 
                 
                InterviewSolution
This section includes InterviewSolutions, each offering curated multiple-choice questions to sharpen your knowledge and support exam preparation. Choose a topic below to get started.
| 401. | Solve : Wierd Situation? | 
| Answer» Processor-AMD Athlon 64 X2 DualCore 5600+ | |
| 402. | Solve : crss.exe activated by tintmg.exe removal, no folder option? | 
| Answer» Your comment has been removed. Please do not post malware ADVICE, or post here in the malware FORUM, UNLESS you NEED help. If you want to help, please go here. Superdave. | |
| 403. | Solve : Should I write a guide. . .? | 
| Answer» I was thinking about writing a GUIDE to removing malware USING processxp and explain the sign of an infection, were most infected FILES are, how they START, and work so that people can get better at removing viruses themselves. | |
| 404. | Solve : harddisk diagnostic malware? | 
| Answer» Hi, i have this malware, the problem is i can get into safe mode or anything to run MALWAREBYTES.  Any idea what i can do?A possible fix. ....booting an infected machine from a CD and running an operating system off the CD that treats the C disk as a data disk. You can then run anti-malware softwareDo you STILL require help? | |
| 405. | Solve : get kaspersky for free?? | 
| Answer» method.torrent,patch ANYTHING,i know its not free,thanksWe won't HELP with such requests. THREAD closed. | |
| 406. | Solve : SAS Pro settings the same as free edition?? | 
| Answer» From my most accessed anti malware thread posted by evilfantasy: Step 3: SUPERAntiSpyware I purchased a lifetime subscription to SAS, (first found in this thread)(thanks Kevin!), and have been very impressed with the performance of this SERVICE for the last 5 years. I am just curious as to whether these settings should be set the same with pro version (real time protection)? Thanks, Mike | |
| 407. | Solve : Deleting infected file to Recycle Bin and empty its content. Make sense or not ?? | 
| Answer» Myself don't know how to classify this question - stupid or not ? Anyway, just out of my curiosity. Would this procedure do the same action like using AV software to delete/clean such an infection ? Absolutely not. | |
| 408. | Solve : error message on start up screen? | 
| Answer» FOUND the following error message: Error loading C:\WINDOWS\oteqageteyojomuc.dll The SPECIFIED module could not be found Paste the following logs for your inspection: SUPERAntiSpyware Scan Log http://www.superantispyware.com Generated 02/16/2011 at 03:27 PM Application Version : 4.48.1000 Core Rules Database Version : 6415 Trace Rules Database Version: 4227 Scan type : Complete Scan Total Scan Time : 00:48:04 Memory items scanned : 358 Memory threats detected : 0 Registry items scanned : 8165 Registry threats detected : 3 File items scanned : 74731 File threats detected : 83 Adware.Tracking Cookie C:\Documents and Settings\tso\Cookies\[email protected][2].txt C:\Documents and Settings\tso\Cookies\[email protected][2].txt C:\Documents and Settings\tso\Cookies\[email protected][1].txt C:\Documents and Settings\tso\Cookies\[email protected][2].txt C:\Documents and Settings\tso\Cookies\[email protected][2].txt C:\Documents and Settings\tso\Cookies\[email protected][1].txt media.vmixcore.com [ C:\Documents and Settings\tso\Application Data\Macromedia\Flash Player\#SharedObjects\WG9YUUED ] .adinterax.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .adinterax.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .doubleclick.net [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .atdmt.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .atdmt.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] ad.yieldmanager.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] ad.yieldmanager.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] ad.yieldmanager.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] ad.yieldmanager.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] ad.yieldmanager.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .ads.pointroll.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .pointroll.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .pointroll.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .ads.pointroll.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .ads.pointroll.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .ads.pointroll.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .ads.pointroll.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .ads.pointroll.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .ads.pointroll.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .casalemedia.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .casalemedia.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .casalemedia.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .casalemedia.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .invitemedia.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .invitemedia.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .invitemedia.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .invitemedia.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .invitemedia.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .invitemedia.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .content.yieldmanager.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .invitemedia.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] in.getclicky.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .invitemedia.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .invitemedia.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .apmebf.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .mediaplex.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .mediaplex.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .nextag.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .nextag.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .overture.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .overture.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .overture.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .imrworldwide.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .imrworldwide.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] ad.yieldmanager.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .ads.pointroll.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .bs.serving-sys.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .serving-sys.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .serving-sys.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .serving-sys.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .serving-sys.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .adcentriconline.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .ru4.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .ru4.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] www.googleadservices.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .femalebaldness.org [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .chitika.net [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .dmtracker.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .casalemedia.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .revsci.net [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .revsci.net [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .adbrite.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .adbrite.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] www.googleadservices.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .revsci.net [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .revsci.net [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .revsci.net [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .media6degrees.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .media6degrees.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .media6degrees.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .kontera.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .kontera.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .kontera.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .kontera.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .questionmarket.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] .questionmarket.com [ C:\Documents and Settings\tso\Application Data\Mozilla\Firefox\Profiles\z2u6jnhh.default\cookies.sqlite ] Backdoor.Bot[ZBot] HKU\S-1-5-21-1454471165-1788223648-725345543-1007\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{19127ad2-394b-70f5-c650-b97867baa1f7} Malware.Trace HKU\.DEFAULT\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON#SHELL HKU\S-1-5-18\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON#SHELL Malwarebytes' Anti-Malware 1.50.1.1100 www.malwarebytes.org Database version: 5706 Windows 5.1.2600 Service Pack 3 INTERNET Explorer 8.0.6001.18702 2/16/2011 4:02:13 PM mbam-log-2011-02-16 (16-02-13).txt Scan type: Full scan (C:\|) Objects scanned: 207927 Time elapsed: 20 minute(s), 25 second(s) Memory Processes Infected: 0 Memory Modules Infected: 0 Registry Keys Infected: 2 Registry Values Infected: 0 Registry Data Items Infected: 0 Folders Infected: 0 Files Infected: 0 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: (No malicious items detected) Registry Keys Infected: HKEY_CLASSES_ROOT\adShotHlpr.adShotHlpr (Adware.Adrotator) -> Delete on reboot. HKEY_CLASSES_ROOT\adShotHlpr.adShotHlpr.1.0 (Adware.Adrotator) -> Delete on reboot. Registry Values Infected: (No malicious items detected) Registry Data Items Infected: (No malicious items detected) Folders Infected: (No malicious items detected) Files Infected: (No malicious items detected) Please help. Thank you. I'm required to give you this information. One or more of the identified infections is a backdoor trojan. (And, it appears that it could be on all accounts.) This allows hackers to remotely control your computer, steal critical system information and Download and Execute files Read this article: Danger: Remote Access Trojans. If your computer was used for online banking, has credit card information or other sensitive data on it, all passwords should be changed immediately to include those used for banking, email, eBay and forums. You should consider them to be compromised. They should be changed by using a different computer and not the infected one! If not, an attacker may get the new passwords and transaction information. Banking and credit card institutions should be notified of the possible security breach. I would counsel you to disconnect this PC from the Internet immediately. Though the Trojan has been identified and can be killed, because of it's backdoor functionality, your PC is very likely compromised and there is no way to be sure your computer can ever again be trusted. Many experts in the security community BELIEVE that once infected with this type of Trojan, the best course of action would be a reformat and reinstall of the OS. Please read these for more information: How Do I Handle Possible Identify Theft, Internet Fraud and CC Fraud? When Should I Format, How Should I Reinstall? We can attempt to clean this machine but i can't guarantee that it will be 100% secure afterwards. Should you have any questions, please feel free to ask. Please let us know what you have decided to do in your next postThank you for your help. I will take your advice and act ACCORDINGLY. | |
| 409. | Solve : Fraudulent Transactions? | 
| Answer» Credit card company called and said there was suspicious activity on my card.  And yes there were charges that did not belong to me.  I know that with all of the electronic RECORDS and data bases that my card account was not necessarily stolen from my computer but could have been accessed from anywhere the card number flows through.  Having said that could someone please check the my logs and let me know if there is anything on my computer that should not be there? Tracking cookies do NOT steal passwords or your fianicial data.It is unlikely they got it off your computer with only a tracking cookie | |
| 410. | Solve : Error Code 418? | 
| Answer» For the last few days when clicking in to my AOL email ACCOUNT I have been getting a PAGE - "Error Code 418 - please try later".  I try again immediately and get through no problem.  Apparently Error Code 418 is some sort of APRIL Fool practical joke.  How can I get rid of this IRRITATION?  Is it a virus? | |
| 411. | Solve : Got an Interview with Symantec? | 
| Answer» It's only a QA JOB and I have a rough idea of how I'm GOING to answer QA-y related questions. | |
| 412. | Solve : Computer Keyboard Broken?? | 
| Answer» Hi, Not to state the obvious, but the first thing you want to do is try a different keyboard and/or try this keyboard on a different system. Try connecting an external USB keyboard and see if you can use that. Also, replacement laptop keyboards are not very expensive. Oops - sorry. Thanks for the assist ST Well...I tried this AFTERNOON. The ctrl key is no longer being "held down" without my CONSENT. Good NEWS. Bad news. Nothing on the keyboard work. NOTHING! Now, is this "fixable" in anyway without buying a new keyboard (this is after all a labtop)...or is it the keyboard finished? I just don't get how this happened. It seems fishy to me the sequence of events.. a. Typing is fine b. CTRL key is being held down without consent c. Shut off computer....ctrl key no longer held down...no keys working Wondering if some virus on the internet gave it to me...or if this not an unusual way for a keyboard to go. Await further replies before I shell out money to fix the board or buy a USB one.Salmon Trout suggested trying an external keyboard on the laptop, how did that work?Didn't yet.....don't want to spend money unless I absolutely have to. I'm just not sure, and wanted your opinions first, if this is hardware or could have been triggered by a virus, or if it can be resolved otherwise without purchasing new material.If you want to check for virus or malware involvement then go HERE. Follow all of the directions and post the required logs. Just don't post the logs in this thread, make a new thread for that purpose in that section of the forums.Bluecountry, you should be able to borrow a usb keyboard from someone for a few minutes. | |
| 413. | Solve : Suspicious.Cloud.2? | 
| Answer» Hey guys, Norton says there's a virus in it called Suspicious.Cloud.2. The guy who released the mod claims it is unrightfully being labeled as a virus. What is the point of having antivirus if you ignore its warnings if you don't like them? Or prefer to believe a "mod releaser" who is already the wrong side, if not the law, then of the rules of many gaming sites. I Googled a discussion of one hack for Call of duty: Black Ops, PEOPLE wondered if Norton was wrongly detecting it, here are some of the comments I found... Quote If you download this, say good bye to your steam account. Quote This is a f****** virus you MORONS. It steals your steam account Quote It is a VIRUS and does not work. I'm not saying that because I don't like cheaters because I was going to use it but it is a load of crap. (This is a good one)... Quote how do you remove the exe that keeps running every time it starts up windows? Quote i lol'd every stupid noobs who downloaded this ROFL | |
