/data0002 Infected: not-a-virus:AdWare.Win32.IEDriver.a skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498129.exe/data0003 Infected: Trojan-Downloader.Win32.Agent.adz skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498129.exe NSIS: infected - 2 skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498133.exe Infected: not-a-virus:Downloader.Win32.WinFixer.o skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498137.exe Infected: Backdoor.Win32.Hupigon.gs skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498140.exe/file01 Infected: not-a-virus:Downloader.Win32.WinFixer.o skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498140.exe/file02/file01 Infected: Trojan-Downloader.Win32.Agent.alr skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498140.exe/file02 Infected: Trojan-Downloader.Win32.Agent.alr skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498140.exe/file18 Infected: not-a-virus:FraudTool.Win32.WinAntiVirus.2006 skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498140.exe/file83 Infected: not-a-virus:Downloader.Win32.WinFixer.x skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498140.exe Inno: infected - 5 skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498142.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498143.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498144.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498145.exe Infected: Backdoor.Win32.VB.kb skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498146.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498147.dll Infected: not-a-virus:AdWare.Win32.PrimeSoft skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498148.exe/data0001.cab/VVSN.exe Infected: not-a-virus:AdWare.Win32.SaveNow.z skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498148.exe/data0001.cab Infected: not-a-virus:AdWare.Win32.SaveNow.z skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498148.exe Embedded CAB: infected - 2 skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498149.exe/data0002 Infected: not-a-virus:AdWare.Win32.BargainBuddy.d skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498149.exe/data0003 Infected: not-a-virus:AdWare.Win32.BargainBuddy.a skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498149.exe NSIS: infected - 2 skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498150.dll Infected: Trojan.Win32.BHO.o skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498151.exe Infected: not-a-virus:AdWare.Win32.PrimeSoft skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498152.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498153.dll Infected: Trojan.Win32.BHO.o skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498154.dll Infected: not-a-virus:AdWare.Win32.Virtumonde.ki skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498155.exe Infected: Trojan-Downloader.Win32.VB.axs skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\A0498157.exe Infected: Trojan-Downloader.Win32.VB.fn skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\change.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\Downloaded Program Files\popcaploader.dll Infected: not-a-virus:Downloader.Win32.PopCap.a skipped
C:\WINDOWS\Fonts\Balth___.ttf Object is locked skipped
C:\WINDOWS\Fonts\Dayton__.ttf Object is locked skipped
C:\WINDOWS\Fonts\Geotype.ttf Object is locked skipped
C:\WINDOWS\Fonts\Greek_I.ttf Object is locked skipped
C:\WINDOWS\Fonts\RussRite.ttf Object is locked skipped
C:\WINDOWS\Fonts\Whimsy.ttf Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\SYSTEM32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\SYSTEM32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\Antivirus.Evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\AppEvent.Evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\Internet.evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SAM Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SAM.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SecEvent.Evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SECURITY Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SECURITY.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SysEvent.Evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\Windows_OneCare_Evt.evt Object is locked skipped
C:\WINDOWS\SYSTEM32\H323LOG.TXT Object is locked skipped
C:\WINDOWS\SYSTEM32\vviwpebx.dll Infected: Trojan.Win32.BHO.o skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\SYSTEM32\X3Dview.dll Object is locked skipped
C:\WINDOWS\Temp\Perflib_Perfdata_5dc.dat Object is locked skipped
C:\WINDOWS\Temp\_avast4_\Webshlock.txt Object is locked skipped
C:\WINDOWS\WIADEBUG.LOG Object is locked skipped
C:\WINDOWS\WIASERVC.LOG Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped
F:\System Volume Information\MountPointManagerRemoteDatabase Object is locked skipped
F:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1843\change.log Object is locked skipped

Scan process completed.

Shaba
2007-06-16, 10:49
Hi

Empty this folder:

C:\Documents and Settings\Nikki\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\

Delete this:

C:\WINDOWS\SYSTEM32\vviwpebx.dll

Empty Recycle Bin

Otherwise looking good :)

Still problems?

Zanza
2007-06-16, 18:01
I ran Spybot again and no more Smitfraud! No more pop ups! Thank you for all your help. If I was there, I'd give you a hug lol. You saved me alot of headaches. Do you have any advice to help me prevent this from happening again?

Shaba
2007-06-16, 18:04
Hi

That's great to hear :)

And sure I have, see below

Now that you are clean, please follow these simple steps in order to keep your computer clean and secure:

Looking over your log, it seems you don't have any evidence of a third party firewall.

As the term conveys, a firewall is an extra layer of security installed onto computers, which restricts access to systems from the outside world. Firewalls protect against hackers and malicious intruders. I want you to download a free firewall NOW from one of these excellent vendors:

1) ZoneAlarm (http://www.zonelabs.com/store/content/catalog/products/sku_list_za.jsp?dc=12bms&ctry=US&lang=en&lid=nav_za)
2) Agnitum (http://www.agnitum.com/products/outpostfree/download.php)
3) Sunbelt/Kerio (http://www.sunbelt-software.com/Kerio-Download.cfm)
4) Comodo (http://www.personalfirewall.comodo.com/)

If you are using the built-in Windows XP firewall, it is not recommended as it does not block outgoing connections. This means that any malware on your computer is free to "phone home" for more instructions. Simply put, Windows XP contains a mediocre firewall. This firewall is NO replacement for a dedicated software solution. Remember to use only one firewall at the same time.

