Logfile of Trend Micro HijackThis v2.0.2Scan saved at 23:00: VIRUS ALERT!, on 7/8/2008Platform: Windows XP (WinNT 5.01.2600)MSIE: Internet Explorer v6.00 (6.00.2600.0000)Boot mode: Normal Running processes:C:\WINDOWS\System32\smss.exeC:\WINDOWS\system32\csrss.exeC:\WINDOWS\system32\winlogon.exeC:\WINDOWS\system32\services.exeC:\WINDOWS\system32\lsass.exeC:\WINDOWS\system32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\System32\svchost.exeC:\Program Files\Lavasoft\Ad-Aware\aawservice.exeC:\WINDOWS\system32\spoolsv.exeC:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exeC:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exeC:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exeC:\WINDOWS\System32\PSIService.exeC:\WINDOWS\System32\svchost.exeC:\WINDOWS\System32\wdfmgr.exeC:\Program Files\Viewpoint\Common\ViewpointService.exeC:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exeC:\WINDOWS\Explorer.EXEC:\Documents and Settings\All Users\Application Data\relczeze\vohmdudc.exeC:\Program Files\Web Technologies\wcs.exeC:\Program Files\Web Technologies\iebtm.exeC:\Program Files\Common Files\Real\Update_OB\realsched.exeC:\WINDOWS\winlogon.exeC:\Program Files\AIM\aim.exeC:\Program Files\Web Technologies\wcm.exeC:\Program Files\ASC 2.1\asc 2.1.exeC:\Program Files\Messenger\msmsgs.exeC:\Program Files\Common Files\Real\Update_OB\bak\realsched.exeC:\Program Files\Creative\Creative Live! Cam\Live! Cam Manager\CTLCMgr.exeC:\Program Files\Web Technologies\iebtmm.exeC:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exeC:\Program Files\Hewlett-Packard\AiO\hp officejet g series\Bin\hpoavn07.exeC:\WINDOWS\System32\rundll32.exeC:\Program Files\antiviirus.exeC:\Program Files\tmp0.exeC:\Program Files\tmp1.exeC:\Program Files\tmp2.exeC:\Program Files\Internet Explorer\iexplore.exeC:\PROGRA~1\HEWLET~1\AiO\Shared\Bin\hpoevm07.exeC:\Program Files\Mozilla Firefox\firefox.exeC:\Program Files\Hewlett-Packard\AiO\Shared\bin\hpOSTS07.exeC:\WINDOWS\System32\rundll32.exeC:\Program Files\Internet Explorer\iexplore.exeC:\Program Files\MSN Messenger\msnmsgr.exeC:\Program Files\Trend Micro\HijackThis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL =http://internetsearchservice.comR1 - HKLM\Software\Microsoft\Internet Explorer,SearchURL =http://internetsearchservice.comR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL= http://internetsearchservice.comR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =http://internetsearchservice.com/ie6.htmlR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =http://internetsearchservice.comR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =http://softwarereferral.com/jump.php?wmid=6010&mid=MjI6Ojg5&lid=2R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL= http://internetsearchservice.comR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =http://internetsearchservice.com/ie6.htmlR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =http://internetsearchservice.comR1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant= http://internetsearchservice.comR0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant= http://internetsearchservice.comO1 - Hosts: 124.217.252.78 secure.isoftpay.comO1 - Hosts: 124.217.252.78 secure.isoftpay.comO1 - Hosts: 124.217.252.78 secure.isoftpay.comO3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} -C:\Program Files\Adobe\Acrobat 6.0\Acrobat\AcroIEFavClient.dllO3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} -C:\WINDOWS\System32\msdxm.ocxO3 - Toolbar: Internet Service -{1C56E97B-A95F-47B2-93C0-3FEED24479A7} - C:\Program Files\WebTechnologies\iebr.dllO3 - Toolbar: sqvgnrpx - {9437C997-89E6-4B84-A745-BEFD3A910FF5} -C:\DOCUME~1\Rabia\LOCALS~1\Temp\ac8zt2\sqvgnrpx.dllO4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUPO4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\CommonFiles\Real\Update_OB\realsched.exe" -osbootO4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\ProgramFiles\Java\jre1.6.0_04\bin\jusched.exe"O4 - HKLM\..\Run: [taskmon] C:\WINDOWS\taskmon.exeO4 - HKLM\..\Run: [runwinlogon] C:\WINDOWS\winlogon.exeO4 - HKLM\..\Run: [csrss] C:\WINDOWS\System32\wbem\csrss.exeO4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -kO4 - HKLM\..\Run: [Corel Photo Downloader] "C:\Program Files\CommonFiles\Corel\Corel PhotoDownloader\Corel PhotoDownloader.exe" -startupO4 - HKLM\..\Run: [asc32] "C:\Program Files\ASC 2.1\asc 2.1.exe"O4 - HKLM\..\Run: [antiviirus] C:\Program Files\antiviirus.exeO4 - HKLM\..\Run: [e85749d6] rundll32.exe "C:\WINDOWS\System32\bltaxgqk.dll",bO4 - HKCU\..\Run: [SVCHOST.EXE] C:\WINDOWS\System32\drivers\svchost.exeO4 - HKCU\..\Run: [libor] C:\WINDOWS\libor.exeO4 - HKCU\..\Run: [ieupdate] "C:\WINDOWS\system32\ieupdates.exe"O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odlO4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /backgroundO4 - HKCU\..\Run: [Creative Live! Cam Manager] "C:\ProgramFiles\Creative\Creative Live! Cam\Live! Cam Manager\CTLCMgr.exe"O4 - HKCU\..