| 414. | Solve : Microsoft Security Essentials AND Windows Security?? | 
| Answer» The red Windows Security shield icon keeps telling me my antivirus isn't turned on or it's out of date.  My green Microsoft Security Essentials castle icon tells me it is working and is up-to-date.  Am I supposed to have Windows antivirus turned off because I have MS Sec. Ess.?  If they're both turned on aren't they competing with each other and overtaxing my CPU?  If I have the Windows Security do I not need the MS Security Essentials?  Are they doing different things?  The Windows product MENTIONS a Firewall but the Security Essentials doesn't.  you should only have one AV in your pc as they might be in conflict or cause problems , i would keep MSE  What is Windows Anti Virus? It's very confusing to me. I have two icons, the castle and the shield. When I click on the castle the window that opens is labeled Microsoft Security Essentials. The shield only appears in the icon tray when there's a problem. I went to the Control Panel to open it. The window that opens is labeled Windows Security Center. Earlier today (Friday) the castle was green but the shield was red. This makes it seem as if there's an antivirus software named Windows something, and it wasn't turned on. But turning it on yields a message that MS Essentials is working. It makes it seem that if I didn't have MS Ess. there would be another antivirus product CALLED Windows something that would need updating. Actually, I think it turns out to be a case of Microsoft's left hand not knowing what its RIGHT hand is doing. The WSC doesn't recognize that MSE is working unless you tell it so. I think my question's been answered.Windows Security Center is where you check the STATUS of your registered firewall, AV, and other security tools. It does nothing protective on it's own. You only mention that it says it has a problem but you don't indicate what error message it gives you. Also, since Windows Security Center was removed from 7 (and I believe Vista as well) if you are running one of those it is almost certainly a virus masquerading as the security center. P.S: it's practically illegal for Microsoft's "Right hand" to know what it's "left hand" is doing. MSE cannot- and does not- do anything that a normal AV program cannot do, integration wise.the castle icon is microsofts av before mse , i forget what you call it. i believe i'm rightI have Windows XP. I had noticed on the Windows Security Center window that is said wsc does not necessarily recognize all av's. I figured it would recognize it's own product, but I figured wrong. Anyway I noticed a box you can check to say that you have a working av and will monitor it yourself, so I checked it and my castle is still green, even after restarting because it overheated and snapped off again.go here and read about it http://www.microsoft.com/windowsxp/using/security/internet/sp2_wscintro.mspx i did have that with xp , as long as you have them all turned on in the above you will have no bother Windows Security Center is not an AV , its they to check that your security is up to date and working i think in the end i deleted mine because i new i had security and it was on and up to date Quote from: harry 48 on January 30, 2011, 08:11:04 AM Windows Security Center is not an AV I think the situation is taken care of. I'll just give it more time to make sure I don't get the red shield again.ok , no problem | |
| 415. | Solve : How does one get the (Google) Redirect Virus?? | 
| Answer» Do you GET it by going to a bad site or by downloading something? Do you only get it if you use google to search, or does it APPLY to other search engines as well? And what does it affect exactly... the browser, search engines, entire computer systems, etc. | |
| 416. | Solve : Running multiple malware software? | 
| Answer» Is it okay to RUN multiple maleware, say Panda, Threatfile, and Ibit security 360 at the same TIME?You can run multiple security apps, but NEVER have more than one Anti Virus APP RUNNING at the same time.Or more than one firewall. | |
| 418. | Solve : Help! (viral attak)? | 
| Answer» Ok, i gat dis dis dell desktop, 40gig hdd, 512mb ram, proc.spd 866, service pak 3, wiv os window 7 vienna, tho i luv dis os n it makes it hard 4 me to format d system, cos i aint at ma grasp nemore! D probs is dat wenever i insert a flash into it, havin collected sumtyn 4rm sum1, ma system sees d file, as a shortcut(1kb) evn if wot i collectd is 10gig! N wen dis same flash enters into anoda system(laptop) tho antivirus myt n maynt detect anythyn bt either way, d file still remains a short cut n later d EFFECT myt crash such a laptop(2 crashed laptops) bt ol it does on ma system is that it slows down evrythn, lyk game n corrupts sum of ma appls, lyk virtual dj n so on, bt ma antivirus(es) havnt n dont detect anythang( avast n avg)! Now i cnt collect stuffs 4rm pple n i cnt give out n i dnt wana 4mat d system, pls help! Its drivin me nutts! Can't read your post. Please use real English with punctuation. Thank you. Quote from: Allan on January 12, 2011, 05:36:26 AM Can't read your post. Please use real English with punctuation. Thank you. Agreed. Also, Vienna was a prerelease beta of what later became Windows 7. It should have timed out long ago. short translation whenever he inserts a flash into the pc to download something from a friend the systen sees a file as a shortcut 1kb EVEN if the file is 10gig his laptop has crashed twice and avg does not detect anything , the pc has slowed down and some apps are corrupted , cannot collect or deliver anything on the web also does not want to reformat the pc looks like he got a virus in the flash I'm curious as exactly what OS the OP has. Originally, a version of Windows codenamed Blackcomb was planned as the successor to Windows XP. Blackcomb was renamed Vienna in early 2006 and again Windows 7 in 2007. In 2008, it was announced that Windows 7 would also be the official name of the operating system. Is this a joke? Quote from: reddevilggg on January 12, 2011, 10:58:10 AM Is this a joke? if it is, then it is a very stupid one. Mind you a lot of idiots young people can only write in "text speak" these days so maybe not. It appears he has "edited" it at least once, so I shudder to think what it looked like before. it sounds/reads a bit like they speak in Trinidad and Tobago and around the west indies , or maybe its spam or is this the op http://profiles.friendster.com/c002j Quote from: harry 48 on January 12, 2011, 11:53:49 AM it sounds/reads a bit like they speak in Trinidad and Tobago and around the west indiesNo it doesn't... Generally if you don't have at least a SOMEWHAT good grasp of the english language and it's phonetics you don't go around replacing random syllables with phonetically similar letters and numbers (like 4 for for) . Most of the time people who don't have a good grasp of english use google translate to translate from their native language. I don't recall google translate having the ability to translate any language into utter gibberish though. Quote or maybe its spam Spam for what? spelling checkers? Actually that might make sense. Ok, u folks want english' k! So is it that the os is corrupt? Pls ir there anything, i can do without formating the system! And note both laptops that crashed aint mine, jst friend that insert the flash into theirs after collectin stuffs from me! Was thinking you all r gonna understand chating shorthand slangs, sorry, and this aint no spam, am clean!Your comment has been REMOVED. Please do not post malware advice, or post here in the malware forum, unless you need help.Bt angela, can u inbox me your advice, i just need to resurrect this system! ThnxsHriz, if you want help on this forum the first thing you will have to do it drop this chat language. I do not speak or understand this garbage. The next thing will have to do is please go to this LINK and follow the directions and post the required logs. Please post your logs in this link. | |
| 419. | Solve : Beware the new Facebook password reset scam? | 
| Answer» http://news.cnet.com/8301-27080_3-20000682-245.html?tag=mncol;titleI WROTE a STORY about it as well: http://www.helpmyos.com/latest-computer-news-f43/email-scam-facebook-reset-password-confirmation-your-support-t1878.htmFacebook Password Reset Confirmation NR.4555 this must be the one your taking about , i GOT it to-night in spam and i'm not EVEN on facebookAnybody who has email and has had their email address stolen will receive the email. It is being CONSTRUCTED through a botnet. | |
| 420. | Solve : can't uninstall trend micro internet security 2010? | 
| Answer» HELP ME GET THIS OFF PLEASE:) I have tried several tactics to get it off it hasn't helped. I tried to use the micosoft cleanup wizard, that did not work. That ended up crashing my pc. I had to go in under safe mode to try to do a microsoft system restore. That did not work. So i had to do a dell imaging restore. that worked to at atleast get my pc to boot properly. But i'm still stuck with this trend micro that i can't uninstall nor reinstall. I then got norton internet security 2010, HOPING that would override the trend micro. that did notwork either. my computer is a dell 580 with windows 7 home premium. When i try to reinstall it says it hasn't been uninstalled that i should click on uninstall. i do tha and the uninstall screen pops up and when it gets to servers and drivers it stops and says it has been interrupted and to try again later. I just don't know what to do.http://esupport.trendmicro.com/4/How-do-I-remove-Trend-Micro-Internet-Security-Pro-and-Trend-Micro-Inte.aspxThat did not work it was for trend micro 2008. THANKS for the reply though. | |
| 421. | Solve : Win pc defender? | 
| Answer» Hello all | |
| 422. | Solve : Kaspersky Notifications? | 
| Answer» I just got Kaspersky Antivirus 2010 trial for 30 days and after a scan it says: I know the answers to all of that as I use Kaspersky Internet Security 2010 myself, but not allowed to tell you here on this 'lol' of a so-called help forum because it's in the viruses and spyware section (and I'm not a specialist)You can post your suggestions in this forum. It's the other one that is off-limits. Just don't ask the OP to download and run tools for scanning.Well you know what, I will remove all riskware. Even if it's ware I used for years. I don't want to be exploitable. lol Or at least I want to minimalize that chance.Well in that case, previous versions of Java was also labeled riskware by Kaspersky, so was older versions of Microsoft Word, etc, even installer packages from the offical game DVD of Crysis, etc. Why? Because there is a known exploit/hole in them. Solution: Sometimes it's just a matter of getting the latest version of that software and updating it (if that issue has been patched in a newer version). If you want to be 100% safe and don't use that software, then remove the risk. It's just pointing it out for you. AppSight Black Boxes RECORD application execution at multiple, synchronized levels, based on a dynamic, user-defined recording profile. 'blackbox.exe' is able to record inputs, monitor applications. Therefore the technical security rating is 84% dangerous so it is reported by Kaspersky to check. Some malware camouflage themselves as 'blackbox.exe', particularly if they are located in c:\windows or c:\windows\system32 folder. You file 'KPF4GUI.exe' is a component is part of Kerio Personal Firewall. Since it's not part of Kaspersky, and is controling a major part of your network, it is pointed out. You don't want something affecting the net you didn't know about. Mirc a riskware due to the way it runs P2P and because it can be scripted to perform malicious activities. If it is a riskware or says "not-a-virus:...", then its alright and you dont need to send it to the lab... just upgrade it, remove it or add it to exclusions. Kaspersky is pretty heavy on the feature and if used correctly can really improve your overall security in all areas (prevention over risk) Quote Mirc a riskware due to the way it runs P2P and because it can be scripted to perform malicious activities. mIRC doesn't run P2P... it's IRC, which interfaces with a server. It does however include DCC and other relatively benign P2P features. Of course you need to accept a DCC send before you can transfer and run it, so it's a user risk really. And the scripts are more or less to help make it easier for the person using the client; not to users on the other END. Quote x:/programs/mirc/mirc6.16/mirc.exe This is "riskware" probably because it's an outdated version- current version is 6.35 (or was it 6.36?). This older version is quite old and has a number of known bugs... such as the ability for anybody to send a specific string to you and cause it to crash. (I'm sure there are other more major issues that actually let them take control of you in IRC or something) Quote I bet they will just get you running ComboFix for all your life problems instead! yes, your method of googling each of them and pasting the text from one of the hits is far more effective. Quote from: BC_Programmer on March 18, 2010, 12:03:08 AM What do you guys have to say about these? Unwanted apps Probing access Treval Quote from: Treval on March 21, 2010, 02:12:54 AM Unwanted appsLooks more like "warnings"- did you put pskill there? did you install Daemon tools? If so you're fine. Quote from: Treval on March 21, 2010, 02:12:54 AM Probing access Don't really know what's going on here; I've never used bblean shell but I would imagine whatever it's doing is simply part of how it works. I don't think (I'm not 100% sure on this) that Protected password storage means it's TRYING to, say, hack your passwords or anything, it probably stores some sort of data there (such as it's own passwords) or something.Yeah, I use google, so what of it? I say something i know first, then check with google to ensure it's correct and sometimes use their definition because it's easier to understand than mine (my English isn't the best). Advance Google 'Black HACKERS' Edition, can find anything and everything, so why not use it? If other people have faced the same issues in the past and re-solved it in three steps, why re-troubleshoot it all over again wasting time. PsKill.exe - You don't even have to install a client on the target computer to use PsKill to terminate a remote process. It can be a hackers tool, for example disabling the person's anti-virus before an attack, etc. Kaspersky is very anti-hacker tool, but will just warn and ask you. Dameon Tools comes bundled with ad-ware in the installer, it's optional to install, but Kaspersky will noticify you about it. Probing access - Any application that trys to access passwords on your computer will alert Kaspersky first unless Trusted. This is like 'Microsoft MSN' access on startup, etc. It's basically snooping a protected area of the REGISTRY. Lots of application might do this, you need to either trust them or block.I had to download PSkill when I had my Operating Systems course in college. lol Thanks for the details.Pskill is quite helpful and good, but only if in the right hands. Got some power to it. | |
| 423. | Solve : Huge Malware/Spyware problem, cannot run anything except web browser.? | 
| Answer» I did the pre-requisite readings before posting this, but I can't seem to figure anything out.  
