| Home Forum Radio Memberlist Help Search Quick Links |
| Forum Index » Internet » Spyware / Virus Removal » Pop-up crazy |
| Spyware / Virus Removal Spyware, virus, browser hijack and other malware removal. |
![]() |
![]() |
|
Thread Tools | Display Modes | ![]() |
|
#1
|
|||
|
|||
|
Hello,
New to this forum, so please understand my ignorance. I am getting hammered with unsolicited pop-ups even with no browser active. I ran hijack this and also removed suspect files, however I have some items I cannot get rid of (e.g. elitepeg32.exe). Can you please review my log and offer any assistance. Much Appreciated. Regards MOJET Logfile of HijackThis v1.99.1 Scan saved at 7:32:09 PM, on 3/22/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\System32\atievxx.exe C:\Program Files\NavNT\defwatch.exe C:\Program Files\NavNT\rtvscan.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\MsgSys.EXE C:\WINDOWS\system32\ctfmon.exe C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe C:\PROGRA~1\NavNT\vptray.exe C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe C:\Program Files\Internet Explorer\iexplore.exe C:\HJT\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe" O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\NavNT\vptray.exe O4 - HKLM\..\Run: [etbrun] C:\windows\system32\elitepeg32.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html O20 - Winlogon Notify: NavLogon - C:\WINDOWS\System32\NavLogon.dll O23 - Service: DefWatch - Symantec Corporation - C:\Program Files\NavNT\defwatch.exe O23 - Service: Norton AntiVirus Client (Norton AntiVirus Server) - Symantec Corporation - C:\Program Files\NavNT\rtvscan.exe |
|
|
|
#2
|
||||
|
||||
|
First lets rescan again with hijack, insert a check nxt to this entry:
O4 - HKLM\..\Run: [etbrun] C:\windows\system32\elitepeg32.exe Then close all other browser windows and click "fix checked" Now reboot into safe mode http://www.spyware911.net/forum/index.php?...age&pg=safemode Set the system to show hidden files & folders http://www.spyware911.net/forum/index.php?...ge&pg=showfiles Now use windows explorer, to find then delete: C:\windows\system32\elitepeg32.exe Reboot and rescan with hijack then post a fresh log. |
|
#3
|
|||
|
|||
|
Tried it again, however I still have the elitepeg32 file appearing even after booting in safe and deleting (also deleted from recycle bin). Here is the HJT log after bringing my system back up again.
Logfile of HijackThis v1.99.1 Scan saved at 3:04:57 PM, on 3/25/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\ctfmon.exe C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe C:\PROGRA~1\NavNT\vptray.exe C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe C:\WINDOWS\System32\atievxx.exe C:\Program Files\NavNT\defwatch.exe C:\Program Files\NavNT\rtvscan.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\MsgSys.EXE C:\WINDOWS\system32\wuauclt.exe C:\HJT\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe" O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\NavNT\vptray.exe O4 - HKLM\..\Run: [etbrun] C:\windows\system32\elitepeg32.exe O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html O20 - Winlogon Notify: NavLogon - C:\WINDOWS\System32\NavLogon.dll O23 - Service: DefWatch - Symantec Corporation - C:\Program Files\NavNT\defwatch.exe O23 - Service: Norton AntiVirus Client (Norton AntiVirus Server) - Symantec Corporation - C:\Program Files\NavNT\rtvscan.exe Any other advice?? Again, appreciate all the help Mo |
|
#4
|
||||
|
||||
|
Click here http://www.mwti.net/antivirus/free_utilities.asp
to download eScan's mwav application. Double-click it to run it, select all local drives, scan all files, press 'scan' and when it is completed, anything found will be displayed in the lower pane. Highlight it, CTRL C and paste it in your next reply. |
|
#5
|
|||
|
|||
|
Holy Crap Mobo!! It may be a while, I am about 4K files into the scan and it has uncovered 40 viruses already. And I thought I was protected with Norton, I have an update and scan everyday...but I am glad there are experts like you out there. I will post when complete.
|
|
#6
|
||||
|
||||
|
Ill be here waiting.
