First Time hijackthis log user

  1. #1
    bobomonkey is offline Junior Member

    First Time hijackthis log user

    Here is what I found... Any suggestions on how to get my computer running correctly again and stop the adware and popups?

    Logfile of HijackThis v1.99.1
    Scan saved at 10:22:04 PM, on 7/18/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Windows Defender\MsMpEng.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Nhksrv.exe
    C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
    C:\WINDOWS\System32\cisvc.exe
    C:\WINDOWS\system32\CTsvcCDA.EXE
    C:\Program Files\Norton AntiVirus\navapsvc.exe
    C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
    C:\WINDOWS\System32\nvsvc32.exe
    C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\Program Files\Picasa2\PicasaMediaDetector.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\AWS\WeatherBug\Weather.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Microsoft ActiveSync\wcescomm.exe
    C:\Program Files\SanDisk\SanDisk TransferMate\SD Monitor.exe
    C:\PROGRA~1\MI3AA1~1\rapimgr.exe
    C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.yahoo.com
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Comcast
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O3 - Toolbar: Comcast Toolbar - {4E7BD74F-2B8D-469E-93BE-BE2DF4D9AE29} - C:\PROGRA~1\COMCAS~1\COMCAS~1.DLL
    O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
    O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKCU\..\Run: [Weather] C:\Program Files\AWS\WeatherBug\Weather.exe 1
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
    O4 - Global Startup: Monitor.lnk = C:\Program Files\SanDisk\SanDisk TransferMate\SD Monitor.exe
    O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
    O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
    O8 - Extra context menu item: &Translate English Word - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
    O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
    O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
    O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
    O8 - Extra context menu item: Translate Page into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
    O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
    O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
    O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
    O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
    O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra button: Help - {61B0D85C-8140-4BCB-80A3-80FB6E3F46B5} - http://www.comcast.net/memberservices/ (file missing) (HKCU)
    O9 - Extra button: Support - {709B330F-7A82-417C-B6E6-32E7120EE8BC} - http://www.comcastsupport.com (file missing) (HKCU)
    O9 - Extra button: ComcastHSI - {8B725F25-5D1D-4197-8923-24A413DA462B} - http://www.comcast.net (file missing) (HKCU)
    O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\PROGRA~1\AWS\WEATHE~1\Weather.exe (HKCU)
    O14 - IERESET.INF: START_PAGE_URL=http://www.comcast.net
    O16 - DPF: symsupportutil - https://www-secure.symantec.com/tech...upportutil.CAB
    O16 - DPF: {00000000-0000-0000-0000-100000000003} - http://code.trasferimento.biz/l/ea71...ca654a0_35.exe
    O16 - DPF: {0837121A-6472-43BD-8A40-D9221FF1C4CE} - http://download.sidestep.com/get/k00719/sb026.cab
    O16 - DPF: {2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} (MiniBugTransporterX Class) - http://download.weatherbug.com/minib...ansporter.cab?
    O16 - DPF: {640B39C1-D713-464F-92C3-75BD972B95EE} - http://www.sidestep.com/get/k42037/sb02a.cab
    O16 - DPF: {6F750200-1362-4815-A476-88533DE61D0C} (Ofoto Upload Manager Class) - http://www.kodakgallery.com/download...1/axofupld.cab
    O16 - DPF: {74CD40EA-EF77-4BAD-808A-B5982DA73F20} - http://yax-download.yazzle.net/Yazzl...cab?refid=1123
    O16 - DPF: {7FE26BE2-B923-4B41-9834-E84DA1CC1F96} (Maid Control) - http://vsp.closetmaid.com/vsp/cmaidc...downloader.cab
    O16 - DPF: {9522B3FB-7A2B-4646-8AF6-36E7F593073C} (cpbrkpie Control) - http://a19.g.akamai.net/7/19/7125/40...02/Coupons.cab
    O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
    O16 - DPF: {A8683C98-5341-421B-B23C-8514C05354F1} (FujifilmUploader Class) - http://www.ritzpix.com/upload/FujifilmUploadClient.cab
    O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - http://download.games.yahoo.com/game...ploader_v6.cab
    O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
    O23 - Service: Netropa NHK Server (Nhksrv) - Unknown owner - C:\WINDOWS\Nhksrv.exe
    O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
    O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
    O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe


  2. #2
    Neal is offline Dedicated Member
    Welcoem to DAL,


    We must disable the Real-Time Protection feature of Windows Defender for it may interfere with the changes we need to make.

    To disable Real-Time Protection:
    • Go to "Tools" | "General Settings"
    • Scroll down to "Real-time protection options"
    • Uncheck "Turn on real-time protection (recommended)"
    • Remember to reactivate this feature when we have finished all our work.


    I notice that you have Spybot's TeaTimer running. While this is normally a wonderful tool to protect against hijackers, it can also interfere with HijackThis fixes. So please disable TeaTimer by doing the following:
    1. Run Spybot-S&D
    2. Go to the Mode menu, and make sure "Advanced Mode" is selected
    3. On the left hand side, choose Tools -> Resident
    4. Uncheck "Resident TeaTimer" and OK any prompts
    You can reenable TeaTimer once your system is clean.


    From add/remove program remove weatherbug if the free version


    Run hiajckthis and click on scan button and put checks next to these:


    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank

    O4 - HKCU\..\Run: [Weather] C:\Program Files\AWS\WeatherBug\Weather.exe 1
    --- if the free version

    O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\PROGRA~1\AWS\WEATHE~1\Weather.exe (HKCU)

    O16 - DPF: {00000000-0000-0000-0000-100000000003} - http://code.trasferimento.biz/l/ea7...2ca654a0_35.exe
    O16 - DPF: {0837121A-6472-43BD-8A40-D9221FF1C4CE} - http://download.sidestep.com/get/k00719/sb026.cab
    O16 - DPF: {2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} (MiniBugTransporterX Class) - http://download.weatherbug.com/mini...ransporter.cab?
    O16 - DPF: {640B39C1-D713-464F-92C3-75BD972B95EE} - http://www.sidestep.com/get/k42037/sb02a.cab
    O16 - DPF: {74CD40EA-EF77-4BAD-808A-B5982DA73F20} - http://yax-download.yazzle.net/Yazz....cab?refid=1123
    O16 - DPF: {7FE26BE2-B923-4B41-9834-E84DA1CC1F96} (Maid Control) - http://vsp.closetmaid.com/vsp/cmaid..._downloader.cab
    O16 - DPF: {9522B3FB-7A2B-4646-8AF6-36E7F593073C} (cpbrkpie Control) - http://a19.g.akamai.net/7/19/7125/4...302/Coupons.cab



    Make sure nothing is open but hijackthis and click on fix checked.


    Now reboot into safe mode by tapping your F8 key upon restart and safe mode screen appears, select safe mode and press enter.


    Navigate to these files or folders using Windows Explorer (OR Start -> Search) and delete (if present):



    DELETE FOLDERS

    C:\Program Files\AWS---if the free version


    Reboot normal mode and...





    Download and install
    Ewido anti-spyware
    4.0
    (uninstall any previous version first).
    • Click the Download BUTTON. On the next page click the
      Download now BUTTON.
    • Save and then install (Run) from the save location.
    • Open/Run ewido anti-spyware
    • Wait a few moments and Ewido should Auto update itself (note date of last
      update). If it doesn't update, click the update ICON at top of
      screen:

    • Click on the Update now LINK at the top of the window
      • Click on the Start update button
      • Wait for the update to download and install
  3. This is very important to get the LATEST
    updates

  4. Click on the Status ICON
    • Under "Your computers Security"
      Click change status on Resident shield to inactive
      (ONLY consider activation of that feature once you are
      clean)
  5. Click on the Scanner ICON at the top of the window
  6. Click on the Settings tab then select Recommended Actions
    and choose Quarantine




  7. Close ALL open Windows / Programs / Folders. Please start
    Ewido, and run a full scan:
    • Click on the default Status ICON and select
      the Scan now LINK.