 I was able to get both Rkill and exeHelper to generate logs just before I got hit with the "application is infected..." popup, but the logs were basically blank. It appears the malware stopped them in their tracks. This is what Rkill said: Quote from: Rkill This log file is located at C:\rkill.log. And exeHelper: Quote from: exeHelper exeHelper by Raktor That's it. And I have tried to install Malwarebytes several times with no success. Sometimes it won't complete the install, other times it does complete the install, but when I try to launch the program, it says something like "Cannot locate mbam.exe...". I installed Malwarebytes once in safe mode and it looked like things were going well, but the program shut down by itself in the middle of the full scan. I read on another help forum about how malware/spyware can be used for identity theft/credit card fraud so now I'm afraid to even have the infected computer logged on to the internet (I'm on a different PC right now). Is this true? and how can I MAKE sure I am not putting myself at risk when I try to fix that computer? I will be sending you a Private Message with some instructions to follow. We are doing this privately to keep the info out of the hands of the malware creators. Please do not mention the name of utility we will be giving you or where you are getting it from. Just try to do what we ask you to do and then post back here with any problems you had. Again in mentioning your problems, please don't refer to the program by name. Just call it "the utility" or "the program". For example, your response could be: The program ran OK. Or the program would not run, I received the following error message...(put your error message here). I was able to get "the program" to run in Safe Mode and it detected like 93 objects, but after I quarantined them it prompted me to restart (which I immediately did) and I was not able to make a log because it restarted into normal mode and it was like "the program" was never installed on my computer. The good news is after the restart, things started returning back to normal. I was able to double click on install files so I proceeded to install "the program" in normal boot mode. I ran it again and it detected 23 objects this time. Here is the log from that run (2nd run): Quote Memory items scanned : 385 I then installed Malwarebytes and ran that: Quote Malwarebytes' Anti-Malware 1.43 I then ran a quick scan using "the program" one more time just to see if it would catch anything else: Quote Memory items scanned : 370 And finally a quick scan using Malwarebytes: Quote Malwarebytes' Anti-Malware 1.43 I then decided to run a virus scan with my Avira Antivir. It detected 15 objects, but I'm not sure if I should go ahead and quarantine/delete them. I believe some of them are false positives so I am cautious to proceed. This is not a log, but a copy of what it says after the scan, but before I take any action: Quote Object Detection Should I click on "Repair All" or no? Also, it appears there are a few cookies in my internet explorer that I am now unable to delete using the internet options in the control panel. Are these the quarantined cookies? I'd appreciate any more help to make sure everything is okay. But your help so far is greatly appreciated. I thought for sure I was going to have to reformat. Generally cookies are not a problem. All websites use them, even this one. If you already have ComboFix be sure to delete it and download a new copy. Download ComboFix© by sUBs from one of the below links. Be sure top save it to the Desktop. Link #1 Link #2 **Note: It is important that it is saved directly to your Desktop Close any open Web browsers. (Firefox, Internet Explorer, etc) before starting ComboFix. Temporarily disable your antivirus and any antispyware real time protection before performing a scan. Click this link to see a list of security programs that should be disabled and how to disable them. Double click combofix.exe & follow the prompts. Vista users Right-Click on ComboFix.exe and select Run as administrator (you will receive a UAC prompt, please allow it) When finished ComboFix will produce a log for you. Post the ComboFix log in your next reply. Important: Do not mouseclick ComboFix's window while it is running. That may cause it to stall. Remember to re-enable your antivirus and antispyware protection when ComboFix is complete. If you have problems with ComboFix usage, see How to use ComboFixHere is the log [Saving space, attachment deleted by admin] 1. Go to Start > Run > type Notepad.exe and click OK to open Notepad. It must be Notepad, not Wordpad. 2. Copy the text in the below code box by highlighting all the text and pressing Ctrl+C Code: [Select]KillAll:: DDS:: uInternet Settings,ProxyServer = http=127.0.0.1:5555 FF - plugin: c:\program files\Viewpoint\Viewpoint Experience Technology\npViewpoint.dll Folder:: c:\documents and settings\NetworkService\Local Settings\Application Data\miqmxq File:: c:\windows\Tqezewapa.bin c:\windows\Wmaciseciyo.dat 3. Go to the Notepad window and click Edit > Paste 4. Then click File > Save 5. Name the file CFScript.txt - Save the file to your Desktop 6. Then drag the CFScript (hold the left mouse button while dragging the file) and drop it (release the left mouse button) into ComboFix.exe as you see in the screenshot below. Important: Perform this instruction carefully! ComboFix will begin to execute, just follow the prompts. After reboot (in case it ASKS to reboot), it will produce a log for you. Post that log (Combofix.txt) in your next reply. Note: Do not mouseclick ComboFix's window while it is running. That may cause your system to freeze ---------- Download GMER Rootkit Detector and save it your desktop. * Extract it to your desktop and double-click GMER.exe * Make sure all of the boxes on the right of the screen are checked, EXCEPT for "Show All". * Click the Rootkit tab and then Scan. * Don't check the Show All box while scanning in progress! * When scanning is finished click Copy. * This copies the log to clipboard * Post the log in your reply.Attached is the CFScripted ComboFix log. Unfortunately, I tried running the GMER program twice and both times it froze up my computer (my computer is pretty old) shortly after beginning the scan. Any ideas? Thanks again for everything. [Saving space, attachment deleted by admin]Try this one. RootRepeal - Rootkit Detector * Download the following tool: RootRepeal - Rootkit Detector * Direct download link is here: RootRepeal.zip * Close all programs and temporarily disable your anti-virus, Firewall and any anti-malware real-time protection before performing a scan. * Click this link to see a list of such programs and how to disable them. * Extract the program file to a new folder such as C:\RootRepeal * Run the program RootRepeal.exe and go to the REPORT tab and click on the Scan button. * Select ALL of the checkboxes and then click OK and it will start scanning your system. * If you have multiple drives you only need to check the C: drive or the one Windows is installed on. * When done, click on Save Report * Save it to the same location where you ran it from, such as C:RootRepeal * Save it as rootrepeal.txt * Then open that log and select all and copy/paste it back on your next reply please. * Close RootRepeal.ROOTREPEAL (c) AD, 2007-2009 ================================================== Scan Start Time: 2010/02/28 17:52 Program Version: Version 1.3.5.0 Windows Version: Windows XP SP3 ================================================== Drivers ------------------- Name: rootrepeal.sys Image Path: C:\WINDOWS\system32\drivers\rootrepeal.sys Address: 0xA5229000 Size: 49152 File Visible: No Signed: - Status: - Hidden/Locked Files ------------------- Path: Volume C:\ Status: MBR Rootkit Detected! Path: C:\hiberfil.sys Status: Locked to the Windows API! Path: C:\DVDVideoSoft\FEIST-~4.MP4:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} Status: Visible to the Windows API, but not on disk. Path: C:\Documents and Settings\HelpAssistant\Local Settings\Temp\plugtmp-113\1:5-9 Status: Visible to the Windows API, but not on disk. Path: C:\Documents and Settings\HelpAssistant\Local Settings\Temp\plugtmp-115\1:5-9 Status: Visible to the Windows API, but not on disk. Path: C:\Documents and Settings\HelpAssistant\Local Settings\Temp\plugtmp-141\1:5-9 Status: Visible to the Windows API, but not on disk. Path: C:\Documents and Settings\HelpAssistant\Local Settings\Temp\plugtmp-143\1:5-9 Status: Visible to the Windows API, but not on disk. Path: C:\Documents and Settings\HelpAssistant\Local Settings\Temp\plugtmp-146\1:5-9 Status: Visible to the Windows API, but not on disk. SSDT ------------------- #: 041 Function Name: NtCreateKey Status: Hooked by "" at address 0xa6e61166 #: 053 Function Name: NtCreateThread Status: Hooked by "" at address 0xa6e6115c #: 063 Function Name: NtDeleteKey Status: Hooked by "" at address 0xa6e6116b #: 065 Function Name: NtDeleteValueKey Status: Hooked by "" at address 0xa6e61175 #: 098 Function Name: NtLoadKey Status: Hooked by "" at address 0xa6e6117a #: 122 Function Name: NtOpenProcess Status: Hooked by "" at address 0xa6e61148 #: 128 Function Name: NtOpenThread Status: Hooked by "" at address 0xa6e6114d #: 193 Function Name: NtReplaceKey Status: Hooked by "" at address 0xa6e61184 #: 204 Function Name: NtRestoreKey Status: Hooked by "" at address 0xa6e6117f #: 247 Function Name: NtSetValueKey Status: Hooked by "" at address 0xa6e61170 #: 257 Function Name: NtTerminateProcess Status: Hooked by "" at address 0xa6e61157 ==EOF==Download the MBR Rootkit Detector to your desktop. Go to Start > Run then copy and paste the following red text into the Open field then click OK: "%userprofile%\desktop\mbr.exe" -f Next, double click on the mbr.exe file and post the contents of the new mbr.log Also let me know how the computer is running now.I hope I did this right. Quote Stealth MBR rootkit/Mebroot/Sinowal detector 0.3.7 by Gmer, http://www.gmer.net The computer is running a bit slower than normal, although it is pretty slow normally. However, I feel that my hard drive is working a bit harder than before as it is noticeably noisier. But that may also just be the age of my computer. I'm probably going to have to purchase a new notebook anyway, but there are a few important files on this computer so I really appreciate your help in getting it back to normal again. Yes that looks good. I would like to run one more scan to make sure we didn't miss anything. First a little cleanup. * Click START then RUN - Vista users press the Windows Key and the R keys for the Run box. * Now type Combofix /Uninstall in the runbox * Make sure there's a space between Combofix and /Uninstall * Then hit Enter * The above procedure will: * Delete the following: * ComboFix and its associated files and folders. * Reset the clock settings. * Hide file extensions, if required. * Hide System/Hidden files, if required. * Set a new, clean Restore Point. ---------- Clean out your temporary internet files and temp files. Download TFC by OldTimer to your desktop. Double-click TFC.exe to run it. Note: If you are running on Vista, right-click on the file and choose Run As Administrator TFC will close all programs when run, so make sure you have saved all your work before you begin. * Click the Start button to begin the cleaning process. * Depending on how often you clean temp files, execution time should be anywhere from a few seconds to a minute or two. * Please let TFC run uninterrupted until it is finished. Once TFC is finished it should restart your computer. If it does not, please manually restart the computer yourself to ensure a complete cleaning. ---------- ESET Online Scan Scan your computer with the ESET FREE Online Virus Scan * Click the ESET Online Scanner button. * For alternate browsers only: (Microsoft Internet Explorer users can skip these steps) * Click on the esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop * Double click on the esetsmartinstaller_enu.exe icon on your desktop. * Place a check mark next to YES, I accept the Terms of Use. * Click the Start button. * Accept any security warnings from your browser. * Leave the check mark next to Remove found threats and place a check next to Scan archives. * Click the Start button. * ESET will then download updates, install, and begin scanning your computer. Please be patient as this can take some time. * When the scan completes, click List of found threats. * Next click Export to text file and save the file to your desktop using a name such as ESETScan. Include the contents of this report in your next reply. * Click the <<Back button then click Finish. In your next reply please include the ESET Online Scan Log | |
| 424. | Solve : Does any one can tell me what are the necessary anti virus software to be used ?? | 
| Answer» Does any one can tell me what are the necessary anti virus software to be USED to prevent Virus, Mal ware and Trojans? Currently am using AVIRA Premium security suit with updated virus definitions and spy BOT search and destroy.Any suggestions please?? This question is asked and answered at least once a week. Please do a search on this forum and you'll find lots of responses. Hi I found nothing at the search then only i started this new thread.Are you looking for free programs? Quote from: SuperDave on March 15, 2010, 01:21:08 PM Are you looking for free programs? Nope am looking for an experts advise what are the best software needed to be INSTALLED on a pc to protect from Viruses, Trojans , Mal ware and other stuff and am currently using Avira and spy bot.AVG (free) is one of the better ones but doesn't have a firewall. Kaspersky seems to be a good choice if you are buying. I'm not exactly up to date on this so GET some more opinions. Happy St Patrick's Day! | |
| 425. | Solve : free firewall apps???? | 
| Answer» Does anybody know any GOOD free firewall tools to dowload and provide a link or address. ThanksPC Tools Firewall Plus http://www.pctools.com/firewall/download/ ZoneAlarm http://download.cnet.com/ZoneAlarm/3000-10435_4-10039884.html?part=dl-69168&subj=dl&tag=button They're both free.Online Armor is supposed to be the best right now. Right, i've downloaded Online Armor and everything was running FINE, until today when the Online Armor fiewall stopped my AVG E-mail scanner from working. I've allowed the program and told the firewall it is safe, then re-booted the PC. Nothing happens. The e-mail scanner is still disabled. Is says the program is allowed in the firewall and i've listed it as trusted, but still nothing?? HELP Forget about AVG and go with MSE. 98% efficiency and not a resource hog. Microsoft Security Essentials for Windows Vista\Windows 7 - 64 bit Download Microsoft Security Essentials for Windows XP | |
| 426. | Solve : A 'Redundant' Virus?? | 
| Answer» I hope someone can HELP me, I feel like I'm crazy. | |
| 427. | Solve : Can't reload XP because of a virus? | 
| Answer» I got rid of most of the viruses(I thought) but I'm TRYING to do a clean install of XP and it just takes be to a blue screen that says | |
| 428. | Solve : system restore error ox8007005? | 
| Answer» Hi all, I installed WINTER funpack2004 for WINDOWS xp forgetting that i have WINDOWS 7 OS installed on my computer. It will not UNINSTALL and I have tried using sytem restore but I get an error message (OX8007005) saying to disable my ANTIVIRUS which is Avira Antivir Premium. I did this but still it will not uninstall and I get the same error message from system restore. Any IDEAS? thanks | |
| 429. | Solve : "Vista Internet Security 2010", Virus Protection Popups? | 
| Answer» Earlier today i tried to download a file of mediafire called Justin Vernon Self-Record 
 Alternate link: BleepingComputer.com. (Note: if you already have the program installed, just follow the directions. No need to re-download or re-install!) Double Click mbam-setup.exe to install the application. (Note: if you already have the program installed, open Malwarebytes from the Start Menu or Desktop shortcut, click the Update tab, and click Check for Updates, before doing the scan as instructed below!) 
