Can Someone Help me with this HijackThis Log

Discussion in 'Windows - Virus and spyware problems' started by Klinster, Apr 1, 2009.

  1. Klinster

    Klinster Member

    Joined:
    Oct 24, 2008
    Messages:
    7
    Likes Received:
    0
    Trophy Points:
    11
    Hello first foremost this is my friends computer and he is not that computer savvy. I ran both Mbam and SuparAntispyware and I am just making sure the computer is clean thanks

    HiJackThis:

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 5:23:23 PM, on 4/1/2009
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v7.00 (7.00.6000.16791)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\ZoneLabs\vsmon.exe
    C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    C:\Program Files\Alwil Software\Avast4\ashServ.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\Program Files\Common Files\Roxio Shared\SharedCOM8\RoxMediaDB.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Viewpoint\Common\ViewpointService.exe
    C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2C1.EXE
    C:\WINDOWS\AGRSMMSG.exe
    C:\WINDOWS\system32\VTTimer.exe
    C:\WINDOWS\ALCXMNTR.EXE
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
    C:\Program Files\Java\jre6\bin\jusched.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\SpeedFan\speedfan.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iesearch&locale=EN_US&c=Q304&bd=pavilion&pf=desktop
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/ie/defaults/sp/sbcydial/*http://www.yahoo.com
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/cus...sbcydial/*http://www.yahoo.com/search/ie.html
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
    R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Windows Internet Explorer provided by Yahoo!
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=168.94.74.68:8080
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
    O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealOne Player\rpbrowserrecordplugin.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file)
    O3 - Toolbar: HP view - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\Program Files\HP\Digital Imaging\bin\hpdtlk02.dll
    O3 - Toolbar: (no name) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - (no file)
    O4 - HKLM\..\Run: [EPSON Stylus C64 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2C1.EXE /P23 "EPSON Stylus C64 Series" /O6 "USB001" /M "Stylus C64"
    O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
    O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
    O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
    O4 - HKLM\..\Run: [UpdateManager] "c:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
    O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
    O4 - HKCU\..\Run: [BackupNotify] c:\Program Files\HP\Digital Imaging\bin\backupnotify.exe
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKUS\S-1-5-19\..\Run: [fopugakeli] Rundll32.exe "C:\WINDOWS\system32\yohefani.dll",s (User 'LOCAL SERVICE')
    O4 - HKUS\S-1-5-20\..\Run: [fopugakeli] Rundll32.exe "C:\WINDOWS\system32\yohefani.dll",s (User 'NETWORK SERVICE')
    O4 - Startup: SpeedFan.lnk = C:\Program Files\SpeedFan\speedfan.exe
    O8 - Extra context menu item: Add To HP Organize... - C:\PROGRA~1\HEWLET~1\HPORGA~1\bin\core.hp.main\SendTo.html
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {2B323CD9-50E3-11D3-9466-00A0C9700498} (Yahoo! Audio Conferencing) - http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/v45/yacscom.cab
    O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) - http://lads.myspace.com/upload/MySpaceUploader1006.cab
    O16 - DPF: {7D1E9C49-BD6A-11D3-87A8-009027A35D73} (Yahoo! Audio UI1) - http://chat.yahoo.com/cab/yacsui.cab
    O16 - DPF: {CAFEEFAC-0014-0002-0003-ABCDEFFEDCBA} (Java Plug-in 1.4.2_03) -
    O16 - DPF: {CAFEEFAC-0015-0000-0003-ABCDEFFEDCBA} (Java Plug-in 1.5.0_03) -
    O16 - DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} (Java Plug-in 1.6.0_01) -
    O16 - DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} (Java Plug-in 1.6.0_02) -
    O16 - DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} (Java Plug-in 1.6.0_03) -
    O16 - DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} (Java Plug-in 1.6.0_05) -
    O16 - DPF: {D18F962A-3722-4B59-B08D-28BB9EB2281E} (PhotosCtrl Class) - http://photos.yahoo.com/ocx/us/yexplorer1_9us.cab
    O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
    O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
    O23 - Service: avast! Antivirus - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashServ.exe
    O23 - Service: avast! Mail Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
    O23 - Service: avast! Web Scanner - ALWIL Software - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
    O23 - Service: LiveShare P2P Server (RoxLiveShare) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\SharedCOM8\RoxLiveShare.exe
    O23 - Service: RoxMediaDB - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\SharedCOM8\RoxMediaDB.exe
    O23 - Service: RoxUpnpRenderer (RoxUPnPRenderer) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\SharedCom\RoxUpnpRenderer.exe
    O23 - Service: RoxUpnpServer - Sonic Solutions - C:\Program Files\Roxio\Easy Media Creator 8\Digital Home\RoxUpnpServer.exe
    O23 - Service: Roxio Hard Drive Watcher (RoxWatch) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\SharedCOM8\RoxWatch.exe
    O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
    O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
    O23 - Service: YPCService - Yahoo! Inc. - C:\WINDOWS\system32\YPCSER~1.EXE