      OR

    • Click on the Scanner ICON . Select the Scan
      TAB.

      • Select Complete System Scan. Ewido will now begin to scan your
        system.

    • If Ewido finds anything it will list them in the Preview WINDOW:
      • Make sure that Set all elements to: shows
        Quarantine, if not click on the link and choose
        Quarantine from the popup menu.
      • Select Apply all actions at the bottom of the window (and the
        items found will be quarantined - and recoverable, if any items are needed
        back).

    • When the scan has completed, click on the Save Scan Report button
      and save the scan to your Desktop where it can be easily found.
    • Copy and paste the EWIDO scan results into your next
      post.
    • Close Ewido.


    Also post a new hijackthis log please.

  • #3
    bobomonkey is offline Junior Member
    Here is my ewido log:

    ---------------------------------------------------------
    ewido anti-spyware - Scan Report
    ---------------------------------------------------------

    + Created at: 10:29:18 PM 7/19/2006

    + Scan result:



    C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP871\A0196125.dll -> Adware.BHO : Cleaned with backup (quarantined).
    C:\Program Files\HijackThis\backups\backup-20060719-211205-819.dll -> Adware.Coupons : Cleaned with backup (quarantined).
    C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP871\A0196113.ocx -> Adware.Coupons : Cleaned with backup (quarantined).
    C:\WINDOWS\YAXUninst.exe -> Adware.MediaTickets : Cleaned with backup (quarantined).
    HKLM\SOFTWARE\Classes\PROTOCOLS\Name-Space Handler\res -> Adware.WebSearch : Cleaned with backup (quarantined).
    C:\WINDOWS\Downloaded Program Files\USYP_0001_N85M2606NetInstaller.exe -> Downloader.Agent.alr : Cleaned with backup (quarantined).
    C:\Documents and Settings\nn\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\loa deradv405.jar-2fafcfce-17376221.zip/Matrix.class -> Downloader.OpenStream.c : Cleaned with backup (quarantined).
    C:\WINDOWS\Downloaded Program Files\ea719459c516aede6c14db4a2ca654a0_13.exe -> Downloader.Small.bwy : Cleaned with backup (quarantined).
    C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP855\A0195520.exe -> Downloader.Zlob.wp : Cleaned with backup (quarantined).
    C:\WINDOWS\SYSTEM32\dqlnaeqv.dll -> Logger.VBStat.d : Cleaned with backup (quarantined).
    C:\Documents and Settings\nn\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\loa deradv405.jar-2fafcfce-17376221.zip/Dummy.class -> Not-A-Virus.Exploit.ByteVerify : Cleaned with backup (quarantined).
    C:\Documents and Settings\nn\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\loa deradv475.jar-3ba1bc27-35b39409.zip/Dummy.class -> Not-A-Virus.Exploit.ByteVerify : Cleaned with backup (quarantined).
    :mozilla.36:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup (quarantined).
    :mozilla.84:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup (quarantined).
    :mozilla.90:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Adbrite : Cleaned with backup (quarantined).
    :mozilla.91:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Adbrite : Cleaned with backup (quarantined).
    :mozilla.50:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup (quarantined).
    :mozilla.103:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup (quarantined).
    :mozilla.104:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup (quarantined).
    :mozilla.112:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Clickzs : Cleaned with backup (quarantined).
    :mozilla.113:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Clickzs : Cleaned with backup (quarantined).
    :mozilla.159:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup (quarantined).
    :mozilla.160:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup (quarantined).
    :mozilla.161:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup (quarantined).
    :mozilla.162:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup (quarantined).
    :mozilla.163:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup (quarantined).
    :mozilla.164:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup (quarantined).
    :mozilla.194:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup (quarantined).
    :mozilla.195:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup (quarantined).
    :mozilla.196:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup (quarantined).
    :mozilla.197:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup (quarantined).
    :mozilla.65:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Clickzs : Cleaned with backup (quarantined).
    :mozilla.66:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Clickzs : Cleaned with backup (quarantined).
    :mozilla.67:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Clickzs : Cleaned with backup (quarantined).
    :mozilla.68:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Clickzs : Cleaned with backup (quarantined).
    C:\Documents and Settings\nn\Cookies\nn@cpvfeed[2].txt -> TrackingCookie.Cpvfeed : Cleaned with backup (quarantined).
    :mozilla.103:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Fastclick : Cleaned with backup (quarantined).
    :mozilla.104:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Fastclick : Cleaned with backup (quarantined).
    :mozilla.130:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined).
    :mozilla.131:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined).
    :mozilla.61:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined).
    :mozilla.62:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined).
    :mozilla.64:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined).
    C:\Documents and Settings\nn\Cookies\nn@linksynergy[1].txt -> TrackingCookie.Linksynergy : Cleaned with backup (quarantined).
    :mozilla.106:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Masterstats : Cleaned with backup (quarantined).
    :mozilla.49:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Masterstats : Cleaned with backup (quarantined).
    :mozilla.75:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Paycounter : Cleaned with backup (quarantined).
    :mozilla.93:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Paycounter : Cleaned with backup (quarantined).
    C:\Documents and Settings\nn\Cookies\nn@stats1.reliablestats[1].txt -> TrackingCookie.Reliablestats : Cleaned with backup (quarantined).
    :mozilla.10:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.11:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.11:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.12:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.12:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.13:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.13:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.14:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.14:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.15:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.15:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.16:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.16:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.17:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.17:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.18:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.18:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.19:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.19:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.20:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.20:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.21:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.21:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.22:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.22:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.23:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.23:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.24:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.24:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.25:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.25:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.26:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.26:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.27:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.27:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.28:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.28:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.29:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.29:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.30:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
    :mozilla.207:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup (quarantined).
    :mozilla.53:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexlist : Cleaned with backup (quarantined).
    :mozilla.54:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexlist : Cleaned with backup (quarantined).
    :mozilla.55:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexlist : Cleaned with backup (quarantined).
    :mozilla.56:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexlist : Cleaned with backup (quarantined).
    :mozilla.57:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexlist : Cleaned with backup (quarantined).
    :mozilla.58:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexlist : Cleaned with backup (quarantined).
    :mozilla.59:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexlist : Cleaned with backup (quarantined).
    :mozilla.60:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sexlist : Cleaned with backup (quarantined).
    :mozilla.105:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup (quarantined).
    :mozilla.173:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup (quarantined).
    :mozilla.174:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup (quarantined).
    :mozilla.175:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup (quarantined).
    :mozilla.187:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup (quarantined).
    :mozilla.30:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sextracker : Cleaned with backup (quarantined).
    :mozilla.31:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Sextracker : Cleaned with backup (quarantined).
    :mozilla.76:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup (quarantined).
    :mozilla.77:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup (quarantined).
    :mozilla.78:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup (quarantined).
    :mozilla.79:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup (quarantined).
    :mozilla.80:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup (quarantined).
    :mozilla.81:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup (quarantined).
    :mozilla.82:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup (quarantined).
    :mozilla.83:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup (quarantined).
    :mozilla.94:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup (quarantined).
    :mozilla.105:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
    :mozilla.107:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
    :mozilla.108:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
    :mozilla.109:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
    :mozilla.110:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
    :mozilla.111:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
    :mozilla.45:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
    :mozilla.46:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
    :mozilla.126:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Zedo : Cleaned with backup (quarantined).
    :mozilla.127:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Zedo : Cleaned with backup (quarantined).
    :mozilla.128:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\default\jtp1twnn.slt\cookies .txt -> TrackingCookie.Zedo : Cleaned with backup (quarantined).
    :mozilla.34:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup (quarantined).
    :mozilla.37:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup (quarantined).
    :mozilla.38:C:\Documents and Settings\nn\Application Data\Mozilla\Profiles\Default Usergg\lyglmtc6.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup (quarantined).