\Run: [AdobeUpdater] C:\Program Files\CommonFiles\Adobe\Updater5\AdobeUpdater.exeO4 - HKCU\..\Run: [AUTORUN_VAL] C:\Program Files\ASC 2.1\asc 2.1.exeO4 - HKLM\..\Policies\Explorer\Run: [pyErRAPwWp] C:\Documents andSettings\All Users\Application Data\relczeze\vohmdudc.exeO4 - HKLM\..\Policies\Explorer\Run: [some] C:\Program Files\WebTechnologies\wcs.exeO4 - HKLM\..\Policies\Explorer\Run: [start] C:\Program Files\WebTechnologies\iebtm.exeO4 - HKUS\S-1-5-19\..\Run: [AVG7_Run]C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'LOCAL SERVICE')O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run]C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'NETWORKSERVICE')O4 - Startup: Adobe Gamma.lnk = C:\Program Files\CommonFiles\Adobe\Calibration\Adobe Gamma Loader.exeO4 - Global Startup: Acrobat Assistant.lnk = C:\ProgramFiles\Adobe\Acrobat 6.0\Distillr\acrotray.exeO4 - Global Startup: HPAiODevice(hp officejet g series) - 1.lnk =C:\Program Files\Hewlett-Packard\AiO\hp officejet gseries\Bin\hpoavn07.exeO4 - Global Startup: Microsoft Office.lnk = C:\Program Files\MicrosoftOffice\Office10\OSA.EXEO6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions presentO7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System,DisableRegedit=1O8 - Extra context menu item: Add to Windows &Live Favorites -http://favorites.live.com/quickadd.aspxO8 - Extra context menu item: E&xport to Microsoft Excel -res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501}- C:\Program Files\Java\jre1.6.0_04\bin\ssv.dllO9 - Extra 'Tools' menuitem: Sun Java Console -{08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\ProgramFiles\Java\jre1.6.0_04\bin\ssv.dllO9 - Extra button: (no name) - {9034A523-D068-4BE8-A284-9DF278BE776E}- http://www.gateforietool.com/redirect.php (file missing)O9 - Extra 'Tools' menuitem: IE Anti-Spyware -{9034A523-D068-4BE8-A284-9DF278BE776E} -http://www.gateforietool.com/redirect.php (file missing)O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} -C:\Program Files\AIM\aim.exeO16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows GenuineAdvantage Validation Tool) -http://go.microsoft.com/fwlink/?linkid=39204O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) -http://www2.snapfish.com/SnapfishActivia.cabO16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo UploadTool) - http://gfx1.hotmail.com/mail/w2/pr02/resources/MSNPUpld.cabO16 - DPF: {50BD5CDA-4BA8-4048-8FAA-763F222E41D8} -ms-its:mhtml:file://c:\\nores.mht!http://adxanet.net/code/chm/xpre.chm::/xpreload.ocxO16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} (Facebook PhotoUploader 4 Control) -http://upload.facebook.com/controls/FacebookPhotoUploader3.cabO16 - DPF: {95D88B35-A521-472B-A182-BB1A98356421} (PearsonInstallation Assistant 2) -http://asp.mathxl.com/books/_Players/PearsonInstallAsst2.cabO16 - DPF: {E6D23284-0E9B-417D-A782-03E4487FC947} (Pearson MathXLPlayer) - http://asp.mathxl.com/books/_Players/MathPlayer.cabO16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper FlagsClass) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cabO17 - HKLM\System\CCS\Services\Tcpip\..\{A2317359-9944-4AA5-9893-B2DC79CD2321}:NameServer = 85.255.116.165,85.255.112.220O17 - HKLM\System\CS1\Services\Tcpip\Parameters: NameServer =85.255.116.165 85.255.112.220O17 - HKLM\System\CS2\Services\Tcpip\Parameters: NameServer =85.255.116.165 85.255.112.220O17 - HKLM\System\CCS\Services\Tcpip\Parameters: NameServer =85.255.116.165 85.255.112.220O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} -C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLLO21 - SSODL: fsrpknov - {191230A1-7C01-4679-B733-D17A18DA07E5} -C:\WINDOWS\fsrpknov.dllO21 - SSODL: fdxbameg - {9EC6E4CF-1837-4C8F-ABEB-C1D95BBF451C} -C:\WINDOWS\fdxbameg.dllO21 - SSODL: RomWin - {c9ac5ad2-1473-43aa-98ef-4702f0f13259} -C:\WINDOWS\Resources\RomWin.dllO22 - SharedTaskScheduler: enation -{629340b5-8df6-4211-9245-a86563a35792} -C:\WINDOWS\System32\gnmguxh.dllO23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft -C:\Program Files\Lavasoft\Ad-Aware\aawservice.exeO23 - Service: Adobe LM Service - Adobe Systems - C:\ProgramFiles\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exeO23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\ProgramFiles\Grisoft\AVG Anti-Spyware 7.5\guard.exeO23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o.- C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exeO23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. -C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exeO23 - Service: ProtexisLicensing - Unknown owner -C:\WINDOWS\System32\PSIService.exeO23 - Service: Viewpoint Manager Service - Viewpoint Corporation -C:\Program Files\Viewpoint\Common\ViewpointService.exeO24 - Desktop Component 0: Privacy Protection -file:///C:\WINDOWS\privacy_danger\index.htm --End of file - 10392 bytes

Recommended Answers

All 6 Replies

Hi and welcome to the Daniweb forums :).