    --
    End of file - 9039 bytes


    Mbam log:

    Malwarebytes' Anti-Malware 1.33
    Database version: 1697
    Windows 5.1.2600 Service Pack 3

    2/4/2009 11:33:21 PM
    mbam-log-2009-02-04 (23-33-21).txt

    Scan type: Full Scan (C:\|)
    Objects scanned: 169624
    Time elapsed: 1 hour(s), 58 minute(s), 16 second(s)

    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 141
    Registry Values Infected: 6
    Registry Data Items Infected: 2
    Folders Infected: 25
    Files Infected: 649

    Memory Processes Infected:
    (No malicious items detected)

    Memory Modules Infected:
    (No malicious items detected)

    Registry Keys Infected:
    HKEY_CLASSES_ROOT\funwebproducts.datacontrol (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\TypeLib\{c8cecde3-1ae1-4c4a-ad82-6d5b00212144} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{17de5e5e-bfe3-4e83-8e1f-8755795359ec} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{1f52a5fa-a705-4415-b975-88503b291728} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{a626cdbd-3d13-4f78-b819-440a28d7e8fc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{25560540-9571-4d7b-9389-0f166788785a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{25560540-9571-4d7b-9389-0f166788785a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\funwebproducts.datacontrol.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\funwebproducts.historykillerscheduler (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\TypeLib\{8ca01f0e-987c-49c3-b852-2f1ac4a7094c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{1093995a-ba37-41d2-836e-091067c4ad17} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{120927bf-1700-43bc-810f-fab92549b390} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{247a115f-06c2-4fb3-967d-2d62d3cf4f0a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{3e53e2cb-86db-4a4a-8bd9-ffeb7a64df82} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{90449521-d834-4703-bb4e-d3aa44042ff8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{991aac62-b100-47ce-8b75-253965244f69} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{bbabdc90-f3d5-4801-863a-ee6ae529862d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{d6ff3684-ad3b-48eb-bbb4-b9e6c5a355c1} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{eb9e5c1c-b1f9-4c2b-be8a-27d6446fdaf8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{0f8ecf4f-3646-4c3a-8881-8e138ffcaf70} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{b813095c-81c0-4e40-aa14-67520372b987} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{c9d7be3e-141a-4c85-8cd6-32461f3df2c7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{cff4ce82-3aa2-451f-9b77-7165605fb835} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\funwebproducts.historykillerscheduler.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\funwebproducts.historyswattercontrolbar (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\funwebproducts.historyswattercontrolbar.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\funwebproducts.htmlmenu (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\TypeLib\{e47caee0-deea-464a-9326-3f2801535a4d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{3e1656ed-f60e-4597-b6aa-b6a58e171495} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{741de825-a6f0-4497-9aa6-8023cf9b0fff} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{98d9753d-d73b-42d5-8c85-4469cda897ab} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{98d9753d-d73b-42d5-8c85-4469cda897ab} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\funwebproducts.htmlmenu.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\funwebproducts.htmlmenu.2 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\funwebproducts.iecookiesmanager (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\funwebproducts.iecookiesmanager.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\funwebproducts.killerobjmanager (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\funwebproducts.killerobjmanager.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\funwebproducts.popswatterbarbutton (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\TypeLib\{8e6f1830-9607-4440-8530-13be7c4b1d14} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{63d0ed2b-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{63d0ed2d-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{63d0ed2c-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{63d0ed2c-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{8e6f1832-9607-4440-8530-13be7c4b1d14} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{a9571378-68a1-443d-b082-284f960c6d17} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\funwebproducts.popswatterbarbutton.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\funwebproducts.popswattersettingscontrol (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\funwebproducts.popswattersettingscontrol.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\mywebsearch.chatsessionplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\TypeLib\{e79dfbc0-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{72ee7f04-15bd-4845-a005-d6711144d86a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{e79dfbc9-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{e79dfbcb-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{e79dfbca-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{e79dfbca-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\mywebsearch.chatsessionplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\mywebsearch.htmlpanel (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\TypeLib\{3e720450-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{3e720451-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{3e720453-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{3e720452-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3e720452-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\mywebsearch.htmlpanel.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\mywebsearch.outlookaddin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{adb01e81-3c79-4272-a0f1-7b2be7a782dc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\mywebsearch.outlookaddin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\mywebsearch.pseudotransparentplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\TypeLib\{7473d290-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{7473d291-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{7473d293-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{7473d295-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{7473d297-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{7473d292-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{7473d294-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7473d294-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{7473d296-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\mywebsearch.pseudotransparentplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\mywebsearchtoolbar.settingsplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\TypeLib\{07b18ea0-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{07b18eaa-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{07b18eac-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{f87d7fb5-9dc5-4c8c-b998-d8dfe02e2978} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{07b18ea1-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{07b18ea9-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{53ced2d0-5e9a-4761-9005-648404e6f7e5} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\mywebsearchtoolbar.settingsplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\mywebsearchtoolbar.toolbarplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\mywebsearchtoolbar.toolbarplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\screensavercontrol.screensaverinstaller (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\TypeLib\{29d67d3c-509a-4544-903f-c8c1b8236554} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{2e3537fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{2e9937fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{938aa51a-996c-4884-98ce-80dd16a5c9da} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\screensavercontrol.screensaverinstaller.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{6e74766c-4d93-4cc0-96d1-47b8e07ff9ca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{cf54be1c-9359-4395-8533-1657cf209cfe} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{de38c398-b328-4f4c-a3ad-1b5e4ed93477} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{e342af55-b78a-4cd0-a2bb-da7f52d9d25e} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Interface\{e342af55-b78a-4cd0-a2bb-da7f52d9d25f} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{00a6faf6-072e-44cf-8957-5838f569a31d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{00a6faf1-072e-44cf-8957-5838f569a31d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{147a976f-eee1-4377-8ea7-4716e4cdd239} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{1E0DE227-5CE4-4ea3-AB0C-8B03E1AA76BC} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{84da4fdf-a1cf-4195-8688-3e961f505983} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\CLSID\{d9fffb27-d62a-4d64-8cec-1ff006528805} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\TypeLib\{0d26bc71-a633-4e71-ad31-eadc3a1b6a3a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Typelib\{d518921a-4a03-425e-9873-b9a71756821e} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CLASSES_ROOT\Typelib\{f42228fb-e84e-479e-b922-fbbd096e792c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{549b5ca7-4a86-11d7-a4df-000874180bb3} (Trojan.Agent) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{100eb1fd-d03e-47fd-81f3-ee91287f9465} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c5428486-50a0-4a02-9d20-520b59a9f9b2} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{c5428486-50a0-4a02-9d20-520b59a9f9b3} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{6fd31ed6-7c94-4bbc-8e95-f927f4d3a949} (Adware.180Solutions) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1f158a1e-a687-4a11-9679-b3ac64b86a1c} (Adware.Seekmo) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59c7fc09-1c83-4648-b3e6-003d2bbc7481} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68af847f-6e91-45dd-9b68-d6a12c30e5d7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9170b96c-28d4-4626-8358-27e6caeef907} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d1a71fa0-ff48-48dd-9b6d-7a13a3e42127} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ddb1968e-ead6-40fd-8dae-ff14757f60c7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f138d901-86f0-4383-99b6-9cdd406036da} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{a7cddcdc-beeb-4685-a062-978f5e07ceee} (Adware.Shopping.Report) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Services\mywebsearchservice (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SYSTEM\ControlSet002\Services\mywebsearchservice (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\mywebsearchservice (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\RunDll32Policy\f3ScrCtr.dll (Adware.MyWay) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Software Notifier (Rogue.Multiple) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWebSearch bar Uninstall (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Outlook\Addins\MyWebSearch.OutlookAddin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Word\Addins\MyWebSearch.OutlookAddin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive (Adware.MyWebSearch) -> Quarantined and deleted successfully.