    ::Report end



    Here is my new Hijackthis log:

    Logfile of HijackThis v1.99.1
    Scan saved at 10:37:53 PM, on 7/19/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Windows Defender\MsMpEng.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Nhksrv.exe
    C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
    C:\WINDOWS\System32\cisvc.exe
    C:\WINDOWS\system32\CTsvcCDA.EXE
    C:\Program Files\Norton AntiVirus\navapsvc.exe
    C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
    C:\WINDOWS\System32\nvsvc32.exe
    C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\Program Files\Picasa2\PicasaMediaDetector.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Microsoft ActiveSync\wcescomm.exe
    C:\PROGRA~1\MI3AA1~1\rapimgr.exe
    C:\Program Files\SanDisk\SanDisk TransferMate\SD Monitor.exe
    C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
    C:\Program Files\ewido anti-spyware 4.0\ewido.exe
    C:\WINDOWS\explorer.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\PROGRA~1\MICROS~4\Office10\OUTLOOK.EXE
    C:\Program Files\HijackThis\HijackThis.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\WINDOWS\system32\taskmgr.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Comcast
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O3 - Toolbar: Comcast Toolbar - {4E7BD74F-2B8D-469E-93BE-BE2DF4D9AE29} - C:\PROGRA~1\COMCAS~1\COMCAS~1.DLL (file missing)
    O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
    O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
    O4 - Global Startup: Monitor.lnk = C:\Program Files\SanDisk\SanDisk TransferMate\SD Monitor.exe
    O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
    O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
    O8 - Extra context menu item: &Translate English Word - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
    O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
    O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
    O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
    O8 - Extra context menu item: Translate Page into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
    O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
    O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
    O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
    O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
    O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra button: Help - {61B0D85C-8140-4BCB-80A3-80FB6E3F46B5} - http://www.comcast.net/memberservices/ (file missing) (HKCU)
    O9 - Extra button: Support - {709B330F-7A82-417C-B6E6-32E7120EE8BC} - http://www.comcastsupport.com (file missing) (HKCU)
    O9 - Extra button: ComcastHSI - {8B725F25-5D1D-4197-8923-24A413DA462B} - http://www.comcast.net (file missing) (HKCU)
    O14 - IERESET.INF: START_PAGE_URL=http://www.comcast.net
    O16 - DPF: symsupportutil - https://www-secure.symantec.com/tech...upportutil.CAB
    O16 - DPF: {6F750200-1362-4815-A476-88533DE61D0C} (Ofoto Upload Manager Class) - http://www.kodakgallery.com/download...1/axofupld.cab
    O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
    O16 - DPF: {A8683C98-5341-421B-B23C-8514C05354F1} (FujifilmUploader Class) - http://www.ritzpix.com/upload/FujifilmUploadClient.cab
    O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - http://download.games.yahoo.com/game...ploader_v6.cab
    O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
    O23 - Service: Netropa NHK Server (Nhksrv) - Unknown owner - C:\WINDOWS\Nhksrv.exe
    O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
    O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
    O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe

  • #4
    Neal is offline Dedicated Member
    HI,


    Run hijackthis and click on scan button and check this:

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank


    Nothing open but hijackthis and click on fix checked.


    Post a new hijackthis log please. How is your computer behaving now?

  • #5
    bobomonkey is offline Junior Member
    Things are running a little better now. Still seems very, very slow to start up.



    Logfile of HijackThis v1.99.1
    Scan saved at 8:31:01 PM, on 7/20/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Windows Defender\MsMpEng.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Nhksrv.exe
    C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
    C:\WINDOWS\System32\cisvc.exe
    C:\WINDOWS\system32\CTsvcCDA.EXE
    C:\Program Files\ewido anti-spyware 4.0\guard.exe
    C:\Program Files\Norton AntiVirus\navapsvc.exe
    C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
    C:\WINDOWS\System32\nvsvc32.exe
    C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\Program Files\Picasa2\PicasaMediaDetector.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\Program Files\ewido anti-spyware 4.0\ewido.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Microsoft ActiveSync\wcescomm.exe
    C:\Program Files\SanDisk\SanDisk TransferMate\SD Monitor.exe
    C:\PROGRA~1\MI3AA1~1\rapimgr.exe
    C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
    C:\Program Files\Messenger\msmsgs.exe
    C:\PROGRA~1\MICROS~4\Office10\OUTLOOK.EXE
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Program Files\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Comcast
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O3 - Toolbar: Comcast Toolbar - {4E7BD74F-2B8D-469E-93BE-BE2DF4D9AE29} - C:\PROGRA~1\COMCAS~1\COMCAS~1.DLL (file missing)
    O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
    O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
    O4 - Global Startup: Monitor.lnk = C:\Program Files\SanDisk\SanDisk TransferMate\SD Monitor.exe
    O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
    O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
    O8 - Extra context menu item: &Translate English Word - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
    O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
    O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
    O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
    O8 - Extra context menu item: Translate Page into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
    O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
    O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
    O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
    O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
    O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra button: Help - {61B0D85C-8140-4BCB-80A3-80FB6E3F46B5} - http://www.comcast.net/memberservices/ (file missing) (HKCU)
    O9 - Extra button: Support - {709B330F-7A82-417C-B6E6-32E7120EE8BC} - http://www.comcastsupport.com (file missing) (HKCU)
    O9 - Extra button: ComcastHSI - {8B725F25-5D1D-4197-8923-24A413DA462B} - http://www.comcast.net (file missing) (HKCU)
    O14 - IERESET.INF: START_PAGE_URL=http://www.comcast.net
    O16 - DPF: symsupportutil - https://www-secure.symantec.com/tech...upportutil.CAB
    O16 - DPF: {6F750200-1362-4815-A476-88533DE61D0C} (Ofoto Upload Manager Class) - http://www.kodakgallery.com/download...1/axofupld.cab
    O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
    O16 - DPF: {A8683C98-5341-421B-B23C-8514C05354F1} (FujifilmUploader Class) - http://www.ritzpix.com/upload/FujifilmUploadClient.cab
    O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - http://download.games.yahoo.com/game...ploader_v6.cab
    O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
    O23 - Service: Netropa NHK Server (Nhksrv) - Unknown owner - C:\WINDOWS\Nhksrv.exe
    O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
    O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
    O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe

  • #6
    bobomonkey is offline Junior Member
    I am also getting a popup Internet Explorer window that says "Warning: Your computer may have critical errors in registry and file system!
    These errors can lead to computer crashes, instability, slowness, and full system failure.

    Immediate repair may be required.

    To scan your computer for errors click the "Next" button below."

    Is this legit? Should I follow its instructions?

  • #7
    Neal is offline Dedicated Member
    I would hold off on that for now, might be malicious.



    http://www.kaspersky.com/virusscanner

    Please do an online scan with Kaspersky WebScanner

    Click on Kaspersky Online Scanner

    You will be prompted to install an ActiveX component from Kaspersky, Click Yes.

    * The program will launch and then begin downloading the latest definition files:
    * Once the files have been downloaded click on NEXT
    * Now click on Scan Settings
    * In the scan settings make sure that the following are selected:
    o Scan using the following Anti-Virus database:
    - Extended (if available otherwise Standard)
    o Scan Options:
    - Scan Archives
    - Scan Mail Bases

    * Click OK
    *Now under select a target to scan:
    o Select My Computer
    * This program will start and scan your system.
    * The scan will take a while so be patient and let it run.
    * Once the scan is complete it will display if your system has been infected.
    o Now click on the Save as Text button:
    * Save the file to your desktop.
    * Copy and paste that information in your next post.


    Also...



    Open Hijackthis.

    Click the "Open the Misc Tools" section Button.

    Click the "Open Uninstall Manager" Button.

    Click the "Save list..." Button.

    Save it to your desktop. Copy and paste the contents into your reply.

