afterdawn.com > forums > software, operating systems and more > windows - virus and spyware problems > can someone help me with this hijackthis log
Can Someone Help me with this HijackThis Log
Newbie
1. April 2009 @ 20:38
Link to this message
Hello first foremost this is my friends computer and he is not that computer savvy. I ran both Mbam and SuparAntispyware and I am just making sure the computer is clean thanks
HiJackThis:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 5:23:23 PM, on 4/1/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Roxio Shared\SharedCOM8\RoxMediaDB.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2C1.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\VTTimer.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\SpeedFan\speedfan.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3...lion&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customiz...//www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customiz.../search/ie.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defa...//www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer provided by Yahoo!
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=168.94.74.68:8080
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealOne Player\rpbrowserrecordplugin.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file)
O3 - Toolbar: HP view - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\Program Files\HP\Digital Imaging\bin\hpdtlk02.dll
O3 - Toolbar: (no name) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - (no file)
O4 - HKLM\..\Run: [EPSON Stylus C64 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2C1.EXE /P23 "EPSON Stylus C64 Series" /O6 "USB001" /M "Stylus C64"
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [UpdateManager] "c:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [BackupNotify] c:\Program Files\HP\Digital Imaging\bin\backupnotify.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKUS\S-1-5-19\..\Run: [fopugakeli] Rundll32.exe "C:\WINDOWS\system32\yohefani.dll",s (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [fopugakeli] Rundll32.exe "C:\WINDOWS\system32\yohefani.dll",s (User 'NETWORK SERVICE')
O4 - Startup: SpeedFan .lnk = C:\Program Files\SpeedFan\speedfan.exe
O8 - Extra context menu item: Add To HP Organize... - C:\PROGRA~1\HEWLET~1\HPORGA~1\bin\core.hp.main\SendTo.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com/i/c...v45/yacscom.cab
O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader1006.cab
O16 - DPF: {7D1E9C49-BD6A-11D3-87A8-009027A35D73} (Yahoo! Audio UI1) - http://chat.yahoo.com/cab/yacsui.cab
O16 - DPF: {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA} (Java Plug-in 1.4.2_03) -
O16 - DPF: {CAFEEFAC-0015-0000-0003-ABCDEFFEDCBA} (Java Plug-in 1.5.0_03) -
O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} (Java Plug-in 1.6.0_01) -
O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} (Java Plug-in 1.6.0_02) -
O16 - DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} (Java Plug-in 1.6.0_03) -
O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} (Java Plug-in 1.6.0_05) -
O16 - DPF: {D18F962A-3722-4B59-B08D-28BB9EB2281E} (PhotosCtrl Class) - http://photos.yahoo.com/ocx/us/yexplorer1_9us.cab
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: LiveShare P2P Server (RoxLiveShare) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\SharedCOM8\RoxLiveShare.exe
O23 - Service: RoxMediaDB - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\SharedCOM8\RoxMediaDB.exe
O23 - Service: RoxUpnpRenderer (RoxUPnPRenderer) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\SharedCom\RoxUpnpRenderer.exe
O23 - Service: RoxUpnpServer - Sonic Solutions - C:\Program Files\Roxio\Easy Media Creator 8\Digital Home\RoxUpnpServer.exe
O23 - Service: Roxio Hard Drive Watcher (RoxWatch) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\SharedCOM8\RoxWatch.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
O23 - Service: YPCService - Yahoo! Inc. - C:\WINDOWS\system32\YPCSER~1.EXE
--
End of file - 9039 bytes
Mbam log:
Malwarebytes' Anti-Malware 1.33
Database version: 1697
Windows 5.1.2600 Service Pack 3
2/4/2009 11:33:21 PM
mbam-log-2009-02-04 (23-33-21).txt
Scan type: Full Scan (C:\|)
Objects scanned: 169624
Time elapsed: 1 hour(s), 58 minute(s), 16 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 141
Registry Values Infected: 6
Registry Data Items Infected: 2
Folders Infected: 25
Files Infected: 649
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_CLASSES_ROOT\funwebproducts.datacontrol (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{c8cecde3-1ae1-4c4a-ad82-6d5b00212144} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{17de5e5e-bfe3-4e83-8e1f-8755795359ec} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{1f52a5fa-a705-4415-b975-88503b291728} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{a626cdbd-3d13-4f78-b819-440a28d7e8fc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{25560540-9571-4d7b-9389-0f166788785a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{25560540-9571-4d7b-9389-0f166788785a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.datacontrol.