 If MBAM encounters a file that is difficult to remove,you will be PRESENTED with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process. If asked to restart the computer, please do so immediately. 3. Please visit this webpage for instructions for downloading and running SUPERAntiSpyware (SAS) to scan and remove malware from your computer: http://www.bleepingcomputer.com/virus-removal/how-to-use-superantispyware-tutorial Post the log from SUPERAntiSpyware when you've accomplished that. 4. Please run a free online scan with the ESET Online Scanner 
 5. Post the following in your next reply: 
 I'll post the first two logs now in case the last one doesn't finish tonight. MBAM: Malwarebytes' Anti-Malware 1.44 Database version: 3835 Windows 6.0.6001 Service Pack 1 Internet Explorer 8.0.6001.18882 3/8/2010 5:32:00 AM mbam-log-2010-03-08 (05-32-00).txt Scan type: Full Scan (C:\|D:\|) Objects scanned: 331828 Time elapsed: 4 hour(s), 13 minute(s), 55 second(s) Memory Processes Infected: 0 Memory Modules Infected: 0 Registry Keys Infected: 0 Registry Values Infected: 0 Registry Data Items Infected: 0 Folders Infected: 0 Files Infected: 0 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: (No malicious items detected) Registry Keys Infected: (No malicious items detected) Registry Values Infected: (No malicious items detected) Registry Data Items Infected: (No malicious items detected) Folders Infected: (No malicious items detected) Files Infected: (No malicious items detected) SAS LOG: well now I can't seem to find it but it caught nothing at all. should i redo this scan? Not for SAS, but try ESET, please.I ran ESET twice but I can't pull up a log for it. I copied and pasted C:\Program Files\EsetOnlineScanner\log.txt into the address bar and I searched through my program files but there is no ESET folder. It says it found no threats, infected files, and it didn't clean anything. It also gives me the option to uninstall the program on my computer.Ok. Seems clean. To manually create a new Restore Point 
 
 To remove all of the tools we used and the files and folders they created, please do the following: Please download OTC.exe by OldTimer: 
 == Please download TFC by OldTimer to your desktop 
 Download Security Check by screen317 from SpywareInfoforum.org or Changelog.fr. 
 | |
| 430. | Solve : Back Door Found in Energizer DUO USB Battery Charger Software? | 
| Answer» I actually had this on my computer for a few months.  Hard to believe. You are not safe with a battery charger.My mom has a little fan that tells you what temperature it is outside...I bet that has a virus in it too! *smash smash*Wouldn't be suprised if my Memorex DVD Player with a USB port is putting viruses on my USB Drive! | |
| 431. | Solve : mp3 scans as 2 files?? | 
| Answer» I'm using Kaspersky Internet Security.  I downloaded a single mp3 from a legal SITE and scanned the file as i do with everything that i download.   | |
| 432. | Solve : United Parcel Service - Fake email for package non-delivery? | 
| Answer» I've received two such messages QUITE RECENTLY. I don't recall ever receiving any before these. But, I see this is not a new hoax; it's actually been going on for quite awhile. See this: United Parcel Service - Fake email for package non-delivery . Of course, if you RECEIVE ONE of these, do not open the attachment. | |
| 433. | Solve : Antivirus and antispyware programs recommended for a Mac?? | 
| Answer» I just switched to a Mac. Can the experts tell me which firewall, antivirus, and antispyware programs are essential for MACS? Would INSTALLING any of these have a downside to my computer's performance, etc? | |
| 434. | Solve : SpywareGuard 2.2 versus Spyware Guard 2008 & 2009? | 
| Answer» I SEE SpywareGuard 2.2 touted as a good free real-time antimalware app that makes a great compliment to SpywareBlaster. But can anyone confirm that for me, and that it's definitely a different app than SPYWARE Guard 2008 & 2009? It had better be, because the latter is said to actually be a sophisticated rogue antispyware. Check these LINKS out: SpywareGuard works on Windows 98, ME, NT, 2000, XP. Not tested on Vista. It has not updated in many years.Well then, can you recommend a good CURRENT free real-time antimalware app?I use SpywareBlaster and Spybots Immunize FEATURE (Not TeaTimer!). If you want something more aggressive (and free) check out Threatfire. http://www.threatfire.com/ | |
| 435. | Solve : questions about antispyware apps? | 
| Answer» I have some questions about antispyware apps: I have some questions about antispyware apps: | |
| 436. | Solve : Recommened firewall and antivirus for Windows Xp sp2? | 
| Answer» Hi ,  | |
| 437. | Solve : Virus keeps coming back?? | 
| Answer» Hello, a few weeks ago I had alerts from ThreatFire saying that "c:\2F2FE1D9C8463A4E6C7466B1CF9E03AD\MPSIGSTUB.EXE" | |
| 438. | Solve : could you please check the hjt log? | 
| Answer» could you check below i have had trouble with this virus Virus:Win32/Induc.A   ComboFix 10-02-26.03 - harold mullan 27/02/2010 16:02:53.3.1 - FAT32x86 You need to install and run a new version of ComboFix. Running outdated tools is pretty much useless.kevin is there any where other than bleeping to get the download There are two links that SD gave. That's it. Why?no 1 is the one i used , no2 is not in englishNever mind Harry I was reading the date wrong. But you did run it multiple times. Was there any errors the first 2 times it ran?kevin , i only ran it once , this pc is very very slow anything else i can do , harryWait for SuperDave to continue. He will either have you run more scans or clear you in this forum and send you to the Windows forum.Hello Harry. Sorry for the delay. We had a large snow storm last night and today. What makes you think that you have the Virus:Win32/Induc.A ? Note: the below instructions were created specifically for this user. If you are not this user, DO NOT follow these directions as they could damage the workings of your system 1. Go to Start > Run > type Notepad.exe and click OK to open Notepad. It must be Notepad, not Wordpad. 2. Copy the TEXT in the below code box by highlighting all the text and pressing Ctrl+C Code: [Select]KillAll:: SecCenter:: {17DDD097-36FF-435F-9E1B-52D74245D6BF} File:: c:\windows\popcinfo.dat 3. Go to the Notepad window and click Edit > Paste 4. Then click File > Save 5. Name the file CFScript.txt - Save the file to your Desktop 6. Then drag the CFScript (hold the left mouse button while dragging the file) and drop it (release the left mouse button) into ComboFix.exe as you see in the screenshot below. Important: Perform this instruction carefully! ComboFix will begin to execute, just follow the prompts. After reboot (in case it asks to reboot), it will produce a log for you. Post that log (Combofix.txt) in your next reply. Note: Do not mouseclick ComboFix's window while it is running. That may cause your system to freeze ================================= ESET Online Scan Scan your computer with the ESET FREE Online Virus Scan * Click the ESET Online Scanner button. * For alternate browsers only: (Microsoft Internet Explorer users can skip these steps) * Click on the esetsmartinstaller_enu.exe to download the ESET Smart Installer. Save it to your desktop * Double click on the esetsmartinstaller_enu.exe icon on your desktop. * Place a check mark next to YES, I accept the Terms of Use. * Click the Start button. * Accept any security warnings from your browser. * Leave the check mark next to Remove found threats and place a check next to Scan archives. * Click the Start button. * ESET will then download updates, install, and begin scanning your computer. Please be patient as this can take some time. * When the scan completes, click List of found threats. * Next click Export to text file and save the file to your desktop USING a name such as ESETScan. Include the contents of this report in your next reply. * Click the <<Back button then click Finish. In your next reply please include the ESET Online Scan Log dave , after this combo scan the pc is 100% faster and add and remove is working again and windows doe's not stall , any more checks i'll do any you want to make sure it's clear i feel it could still be a bit faster but there are a lot of files and left overs from web sites /downloads from way back i thought i took them out i searched for them and cannot find them , any ideas ComboFix 10-02-27.04 - harold mullan 28/02/2010 14:01:10.4.1 - FAT32x86 Microsoft Windows XP Home Edition 5.1.2600.3.1252.44.1033.18.1247.792 [GMT 0:00] Running from: c:\documents and settings\harold mullan\Desktop\ComboFix.exe Command switches used :: c:\documents and settings\harold mullan\Desktop\CFScript.txt AV: Microsoft Security Essentials *On-access scanning disabled* (Updated) {BCF43643-A118-4432-AEDE-D861FCBCFCDF} FILE :: "c:\windows\popcinfo.dat" . ((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) . c:\windows\popcinfo.dat . ((((((((((((((((((((((((( Files Created from 2010-01-28 to 2010-02-28 ))))))))))))))))))))))))))))))) . 2010-02-28 12:24 . 2010-02-28 12:24 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Application Data\Temp 2010-02-27 19:30 . 2010-02-27 19:30 -------- d-----w- c:\program files\Escape from Lost Island 2010-02-27 19:23 . 2010-02-27 19:23 -------- d-----w- c:\program files\Pathfinders - Lost at Sea 2010-02-26 11:09 . 2010-02-24 09:16 181632 ------w- c:\windows\system32\MpSigStub.exe 2010-02-26 10:58 . 2010-02-26 10:58 -------- d-----w- c:\documents and settings\All Users\Application Data\Birdstep Technology 2010-02-26 10:52 . 2010-02-26 10:52 -------- d-----w- c:\documents and settings\harold mullan\Local Settings\Application Data\PCHealth 2010-02-26 10:52 . 2010-02-26 10:52 -------- d-----w- c:\documents and settings\LocalService\Local Settings\Application Data\PCHealth 2010-02-26 10:52 . 2010-02-26 10:52 -------- d-----w- c:\program files\Microsoft Security Essentials 2010-02-23 23:50 . 2010-02-23 23:50 16312832 ----a-w- c:\documents and settings\harold mullan\Application Data\[email protected]\FahCore_b4.exe 2010-02-20 14:29 . 2010-02-20 14:29 -------- d-----w- c:\program files\Romancing the Seven Wonders - Taj Mahal 2010-02-19 19:00 . 2010-02-19 19:00 -------- d-----w- c:\program files\The Tarot's Misfortune 2010-02-18 22:49 . 2010-02-18 22:49 -------- d-----w- c:\documents and settings\harold mullan\Application Data\BigFishGames 2010-02-18 16:15 . 2010-02-18 16:15 -------- d-----w- c:\documents and settings\harold mullan\Application Data\GameMill 2010-02-18 16:15 . 2010-02-18 16:15 -------- d-----w- c:\documents and settings\All Users\Application Data\GameMill 2010-02-17 23:57 . 2010-02-17 23:57 -------- d-----w- c:\documents and settings\harold mullan\Application Data\LaJangada 2010-02-04 16:09 . 2010-02-04 16:09 -------- d-----w- c:\documents and settings\NetworkService\Local Settings\Application Data\Apple 2010-02-01 23:37 . 2010-02-01 23:37 -------- d-----w- c:\documents and settings\harold mullan\Application Data\Gestalt Games 2010-02-01 23:30 . 2010-02-01 23:30 -------- d-----w- c:\documents and settings\All Users\Application Data\Million . (((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))) . 2010-02-26 23:23 . 2009-08-06 21:16 117760 ----a-w- c:\documents and settings\harold mullan\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\UIREPAIR.DLL 2010-01-25 23:55 . 2010-01-25 23:55 -------- d-----w- c:\documents and settings\harold mullan\Application Data\SevenSails 2010-01-24 23:25 . 2010-01-24 23:25 -------- d-----w- c:\documents and settings\harold mullan\Application Data\Valusoft 2010-01-24 23:25 . 2010-01-24 23:25 -------- d-----w- c:\documents and settings\All Users\Application Data\Valusoft 2010-01-24 23:22 . 2010-01-24 23:22 -------- d-----w- c:\documents and settings\harold mullan\Application Data\Green Clover Games 2010-01-24 23:22 . 2010-01-24 23:22 -------- d-----w- c:\documents and settings\All Users\Application Data\Green Clover Games 2010-01-24 19:59 . 2010-01-24 19:59 -------- d-----w- c:\program files\World Poker Championship 2010-01-23 21:26 . 2010-01-23 21:26 -------- d-----w- c:\documents and settings\harold mullan\Application Data\WhatPulse 2010-01-18 20:07 . 2008-04-22 21:52 5115824 ----a-w- c:\documents and settings\All Users\Application Data\Malwarebytes\Malwarebytes' Anti-Malware\mbam-setup.exe 2010-01-17 22:34 . 2010-01-17 22:34 -------- d-----w- c:\documents and settings\All Users\Application Data\{755AC846-7372-4AC8-8550-C52491DAA8BD} 2010-01-17 22:33 . 2010-01-17 22:33 -------- d-----w- c:\program files\Bonjour 2010-01-17 22:32 . 2010-01-17 22:32 -------- d-----w- c:\documents and settings\All Users\Application Data\Apple Computer 2010-01-17 22:31 . 2010-01-17 22:31 -------- d-----w- c:\program files\Apple Software Update 2010-01-17 22:30 . 2010-01-17 22:30 -------- d-----w- c:\program files\Common Files\Apple 2010-01-17 22:30 . 2010-01-17 22:30 -------- d-----w- c:\documents and settings\All Users\Application Data\Apple 2010-01-17 18:48 . 2009-12-31 19:29 52224 ----a-w- c:\documents and settings\harold mullan\Application Data\SUPERAntiSpyware.com\SUPERAntiSpyware\SDDLLS\SD10005.dll 2010-01-15 23:22 . 2010-01-15 23:22 -------- d-----w- c:\documents and settings\harold mullan\Application Data\Gold Casual Games 2010-01-14 19:36 . 2010-01-14 19:36 -------- d-----w- c:\program files\SpongeBob SquarePants Diner Dash 2010-01-14 19:12 . 2010-01-14 19:12 1245321 ----a-w- c:\documents and settings\All Users\Application Data\NeoEdge Networks\Yahoo_DinerDash\IAF.dll 2010-01-14 19:12 . 2010-01-14 19:12 -------- d-----w- c:\documents and settings\All Users\Application Data\NeoEdge Networks 2010-01-14 19:12 . 2010-01-14 19:12 -------- d-----w- c:\program files\Yahoo! Games 2010-01-12 23:08 . 2010-01-12 23:08 -------- d-----w- c:\program files\Microsoft DirectX SDK (August 2009) 2010-01-12 23:07 . 2010-01-12 23:07 93512 ----a-w- c:\windows\dxsdkuninst.exe 2010-01-10 00:11 . 2010-01-10 00:11 -------- d-----w- c:\documents and settings\harold mullan\Application Data\BrokenHearts 2010-01-10 00:10 . 2010-01-10 00:10 -------- d-----w- c:\documents and settings\harold mullan\Application Data\Dragon Altar Games 2010-01-07 16:07 . 2008-07-24 00:07 38224 ----a-w- c:\windows\system32\drivers\mbamswissarmy.sys 2010-01-07 16:07 . 2008-05-08 23:56 19160 ----a-w- c:\windows\system32\drivers\mbam.sys 2010-01-06 20:07 . 2010-01-06 20:07 143264 ----a-w- c:\documents and settings\All Users\Application Data\BigFishGamesCache\Upgrade\stub\pathfinders-lost-at-sea_s1_l1_gF5511T1L1_d806392778[1].exe 2010-01-06 20:07 . 2010-01-06 20:07 143264 ----a-w- c:\documents and settings\All Users\Application Data\BigFishGamesCache\Upgrade\stub\escape-from-lost-island_s1_l1_gF5415T1L1_d806394967[1].exe 2010-01-05 10:00 . 2006-06-23 11:33 832512 ------w- c:\windows\system32\wininet.dll 2010-01-05 10:00 . 2009-06-14 15:14 78336 ----a-w- c:\windows\system32\ieencode.dll 2010-01-05 10:00 . 2002-09-23 09:02 17408 ----a-w- c:\windows\system32\corpol.dll 2010-01-03 18:43 . 2010-01-03 18:42 -------- d-----w- c:\documents and settings\All Users\Application Data\IncrediMail 2010-01-02 23:07 . 2010-01-02 23:07 -------- d-----w- c:\documents and settings\harold mullan\Application Data\Virtual City 2010-01-01 23:21 . 2010-01-01 23:20 -------- d-----w- c:\documents and settings\harold mullan\Application Data\Friday's games 2009-12-31 16:50 . 2002-09-23 09:04 353792 ----a-w- c:\windows\system32\drivers\srv.sys 2009-12-17 17:14 . 2008-10-30 19:51 411368 ----a-w- c:\windows\system32\deploytk.dll 2009-12-16 18:43 . 2004-08-30 14:29 343040 ----a-w- c:\windows\system32\mspaint.exe 2009-12-14 07:08 . 2002-09-23 09:02 33280 ----a-w- c:\windows\system32\csrsrv.dll 2009-12-08 19:27 . 2002-09-23 09:03 2189184 ------w- c:\windows\system32\ntoskrnl.exe 2009-12-08 18:43 . 2002-08-29 01:04 2066048 ------w- c:\windows\system32\ntkrnlpa.exe 2009-12-07 21:08 . 2009-05-12 23:28 56816 ----a-w- c:\windows\system32\drivers\avgntflt.sys 2009-12-04 18:22 . 2002-09-23 09:03 455424 ----a-w- c:\windows\system32\drivers\mrxsmb.sys . ((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))))) . . *Note* empty entries & legit default entries are not shown REGEDIT4 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "RemoteControl"="c:\program files\CyberLink\PowerDVD\PDVDServ.exe" [2003-10-31 32768] "EPSON Stylus Photo RX520 Series"="c:\windows\System32\spool\DRIVERS\W32X86\3\E_FATIAGE.EXE" [2005-04-07 98304] "YSearchProtection"="c:\program files\Yahoo!\Search Protection\SearchProtection.exe" [2009-02-03 111856] "ctfmon.exe"="c:\windows\system32\ctfmon.exe" [2008-04-14 15360] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "YSearchProtection"="c:\program files\Yahoo!\Search Protection\SearchProtection.exe" [2009-02-03 111856] "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [2009-10-03 35696] "Adobe ARM"="c:\program files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [2009-09-04 935288] "SunJavaUpdateSched"="c:\program files\Common Files\Java\Java Update\jusched.exe" [2010-01-11 246504] "SmartDefrag"="c:\program files\IObit\IObit SmartDefrag\IObit SmartDefrag.exe" [2009-11-24 2156816] "MSSE"="c:\program files\Microsoft Security Essentials\msseces.exe" [2009-09-13 1048392] [HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run] "CTFMON.EXE"="c:\windows\System32\CTFMON.EXE" [2008-04-14 15360] "DWQueuedReporting"="c:\progra~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" [2007-02-26 437160] c:\documents and settings\harold mullan\Start Menu\Programs\Startup\ [email protected] - c:\documents and settings\harold mullan\Application Data\Microsoft\Installer\{6B755EC3-C709-4F5C-BC58-BC0D3967B6B6}\_2377D972A0372FCB34E3F7.exe [2009-5-7 98477] [hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks] "{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824] [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon] 2008-12-22 12:05 356352 ----a-w- c:\program files\SUPERAntiSpyware\SASWINLO.dll [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SafeBoot\Minimal\MsMpSvc] ="Service" [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPASTATUS] 2003-02-26 16:18 620032 ------w- c:\program files\Internet Explorer\Connection Wizard\status.exe [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SUPERAntiSpyware] 2009-08-07 18:49 1830128 ----a-w- c:\program files\SUPERAntiSpyware\SUPERANTISPYWARE.EXE [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UnlockerAssistant] 2008-05-02 04:15 15872 ----a-w- c:\program files\Unlocker\UnlockerAssistant.exe [HKEY_LOCAL_MACHINE\software\microsoft\security center] "AntiVirusOverride"=dword:00000001 [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List] "%windir%\\system32\\sessmgr.exe"= "%windir%\\Network Diagnostic\\xpnetdiag.exe"= "c:\\WINDOWS\\System32\\dpnsvr.exe"= "c:\\WINDOWS\\System32\\dxdiag.exe"= "c:\\Program Files\\IVT Corporation\\BlueSoleil\\BlueSoleil_.exe"= "c:\\Program Files\\IVT Corporation\\BlueSoleil\\BlueSoleil.exe"= "c:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"= "c:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"= "c:\\WINDOWS\\System32\\mmc.exe"= "c:\\Program Files\\Bonjour\\mDNSResponder.exe"= R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\sasdifsv.sys [28/07/2009 10:53 9968] R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [28/07/2009 10:53 74480] R2 fssfltr;FssFltr;c:\windows\system32\drivers\fssfltr_tdi.sys [17/02/2009 20:08 55152] R2 SPAMfighter Update Service;SPAMfighter Update Service;c:\program files\SPAMfighter\sfus.exe [12/03/2009 10:44 184968] S2 gupdate1c99aa9e4bae958;Google Update Service (gupdate1c99aa9e4bae958);c:\program files\Google\Update\GoogleUpdate.exe [01/03/2009 20:11 133104] S3 fsssvc;Windows Live Family Safety;c:\program files\Windows Live\Family Safety\fsssvc.exe [06/02/2009 18:08 533360] S3 hwusbfake;Huawei DataCard USB Fake;c:\windows\system32\DRIVERS\ewusbfake.sys --> c:\windows\system32\DRIVERS\ewusbfake.sys [?] S3 SASENUM;SASENUM;c:\program files\SUPERAntiSpyware\SASENUM.SYS [28/07/2009 10:53 7408] S3 Vsp;Vsp;\??