Can someone help me with this one........
Thanks in advance.......
SmitFraudFix v2.253
Scan done at 20:43:32.16, Sun 11/18/2007
Run from C:\Program Files\Mozilla Firefox\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
The filesystem type is NTFS
Fix run in normal mode
»»»»»»»»»»»»»»»»»»»»»»»» Process
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\Program Files\Common Files\Protexis\License Service\PSIService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\UPHClean\uphclean.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\CaptureWiz\Pro\CaptureWiz.exe
C:\Program Files\Imation\ImationFlashDetect.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
c:\progra~1\common~1\instal~1\update~1\isuspm.exe
C:\Program Files\Common Files\InstallShield\UpdateService\agent.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\WINDOWS\system32\lxbtcoms.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\cmd.exe
»»»»»»»»»»»»»»»»»»»»»»»» hosts
»»»»»»»»»»»»»»»»»»»»»»»» C:\
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32\LogFiles
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Scott
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Scott\Application Data
»»»»»»»»»»»»»»»»»»»»»»»» Start Menu
»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\Scott\FAVORI~1
»»»»»»»»»»»»»»»»»»»»»»»» Desktop
»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files
»»»»»»»»»»»»»»»»»»»»»»»» Corrupted keys
»»»»»»»»»»»»»»»»»»»»»»»» Desktop Components
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"
»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, following keys are not inevitably infected!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, following keys are not inevitably infected!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, following keys are not inevitably infected!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""
»»»»»»»»»»»»»»»»»»»»»»»» Rustock
»»»»»»»»»»»»»»»»»»»»»»»» DNS
Your computer may be victim of a DNS Hijack: 85.255.x.x detected !
Description: Linksys NC100 Fast Ethernet Adapter #2 - Packet Scheduler Miniport
DNS Server Search Order: 85.255.116.98
DNS Server Search Order: 85.255.112.123
Your computer may be victim of a DNS Hijack: 85.255.x.x detected !
Description: SiS 900-Based PCI Fast Ethernet Adapter - Packet Scheduler Miniport
DNS Server Search Order: 85.255.116.98
DNS Server Search Order: 85.255.112.123
Your computer may be victim of a DNS Hijack: 85.255.x.x detected !
Description: SiS 900-Based PCI Fast Ethernet Adapter - Packet Scheduler Miniport
DNS Server Search Order: 85.255.116.98
DNS Server Search Order: 85.255.112.123
Your computer may be victim of a DNS Hijack: 85.255.x.x detected !
Description: Linksys NC100 Fast Ethernet Adapter #2 - Packet Scheduler Miniport
DNS Server Search Order: 85.255.116.98
DNS Server Search Order: 85.255.112.123
HKLM\SYSTEM\CCS\Services\Tcpip\..\{00C17A36-FD19-433E-827D-64AA926920B9}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CCS\Services\Tcpip\..\{00C17A36-FD19-433E-827D-64AA926920B9}: NameServer=208.67.220.220,208.67.222.222
HKLM\SYSTEM\CCS\Services\Tcpip\..\{1B15B6AF-9549-4AA7-AC53-CEFD270672C4}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CCS\Services\Tcpip\..\{1B15B6AF-9549-4AA7-AC53-CEFD270672C4}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CCS\Services\Tcpip\..\{44B9712A-31EB-44AC-BE5A-243B1EFA2222}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CCS\Services\Tcpip\..\{499F27DC-9EC3-4970-B992-44917778F7D9}: DhcpNameServer=68.87.72.130 68.87.77.130
HKLM\SYSTEM\CCS\Services\Tcpip\..\{499F27DC-9EC3-4970-B992-44917778F7D9}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CCS\Services\Tcpip\..\{6E032854-530A-4E5D-A19B-9732B334C0E0}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CCS\Services\Tcpip\..\{6E032854-530A-4E5D-A19B-9732B334C0E0}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CCS\Services\Tcpip\..\{B14CEFBA-FDA7-4C5F-8045-980E2BD6DE01}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CCS\Services\Tcpip\..\{B14CEFBA-FDA7-4C5F-8045-980E2BD6DE01}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS1\Services\Tcpip\..\{00C17A36-FD19-433E-827D-64AA926920B9}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS1\Services\Tcpip\..\{00C17A36-FD19-433E-827D-64AA926920B9}: NameServer=208.67.220.220,208.67.222.222
HKLM\SYSTEM\CS1\Services\Tcpip\..\{1B15B6AF-9549-4AA7-AC53-CEFD270672C4}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS1\Services\Tcpip\..\{1B15B6AF-9549-4AA7-AC53-CEFD270672C4}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS1\Services\Tcpip\..\{44B9712A-31EB-44AC-BE5A-243B1EFA2222}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS1\Services\Tcpip\..\{499F27DC-9EC3-4970-B992-44917778F7D9}: DhcpNameServer=68.87.72.130 68.87.77.130