|
|
#7
|
|||
|
|||
|
Here is the info:
File C:\WINDOWS\mm15201518.Stub.exe infected by "not-a-virus:AdWare.EZula.ah" Virus. Action Taken: No Action Taken. File C:\WINDOWS\pi1_25.exe infected by "Trojan-Downloader.Win32.Small.afq" Virus. Action Taken: No Action Taken. File C:\WINDOWS\sskb5.exe infected by "Trojan-Dropper.Win32.SurfSide.a" Virus. Action Taken: No Action Taken. File C:\WINDOWS\systb.exe infected by "not-a-virus:AdWare.ToolBar.ImiBar.d" Virus. Action Taken: No Action Taken. File C:\WINDOWS\woinstall.exe infected by "not-a-virus:AdWare.EZula.ak" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\20007.exe infected by "not-a-virus:AdWare.WildTangent.DownloadWare" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\Busan.exe infected by "Trojan-PSW.Win32.Agent.h" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\cmpgen.exe infected by "Trojan-Downloader.Win32.Apropo.t" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\cxtpls_loader.exe infected by "Trojan-Downloader.Win32.Apropo.r" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\dllautou.exe infected by "Trojan-Downloader.Win32.Apropo.t" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\dun.exe infected by "not-a-virus:AdWare.DealHelper.x" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\e6f1873b.dll infected by "Trojan-Downloader.Win32.Braidupdate.d" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\exp.exe infected by "Trojan-Downloader.Win32.Small.abd" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\Giqzdt.exe infected by "not-a-virus:AdWare.DealHelper.x" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\installer_MARKETING18.exe infected by "Trojan-Dropper.Win32.Agent.hl" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\pop2.exe infected by "not-a-virus:AdWare.WinAD.af" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\prutpct.exe infected by "Trojan-Spy.Win32.VB.eh" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\saie1108.exe infected by "Trojan-Dropper.Win32.Small.mr" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\SSK_B5 Verticlick 5.EXE infected by "Trojan-Downloader.Win32.Small.qn" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\temperror32.dat infected by "Trojan.Win32.StartPage.nk" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\untav.exe infected by "Trojan-Downloader.Win32.Agent.ji" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\VCMnet9.exe infected by "Trojan-Downloader.Win32.Small.aly" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\Vlskvs.exe infected by "not-a-virus:AdWare.DealHelper.z" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\vpfmud.exe infected by "not-a-virus:AdWare.Adstart.i" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\vpfmuf.exe infected by "not-a-virus:AdWare.Adstart.d" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\wintask.exe infected by "Trojan-Downloader.Win32.Small.abd" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\wowckbox.exe infected by "Trojan-Downloader.Win32.Agent.ji" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\!update.exe infected by "not-a-virus:AdWare.PurityScan.ap" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\adlinstallwin32.e xe infected by "not-a-virus:AdWare.Adstart.c" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\i112E.tmp infected by "not-a-virus:AdWare.SurfSide.d" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\i1240.tmp infected by "not-a-virus:AdWare.SurfSide.a" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\i12F9.tmp infected by "not-a-virus:AdWare.SurfSide.a" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\i45.tmp infected by "not-a-virus:AdWare.SurfSide.a" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\i64D.tmp infected by "not-a-virus:AdWare.SurfSide.a" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\ICD1.tmp\AdToolsX.d ll infected by "not-a-virus:AdWare.WinAD.x" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\ICD2.tmp\mm63.ocx infected by "Trojan-Downloader.Win32.VB.ez" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\installer_MARKETING 18.exe infected by "Trojan-Downloader.Win32.Adload.a" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\randreco.exe infected by "Trojan-Dropper.Win32.Agent.ch" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\SskUpdater.exe infected by "not-a-virus:AdWare.TotalVelocity.v" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\suicidetb.exe infected by "not-a-virus:AdWare.ToolBar.EliteBar.z" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\2DKPMPOT\mm15201518.Stub[1].exe infected by "not-a-virus:AdWare.EZula.ah" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\2DKPMPOT\package_adp_SIAC[1].exe infected by "not-a-virus:AdWare.BargainBuddy.l" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\2DKPMPOT\shop1004[1].exe infected by "not-a-virus:AdWare.Sahat.m" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\2DKPMPOT\sixtypopsix[1].exe infected by "Trojan.Win32.LowZones.am" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\CA4WPAFH\aun_0018[1].exe infected by "Trojan-Downloader.Win32.Small.akz" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\IHSVORUJ\aun_0032[1].exe