Smitfraud troubles

Zanza

New member
I don't know alot about computers, but I tried to follow your instructions the best I could. I hope Idid this right.

Logfile of HijackThis v1.99.1
Scan saved at 1:05:17 PM, on 06/13/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\SM1BG.EXE
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Panasonic\LUMIXSimpleViewer\PhLeAutoRun.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Ventrilo\Ventrilo.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R3 - URLSearchHook: (no name) - _{965A592F-8EFA-4250-8630-7960230792F1} - (no file)
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SM1BG] C:\WINDOWS\SM1BG.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [j3211232] rundll32 C:\WINDOWS\system32\j3211232.dll sook
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [GPLv3] rundll32.exe "C:\WINDOWS\system32\bhtwwpbe.dll",realset
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - HKCU\..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: LUMIX Simple Viewer.lnk = ?
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\MSN Toolbar Suite\DS\02.05.0001.1119\en-us\bin\WindowsSearch.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll/search.htm
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Translate.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://mirs.peoplepc.com/?offername=PeoplePC Online Accelerated&userName=zanza9&firstName=Nikki&qs=OKOMLDFHGMAHEMEANCBKAAIBKKMPDMAKHGNFGOBALEJMBIEOBGFDKKMLHOLJHHIAKEBHHAMMBOGNLMNCACDNPMOFOFPDPDKJCKPIODKLIACDMKKNPBHNDHOMJCGBANOI|GOFLBCBDDGNMCNOPADEEAAGOBAFDFEL
O16 - DPF: Harvest Mania by pogo - http://game1.pogo.com/applet-6.7.3.23/harvest/harvest-en_US.cab
O16 - DPF: Jigsaw Detective by pogo - http://game1.pogo.com/applet-6.7.3.23/jigsaw/jigsaw-en_US.cab
O16 - DPF: Mah Jong Garden by pogo - http://game1.pogo.com/applet-6.7.2.33/mahjong/mahjong-en_US.cab
O16 - DPF: Penguin Blocks by pogo - http://game1.pogo.com/applet-6.5.1.31/penguins/penguins-en_US.cab
O16 - DPF: Pop Fu by pogo - http://game1.pogo.com/applet-6.5.1.31/popfu/popfu-en_US.cab
O16 - DPF: PoppaZoppa by pogo - http://game1.pogo.com/applet-6.7.2.33/poppazoppa/poppazoppa-en_US.cab
O16 - DPF: Ride The Tide by pogo - http://game1.pogo.com/applet-6.5.3.44/ride/ride-en_US.cab
O16 - DPF: Stax by pogo - http://game1.pogo.com/applet-6.5.3.44/stax/stax-en_US.cab
O16 - DPF: WMP10ctrl - http://www.cinemanow.com/WMP10ctrl.CAB
O16 - DPF: Wonderland Memories by pogo - http://game1.pogo.com/applet-6.7.3.23/memories/memories-en_US.cab
O16 - DPF: Yahoo! Spades - http://download.games.yahoo.com/games/clients/y/st2_x.cab
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab30149.cab
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - http://activation.rr.com/install/download/tgctlcm.cab
O16 - DPF: {11F8D6A0-01C6-4A23-A40F-1C3A560B99EA} (MavenInstallerAXControl Class) - http://client.maven.net/client/mavenInstaller.cab
O16 - DPF: {12F7F128-B36C-4843-8AA4-A5F71A969331} (Launcher Control) - https://horizons.istaria.com/controls/launcher.ocx
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {192F9A01-8030-48CE-9BC6-B03DE3E613C6} (PeoplePC Web Installer) - https://www.peoplepc.com/ppcos/ISP60/Download/ppcwebi.cab
O16 - DPF: {1D95A7C7-3282-4DB7-9A48-7C39CE152A19} (TeamOn Import Object) - https://myemail.t-mobile.com/html/web/client_tools/TOImport.cab
O16 - DPF: {2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} (MiniBugTransporterX Class) - http://download.weatherbug.com/minibug/tricklers/AWS/MiniBugTransporter.cab?
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {33E54F7F-561C-49E6-929B-D7E76D3AFEB1} (Pool Control) - http://www.worldwinner.com/games/v48/pool/pool.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52...pple.com/borris/us/win/QuickTimeInstaller.exe
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-9.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by107fd.bay107.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {55027008-315F-4F45-BBC3-8BE119764741} (Slide Image Uploader Control) - http://www.slide.com/uploader/SlideImageUploader.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/2413f9376263f0a55105/netzip/RdxIE601.cab
O16 - DPF: {640B39C1-D713-464F-92C3-75BD972B95EE} - http://www.sidestep.com/get/k42037/sb02b.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://go.divx.com/plugin/DivXBrowserPlugin.cab
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) - http://us.games2.yimg.com/download.games.yahoo.com/games/play/client/exentctl_0_0_0_1.ocx
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/mic...ls/en/x86/client/muweb_site.cab?1181656249625
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www.ca.com/us/securityadvisor/virusinfo/webscan.cab
O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) - http://www.worldwinner.com/games/shared/wwlaunch.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab30149.cab
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://admin.pressplay.com/duet/registration/isetup.cab
O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://autos.msn.com/Components/Ocx/SurVid/MSSurVid.cab
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O16 - DPF: {9903F4ED-B673-456A-A15F-ED90C7DE9EF5} (Sol Control) - http://www.worldwinner.com/games/v45/sol/sol.cab
O16 - DPF: {AF087E66-838E-4A97-8A0B-0DDDA5DEA239} (OTAutoInstall Class) - http://streaming.endeavors.com/microsoft/imaging/clientdownloads/OTAI.CAB
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10/ZIntro.cab32846.cab
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/suite/yautocomplete.cab
O16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) - http://autos.msn.com/Components/Ocx/Exterior/Outside.cab
O16 - DPF: {C4A8A4DA-BD3F-4DEB-9BBB-5B6BD3571EC7} (CDKeyCtl Class) - http://www.cdkey-promotions.com/download/CDKey.cab
O16 - DPF: {C93C1C34-CEA9-49B1-9046-040F59E0E0D8} (Paint Control) - http://www.worldwinner.com/games/v42/paint/paint.cab
O16 - DPF: {CE74A05D-ED12-473A-97F8-85FB0E2F479F} (dlControl.UserControl1) - http://www.cinemanow.com/dlControl.CAB
O16 - DPF: {D06A22B4-6087-4D3D-B7AF-82B113E9ABD4} (CPostLaunch Object) - http://www2.verizon.net/update/msnwebinstall/includes/vzWebIns.CAB
O16 - DPF: {D6016EE7-A8FF-11D1-B37E-A4759ECD7909} (AxPulse Class) - http://www.pulse3d.com/players/english/PulsePlayerAxWin.cab
O16 - DPF: {DC75FEF6-165D-4D25-A518-C8C4BDA7BAA6} (CPlayFirstDinerDashControl Object) - http://games.pogo.com/online2/pogo/diner_dash/DinerDash.1.0.0.80.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://games.pogo.com/online2/pogo/insaniquarium/popcaploader_v6.cab
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O16 - DPF: {EE2589EB-7FC8-44DB-A892-573F2C4B41E0} - http://pdf.forbes.com/forbesnews/triggernews/ForbesDownloaderSigned.cab
O16 - DPF: {EF148DBB-5B6D-4130-B2A1-661571E86260} (Playtime Games Launcher) - http://games.pogo.com/online2/pogo/mahjong_escape_ancient/PTGameLauncher.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/vso/en-us/tools/mcfscan/1,5,0,4267/mcfscan.cab
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} (Yahoo! Toolbar) - http://us.dl1.yimg.com/download.yahoo.com/dl/toolbar/yiebio5_1_3_0.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/bin/msnchat45.cab
O16 - DPF: {F7A05BAC-9778-410A-9CDE-BFBD4D5D2B7F} (iPIX Media Send Class) - http://216.249.24.149/code/iPIX-ImageWell-ipix.cab
O16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/_media/dalaillama/ampx.cab
O16 - DPF: {FF0C042C-98E9-4C36-B2EC-E21FDFDCEF75} - http://download.redswoosh.net/Installer/104/rsinstaller.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: secuload.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Unknown owner - C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
 
Hi Zanza

Rename HijackThis.exe to scanner.exe

Also do this:

Please make sure that you can view all hidden files. Instructions on how to do this can be found here:

How to see hidden files in Windows

Please click this link-->Jotti

When the jotti page has finished loading, click the Browse button and navigate to the following file and click Submit.

c:\windows\system32\mspmspo.dll

Please post back the results of the scan in your next post.

If Jotti is busy, try the same at Virustotal: http://www.virustotal.com/flash/index_en.html

Post:

- virustotal/jotti results
- a fresh hijackthis log.
 
Thank you, thank you

STATUS: FINISHEDComplete scanning result of "MsPMSpo.dll", received in VirusTotal at 06.14.2007, 14:43:53 (CET).

Antivirus Version Update Result
AhnLab-V3 2007.5.9.0 05.09.2007 no virus found
AntiVir 7.4.0.32 06.14.2007 BDS/AFCore.F.2
Authentium 4.93.8 06.14.2007 W32/Trojan.YEF
Avast 4.7.997.0 06.13.2007 no virus found
AVG 7.5.0.467 05.08.2007 no virus found
BitDefender 7.2 06.14.2007 Backdoor.AFCore.F
CAT-QuickHeal 9.00 06.14.2007 no virus found
ClamAV devel-20070416 05.09.2007 no virus found
DrWeb 4.33 06.14.2007 no virus found
eSafe 7.0.15.0 05.08.2007 no virus found
eTrust-Vet 30.7.3718 06.14.2007 no virus found
FileAdvisor 1 06.14.2007 Not analyzed yet
Fortinet 2.85.0.0 06.14.2007 no virus found
F-Prot 4.3.2.48 05.08.2007 W32/Trojan.YEF
F-Secure 6.70.13030.0 05.09.2007 no virus found
Ikarus T3.1.1.7 05.09.2007 Generic.AFCore
Kaspersky 4.0.2.24 06.14.2007 no virus found
McAfee 5052 06.13.2007 no virus found
Microsoft 1.2503 06.14.2007 no virus found
NOD32v2 2329 06.14.2007 no virus found
Norman 5.80.02 06.14.2007 no virus found
Panda 9.0.0.4 06.14.2007 Application/MediaPipe
Prevx1 V2 06.14.2007 Backdoor.Afcore.F
Sophos 4.18.0 06.12.2007 no virus found
Sunbelt 2.2.907.0 05.05.2007 Trojan.AFCore.A8314C6C
Symantec 10 05.09.2007 no virus found
TheHacker 6.1.6.133 06.14.2007 no virus found
VBA32 3.12.0.1 06.13.2007 no virus found
VirusBuster 4.3.23:9 06.13.2007 no virus found
Webwasher-Gateway 6.0.1 05.09.2007 Trojan.AFCore.F.2
 