    Registry Values Infected:
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{07aa283a-43d7-4cbe-a064-32a21112d94d} (Adware.Zango) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\rhcvw6j0e151 (Rogue.AntivirusXP2008) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\lphcrw6j0e151 (Trojan.FakeAlert) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Media\WMSDK\Sources\f3PopularScreensavers (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\Control Panel\Desktop\scrnsave.exe (Hijack.Wallpaper) -> Quarantined and deleted successfully.

    Registry Data Items Infected:
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispBackgroundPage (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Policies\System\NoDispScrSavPage (Hijack.DisplayProperties) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

    Folders Infected:
    C:\Program Files\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Avatar (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Game (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\icons (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Message (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Notifier (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Settings (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\SrchAstt (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\SrchAstt\1.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\FunWebProducts\ScreenSaver (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\FunWebProducts\ScreenSaver\Images (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151 (Rogue.Multiple) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151\Quarantine (Rogue.Multiple) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151\Quarantine\Autorun (Rogue.Multiple) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151\Quarantine\Autorun\HKCU (Rogue.Multiple) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151\Quarantine\Autorun\HKCU\RunOnce (Rogue.Multiple) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151\Quarantine\Autorun\HKLM (Rogue.Multiple) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151\Quarantine\Autorun\HKLM\RunOnce (Rogue.Multiple) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151\Quarantine\Autorun\StartMenuAllUsers (Rogue.Multiple) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151\Quarantine\Autorun\StartMenuCurrentUser (Rogue.Multiple) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151\Quarantine\BrowserObjects (Rogue.Multiple) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Owner\Application Data\rhcvw6j0e151\Quarantine\Packages (Rogue.Multiple) -> Quarantined and deleted successfully.