infected by "Trojan-Downloader.Win32.Small.akz" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\IHSVORUJ\diamond[1].cab infected by "Trojan-Downloader.Win32.VB.ez" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\IHSVORUJ\loader2[1].ocx infected by "Trojan-Downloader.Win32.Agent.ex" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\IHSVORUJ\MediaAccK[1].exe infected by "not-a-virus:AdWare.WinAD.af" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\IHSVORUJ\package_MARKETING18[1].exe infected by "not-a-virus:AdWare.BargainBuddy.q" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\IHSVORUJ\sskb5[1].exe infected by "Trojan-Dropper.Win32.SurfSide.a" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\IHSVORUJ\track2[1].htm infected by "Exploit.HTML.Mht" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\IHSVORUJ\ucmoreiex[1].exe infected by "not-a-virus:AdWare.ToolBar.Ucmore.a" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\AproposClientInstaller[1].exe infected by "Trojan-Downloader.Win32.Apropo.s" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\installer_SIAC[1].exe infected by "Trojan-Downloader.Win32.Adload.a" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\mmviewer_101[1].cab infected by "Trojan-Downloader.Win32.Agent.cu" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\protector_update[1].exe infected by "Trojan.Win32.StartPage.nk" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\sideb[1].exe infected by "not-a-virus:AdWare.ToolBar.EliteBar.z" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\stats25[1].htm infected by "Exploit.HTML.Mht" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\stats2[1].htm infected by "Exploit.HTML.Mht" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\TBPSSvc[1].cab infected by "not-a-virus:AdWare.WebSearch.f" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\thin-143-1-x-x[1].exe infected by "not-a-virus:AdWare.BetterInternet" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\unstall[1].exe infected by "not-a-virus:AdWare.MediaMotor.c" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\whCC-GIANT[1].exe infected by "not-a-virus:AdWare.WebHancer.351" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\LYF92FKZ\aun_0029[1].exe infected by "Trojan-Downloader.Win32.Small.akz" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\YX2H6HGB\!update-1634[1].0000 infected by "not-a-virus:AdWare.PurityScan.ap" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\YX2H6HGB\aun_0008[1].exe infected by "Trojan-Downloader.Win32.Small.akz" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\YX2H6HGB\crazywinningsgame[1].exe infected by "not-a-virus:AdWare.WinShow.f" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Internet Files\Content.IE5\YX2H6HGB\MediaAccC[1].dll infected by "not-a-virus:AdWare.WinAD.af" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\vmstmp\vmstmp.exe infected by "not-a-virus:AdWare.DelphinMediaViewer.c" Virus. Action Taken: No Action Taken. File C:\DOCUME~1\Mike\LOCALS~1\Temp\wrapperouter.exe infected by "not-a-virus:AdWare.VirtualBouncer.j" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\0E280000.VBN infected by "Trojan.Win32.Agent.ay" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus Corporate Edition\7.5\Quarantine\91140000.VBN infected by "Trojan-Downloader.Win32.Agent.ae" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Application Data\mstd.exe infected by "not-a-virus:AdWare.PurityScan.ap" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\!update.exe infected by "not-a-virus:AdWare.PurityScan.ap" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\adlinstallwin32.exe infected by "not-a-virus:AdWare.Adstart.c" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\i112E.tmp infected by "not-a-virus:AdWare.SurfSide.d" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\i1240.tmp infected by "not-a-virus:AdWare.SurfSide.a" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\i12F9.tmp infected by "not-a-virus:AdWare.SurfSide.a" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\i45.tmp infected by "not-a-virus:AdWare.SurfSide.a" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\i64D.tmp infected by "not-a-virus:AdWare.SurfSide.a" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\ICD1.tmp\AdToolsX.dll infected by "not-a-virus:AdWare.WinAD.x" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\ICD2.tmp\mm63.ocx infected by "Trojan-Downloader.Win32.VB.ez" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\installer_MARKETING18.exe infected by "Trojan-Downloader.Win32.Adload.a" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\randreco.exe infected by "Trojan-Dropper.Win32.Agent.ch" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\SskUpdater.exe infected by "not-a-virus:AdWare.TotalVelocity.v" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\suicidetb.exe infected by "not-a-virus:AdWare.ToolBar.EliteBar.z" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\2DKPMPOT\mm15201518.Stub[1].exe infected by "not-a-virus:AdWare.EZula.ah" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\2DKPMPOT\package_adp_SIAC[1].exe infected by "not-a-virus:AdWare.BargainBuddy.l" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\2DKPMPOT\shop1004[1].exe infected by "not-a-virus:AdWare.Sahat.m" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\2DKPMPOT\sixtypopsix[1].exe infected by "Trojan.Win32.LowZones.am" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\CA4WPAFH\aun_0018[1].exe infected by "Trojan-Downloader.Win32.Small.akz" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\IHSVORUJ\aun_0032[1].exe infected by "Trojan-Downloader.Win32.Small.akz" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\IHSVORUJ\diamond[1].cab infected by "Trojan-Downloader.Win32.VB.ez" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\IHSVORUJ\loader2[1].ocx infected by "Trojan-Downloader.Win32.Agent.ex" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\IHSVORUJ\MediaAccK[1].exe infected by "not-a-virus:AdWare.WinAD.af" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\IHSVORUJ\package_MARKETING18[1].exe infected by "not-a-virus:AdWare.BargainBuddy.q" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\IHSVORUJ\sskb5[1].exe infected by "Trojan-Dropper.Win32.SurfSide.a" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\IHSVORUJ\track2[1].htm infected by "Exploit.HTML.Mht" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\IHSVORUJ\ucmoreiex[1].exe infected by "not-a-virus:AdWare.ToolBar.Ucmore.a" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\AproposClientInstaller[1].exe infected by "Trojan-Downloader.Win32.Apropo.s" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\installer_SIAC[1].exe infected by "Trojan-Downloader.Win32.Adload.a" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\mmviewer_101[1].cab infected by "Trojan-Downloader.Win32.Agent.cu" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\protector_update[1].exe infected by "Trojan.Win32.StartPage.nk" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\sideb[1].exe infected by "not-a-virus:AdWare.ToolBar.EliteBar.z" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\stats25[1].htm infected by "Exploit.HTML.Mht" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\stats2[1].htm infected by "Exploit.HTML.Mht" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\TBPSSvc[1].cab infected by "not-a-virus:AdWare.WebSearch.f" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\thin-143-1-x-x[1].exe infected by "not-a-virus:AdWare.BetterInternet" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\unstall[1].exe infected by "not-a-virus:AdWare.MediaMotor.c" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\KZO7AFGJ\whCC-GIANT[1].exe infected by "not-a-virus:AdWare.WebHancer.351" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\LYF92FKZ\aun_0029[1].exe infected by "Trojan-Downloader.Win32.Small.akz" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\YX2H6HGB\!update-1634[1].0000 infected by "not-a-virus:AdWare.PurityScan.ap" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\YX2H6HGB\aun_0008[1].exe infected by "Trojan-Downloader.Win32.Small.akz" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\YX2H6HGB\crazywinningsgame[1].exe infected by "not-a-virus:AdWare.WinShow.f" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\Temporary Internet Files\Content.IE5\YX2H6HGB\MediaAccC[1].dll infected by "not-a-virus:AdWare.WinAD.af" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\vmstmp\vmstmp.exe infected by "not-a-virus:AdWare.DelphinMediaViewer.c" Virus. Action Taken: No Action Taken. File C:\Documents and Settings\Mike\Local Settings\Temp\wrapperouter.exe infected by "not-a-virus:AdWare.VirtualBouncer.j" Virus. Action Taken: No Action Taken. File C:\HJT\backups\backup-20050210-115549-606.dll infected by "not-a-virus:AdWare.BetterInternet" Virus. Action Taken: No Action Taken. File C:\HJT\backups\backup-20050210-115549-781.dll infected by "not-a-virus:AdWare.Apropos.e" Virus. Action Taken: No Action Taken. File C:\HJT\backups\backup-20050210-115551-778.dll infected by "not-a-virus:AdWare.ClearSearch.u" Virus. Action Taken: No Action Taken. File C:\HJT\backups\backup-20050210-115552-330.dll infected by "not-a-virus:AdWare.ClearSearch.u" Virus. Action Taken: No Action Taken. File C:\HJT\backups\backup-20050210-115600-429.dll infected by "not-a-virus:AdWare.WinAD.x" Virus. Action Taken: No Action Taken. File C:\HJT\backups\backup-20050210-115605-641.dll infected by "Trojan-Downloader.Win32.VB.ez" Virus. Action Taken: No Action Taken. File C:\HJT\backups\backup-20050217-190711-292.dll infected by "not-a-virus:AdWare.Adstart.c" Virus. Action Taken: No Action Taken. File C:\HJT\backups\backup-20050321-204251-452.dll infected by "Trojan-Downloader.Win32.Agent.ex" Virus. Action Taken: No Action Taken. File C:\HJT\backups\backup-20050321-230204-714.dll infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\Program Files\Internet Explorer\xvreppvg.exe infected by "Trojan-Downloader.Win32.WinShow.z" Virus. Action Taken: No Action Taken. File C:\Program Files\whInstall\Webhdll.dll infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\Program Files\whInstall\WhAgent.exe infected by "not-a-virus:AdWare.WebHancer.351" Virus. Action Taken: No Action Taken. File