==========

Take a look at other logs in the forum, then take a look at yours. You need to save the log in notepad, make sure that Word Wrap is unchecked under the format Tab, then post the log here.

==

Please download FixWareout from this site:
http://downloads.subratam.org/Fixwareout.exe


Save it to your desktop and run it. Click Next, then Install, make sure "Run fixit" is checked and click Finish.
The fix will begin; follow the prompts.
You will be asked to reboot your computer; please do so.
Your system may take longer than usual to load; this is normal.
Once the desktop loads post the text that will open (report.txt) and a new Hijackthis log please.

Username "Rabia" - 07/11/2008 17:31:13 [Fixwareout edited 9/01/2007]

~~~~~ Prerun check
HKLM\SOFTWARE\~\Winlogon\ "System"="kdppg.exe"

HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters
"nameserver"="85.255.116.165 85.255.112.220" <Value cleared.
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\interfaces\{A2317359-9944-4AA5-9893-B2DC79CD2321}
"nameserver"="85.255.116.165,85.255.112.220" <Value cleared.
HKEY_LOCAL_MACHINE\system\currentcontrolset\services\tcpip\parameters\interfaces\{5FCE779B-5165-4603-8A66-3C4B1948BB03}
"DhcpNameServer"="85.255.116.165,85.255.112.220" <Value cleared.

Successfully flushed the DNS Resolver Cache.
System was rebooted successfully.

~~~~~ Postrun check
HKLM\SOFTWARE\~\Winlogon\ "system"=""
....
....
~~~~~ Misc files.
C:\Documents and Settings\Rabia\Application Data\Install.dat Deleted
C:\WINDOWS\xpupdate.exe Deleted
....
~~~~~ Checking for older varients.
....
~~~~~ Other
C:\WINDOWS\Temp\kdppg.ren 58880 08/23/2001

~~~~~ Current runs (hklm hkcu "run" Keys Only)
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre1.6.0_04\\bin\\jusched.exe\""
"taskmon"="C:\\WINDOWS\\taskmon.exe"
"runwinlogon"="C:\\WINDOWS\\winlogon.exe"
"csrss"="C:\\WINDOWS\\System32\\wbem\\csrss.exe"
"KernelFaultCheck"=hex(2):25,73,79,73,74,65,6d,72,6f,6f,74,25,5c,73,79,73,74,\
65,6d,33,32,5c,64,75,6d,70,72,65,70,20,30,20,2d,6b,00
"Corel Photo Downloader"="\"C:\\Program Files\\Common Files\\Corel\\Corel PhotoDownloader\\Corel PhotoDownloader.exe\" -startup"
"asc32"="\"C:\\Program Files\\ASC 2.1\\asc 2.1.exe\""
"antiviirus"="C:\\Program Files\\antiviirus.exe"
"e85749d6"="rundll32.exe \"C:\\WINDOWS\\System32\\xfeeosyw.dll\",b"

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"SVCHOST.EXE"="C:\\WINDOWS\\System32\\drivers\\svchost.exe"
"libor"="C:\\WINDOWS\\libor.exe"
"ieupdate"="\"C:\\WINDOWS\\system32\\ieupdates.exe\""
"AIM"="C:\\Program Files\\AIM\\aim.exe -cnetwait.odl"
"MSMSGS"="\"C:\\Program Files\\Messenger\\msmsgs.exe\" /background"
"Creative Live! Cam Manager"="\"C:\\Program Files\\Creative\\Creative Live! Cam\\Live! Cam Manager\\CTLCMgr.exe\""
"AdobeUpdater"="C:\\Program Files\\Common Files\\Adobe\\Updater5\\AdobeUpdater.exe"
"AUTORUN_VAL"="C:\\Program Files\\ASC 2.1\\asc 2.1.exe "
....
Hosts file was reset, If you use a custom hosts file please replace it...