  • #8
    bobomonkey is offline Junior Member
    -------------------------------------------------------------------------------
    KASPERSKY ONLINE SCANNER REPORT
    Saturday, July 22, 2006 8:06:56 PM
    Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
    Kaspersky Online Scanner version: 5.0.83.0
    Kaspersky Anti-Virus database last update: 23/07/2006
    Kaspersky Anti-Virus database records: 209264
    -------------------------------------------------------------------------------

    Scan Settings:
    Scan using the following antivirus database: extended
    Scan Archives: true
    Scan Mail Bases: true

    Scan Target - My Computer:
    A:\
    C:\
    D:\
    E:\
    F:\

    Scan Statistics:
    Total number of scanned objects: 107721
    Number of viruses found: 93
    Number of infected objects: 473 / 0
    Number of suspicious objects: 10
    Duration of the scan process: 01:40:07

    Infected Object Name / Virus Name / Last Action
    C:\Documents and Settings\All Users\Application Data\Microsoft\Windows Defender\Support\WDLog-06182006-172046.log Object is locked skipped
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\eXactAdvertisingBargainsBuddy1.zi p/msexreg.exe Suspicious: Password-protected-EXE skipped
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\eXactAdvertisingBargainsBuddy1.zi p ZIP: suspicious - 1 skipped
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\eXactAdvertisingBargainsBuddy16.z ip/msexreg.exe Suspicious: Password-protected-EXE skipped
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\eXactAdvertisingBargainsBuddy16.z ip ZIP: suspicious - 1 skipped
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\eXactAdvertisingBargainsBuddy31.z ip/msexreg.exe Suspicious: Password-protected-EXE skipped
    C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy\Recovery\eXactAdvertisingBargainsBuddy31.z ip ZIP: suspicious - 1 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Common Client\Confid.log Object is locked skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Common Client\Content.log Object is locked skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Common Client\Privacy.log Object is locked skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Common Client\Restrict.log Object is locked skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Common Client\settings.dat Object is locked skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Common Client\WebHist.log Object is locked skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\HPPAppActivity.log Object is locked skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\HPPHomePageActivity.log Object is locked skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\LiveUpdate\2006-07-22_Log.ALUSchedulerSvc.LiveUpdate Object is locked skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\00C57C0E Infected: Trojan.Win32.StartPage.ta skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0342392F Infected: Trojan.Win32.Harnig.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\04434027.class Infected: Trojan.Java.ClassLoader.k skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\054B37C6.zip/Matrix.class Infected: Trojan-Downloader.Java.OpenStream.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\054B37C6.zip ZIP: infected - 1 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\054B37C6.zip CryptFF: infected - 1 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\05A938A9.cla Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\05D93013.cla Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\05D93013.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\05D93013.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\05D93013.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\05D93013.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\05D93013.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\05D93013.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\085F29F0.exe Infected: not-a-virus:AdWare.Win32.BargainBuddy.n skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0909737A.cla Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\09B57A8F Infected: not-a-virus:AdWare.Win32.Wintol.y skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0A4D27AC.cla Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0A4D27AC.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0A4D27AC.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0A4D27AC.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0A4D27AC.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0A4D27AC.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0A4D27AC.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0A547BA5.cla Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0A5725A1.cla Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0AE53F53 Infected: Trojan-Clicker.JS.Linker.h skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0B5505EA Infected: Trojan-Downloader.Win32.Lemmy.u skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0C730AE3.tmp Infected: Trojan.Java.ClassLoader.ak skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0C8109C9.class Infected: Trojan.Java.ClassLoader.i skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0D951030.cla Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0E944A99.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0FD70EC3.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0FD70EC3.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0FD70EC3.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0FD70EC3.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0FD70EC3.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\0FD70EC3.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\10696EAC.exe Infected: Trojan.Win32.Dialer.pz skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\109D6D7D.class Infected: Trojan.Java.ClassLoader.d skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\11476CBA.exe Infected: not-a-virus:AdWare.Win32.BargainBuddy.n skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\15640384.class Infected: Trojan.Java.ClassLoader.k skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\15AF07FB.class Infected: Trojan.Java.ClassLoader.u skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\16E541E8 Infected: Trojan-Downloader.Win32.Dyfuca.bq skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\17432376.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\17E36CF8.class Infected: Trojan.Java.ClassLoader.b skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\17FD1819.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\17FD1819.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\17FD1819.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\17FD1819.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\17FD1819.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\17FD1819.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18060DB0.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1831716A.cla Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\18556318.tmp Infected: Trojan.Java.ClassLoader.d skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1AFD1759.cla Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1E8D12C0.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\22757DE7 Infected: Trojan-Clicker.Win32.VB.ca skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\23256D41.cla Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\23A1421B.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\23A1421B.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\23A1421B.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\23A1421B.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\23A1421B.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\23A1421B.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\245B4CC6.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\245B4CC6.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\245B4CC6.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\245B4CC6.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\245B4CC6.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\245B4CC6.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\245E14E8.exe Infected: Trojan-Downloader.Win32.Apropo.s skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24654ABB.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24654ABB.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24654ABB.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24654ABB.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24654ABB.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24654ABB.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24654ABB.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\246D6AAF.htm Suspicious: Exploit.HTML.CodeBaseExec skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\247946A5.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\247C70A2.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\249717E9.exe Infected: Trojan.Win32.Dialer.pz skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\249B367D.tmp Infected: Trojan-Downloader.Win32.Zlob.wp skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24A85E6E.htm Suspicious: Exploit.HTML.CodeBaseExec skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24FA05F2.exe/data0007 Infected: Trojan.Win32.Zapchast skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24FA05F2.exe/data0008 Infected: Trojan-Downloader.Win32.Zlob.fn skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24FA05F2.exe NSIS: infected - 2 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24FA05F2.exe UPX: infected - 2 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\24FA05F2.exe CryptFF: infected - 2 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\251A1BF0.htm Suspicious: Exploit.HTML.CodeBaseExec skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\251E04D1.class Infected: Trojan.Java.Femad skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\25281BD6.exe/data0007 Infected: Trojan-Clicker.Win32.Agent.gy skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\25281BD6.exe/data0008 Infected: Trojan-Downloader.Win32.Zlob.jl skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\25281BD6.exe NSIS: infected - 2 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\25281BD6.exe UPX: infected - 2 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\25281BD6.exe CryptFF: infected - 2 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\25686E99.cla Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\265A1252.class Infected: Trojan.Java.ClassLoader.b skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\272B2DAA.ocx Infected: not-a-virus:AdWare.Win32.MediaTickets.w skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\276D725B.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\284F1A7C Infected: Trojan-Downloader.Win32.WinShow.ar skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\28E42523/Counter.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\28E42523/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\28E42523/Beyond.class Infected: Trojan.Java.Femad skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\28E42523 ZIP: infected - 3 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\28E42523 CryptFF: infected - 3 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\29ED6A0B.cla Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B4923AE.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B4923AE.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B4923AE.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B4923AE.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B4923AE.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B4923AE.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B4923AE.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B4C4DAB.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B5077A7.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B51581A.exe/data0002/data0002 Infected: Trojan-Downloader.Win32.Keenval skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B51581A.exe/data0002/data0004 Infected: Trojan-Downloader.Win32.Keenval skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B51581A.exe/data0002/data0005 Infected: Trojan-Downloader.Win32.Keenval skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B51581A.exe/data0002 Infected: Trojan-Downloader.Win32.Keenval skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B51581A.exe/data0008 Infected: Trojan-Downloader.Win32.Keenval.e skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B51581A.exe/data0009 Infected: Trojan-Downloader.Win32.Keenval.e skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B51581A.exe NSIS: infected - 6 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B51581A.exe CryptFF: infected - 6 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2B7653F4.exe Infected: Trojan-Downloader.Win32.Apropo.r skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2C014396.