C:\Program Files\whInstall\whiehlpr.dll infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\Program Files\whInstall\whInstaller.exe infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\Program Files\whInstall\WhSurvey.exe infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150463.exe infected by "Trojan-Downloader.Win32.Stubby.c" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150468.exe infected by "Trojan-Dropper.Win32.SurfSide.a" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150469.exe infected by "not-a-virus:AdWare.DelphinMediaViewer.c" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150494.exe infected by "not-a-virus:AdWare.Sahat.o" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150497.exe infected by "not-a-virus:AdWare.WebSearch.f" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150507.exe infected by "not-a-virus:AdWare.Sahat.m" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150508.exe infected by "not-a-virus:AdWare.BargainBuddy.n" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150509.exe infected by "Trojan-Downloader.Win32.Wintool.e" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150510.exe infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150511.dll infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150514.exe infected by "not-a-virus:AdWare.BargainBuddy.q" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150516.exe infected by "not-a-virus:AdWare.Sahat.o" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150517.dll infected by "not-a-virus:AdWare.Sahat.l" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150518.exe infected by "not-a-virus:AdWare.Sahat.o" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150519.dll infected by "not-a-virus:AdWare.TotalVelocity.v" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150522.exe infected by "not-a-virus:AdWare.VirtualBouncer.i" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150523.dll infected by "not-a-virus:AdWare.WebSearch.o" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150524.exe infected by "not-a-virus:AdWare.WebSearch.n" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150525.exe infected by "not-a-virus:AdWare.Wintol.y" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150541.exe infected by "Trojan-Downloader.Win32.Stubby.c" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150544.dll infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150546.exe infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150547.dll infected by "not-a-virus:AdWare.WinAD.af" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150548.exe infected by "not-a-virus:AdWare.WinAD.af" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150549.exe infected by "not-a-virus:AdWare.WinAD.af" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150551.dll infected by "not-a-virus:AdWare.BetterInternet" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150554.exe infected by "Trojan-Downloader.Win32.Stubby.c" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150566.dll infected by "not-a-virus:AdWare.BetterInternet" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150567.exe infected by "Trojan-Downloader.Win32.Stubby.c" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150572.exe infected by "Trojan-Downloader.Win32.Apropo.g" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150573.dll infected by "Trojan-Clicker.Win32.Delf.r" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150575.dll infected by "Trojan-Clicker.Win32.Delf.r" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150576.dll infected by "Trojan-Clicker.Win32.Delf.r" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150577.exe infected by "not-a-virus:AdWare.180Solutions" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150578.dll infected by "Trojan-Downloader.Win32.Dyfuca.gen" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150579.exe infected by "Trojan-Downloader.Win32.Dyfuca.dk" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150580.exe infected by "not-a-virus:AdWare.180Solutions" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150582.exe tagged as not-a-virus:RiskWare.Tool.ServiceRunner.f. No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150583.exe infected by "not-a-virus:AdWare.180Solutions" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150584.exe infected by "not-a-virus:AdWare.Adstart.b" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150588.dll infected by "not-a-virus:AdWare.Apropos.e" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150589.exe infected by "not-a-virus:AdWare.Apropos.f" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150592.exe infected by "not-a-virus:AdWare.Apropos.f" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150593.dll infected by "not-a-virus:AdWare.Apropos.f" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150594.dll infected by "not-a-virus:AdWare.VirtualBouncer.g" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150595.dll infected by "not-a-virus:AdWare.VirtualBouncer.g" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150596.dll infected by "not-a-virus:AdWare.VirtualBouncer.g" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150597.dll infected by "not-a-virus:AdWare.VirtualBouncer.g" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150599.exe infected by "Trojan-Downloader.Win32.Dyfuca.dx" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150601.exe infected by "not-a-virus:AdWare.WebHancer.351" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150602.dll infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150603.exe infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150605.dll infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150606.exe infected by "not-a-virus:AdWare.WebHancer.351" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150609.dll infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150610.exe infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150612.exe infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150614.exe infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150616.exe infected by "Trojan-Dropper.Win32.Agent.hl" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150618.exe infected by "not-a-virus:AdWare.BargainBuddy.n" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP744\A0150619.exe infected by "Trojan.Win32.Agent.ay" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0150636.exe infected by "Trojan-Downloader.Win32.Stubby.c" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0150637.exe infected by "Trojan-Downloader.Win32.Stubby.c" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0150641.dll infected by "not-a-virus:AdWare.BetterInternet" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0150642.dll infected by "not-a-virus:AdWare.BetterInternet" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0150644.dll infected by "Trojan-Downloader.Win32.Agent.ex" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0150647.exe infected by "not-a-virus:AdWare.WildTangent.DownloadWare" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151651.exe infected by "Trojan-Downloader.Win32.Small.aly" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151653.exe infected by "not-a-virus:AdWare.ToolBar.ImiBar.d" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151655.exe infected by "not-a-virus:AdWare.WebHancer.351" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151657.exe infected by "not-a-virus:AdWare.EZula.ah" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151662.dll infected by "not-a-virus:AdWare.BetterInternet" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151664.exe infected by "Trojan-Downloader.Win32.Small.aly" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151665.exe infected by "Trojan.Win32.LowZones.am" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151666.exe infected by "not-a-virus:AdWare.MediaMotor.c" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151669.exe infected by "not-a-virus:AdWare.WebHancer.351" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151670.exe infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151671.exe infected by "Trojan-Notifier.Win32.VB.m" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151672.exe infected by "Trojan-Downloader.Win32.Adload.a" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151674.exe infected by "not-a-virus:AdWare.ToolBar.Ucmore.a" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151677.exe infected by "Trojan-Downloader.Win32.Stubby.c" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151679.exe infected by "not-a-virus:AdWare.BetterInternet" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151680.dll infected by "not-a-virus:AdWare.BetterInternet" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151685.DLL infected by "not-a-virus:AdWare.ClearSearch.t" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151686.dll infected by "not-a-virus:AdWare.ClearSearch.u" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151687.exe infected by "not-a-virus:AdWare.ClearSearch.u" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151689.DLL infected by "not-a-virus:AdWare.ClearSearch.t" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151690.dll infected by "not-a-virus:AdWare.ClearSearch.t" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151691.exe infected by "not-a-virus:AdWare.ClearSearch.t" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151700.exe infected by "not-a-virus:AdWare.WinAD.z" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151701.dll infected by "not-a-virus:AdWare.WinAD.z" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151702.exe infected by "not-a-virus:AdWare.WinAD.k" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151704.dll infected by "not-a-virus:AdWare.Apropos.e" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151705.exe infected by "not-a-virus:AdWare.Apropos.f" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151707.exe infected by "not-a-virus:AdWare.Apropos.f" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151708.dll infected by "not-a-virus:AdWare.Apropos.f" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151712.dll infected by "not-a-virus:AdWare.BetterInternet" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151713.dll