    Files Infected:
    C:\Program Files\MyWebSearch\bar\1.bin\F3DTACTL.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\F3HISTSW.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\F3HTMLMU.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\F3POPSWT.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\M3MSG.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\M3HTML.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\M3OUTLCN.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\M3SKIN.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\MWSBAR.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\F3SCRCTR.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\F3CJPEG.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\F3HTTPCT.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\F3REPROX.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\MWSOEPLG.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Documents and Settings\Owner\Local Settings\Temp\Saf25D.tmp\WebfettiSetup2.3.50.22.ZKman000.exe (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\Internet Explorer\msimg32.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\F3IMSTUB.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\F3PSSAVR.SCR (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\F3RESTUB.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\F3SCHMON.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\F3WPHOOK.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\M3IDLE.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\M3IMPIPE.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\M3SKPLAY.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\MWSOEMON.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\MWSOESTB.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\NPMYWEBS.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\1DF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\1E2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\330.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3AE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3AF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3B0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3B1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3B2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3B3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3B4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3B5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3B6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3B7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3B8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3B9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3BA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3BB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3BC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3BD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3BE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3BF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3C0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3C1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3C2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3C3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3C4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3C5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3C6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3C7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3C8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3C9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3CA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3CB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3CC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3CD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3CE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3CF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3D0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3D1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3D2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3D3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3D4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3D5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3D6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3D7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3D8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3D9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3DA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3DB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3DC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3DD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3DE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3DF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3E0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3E1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3E2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3E3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3E4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3E5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3E6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3E7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3E8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3E9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3EA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3EB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3EC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3ED.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3EE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3EF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3F0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3F1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3F2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3F3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3F4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3F5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3F6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3F7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3F8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3F9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3FA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3FB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3FC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3FD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3FE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\3FF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\400.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\401.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\402.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\403.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\404.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\405.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\406.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\407.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\408.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\409.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\40A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\40B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\40C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\40D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\40E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\40F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\410.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\411.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\412.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\413.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\414.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\415.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\416.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\417.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\418.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\419.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\41A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\41B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\41C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\41D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\41E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\41F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\420.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\421.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\422.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\423.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\424.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\425.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\426.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\427.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\428.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\429.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\42A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\42B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\42C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\42D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\42E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\42F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\43.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\430.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\431.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\432.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\433.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\434.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\435.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\436.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\437.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\438.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\439.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\43A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\43B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\43C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\43D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\43E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\43F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\440.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\441.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\442.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\443.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\444.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\445.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\446.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\447.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\448.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\449.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\44A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\44B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\44C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\44D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\44E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\44F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\450.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\451.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\452.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\453.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\454.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\455.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\456.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\457.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\458.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\459.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\45A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\45B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\45C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\45D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\45E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\45F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\460.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\461.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\462.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\463.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\464.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\465.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\466.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\467.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\468.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\469.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\46A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\46B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\46C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\46D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\46E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\46F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\47.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\470.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\471.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\472.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\473.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\474.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\475.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\476.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\477.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\478.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\479.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\47A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\47B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\47C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\47D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\47E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\47F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\48.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\480.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\481.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\482.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\483.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\484.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\485.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\486.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\487.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\488.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\489.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\48A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\48B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\48C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\48D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\48E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\48F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\49.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\490.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\491.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\492.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\493.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\494.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\495.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\496.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\497.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\498.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\499.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\49A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\49B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\49C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\49D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\49E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\49F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4A0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4A1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4A2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4A3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4A4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4A5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4A6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4A7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4A8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4A9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4AA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4AB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4AC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4AD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4AE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4AF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4B0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4B1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4B2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4B3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4B4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4B5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4B6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4B7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4B8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4B9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4BA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4BB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4BE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4BF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4C0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4C1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4C2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4C3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4C4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4C5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4C6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4C7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4C9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4CA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4CB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4CC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4CD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4CE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4CF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4D0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4D2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4D3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4D5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4D6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4D7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4D8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4D9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4DA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4DB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4DC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4DD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4DE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4DF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4E0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4E1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4E2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4E3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4E4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4E5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4E6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4E7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4E8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4E9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4EA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4EB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4EC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4ED.