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.historykillerscheduler (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{8ca01f0e-987c-49c3-b852-2f1ac4a7094c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{1093995a-ba37-41d2-836e-091067c4ad17} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{120927bf-1700-43bc-810f-fab92549b390} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{247a115f-06c2-4fb3-967d-2d62d3cf4f0a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{3e53e2cb-86db-4a4a-8bd9-ffeb7a64df82} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{90449521-d834-4703-bb4e-d3aa44042ff8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{991aac62-b100-47ce-8b75-253965244f69} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{bbabdc90-f3d5-4801-863a-ee6ae529862d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{d6ff3684-ad3b-48eb-bbb4-b9e6c5a355c1} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{eb9e5c1c-b1f9-4c2b-be8a-27d6446fdaf8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{0f8ecf4f-3646-4c3a-8881-8e138ffcaf70} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{b813095c-81c0-4e40-aa14-67520372b987} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{c9d7be3e-141a-4c85-8cd6-32461f3df2c7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{cff4ce82-3aa2-451f-9b77-7165605fb835} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.historykillerscheduler.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.historyswattercontrolbar (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.historyswattercontrolbar.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.htmlmenu (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{e47caee0-deea-464a-9326-3f2801535a4d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{3e1656ed-f60e-4597-b6aa-b6a58e171495} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{741de825-a6f0-4497-9aa6-8023cf9b0fff} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{98d9753d-d73b-42d5-8c85-4469cda897ab} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{98d9753d-d73b-42d5-8c85-4469cda897ab} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.htmlmenu.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.htmlmenu.2 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.iecookiesmanager (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.iecookiesmanager.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.killerobjmanager (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.killerobjmanager.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.popswatterbarbutton (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{8e6f1830-9607-4440-8530-13be7c4b1d14} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{63d0ed2b-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{63d0ed2d-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{63d0ed2c-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{63d0ed2c-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{8e6f1832-9607-4440-8530-13be7c4b1d14} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{a9571378-68a1-443d-b082-284f960c6d17} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.popswatterbarbutton.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.popswattersettingscontrol (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.popswattersettingscontrol.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.chatsessionplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{e79dfbc0-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{72ee7f04-15bd-4845-a005-d6711144d86a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e79dfbc9-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e79dfbcb-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{e79dfbca-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{e79dfbca-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.chatsessionplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.htmlpanel (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{3e720450-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{3e720451-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{3e720453-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{3e720452-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3e720452-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.htmlpanel.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.outlookaddin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{adb01e81-3c79-4272-a0f1-7b2be7a782dc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.outlookaddin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.pseudotransparentplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{7473d290-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{7473d291-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{7473d293-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{7473d295-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{7473d297-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{7473d292-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{7473d294-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7473d294-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{7473d296-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.pseudotransparentplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearchtoolbar.settingsplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{07b18ea0-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{07b18eaa-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{07b18eac-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{f87d7fb5-9dc5-4c8c-b998-d8dfe02e2978} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{07b18ea1-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{07b18ea9-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{53ced2d0-5e9a-4761-9005-648404e6f7e5} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearchtoolbar.settingsplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearchtoolbar.toolbarplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearchtoolbar.toolbarplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\screensavercontrol.screensaverinstaller (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{29d67d3c-509a-4544-903f-c8c1b8236554} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{2e3537fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{2e9937fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{938aa51a-996c-4884-98ce-80dd16a5c9da} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\screensavercontrol.screensaverinstaller.