Here is the HiJackThis part

Logfile of HijackThis v1.99.1
Scan saved at 9:04:14 AM, on 06/14/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\SM1BG.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Panasonic\LUMIXSimpleViewer\PhLeAutoRun.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\hijackthis\scanner.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R3 - URLSearchHook: (no name) - _{965A592F-8EFA-4250-8630-7960230792F1} - (no file)
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: SpywareBlock Class - {0A87E45F-537A-40B4-B812-E2544C21A09F} - C:\Program Files\SpyCatcher\SCActiveBlock.dll (file missing)
O2 - BHO: XNetIEObj Class - {1808648B-3102-4293-8AD3-06AF71D3321B} - C:\Program Files\Endeavors\AppExpress\bho_2_5_5_17070\bho.dll (file missing)
O2 - BHO: (no name) - {20CD9BDC-5E7F-4AA1-9136-75A727F330D6} - C:\WINDOWS\system32\wljlqrud.dll
O2 - BHO: (no name) - {2432F099-F8E2-43C9-B765-3AF002FFC6A7} - C:\WINDOWS\system32\ddccdbx.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {5ADF3862-9E2E-4ad3-86F7-4510E6550CD0} - C:\WINDOWS\system32\ikodeifh.dll
O2 - BHO: UberButton Class - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: YahooTaggedBM Class - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - C:\Program Files\Yahoo!\Common\YIeTagBm.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: MSN Search Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O2 - BHO: (no name) - {C35C3D5C-83E3-4633-BCF8-9D088181FEF6} - C:\WINDOWS\system32\wljlqrud.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll
O2 - BHO: (no name) - {D59E6CE1-7D1F-4D57-BF53-1BC8C6D0B91F} - C:\WINDOWS\system32\pmnnk.dll
O2 - BHO: (no name) - {D71FB4B1-729A-40F1-8F54-DC95599F0351} - (no file)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SM1BG] C:\WINDOWS\SM1BG.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [j3211232] rundll32 C:\WINDOWS\system32\j3211232.dll sook
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [GPLv3] rundll32.exe "C:\WINDOWS\system32\muuyiuhb.dll",realset
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - HKCU\..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: LUMIX Simple Viewer.lnk = ?
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\MSN Toolbar Suite\DS\02.05.0001.1119\en-us\bin\WindowsSearch.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll/search.htm
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Translate.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://mirs.peoplepc.com/?offername=PeoplePC Online Accelerated&userName=zanza9&firstName=Nikki&qs=OKOMLDFHGMAHEMEANCBKAAIBKKMPDMAKHGNFGOBALEJMBIEOBGFDKKMLHOLJHHIAKEBHHAMMBOGNLMNCACDNPMOFOFPDPDKJCKPIODKLIACDMKKNPBHNDHOMJCGBANOI|GOFLBCBDDGNMCNOPADEEAAGOBAFDFEL
O16 - DPF: Harvest Mania by pogo - http://game1.pogo.com/applet-6.7.3.23/harvest/harvest-en_US.cab
O16 - DPF: Jigsaw Detective by pogo - http://game1.pogo.com/applet-6.7.3.23/jigsaw/jigsaw-en_US.cab
O16 - DPF: Mah Jong Garden by pogo - http://game1.pogo.com/applet-6.7.2.33/mahjong/mahjong-en_US.cab
O16 - DPF: Penguin Blocks by pogo - http://game1.pogo.com/applet-6.5.1.31/penguins/penguins-en_US.cab
O16 - DPF: Pop Fu by pogo - http://game1.pogo.com/applet-6.5.1.31/popfu/popfu-en_US.cab
O16 - DPF: PoppaZoppa by pogo - http://game1.pogo.com/applet-6.7.2.33/poppazoppa/poppazoppa-en_US.cab
O16 - DPF: Ride The Tide by pogo - http://game1.pogo.com/applet-6.5.3.44/ride/ride-en_US.cab
O16 - DPF: Stax by pogo - http://game1.pogo.com/applet-6.5.3.44/stax/stax-en_US.cab
O16 - DPF: WMP10ctrl - http://www.cinemanow.com/WMP10ctrl.CAB
O16 - DPF: Wonderland Memories by pogo - http://game1.pogo.com/applet-6.7.3.23/memories/memories-en_US.cab
O16 - DPF: Yahoo! Spades - http://download.games.yahoo.com/games/clients/y/st2_x.cab
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab30149.cab
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - http://activation.rr.com/install/download/tgctlcm.cab
O16 - DPF: {11F8D6A0-01C6-4A23-A40F-1C3A560B99EA} (MavenInstallerAXControl Class) - http://client.maven.net/client/mavenInstaller.cab
O16 - DPF: {12F7F128-B36C-4843-8AA4-A5F71A969331} (Launcher Control) - https://horizons.istaria.com/controls/launcher.ocx
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {192F9A01-8030-48CE-9BC6-B03DE3E613C6} (PeoplePC Web Installer) - https://www.peoplepc.com/ppcos/ISP60/Download/ppcwebi.cab
O16 - DPF: {1D95A7C7-3282-4DB7-9A48-7C39CE152A19} (TeamOn Import Object) - https://myemail.t-mobile.com/html/web/client_tools/TOImport.cab
O16 - DPF: {2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} (MiniBugTransporterX Class) - http://download.weatherbug.com/minibug/tricklers/AWS/MiniBugTransporter.cab?
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {33E54F7F-561C-49E6-929B-D7E76D3AFEB1} (Pool Control) - http://www.worldwinner.com/games/v48/pool/pool.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52...pple.com/borris/us/win/QuickTimeInstaller.exe
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-9.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by107fd.bay107.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {55027008-315F-4F45-BBC3-8BE119764741} (Slide Image Uploader Control) - http://www.slide.com/uploader/SlideImageUploader.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/2413f9376263f0a55105/netzip/RdxIE601.cab
O16 - DPF: {640B39C1-D713-464F-92C3-75BD972B95EE} - http://www.sidestep.com/get/k42037/sb02b.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://go.divx.com/plugin/DivXBrowserPlugin.cab
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) - http://us.games2.yimg.com/download.games.yahoo.com/games/play/client/exentctl_0_0_0_1.ocx
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/mic...ls/en/x86/client/muweb_site.cab?1181656249625
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www.ca.com/us/securityadvisor/virusinfo/webscan.cab
O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) - http://www.worldwinner.com/games/shared/wwlaunch.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab30149.cab
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://admin.pressplay.com/duet/registration/isetup.cab
O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://autos.msn.com/Components/Ocx/SurVid/MSSurVid.cab
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O16 - DPF: {9903F4ED-B673-456A-A15F-ED90C7DE9EF5} (Sol Control) - http://www.worldwinner.com/games/v45/sol/sol.cab
O16 - DPF: {AF087E66-838E-4A97-8A0B-0DDDA5DEA239} (OTAutoInstall Class) - http://streaming.endeavors.com/microsoft/imaging/clientdownloads/OTAI.CAB
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10/ZIntro.cab32846.cab
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/suite/yautocomplete.cab
O16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) - http://autos.msn.com/Components/Ocx/Exterior/Outside.cab
O16 - DPF: {C4A8A4DA-BD3F-4DEB-9BBB-5B6BD3571EC7} (CDKeyCtl Class) - http://www.cdkey-promotions.com/download/CDKey.cab
O16 - DPF: {C93C1C34-CEA9-49B1-9046-040F59E0E0D8} (Paint Control) - http://www.worldwinner.com/games/v42/paint/paint.cab
O16 - DPF: {CE74A05D-ED12-473A-97F8-85FB0E2F479F} (dlControl.UserControl1) - http://www.cinemanow.com/dlControl.CAB
O16 - DPF: {D06A22B4-6087-4D3D-B7AF-82B113E9ABD4} (CPostLaunch Object) - http://www2.verizon.net/update/msnwebinstall/includes/vzWebIns.CAB
O16 - DPF: {D6016EE7-A8FF-11D1-B37E-A4759ECD7909} (AxPulse Class) - http://www.pulse3d.com/players/english/PulsePlayerAxWin.cab
O16 - DPF: {DC75FEF6-165D-4D25-A518-C8C4BDA7BAA6} (CPlayFirstDinerDashControl Object) - http://games.pogo.com/online2/pogo/diner_dash/DinerDash.1.0.0.80.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://games.pogo.com/online2/pogo/insaniquarium/popcaploader_v6.cab
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O16 - DPF: {EE2589EB-7FC8-44DB-A892-573F2C4B41E0} - http://pdf.forbes.com/forbesnews/triggernews/ForbesDownloaderSigned.cab
O16 - DPF: {EF148DBB-5B6D-4130-B2A1-661571E86260} (Playtime Games Launcher) - http://games.pogo.com/online2/pogo/mahjong_escape_ancient/PTGameLauncher.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/vso/en-us/tools/mcfscan/1,5,0,4267/mcfscan.cab
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} (Yahoo! Toolbar) - http://us.dl1.yimg.com/download.yahoo.com/dl/toolbar/yiebio5_1_3_0.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/bin/msnchat45.cab
O16 - DPF: {F7A05BAC-9778-410A-9CDE-BFBD4D5D2B7F} (iPIX Media Send Class) - http://216.249.24.149/code/iPIX-ImageWell-ipix.cab
O16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/_media/dalaillama/ampx.cab
O16 - DPF: {FF0C042C-98E9-4C36-B2EC-E21FDFDCEF75} - http://download.redswoosh.net/Installer/104/rsinstaller.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: secuload.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll
O20 - Winlogon Notify: ddccdbx - C:\WINDOWS\SYSTEM32\ddccdbx.dll
O20 - Winlogon Notify: pmnnk - C:\WINDOWS\system32\pmnnk.dll
O20 - Winlogon Notify: SOFTWARE - C:\WINDOWS\
O20 - Winlogon Notify: SYSTEM - C:\WINDOWS\
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Unknown owner - C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
 
Hi

Download suspicious file packer from here

Unzip it to desktop, open it & paste in the list of files below, press next & it will create an archive (zip/cab file) on desktop

c:\windows\system32\mspmspo.dll

Go to spykiller

Press new topic, make threads title "Files for Shaba"
Include to your message a link to here, then attach the cab/zip file to your message and post the topic
If you cant locate it through the browse button just copy/paste the filename and path.

We'll continue then :)
 
Hi

Thanks for the file :)

Please download VundoFix.exe to your desktop.
  • Double-click VundoFix.exe to run it.
  • Click the Scan for Vundo button.
  • Once it's done scanning, click the Remove Vundo button.
  • You will receive a prompt asking if you want to remove the files, click YES
  • Once you click yes, your desktop will go blank as it starts removing Vundo.
  • When completed, it will prompt that it will reboot your computer, click OK.
  • Please post the contents of C:\vundofix.txt and a new HiJackThis log in a reply to this thread.
Note: It is possible that VundoFix encountered a file it could not remove. In this case, VundoFix will run on reboot, simply follow the above instructions starting from "Click the Scan for Vundo button" when VundoFix appears upon rebooting.
 
VundoFix V6.5.0

Checking Java version...

Scan started at 10:32:23 AM 06/14/2007

Listing files found while scanning....

C:\windows\system32\avntytvm.exe
C:\windows\system32\cbeeg.ini
C:\windows\system32\csfhralo.exe
C:\WINDOWS\system32\ddccdbx.dll
C:\windows\system32\dwghvmqa.dll
C:\windows\system32\dxrwvvli.dll
C:\windows\system32\geebc.dll
C:\windows\system32\gpiwbmdg.exe
C:\windows\system32\gubsodtd.exe
C:\windows\system32\j3211232.dll
C:\windows\system32\jbgnbaqy.dll
C:\windows\system32\keauaaqc.dll
C:\windows\system32\kmbpiyje.exe
C:\windows\system32\knnmp.bak1
C:\windows\system32\knnmp.bak2
C:\windows\system32\knnmp.ini
C:\windows\system32\knnmp.tmp
C:\windows\system32\kvjbjjdu.dll
C:\windows\system32\neqcgyaw.exe
C:\WINDOWS\system32\pmnnk.dll
C:\windows\system32\qttss.ini
C:\windows\system32\rdnoffrr.dll
C:\windows\system32\rthilpcg.exe
C:\windows\system32\shpubbkx.dll
C:\windows\system32\snkkwcax.exe
C:\windows\system32\ssttq.dll
C:\WINDOWS\system32\tmclohfi.dll
C:\windows\system32\wcqnojfm.dll
C:\windows\system32\wggijssn.exe
C:\WINDOWS\system32\wjjgjjcs.dll
C:\windows\system32\wljlqrud.dll
C:\windows\system32\wraqrojs.exe
C:\windows\system32\xkbbuphs.ini
C:\windows\system32\yddfsyns.exe
C:\windows\system32\yqabngbj.ini

Beginning removal...