\c:\windows\System32\drivers\Vsp.sys --> c:\windows\System32\drivers\Vsp.sys [?] . Contents of the 'Scheduled Tasks' folder 2010-02-28 c:\windows\Tasks\SmartDefrag.job - c:\program files\IObit\IObit SmartDefrag\IObit SmartDefrag.exe [2009-11-26 13:48] 2010-02-28 c:\windows\Tasks\MP Scheduled Scan.job - c:\program files\Microsoft Security Essentials\MpCmdRun.exe [2009-07-02 17:36] . . ------- Supplementary Scan ------- . uStart Page = hxxp://uk.yahoo.com/ uInternet Connection Wizard,ShellNext = iexplore uInternet Settings,ProxyOverride = *.local uSearchURL,(Default) = hxxp://uk.rd.yahoo.com/customize/ie/defaults/su/msgr9/*http://uk.search.yahoo.com DPF: DirectAnimation Java Classes - file://c:\windows\Java\classes\dajava.cab DPF: Microsoft XML Parser for Java - file://c:\windows\Java\classes\xmldso.cab . - - - - ORPHANS REMOVED - - - - MSConfigStartUp-btbb_McciTrayApp - c:\program files\BT Broadband Desktop Help\bin\BTHelpNotifier.exe AddRemove-Belarc Advisor - c:\progra~1\BELARC\ADVISOR\Uninstall.exe AddRemove-FileHippo.com - c:\program files\FileHippo.com\uninstall.exe AddRemove-Popims Animator - c:\program files\Popims\Popims Animator\Uninstall.exe AddRemove-SeaMonkey (2.0.1) - c:\program files\SeaMonkey\uninstall\helper.exe ************************************************************************** catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net Rootkit scan 2010-02-28 14:10 Windows 5.1.2600 Service Pack 3 FAT NTAPI scanning hidden processes ... scanning hidden autostart entries ... scanning hidden files ... scan completed successfully hidden files: 0 ************************************************************************** . --------------------- LOCKED REGISTRY KEYS --------------------- [HKEY_USERS\S-1-5-21-2485982703-2457388570-1893012673-1006\Software\Microsoft\SystemCertificates\AddressBook*] Allowed: (Read) (RestrictedCode) Allowed: (Read) (RestrictedCode) . --------------------- DLLs Loaded Under Running Processes --------------------- - - - - - - - > 'winlogon.exe'(712) c:\program files\SUPERAntiSpyware\SASWINLO.dll c:\windows\system32\WININET.dll - - - - - - - > 'explorer.exe'(3688) c:\windows\system32\WININET.dll c:\progra~1\WINDOW~2\wmpband.dll c:\windows\system32\ieframe.dll c:\windows\system32\mshtml.dll c:\windows\IME\SPGRMR.DLL c:\program files\Common Files\Microsoft Shared\INK\SKCHUI.DLL c:\windows\system32\WPDShServiceObj.dll c:\program files\ArcSoft\PhotoImpression 5\share\pihook.dll c:\windows\system32\PortableDeviceTypes.dll c:\windows\system32\PortableDeviceApi.dll . ------------------------ Other Running Processes ------------------------ . c:\program files\Microsoft Security Essentials\MsMpEng.exe c:\program files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe c:\program files\Bonjour\mDNSResponder.exe c:\program files\Java\jre6\bin\jqs.exe c:\program files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE c:\program files\Yahoo!\SoftwareUpdate\YahooAUService.exe c:\program files\[email protected]\[email protected]\[email protected] c:\documents and settings\harold mullan\Application Data\[email protected]\FahCore_b4.exe . ************************************************************************** . Completion time: 2010-02-28 14:15:43 - machine was rebooted ComboFix-quarantined-files.txt 2010-02-28 14:15 Pre-Run: 52,976,222,208 bytes free Post-Run: 52,965,736,448 bytes free - - End Of File - - 5D0FFFEF5FCCAF67F5B48D2ED74AFABC ========================================================= eset log C:\Program Files\Unlocker\eBay_shortcuts_1016.exe a variant of Win32/Adware.ADON application deleted - quarantined C:\System Volume Information\_restore{FEBF2BE2-A46D-4646-946A-2838EA56B6CA}\RP881\A0197225.exe a variant of Win32/Adware.ADON application deleted - quarantined | |
| 439. | Solve : Have a question with cpu going black the blue screen? | 
| Answer» My nieces  CPU , she thinks she got a virus. She uses AVG. Here what her CPU is doing. When she turns it on it loads up to her desktop then shuts down. I had her try it in safe mode and it does the same thing. She TOOK it to a COMP place and they said they would have to get her save pics...etc..off then put a new OS back on it. What I was wondering is how can you get her pics and etc off if you can't get the comp to boot up and stay on. If I vcan get here stuff off of the comp I can put a OS back on it. She is running WinXP.. Thanks..this is my first message on this Cpu forum, hope I put this in the right place Welcome to CH. | |
| 440. | Solve : Avast & Malwarebytes? | 
| Answer» Would there be any conflict if I ran scans with AVAST 4.8 and Malwarebytes at the sametime?. Basically it's just to save time as I find myself treading the floorboards WAITING for them to finish. | |
| 441. | Solve : Malware Question - OA001Mon.exe? | 
| Answer» Is this file (in C:\WINDOWS) a virus?  I'm asking because my mom was reading emails and got a prompt that the computer had to be restarted to complete installation of a new program (it didn't say what new program).  It automatically restarted in 45 seconds (there was no close button).  When the computer came back up everything was fine (or looked like it).  I checked the list of running processes and found OA001Mon.exe.  I immediately searched the internet for this file.  I found reports of it shutting down the firewall and other bad things.  I ran a Norton full scan and found nothing.  avast! did a scan and found nothing.  Jotti's malware scan got 0/20 scanners reporting threats on OA001Mon.exe, OA001cfg.exe, and OA001.[I forgot the extension].  Whenever that computer booted up, OA001Mon.exe is running under my mom's USERNAME.  No virus scanner finds anything but all these internet reports and the fact that those THREE files are not on the other TWO computers at this house is kind of suspicious.  I removed these three files and rebooted and everything was fine, no OA001Mon.exe running and the files didn't come back.  Was this a good idea and are these files a virus? There are files with those names that are legitimate. Do you have a webcam installed from Creative? Nope, no webcam is installed at all.You can scan suspicious files to see if they are infected at Jotti's malware scan.I already did. It says in the first post.If nothing is reporting them as MALICIOUS then I would say they are legit. | |
| 442. | Solve : SpyWareGuard? | 
| Answer» I've heard that SpyWareGuard offers real-time ANTISPYWARE PROTECTION for free. Is this true, and will it CONFLICT with SpywareBlaster?SpyWareGuard is far outdated and LIKELY will not add any extra protection with the advancements in today's antivirus. | |
| 443. | Solve : Windows XP Function Keys Lead To Malware? | 
| Answer» By Brian Krebs MS: Be Careful With Those Function Keys | |
| 444. | Solve : I have now thousands on the objects on my computer infected... What do I do?? | 
| Answer» I am scanning my computer using malwarebytes and it is currently showing a great 9,000 and counting of infected files... I had scanned my computer using avira earlier on and showed about 2,000 infections I thought that they had been false positives since AVG didn't detect any when I do scans using it and I changed avira to avast then had a thorough scan, and it showed one virus which is Win32 Rootkit-gen, that's the only thing it got and its severity is high basing on the avast report. This has got me alarmed though... what do I do with this? I'd be posting the EXACT amount of affected file once the scan it done. Just thought of posting this ahead while waiting. Please visit this webpage for a TUTORIAL on downloading and running ComboFix: 
 by DragonMaster Jay Microsoft Windows [Version 6.1.7600] Date: 02/25/2010 - Time: 20:54:54 - Arch.: x86 -- Malware removal tools check -- Malwarebytes' Anti-Malware -- Known infection -- Extra message: Detection only. EOF Please open Malwarebytes, click the Update tab, and click Check for Updates. Then, click the Scanner tab, select Perform Quick Scan, and press Scan. Remove selected, and post the log in your next reply.Malwarebytes' Anti-Malware 1.44 Database version: 3795 Windows 6.1.7600 Internet Explorer 8.0.7600.16385 2/26/2010 6:26:57 PM mbam-log-2010-02-26 (18-25-49).txt Scan type: Quick Scan Objects scanned: 153022 Time elapsed: 38 minute(s), 47 second(s) Memory Processes Infected: 0 Memory Modules Infected: 0 Registry Keys Infected: 123 Registry Values Infected: 2 Registry Data Items Infected: 0 Folders Infected: 0 Files Infected: 16260 Memory Processes Infected: (No malicious items detected) Memory Modules Infected: (No malicious items detected) Registry Keys Infected: HKEY_CLASSES_ROOT\funwebproducts.datacontrol.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.historykillerscheduler (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.historykillerscheduler.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.historyswattercontrolbar (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.historyswattercontrolbar.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.htmlmenu (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.htmlmenu.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.htmlmenu.2 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.iecookiesmanager (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.iecookiesmanager.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.killerobjmanager (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.killerobjmanager.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.popswatterbarbutton (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.popswatterbarbutton.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.popswattersettingscontrol (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\funwebproducts.popswattersettingscontrol.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mywebsearch.chatsessionplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mywebsearch.chatsessionplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mywebsearch.htmlpanel (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mywebsearch.htmlpanel.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mywebsearch.outlookaddin (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mywebsearch.outlookaddin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mywebsearch.pseudotransparentplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mywebsearch.pseudotransparentplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mywebsearchtoolbar.settingsplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mywebsearchtoolbar.settingsplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mywebsearchtoolbar.toolbarplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\mywebsearchtoolbar.toolbarplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\screensavercontrol.screensaverinstaller (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\screensavercontrol.screensaverinstaller.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{07b18eaa-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{07b18eac-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{1093995a-ba37-41d2-836e-091067c4ad17} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{120927bf-1700-43bc-810f-fab92549b390} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{17de5e5e-bfe3-4e83-8e1f-8755795359ec} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{1f52a5fa-a705-4415-b975-88503b291728} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{247a115f-06c2-4fb3-967d-2d62d3cf4f0a} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{2e3537fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{2e9937fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{3e1656ed-f60e-4597-b6aa-b6a58e171495} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{3e53e2cb-86db-4a4a-8bd9-ffeb7a64df82} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{3e720451-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{3e720453-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{63d0ed2b-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{63d0ed2d-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{6e74766c-4d93-4cc0-96d1-47b8e07ff9ca} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{72ee7f04-15bd-4845-a005-d6711144d86a} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{741de825-a6f0-4497-9aa6-8023cf9b0fff} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{7473d291-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{7473d293-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{7473d295-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{7473d297-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{90449521-d834-4703-bb4e-d3aa44042ff8} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{991aac62-b100-47ce-8b75-253965244f69} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{a626cdbd-3d13-4f78-b819-440a28d7e8fc} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{bbabdc90-f3d5-4801-863a-ee6ae529862d} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{cf54be1c-9359-4395-8533-1657cf209cfe} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{d6ff3684-ad3b-48eb-bbb4-b9e6c5a355c1} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{de38c398-b328-4f4c-a3ad-1b5e4ed93477} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{e342af55-b78a-4cd0-a2bb-da7f52d9d25e} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{e342af55-b78a-4cd0-a2bb-da7f52d9d25f} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{e79dfbc9-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{e79dfbcb-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{eb9e5c1c-b1f9-4c2b-be8a-27d6446fdaf8} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Interface\{f87d7fb5-9dc5-4c8c-b998-d8dfe02e2978} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{0f8ecf4f-3646-4c3a-8881-8e138ffcaf70} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{147a976f-eee1-4377-8ea7-4716e4cdd239} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{1e0de227-5ce4-4ea3-ab0c-8b03e1aa76bc} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{25560540-9571-4d7b-9389-0f166788785a} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{3e720452-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{53ced2d0-5e9a-4761-9005-648404e6f7e5} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{63d0ed2c-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{7473d292-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{7473d294-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{7473d296-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{84da4fdf-a1cf-4195-8688-3e961f505983} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{8e6f1832-9607-4440-8530-13be7c4b1d14} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{938aa51a-996c-4884-98ce-80dd16a5c9da} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{98d9753d-d73b-42d5-8c85-4469cda897ab} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{a9571378-68a1-443d-b082-284f960c6d17} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{adb01e81-3c79-4272-a0f1-7b2be7a782dc} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{b813095c-81c0-4e40-aa14-67520372b987} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{c9d7be3e-141a-4c85-8cd6-32461f3df2c7} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{cff4ce82-3aa2-451f-9b77-7165605fb835} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{d9fffb27-d62a-4d64-8cec-1ff006528805} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\CLSID\{e79dfbca-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{07b18ea0-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{0d26bc71-a633-4e71-ad31-eadc3a1b6a3a} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{29d67d3c-509a-4544-903f-c8c1b8236554} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{3e720450-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{7473d290-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{8ca01f0e-987c-49c3-b852-2f1ac4a7094c} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{8e6f1830-9607-4440-8530-13be7c4b1d14} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{c8cecde3-1ae1-4c4a-ad82-6d5b00212144} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{d518921a-4a03-425e-9873-b9a71756821e} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{e47caee0-deea-464a-9326-3f2801535a4d} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{e79dfbc0-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CLASSES_ROOT\Typelib\{f42228fb-e84e-479e-b922-fbbd096e792c} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256a51-b582-467e-b8d4-7786eda79ae0} (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59c7fc09-1c83-4648-b3e6-003d2bbc7481} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68af847f-6e91-45dd-9b68-d6a12c30e5d7} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9170b96c-28d4-4626-8358-27e6caeef907} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d1a71fa0-ff48-48dd-9b6d-7a13a3e42127} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ddb1968e-ead6-40fd-8dae-ff14757f60c7} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f138d901-86f0-4383-99b6-9cdd406036da} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256a51-b582-467e-b8d4-7786eda79ae0} (Trojan.Vundo) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{25560540-9571-4d7b-9389-0f166788785a} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3e720452-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{63d0ed2c-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7473d294-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{98d9753d-d73b-42d5-8c85-4469cda897ab} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{e79dfbca-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_CURRENT_USER\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\RunDll32Policy\f3ScrCtr.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWebSearch bar Uninstall (Adware.MyWebSearch) -> Quarantined and deleted successfully. Registry Values Infected: HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\MenuExt\&Search\(default) (Adware.Hotbar) -> Quarantined and deleted successfully. HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Media\WMSDK\Sources\f3popularscreensavers (Adware.MyWebSearch) -> Quarantined and deleted successfully. Registry Data Items Infected: (No malicious items detected) Folders Infected: (No malicious items detected)Files Infected: C:\Windows\System32\trzB5.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCAE3.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCAE4.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCAE5.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCAE6.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCAE9.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCAEB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCAEC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCAED.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCAEE.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCAF1.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCAF2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCAF3.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCAF6.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCAF7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCAF8.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCAF9.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCAFB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCAFC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCAFE.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCB0.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCB01.