~~~~~ End report ~~~~~

hijackthis log

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 18:04: VIRUS ALERT!, on 7/11/2008
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\WINDOWS\System32\PSIService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe
C:\WINDOWS\winlogon.exe
C:\Program Files\antiviirus.exe
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\ASC 2.1\asc 2.1.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Creative\Creative Live! Cam\Live! Cam Manager\CTLCMgr.exe
C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
C:\Program Files\Hewlett-Packard\AiO\hp officejet g series\Bin\hpoavn07.exe
C:\Program Files\Java\jre1.6.0_04\bin\bak\jusched.exe
C:\Program Files\tmp0.exe
C:\Program Files\tmp1.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\tmp2.exe
C:\PROGRA~1\HEWLET~1\AiO\Shared\Bin\hpoevm07.exe
C:\Program Files\Hewlett-Packard\AiO\Shared\bin\hpOSTS07.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe"
O4 - HKLM\..\Run: [taskmon] C:\WINDOWS\taskmon.exe
O4 - HKLM\..\Run: [runwinlogon] C:\WINDOWS\winlogon.exe
O4 - HKLM\..\Run: [csrss] C:\WINDOWS\System32\wbem\csrss.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [Corel Photo Downloader] "C:\Program Files\Common Files\Corel\Corel PhotoDownloader\Corel PhotoDownloader.exe" -startup
O4 - HKLM\..\Run: [asc32] "C:\Program Files\ASC 2.1\asc 2.1.exe"
O4 - HKLM\..\Run: [antiviirus] C:\Program Files\antiviirus.exe
O4 - HKLM\..\Run: [e85749d6] rundll32.exe "C:\WINDOWS\System32\xfeeosyw.dll",b
O4 - HKCU\..\Run: [SVCHOST.EXE] C:\WINDOWS\System32\drivers\svchost.exe
O4 - HKCU\..\Run: [libor] C:\WINDOWS\libor.exe
O4 - HKCU\..\Run: [ieupdate] "C:\WINDOWS\system32\ieupdates.exe"
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Creative Live! Cam Manager] "C:\Program Files\Creative\Creative Live! Cam\Live! Cam Manager\CTLCMgr.exe"
O4 - HKCU\..\Run: [AdobeUpdater] C:\Program Files\Common Files\Adobe\Updater5\AdobeUpdater.exe
O4 - HKCU\..\Run: [AUTORUN_VAL] C:\Program Files\ASC 2.1\asc 2.1.exe
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVGFRE~1\avgw.exe /RUNONCE (User 'NETWORK SERVICE')
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Acrobat Assistant.lnk = C:\Program Files\Adobe\Acrobat 6.0\Distillr\acrotray.exe
O4 - Global Startup: HPAiODevice(hp officejet g series) - 1.lnk = C:\Program Files\Hewlett-Packard\AiO\hp officejet g series\Bin\hpoavn07.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_04\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_04\bin\ssv.dll
O9 - Extra button: (no name) - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.gateforietool.com/redirect.php (file missing)
O9 - Extra 'Tools' menuitem: IE Anti-Spyware - {9034A523-D068-4BE8-A284-9DF278BE776E} - http://www.gateforietool.com/redirect.php (file missing)
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://www2.snapfish.com/SnapfishActivia.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://gfx1.hotmail.com/mail/w2/pr02/resources/MSNPUpld.cab
O16 - DPF: {50BD5CDA-4BA8-4048-8FAA-763F222E41D8} - ms-its:mhtml:file://c:\\nores.mht!http://adxanet.net/code/chm/xpre.chm::/xpreload.ocx
O16 - DPF: {5C6698D9-7BE4-4122-8EC5-291D84DBD4A0} (Facebook Photo Uploader 4 Control) - http://upload.facebook.com/controls/FacebookPhotoUploader3.cab
O16 - DPF: {95D88B35-A521-472B-A182-BB1A98356421} (Pearson Installation Assistant 2) - http://asp.mathxl.com/books/_Players/PearsonInstallAsst2.cab
O16 - DPF: {E6D23284-0E9B-417D-A782-03E4487FC947} (Pearson MathXL Player) - http://asp.mathxl.com/books/_Players/MathPlayer.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O21 - SSODL: RomWin - {c9ac5ad2-1473-43aa-98ef-4702f0f13259} - C:\WINDOWS\Resources\RomWin.dll
O22 - SharedTaskScheduler: enation - {629340b5-8df6-4211-9245-a86563a35792} - C:\WINDOWS\System32\gnmguxh.dll
O23 - Service: Lavasoft Ad-Aware Service (aawservice) - Lavasoft - C:\Program Files\Lavasoft\Ad-Aware\aawservice.exe
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: ProtexisLicensing - Unknown owner - C:\WINDOWS\System32\PSIService.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
O24 - Desktop Component 0: Privacy Protection - file:///C:\WINDOWS\privacy_danger\index.htm

--
End of file - 7029 bytes

Your pc is still severely infected, so can you now do the following;

Download Malwarebytes' Anti-Malware (http://www.majorgeeks.com/Malwarebytes_Anti-Malware_d5756.html) to your desktop.

* Double-click mbam-setup.exe and follow the prompts to install the program.
* At the end, be sure to checkmark the Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
* If an update is found, it will download and install the latest version.
* Once the program has loaded, select Perform full scan, then click Scan.
* When the scan is complete, click OK, then Show Results to view the results.
* Be sure that everything is checked, and click Remove Selected.
* When completed, a log will open in Notepad.
* Post the log back here.

Make sure that you restart the computer.

The log can also be found here:
C:\Documents and Settings\Username\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\Logs\log-date.txt
Or at C:\Program Files\Malwarebytes' Anti-Malware\Logs\log-date.txt

===============

Please download ComboFix by sUBs from HERE or HERE

  • You must download it to and run it from your Desktop
  • Physically disconnect from the internet.
  • Now STOP all your monitoring programs (Antivirus/Antispyware, Guards and Shields) as they could easily interfere with ComboFix.
  • Double click combofix.exe & follow the prompts.