Attempting to delete C:\windows\system32\avntytvm.exe
C:\windows\system32\avntytvm.exe Has been deleted!

Attempting to delete C:\windows\system32\cbeeg.ini
C:\windows\system32\cbeeg.ini Has been deleted!

Attempting to delete C:\windows\system32\csfhralo.exe
C:\windows\system32\csfhralo.exe Has been deleted!

Attempting to delete C:\WINDOWS\system32\ddccdbx.dll
C:\WINDOWS\system32\ddccdbx.dll Has been deleted!

Attempting to delete C:\windows\system32\dwghvmqa.dll
C:\windows\system32\dwghvmqa.dll Has been deleted!

Attempting to delete C:\windows\system32\dxrwvvli.dll
C:\windows\system32\dxrwvvli.dll Has been deleted!

Attempting to delete C:\windows\system32\geebc.dll
C:\windows\system32\geebc.dll Has been deleted!

Attempting to delete C:\windows\system32\gpiwbmdg.exe
C:\windows\system32\gpiwbmdg.exe Has been deleted!

Attempting to delete C:\windows\system32\gubsodtd.exe
C:\windows\system32\gubsodtd.exe Has been deleted!

Attempting to delete C:\windows\system32\j3211232.dll
C:\windows\system32\j3211232.dll Has been deleted!

Attempting to delete C:\windows\system32\jbgnbaqy.dll
C:\windows\system32\jbgnbaqy.dll Has been deleted!

Attempting to delete C:\windows\system32\keauaaqc.dll
C:\windows\system32\keauaaqc.dll Has been deleted!

Attempting to delete C:\windows\system32\kmbpiyje.exe
C:\windows\system32\kmbpiyje.exe Has been deleted!

Attempting to delete C:\windows\system32\knnmp.bak1
C:\windows\system32\knnmp.bak1 Has been deleted!

Attempting to delete C:\windows\system32\knnmp.bak2
C:\windows\system32\knnmp.bak2 Has been deleted!

Attempting to delete C:\windows\system32\knnmp.ini
C:\windows\system32\knnmp.ini Has been deleted!

Attempting to delete C:\windows\system32\knnmp.tmp
C:\windows\system32\knnmp.tmp Has been deleted!

Attempting to delete C:\windows\system32\kvjbjjdu.dll
C:\windows\system32\kvjbjjdu.dll Has been deleted!

Attempting to delete C:\windows\system32\neqcgyaw.exe
C:\windows\system32\neqcgyaw.exe Has been deleted!

Attempting to delete C:\WINDOWS\system32\pmnnk.dll
C:\WINDOWS\system32\pmnnk.dll Has been deleted!

Attempting to delete C:\windows\system32\qttss.ini
C:\windows\system32\qttss.ini Has been deleted!

Attempting to delete C:\windows\system32\rdnoffrr.dll
C:\windows\system32\rdnoffrr.dll Has been deleted!

Attempting to delete C:\windows\system32\rthilpcg.exe
C:\windows\system32\rthilpcg.exe Has been deleted!

Attempting to delete C:\windows\system32\shpubbkx.dll
C:\windows\system32\shpubbkx.dll Has been deleted!

Attempting to delete C:\windows\system32\snkkwcax.exe
C:\windows\system32\snkkwcax.exe Has been deleted!

Attempting to delete C:\windows\system32\ssttq.dll
C:\windows\system32\ssttq.dll Has been deleted!

Attempting to delete C:\windows\system32\wcqnojfm.dll
C:\windows\system32\wcqnojfm.dll Has been deleted!

Attempting to delete C:\windows\system32\wggijssn.exe
C:\windows\system32\wggijssn.exe Has been deleted!

Attempting to delete C:\windows\system32\wljlqrud.dll
C:\windows\system32\wljlqrud.dll Has been deleted!

Attempting to delete C:\windows\system32\wraqrojs.exe
C:\windows\system32\wraqrojs.exe Has been deleted!

Attempting to delete C:\windows\system32\xkbbuphs.ini
C:\windows\system32\xkbbuphs.ini Has been deleted!

Attempting to delete C:\windows\system32\yddfsyns.exe
C:\windows\system32\yddfsyns.exe Has been deleted!

Attempting to delete C:\windows\system32\yqabngbj.ini
C:\windows\system32\yqabngbj.ini Has been deleted!

Performing Repairs to the registry.
Done!
 
Here is the rest

Logfile of HijackThis v1.99.1
Scan saved at 11:04:33 AM, on 06/14/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\SM1BG.EXE
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Panasonic\LUMIXSimpleViewer\PhLeAutoRun.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\hijackthis\scanner.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R3 - URLSearchHook: (no name) - _{965A592F-8EFA-4250-8630-7960230792F1} - (no file)
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: SpywareBlock Class - {0A87E45F-537A-40B4-B812-E2544C21A09F} - C:\Program Files\SpyCatcher\SCActiveBlock.dll (file missing)
O2 - BHO: XNetIEObj Class - {1808648B-3102-4293-8AD3-06AF71D3321B} - C:\Program Files\Endeavors\AppExpress\bho_2_5_5_17070\bho.dll (file missing)
O2 - BHO: (no name) - {20CD9BDC-5E7F-4AA1-9136-75A727F330D6} - C:\WINDOWS\system32\wljlqrud.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {5ADF3862-9E2E-4ad3-86F7-4510E6550CD0} - C:\WINDOWS\system32\ikodeifh.dll
O2 - BHO: UberButton Class - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: YahooTaggedBM Class - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - C:\Program Files\Yahoo!\Common\YIeTagBm.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: MSN Search Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O2 - BHO: (no name) - {C35C3D5C-83E3-4633-BCF8-9D088181FEF6} - C:\WINDOWS\system32\wljlqrud.dll (file missing)
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll
O2 - BHO: (no name) - {D59E6CE1-7D1F-4D57-BF53-1BC8C6D0B91F} - C:\WINDOWS\system32\pmnnk.dll (file missing)
O2 - BHO: (no name) - {D71FB4B1-729A-40F1-8F54-DC95599F0351} - (no file)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SM1BG] C:\WINDOWS\SM1BG.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [j3211232] rundll32 C:\WINDOWS\system32\j3211232.dll sook
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKLM\..\Run: [GPLv3] rundll32.exe "C:\WINDOWS\system32\muuyiuhb.dll",realset
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - HKCU\..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: LUMIX Simple Viewer.lnk = ?
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\MSN Toolbar Suite\DS\02.05.0001.1119\en-us\bin\WindowsSearch.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll/search.htm
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Translate.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://mirs.peoplepc.com/?offername=PeoplePC Online Accelerated&userName=zanza9&firstName=Nikki&qs=OKOMLDFHGMAHEMEANCBKAAIBKKMPDMAKHGNFGOBALEJMBIEOBGFDKKMLHOLJHHIAKEBHHAMMBOGNLMNCACDNPMOFOFPDPDKJCKPIODKLIACDMKKNPBHNDHOMJCGBANOI|GOFLBCBDDGNMCNOPADEEAAGOBAFDFEL
O16 - DPF: Harvest Mania by pogo - http://game1.pogo.com/applet-6.7.3.23/harvest/harvest-en_US.cab
O16 - DPF: Jigsaw Detective by pogo - http://game1.pogo.com/applet-6.7.3.23/jigsaw/jigsaw-en_US.cab
O16 - DPF: Mah Jong Garden by pogo - http://game1.pogo.com/applet-6.7.2.33/mahjong/mahjong-en_US.cab
O16 - DPF: Penguin Blocks by pogo - http://game1.pogo.com/applet-6.5.1.31/penguins/penguins-en_US.cab
O16 - DPF: Pop Fu by pogo - http://game1.pogo.com/applet-6.5.1.31/popfu/popfu-en_US.cab
O16 - DPF: PoppaZoppa by pogo - http://game1.pogo.com/applet-6.7.2.33/poppazoppa/poppazoppa-en_US.cab
O16 - DPF: Ride The Tide by pogo - http://game1.pogo.com/applet-6.5.3.44/ride/ride-en_US.cab
O16 - DPF: Stax by pogo - http://game1.pogo.com/applet-6.5.3.44/stax/stax-en_US.cab
O16 - DPF: WMP10ctrl - http://www.cinemanow.com/WMP10ctrl.CAB
O16 - DPF: Wonderland Memories by pogo - http://game1.pogo.com/applet-6.7.3.23/memories/memories-en_US.cab
O16 - DPF: Yahoo! Spades - http://download.games.yahoo.com/games/clients/y/st2_x.cab
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab30149.cab
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - http://activation.rr.com/install/download/tgctlcm.cab
O16 - DPF: {11F8D6A0-01C6-4A23-A40F-1C3A560B99EA} (MavenInstallerAXControl Class) - http://client.maven.net/client/mavenInstaller.cab
O16 - DPF: {12F7F128-B36C-4843-8AA4-A5F71A969331} (Launcher Control) - https://horizons.istaria.com/controls/launcher.ocx
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {192F9A01-8030-48CE-9BC6-B03DE3E613C6} (PeoplePC Web Installer) - https://www.peoplepc.com/ppcos/ISP60/Download/ppcwebi.cab
O16 - DPF: {1D95A7C7-3282-4DB7-9A48-7C39CE152A19} (TeamOn Import Object) - https://myemail.t-mobile.com/html/web/client_tools/TOImport.cab
O16 - DPF: {2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} (MiniBugTransporterX Class) - http://download.weatherbug.com/minibug/tricklers/AWS/MiniBugTransporter.cab?
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {33E54F7F-561C-49E6-929B-D7E76D3AFEB1} (Pool Control) - http://www.worldwinner.com/games/v48/pool/pool.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52...pple.com/borris/us/win/QuickTimeInstaller.exe
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-9.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by107fd.bay107.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {55027008-315F-4F45-BBC3-8BE119764741} (Slide Image Uploader Control) - http://www.slide.com/uploader/SlideImageUploader.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/2413f9376263f0a55105/netzip/RdxIE601.cab
O16 - DPF: {640B39C1-D713-464F-92C3-75BD972B95EE} - http://www.sidestep.com/get/k42037/sb02b.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://go.divx.com/plugin/DivXBrowserPlugin.cab
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) - http://us.games2.yimg.com/download.games.yahoo.com/games/play/client/exentctl_0_0_0_1.ocx
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/mic...ls/en/x86/client/muweb_site.cab?1181656249625
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www.ca.com/us/securityadvisor/virusinfo/webscan.cab
O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) - http://www.worldwinner.com/games/shared/wwlaunch.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab30149.cab
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://admin.pressplay.com/duet/registration/isetup.cab
O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://autos.msn.com/Components/Ocx/SurVid/MSSurVid.cab
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O16 - DPF: {9903F4ED-B673-456A-A15F-ED90C7DE9EF5} (Sol Control) - http://www.worldwinner.com/games/v45/sol/sol.cab
O16 - DPF: {AF087E66-838E-4A97-8A0B-0DDDA5DEA239} (OTAutoInstall Class) - http://streaming.endeavors.com/microsoft/imaging/clientdownloads/OTAI.CAB
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10/ZIntro.cab32846.cab
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/suite/yautocomplete.cab
O16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) - http://autos.msn.com/Components/Ocx/Exterior/Outside.cab
O16 - DPF: {C4A8A4DA-BD3F-4DEB-9BBB-5B6BD3571EC7} (CDKeyCtl Class) - http://www.cdkey-promotions.com/download/CDKey.cab
O16 - DPF: {C93C1C34-CEA9-49B1-9046-040F59E0E0D8} (Paint Control) - http://www.worldwinner.com/games/v42/paint/paint.cab
O16 - DPF: {CE74A05D-ED12-473A-97F8-85FB0E2F479F} (dlControl.UserControl1) - http://www.cinemanow.com/dlControl.CAB
O16 - DPF: {D06A22B4-6087-4D3D-B7AF-82B113E9ABD4} (CPostLaunch Object) - http://www2.verizon.net/update/msnwebinstall/includes/vzWebIns.CAB
O16 - DPF: {D6016EE7-A8FF-11D1-B37E-A4759ECD7909} (AxPulse Class) - http://www.pulse3d.com/players/english/PulsePlayerAxWin.cab
O16 - DPF: {DC75FEF6-165D-4D25-A518-C8C4BDA7BAA6} (CPlayFirstDinerDashControl Object) - http://games.pogo.com/online2/pogo/diner_dash/DinerDash.1.0.0.80.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://games.pogo.com/online2/pogo/insaniquarium/popcaploader_v6.cab
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O16 - DPF: {EE2589EB-7FC8-44DB-A892-573F2C4B41E0} - http://pdf.forbes.com/forbesnews/triggernews/ForbesDownloaderSigned.cab
O16 - DPF: {EF148DBB-5B6D-4130-B2A1-661571E86260} (Playtime Games Launcher) - http://games.pogo.com/online2/pogo/mahjong_escape_ancient/PTGameLauncher.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/vso/en-us/tools/mcfscan/1,5,0,4267/mcfscan.cab
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} (Yahoo! Toolbar) - http://us.dl1.yimg.com/download.yahoo.com/dl/toolbar/yiebio5_1_3_0.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/bin/msnchat45.cab
O16 - DPF: {F7A05BAC-9778-410A-9CDE-BFBD4D5D2B7F} (iPIX Media Send Class) - http://216.249.24.149/code/iPIX-ImageWell-ipix.cab
O16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/_media/dalaillama/ampx.cab
O16 - DPF: {FF0C042C-98E9-4C36-B2EC-E21FDFDCEF75} - http://download.redswoosh.net/Installer/104/rsinstaller.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: secuload.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll
O20 - Winlogon Notify: SOFTWARE - C:\WINDOWS\
O20 - Winlogon Notify: SYSTEM - C:\WINDOWS\
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Unknown owner - C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
 