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCB03.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCB04.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCB05.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCB08.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECB5.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECB9.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECBC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECBE.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECBF.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECC0.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECC1.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECC8.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECC9.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECCA.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECCB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECCD.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECCE.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECCF.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECD.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECD0.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECD2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECD4.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECD7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECDA.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECDB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECDC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECDD.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECDF.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECE.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECE0.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzECE4.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB485.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB487.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB488.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB48A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB48C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB48D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB48E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB491.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB494.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB495.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB496.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB497.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB498.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB49A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB49C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB49D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB49E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB49F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB4A1.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB4A2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB4A3.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB4A6.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB4A7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB4A8.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB4AA.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB4AB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB4AC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully.C:\Windows\System32\trzD893.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD894.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD895.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD897.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD898.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD899.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8A1.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8A2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8A3.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8A4.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8A5.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8A6.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8A7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8A8.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8A9.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8AA.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8AB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8AC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8AD.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8AF.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8B.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8B0.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8B2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8B4.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8B6.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8B7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD8B8.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF987.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF988.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF98C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF98D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF98E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF98F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF99.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF990.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF991.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF992.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF993.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF994.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF995.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF996.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF997.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF998.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF999.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF99A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF99B.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF99C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF99D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF99E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF99F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF9A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF9A0.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF9A1.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF9A4.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF9A7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF9A8.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF9A9.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF9AB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF9AD.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF9B.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF9B1.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC0E2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC0E3.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC0E5.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC0E8.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC0E9.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC0EA.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC0EB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC0ED.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC0EE.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC0EF.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC0F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC0F0.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC0F2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC0F3.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC0F4.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC0F7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC0F9.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC0FC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC1.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC10.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB33.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB37.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB38.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB39.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB3C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB3E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB3F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB40.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB41.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB42.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB43.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB44.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB45.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB46.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB47.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB48.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB49.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB4A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB4B.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB4C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB4D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB4E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB4F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAB50.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE26F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE27.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE270.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE271.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE272.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE273.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE274.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE275.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE276.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE277.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE278.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE279.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE27A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE27B.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE27C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE27D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE27E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE27F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE28.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE280.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE281.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE284.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE285.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD22.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD220.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD221.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD222.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD223.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD224.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD225.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD226.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD227.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD228.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD229.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD22A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD22B.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD22C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD22D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD22E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD22F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD230.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD231.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD232.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD233.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF30F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF31.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF310.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF311.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF312.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF313.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF319.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF31A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF31C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF31D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF31E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF321.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF323.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF326.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF327.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF329.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF32C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF32D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF32F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF330.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF331.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF333.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF334.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF335.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA582.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA585.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA586.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA588.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA589.tmp (Trojan.Tracur) -> Quarantined and deleted successfully.C:\Windows\System32\trzA58A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA58B.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA58D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA58E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA58F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA590.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA591.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA592.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA593.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA594.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA596.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA59A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA59E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA5A4.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA5A5.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA5A6.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA5A7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA5A8.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA5A9.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA5AA.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA5AB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA5AC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA5AD.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA5AE.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA5AF.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA5B0.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA5B1.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB9F9.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB9FA.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB9FB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB9FC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB9FD.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB9FE.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB9FF.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBA.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBA0.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBA01.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBA07.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBA0C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBA0E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBA1.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBA10.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBA12.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBA15.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBA16.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBA17.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBA18.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBA19.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC5FC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC5FD.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC5FE.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC6.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC60.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC602.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC603.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC604.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC607.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC608.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC609.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC60C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC60D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC60E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC60F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC610.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC611.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC612.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC613.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC614.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFC2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFC4.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFC8.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFCB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFCD.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFD.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFD0.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFD2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFD3.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFD4.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFD5.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFD6.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFD7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFD8.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFD9.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFDA.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFDB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFDC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFDD.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFDE.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFDF.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFE0.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFE1.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFE2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzAFE3.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzDD62.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzDD63.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzDD65.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzDD66.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzDD67.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzDD68.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzDD69.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzDD6B.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzDD6D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzDD6E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzDD6F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzDD7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzDD75.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzDD76.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzDD77.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzDD78.