HKLM\SYSTEM\CS1\Services\Tcpip\..\{499F27DC-9EC3-4970-B992-44917778F7D9}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS1\Services\Tcpip\..\{6E032854-530A-4E5D-A19B-9732B334C0E0}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS1\Services\Tcpip\..\{6E032854-530A-4E5D-A19B-9732B334C0E0}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS1\Services\Tcpip\..\{B14CEFBA-FDA7-4C5F-8045-980E2BD6DE01}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS1\Services\Tcpip\..\{B14CEFBA-FDA7-4C5F-8045-980E2BD6DE01}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS3\Services\Tcpip\..\{00C17A36-FD19-433E-827D-64AA926920B9}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS3\Services\Tcpip\..\{00C17A36-FD19-433E-827D-64AA926920B9}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS3\Services\Tcpip\..\{1B15B6AF-9549-4AA7-AC53-CEFD270672C4}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS3\Services\Tcpip\..\{1B15B6AF-9549-4AA7-AC53-CEFD270672C4}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS3\Services\Tcpip\..\{44B9712A-31EB-44AC-BE5A-243B1EFA2222}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS3\Services\Tcpip\..\{499F27DC-9EC3-4970-B992-44917778F7D9}: DhcpNameServer=68.87.72.130 68.87.77.130
HKLM\SYSTEM\CS3\Services\Tcpip\..\{499F27DC-9EC3-4970-B992-44917778F7D9}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS3\Services\Tcpip\..\{6E032854-530A-4E5D-A19B-9732B334C0E0}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS3\Services\Tcpip\..\{6E032854-530A-4E5D-A19B-9732B334C0E0}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS3\Services\Tcpip\..\{B14CEFBA-FDA7-4C5F-8045-980E2BD6DE01}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS3\Services\Tcpip\..\{B14CEFBA-FDA7-4C5F-8045-980E2BD6DE01}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=68.87.72.130 68.87.77.130
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: NameServer=208.67.220.220,208.67.222.222
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=68.87.72.130 68.87.77.130
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: NameServer=208.67.220.220,208.67.222.222
HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: DhcpNameServer=68.87.72.130 68.87.77.130
HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: NameServer=208.67.220.220,208.67.222.222
»»»»»»»»»»»»»»»»»»»»»»»» Scanning for wininet.dll infection
»»»»»»»»»»»»»»»»»»»»»»»» End
Thanks in advance.......
SmitFraudFix v2.253
Scan done at 20:43:32.16, Sun 11/18/2007
Run from C:\Program Files\Mozilla Firefox\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
The filesystem type is NTFS
Fix run in normal mode
»»»»»»»»»»»»»»»»»»»»»»»» Process
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\system32\PnkBstrA.exe
C:\WINDOWS\system32\PnkBstrB.exe
C:\Program Files\Common Files\Protexis\License Service\PSIService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\UPHClean\uphclean.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\CaptureWiz\Pro\CaptureWiz.exe
C:\Program Files\Imation\ImationFlashDetect.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
c:\progra~1\common~1\instal~1\update~1\isuspm.exe
C:\Program Files\Common Files\InstallShield\UpdateService\agent.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\WINDOWS\system32\lxbtcoms.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\cmd.exe
»»»»»»»»»»»»»»»»»»»»»»»» hosts
»»»»»»»»»»»»»»»»»»»»»»»» C:\
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32\LogFiles
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Scott
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Scott\Application Data
»»»»»»»»»»»»»»»»»»»»»»»» Start Menu
»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\Scott\FAVORI~1
»»»»»»»»»»»»»»»»»»»»»»»» Desktop
»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files
»»»»»»»»»»»»»»»»»»»»»»»» Corrupted keys
»»»»»»»»»»»»»»»»»»»»»»»» Desktop Components
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"
»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, following keys are not inevitably infected!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, following keys are not inevitably infected!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, following keys are not inevitably infected!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""
»»»»»»»»»»»»»»»»»»»»»»»» Rustock
»»»»»»»»»»»»»»»»»»»»»»»» DNS
Your computer may be victim of a DNS Hijack: 85.255.x.x detected !
Description: Linksys NC100 Fast Ethernet Adapter #2 - Packet Scheduler Miniport
DNS Server Search Order: 85.255.116.98
DNS Server Search Order: 85.255.112.123
Your computer may be victim of a DNS Hijack: 85.255.x.x detected !
Description: SiS 900-Based PCI Fast Ethernet Adapter - Packet Scheduler Miniport
DNS Server Search Order: 85.255.116.98
DNS Server Search Order: 85.255.112.123
Your computer may be victim of a DNS Hijack: 85.255.x.x detected !
Description: SiS 900-Based PCI Fast Ethernet Adapter - Packet Scheduler Miniport
DNS Server Search Order: 85.255.116.98
DNS Server Search Order: 85.255.112.123
Your computer may be victim of a DNS Hijack: 85.255.x.x detected !