Hi

Looking better :)

Open HijackThis, click do a system scan only and checkmark these:

R3 - URLSearchHook: (no name) - _{965A592F-8EFA-4250-8630-7960230792F1} - (no file)
O2 - BHO: SpywareBlock Class - {0A87E45F-537A-40B4-B812-E2544C21A09F} - C:\Program Files\SpyCatcher\SCActiveBlock.dll (file missing)
O2 - BHO: XNetIEObj Class - {1808648B-3102-4293-8AD3-06AF71D3321B} - C:\Program Files\Endeavors\AppExpress\bho_2_5_5_17070\bho.dll (file missing)
O2 - BHO: (no name) - {20CD9BDC-5E7F-4AA1-9136-75A727F330D6} - C:\WINDOWS\system32\wljlqrud.dll (file missing)
O2 - BHO: (no name) - {5ADF3862-9E2E-4ad3-86F7-4510E6550CD0} - C:\WINDOWS\system32\ikodeifh.dll
O2 - BHO: (no name) - {C35C3D5C-83E3-4633-BCF8-9D088181FEF6} - C:\WINDOWS\system32\wljlqrud.dll (file missing)
O2 - BHO: (no name) - {D59E6CE1-7D1F-4D57-BF53-1BC8C6D0B91F} - C:\WINDOWS\system32\pmnnk.dll (file missing)
O2 - BHO: (no name) - {D71FB4B1-729A-40F1-8F54-DC95599F0351} - (no file)
O4 - HKLM\..\Run: [j3211232] rundll32 C:\WINDOWS\system32\j3211232.dll sook
O4 - HKLM\..\Run: [GPLv3] rundll32.exe "C:\WINDOWS\system32\muuyiuhb.dll",realset
O16 - DPF: {2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} (MiniBugTransporterX Class) - http://download.weatherbug.com/minib...ansporter.cab?
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://software-dl.real.com/2413f937...p/RdxIE601.cab
O20 - AppInit_DLLs: secuload.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll,c:\windows\system32\mspmspo.dll
O20 - Winlogon Notify: SOFTWARE - C:\WINDOWS\
O20 - Winlogon Notify: SYSTEM - C:\WINDOWS\


Close all windows including browser and press fix checked.

Reboot.

Delete if present:

C:\WINDOWS\system32\ikodeifh.dll
C:\WINDOWS\system32\muuyiuhb.dll
c:\windows\system32\mspmspo.dll

Empty Recycle Bin

Post a fresh HijackThis log.
 
You're wonderful

Logfile of HijackThis v1.99.1
Scan saved at 12:13:33 PM, on 06/14/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\SM1BG.EXE
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Panasonic\LUMIXSimpleViewer\PhLeAutoRun.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\WINDOWS\system32\cidaemon.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\hijackthis\scanner.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: (no name) - {20CD9BDC-5E7F-4AA1-9136-75A727F330D6} - C:\WINDOWS\system32\wljlqrud.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: UberButton Class - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: YahooTaggedBM Class - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - C:\Program Files\Yahoo!\Common\YIeTagBm.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: MSN Search Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SM1BG] C:\WINDOWS\SM1BG.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - HKCU\..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: LUMIX Simple Viewer.lnk = ?
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\MSN Toolbar Suite\DS\02.05.0001.1119\en-us\bin\WindowsSearch.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll/search.htm
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Translate.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://mirs.peoplepc.com/?offername=PeoplePC Online Accelerated&userName=zanza9&firstName=Nikki&qs=OKOMLDFHGMAHEMEANCBKAAIBKKMPDMAKHGNFGOBALEJMBIEOBGFDKKMLHOLJHHIAKEBHHAMMBOGNLMNCACDNPMOFOFPDPDKJCKPIODKLIACDMKKNPBHNDHOMJCGBANOI|GOFLBCBDDGNMCNOPADEEAAGOBAFDFEL
O16 - DPF: Harvest Mania by pogo - http://game1.pogo.com/applet-6.7.3.23/harvest/harvest-en_US.cab
O16 - DPF: Jigsaw Detective by pogo - http://game1.pogo.com/applet-6.7.3.23/jigsaw/jigsaw-en_US.cab
O16 - DPF: Mah Jong Garden by pogo - http://game1.pogo.com/applet-6.7.2.33/mahjong/mahjong-en_US.cab
O16 - DPF: Penguin Blocks by pogo - http://game1.pogo.com/applet-6.5.1.31/penguins/penguins-en_US.cab
O16 - DPF: Pop Fu by pogo - http://game1.pogo.com/applet-6.5.1.31/popfu/popfu-en_US.cab
O16 - DPF: PoppaZoppa by pogo - http://game1.pogo.com/applet-6.7.2.33/poppazoppa/poppazoppa-en_US.cab
O16 - DPF: Ride The Tide by pogo - http://game1.pogo.com/applet-6.5.3.44/ride/ride-en_US.cab
O16 - DPF: Stax by pogo - http://game1.pogo.com/applet-6.5.3.44/stax/stax-en_US.cab
O16 - DPF: WMP10ctrl - http://www.cinemanow.com/WMP10ctrl.CAB
O16 - DPF: Wonderland Memories by pogo - http://game1.pogo.com/applet-6.7.3.23/memories/memories-en_US.cab
O16 - DPF: Yahoo! Spades - http://download.games.yahoo.com/games/clients/y/st2_x.cab
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab30149.cab
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - http://activation.rr.com/install/download/tgctlcm.cab
O16 - DPF: {11F8D6A0-01C6-4A23-A40F-1C3A560B99EA} (MavenInstallerAXControl Class) - http://client.maven.net/client/mavenInstaller.cab
O16 - DPF: {12F7F128-B36C-4843-8AA4-A5F71A969331} (Launcher Control) - https://horizons.istaria.com/controls/launcher.ocx
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {192F9A01-8030-48CE-9BC6-B03DE3E613C6} (PeoplePC Web Installer) - https://www.peoplepc.com/ppcos/ISP60/Download/ppcwebi.cab
O16 - DPF: {1D95A7C7-3282-4DB7-9A48-7C39CE152A19} (TeamOn Import Object) - https://myemail.t-mobile.com/html/web/client_tools/TOImport.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {33E54F7F-561C-49E6-929B-D7E76D3AFEB1} (Pool Control) - http://www.worldwinner.com/games/v48/pool/pool.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52...pple.com/borris/us/win/QuickTimeInstaller.exe
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-9.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by107fd.bay107.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {55027008-315F-4F45-BBC3-8BE119764741} (Slide Image Uploader Control) - http://www.slide.com/uploader/SlideImageUploader.cab
O16 - DPF: {640B39C1-D713-464F-92C3-75BD972B95EE} - http://www.sidestep.com/get/k42037/sb02b.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://go.divx.com/plugin/DivXBrowserPlugin.cab
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) - http://us.games2.yimg.com/download.games.yahoo.com/games/play/client/exentctl_0_0_0_1.ocx
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/mic...ls/en/x86/client/muweb_site.cab?1181656249625
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www.ca.com/us/securityadvisor/virusinfo/webscan.cab
O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) - http://www.worldwinner.com/games/shared/wwlaunch.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab30149.cab
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://admin.pressplay.com/duet/registration/isetup.cab
O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://autos.msn.com/Components/Ocx/SurVid/MSSurVid.cab
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O16 - DPF: {9903F4ED-B673-456A-A15F-ED90C7DE9EF5} (Sol Control) - http://www.worldwinner.com/games/v45/sol/sol.cab
O16 - DPF: {AF087E66-838E-4A97-8A0B-0DDDA5DEA239} (OTAutoInstall Class) - http://streaming.endeavors.com/microsoft/imaging/clientdownloads/OTAI.CAB
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10/ZIntro.cab32846.cab
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/suite/yautocomplete.cab
O16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) - http://autos.msn.com/Components/Ocx/Exterior/Outside.cab
O16 - DPF: {C4A8A4DA-BD3F-4DEB-9BBB-5B6BD3571EC7} (CDKeyCtl Class) - http://www.cdkey-promotions.com/download/CDKey.cab
O16 - DPF: {C93C1C34-CEA9-49B1-9046-040F59E0E0D8} (Paint Control) - http://www.worldwinner.com/games/v42/paint/paint.cab
O16 - DPF: {CE74A05D-ED12-473A-97F8-85FB0E2F479F} (dlControl.UserControl1) - http://www.cinemanow.com/dlControl.CAB
O16 - DPF: {D06A22B4-6087-4D3D-B7AF-82B113E9ABD4} (CPostLaunch Object) - http://www2.verizon.net/update/msnwebinstall/includes/vzWebIns.CAB
O16 - DPF: {D6016EE7-A8FF-11D1-B37E-A4759ECD7909} (AxPulse Class) - http://www.pulse3d.com/players/english/PulsePlayerAxWin.cab
O16 - DPF: {DC75FEF6-165D-4D25-A518-C8C4BDA7BAA6} (CPlayFirstDinerDashControl Object) - http://games.pogo.com/online2/pogo/diner_dash/DinerDash.1.0.0.80.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://games.pogo.com/online2/pogo/insaniquarium/popcaploader_v6.cab
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O16 - DPF: {EE2589EB-7FC8-44DB-A892-573F2C4B41E0} - http://pdf.forbes.com/forbesnews/triggernews/ForbesDownloaderSigned.cab
O16 - DPF: {EF148DBB-5B6D-4130-B2A1-661571E86260} (Playtime Games Launcher) - http://games.pogo.com/online2/pogo/mahjong_escape_ancient/PTGameLauncher.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/vso/en-us/tools/mcfscan/1,5,0,4267/mcfscan.cab
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} (Yahoo! Toolbar) - http://us.dl1.yimg.com/download.yahoo.com/dl/toolbar/yiebio5_1_3_0.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/bin/msnchat45.cab
O16 - DPF: {F7A05BAC-9778-410A-9CDE-BFBD4D5D2B7F} (iPIX Media Send Class) - http://216.249.24.149/code/iPIX-ImageWell-ipix.cab
O16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/_media/dalaillama/ampx.cab
O16 - DPF: {FF0C042C-98E9-4C36-B2EC-E21FDFDCEF75} - http://download.redswoosh.net/Installer/104/rsinstaller.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: c:\windows\system32\mspmspo.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Unknown owner - C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
 
Hi

Download the Killbox.
Save it to the desktop

Double-click Killbox.exe to run it.