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{6e74766c-4d93-4cc0-96d1-47b8e07ff9ca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{cf54be1c-9359-4395-8533-1657cf209cfe} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{de38c398-b328-4f4c-a3ad-1b5e4ed93477} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e342af55-b78a-4cd0-a2bb-da7f52d9d25e} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e342af55-b78a-4cd0-a2bb-da7f52d9d25f} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{00a6faf6-072e-44cf-8957-5838f569a31d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{00a6faf1-072e-44cf-8957-5838f569a31d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{147a976f-eee1-4377-8ea7-4716e4cdd239} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{84da4fdf-a1cf-4195-8688-3e961f505983} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{d9fffb27-d62a-4d64-8cec-1ff006528805} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{0d26bc71-a633-4e71-ad31-eadc3a1b6a3a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{d518921a-4a03-425e-9873-b9a71756821e} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{f42228fb-e84e-479e-b922-fbbd096e792c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{549b5ca7-4a86-11d7-a4df-000874180bb3} (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c5428486-50a0-4a02-9d20-520b59a9f9b2} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c5428486-50a0-4a02-9d20-520b59a9f9b3} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6fd31ed6-7c94-4bbc-8e95-f927f4d3a949} (Adware.180Solutions) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1f158a1e-a687-4a11-9679-b3ac64b86a1c} (Adware.Seekmo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59c7fc09-1c83-4648-b3e6-003d2bbc7481} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68af847f-6e91-45dd-9b68-d6a12c30e5d7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9170b96c-28d4-4626-8358-27e6caeef907} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d1a71fa0-ff48-48dd-9b6d-7a13a3e42127} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ddb1968e-ead6-40fd-8dae-ff14757f60c7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f138d901-86f0-4383-99b6-9cdd406036da} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{a7cddcdc-beeb-4685-a062-978f5e07ceee} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mywebsearchservice (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\mywebsearchservice (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mywebsearchservice (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\RunDll32Policy\f3ScrCtr.dll (Adware.MyWay) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Software Notifier (Rogue .Multiple) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWebSearch bar Uninstall (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Outlook\Addins\MyWebSearch.OutlookAddin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Word\Addins\MyWebSearch.OutlookAddin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive (Adware.MyWebSearch) -> Quarantined and deleted successfully.
Registry Values Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{07aa283a-43d7-4cbe-a064-32a21112d94d} (Adware.Zango) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\rhcvw6j0e151 (Rogue.AntivirusXP2008) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lphcrw6j0e151 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Media\WMSDK\Sources\f3PopularScreensavers (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Control Panel\Desktop\scrnsave.exe (Hijack.Wallpaper) -> Quarantined and deleted successfully.
Registry Data Items Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispBackgroundPage (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispScrSavPage (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
Folders Infected:
C:\Program Files\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Avatar (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Game (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\icons (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Message (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Settings (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\SrchAstt (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\SrchAstt\1.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\FunWebProducts\ScreenSaver (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\FunWebProducts\ScreenSaver\Images (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151 (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151\Quarantine (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151\Quarantine\Autorun (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151\Quarantine\Autorun\HKCU (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151\Quarantine\Autorun\HKCU\RunOnce (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151\Quarantine\Autorun\HKLM (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151\Quarantine\Autorun\HKLM\RunOnce (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151\Quarantine\Autorun\StartMenuAllUsers (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151\Quarantine\Autorun\StartMenuCurrentUser (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151\Quarantine\BrowserObjects (Rogue.Multiple) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151\Quarantine\Packages (Rogue.Multiple) -> Quarantined and deleted successfully.