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4EE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4EF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4F0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4F1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4F2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4F3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4F4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4F5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4F6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4F7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4F8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4F9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4FA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4FB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4FC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4FD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4FE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\4FF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\50.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\500.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\501.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\502.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\503.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\504.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\505.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\506.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\507.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\508.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\509.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\50A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\50B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\50C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\50D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\50E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\50F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\51.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\510.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\511.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\512.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\513.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\514.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\515.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\516.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\517.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\518.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\519.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\51A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\51B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\51C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\51D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\51E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\51F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\52.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\520.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\521.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\522.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\523.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\524.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\525.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\526.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\527.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\528.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\529.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\52A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\52B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\52C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\52D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\52E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\52F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\53.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\530.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\531.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\532.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\533.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\534.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\535.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\536.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\537.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\538.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\539.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\53A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\53B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\53C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\54.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\55.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\56.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\57.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\58.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\59.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\5A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\5B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\5C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\5D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\5E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\5F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\60.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\61.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\62.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\63.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\64.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\65.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\66.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\67.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\68.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\69.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\6A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\6B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\6C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\6D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\6E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\6F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\70.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\71.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\72.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\73.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\74.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\75.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\76.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\77.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\78.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\79.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\7A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\7B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\7C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\7D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\7E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\7F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\80.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\81.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\82.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\83.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\84.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\85.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\86.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\87.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\88.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\89.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\8A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\8B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\8C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\8D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\8E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\8F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\90.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\91.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\92.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\93.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\94.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\95.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\96.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\97.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\98.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\99.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\9A.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\9B.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\9C.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\9D.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\9E.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\9F.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\A0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\A1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\A2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\A3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\A4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\A5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\A6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\A7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\A8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\A9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\AA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\AB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\AC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\AD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\AE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\AF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\B0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\B1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\B2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\B3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\B4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\B5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\B6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\B7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\B8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\B9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\BA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\BB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\BC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\BD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\BE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\BF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\C0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\C1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\C2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\C3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\C4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\C5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\C6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\C7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\C8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\C9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\CA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\CB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\CC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\CD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\CE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\CF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\D0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\D1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\D2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\D3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\D4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\D5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\D6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\D7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\D8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\D9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\DA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\DB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\DC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\DD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\DE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\DF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\E0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\E1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\E2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\E3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\E4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\E5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\E6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\E7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\E8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\E9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\EA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\EB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\EC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\ED.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\EE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\EF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\F0.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\F1.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\F2.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\F3.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\f3PSSavr.scr (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\F4.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\F5.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\F6.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\F7.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\F8.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\F9.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\FA.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\FB.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\FC.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\FD.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\FE.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\WINDOWS\system32\FF.tmp (Rogue.Agent) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\F3BKGERR.JPG (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\F3SPACER.WMV (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\F3WALLPP.DAT (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\FWPBUDDY.PNG (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\M3FFXTBR.JAR (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\M3FFXTBR.MANIFEST (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\M3HIGHIN.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\M3MEDINT.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\M3NTSTBR.JAR (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\M3NTSTBR.MANIFEST (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\M3PLUGIN.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\M3SLSRCH.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\M3SRCHMN.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\1.bin\MWSSVC.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Avatar\COMMON.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Game\CHECKERS.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Game\CHESS.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Game\REVERSI.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\icons\CM.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\icons\MFC.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\icons\PSS.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\icons\SMILEY.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\icons\WB.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\icons\ZWINKY.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Message\COMMON.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Notifier\COMMON.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Notifier\DOG.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Notifier\FISH.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Notifier\KUNGFU.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Notifier\LIFEGARD.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Notifier\MAID.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Notifier\MAILBOX.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Notifier\OPERA.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Notifier\ROBOT.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Notifier\SEDUCT.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Notifier\SURFER.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
    C:\Program Files\MyWebSearch\bar\Settings\s_pid.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.