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2C9F01DF.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2D6058D1.dll Infected: not-a-virus:AdWare.Win32.Comet.aw skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F0154A3.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F0154A3.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F0154A3.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F0154A3.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F0154A3.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F0154A3.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F416BB6.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F416BB6.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F416BB6.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F416BB6.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F416BB6.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\2F416BB6.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\312D04EF.class Infected: Trojan.Java.Femad skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\321C4A75.class Infected: Trojan.Java.ClassLoader.h skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\32712A15.exe Infected: not-a-virus:AdWare.Win32.BargainBuddy.q skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\327807A5 Infected: Trojan.Java.Binny.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\32872F91.class Infected: Trojan.Java.ClassLoader.b skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\33674088.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\33674088.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\33674088.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\33674088.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\33674088.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\33674088.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\33887D55.ocx Infected: Trojan-Downloader.Win32.VB.bo skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\35074478.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\35074478.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\35074478.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\35074478.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\35074478.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\35074478.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\35812077 Infected: Trojan.Java.Binny.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\367D3237.exe Infected: Trojan.Win32.Dialer.pz skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\37070FF2.exe Infected: not-a-virus:AdWare.Win32.BargainBuddy.q skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\374C3182.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\37503380.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\37503380.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\37503380.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\37503380.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\37503380.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\37503380.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\38565E72.cla Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B160FED.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B160FED.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B160FED.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B160FED.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B160FED.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B160FED.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B160FED.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B1939E9.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B1D63E5.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B3E7928.class Infected: Trojan.Java.Femad skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3CDF2D18.dll Infected: Trojan-Spy.Win32.Banker.u skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3D132E4B.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3D6A13DE.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3D6A13DE.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3D6A13DE.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3D6A13DE.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3D6A13DE.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3D6A13DE.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3D6A13DE.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3E083E7F.class Infected: Trojan.Java.ClassLoader.i skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F006EB6 Infected: Trojan.Win32.StartPage.og skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F1F3C05.cla Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F1F3C05.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F1F3C05.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F1F3C05.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F1F3C05.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F1F3C05.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3F1F3C05.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40546F28.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40730C9C.cla Infected: Trojan.Java.ClassLoader.f skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40730C9C.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40730C9C.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40730C9C.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40730C9C.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40730C9C.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40730C9C.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40A5688A.class Infected: Trojan.Java.ClassLoader.u skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\40B00887 Infected: Trojan-Downloader.Win32.Donn.aa skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\412E5987.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\42974BF1.exe Infected: Trojan-Downloader.Win32.Agent.ji skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\43614179.cla Infected: Trojan.Java.ClassLoader.Dummy.d skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4504267E.class Infected: Trojan.Java.ClassLoader.Dummy.e skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4504267E.zip/BlackBox.class Infected: Trojan.Java.ClassLoader.j skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4504267E.zip/Beyond.class Infected: Trojan-Dropper.Java.Beyond.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4504267E.zip/VerifierBug.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4504267E.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.d skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4504267E.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4504267E.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\458C27EA Infected: Trojan-Downloader.Win32.Dyfuca.bw skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45A050EF Infected: not-a-virus:AdWare.Win32.BiSpy.m skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\488965FE.tmp Infected: Trojan.Java.ClassLoader.h skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\489522F0.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\489522F0.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\489522F0.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\489522F0.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\489522F0.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\489522F0.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\48CA551A.dll Infected: not-a-virus:AdWare.Win32.SideStep.g skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\49EA053E Infected: Trojan-Downloader.JS.Lamdez skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4A3220EF Infected: Trojan-Downloader.Win32.Dyfuca.bw skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4A354AEB Infected: Trojan-Downloader.Win32.Delf.bj skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4A3974E7 Infected: Trojan-Downloader.Win32.Dyfuca.cj skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4A3C1EE4 Infected: Trojan-Downloader.Win32.Dyfuca.bx skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4A3F48E0 Infected: not-a-virus:AdWare.Win32.SideStep.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4A4372DD Infected: not-a-virus:AdWare.Win32.MediaTickets.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4A516108.class Infected: Trojan.Java.ClassLoader.b skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B0F7E27 Infected: not-a-virus:AdWare.Win32.180Solutions skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B2F5606.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B3E003D.class Infected: Trojan.Java.ClassLoader.k skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B9C14F9.zip/BlackBox.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B9C14F9.zip/VerifierBug.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B9C14F9.zip/Beyond.class Infected: Trojan-Downloader.Java.OpenConnection.aa skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B9C14F9.zip ZIP: infected - 3 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4B9C14F9.zip CryptFF: infected - 3 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4BA47645.class Infected: Trojan.Java.Femad skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4BFE39FD.cla Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4BFE39FD.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4BFE39FD.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4BFE39FD.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4BFE39FD.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4BFE39FD.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4BFE39FD.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4C0163FA.cla Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4CC91B05.cla Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4CC91B05.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4CC91B05.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4CC91B05.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4CC91B05.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4CC91B05.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4CC91B05.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4D6B3343.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4D725AF8.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4E360A1C.cla Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4E360A1C.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4E360A1C.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4E360A1C.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4E360A1C.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4E360A1C.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4E360A1C.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4E393419.cla Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4E3D5E15.cla Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4EB56510.zip/BlackBox.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4EB56510.zip/VerifierBug.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4EB56510.zip/Beyond.class Infected: Trojan-Downloader.Java.OpenConnection.aa skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4EB56510.zip ZIP: infected - 3 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4EB56510.zip CryptFF: infected - 3 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4EC46E9E.cla Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\511C76F9 Infected: not-a-virus:AdWare.Win32.WebSearch.f skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\511C76F9.EXE/WISE0008.BIN Infected: Trojan-Downloader.Win32.Adroar skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\511C76F9.EXE/WISE0009.BIN Infected: Trojan-Downloader.Win32.Adroar skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\511C76F9.EXE WiseSFX: infected - 2 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\511C76F9.EXE CryptFF: infected - 2 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\511D63E9 Infected: Trojan-Downloader.Win32.Dyfuca.cj skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\51A62F63.cla Infected: Trojan.Java.ClassLoader.f skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\51A62F63.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\51A62F63.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\51A62F63.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\51A62F63.