Files Infected:
C:\Program Files\MyWebSearch\bar\1.bin\F3DTACTL.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\F3HISTSW.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\F3HTMLMU.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\F3POPSWT.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\M3MSG.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\M3HTML.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\M3OUTLCN.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\M3SKIN.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\F3SCRCTR.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\F3CJPEG.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\F3HTTPCT.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\F3REPROX.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\MWSOEPLG.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Documents and Settings\Owner\Local Settings\Temp\Saf25D.tmp\WebfettiSetup2.3.50.22.ZKman000.exe (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\Internet Explorer\msimg32.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\F3IMSTUB.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\F3PSSAVR.SCR (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\F3RESTUB.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\F3SCHMON.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\F3WPHOOK.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\M3IDLE.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\M3IMPIPE.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\M3SKPLAY.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\MWSOESTB.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\NPMYWEBS.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\1DF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\1E2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\330.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3AE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3AF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3B0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3B1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3B2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3B3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3B4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3B5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3B6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3B7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3B8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3B9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3BA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3BB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3BC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3BD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3BE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3BF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3C0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3C1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3C2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3C3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3C4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3C5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3C6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3C7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3C8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3C9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3CA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3CB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3CC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3CD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3CE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3CF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3D0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3D1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3D2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3D3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3D4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3D5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3D6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3D7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3D8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3D9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3DA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3DB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3DC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3DD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3DE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3DF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3E0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3E1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3E2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3E3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3E4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3E5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3E6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3E7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3E8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3E9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3EA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3EB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3EC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3ED.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3EE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3EF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3F0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3F1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3F2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3F3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3F4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3F5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3F6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3F7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3F8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3F9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3FA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3FB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3FC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3FD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3FE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\3FF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\400.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\401.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\402.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\403.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\404.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\405.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\406.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\407.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\408.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\409.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\40A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\40B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\40C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\40D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\40E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\40F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\410.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\411.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\412.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\413.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\414.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\415.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\416.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\417.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\418.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\419.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\41A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\41B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\41C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\41D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\41E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\41F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\420.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\421.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\422.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\423.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\424.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\425.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\426.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\427.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\428.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\429.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\42A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\42B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\42C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\42D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\42E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\42F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\43.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\430.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\431.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\432.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\433.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\434.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\435.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\436.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\437.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\438.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\439.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\43A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\43B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\43C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\43D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\43E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\43F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\440.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\441.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\442.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\443.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\444.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\445.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\446.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\447.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\448.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\449.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\44A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\44B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\44C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\44D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\44E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\44F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\450.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\451.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\452.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\453.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\454.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\455.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\456.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\457.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\458.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\459.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\45A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\45B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\45C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\45D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\45E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\45F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\460.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\461.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\462.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\463.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\464.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\465.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\466.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\467.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\468.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\469.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\46A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\46B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\46C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\46D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\46E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\46F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\47.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\470.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\471.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\472.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\473.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\474.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\475.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\476.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\477.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\478.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\479.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\47A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\47B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\47C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\47D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\47E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\47F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\48.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\480.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\481.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\482.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\483.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\484.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\485.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\486.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\487.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\488.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\489.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\48A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\48B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\48C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\48D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\48E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\48F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\49.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\490.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\491.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\492.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\493.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\494.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\495.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\496.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\497.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\498.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\499.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\49A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\49B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\49C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\49D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\49E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\49F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4A0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4A1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4A2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4A3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4A4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4A5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4A6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4A7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4A8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4A9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4AA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4AB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4AC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4AD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4AE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4AF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4B0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4B1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4B2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4B3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4B4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4B5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4B6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4B7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4B8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4B9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4BA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4BB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4BE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4BF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4C0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4C1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4C2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4C3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4C4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4C5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4C6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4C7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4C9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4CA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4CB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4CC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4CD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4CE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4CF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4D0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4D2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4D3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4D5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4D6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4D7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4D8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4D9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4DA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4DB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4DC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4DD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4DE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4DF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4E0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4E1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4E2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4E3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4E4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4E5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4E6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4E7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4E8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4E9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4EA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4EB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4EC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4ED.