  • When finished, it will produce a log. Please save that log to post in your next reply.
  • Re-enable all the programs that were disabled during the running of ComboFix..

Note:
Do not mouse-click combofix's window while it is running. That may cause it to stall.

CF disconnects your machine from the internet. The connection is automatically restored before CF completes its run. If CF runs into difficulty and terminates prematurely, the connection can be manually restored by restarting your machine.

Post new HJT log.

Malwarebytes' Anti-Malware 1.20
Database version: 942
Windows 5.1.2600

8:14:10 PM 7/12/2008
mbam-log-7-12-2008 (20-14-09).txt

Scan type: Full Scan (C:\|)
Objects scanned: 109149
Time elapsed: 2 hour(s), 53 minute(s), 13 second(s)

Memory Processes Infected: 6
Memory Modules Infected: 9
Registry Keys Infected: 97
Registry Values Infected: 25
Registry Data Items Infected: 20
Folders Infected: 14
Files Infected: 593

Memory Processes Infected:
C:\WINDOWS\winlogon.exe (Trojan.Agent) -> Unloaded process successfully.
C:\Program Files\ASC 2.1\asc 2.1.exe (Rogue.VirusHeat) -> Unloaded process successfully.
C:\Program Files\antiviirus.exe (Trojan.Downloader) -> Unloaded process successfully.
C:\Program Files\tmp0.exe (Trojan.FakeAlert) -> Unloaded process successfully.
C:\Program Files\tmp1.exe (Trojan.FakeAlert) -> Unloaded process successfully.
C:\Program Files\tmp2.exe (Trojan.FakeAlert) -> Unloaded process successfully.

Memory Modules Infected:
C:\WINDOWS\system32\xxyabyyW.dll (Trojan.Vundo) -> Unloaded module successfully.
C:\WINDOWS\system32\WLCtrl32.dll (Trojan.Vundo) -> Unloaded module successfully.
C:\Program Files\PC-Antispyware\IeExtension.dll (Rogue.PCAntispyware) -> Unloaded module successfully.
C:\WINDOWS\system32\navfilter.dll (Trojan.FakeAlert) -> Unloaded module successfully.
C:\WINDOWS\system32\zdvcbw.dll (Trojan.Vundo) -> Unloaded module successfully.
C:\WINDOWS\wbxdpgfevkl.dll (Trojan.FakeAlert) -> Unloaded module successfully.
C:\WINDOWS\system32\gnmguxh.dll (Trojan.Zlob) -> Unloaded module successfully.
C:\WINDOWS\Resources\RomWin.dll (Trojan.Clicker) -> Unloaded module successfully.
C:\WINDOWS\system32\rqRLcYPg.dll (Trojan.Vundo) -> Unloaded module successfully.

Registry Keys Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1bd085fe-32d9-42c4-9fe7-611028987566} (Trojan.Vundo) -> Delete on reboot.
HKEY_CLASSES_ROOT\CLSID\{1bd085fe-32d9-42c4-9fe7-611028987566} (Trojan.Vundo) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlctrl32 (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{10f0c2a9-8e38-43e3-204d-45524c494e20} (Rogue.PCAntispyware) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{10f0c2a9-8e38-43e3-204d-45524c494e20} (Rogue.PCAntispyware) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{15c7d7ad-a87a-4c0d-9d8b-637fcd3488ef} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{1ab6932f-92fe-42e6-870c-544ae458ea78} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{1ab6932f-92fe-42e6-870c-544ae458ea78} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{7a439aa7-7cfa-4a50-a65d-10d799ccfb28} (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{7a439aa7-7cfa-4a50-a65d-10d799ccfb28} (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{629340b5-8df6-4211-9245-a86563a35792} (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{967a494a-6aec-4555-9caf-fa6eb00acf91} (Rogue.PestPatrol) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{9692be2f-eb8f-49d9-a11c-c24c1ef734d5} (Rogue.PestPatrol) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{a8954909-1f0f-41a5-a7fa-3b376d69e226} (Rogue.PestPatrol) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{f7d09218-46d7-4d3d-9b7f-315204cd0836} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{e63648f7-3933-440e-b4f6-a8584dd7b7eb} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\e405.e405mgr (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\e405.e405mgr.1 (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{9034a523-d068-4be8-a284-9df278be776e} (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{d2608046-dd09-a225-01bf-70c1edd8b2e8} (Rogue.AntiSpyCheck) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{daed9266-8c28-4c1c-8b58-5c66eff1d302} (Search.Hijack) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{42e2b43f-3954-48ec-b549-5c05cb7dbd0a} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{07895222-50a5-4598-acb1-806ef2a9babc} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{9437c997-89e6-4b84-a745-befd3a910ff5} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{4fcb7cfd-13fc-4afe-a634-efbd957e7083} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{81d04785-9638-4bec-8b39-3b9b9e972d1d} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{3885c07e-5f60-4cb3-bcea-ebccc3135201} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{af4ebf01-2871-49e4-bf25-8f0564359c31} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{af4ebf01-2871-49e4-bf25-8f0564359c31} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{4937d5d1-2039-409a-bd83-fec9b39b2356} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{caf9d798-c659-4b9b-8e19-ee27c3d04ee7} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{3f5a62e2-51f2-11d3-a075-cc7364cae42a} (Adware.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{9dd4258a-7138-49c4-8d34-587879a5c7a4} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{9dd4258a-7138-49c4-8d34-587879a5c7a4} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{b8c0220d-763d-49a4-95f4-61dfdec66ee6} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{c3bcc488-1ae7-11d4-ab82-0010a4ec2338} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{c3bcc488-1ae7-11d4-ab82-0010a4ec2338} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\toolbar.tb (Adware.