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzDD7A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzDD7C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzDD7D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzDD7E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE80D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE80E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE80F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE81.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE810.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE811.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE813.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE814.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE815.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE816.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE818.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE819.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE81A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE81F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE82.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE822.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE823.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE824.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE825.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE826.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE828.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE829.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE82B.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE82F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE83.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE830.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE831.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE832.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE833.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE834.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE835.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE836.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE837.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE83B.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE83C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE83D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDCD.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDCE.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDCF.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDD0.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDD1.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDD4.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDD5.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDD6.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDD7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDDA.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDDE.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDE.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDE1.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDE2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDE5.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDE6.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDE7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDE8.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDE9.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDEA.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDEB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDEC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDED.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzFDEE.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEA7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEA8.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEA9.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEAA.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEAB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEAC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEAD.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEB1.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEB2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEB3.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEB4.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEB5.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEB6.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEB7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEB9.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEC0.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEC1.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEC2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEC5.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEC7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEC8.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCEC9.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCECA.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCECC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCECE.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCECF.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCED.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCED3.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCED4.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzCED6.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD573.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD574.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD575.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD578.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD57A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD57B.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD57F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD58.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD580.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD582.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD587.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD589.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD58A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD58B.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD58C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD58E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD58F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD59.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD591.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzD595.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBA1A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBA3D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBA75.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBA9D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBAC1.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBAEC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBB01.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBB35.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBB53.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBB69.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBB89.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBBA2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBBC2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBBE2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBC01.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBC34.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBC6B.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBC97.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBCBE.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBCDE.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBD04.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBD34.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBD61.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBD8A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDAA.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDCF.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDE4.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDFE.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBE21.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBE44.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBE6C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDD.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDD0.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDD1.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDD2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDD3.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDD4.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDD5.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDD6.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDD7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDD8.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDD9.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDDA.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDDB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDDC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDDD.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDDE.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDDF.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDE.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDE0.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDE1.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzBDE2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEFF7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEFF8.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEFF9.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEFFA.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEFFB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEFFF.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF0.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF00.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF001.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF004.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF005.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF007.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF009.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF00B.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF00D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF00E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF00F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF01.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF010.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF013.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF015.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF016.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF017.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF019.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF01B.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF01C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF01D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF01F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF02.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF021.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF022.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF023.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF024.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA849.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA84B.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA84C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA84D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA84E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA84F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA850.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA851.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA852.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA853.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA854.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA855.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA856.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA857.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA85C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA85D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA85E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA85F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA86.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzA860.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB77F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB784.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB785.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB787.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB788.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB789.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB78C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB78E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB792.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB794.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB795.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB796.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB797.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB798.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB799.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB79A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB79C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB7A3.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB7A6.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB7A7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB7A8.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB7AA.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6B2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6B3.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6B4.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6B8.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6BA.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6BB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6BC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6BD.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6BE.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6BF.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6C0.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6C2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6C4.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6C5.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6C7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6CB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6CC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6D0.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6D1.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6D2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6D3.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6D4.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6D5.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6D7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6D8.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6D9.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6DA.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6DB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzF6DC.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC36C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC36E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC371.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC375.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC376.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC37A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC37B.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC37C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC37D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC37E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC37F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC380.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC381.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC382.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC383.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC385.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC386.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC387.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC388.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC389.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC38C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC38D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC38E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC390.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE586.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE58A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE58C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE58F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE59.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE590.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE591.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE593.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE598.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE59C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE59D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE59E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE59F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE5A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE5A0.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE5A1.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE5A3.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE5A4.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE5A5.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE5A6.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzE5A9.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA6.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA60.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA63.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA64.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA65.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA66.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA67.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA68.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA69.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA6A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA6B.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA6D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA6F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA71.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA75.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA79.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA7A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA7C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA7D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA7E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA8.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA80.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA83.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA84.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA87.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzEA8A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB20C.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB20D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB20E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB20F.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB21.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB210.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB211.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB212.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB214.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB215.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB216.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB217.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB218.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB21A.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB21B.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB21D.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB21E.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB22.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB220.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB222.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB223.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB224.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB225.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzB226.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC8BD.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC8BF.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC8C0.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC8C1.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC8C2.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC8C3.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC8C4.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC8C5.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC8C6.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC8C7.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC8C8.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC8C9.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC8CA.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. C:\Windows\System32\trzC8CB.tmp (Trojan.Tracur) -> Quarantined and deleted successfully. I'm not yet done with the logs... I forgot that there is an option to attach the file here... crazy me... I'll be posting the attachments in two installments because one file altogether is too big and won't fit in the limit. here's the first one. [Saving space, attachment deleted by admin]I would have to post another one with the last attachment because my second attempt failed as well due to the limit... I'd probably be tagged with what I'm doing... [Saving space, attachment deleted by admin]this is the last one... [Saving space, attachment deleted by admin]Ouchie. Download OTL to your Desktop 