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4EE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4EF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4F0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4F1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4F2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4F3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4F4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4F5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4F6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4F7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4F8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4F9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4FA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4FB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4FC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4FD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4FE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\4FF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\50.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\500.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\501.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\502.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\503.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\504.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\505.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\506.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\507.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\508.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\509.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\50A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\50B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\50C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\50D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\50E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\50F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\51.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\510.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\511.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\512.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\513.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\514.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\515.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\516.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\517.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\518.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\519.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\51A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\51B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\51C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\51D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\51E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\51F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\52.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\520.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\521.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\522.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\523.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\524.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\525.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\526.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\527.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\528.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\529.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\52A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\52B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\52C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\52D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\52E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\52F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\53.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\530.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\531.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\532.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\533.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\534.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\535.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\536.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\537.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\538.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\539.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\53A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\53B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\53C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\54.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\55.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\56.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\57.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\58.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\59.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\5A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\5B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\5C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\5D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\5E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\5F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\60.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\61.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\62.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\63.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\64.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\65.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\66.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\67.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\68.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\69.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\6A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\6B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\6C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\6D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\6E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\6F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\70.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\71.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\72.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\73.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\74.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\75.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\76.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\77.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\78.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\79.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\7A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\7B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\7C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\7D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\7E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\7F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\80.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\81.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\82.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\83.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\84.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\85.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\86.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\87.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\88.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\89.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\8A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\8B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\8C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\8D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\8E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\8F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\90.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\91.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\92.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\93.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\94.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\95.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\96.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\97.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\98.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\99.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\9A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\9B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\9C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\9D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\9E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\9F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\A0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\A1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\A2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\A3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\A4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\A5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\A6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\A7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\A8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\A9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\AA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\AB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\AC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\AD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\AE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\AF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\B0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\B1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\B2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\B3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\B4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\B5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\B6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\B7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\B8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\B9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\BA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\BB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\BC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\BD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\BE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\BF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\C0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\C1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\C2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\C3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\C4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\C5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\C6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\C7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\C8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\C9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\CA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\CB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\CC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\CD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\CE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\CF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\D0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\D1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\D2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\D3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\D4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\D5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\D6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\D7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\D8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\D9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\DA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\DB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\DC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\DD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\DE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\DF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\E0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\E1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\E2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\E3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\E4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\E5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\E6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\E7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\E8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\E9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\EA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\EB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\EC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\ED.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\EE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\EF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\F0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\F1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\F2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\F3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\f3PSSavr.scr (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\F4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\F5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\F6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\F7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\F8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\F9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\FA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\FB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\FC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\FD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\FE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\FF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\F3BKGERR.JPG (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\F3SPACER.WMV (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\F3WALLPP.DAT (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\FWPBUDDY.PNG (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\M3FFXTBR.JAR (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\M3FFXTBR.MANIFEST (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\M3HIGHIN.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\M3MEDINT.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\M3NTSTBR.JAR (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\M3NTSTBR.MANIFEST (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\M3PLUGIN.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\M3SLSRCH.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\M3SRCHMN.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\1.bin\MWSSVC.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Avatar\COMMON.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Game\CHECKERS.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Game\CHESS.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Game\REVERSI.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\icons\CM.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\icons\MFC.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\icons\PSS.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\icons\SMILEY.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\icons\WB.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\icons\ZWINKY.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Message\COMMON.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\COMMON.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\DOG.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\FISH.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\KUNGFU.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\LIFEGARD.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\MAID.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\MAILBOX.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\OPERA.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\ROBOT.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\SEDUCT.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\SURFER.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Settings\s_pid.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.