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\toolbar.tb.1 (Adware.BHO) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\bhonew.bho (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\bhonew.bho.1 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{1c56e97b-a95f-47b2-93c0-3feed24479a7} (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ascwarning32.warningbho (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\ascwarning32.warningbho.1 (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{58472bc6-bea3-42d4-8917-7a8bcb0711b5} (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{58472bc6-bea3-42d4-8917-7a8bcb0711b5} (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{000000da-0786-4633-87c6-1aa7a4429ef1} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\horizontal flash menu wizard (Adware.Cinmus) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\AllFilesystemObjects\shellex\ContextMenuHandlers\pcsd.dll (Rogue.PCAntispyware) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{645FF040-5081-101B-9F08-00AA002F954E}\shellex\ContextMenuHandlers\pcsd.dll (Rogue.PCAntispyware) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\dpcproxy (Fake.Dropped.Malware) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\logons (Fake.Dropped.Malware) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\uninstall (Fake.Dropped.Malware) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\typelib (Fake.Dropped.Malware) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{c9ac5ad2-1473-43aa-98ef-4702f0f13259} (Trojan.Clicker) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\ICF (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\fci (Rootkit.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\HOL5_VXIEWER.FULL.1 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Classes\applications\accessdiver.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\fwbd (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\HolLol (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Inet Delivery (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\mslagent (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\mwc (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Golden Palace Casino NEW (Trojan.DNSChanger) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\PC-Cleaner (Rogue.PC-Cleaner) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SYSTEM\currentcontrolset\Services\iTunesMusic (Fake.Dropped.Malware) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SYSTEM\currentcontrolset\Services\rdriv (Fake.Dropped.Malware) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\aoprndtws (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\asc3550p (Rootkit.Agent) -> Delete on reboot.
HKEY_CURRENT_USER\SOFTWARE\asc 2.1 (Rogue.AntiSpyCheck) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\fci (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\fci (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\icf (Rootkit.ADS) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\icf (Rootkit.ADS) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\wkey (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\rdfa (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\MS Juan (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{73984fe0-9702-4c55-9c7b-9ba3c5861f25} (Trojan.Vundo) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{73984fe0-9702-4c55-9c7b-9ba3c5861f25} (Trojan.Vundo) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\rqrlcypg (Trojan.Vundo) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\FCOVM (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\RemoveRP (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{6dbaa935-a9b5-456d-972d-692cfe71e9bb} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{da6321c0-5b52-477e-af9a-b92bd74bfc1e} (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\webvideo (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\VSPlugin (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\sqvgnrpx.bwbf (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\sqvgnrpx.toolbar.1 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Windows Safety Alert (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Web Technologies (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\e405.e405mgr (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IEBrowse Tool (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IExplorer Bar (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Warning Center (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\videoPl.chl (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ICF (Rootkit.Agent) -> Quarantined and deleted successfully.

Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\runwinlogon (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\asc32 (Rogue.VirusHeat) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{629340b5-8df6-4211-9245-a86563a35792} (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\autorun_val (Rogue.VirusHeat) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Extensions\CmdMapping\{9034a523-d068-4be8-a284-9df278be776e} (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler\{0656a137-b161-cadd-9777-e37a75727e78} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{0e1230f8-ea50-42a9-983c-d22abc2eeb4c} (Fake.Dropped.Malware) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{1c56e97b-a95f-47b2-93c0-3feed24479a7} (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\IEUpdate (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\svchost.exe (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\csrss (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Desktop\Components\0\source (Trojan.FakeAlert) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\libor (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\romwin (Trojan.Clicker) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\taskmon (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\SystemCheck2 (Trojan.Agent) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\antiviirus (Trojan.Downloader) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks\{73984fe0-9702-4c55-9c7b-9ba3c5861f25} (Trojan.Vundo) -> Delete on reboot.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\searchmigrateddefaulturl (Trojan.Zlob) -> Delete on reboot.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchUrl\w\ (Trojan.Zlob) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\searchmigrateddefaulturl (Trojan.Zlob) -> Delete on reboot.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchUrl\w\ (Trojan.Zlob) -> Delete on reboot.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\*.securewebinfo.com (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\*.safetyincludes.com (Trojan.Zlob) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\New Windows\Allow\*.securemanaging.com (Trojan.Zlob) -> Quarantined and deleted successfully.

Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Notification Packages (Trojan.Vundo) -> Data: c:\windows\system32\xxyabyyw -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\LSA\Authentication Packages (Trojan.Vundo) -> Data: c:\windows\system32\xxyabyyw -> Delete on reboot.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchUrl\w\ (Hijack.Search) -> Bad: (http://internetsearchservice.com/search?q=%s) Good: (http://www.google.com/) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchUrl\w\ (Hijack.Search) -> Bad: (http://internetsearchservice.com/search?q=%s) Good: (http://www.google.com/) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Main\SearchMigratedDefaultURL (Hijack.Search) -> Bad: (http://internetsearchservice.com/search?q={searchTerms}) Good: (http://www.google.com/) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Main\SearchMigratedDefaultURL (Hijack.Search) -> Bad: (http://internetsearchservice.com/search?q={searchTerms}) Good: (http://www.google.com/) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\ProductId (Trojan.FakeAlert) -> Bad: (VIRUS ALERT!) Good: (55274-645-2775716-23940) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Control Panel\International\sTimeFormat (Trojan.FakeAlert) -> Bad: (HH:mm: VIRUS ALERT!) Good: (h:mm:ss tt) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Start_ShowControlPanel (Hijack.StartMenu) -> Bad: (0) Good: (1) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Start_ShowRun (Hijack.StartMenu) -> Bad: (0) Good: (1) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Start_ShowSearch (Hijack.StartMenu) -> Bad: (0) Good: (1) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Start_ShowHelp (Hijack.StartMenu) -> Bad: (0) Good: (1) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Start_ShowMyDocs (Hijack.StartMenu) -> Bad: (0) Good: (1) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Start_ShowMyComputer (Hijack.StartMenu) -> Bad: (0) Good: (1) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoStartMenuMorePrograms (Hijack.StartMenu) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\StartMenuLogOff (Hijack.StartMenu) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoDrives (Hijack.Drives) -> Bad: (12) Good: (0) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoToolbarCustomize (Hijack.Explorer) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\Explorer\NoSetFolders (Hijack.Explorer) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispCPL (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

Folders Infected:
C:\Program Files\Ipwindows (Trojan.Rond) -> Quarantined and deleted successfully.
C:\Program Files\InetGet2 (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Program Files\MyGlobalSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyGlobalSearch\bar (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\WINDOWS\privacy_danger (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\WINDOWS\privacy_danger\images (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\WINDOWS\mslagent (Adware.EGDAccess) -> Quarantined and deleted successfully.
C:\Program Files\akl (Fake.Dropped.Malware) -> Quarantined and deleted successfully.
C:\Program Files\ASC 2.1 (Rogue.AntiSpyCheck) -> Quarantined and deleted successfully.
C:\Program Files\Web Technologies (Trojan.Zlob) -> Quarantined and deleted successfully.
C:\Program Files\PC-Cleaner (Rogue.PC-Cleaner) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\smp (Fake.Dropped.Malware) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\778670 (Trojan.BHO) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\734914 (Trojan.BHO) -> Quarantined and deleted successfully.

Files Infected:
C:\WINDOWS\system32\xxyabyyW.dll (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\Wyybayxx.ini (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\Wyybayxx.ini2 (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\kdjolqxq.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\qxqlojdk.ini (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\WLCtrl32.dll (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\winlogon.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Program Files\ASC 2.1\asc 2.1.exe (Rogue.VirusHeat) -> Quarantined and deleted successfully.
C:\Program Files\PC-Antispyware\IeExtension.dll (Rogue.PCAntispyware) -> Delete on reboot.
C:\WINDOWS\system32\navfilter.dll (Trojan.FakeAlert) -> Delete on reboot.
C:\WINDOWS\system32\zdvcbw.dll (Trojan.Vundo) -> Delete on reboot.
C:\WINDOWS\system32\gnmguxh.dll (Trojan.Zlob) -> Delete on reboot.
C:\WINDOWS\system32\config\47580744.Evt (Rootkit.Agent) -> Delete on reboot.
C:\Program Files\ASC 2.1\asc 2.1.exe (Rogue.VirusHeat) -> Quarantined and deleted successfully.
C:\WINDOWS\system32\778670\778670.dll (Trojan.BHO) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\ac8zt2\sqvgnrpx.dll (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\WINDOWS\wbxdpgfevkl.dll (Trojan.FakeAlert) -> Delete on reboot.
C:\WINDOWS\system32\wscmp.dll (Adware.BHO) -> Quarantined and deleted successfully.
C:\Program Files\Web Technologies\iebr.dll (Trojan.Zlob) -> Quarantined and deleted successfully.
C:\16.tmp (Trojan.Agent) -> Quarantined and deleted successfully.
C:\D.tmp (Trojan.Agent) -> Quarantined and deleted successfully.
C:\winryzz.exe (Trojan.Searcher) -> Quarantined and deleted successfully.
C:\bak\wsusupd.exe (Trojan.Searcher) -> Quarantined and deleted successfully.