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\51A62F63.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\51A62F63.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\52AE7952.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\53E7255A.zip/BlackBox.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\53E7255A.zip/VerifierBug.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\53E7255A.zip/Beyond.class Infected: Trojan-Downloader.Java.OpenConnection.aa skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\53E7255A.zip ZIP: infected - 3 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\53E7255A.zip CryptFF: infected - 3 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\53F93258.DLL Infected: not-a-virus:AdWare.Win32.Virtumonde.cd skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56000CC1.zip/Beyond.class Infected: Trojan.Java.Needy.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56000CC1.zip/BlackBox.class Infected: Trojan.Java.Bytverify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56000CC1.zip/VerifierBug.class Infected: Trojan.Java.Needy.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56000CC1.zip ZIP: infected - 3 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56000CC1.zip CryptFF: infected - 3 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\565B2D4F.cla Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56684634.class Infected: Trojan.Java.ClassLoader.k skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56AD2C72.zip/BlackBox.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56AD2C72.zip/VerifierBug.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56AD2C72.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.d skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56AD2C72.zip/Beyond.class Infected: Trojan-Downloader.Java.OpenStream.d skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56AD2C72.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56AD2C72.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56D662CA.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56D662CA.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56D662CA.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56D662CA.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56D662CA.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\56D662CA.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\57340E7D.cla Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\57340E7D.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\57340E7D.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\57340E7D.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\57340E7D.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\57340E7D.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\57340E7D.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\573434E3.cla Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\573A6275.cla Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\573E0C72.cla Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\57B34B52.class Infected: Trojan.Java.ClassLoader.l skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\582F7A26.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\582F7A26.zip/BlackBox.class Infected: Trojan.Java.ClassLoader.j skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\582F7A26.zip/Beyond.class Infected: Trojan-Dropper.Java.Beyond.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\582F7A26.zip/VerifierBug.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\582F7A26.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.d skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\582F7A26.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\582F7A26.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\58364E1F.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5A1E39F6.exe Infected: not-a-virus:AdWare.Win32.BargainBuddy.n skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5A386CC1 Infected: Trojan.Win32.Harnig.b skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5A7A7E99.cla Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5B813406 Infected: Trojan.Java.Femad skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C7E636B.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C7E636B.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C7E636B.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C7E636B.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C7E636B.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5C7E636B.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5CDD6853.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5DD7272C.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5DFB7504.class Infected: Trojan.Java.ClassLoader.i skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E226CD9.htm Suspicious: Exploit.HTML.Mht skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E2516D6.class Infected: Trojan.Java.ClassLoader.i skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E633491.class Infected: Trojan.Java.ClassLoader.i skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E7958C3.dll Infected: not-a-virus:AdWare.Win32.WinAD.x skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E7C02C0.exe Infected: not-a-virus:AdWare.Win32.BargainBuddy.n skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E7F2CBC.exe Infected: Trojan-Downloader.Win32.Apropo.u skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E8256B9.exe Infected: not-a-virus:AdWare.Win32.BargainBuddy.n skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E8600B5.dll Infected: not-a-virus:AdWare.Win32.Apropos.e skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E8600B5.exe Infected: not-a-virus:AdWare.Win32.Apropos.f skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E892AB1.exe Infected: not-a-virus:AdWare.Win32.BargainBuddy.q skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E892AB1.tmp Infected: not-a-virus:AdWare.Win32.180Solutions skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E8C54AE.exe Infected: not-a-virus:AdWare.Win32.BargainBuddy.q skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E8C54AE.srg Infected: not-a-virus:AdWare.Win32.BargainBuddy.q skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E8C54AE.vxd Infected: not-a-virus:AdWare.Win32.BargainBuddy.q skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E8F7EAA.dll Infected: not-a-virus:AdWare.Win32.BargainBuddy.l skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E9328A7.dll Infected: not-a-virus:AdWare.Win32.180Solutions skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E9328A7.exe Infected: Trojan-Downloader.Win32.Agent.ji skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E9652A3.exe Infected: Trojan-Clicker.Win32.VB.ex skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60A717F8.class Infected: Trojan.Java.ClassLoader.h skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60AA41F5.class Infected: Trojan.Java.ClassLoader.d skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60C357AC.class Infected: Trojan.Java.ClassLoader.d skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\60FC1A87.cla Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\61B75CAC Infected: Trojan-Downloader.Win32.Wintool.f skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\62C227A7.class Infected: Trojan.Java.Femad skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\632A7AD3.class Infected: Trojan.Java.ClassLoader.Dummy.e skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\632A7AD3.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\632A7AD3.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\632A7AD3.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\632A7AD3.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\632A7AD3.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\632A7AD3.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\63926C96.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65693C7E.class Infected: Trojan.Java.Femad skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65AE75F5.exe/stream/data0001 Infected: not-a-virus:AdWare.Win32.BargainBuddy.l skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65AE75F5.exe/stream/data0002 Infected: not-a-virus:AdWare.Win32.BargainBuddy.q skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65AE75F5.exe/stream/data0003 Infected: not-a-virus:AdWare.Win32.BargainBuddy.q skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65AE75F5.exe/stream/data0005 Infected: Trojan-Clicker.Win32.VB.ex skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65AE75F5.exe/stream/data0006/stream/data0001 Infected: not-a-virus:AdWare.Win32.BargainBuddy.n skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65AE75F5.exe/stream/data0006/stream Infected: not-a-virus:AdWare.Win32.BargainBuddy.n skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65AE75F5.exe/stream/data0006 Infected: not-a-virus:AdWare.Win32.BargainBuddy.n skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65AE75F5.exe/stream/data0007/stream/data0002 Infected: not-a-virus:AdWare.Win32.BargainBuddy.y skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65AE75F5.exe/stream/data0007/stream/data0005 Infected: not-a-virus:AdWare.Win32.BargainBuddy.n skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65AE75F5.exe/stream/data0007/stream/data0006 Infected: not-a-virus:AdWare.Win32.BargainBuddy.n skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65AE75F5.exe/stream/data0007/stream/data0007 Infected: not-a-virus:AdWare.Win32.BargainBuddy.n skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65AE75F5.exe/stream/data0007/stream/data0008 Infected: not-a-virus:AdWare.Win32.BargainBuddy.l skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65AE75F5.exe/stream/data0007/stream Infected: not-a-virus:AdWare.Win32.BargainBuddy.l skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65AE75F5.exe/stream/data0007 Infected: not-a-virus:AdWare.Win32.BargainBuddy.l skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65AE75F5.exe/stream Infected: not-a-virus:AdWare.Win32.BargainBuddy.l skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65AE75F5.exe NSIS: infected - 15 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\65AE75F5.exe CryptFF: infected - 15 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\667B6837.cla Infected: Trojan.Java.ClassLoader.Dummy.d skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\66B43E43.exe Infected: Trojan-Downloader.Win32.Zlob.wp skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\67592A65.class Infected: Trojan.Java.ClassLoader.k skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\68FB17DE Infected: Trojan-Downloader.Win32.Dyfuca.bq skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\695C4A02.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\695C4A02.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\695C4A02.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\695C4A02.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\695C4A02.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\695C4A02.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\698164FD.tmp Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\698738F5.tmp Infected: Trojan-Downloader.Java.OpenStream.u skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B6526EF.class Infected: Trojan.Java.ClassLoader.u skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B6D5BBC.zip/Bubble.class Infected: Trojan.Java.ClassLoader.Dummy.e skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B6D5BBC.zip/VerifierBug.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B6D5BBC.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B6D5BBC.zip/Beyond.class Infected: Trojan-Downloader.Java.OpenStream.h skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B6D5BBC.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6B6D5BBC.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6BA73A67.exe Infected: Trojan-Spy.Win32.Banker.w skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6BBE67D3.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6D330C31.cla Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E9018B8.zip/Beyond.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E9018B8.zip/BlackBox.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E9018B8.zip/VerifierBug.class Infected: Trojan.Java.Needy.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E9018B8.zip ZIP: infected - 3 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\6E9018B8.zip CryptFF: infected - 3 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\702F18D5.zip/GetAccess.class Infected: Trojan.Java.ClassLoader.