Select "Delete on Reboot".
Place the following line (complete path) in bold in the "Full Path of File to Delete" box in Killbox:
c:\windows\system32\mspmspo.dll
Put a mark next to "Delete on Reboot"
Click the red-and-white "Delete File" button. Click "Yes" at the Delete on Reboot prompt. Click "No" at the Pending Operations prompt.
If your computer does not restart automatically, please restart it manually.

Open HijackThis, click do a system scan only and checkmark these:

O2 - BHO: (no name) - {20CD9BDC-5E7F-4AA1-9136-75A727F330D6} - C:\WINDOWS\system32\wljlqrud.dll (file missing)
O20 - AppInit_DLLs: c:\windows\system32\mspmspo.dll


Reboot

Post a fresh HijackThis log.
 
so far, so good. I haven't gotten a pop up yet

Logfile of HijackThis v1.99.1
Scan saved at 1:35:25 PM, on 06/14/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\cisvc.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\SM1BG.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Panasonic\LUMIXSimpleViewer\PhLeAutoRun.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\cidaemon.exe
C:\hijackthis\scanner.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: UberButton Class - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: YahooTaggedBM Class - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - C:\Program Files\Yahoo!\Common\YIeTagBm.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: MSN Search Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SM1BG] C:\WINDOWS\SM1BG.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - HKCU\..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: LUMIX Simple Viewer.lnk = ?
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\MSN Toolbar Suite\DS\02.05.0001.1119\en-us\bin\WindowsSearch.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll/search.htm
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Translate.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://mirs.peoplepc.com/?offername=PeoplePC Online Accelerated&userName=zanza9&firstName=Nikki&qs=OKOMLDFHGMAHEMEANCBKAAIBKKMPDMAKHGNFGOBALEJMBIEOBGFDKKMLHOLJHHIAKEBHHAMMBOGNLMNCACDNPMOFOFPDPDKJCKPIODKLIACDMKKNPBHNDHOMJCGBANOI|GOFLBCBDDGNMCNOPADEEAAGOBAFDFEL
O16 - DPF: Harvest Mania by pogo - http://game1.pogo.com/applet-6.7.3.23/harvest/harvest-en_US.cab
O16 - DPF: Jigsaw Detective by pogo - http://game1.pogo.com/applet-6.7.3.23/jigsaw/jigsaw-en_US.cab
O16 - DPF: Mah Jong Garden by pogo - http://game1.pogo.com/applet-6.7.2.33/mahjong/mahjong-en_US.cab
O16 - DPF: Penguin Blocks by pogo - http://game1.pogo.com/applet-6.5.1.31/penguins/penguins-en_US.cab
O16 - DPF: Pop Fu by pogo - http://game1.pogo.com/applet-6.5.1.31/popfu/popfu-en_US.cab
O16 - DPF: PoppaZoppa by pogo - http://game1.pogo.com/applet-6.7.2.33/poppazoppa/poppazoppa-en_US.cab
O16 - DPF: Ride The Tide by pogo - http://game1.pogo.com/applet-6.5.3.44/ride/ride-en_US.cab
O16 - DPF: Stax by pogo - http://game1.pogo.com/applet-6.5.3.44/stax/stax-en_US.cab
O16 - DPF: WMP10ctrl - http://www.cinemanow.com/WMP10ctrl.CAB
O16 - DPF: Wonderland Memories by pogo - http://game1.pogo.com/applet-6.7.3.23/memories/memories-en_US.cab
O16 - DPF: Yahoo! Spades - http://download.games.yahoo.com/games/clients/y/st2_x.cab
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab30149.cab
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - http://activation.rr.com/install/download/tgctlcm.cab
O16 - DPF: {11F8D6A0-01C6-4A23-A40F-1C3A560B99EA} (MavenInstallerAXControl Class) - http://client.maven.net/client/mavenInstaller.cab
O16 - DPF: {12F7F128-B36C-4843-8AA4-A5F71A969331} (Launcher Control) - https://horizons.istaria.com/controls/launcher.ocx
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {192F9A01-8030-48CE-9BC6-B03DE3E613C6} (PeoplePC Web Installer) - https://www.peoplepc.com/ppcos/ISP60/Download/ppcwebi.cab
O16 - DPF: {1D95A7C7-3282-4DB7-9A48-7C39CE152A19} (TeamOn Import Object) - https://myemail.t-mobile.com/html/web/client_tools/TOImport.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {33E54F7F-561C-49E6-929B-D7E76D3AFEB1} (Pool Control) - http://www.worldwinner.com/games/v48/pool/pool.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52...pple.com/borris/us/win/QuickTimeInstaller.exe
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-9.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by107fd.bay107.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {55027008-315F-4F45-BBC3-8BE119764741} (Slide Image Uploader Control) - http://www.slide.com/uploader/SlideImageUploader.cab
O16 - DPF: {640B39C1-D713-464F-92C3-75BD972B95EE} - http://www.sidestep.com/get/k42037/sb02b.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://go.divx.com/plugin/DivXBrowserPlugin.cab
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) - http://us.games2.yimg.com/download.games.yahoo.com/games/play/client/exentctl_0_0_0_1.ocx
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/mic...ls/en/x86/client/muweb_site.cab?1181656249625
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www.ca.com/us/securityadvisor/virusinfo/webscan.cab
O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) - http://www.worldwinner.com/games/shared/wwlaunch.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab30149.cab
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://admin.pressplay.com/duet/registration/isetup.cab
O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://autos.msn.com/Components/Ocx/SurVid/MSSurVid.cab
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O16 - DPF: {9903F4ED-B673-456A-A15F-ED90C7DE9EF5} (Sol Control) - http://www.worldwinner.com/games/v45/sol/sol.cab
O16 - DPF: {AF087E66-838E-4A97-8A0B-0DDDA5DEA239} (OTAutoInstall Class) - http://streaming.endeavors.com/microsoft/imaging/clientdownloads/OTAI.CAB
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10/ZIntro.cab32846.cab
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/suite/yautocomplete.cab
O16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) - http://autos.msn.com/Components/Ocx/Exterior/Outside.cab
O16 - DPF: {C4A8A4DA-BD3F-4DEB-9BBB-5B6BD3571EC7} (CDKeyCtl Class) - http://www.cdkey-promotions.com/download/CDKey.cab
O16 - DPF: {C93C1C34-CEA9-49B1-9046-040F59E0E0D8} (Paint Control) - http://www.worldwinner.com/games/v42/paint/paint.cab
O16 - DPF: {CE74A05D-ED12-473A-97F8-85FB0E2F479F} (dlControl.UserControl1) - http://www.cinemanow.com/dlControl.CAB
O16 - DPF: {D06A22B4-6087-4D3D-B7AF-82B113E9ABD4} (CPostLaunch Object) - http://www2.verizon.net/update/msnwebinstall/includes/vzWebIns.CAB
O16 - DPF: {D6016EE7-A8FF-11D1-B37E-A4759ECD7909} (AxPulse Class) - http://www.pulse3d.com/players/english/PulsePlayerAxWin.cab
O16 - DPF: {DC75FEF6-165D-4D25-A518-C8C4BDA7BAA6} (CPlayFirstDinerDashControl Object) - http://games.pogo.com/online2/pogo/diner_dash/DinerDash.1.0.0.80.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://games.pogo.com/online2/pogo/insaniquarium/popcaploader_v6.cab
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O16 - DPF: {EE2589EB-7FC8-44DB-A892-573F2C4B41E0} - http://pdf.forbes.com/forbesnews/triggernews/ForbesDownloaderSigned.cab
O16 - DPF: {EF148DBB-5B6D-4130-B2A1-661571E86260} (Playtime Games Launcher) - http://games.pogo.com/online2/pogo/mahjong_escape_ancient/PTGameLauncher.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/vso/en-us/tools/mcfscan/1,5,0,4267/mcfscan.cab
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} (Yahoo! Toolbar) - http://us.dl1.yimg.com/download.yahoo.com/dl/toolbar/yiebio5_1_3_0.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/bin/msnchat45.cab
O16 - DPF: {F7A05BAC-9778-410A-9CDE-BFBD4D5D2B7F} (iPIX Media Send Class) - http://216.249.24.149/code/iPIX-ImageWell-ipix.cab
O16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/_media/dalaillama/ampx.cab
O16 - DPF: {FF0C042C-98E9-4C36-B2EC-E21FDFDCEF75} - http://download.redswoosh.net/Installer/104/rsinstaller.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Unknown owner - C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
 
Hi

Yes, look pretty good.

Please do an online scan with Kaspersky Online Scanner. You will be prompted to install an ActiveX component from Kaspersky, Click Yes.
  • The program will launch and then start to download the latest definition files.
  • Once the scanner is installed and the definitions downloaded, click Next.
  • Now click on Scan Settings
  • In the scan settings make sure that the following are selected:

    o Scan using the following Anti-Virus database:

    + Extended (If available otherwise Standard)

    o Scan Options:

    + Scan Archives
    + Scan Mail Bases
  • Click OK
  • Now under select a target to scan select My Computer
  • The scan will take a while so be patient and let it run. Once the scan is complete it will display if your system has been infected.
  • Now click on the Save as Text button
  • Save the file to your desktop.
  • Copy and paste that information in your next post.

Post:

- a fresh HijackThis log
- kaspersky report
 
Logfile of HijackThis v1.99.1
Scan saved at 7:39:25 PM, on 06/14/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\SM1BG.EXE
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe
C:\Program Files\Free Download Manager\fdm.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Panasonic\LUMIXSimpleViewer\PhLeAutoRun.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\SYSTEM32\notepad.exe
C:\hijackthis\scanner.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr8/*http://www.yahoo.com/ext/search/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: UberButton Class - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: YahooTaggedBM Class - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - C:\Program Files\Yahoo!\Common\YIeTagBm.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: MSN Search Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn3\yt.dll
O3 - Toolbar: MSN Search Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SM1BG] C:\WINDOWS\SM1BG.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [Free Download Manager] C:\Program Files\Free Download Manager\fdm.exe -autorun
O4 - HKCU\..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: LUMIX Simple Viewer.lnk = ?
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\MSN Toolbar Suite\DS\02.05.0001.1119\en-us\bin\WindowsSearch.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &MSN Search - res://C:\Program Files\MSN Toolbar Suite\TB\02.05.0001.1119\en-us\msntb.dll/search.htm
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O8 - Extra context menu item: Translate with &Babylon - res://C:\Program Files\Babylon\Babylon-Pro\Utils\BabylonIEPI.dll/Translate.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://mirs.peoplepc.com/?offername=PeoplePC Online Accelerated&userName=zanza9&firstName=Nikki&qs=OKOMLDFHGMAHEMEANCBKAAIBKKMPDMAKHGNFGOBALEJMBIEOBGFDKKMLHOLJHHIAKEBHHAMMBOGNLMNCACDNPMOFOFPDPDKJCKPIODKLIACDMKKNPBHNDHOMJCGBANOI|GOFLBCBDDGNMCNOPADEEAAGOBAFDFEL
O16 - DPF: Harvest Mania by pogo - http://game1.pogo.com/applet-6.7.3.23/harvest/harvest-en_US.cab
O16 - DPF: Jigsaw Detective by pogo - http://game1.pogo.com/applet-6.7.3.23/jigsaw/jigsaw-en_US.cab
O16 - DPF: Mah Jong Garden by pogo - http://game1.pogo.com/applet-6.7.2.33/mahjong/mahjong-en_US.cab
O16 - DPF: Penguin Blocks by pogo - http://game1.pogo.com/applet-6.5.1.31/penguins/penguins-en_US.cab
O16 - DPF: Pop Fu by pogo - http://game1.pogo.com/applet-6.5.1.31/popfu/popfu-en_US.cab
O16 - DPF: PoppaZoppa by pogo - http://game1.pogo.com/applet-6.7.2.33/poppazoppa/poppazoppa-en_US.cab
O16 - DPF: Ride The Tide by pogo - http://game1.pogo.com/applet-6.5.3.44/ride/ride-en_US.cab
O16 - DPF: Stax by pogo - http://game1.pogo.com/applet-6.5.3.44/stax/stax-en_US.cab
O16 - DPF: WMP10ctrl - http://www.cinemanow.com/WMP10ctrl.CAB
O16 - DPF: Wonderland Memories by pogo - http://game1.pogo.com/applet-6.7.3.23/memories/memories-en_US.cab
O16 - DPF: Yahoo! Spades - http://download.games.yahoo.com/games/clients/y/st2_x.cab
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab30149.cab
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - http://activation.rr.com/install/download/tgctlcm.cab
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english/kavwebscan_unicode.cab
O16 - DPF: {11F8D6A0-01C6-4A23-A40F-1C3A560B99EA} (MavenInstallerAXControl Class) - http://client.maven.net/client/mavenInstaller.cab
O16 - DPF: {12F7F128-B36C-4843-8AA4-A5F71A969331} (Launcher Control) - https://horizons.istaria.com/controls/launcher.ocx
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {192F9A01-8030-48CE-9BC6-B03DE3E613C6} (PeoplePC Web Installer) - https://www.peoplepc.com/ppcos/ISP60/Download/ppcwebi.cab
O16 - DPF: {1D95A7C7-3282-4DB7-9A48-7C39CE152A19} (TeamOn Import Object) - https://myemail.t-mobile.com/html/web/client_tools/TOImport.cab
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedContent/vc/bin/AvSniff.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {33E54F7F-561C-49E6-929B-D7E76D3AFEB1} (Pool Control) - http://www.worldwinner.com/games/v48/pool/pool.cab
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52...pple.com/borris/us/win/QuickTimeInstaller.exe
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-9.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by107fd.bay107.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {55027008-315F-4F45-BBC3-8BE119764741} (Slide Image Uploader Control) - http://www.slide.com/uploader/SlideImageUploader.cab
O16 - DPF: {640B39C1-D713-464F-92C3-75BD972B95EE} - http://www.sidestep.com/get/k42037/sb02b.cab
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://go.divx.com/plugin/DivXBrowserPlugin.cab
O16 - DPF: {6A060448-60F9-11D5-A6CD-0002B31F7455} (ExentInf Class) - http://us.games2.yimg.com/download.games.yahoo.com/games/play/client/exentctl_0_0_0_1.ocx
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/mic...ls/en/x86/client/muweb_site.cab?1181656249625
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www.ca.com/us/securityadvisor/virusinfo/webscan.cab
O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) - http://www.worldwinner.com/games/shared/wwlaunch.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab30149.cab
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://admin.pressplay.com/duet/registration/isetup.cab
O16 - DPF: {928626A3-6B98-11CF-90B4-00AA00A4011F} (SurroundVideoCtrl Object) - http://autos.msn.com/Components/Ocx/SurVid/MSSurVid.cab
O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
O16 - DPF: {9903F4ED-B673-456A-A15F-ED90C7DE9EF5} (Sol Control) - http://www.worldwinner.com/games/v45/sol/sol.cab
O16 - DPF: {AF087E66-838E-4A97-8A0B-0DDDA5DEA239} (OTAutoInstall Class) - http://streaming.endeavors.com/microsoft/imaging/clientdownloads/OTAI.CAB
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10/ZIntro.cab32846.cab
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/suite/yautocomplete.cab
O16 - DPF: {BB47CA33-8B4D-11D0-9511-00C04FD9152D} (ExteriorSurround Object) - http://autos.msn.com/Components/Ocx/Exterior/Outside.cab
O16 - DPF: {C4A8A4DA-BD3F-4DEB-9BBB-5B6BD3571EC7} (CDKeyCtl Class) - http://www.cdkey-promotions.com/download/CDKey.cab
O16 - DPF: {C93C1C34-CEA9-49B1-9046-040F59E0E0D8} (Paint Control) - http://www.worldwinner.com/games/v42/paint/paint.cab
O16 - DPF: {CE74A05D-ED12-473A-97F8-85FB0E2F479F} (dlControl.UserControl1) - http://www.cinemanow.com/dlControl.CAB
O16 - DPF: {D06A22B4-6087-4D3D-B7AF-82B113E9ABD4} (CPostLaunch Object) - http://www2.verizon.net/update/msnwebinstall/includes/vzWebIns.CAB
O16 - DPF: {D6016EE7-A8FF-11D1-B37E-A4759ECD7909} (AxPulse Class) - http://www.pulse3d.com/players/english/PulsePlayerAxWin.cab
O16 - DPF: {DC75FEF6-165D-4D25-A518-C8C4BDA7BAA6} (CPlayFirstDinerDashControl Object) - http://games.pogo.com/online2/pogo/diner_dash/DinerDash.1.0.0.80.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://games.pogo.com/online2/pogo/insaniquarium/popcaploader_v6.cab
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} (HeartbeatCtl Class) - http://fdl.msn.com/zone/datafiles/heartbeat.cab
O16 - DPF: {EE2589EB-7FC8-44DB-A892-573F2C4B41E0} - http://pdf.forbes.com/forbesnews/triggernews/ForbesDownloaderSigned.cab
O16 - DPF: {EF148DBB-5B6D-4130-B2A1-661571E86260} (Playtime Games Launcher) - http://games.pogo.com/online2/pogo/mahjong_escape_ancient/PTGameLauncher.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/vso/en-us/tools/mcfscan/1,5,0,4267/mcfscan.cab
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} (Yahoo! Toolbar) - http://us.dl1.yimg.com/download.yahoo.com/dl/toolbar/yiebio5_1_3_0.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/bin/msnchat45.cab
O16 - DPF: {F7A05BAC-9778-410A-9CDE-BFBD4D5D2B7F} (iPIX Media Send Class) - http://216.249.24.149/code/iPIX-ImageWell-ipix.cab
O16 - DPF: {FA3662C3-B8E8-11D6-A667-0010B556D978} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/_media/dalaillama/ampx.cab
O16 - DPF: {FF0C042C-98E9-4C36-B2EC-E21FDFDCEF75} - http://download.redswoosh.net/Installer/104/rsinstaller.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ad-Aware 2007 Service (aawservice) - Lavasoft AB - C:\Program Files\Lavasoft\Ad-Aware 2007\aawservice.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Unknown owner - C:\Documents and Settings\Nadia\My Documents\iPod\bin\iPodService.exe (file missing)
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
 
I'm sorry.

I didn't forget to include the Kaspersky report. It's just that's it's very long and I couldn't pist it all at once lol I didn't realize it was too long until I tried to post it all at once and couldn't do it. I'm not sure what to do. I guess I can try breaking it up myself.
 
I'm sorry about this. it's alot to post

KASPERSKY ONLINE SCANNER REPORT
Thursday, June 14, 2007 7:31:52 PM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.93.0
Kaspersky Anti-Virus database last update: 14/06/2007
Kaspersky Anti-Virus database records: 346771
-------------------------------------------------------------------------------

Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true

Scan Target - My Computer:
A:\
C:\
D:\
E:\
F:\

Scan Statistics:
Total number of scanned objects: 175058
Number of viruses found: 28
Number of infected objects: 104
Number of suspicious objects: 3
Duration of the scan process: 02:29:16

Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\All Users\Application Data\Adobe\Catalogs\My Catalog.psa Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\9e05ed325d63feb867fb53465ccda383_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Crypto\RSA\MachineKeys\ba415befd309584769140b51ddab1b0d_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Windows Defender\Support\MPLog-12062006-171849.log Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temp\Cookies\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temp\History\History.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Temp\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\AcroForm\MRUFormsList Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\AdobeSysFnt06.lst Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Collab\OfflineDocs Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Collab\Reviews Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\JSADM.exv Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Messages\ENU\read0600win_ENUadbe0062v.pdf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Messages\ENU\read0600win_ENUyhoo0014v.pdf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Preferences\AutoFillDefaults.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Preferences\defaultHeuristics.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\TMGrpPrm.sav Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Updater\AdbeRdr70_enu_full.exe Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\6.0\Updater\udstore.js Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\Whapi\CreatePDFWinColor.ico Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\Whapi\CreatePDFWinGray.ico Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\Whapi\SearchPDFWinColor.ico Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\Whapi\SearchPDFWinGray.ico Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\Whapi\WHA Library.dll Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Acrobat\Whapi\WHAppList.xml Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\FileBrowser\PhotoshopElements3\index.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\FileBrowser\PhotoshopElements3\My Downloads0 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\FileBrowser\PhotoshopElements3\My Downloads0M Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\FileBrowser\PhotoshopElements3\My Downloads0T Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Online Services\Photoshop Elements\cache\cache.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Online Services\Photoshop Elements\cache\entry.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Online Services\Photoshop Elements\clients\Photoshop Elements\notifications.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Online Services\Photoshop Elements\clients\Photoshop Elements\preferences.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Album\Log.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Album\psa.prf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Album\status.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Browser\adprefs.ini Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Browser\global.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Browser\jswarn.dir Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Browser\opera.dir Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Browser\opera6.ini Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Browser\urlwarn.dir Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Keywords.psp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\New Doc Sizes.psp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Photoshop Elements 3.0 Prefs.psp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\PluginCache.psp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Styles.psp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Editor\Swatches.psp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Organizer\customevents.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Organizer\Log.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Organizer\psa.prf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Organizer\status.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Adobe\Photoshop Elements\3.0\Organizer\visualSearchLog.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\AdobeUM\Reader6.ini Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\0\0201D20472 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\0\0201D205A1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\0\0201D21C82 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\0\0201D23E8E Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\0\0201D2411D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\0\0201D25471 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\0\0201E06E77 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\006779240A154CDBD8DBC80E678697C5 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D20472 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D205A1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D21C82 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D23E8E Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D2411D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D24126 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D24292 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D25471 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D29818 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201D2981A Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0201E06E77 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\05386D696C6532 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\0E090DCC8931A08B00E6E5A9842D279A Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\113D851AC3961EB4065A16059B93038D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\1FC5E3CFAADAD3CD98698BCF5588C9EB Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\2040FB0E047821EC3F99EEB490DD0D26 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\20AE24DDC4F9A2EE70E10819BAD1AE3D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\21F0216450D9B8822BF23F0C82CFD820 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\2602B4E0E6A50CD499C200F83131AC0D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\270B8BAE15425346BDF5F9D81B3AC4D9 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\3A542C30183E2FB04300F2C1797C57D6 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\3ECD0BA7A44DFCBC2C8833CECDCF05FC Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\3F9AE97D75FAD638CE251BF96E04E637 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\4417BAD56C70399D9115F58AC321EA52 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\692BAFBE1ADA672DE79A1D51CF2C6CC9 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\737A74AF67767EED74D3 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\749DC53C7F1527048DB44326654E6073 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\778E04ABD14ADB9919D3E9FC95F64DDC Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\7B8A99AE43E29D8C96DC2F8AA8BB580E Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\8506759A5A4B68677288579B0A4F2471 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\86C40C72BDB6565268E1B6BB7B086EB8 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\89F0A0915A42871533B192CE1504871C Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\975BB47746B672BDB4D3 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\A2083F5579BFABF848582FA677D19155 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\A60657C7D83214B0312A7D7975A5DB1E Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\AB68D848131154D928DD6E32652DF2B8 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\AC71EA595A46AC235B188182D19F495C Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\B38441A7EEB669D47BCD748F9423CA7C Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\BACABCD797EB5D77527487958FBA614F Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\BD2EDD31D53C4FE75692758CF2683207 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\CA7A96DA49527058090027FA603A4AF1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\D38D70A8B8B82CFD9B217DA3719FC326 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\D770B4537BEB951085EFD0B3C51C704D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\DC554FCC96727CCB999F12D556AEF28A Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\E246E2CB967B00ADD2FB4CF7ECB52FCE Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\F00BB27D2F3017E3BBEF5488333DFB29 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\F3D394A69C339CCC5DE9C3CFF271A3E4 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1\F5B200FA964E6C3FAACB38F4D5101779 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1024\0201D23512 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\1024\0201D2440B Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\129\0201D210D1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\129\0201D21557 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\129\0201D22075 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\129\0201D23BA2 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\129\0201D26A6A Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\129\0201D2A1CF Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201D20739 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201D243BE Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201D299B8 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201D299B9 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201D299BF Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201D2A688 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201D2A69F Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201E0111E Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201E055A1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0201E07297 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\3\0202562859 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\5\20746564647962656172 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\5\337B51664A05D9BB6A3509112831313F Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\7\EFA7D8E2DB08868B728B0DE6132C3DEA Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\96\0201D20D39 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\96\0201D21E7B Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\96\0201D243BE Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\96\0201D299BF Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\bartcache\96\0201D2A688 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\addrbook.abk Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\cert8.db Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\info.htm Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\key3.db Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\Resources\aim051823225200.arf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\Resources\aim082020450300.arf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\Resources\aim111414114500.arf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\Resources\CurrentSettings.xml Object is locked skipped
 