SuperAntispyware log:
SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 04/01/2009 at 04:59 PM
Application Version : 4.26.1000
Core Rules Database Version : 3822
Trace Rules Database Version: 1778
Scan type : Complete Scan
Total Scan Time : 04:30:11
Memory items scanned : 208
Memory threats detected : 0
Registry items scanned : 7452
Registry threats detected : 11
File items scanned : 109406
File threats detected : 9
Adware.Tracking Cookie
C:\Documents and Settings\Owner\cookies\owner@kontera[2].txt
Adware.MyWebSearch/FunWebProducts
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE#NextInstance
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE\0000
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE\0000#Service
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE\0000#Legacy
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE\0000#ConfigFlags
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE\0000#Class
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE\0000#ClassGUID
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE\0000#DeviceDesc
Rogue.Component/Trace
HKU\S-1-5-21-3075454984-477084745-3252485339-1003\Software\Microsoft\FIAS4051
HKU\S-1-5-21-3075454984-477084745-3252485339-1003\Software\Microsoft\FIAS4057
Application.PowerReg Scheduler
C:\RECYCLER\S-1-5-21-3075454984-477084745-3252485339-1003\DC93.EXE
Adware.Vundo/Variant
C:\SYSTEM VOLUME INFORMATION\_RESTORE{70304573-AB33-4072-AA96-4495C42D15E3}\RP272\A0068693.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{70304573-AB33-4072-AA96-4495C42D15E3}\RP272\A0069796.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{70304573-AB33-4072-AA96-4495C42D15E3}\RP272\A0069797.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{70304573-AB33-4072-AA96-4495C42D15E3}\RP272\A0069804.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{70304573-AB33-4072-AA96-4495C42D15E3}\RP272\A0069806.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{70304573-AB33-4072-AA96-4495C42D15E3}\RP292\A0072039.DLL
Adware.Vundo/Variant-81K
C:\SYSTEM VOLUME INFORMATION\_RESTORE{70304573-AB33-4072-AA96-4495C42D15E3}\RP272\A0069792.DLL
AfterDawn Addict
2. April 2009 @ 01:03
Link to this message
Hi Klinster,
MBAM and SAS are two of the best cleaning programs and it looks like they did a bang up job for you?.
Just a little house keeping left. After you do the following you should polish it off by running Disk Cleanup and Disk Defragmenter?..
Some entries have been positively identified as malicious programs.
Reboot your computer into safe mode.
When your computer is starting up, tap the F8 key on your keyboard continuously until you are presented with the Startup Menu or Windows Advanced Options Menu , depending on your version of Windows. Use the arrow keys on your keyboard to choose Safe Mode from the menu and press Enter.
When you want to get out of Safe Mode, simply shut down and restart your computer.
Run HijackThis again, and place a check mark next to the following entries.
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customiz...//www.yahoo.com
(Description: Sends information back to Yahoo.)
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customiz.../search/ie.html
(Description: Sends information back to Yahoo.)
O3 - Toolbar: (no name) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - (no file)
(Description: A blank toolbar entry. Possibly an adware toolbar that was removed by an anti-virus or anti-spyware program.)
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
(Description: Realtek AC97 Audio - Event Monitor. "Spyware" file used surreptitiously to monitor one's actions. It is not a sinister one, like remote control programs, but it is being used by Realtek to gather data about customers )
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
(Description: Viewpoint Manager Service. Related to viewpoint which is usually considered foistware, usually installed with AOL. Link: http://en.wikipedia.org/wiki/Foistware)
The following are not necessarily spyware/malware, but suggest you place a check mark next to the following entries, as these programs may be taking up system resources.
O4 - HKLM\..\Run: [TkBellExe] \"C:\Program Files\Common Files\Real\Update_OB\realsched.exe\" ?osboot
(Description: RealPlayer scheduler. Completely unnecessary. Removing this entry will free up a small amount of system resources.)
O4 - HKLM\..\Run: [SunJavaUpdateSched] \"C:\Program Files\Java\jre6\bin\jusched.exe\"
(Description: Sun Java update scheduler. Checks for updates. Not necessary. Removing this entry will free up a small amount of system resources.)
1) Press the "Fix checked " button. Then close HijackThis .
2) Search for and delete the file Alcxmntr.exe
3) Uninstall Viewpoint from Control Panel -> Add/Remove Programs
4) Empty your recycle bin .
5) Run Windows Update and install all critical updates.
6) Reboot one last time.
That should take care of it?..
2oG
There are three kinds of men: The ones that learn by reading; The few who learn by observation;
The rest of them have to pee on the electric fence and find out for themselves...
afterdawn.com > forums > software, operating systems and more > windows - virus and spyware problems > can someone help me with this hijackthis log