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\702F18D5.zip/InsecureClassLoader.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\702F18D5.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\702F18D5.zip/Installer.class Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\702F18D5.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\702F18D5.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\70854BA4.exe/WISE0007.BIN Infected: Trojan-Downloader.Win32.VB.ah skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\70854BA4.exe WiseSFX: infected - 1 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\70854BA4.exe CryptFF: infected - 1 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\713F31F3.exe Infected: not-a-virus:AdWare.Win32.BargainBuddy.q skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72007124.class Infected: Trojan.Java.ClassLoader.Dummy.a skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\72B37D22.class Infected: Trojan.Java.Femad skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74461BF6.zip/BlackBox.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74461BF6.zip/VerifierBug.class Infected: Exploit.Java.ByteVerify skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74461BF6.zip/Dummy.class Infected: Trojan.Java.ClassLoader.Dummy.d skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74461BF6.zip/Beyond.class Infected: Trojan-Downloader.Java.OpenStream.d skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74461BF6.zip ZIP: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\74461BF6.zip CryptFF: infected - 4 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\77362564.dll Infected: not-a-virus:AdWare.Win32.SideStep.c skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7AE94454.tmp Infected: Trojan.Java.ClassLoader.z skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7B6829C7.EXE/WISE0007.BIN Infected: Trojan-Downloader.Win32.VB.ah skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7B6829C7.EXE WiseSFX: infected - 1 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7B6829C7.EXE CryptFF: infected - 1 skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7CCF6DF2.exe Infected: Trojan.Win32.Krepper.f skipped
    C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\7F573625.tmp Infected: Trojan-Downloader.Java.OpenConnection.v skipped
    C:\Documents and Settings\LocalService\Cookies\INDEX.DAT Object is locked skipped
    C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
    C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
    C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\INDEX.DAT Object is locked skipped
    C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\INDEX.DAT Object is locked skipped
    C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
    C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
    C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
    C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
    C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
    C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
    C:\Documents and Settings\nn\Application Data\$_hpcst$.hpc Object is locked skipped
    C:\Documents and Settings\nn\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\arc hive.jar-62c709b0-14f001fd.zip/binny/binny.class Infected: Trojan.Java.Binny.a skipped
    C:\Documents and Settings\nn\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\arc hive.jar-62c709b0-14f001fd.zip ZIP: infected - 1 skipped
    C:\Documents and Settings\nn\Application Data\Symantec\PendingAlertsQueue.log Object is locked skipped
    C:\Documents and Settings\nn\Cookies\INDEX.DAT Object is locked skipped
    C:\Documents and Settings\nn\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
    C:\Documents and Settings\nn\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
    C:\Documents and Settings\nn\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{72304AD6-3CA7-47EE-BD51-BA1BF1D88B42} Object is locked skipped
    C:\Documents and Settings\nn\Local Settings\History\History.IE5\INDEX.DAT Object is locked skipped
    C:\Documents and Settings\nn\Local Settings\History\History.IE5\MSHist012006072220060 723\index.dat Object is locked skipped
    C:\Documents and Settings\nn\Local Settings\Temp\WCESLog.log Object is locked skipped
    C:\Documents and Settings\nn\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
    C:\Documents and Settings\nn\ntuser.dat Object is locked skipped
    C:\Documents and Settings\nn\ntuser.dat.LOG Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\Antispam\Log\Spam.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcrst.dll Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsys.dll Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SNDALRT.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SNDCON.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SNDDBG.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SNDFW.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SNDIDS.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SNDSYS.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SPBBC\LOGS\BBConfig.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SPBBC\LOGS\BBDebug.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SPBBC\LOGS\BBDetect.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SPBBC\LOGS\BBNotify.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SPBBC\LOGS\BBRefr.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SPBBC\LOGS\BBSetCfg.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SPBBC\LOGS\BBSetCfg2.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SPBBC\LOGS\BBSetDev.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SPBBC\LOGS\BBSetLoc.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SPBBC\LOGS\BBSetUsr.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SPBBC\LOGS\BBSMNot.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SPBBC\LOGS\BBSMReg.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SPBBC\LOGS\BBSMRSt.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SPBBC\LOGS\BBStHash.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SPBBC\LOGS\BBStMSI.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SPBBC\LOGS\BBValid.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SPBBC\LOGS\SPPolicy.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SPBBC\LOGS\SPStart.log Object is locked skipped
    C:\Program Files\Common Files\Symantec Shared\SPBBC\LOGS\SPStop.log Object is locked skipped
    C:\Program Files\Kodak\Kodak EasyShare software\bin\Catalog\EasyShare.me Object is locked skipped
    C:\Program Files\Kodak\Kodak EasyShare software\bin\Catalog\EasyShare.mm Object is locked skipped
    C:\Program Files\Microsoft AntiSpyware\Quarantine\4E3A63AE-B20F-4318-A697-6E4CAB\83101DA8-B3EC-4582-BBBE-EC5849 Infected: not-a-virus:AdWare.Win32.MyWebSearch.ao skipped
    C:\Program Files\Microsoft AntiSpyware\Quarantine\6543479C-7679-4D7B-B460-747159\62E6B9C9-747A-46BB-974B-837A0F Infected: not-a-virus:AdWare.Win32.MyWay.j skipped
    C:\Program Files\Microsoft AntiSpyware\Quarantine\6543479C-7679-4D7B-B460-747159\CBADFBAD-CD5A-4CDA-8A0F-5C5F19 Infected: not-a-virus:AdWare.Win32.MyWay.j skipped
    C:\Program Files\Mozilla Firefox\plugins\NPMySrWB.dll Infected: not-a-virus:AdWare.Win32.MyWebSearch.i skipped
    C:\Program Files\Norton AntiVirus\AVApp.log Object is locked skipped
    C:\Program Files\Norton AntiVirus\AVError.log Object is locked skipped
    C:\Program Files\Norton AntiVirus\AVVirus.log Object is locked skipped
    C:\Program Files\Norton AntiVirus\Savrt\0588NAV~.TMP Object is locked skipped
    C:\Program Files\Norton AntiVirus\Savrt\0845NAV~.TMP Object is locked skipped
    C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP778\A0187927.exe/data0007 Infected: Trojan.Win32.Zapchast skipped
    C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP778\A0187927.exe/data0008 Infected: Trojan-Downloader.Win32.Zlob.fn skipped
    C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP778\A0187927.exe NSIS: infected - 2 skipped
    C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP778\A0187927.exe UPX: infected - 2 skipped
    C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP837\A0193154.exe Infected: Trojan.Win32.Dialer.pz skipped
    C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP849\A0195423.dll Infected: Packed.Win32.Klone.g skipped
    C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP871\A0196107.DLL Infected: not-a-virus:AdWare.Win32.MyWebSearch.i skipped
    C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP871\A0196108.DLL Infected: not-a-virus:AdWare.Win32.MyWebSearch.l skipped
    C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP871\A0196126.dll Infected: Trojan-Spy.Win32.VBStat.d skipped
    C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP871\A0196127.dll Infected: not-a-virus:AdWare.Win32.Coupons.h skipped
    C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP871\A0196128.exe Infected: not-a-virus:AdWare.Win32.MediaTickets.w skipped
    C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP873\A0196152.sys Infected: Trojan.Win32.Agent.ny skipped
    C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP876\A0196289.sys Infected: Trojan.Win32.Agent.ny skipped
    C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP877\A0196297.sys Infected: Trojan.Win32.Agent.ny skipped
    C:\System Volume Information\_restore{21D7D692-4662-421F-93B0-877BC3820711}\RP877\change.log Object is locked skipped
    C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
    C:\WINDOWS\Downloaded Program Files\SbCIe026.dll Infected: not-a-virus:AdWare.Win32.SideStep.c skipped
    C:\WINDOWS\SchedLgU.Txt Object is locked skipped
    C:\WINDOWS\SoftwareDistribution\ReportingEvents.lo g Object is locked skipped
    C:\WINDOWS\Sti_Trace.log Object is locked skipped
    C:\WINDOWS\SYSTEM32\biU.exe Infected: Trojan-Dropper.Win32.Agent.og skipped
    C:\WINDOWS\SYSTEM32\CatRoot2\edb.log Object is locked skipped
    C:\WINDOWS\SYSTEM32\CatRoot2\tmp.edb Object is locked skipped
    C:\WINDOWS\SYSTEM32\CONFIG\AppEvent.Evt Object is locked skipped
    C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT Object is locked skipped
    C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT.LOG Object is locked skipped
    C:\WINDOWS\SYSTEM32\CONFIG\SAM Object is locked skipped
    C:\WINDOWS\SYSTEM32\CONFIG\SAM.LOG Object is locked skipped
    C:\WINDOWS\SYSTEM32\CONFIG\SecEvent.Evt Object is locked skipped
    C:\WINDOWS\SYSTEM32\CONFIG\SECURITY Object is locked skipped
    C:\WINDOWS\SYSTEM32\CONFIG\SECURITY.LOG Object is locked skipped
    C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE Object is locked skipped
    C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE.LOG Object is locked skipped
    C:\WINDOWS\SYSTEM32\CONFIG\SysEvent.Evt Object is locked skipped
    C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM Object is locked skipped
    C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM.LOG Object is locked skipped
    C:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Cookies\I NDEX.DAT Object is locked skipped
    C:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Local Settings\History\History.IE5\INDEX.DAT Object is locked skipped
    C:\WINDOWS\SYSTEM32\CONFIG\systemprofile\Local Settings\Temporary Internet Files\Content.IE5\INDEX.DAT Object is locked skipped
    C:\WINDOWS\SYSTEM32\DRIVERS\DP.sys Infected: Trojan.Win32.Agent.ny skipped
    C:\WINDOWS\SYSTEM32\H323LOG.TXT Object is locked skipped
    C:\WINDOWS\SYSTEM32\ijwpwulw.exe Infected: Trojan.Win32.Agent.ny skipped
    C:\WINDOWS\SYSTEM32\nlocebxy.exe Infected: Trojan.Win32.Agent.ny skipped
    C:\WINDOWS\SYSTEM32\vjjrmohj.exe Infected: Trojan.Win32.Agent.ny skipped
    C:\WINDOWS\SYSTEM32\vvmlcgjs.exe Infected: Trojan.Win32.Agent.ny skipped
    C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\INDEX.BTR Object is locked skipped
    C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\INDEX.MAP Object is locked skipped
    C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING.VER Object is locked skipped
    C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING1.MA P Object is locked skipped
    C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING2.MA P Object is locked skipped
    C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\OBJECTS.DAT A Object is locked skipped
    C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\OBJECTS.MAP Object is locked skipped
    C:\WINDOWS\WIADEBUG.LOG Object is locked skipped
    C:\WINDOWS\WIASERVC.LOG Object is locked skipped
    C:\WINDOWS\WindowsUpdate.log Object is locked skipped