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\Resources\Downloads\aim083017120801.arf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\Resources\Downloads\aim083100323403.arf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\Resources\Downloads\aim083121201001.arf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\Resources\Downloads\aim090619392201.arf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\Resources\Downloads\aim091221394101.arf Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\secmod.db Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\urlcache\aim47.tmp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\urlcache\aim61.tmp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\urlcache\aimF.tmp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\urlcache\cookie.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\urlcache\urlcache.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Aim\pnarjfkz\ESmilesP\userinfo.bag Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Apple Computer\iTunes\CD Info.cidb Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Apple Computer\iTunes\iPod Software Updates\iPod_13.1.2.1.ipsw Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Apple Computer\iTunes\iPod Software Updates\iPod_13.1.2.1.ipsw.signature Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Apple Computer\iTunes\iPod Updater Logs\iPodUpdater.log Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Apple Computer\iTunes\iTunes.pref Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Apple Computer\iTunes\iTunesPrefs.xml Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Apple Computer\QuickTime\QTPlayerSession.xml Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\DESKTOP.INI Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\FFDesigner\FFDesigner.CLP Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\FFDesigner\FFDesigner.OPT Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\FotoFinish\ExplorerData.ITM Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\FotoFinish\Favorites\New Folder.LNK Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\FotoFinish\Favorites\Picture.LNK Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\FotoFinish\Favorites\Shared Imagez.LNK Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\FotoFinish\Favorites\SmileyFam.LNK Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\GDIPFONTCACHEV1.DAT Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Image Zone Express\AcqSel.db Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Image Zone Express\asset.yos Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Image Zone Express\assets.yos Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Image Zone Express\FolderList.yos Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Image Zone Express\hpis.htm Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Image Zone Express\HPSoftwareUpdate.exe Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Image Zone Express\layouts.db Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Image Zone Express\thumbnail.db Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Image Zone Express\thumbnailSel.db Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Install.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Kontiki\kdx\errorlog.ini Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Kontiki\kdx\kontiki.fp Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Kontiki\kdx\thumbnails\1425639.jpg Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Kontiki\kdx\thumbnails\glbl_preview_video_lg0.jpg Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Kontiki\kdx\thumbnails\glbl_preview_video_sm.jpg Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Leadertech\PowerRegister\PowerReg.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\105-bmp.googleadservices.com\bmp\static\movie.swf\x.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\adknowledge.com\dl_obj.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\admin.brightcove.com\login.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\admin.brightcove.com\markers.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\admin.brightcove.com\welcomeScreen.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\ads345.com\sharedObject.swf\Mcookie.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\aiu-online.com\admissionscenter\AIUCampus\SWF\shell_f6.swf\LoadData.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\aiu-online.com\admissionscenter\AIUCampus\SWF\shell_f6.swf\vHostCookie.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\aolcdn.com\_media\aolvh\rootmovie.swf\videoSO.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\aolcdn.com\_media\aolvideo30\rootmovie351.swf\videoSO.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\apps.rockyou.com\board\corkboard.swf\historyData.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\apps.rockyou.com\board\nightsky.swf\historyData.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\badboyonline.com\soul.swf\ap___favs.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\badboyonline.com\soul.swf\ap___sets.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\bandbuilder.com\2pacresurrection\player.swf\BBSO.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\bandbuilder.com\2pacresurrection\player.swf\BBSO_97.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\bandbuilder.com\lloydbanks\player.swf\BBSO.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\bandbuilder.com\lloydbanks\player.swf\BBSO_177.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\bandbuilder.com\mimi\player.swf\BBSO.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\bandbuilder.com\mimi\player.swf\BBSO_283.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\bandbuilder.com\thegame\player.swf\BBSO.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\bandbuilder.com\thegame\player.swf\BBSO_229.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\bandbuilder.com\tupac_loyaltothegame\player.swf\BBSO.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\bandbuilder.com\tupac_loyaltothegame\player.swf\BBSO_258.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\carlthomas.com\devine.swf\ap___favs.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\carlthomas.com\devine.swf\ap___sets.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\cartoonnetwork.com\CN_users.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\chadsspace.com\flash.swf\flashSharedObject.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\chadsspace.com\flash2.swf\flashSharedObject.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\chatango.com\fixed_id.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\chatango.com\mini_login.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\chuckecheese.com\main\frame.swf\CECframe.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\comcast.net\comcastEmail.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\content.yieldmanager.edgesuite.net\atoms\61\1d\611df091a68499e9aecc2c96d4f09966.swf\FlashBoxCookie.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\content.yieldmanager.edgesuite.net\atoms\95\99\9599e18768ca028057dec48150030754.swf\FlashBoxCookie.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\cosmos.bcst.yahoo.com\LCOMMENGINEMGR.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\cosmos.bcst.yahoo.com\vidPlayer.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\dvlabs.com\klipmart\campaigns\amc001\f\amc001f_expand.swf\TestMovie_Config_Info.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\dvlabs.com\klipmart\campaigns\jok008\e_W\jok008e_w_main.swf\TestMovie_Config_Info.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\fanlib.com\FanLib.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\ff0000.com\cosmeoqid.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\flash.revver.com\player\1.0\player.swf\revverplayer.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\fuse.tv\chainsaw\poll.swf\FusePoll.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\grouper.com\mtg\mtgPlayer.swf\grouperExternalPlayer.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\img.emode.com\tests\yourthing\media\test20050927d.swf\testData.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\jaguar.com\us\en\home_15D57A98-4083-41E6-A570-FAA3B38CEFFD.swf\jagHomepage.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\localhost\AVPrefs.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\localhost\core.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\localhost\napsterIMVBG.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\localhost\napsterIMVgen.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\localhost\Program Files\Yahoo!\Messenger\imvcache\irobot\videoTemplate.swf\genericPlayer.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\localhost\PROGRA~1\Yahoo!\MESSEN~1\imvcache\chevy\mm_GENERICPLAYER2.swf\genericPlayer.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\macys.com\is-viewers\flash\genericzoom.swf\#MCY\products\0\optimized\178290%5Ffpx%2Etif_init.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\match.com\physicalseek\PhySeekRepLand.swf\XkpGKQhyRTo=_allowedNumberOfPolls.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\match.com\physicalseek\PhySeekRepLand.swf\XkpGKQhyRTo=_numberOfPolls.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\mediaonenetwork.net\MediaOne.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\mediaplex.com\ft475-23.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\neave.com\games\simon\simon.swf\neaveSimon.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\nywatertaxi.com\images\flash\nywtMap.swf\locationCookie.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\oddcast.com\vhsssecure.php\oddcast_vhss.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\pagead2.googlesyndication.com\pagead\googleadplayer.swf\mediaPlayerUserSettings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\pornotube.com\player\v.swf\views.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\pornotube.com\soundData.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\stat.radioblogclub.com\RbRestoSave.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\static.userplane.com\presence\m\presence.swf\presence.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\static.userplane.com\presence\presence.swf\presence_1.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\suitesmart.com\_f5e.swf\5thElement.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\tvguide.com\include\template\left\closeup2004b.swf\redcarpet2004.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\uncutvideo.aol.com\soundcookie.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\us.i1.yimg.com\LCOMMENGINEMGR.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\usherworld.com\flash\usherworld\usherworld.swf\uwcache.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\valuead.com\rdxu200072821112006.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\vfmii.com\media\resource\viewerSupport\ViewerContainer.swf\vfm.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\vfmii.com\media\resource\viewerSupport\ViewerContainer.swf\vfmCookieObj.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\video.google.com\googleplayer.swf\mediaPlayerUserSettings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\video.hollywoodupclose.com\player.swf\user_profile.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\void.snocap.com\s\store.swf\SharedObjectLock.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\void.snocap.com\s\storefront.swf\SnocapDownloadManager.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\vzwshop.com\html\include\flash\appcat_slider.swf\TestMovie_Config_Info.sol Object is locked skipped
 