C:\Documents and Settings\All Users\Application Data\relczeze\vohmdudc.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\EY0H934B\help32[1].exe (Backdoor.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\EY0H934B\help32[2].exe (Backdoor.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\EY0H934B\notepad32[1].exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\EY0H934B\notepad32[2].exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\EY0H934B\notepad32[3].exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\EY0H934B\notepad32[4].exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\EY0H934B\notepad32[5].exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\EY0H934B\notepad32[6].exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\EY0H934B\notepad32[7].exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\EY0H934B\notepad32[8].exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\PSO0WFGI\help32[1].exe (Backdoor.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\PSO0WFGI\help32[2].exe (Spyware.Zbot) -> Quarantined and deleted successfully.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\SQL45LZI\notepad32[1].exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\V5CE2YOH\notepad[1].exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\V5CE2YOH\notepad[2].exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\NetworkService\Local Settings\Temporary Internet Files\Content.IE5\V5CE2YOH\notepad[3].exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Desktop\HorizontalMenuSetup.exe (Adware.Cinmus) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\1.dllb (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\1198482790.exe (Backdoor.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\1448572053.exe (Backdoor.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\1888479504.exe (Backdoor.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\1907413180.exe (Backdoor.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\1983612328.exe (Backdoor.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\2.dllb (Worm.Zhelatin) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\462924070.exe (Backdoor.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\5.dllb (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\551455275.exe (Backdoor.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\6.dllb (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\7.dllb (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\785237543.exe (Backdoor.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\824272976.exe (Backdoor.Agent) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\k896pvnd.exe (Trojan.Zlob) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\maxpaynow.game (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\v4xd3.ga2me (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\v5xd2.g3ame (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\v5xd4.ga2me (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\v6xdt4.game (Trojan.Spambot) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\vista_sp1.exe (Trojan.Fakealert) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\vx1dt1.game (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\vx1dt3.game (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temp\vx3dt2.game (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temporary Internet Files\Content.IE5\9GY8UKDM\kb456456[1] (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia\Local Settings\Temporary Internet Files\Content.IE5\9GY8UKDM\kb767887[1] (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\Documents and Settings\Rabia Room\Local Settings\Temp\maxpaynow.game (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\Program Files\Jwhzwsty\pikeeuly.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\Program Files\Scriptocean\Horizontal Flash Menu Wizard\uninst.exe (Adware.Cinmus) -> Quarantined and deleted successfully.
C:\Program Files\Vpojmfoc\xqccnoba.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0057159.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0058145.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0058146.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0058152.sys (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0058154.exe (Worm.Zhelatin) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0058157.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0058158.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0058160.exe (Trojan.Spambot) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0058164.exe (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0058165.exe (Trojan.Spambot) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0058166.exe (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0058170.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0058172.sys (Rootkit.Srizbi) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0058185.exe (Worm.Zhelatin) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0058186.exe (Trojan.Pakes) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0059145.sys (Rootkit.Srizbi) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0059146.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0059147.exe (Trojan.Downloader) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0059153.sys (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0059172.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0059176.sys (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0059196.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0060196.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0060202.sys (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0061196.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0062196.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0062202.sys (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0062207.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0063196.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0063203.sys (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0064196.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0064200.sys (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0065196.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0065200.sys (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0065205.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0066196.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0066200.sys (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0067196.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0068196.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0068202.sys (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0069196.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0070196.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0070202.sys (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0070205.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0070213.dll (Rogue.PCCleaner) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0070214.exe (Rogue.PCCleaner) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0070221.dll (Rogue.PCAntispyware) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0070224.sys (Rogue.PCAntispyware) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0070227.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0070233.sys (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0070235.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0071227.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0071235.sys (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0071238.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0071245.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0071251.sys (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0071253.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0071274.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0071281.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0071286.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0071303.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0071311.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0071330.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0071337.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0071350.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0071360.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0071367.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0072360.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0072369.exe (Trojan.Pakes) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0072614.exe (Dialer) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0072615.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0072649.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0072658.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0072677.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0073677.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0073694.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0073713.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0073735.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0073747.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0074747.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0074756.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0074759.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0074761.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0075761.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0075772.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0075777.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0075786.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0075804.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0075814.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0075841.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0075843.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0075852.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0076843.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0077843.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0078843.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0079843.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0080843.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0081843.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0082843.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0083843.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0083849.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0083866.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0084843.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0084854.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0084863.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0084864.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0085859.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0085870.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0085878.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0085884.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0085893.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0086884.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0087884.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0087906.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0087910.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0087918.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0088910.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0089910.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0090910.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0090915.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0090929.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0090937.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0090945.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0090962.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0090969.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0090984.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0090992.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0091984.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0092012.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0092021.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0092042.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0092049.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0092099.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0093099.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0094099.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0094110.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0094116.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0094124.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0095116.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0096116.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0096125.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0096133.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0096142.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0096149.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0096162.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0096169.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0097162.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0097182.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0097183.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0097191.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0098183.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0098195.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0099183.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0100183.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0100201.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0100209.exe (Trojan.FakeAlert) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0100243.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0100262.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0101262.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0102262.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0103262.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0103293.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0104293.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0105293.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0105302.exe (Trojan.Agent) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0105314.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0106314.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0106429.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0107429.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0108429.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0109429.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0109447.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0110447.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0110459.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0110489.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0111631.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0111632.sys (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0111635.sys (Rootkit.Srizbi) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0112631.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0113631.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0113671.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0113681.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0113701.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0113714.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0113727.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0114727.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0114740.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0115740.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0116740.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0117740.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0117749.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0118749.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0118765.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0118775.dll (Trojan.Vundo) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{9D91D600-8EDF-45E3-B951-2329C606D122}\RP286\A0119775.dll (Trojan.Vundo) -> Q

You need to follow the rest of my instructions please.

Be a part of the DaniWeb community

We're a friendly, industry-focused community of developers, IT pros, digital marketers, and technology enthusiasts meeting, networking, learning, and sharing knowledge.