Description: Linksys NC100 Fast Ethernet Adapter #2 - Packet Scheduler Miniport
DNS Server Search Order: 85.255.116.98
DNS Server Search Order: 85.255.112.123
HKLM\SYSTEM\CCS\Services\Tcpip\..\{00C17A36-FD19-433E-827D-64AA926920B9}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CCS\Services\Tcpip\..\{00C17A36-FD19-433E-827D-64AA926920B9}: NameServer=208.67.220.220,208.67.222.222
HKLM\SYSTEM\CCS\Services\Tcpip\..\{1B15B6AF-9549-4AA7-AC53-CEFD270672C4}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CCS\Services\Tcpip\..\{1B15B6AF-9549-4AA7-AC53-CEFD270672C4}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CCS\Services\Tcpip\..\{44B9712A-31EB-44AC-BE5A-243B1EFA2222}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CCS\Services\Tcpip\..\{499F27DC-9EC3-4970-B992-44917778F7D9}: DhcpNameServer=68.87.72.130 68.87.77.130
HKLM\SYSTEM\CCS\Services\Tcpip\..\{499F27DC-9EC3-4970-B992-44917778F7D9}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CCS\Services\Tcpip\..\{6E032854-530A-4E5D-A19B-9732B334C0E0}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CCS\Services\Tcpip\..\{6E032854-530A-4E5D-A19B-9732B334C0E0}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CCS\Services\Tcpip\..\{B14CEFBA-FDA7-4C5F-8045-980E2BD6DE01}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CCS\Services\Tcpip\..\{B14CEFBA-FDA7-4C5F-8045-980E2BD6DE01}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS1\Services\Tcpip\..\{00C17A36-FD19-433E-827D-64AA926920B9}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS1\Services\Tcpip\..\{00C17A36-FD19-433E-827D-64AA926920B9}: NameServer=208.67.220.220,208.67.222.222
HKLM\SYSTEM\CS1\Services\Tcpip\..\{1B15B6AF-9549-4AA7-AC53-CEFD270672C4}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS1\Services\Tcpip\..\{1B15B6AF-9549-4AA7-AC53-CEFD270672C4}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS1\Services\Tcpip\..\{44B9712A-31EB-44AC-BE5A-243B1EFA2222}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS1\Services\Tcpip\..\{499F27DC-9EC3-4970-B992-44917778F7D9}: DhcpNameServer=68.87.72.130 68.87.77.130
HKLM\SYSTEM\CS1\Services\Tcpip\..\{499F27DC-9EC3-4970-B992-44917778F7D9}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS1\Services\Tcpip\..\{6E032854-530A-4E5D-A19B-9732B334C0E0}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS1\Services\Tcpip\..\{6E032854-530A-4E5D-A19B-9732B334C0E0}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS1\Services\Tcpip\..\{B14CEFBA-FDA7-4C5F-8045-980E2BD6DE01}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS1\Services\Tcpip\..\{B14CEFBA-FDA7-4C5F-8045-980E2BD6DE01}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS3\Services\Tcpip\..\{00C17A36-FD19-433E-827D-64AA926920B9}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS3\Services\Tcpip\..\{00C17A36-FD19-433E-827D-64AA926920B9}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS3\Services\Tcpip\..\{1B15B6AF-9549-4AA7-AC53-CEFD270672C4}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS3\Services\Tcpip\..\{1B15B6AF-9549-4AA7-AC53-CEFD270672C4}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS3\Services\Tcpip\..\{44B9712A-31EB-44AC-BE5A-243B1EFA2222}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS3\Services\Tcpip\..\{499F27DC-9EC3-4970-B992-44917778F7D9}: DhcpNameServer=68.87.72.130 68.87.77.130
HKLM\SYSTEM\CS3\Services\Tcpip\..\{499F27DC-9EC3-4970-B992-44917778F7D9}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS3\Services\Tcpip\..\{6E032854-530A-4E5D-A19B-9732B334C0E0}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS3\Services\Tcpip\..\{6E032854-530A-4E5D-A19B-9732B334C0E0}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS3\Services\Tcpip\..\{B14CEFBA-FDA7-4C5F-8045-980E2BD6DE01}: DhcpNameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CS3\Services\Tcpip\..\{B14CEFBA-FDA7-4C5F-8045-980E2BD6DE01}: NameServer=85.255.116.98,85.255.112.123
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=68.87.72.130 68.87.77.130
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: NameServer=208.67.220.220,208.67.222.222
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=68.87.72.130 68.87.77.130
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: NameServer=208.67.220.220,208.67.222.222
HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: DhcpNameServer=68.87.72.130 68.87.77.130
HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: NameServer=208.67.220.220,208.67.222.222
»»»»»»»»»»»»»»»»»»»»»»»» Scanning for wininet.dll infection
»»»»»»»»»»»»»»»»»»»»»»»» End