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\web.adknowledge.com\dl_obj.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-05.slide.com\publish.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-05.slide.com\user_email.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-05.slide.com\user_loc_lat.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-05.slide.com\user_loc_lon.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-05.slide.com\user_loc_string.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-05.slide.com\user_name.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-3c.slide.com\user_loc_lat.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-3c.slide.com\user_loc_lon.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-3c.slide.com\user_loc_string.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-47.slide.com\ratings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-75.slide.com\user_loc_lat.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-75.slide.com\user_loc_lon.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-75.slide.com\user_loc_string.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-d8.slide.com\user_loc_lat.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-d8.slide.com\user_loc_lon.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget-d8.slide.com\user_loc_string.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget.slide.com\publish.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget.slide.com\user_email.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget.slide.com\user_loc_lat.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget.slide.com\user_loc_lon.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget.slide.com\user_loc_string.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widget.slide.com\user_name.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widgets.clearspring.com\clearspring.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\widgets.clearspring.com\common.Tracker.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.adultswim.com\CN_users.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.akademiks.com\web\jukebox.swf\vp___sets.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.boxofsoap.com\CYOT50Cent.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.boxofsoap.com\CYOT50Cent_v2.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.chuckecheese.com\main\content\index_summer06v2s2.swf\survey06.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.comcast.com\images\flash\main_tracking.swf\welcome.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.frappr.com\visitor_data.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.gofish.com\pervol2.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.heavy.com\channels\btmts0331.swf\TestMovie_Config_Info.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.heavy.com\channels\btmts_v2.swf\TestMovie_Config_Info.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.heavy.com\channels\offsitecover.swf\TestMovie_Config_Info.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.ifilm.com\flash\container.swf\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.kawaiispace.com\shout\shoutbox.swf\TestMovie_Config_Info.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.landroverusa.com\LR3OfferUserData.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.loganfundinggroup.com\FrontEndData493919.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.mtv.com\global\flash\module\com\fi\1.0.0.swf\FISettings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.mtv.com\global\flash\module\com\fi\1.0.3.swf\FISettings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.mtv.com\global\flash\module\com\fi\1.1.3.swf\FISettings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.mtv.com\overdrive\Overdrive.1.2.1.swf\UserPrefs.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.mtv.com\overdrive\Overdrive.1.5.swf\UserPrefs.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.mubility.com\radio.blog.3.0\include\rbCore\rbcore.swf\radioblog.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.mubility.com\radio.blog.3b1\include\rbCore\rbcore.swf\radioblog.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.myheritage.com\FP\Company\FaceRecognize\flash\faceRecognition8_8.swf\tooltip.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.nywatertaxi.com\images\flash\nywtMap.swf\locationCookie.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.rbkcustom.com\RbkCustomConfigurator.swf\rbkCustomPersistentRecipe.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.sho.com\site\lword\season4\flash\carousel\lword_carousel.swf\dateID.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.sho.com\site\video\root.swf\dateID.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.sho.com\site\video\root.swf\sessionID.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.sho.com\site\video\stream\movies\screen_2.swf\sessionID.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.sho.com\site\video\stream\movies\screen_3.swf\sessionID.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.sho.com\site\video\stream\movies\screen_6.swf\sessionID.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.spreadshirt.com\confomat\swf\confomatLoader6_11.swf\confomat6.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.veoh.com\static\flash\players\audio_data.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.veoh.com\static\flash\players\videodetails.swf\user_data.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.vh1.com\UserPrefs.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.vh1.com\vspot\vspot.1.2.7.swf\UserPrefs.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.vh1.com\vspot\vspot.1.5.swf\UserPrefs.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.visualplant.net\video\viral_player.php\RCS_VP_date.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.wutangcorp.de\flash\musicPlayer.swf\WTCMusicPlayerPreferencesObject.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.xatech.com\chat.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.xatech.com\chat207104.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.youtube.com\soundData.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\www.youtube.com\vidcap.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\yieldmanager.edgesuite.net\atoms\25\0c\250c8e5fb627c19da06c10831808bd9a.swf\hangman.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\yieldmanager.edgesuite.net\fieldh0wintl1852007.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\yieldmanager.edgesuite.net\shelightintl2442007.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\youtube.com\soundData.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\#SharedObjects\UXM594HW\youtube.com\vidcap.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\aliciakeys.com\keys_main.swf\TestMovie_Config_Info.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\bandbuilder.com\defjamaica\player.swf\BBSO.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\bandbuilder.com\defjamaica\player.swf\BBSO_88.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\bandbuilder.com\gunit\player.swf\BBSO.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\bandbuilder.com\gunit\player.swf\BBSO_104.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\localhost\et_mgg_counter.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\localhost\et_mgg_options1.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#105-bmp.googleadservices.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#10minuteresume.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#50cent.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#adknowledge.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#admin.brightcove.com\settings.sol Object is locked skipped
 
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#ads345.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#aiu-online.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#aliciakeys.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#aolcdn.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#apps.rockyou.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#badboyonline.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#bandbuilder.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#bigtigger.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#carlthomas.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cartoonnetwork.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#chadsspace.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#chatango.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#chuckecheese.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#comcast.net\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#content.yieldmanager.edgesuite.net\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#cosmos.bcst.yahoo.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#defjam.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#dvlabs.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#fanlib.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#ff0000.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#flash.revver.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#fuse.tv\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#grouper.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#img.emode.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#jaguar.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#lads.myspace.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#lilbowwow.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#local\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#macromedia.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#macys.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#match.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#mediaonenetwork.net\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#mediaplex.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#mtv.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#myspacetotal.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#neave.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#nywatertaxi.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#oddcast.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#ourchart.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#pagead2.googlesyndication.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#pornotube.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#rocafella.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#stat.radioblogclub.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#static.userplane.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#suitesmart.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#tvguide.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#uncutvideo.aol.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#us.i1.yimg.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#usherworld.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#valuead.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#vfmii.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#video.google.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#video.hollywoodupclose.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#void.snocap.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#vzwshop.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#web.adknowledge.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#widget-05.slide.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#widget-3c.slide.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#widget-47.slide.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#widget-75.slide.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#widget-d8.slide.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#widget.slide.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#widgets.clearspring.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.adultswim.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.akademiks.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.boxofsoap.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.chuckecheese.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.comcast.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.frappr.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.gofish.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.heavy.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.ifilm.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.imeem.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.jealous-karma.net\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.kawaiispace.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.landroverusa.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.loganfundinggroup.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.mtv.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.mubility.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.musicane.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.myheritage.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.nywatertaxi.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.rbkcustom.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.sho.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.spreadshirt.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.veoh.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.vh1.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.visualplant.net\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.wutangcorp.de\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.xatech.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#www.youtube.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#yieldmanager.edgesuite.net\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#youtube.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\#zing.com\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\macromedia.com\support\flashplayer\sys\settings.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\www.macromedia.com\bin\fpupdateax\fpupdateax.exe Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Flash Player\zing.com\zmt\ZingVars.sol Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\dirapi.mch Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\Prefs\LEJYH8QE\EZDJ1_GB_data.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\Prefs\LEJYH8QE\EZDJ1_GB_FIZQGA_01_49_54_9546.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\Prefs\LEJYH8QE\EZDJ1_GB_JWVHKM_22_56_03_7856.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\Prefs\LEJYH8QE\EZDJ1_GB_QOIQKY_21_49_42_5442.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\Prefs\LEJYH8QE\EZDJ1_GB_records.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\Prefs\LEJYH8QE\EZDJ1_GB_TGEMLX_17_45_51_2074.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\Prefs\LEJYH8QE\grooveloader.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\Prefs\LEJYH8QE\PJ_addressbook.txt Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\Shockwave Log Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\DirectSound\DirectSound.x32 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\FlashAsset\Flash Asset.x32 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\FontXtra\Font Xtra.x32 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\MacroMix\MacroMix.x32 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\QT6Asset\QT6Asset.X32 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\SoundControl\Sound Control.x32 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\SWA\swadcmpr.x32 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\SWA\SWASTRM.X32 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\TextAsset\Text Asset.x32 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Macromedia\Shockwave Player\xtras\download\MacromediaInc\TextAsset\TextXtra.x32 Object is locked skipped
 
C:\Documents and Settings\Nadia\Application Data\Microsoft\Address Book\Nadia.wab Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Address Book\Nadia.wa~ Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Clip Organizer\mstore10.mgc Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Clip Organizer\Offic10.MGC Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CLR Security Config\v1.0.3705\security.config Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CLR Security Config\v1.0.3705\security.config.cch Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CLR Security Config\v1.0.3705\security.config.old Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CLR Security Config\v1.1.4322\security.config Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CLR Security Config\v1.1.4322\security.config.cch Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Credentials\S-1-5-21-1714693321-1330810867-1763721995-1007\Credentials Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\107367539B7C89418A100A6FF29C5EAC Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\2BBA88436E92E1ABCED8E68D74DC5B38 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\2BF68F4714092295550497DD56F57004 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\303572DF538EDD8B1D606185F1D559B8 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\3130B1871A126520A8C47861EFE3ED4D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\33ECCD4EC2899E5F6A7E306662596E0F Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\486CC6AFD08942336C61FCD401C4A1D1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\561F989D166B9195191D8592AEB81CDD Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\5C8DDA36D60247082B142836039F4636 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\60E31627FDA0A46932B0E5948949F2A5 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\696F3DE637E6DE85B458996D49D759AD Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\6C68A73125F3238F044A8115D96841B6 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\71644221AC231DBD2359C18EBB2118DC Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\74BFD122C0875EC75DBE5C6DB4C59019 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\79841F8EF00FBA86D33CC5A47696F165 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\7C8A03C4580C6B04FDF34357F3474EDC Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\8B40C910A4BD101330D434C846840D24 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\904590238400AD963F77FAAAADC9BAB5 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\94308059B57B3142E455B38A6EB92015 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\A44F4E7CB3133FF765C39A53AD8FCFDD Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\A66496915E372C06F0D8C0CC31F81B97 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\A8FABA189DB7D25FBA7CAC806625FD30 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\B2F4B1D39F0694C6CDB433BC3CCF1418 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\B69D763EB21649DA26F20618312DEE70 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\B82262A5D5DA4DDACE9EDA7F787D0DEB Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\C571B417AAF1F617555A0486AB3F5361 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\CFC456E7E410D69E2C6F3E2DB75C7DB3 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\CFE3BF66E9913B1EDEDFE338EA0280AE Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\DC2135CED98D8A4D7C0CEE202BB0B810 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\E6024EAC88E6B6165D49FE3C95ADD735 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\E891C648621A40AC7F773694A17FE76C Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\F482C95F83F1B59228F1B1E720F2EDF1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\Content\F5A17C00E427F919C4A49EEF5AD0EE53 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\107367539B7C89418A100A6FF29C5EAC Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\2BBA88436E92E1ABCED8E68D74DC5B38 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\2BF68F4714092295550497DD56F57004 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\303572DF538EDD8B1D606185F1D559B8 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\3130B1871A126520A8C47861EFE3ED4D Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\33ECCD4EC2899E5F6A7E306662596E0F Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\486CC6AFD08942336C61FCD401C4A1D1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\561F989D166B9195191D8592AEB81CDD Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\5C8DDA36D60247082B142836039F4636 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\60E31627FDA0A46932B0E5948949F2A5 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\696F3DE637E6DE85B458996D49D759AD Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\6C68A73125F3238F044A8115D96841B6 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\71644221AC231DBD2359C18EBB2118DC Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\74BFD122C0875EC75DBE5C6DB4C59019 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\79841F8EF00FBA86D33CC5A47696F165 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\7C8A03C4580C6B04FDF34357F3474EDC Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\8B40C910A4BD101330D434C846840D24 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\904590238400AD963F77FAAAADC9BAB5 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\94308059B57B3142E455B38A6EB92015 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\A44F4E7CB3133FF765C39A53AD8FCFDD Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\A66496915E372C06F0D8C0CC31F81B97 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\A8FABA189DB7D25FBA7CAC806625FD30 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\B2F4B1D39F0694C6CDB433BC3CCF1418 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\B69D763EB21649DA26F20618312DEE70 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\B82262A5D5DA4DDACE9EDA7F787D0DEB Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\C571B417AAF1F617555A0486AB3F5361 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\CFC456E7E410D69E2C6F3E2DB75C7DB3 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\CFE3BF66E9913B1EDEDFE338EA0280AE Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\DC2135CED98D8A4D7C0CEE202BB0B810 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\E6024EAC88E6B6165D49FE3C95ADD735 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\E891C648621A40AC7F773694A17FE76C Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\F482C95F83F1B59228F1B1E720F2EDF1 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\CryptnetUrlCache\MetaData\F5A17C00E427F919C4A49EEF5AD0EE53 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\1f0b60827a4c7c08356ee212eb67ae05_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\360e9316558dc5fc61c74119e7e1abb7_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\3d8d491b5a40df3e26906f2fc95b862c_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\40f6607c62aacd402d29e07abf974d59_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\48ba90a765b82d3722f32538bdf60660_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\65dba0f110c5574d44890fc7f2abbda5_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\77cb0c374217e92e8dad8694e0d38a9d_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\92afa876358e92d9a76b0c3edace197f_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\a33d10b6c4f5b80ba19b6c5e2a7b2532_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\a644e62647ae14c080dac980fcf295e3_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\bc7c6d74d4f062c25c7fe7264f5ed052_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\d642018b883da684e9c7dcbbfa2f2836_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Crypto\RSA\S-1-5-21-1714693321-1330810867-1763721995-1007\f09ebd9a31e826440b22e12df9e46cb9_1dce0e75-1303-433a-bfc1-6b582bd25551 Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\HTML Help\hh.dat Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\IdentityCRL\ppcrlconfig.dll Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\BRNDLOG.BAK Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\BRNDLOG.TXT Object is locked skipped
C:\Documents and Settings\Nadia\Application Data\Microsoft\Internet Explorer\Desktop.htt Object is locked skipped
 
Back
Top