Disable and Enable System Restore. - If you are using Windows XP then you should disable and re-enable system restore to make sure there are no infected files found in a restore point.

You can find instructions on how to enable and reenable system restore here:

Windows XP System Restore Guide (http://www.bleepingcomputer.com/forums/tutorial56.html)

Reenable system restore with instructions from tutorial above

Make your Internet Explorer more secure - This can be done by following these simple instructions:
From within Internet Explorer click on the Tools menu and then click on Options.
Click once on the Security tab
Click once on the Internet icon so it becomes highlighted.
Click once on the Custom Level button.
Change the Download signed ActiveX controls to Prompt

Change the Download unsigned ActiveX controls to Disable

Change the Initialize and script ActiveX controls not marked as safe to Disable

Change the Installation of desktop items to Prompt

Change the Launching programs and files in an IFRAME to Prompt

Change the Navigate sub-frames across different domains to Prompt

When all these settings have been made, click on the OK button.

If it prompts you as to whether or not you want to save the settings, press the Yes button.
Next press the Apply button and then the OK to exit the Internet Properties page.
Use an AntiVirus Software - It is very important that your computer has an anti-virus software running on your machine. This alone can save you a lot of trouble with malware in the future.

See this link for a listing of some online & their stand-alone antivirus programs:

Virus, Spyware, and Malware Protection and Removal Resources (http://www.bleepingcomputer.com/forums/topic405.html)


Update your AntiVirus Software - It is imperitive that you update your Antivirus software at least once a week (Even more if you wish). If you do not update your antivirus software then it will not be able to catch any of the new variants that may come out.


Use a Firewall - I can not stress how important it is that you use a Firewall on your computer. Without a firewall your computer is succeptible to being hacked and taken over. I am very serious about this and see it happen almost every day with my clients. Simply using a Firewall in its default configuration can lower your risk greatly.

For a tutorial on Firewalls and a listing of some available ones see the link below:

Understanding and Using Firewalls (http://www.bleepingcomputer.com/tutorials/tutorial60.html)


Visit Microsoft's Windows Update Site Frequently - It is important that you visit http://www.windowsupdate.com (http://www.windowsupdate.com) regularly. This will ensure your computer has always the latest security updates available installed on your computer. If there are new updates to install, install them immediately, reboot your computer, and revisit the site until there are no more critical updates.


Install Ad-Aware - Install and download Ad-Aware. ou should also scan your computer with program on a regular basis just as you would an antivirus software in conjunction with Spybot.

A tutorial on installing & using this product can be found here:

Using Ad-aware to remove Spyware, Malware, & Hijackers from Your Computer (http://www.bleepingcomputer.com/forums/?showtutorial=48)


Install Spybot - Search and Destroy - Install and download Spybot - Search and Destroy with its TeaTimer option.

This will provide real-time spyware & hijacker protection on your computer alongside your virus protection. You should also scan your computer with program on a regular basis just as you would an anti virus software. A tutorial on installing & using this product can be found here:

Instructions for - Spybot S & D and Ad-aware (http://www.bleepingcomputer.com/forums/?showtutorial=43)


Install SpywareBlaster - SpywareBlaster will added a large list of programs and sites into your Internet Explorer settings that will protect you from running and downloading known malicious programs.

A tutorial on installing & using this product can be found here:

Using SpywareBlaster to protect your computer from Spyware and Malware (http://www.bleepingcomputer.com/tutorials/tutorial49.html)


Update all these programs regularly - Make sure you update all the programs I have listed regularly. Without regular updates you WILL NOT be protected when new malicious programs are released.
Follow this list and your potential for being infected again will reduce dramatically.

Here are some additional utilities that will enhance your safety

IE/Spyad (http://www.spywarewarrior.com/uiuc/resource.htm) <= IE/Spyad places over 4000 websites and domains in the IE Restricted list which will severely impair attempts to infect your system. It basically prevents any downloads (Cookies etc) from the sites listed, although you will still be able to connect to the sites.
MVPS Hosts file (http://mvps.org/winhelp2002/hosts.htm) <= The MVPS Hosts file replaces your current HOSTS file with one containing well know ad sites etc. Basically, this prevents your coputer from connecting to those sites by redirecting them to 127.0.0.1 which is your local computer
Google Toolbar (http://toolbar.google.com/) <= Get the free google toolbar to help stop pop up windows.
Comodo BOCLEAN (http://www.comodo.com/boclean/boclean.html) <= Stop identity thieves from getting personal information. Instantly detects well over 1,000,000 unique, variant and repack malware in total. And it's free.
Winpatrol (http://www.winpatrol.com/) <= Download and install the free version of Winpatrol. a tutorial for this product is located here:
Using Winpatrol to protect your computer from malicious software (http://www.winpatrol.com/features.html)

Stand Up and Be Counted ---> Malware Complaints (http://www.malwarecomplaints.info/index.php) <--- where you can make difference!

The site offers people who have been (or are) victims of malware the opportunity to document their story and, in that way, launch a complaint against the malware and the makers of the malware.

Also, please read this great article by Tony Klein So How Did I Get Infected In First Place (http://castlecops.com/postlite7736-.html)

Happy surfing and stay clean!

Zanza
2007-06-16, 21:46
Thank you very much. I'll get to work on this right away. I really appreciate your time and prompt response. Thank you again.

Shaba
2007-06-18, 10:55
Since this issue appears resolved ... this Topic is closed.

If you need this topic reopened, please request this by sending the moderating team
a PM with the address of the thread. This applies only to the original topic starter.

Everyone else please begin a New Topic.