infected by "not-a-virus:AdWare.ToolBar.MyWay.j" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151714.dll infected by "not-a-virus:AdWare.Apropos.e" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151725.dll infected by "not-a-virus:AdWare.BetterInternet" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151726.dll infected by "not-a-virus:AdWare.ToolBar.MyWay.j" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151727.dll infected by "not-a-virus:AdWare.Apropos.e" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151738.dll infected by "not-a-virus:AdWare.WinAD.x" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151743.dll infected by "Trojan-Downloader.Win32.VB.ez" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151759.exe infected by "not-a-virus:AdWare.WebHancer.351" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151760.exe infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151761.exe infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151763.dll infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP745\A0151764.dll infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP746\A0151772.exe infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP746\A0151774.dll infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP746\A0151776.exe infected by "not-a-virus:AdWare.WebHancer.351" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP746\A0151778.dll infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP746\A0151779.exe infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP746\A0151787.dll infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP746\snapshot\MFEX-4.DAT infected by "not-a-virus:AdWare.WebHancer.351" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP746\snapshot\MFEX-5.DAT infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP746\snapshot\MFEX-6.DAT infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP746\snapshot\MFEX-7.DAT infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP748\A0151795.dll infected by "not-a-virus:AdWare.WebHancer" Virus. Action Taken: No Action Taken. File C:\System Volume Information\_restore{2C6179D7-D8B8-4C3E-A4C2-0542EB69CD9A}\RP749\A0151811.exe infected by "Trojan.Win32.StartPage.nk" Virus. Action Taken: No Action Taken. File C:\THE LAPTOP SHARED DRIVE\DivXPro502GAINBundle.exe tagged as not-a-virus:Tool.Win32.Reboot. No Action Taken. File C:\WINDOWS\bundles\adl_dh.exe infected by "Trojan-Downloader.Win32.Agent.hw" Virus. Action Taken: No Action Taken. File C:\WINDOWS\bundles\adl_mteststub.exe infected by "not-a-virus:AdWare.EZula.ah" Virus. Action Taken: No Action Taken. File C:\WINDOWS\bundles\CSv12P108.exe infected by "not-a-virus:AdWare.ClearSearch.u" Virus. Action Taken: No Action Taken. File C:\WINDOWS\bundles\ezStubseedcorn.exe infected by "not-a-virus:AdWare.EZula.z" Virus. Action Taken: No Action Taken. File C:\WINDOWS\bundles\HelperInstaller.exe infected by "Trojan-Dropper.Win32.Delf.z" Virus. Action Taken: No Action Taken. File C:\WINDOWS\bundles\SSK_B5.EXE infected by "Trojan-Dropper.Win32.SurfSide.a" Virus. Action Taken: No Action Taken. File C:\WINDOWS\bundles\thin-8-1-x-x.exe infected by "not-a-virus:AdWare.BetterInternet" Virus. Action Taken: No Action Taken. File C:\WINDOWS\bundles\videoinst.exe infected by "Trojan-Downloader.Win32.Small.wj" Virus. Action Taken: No Action Taken. File C:\WINDOWS\bundles\WebRebates_Auto_InstallSilent.e xe infected by "not-a-virus:AdWare.WebRebates.g" Virus. Action Taken: No Action Taken. File C:\WINDOWS\bundles\wrapperouter.exe infected by "not-a-virus:AdWare.VirtualBouncer.c" Virus. Action Taken: No Action Taken. File C:\WINDOWS\Downloaded Program Files\CONFLICT.1\HDPlugin1018.dll infected by "not-a-virus:AdWare.Gator.1018" Virus. Action Taken: No Action Taken. File C:\WINDOWS\Downloaded Program Files\mm63.ocx infected by "Trojan-Downloader.Win32.VB.ez" Virus. Action Taken: No Action Taken. File C:\WINDOWS\Downloaded Program Files\WUInst.dll infected by "not-a-virus:AdWare.SaveNow.ab" Virus. Action Taken: No Action Taken. File C:\WINDOWS\mm15201518.Stub.exe infected by "not-a-virus:AdWare.EZula.ah" Virus. Action Taken: No Action Taken. File C:\WINDOWS\pi1_25.exe infected by "Trojan-Downloader.Win32.Small.afq" Virus. Action Taken: No Action Taken. File C:\WINDOWS\sskb5.exe infected by "Trojan-Dropper.Win32.SurfSide.a" Virus. Action Taken: No Action Taken. File C:\WINDOWS\systb.exe infected by "not-a-virus:AdWare.ToolBar.ImiBar.d" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\20007.exe infected by "not-a-virus:AdWare.WildTangent.DownloadWare" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\Busan.exe infected by "Trojan-PSW.Win32.Agent.h" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\Cache\cxtpls_loader.exe infected by "not-a-virus:AdWare.Apropos.b" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\cmpgen.exe infected by "Trojan-Downloader.Win32.Apropo.t" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\cxtpls_loader.exe infected by "Trojan-Downloader.Win32.Apropo.r" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\dllautou.exe infected by "Trojan-Downloader.Win32.Apropo.t" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\dun.exe