    Scan process completed.


    I followed the instructions for the Hijackthis startup list, but I cannot choose where to save it and I can't find it once I save it...

  • #9
    Neal is offline Dedicated Member
    You can empty quarantine folders if you want to in symantec and microsoft anti-spy and spybot.

    We will clear system restore as a last step.




    Please download the Killbox by Option^Explicit.

    Note:In the event you already have Killbox, this is a new version that I need you to download.
    • Save it to your desktop.
    • Please double-click Killbox.exe to run it.
    • Select
      • "Delete on Reboot
      • Then click on either the "All Files" button if there is more than 1 item to Delete.
    • Please copy the file path(s) below to the clipboard by highlighting ALL of them and pressing CTRL + C

      C:\WINDOWS\SYSTEM32\ijwpwulw.exe
      C:\WINDOWS\SYSTEM32\nlocebxy.exe
      C:\WINDOWS\SYSTEM32\vjjrmohj.exe
      C:\WINDOWS\SYSTEM32\vvmlcgjs.exe




    • Return to Killbox, go to the File menu, and choose "Paste from Clipboard".
    • Click the red-and-white "Delete File" button. Click "Yes" at the Delete on Reboot prompt. Click "No" at the Pending Operations prompt.
    If your computer does not restart automatically, please restart it manually.


    Post a new hijackthis log with feed back on how your computer is behaving now.

  • #10
    bobomonkey is offline Junior Member
    Save 20% on AVG Internet Security 2012 Suite!
    Here is my new JijackThis log. My computer will startup, I'll hear the Windows music, but then all I see is my background for 2-3 minutes. Then, when I double click on Outlook or Internet Explorer, it thinks for 30-45 seconds before opening the window. Any suggestions?



    Logfile of HijackThis v1.99.1
    Scan saved at 7:00:53 PM, on 7/23/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Windows Defender\MsMpEng.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Nhksrv.exe
    C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
    C:\WINDOWS\System32\cisvc.exe
    C:\WINDOWS\system32\CTsvcCDA.EXE
    C:\Program Files\Norton AntiVirus\navapsvc.exe
    C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
    C:\WINDOWS\System32\nvsvc32.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\Windows Defender\MSASCui.exe
    C:\Program Files\ewido anti-spyware 4.0\ewido.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    C:\Program Files\Common Files\DataViz\DvzIncMsgr.exe
    C:\Program Files\Digital Line Detect\DLG.exe
    C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
    C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
    C:\Program Files\SanDisk\SanDisk TransferMate\SD Monitor.exe
    C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
    C:\Program Files\HijackThis\HijackThis.exe
    C:\PROGRA~1\MICROS~4\Office10\OUTLOOK.EXE
    C:\Program Files\Messenger\msmsgs.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.yahoo.com
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = about:blank
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Comcast
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = *.local
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O3 - Toolbar: Comcast Toolbar - {4E7BD74F-2B8D-469E-93BE-BE2DF4D9AE29} - C:\PROGRA~1\COMCAS~1\COMCAS~1.DLL (file missing)
    O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
    O4 - HKLM\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKCU\..\Run: [Weather] C:\Program Files\AWS\WeatherBug\Weather.exe 1
    O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
    O4 - Startup: HotSync Manager.lnk.disabled
    O4 - Global Startup: DataViz Inc Messenger.lnk = C:\Program Files\Common Files\DataViz\DvzIncMsgr.exe
    O4 - Global Startup: Digital Line Detect.lnk = ?
    O4 - Global Startup: HotSync Manager.lnk.disabled
    O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
    O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
    O4 - Global Startup: Monitor.lnk = C:\Program Files\SanDisk\SanDisk TransferMate\SD Monitor.exe
    O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
    O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
    O8 - Extra context menu item: &Translate English Word - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
    O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
    O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
    O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
    O8 - Extra context menu item: Translate Page into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
    O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
    O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
    O9 - Extra button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:\Program Files\Bonjour\ExplorerPlugin.dll
    O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
    O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
    O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra button: Help - {61B0D85C-8140-4BCB-80A3-80FB6E3F46B5} - http://www.comcast.net/memberservices/ (file missing) (HKCU)
    O9 - Extra button: Support - {709B330F-7A82-417C-B6E6-32E7120EE8BC} - http://www.comcastsupport.com (file missing) (HKCU)
    O9 - Extra button: ComcastHSI - {8B725F25-5D1D-4197-8923-24A413DA462B} - http://www.comcast.net (file missing) (HKCU)
    O10 - Unknown file in Winsock LSP: c:\program files\bonjour\mdnsnsp.dll
    O14 - IERESET.INF: START_PAGE_URL=http://www.comcast.net
    O16 - DPF: symsupportutil - https://www-secure.symantec.com/tech...upportutil.CAB
    O16 - DPF: {00000000-0000-0000-0000-100000000003} -
    O16 - DPF: {0837121A-6472-43BD-8A40-D9221FF1C4CE} -
    O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/par...an_unicode.cab
    O16 - DPF: {2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} -
    O16 - DPF: {640B39C1-D713-464F-92C3-75BD972B95EE} -
    O16 - DPF: {6F750200-1362-4815-A476-88533DE61D0C} (Ofoto Upload Manager Class) - http://www.kodakgallery.com/download...1/axofupld.cab
    O16 - DPF: {74CD40EA-EF77-4BAD-808A-B5982DA73F20} -
    O16 - DPF: {7FE26BE2-B923-4B41-9834-E84DA1CC1F96} -
    O16 - DPF: {9522B3FB-7A2B-4646-8AF6-36E7F593073C} -
    O16 - DPF: {9600F64D-755F-11D4-A47F-0001023E6D5A} (Shutterfly Picture Upload Plugin) - http://web1.shutterfly.com/downloads/Uploader.cab
    O16 - DPF: {A8683C98-5341-421B-B23C-8514C05354F1} (FujifilmUploader Class) - http://www.ritzpix.com/upload/FujifilmUploadClient.cab
    O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - http://download.games.yahoo.com/game...ploader_v6.cab
    O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
    O23 - Service: Bonjour Service - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
    O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
    O23 - Service: Netropa NHK Server (Nhksrv) - Unknown owner - C:\WINDOWS\Nhksrv.exe
    O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
    O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
    O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
    O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe

  • + Reply to Thread
    Page 1 of 3 1 2 3 LastLast

    Similar Threads