 msconfig safebootminimal safebootnetwork activex drivers32 %SYSTEMDRIVE%\*.exe %systemroot%\*. /mp /s c:\$recycle.bin\*.* /s HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\WindowsUpdate\Auto Update\Results\Install|LastSuccessTime /rs /md5start eventlog.dll scecli.dll netlogon.dll cngaudit.dll sceclt.dll ntelogon.dll logevent.dll iaStor.sys nvstor.sys nvstor32.sys atapi.sys IdeChnDr.sys viasraid.sys AGP440.sys vaxscsi.sys nvatabus.sys viamraid.sys nvata.sys nvgts.sys iastorv.sys ViPrt.sys eNetHook.dll explorer.exe svchost.exe userinit.exe qmgr.dll ws2_32.dll proquota.exe imm32.dll kernel32.dll ndis.sys autochk.exe spoolsv.exe xmlprov.dll ntmssvc.dll mswsock.dll Beep.SYS ntfs.sys termsrv.dll sfcfiles.dll st3shark.sys ahcix86.sys srsvc.dll nvrd32.sys /md5stop %systemroot%\system32\*.dll /lockedfiles %systemroot%\Tasks\*.job /lockedfiles 
 | |
| 445. | Solve : Quarantine for infected PCs?? | 
| Answer» From the Sunbelt BLOG by Tom Kelchner Microsoft Vice President of Trustworthy Computing Scott Charney, in a keynote address at the RSA security conference in SAN Francisco yesterday, called for quarantines on malware-infected PCs. His remarks were widely covered by a variety of web news outlets. | |
| 446. | Solve : error message follow up for JAY? | 
| Answer» OTL logfile created on: 3/1/2010 5:04:01 PM - Run 1 | |
| 447. | Solve : error message follow up for JAY #2? | 
| Answer» OTL Extras LOGFILE created on: 3/1/2010 5:04:01 PM - Run 1 OTL by OldTimer - Version 3.1.32.0 Folder = C:\Documents and Settings\Don\Desktop Windows XP Home Edition Service Pack 3 (Version = 5.1.2600) - Type = NTWorkstation Internet Explorer (Version = 6.0.2900.5512) Locale: 00000409 | Country: United States | Language: ENU | Date Format: M/d/yyyy 1.00 Gb Total Physical Memory | 1.00 Gb Available Physical Memory | 68.00% Memory free 2.00 Gb Paging File | 1.00 Gb Available in Paging File | 86.00% Paging File free Paging file location(s): C:\pagefile.sys 412 768 [binary data] %SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files Drive C: | 66.95 Gb Total Space | 49.90 Gb Free Space | 74.53% Space Free | Partition Type: NTFS D: Drive not present or media not loaded E: Drive not present or media not loaded F: Drive not present or media not loaded G: Drive not present or media not loaded H: Drive not present or media not loaded I: Drive not present or media not loaded Computer Name: DON-7ZNRUN3UQBQ Current User Name: Don Logged in as Administrator. Current Boot Mode: Normal Scan Mode: Current user Company Name Whitelist: On Skip Microsoft Files: On File Age = 14 Days Output = Standard Quick Scan ========== Extra Registry (SafeList) ========== ========== File Associations ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\] ========== Shell Spawning ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Classes\\shell\[command]\command] batfile [open] -- "%1" %* cmdfile [open] -- "%1" %* comfile [open] -- "%1" %* exefile [open] -- "%1" %* htmlfile [edit] -- "C:\Program Files\Microsoft Office\OFFICE11\msohtmed.exe" %1 (Microsoft Corporation) htmlfile [print] -- "C:\Program Files\Microsoft Office\OFFICE11\msohtmed.exe" /p %1 (Microsoft Corporation) piffile [open] -- "%1" %* regfile [merge] -- Reg Error: Key error. scrfile [config] -- "%1" scrfile [install] -- rundll32.exe desk.cpl,InstallScreenSaver %l (Microsoft Corporation) scrfile [open] -- "%1" /S txtfile [edit] -- Reg Error: Key error. Unknown [openas] -- %SystemRoot%\system32\rundll32.exe %SystemRoot%\system32\shell32.dll,OpenAs_RunDLL %1 Directory [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) Folder [open] -- %SystemRoot%\Explorer.exe /idlist,%I,%L (Microsoft Corporation) Folder [explore] -- %SystemRoot%\Explorer.exe /e,/idlist,%I,%L (Microsoft Corporation) Drive [find] -- %SystemRoot%\Explorer.exe (Microsoft Corporation) ========== Security Center Settings ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center] "AntiVirusDisableNotify" = 0 "FirewallDisableNotify" = 0 "UpdatesDisableNotify" = 0 "AntiVirusOverride" = 0 "FirewallOverride" = 0 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall] "DisableMonitoring" = 1 [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile] "EnableFirewall" = 1 "DoNotAllowExceptions" = 0 "DisableNotifications" = 0 ========== Authorized Applications List ========== [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List] [HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List] "C:\Program Files\iTunes\iTunes.exe" = C:\Program Files\iTunes\iTunes.exe:*:Enabled:iTunes -- (Apple Inc.) "C:\Documents and Settings\Don\Local Settings\Temp\7zS18.tmp\SymNRT.exe" = C:\Documents and Settings\Don\Local Settings\Temp\7zS18.tmp\SymNRT.exe:*:Enabled:Norton Removal Tool -- File not found "C:\Documents and Settings\Don\Local Settings\Temp\7zS1D5.tmp\SymNRT.exe" = C:\Documents and Settings\Don\Local Settings\Temp\7zS1D5.tmp\SymNRT.exe:*:Enabled:Norton Removal Tool -- File not found ========== HKEY_LOCAL_MACHINE Uninstall List ========== [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "{001E7FB6-BB6B-4ED0-BEDC-B5404ED96D4E}" = DocProc "{10E1E87C-656C-4D08-86D6-5443D28583BE}" = TrayApp "{1753255A-0AEB-4220-8C75-607B73F0C133}" = Copy "{1F1C2DFC-2D24-3E06-BCB8-725134ADF989}" = Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148 "{22466889-7642-488d-AA0E-F619704CF7AB}" = DeviceDiscovery "{26A24AE4-039D-4CA4-87B4-2F83216014FF}" = Java(TM) 6 Update 18 "{29FA38B4-0AE4-4D0D-8A51-6165BB990BB0}" = WebReg "{2F28B3C9-2C89-4206-8B33-8ADC9577C49B}" = Scan "{318AB667-3230-41B5-A617-CB3BF748D371}" = iTunes "{350C97B0-3D7C-4EE8-BAA9-00BCB3D54227}" = WebFldrs XP "{487B0B9B-DCD4-440D-89A0-A6EDE1A545A3}" = HPSSupply "{4A03706F-666A-4037-7777-5F2748764D10}" = Java Auto Updater "{543E938C-BDC4-4933-A612-01293996845F}" = UnloadSupport "{5E06C076-E4E7-4239-A886-B3D8AC84C166}" = HP Print Diagnostic Utility "{66E6CE0C-5A1E-430C-B40A-0C90FF1804A8}" = eSupportQFolder "{7299052b-02a4-4627-81f2-1818da5d550d}" = Microsoft Visual C++ 2005 Redistributable "{770657D0-A123-3C07-8E44-1C83EC895118}" = Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053 "{824D3839-DAA1-4315-A822-7AE3E620E528}" = VideoToolkit01 "{8389382B-53BA-4A87-8854-91E3D80A5AC7}" = HP Photosmart Essential2.01 "{87E2B986-07E8-477a-93DC-AF0B6758B192}" = DocProcQFolder "{89F4137D-6C26-4A84-BDB8-2E5A4BB71E00}" = Microsoft Silverlight "{90110409-6000-11D3-8CFE-0150048383C9}" = Microsoft Office Professional Edition 2003 "{90120000-0020-0409-0000-0000000FF1CE}" = Compatibility Pack for the 2007 Office system "{95120000-00AF-0409-0000-0000000FF1CE}" = Microsoft Office PowerPoint Viewer 2007 (English) "{97AA0C55-AFAD-4126-B21C-F1318FB6DADA}" = RTLSetup for Realtek RTL8139/810x Family NIC 3.00 "{A3051CD0-2F64-3813-A88D-B8DCCDE8F8C7}" = Microsoft .NET Framework 3.0 Service Pack 2 "{AB40272D-92AB-4F30-B36B-22EDE16F8FE5}" = HP Update "{AB5D51AE-EBC3-438D-872C-705C7C2084B0}" = DeviceManagementQFolder "{AC76BA86-1033-F400-7760-000000000002}" = Adobe Acrobat 7.0 Professional - English, Français, Deutsch "{AC76BA86-7AD7-1033-7B44-A81200000003}" = Adobe Reader 8.1.2 "{ACA85783-8EEA-4f0a-B2A3-A8173F30209F}" = C4200_doccd "{AEA07F97-9088-497c-8821-0F36BD5DC251}" = HPProductAssistant "{AF7FC1CA-79DF-43c3-90A3-33EFEB9294CE}" = AIO_Scan "{B09BCBF6-87EE-4403-A336-3A9510856535}" = HP Photosmart All-In-One Software 9.0 "{B4092C6D-E886-4CB2-BA68-FE5A88D31DE6}_is1" = Spybot - Search & Destroy "{BCD6CD1A-0DBE-412E-9F25-3B500D1E6BA1}" = SolutionCenter "{BFDE4176-5DFE-4db9-AA00-8F30CB001BDA}" = c4200_Help "{C09FB3CD-3D0C-3F2D-899A-6A1D67F2073F}" = Microsoft .NET Framework 2.0 Service Pack 2 "{C39E671D-0528-4c5e-A034-8470C5BC393A}" = C4200 "{CAE7D1D9-3794-4169-B4DD-964ADBC534EE}" = HP Product Detection "{CC0E1AE3-091D-4969-B151-7AC142062C28}" = SmartWebPrinting "{CDDCBBF1-2703-46BC-938B-BCC81A1EEAAA}" = SUPERAntiSpyware Free Edition "{CE2CDD62-0124-36CA-84D3-9F4DCF5C5BD9}" = Microsoft .NET Framework 3.5 SP1 "{D0E39A1D-0CEE-4D85-B4A2-E3BE990D075E}" = Destination Component "{D8B7A682-20DA-4797-8415-B1FB14D4D32B}" = PS_AIO_Software "{E2662C24-B31E-4349-A084-32EB76E8B760}" = BufferChm "{E28750A2-45F2-4b63-99F7-9F81A94B1E2D}" = PS_AIO_Software_min "{E9C18EBD-85BE-47D0-AA73-3FEDCC976B04}" = Toolbox "{F1E63043-54FC-429B-AB2C-31AF9FBA4BC7}" = 32 Bit HP CIO Components Installer "{F72E2DDC-3DB8-4190-A21D-63883D955FE7}" = PSSWCORE "{F958CA02-BB40-4007-894B-258729456EE4}" = QuickTime "{FCC3BD6A-F118-475D-8748-7EE08EA0AF56}" = HDView for Internet Explorer "{FD7F242B-9AA0-40c3-941E-3A9821D19C09}" = PS_AIO_ProductContext "{FD8D8B04-BEAD-4A55-AA1D-62D2373E7DEA}" = Status "Adobe Acrobat 7.0 Professional - EFG" = Adobe Acrobat 7.1.0 Professional - English, Français, Deutsch "Adobe Flash Player ActiveX" = Adobe Flash Player 10 ActiveX "avast5" = avast! Free Antivirus "CCleaner" = CCleaner (remove only) "ESET Online Scanner" = ESET Online Scanner v3 "HIJACKTHIS" = HijackThis 2.0.2 "HP Imaging Device Functions" = HP Imaging Device Functions 9.0 "HP Photosmart Essential" = HP Photosmart Essential 2.01 "HP Smart Web Printing" = HP Smart Web Printing "HP Solution Center & Imaging Support Tools" = HP Solution Center 9.0 "HPOCR" = HP OCR Software 9.0 "Juniper Network Connect 5.3.0" = Juniper Networks Network Connect 5.3.0 "Malwarebytes' Anti-Malware_is1" = Malwarebytes' Anti-Malware "Microsoft .NET Framework 3.5 SP1" = Microsoft .NET Framework 3.5 SP1 "Microsoft.Net.Client.3.5" = Microsoft .NET Framework Client Profile - PREVIEW "NVIDIA Drivers" = NVIDIA Drivers "PCI Audio Driver" = PCI Audio Driver "RealPlayer 12.0" = RealPlayer "Windows Media Format Runtime" = Windows Media Format 11 runtime "Windows Media Player" = Windows Media Player 11 ========== HKEY_CURRENT_USER Uninstall List ========== [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall] "Move Media Player" = Move Media Player "Neoteris_Host_Checker" = Juniper Networks Host Checker ========== Last 10 Event Log Errors ========== [ Application Events ] Error - 2/17/2010 2:47:18 AM | Computer Name = DON-7ZNRUN3UQBQ | Source = MsiInstaller | ID = 11311 Description = Product: Microsoft Office Professional Edition 2003 -- Error 1311. Source file not found(cabinet): C:\MSOCache\All Users\90000409-6000-11D3-8CFE-0150048383C9\PA561401.CAB. Verify that the file exists and that you can access it. Error - 2/17/2010 2:47:24 AM | Computer Name = DON-7ZNRUN3UQBQ | Source = MsiInstaller | ID = 1024 Description = Product: Microsoft Office Professional Edition 2003 - Update 'Security Update for Excel 2003 (KB973475): EXCEL' could not be installed. Error code 1603. Windows Installer can create logs to help troubleshoot issues with installing software packages. Use the FOLLOWING link for instructions on turning on logging support: http://go.microsoft.com/fwlink/?LinkId=23127 Error - 2/17/2010 2:48:08 AM | Computer Name = DON-7ZNRUN3UQBQ | Source = MsiInstaller | ID = 11311 Description = Product: Microsoft Office Professional Edition 2003 -- Error 1311. Source file not found(cabinet): C:\MSOCache\All Users\90000409-6000-11D3-8CFE-0150048383C9\PA561401.CAB. Verify that the file exists and that you can access it. Error - 2/17/2010 2:48:09 AM | Computer Name = DON-7ZNRUN3UQBQ | Source = MsiInstaller | ID = 1024 Description = Product: Microsoft Office Professional Edition 2003 - Update 'Security Update for Office 2003 (KB974554): FM20' could not be installed. Error code 1603. Windows Installer can create logs to help troubleshoot issues with installing software packages. Use the following link for instructions on turning on logging support: http://go.microsoft.com/fwlink/?LinkId=23127 Error - 2/17/2010 2:48:50 AM | Computer Name = DON-7ZNRUN3UQBQ | Source = MsiInstaller | ID = 11311 Description = Product: Microsoft Office Professional Edition 2003 -- Error 1311. Source file not found(cabinet): C:\MSOCache\All Users\90000409-6000-11D3-8CFE-0150048383C9\PA561401.CAB. Verify that the file exists and that you can access it. Error - 2/17/2010 2:48:50 AM | Computer Name = DON-7ZNRUN3UQBQ | Source = MsiInstaller | ID = 1024 Description = Product: Microsoft Office Professional Edition 2003 - Update 'Security Update for Office 2003 (KB975051): MSCONV' could not be installed. Error code 1603. Windows Installer can create logs to help troubleshoot issues with installing software packages. Use the following link for instructions on turning on logging support: http://go.microsoft.com/fwlink/?LinkId=23127 Error - 2/17/2010 2:49:35 AM | Computer Name = DON-7ZNRUN3UQBQ | Source = MsiInstaller | ID = 11311 Description = Product: Microsoft Office Professional Edition 2003 -- Error 1311. Source file not found(cabinet): C:\MSOCache\All Users\90000409-6000-11D3-8CFE-0150048383C9\PA561401.CAB. Verify that the file exists and that you can access it. Error - 2/17/2010 2:49:35 AM | Computer Name = DON-7ZNRUN3UQBQ | Source = MsiInstaller | ID = 1024 Description = Product: Microsoft Office Professional Edition 2003 - Update 'Security Update for Outlook 2003 (KB973705): OUTLOOK' could not be installed. Error code 1603. Windows Installer can create logs to help troubleshoot issues with installing software packages. Use the following link for instructions on turning on logging support: http://go.microsoft.com/fwlink/?LinkId=23127 Error - 2/17/2010 2:50:21 AM | Computer Name = DON-7ZNRUN3UQBQ | Source = MsiInstaller | ID = 11311 Description = Product: Microsoft Office Professional Edition 2003 -- Error 1311. Source file not found(cabinet): C:\MSOCache\All Users\90000409-6000-11D3-8CFE-0150048383C9\PA561401.CAB. Verify that the file exists and that you can access it. Error - 2/17/2010 2:50:21 AM | Computer Name = DON-7ZNRUN3UQBQ | Source = MsiInstaller | ID = 1024 Description = Product: Microsoft Office Professional Edition 2003 - Update 'Update for Outlook 2003: Junk E-mail Filter (KB977713): OUTLFLTR' could not be installed. Error code 1603. Windows Installer can create logs to help troubleshoot issues with installing software packages. Use the following link for instructions on turning on logging support: http://go.microsoft.com/fwlink/?LinkId=23127 [ System Events ] Error - 2/19/2010 9:53:01 AM | Computer Name = DON-7ZNRUN3UQBQ | Source = Service Control Manager | ID = 7022 Description = The Windows Image Acquisition (WIA) service hung on starting. Error - 2/20/2010 1:47:31 PM | Computer Name = DON-7ZNRUN3UQBQ | Source = Service Control Manager | ID = 7022 Description = The Windows Image Acquisition (WIA) service hung on starting. Error - 2/21/2010 5:19:58 PM | Computer Name = DON-7ZNRUN3UQBQ | Source = Service Control Manager | ID = 7022 Description = The Windows Image Acquisition (WIA) service hung on starting. Error - 2/22/2010 1:09:03 PM | Computer Name = DON-7ZNRUN3UQBQ | Source = Service Control Manager | ID = 7022 Description = The Windows Image Acquisition (WIA) service hung on starting. Error - 2/23/2010 11:32:55 AM | Computer Name = DON-7ZNRUN3UQBQ | Source = Service Control Manager | ID = 7022 Description = The Windows Image Acquisition (WIA) service hung on starting. Error - 2/24/2010 11:58:20 AM | Computer Name = DON-7ZNRUN3UQBQ | Source = Service Control Manager | ID = 7022 Description = The Windows Image Acquisition (WIA) service hung on starting. Error - 2/25/2010 11:15:11 AM | Computer Name = DON-7ZNRUN3UQBQ | Source = Service Control Manager | ID = 7022 Description = The Windows Image Acquisition (WIA) service hung on starting. Error - 2/26/2010 10:53:48 AM | Computer Name = DON-7ZNRUN3UQBQ | Source = Service Control Manager | ID = 7022 Description = The Windows Image Acquisition (WIA) service hung on starting. Error - 2/27/2010 12:15:15 PM | Computer Name = DON-7ZNRUN3UQBQ | Source = Service Control Manager | ID = 7022 Description = The Windows Image Acquisition (WIA) service hung on starting. Error - 3/1/2010 2:16:07 PM | Computer Name = DON-7ZNRUN3UQBQ | Source = Service Control Manager | ID = 7022 Description = The Windows Image Acquisition (WIA) service hung on starting. < End of report > | |
| 448. | Solve : New “hi. this is your photo?” MSN Virus? | 
| Answer» There has been a virus which is spreading through MSN / Live messenger which shows you a link in the IM window with a text which says “Hi, this is your photo?" --  | |
| 449. | Solve : Next step? SAS and HJT apps can't load...? | 
| Answer» Avira found JAVA.dldr.agen.na.1 and another variant. IE is locked up and pop-up Security Warnings are making it impossible to get anything to run. The HJT exe won't run and the SuperAntiSpyware exe won't run, both start but terminate almost immediately. My AT&T Parental Controls app is locked up and I've pulled the network cable so this thing doesn't do even more damage. | |
| 450. | Solve : Do you Skype?? | 
| Answer» SKYPE users are no different then any other web surfer. There are pitfalls that everyone should be AWARE of. Skype has a web page DEDICATED to security appropriately called, Skype Security. There are also safety tips in the Skype FAQ Staying safe on Skype This web page, Tips on how to safely use Skype. Look on the bottom of the page and pay particular attention to Article 4 - Permission to Utilize section of the EULA (end user license agreement). ADDITIONAL resources: To Skype or not to Skype Use internet telephony safely | |