infected by "not-a-virus:AdWare.DealHelper.x" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\e6f1873b.dll infected by "Trojan-Downloader.Win32.Braidupdate.d" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\exp.exe infected by "Trojan-Downloader.Win32.Small.abd" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\Giqzdt.exe infected by "not-a-virus:AdWare.DealHelper.x" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\installer_MARKETING18.exe infected by "Trojan-Dropper.Win32.Agent.hl" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\pop2.exe infected by "not-a-virus:AdWare.WinAD.af" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\prutpct.exe infected by "Trojan-Spy.Win32.VB.eh" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\saie1108.exe infected by "Trojan-Dropper.Win32.Small.mr" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\SSK_B5 Verticlick 5.EXE infected by "Trojan-Downloader.Win32.Small.qn" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\temperror32.dat infected by "Trojan.Win32.StartPage.nk" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\untav.exe infected by "Trojan-Downloader.Win32.Agent.ji" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\VCMnet9.exe infected by "Trojan-Downloader.Win32.Small.aly" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\Vlskvs.exe infected by "not-a-virus:AdWare.DealHelper.z" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\vmss\vmss.exe infected by "not-a-virus:AdWare.DelphinMediaViewer.c" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\vpfmud.exe infected by "not-a-virus:AdWare.Adstart.i" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\vpfmuf.exe infected by "not-a-virus:AdWare.Adstart.d" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\wintask.exe infected by "Trojan-Downloader.Win32.Small.abd" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\wowckbox.exe infected by "Trojan-Downloader.Win32.Agent.ji" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\wsxsvc\wsx.dll infected by "not-a-virus:AdWare.DelphinMediaViewer.c" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\wsxsvc\wsx.ocx infected by "not-a-virus:AdWare.DelphinMediaViewer.c" Virus. Action Taken: No Action Taken. File C:\WINDOWS\system32\wsxsvc\wsxsvc.exe infected by "not-a-virus:AdWare.DelphinMediaViewer.c" Virus. Action Taken: No Action Taken. File C:\WINDOWS\woinstall.exe infected by "not-a-virus:AdWare.EZula.ak" Virus. Action Taken: No Action Taken. |
|
#8
|
||||
|
||||
|
Click here to download Pocket Killbox by Option^Explicit. Save it on your desktop. http://www.spyware911.net/downloads/KillBox.exe Start Killbox and click on Tools->Delete Temp Files. When that finishes, copy and paste each of the following lines into the "Full Path of File to Delete" box in Killbox Then tick delete on reboot Copy and paste each file into the file name box, then click the red button with the X after each. It will ask you if you want to reboot each time you click it, answer NO until after you've pasted the last file name, at which time you should answer Yes. <span style="color:red">Be careful not to miss any or it may regenerate and we will have to start over</span> C:\WINDOWS\mm15201518.Stub.exe C:\WINDOWS\pi1_25.exe C:\WINDOWS\sskb5.exe C:\WINDOWS\systb.exe C:\WINDOWS\woinstall.exe C:\WINDOWS\system32\20007.exe C:\WINDOWS\system32\Busan.exe C:\WINDOWS\system32\cmpgen.exe C:\WINDOWS\system32\cxtpls_loader.exe C:\WINDOWS\system32\dllautou.exe C:\WINDOWS\system32\dun.exe C:\WINDOWS\system32\e6f1873b.dll C:\WINDOWS\system32\exp.exe C:\WINDOWS\system32\Giqzdt.exe C:\WINDOWS\system32\installer_MARKETING18.exe C:\WINDOWS\system32\pop2.exe C:\WINDOWS\system32\prutpct.exe C:\WINDOWS\system32\saie1108.exe C:\WINDOWS\system32\SSK_B5 Verticlick 5.EXE C:\WINDOWS\system32\temperror32.dat C:\WINDOWS\system32\untav.exe C:\WINDOWS\system32\VCMnet9.exe C:\WINDOWS\system32\Vlskvs.exe C:\WINDOWS\system32\vpfmud.exe C:\WINDOWS\system32\vpfmuf.exe C:\WINDOWS\system32\wintask.exe C:\WINDOWS\system32\wowckbox.exe C:\THE LAPTOP SHARED DRIVE\DivXPro502GAINBundle.exe C:\WINDOWS\bundles C:\WINDOWS\Downloaded Program Files\CONFLICT.1\HDPlugin1018.dll C:\WINDOWS\Downloaded Program Files\mm63.ocx C:\WINDOWS\Downloaded Program Files\WUInst.dll C:\WINDOWS\mm15201518.Stub.exe C:\WINDOWS\pi1_25.exe C:\WINDOWS\sskb5.exe C:\WINDOWS\systb.exe C:\WINDOWS\system32\20007.exe C:\WINDOWS\system32\Busan.exe C:\WINDOWS\system32\Cache\cxtpls_loader.exe C:\WINDOWS\system32\cmpgen. C:\WINDOWS\system32\cxtpls_loader.exe C:\WINDOWS\system32\dllautou.exe C:\WINDOWS\system32\dun.exe C:\WINDOWS\system32\e6f1873b.dll C:\WINDOWS\system32\exp.exe C:\WINDOWS\system32\Giqzdt.exe C:\WINDOWS\system32\installer_MARKETING18.exe C:\WINDOWS\system32\pop2.exe C:\WINDOWS\system32\prutpct.exe C:\WINDOWS\system32\saie1108.exe C:\WINDOWS\system32\SSK_B5 Verticlick 5.EXE C:\WINDOWS\system32\temperror32.dat C:\WINDOWS\system32\untav.exe C:\WINDOWS\system32\VCMnet9.exe C:\WINDOWS\system32\Vlskvs.exe C:\WINDOWS\system32\vmss\vmss.exe C:\WINDOWS\system32\vpfmud.exe C:\WINDOWS\system32\vpfmuf.exe C:\WINDOWS\system32\wintask.exe C:\WINDOWS\system32\wowckbox.exe C:\WINDOWS\syst |