    SuperAntispyware log:

    SUPERAntiSpyware Scan Log
    http://www.superantispyware.com

    Generated 04/01/2009 at 04:59 PM

    Application Version : 4.26.1000

    Core Rules Database Version : 3822
    Trace Rules Database Version: 1778

    Scan type : Complete Scan
    Total Scan Time : 04:30:11

    Memory items scanned : 208
    Memory threats detected : 0
    Registry items scanned : 7452
    Registry threats detected : 11
    File items scanned : 109406
    File threats detected : 9

    Adware.Tracking Cookie
    C:\Documents and Settings\Owner\cookies\owner@kontera[2].txt

    Adware.MyWebSearch/FunWebProducts
    HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE
    HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE#NextInstance
    HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE\0000
    HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE\0000#Service
    HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE\0000#Legacy
    HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE\0000#ConfigFlags
    HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE\0000#Class
    HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE\0000#ClassGUID
    HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_MYWEBSEARCHSERVICE\0000#DeviceDesc

    Rogue.Component/Trace
    HKU\S-1-5-21-3075454984-477084745-3252485339-1003\Software\Microsoft\FIAS4051
    HKU\S-1-5-21-3075454984-477084745-3252485339-1003\Software\Microsoft\FIAS4057

    Application.PowerReg Scheduler
    C:\RECYCLER\S-1-5-21-3075454984-477084745-3252485339-1003\DC93.EXE

    Adware.Vundo/Variant
    C:\SYSTEM VOLUME INFORMATION\_RESTORE{70304573-AB33-4072-AA96-4495C42D15E3}\RP272\A0068693.DLL
    C:\SYSTEM VOLUME INFORMATION\_RESTORE{70304573-AB33-4072-AA96-4495C42D15E3}\RP272\A0069796.DLL
    C:\SYSTEM VOLUME INFORMATION\_RESTORE{70304573-AB33-4072-AA96-4495C42D15E3}\RP272\A0069797.DLL
    C:\SYSTEM VOLUME INFORMATION\_RESTORE{70304573-AB33-4072-AA96-4495C42D15E3}\RP272\A0069804.DLL
    C:\SYSTEM VOLUME INFORMATION\_RESTORE{70304573-AB33-4072-AA96-4495C42D15E3}\RP272\A0069806.DLL
    C:\SYSTEM VOLUME INFORMATION\_RESTORE{70304573-AB33-4072-AA96-4495C42D15E3}\RP292\A0072039.DLL

    Adware.Vundo/Variant-81K
    C:\SYSTEM VOLUME INFORMATION\_RESTORE{70304573-AB33-4072-AA96-4495C42D15E3}\RP272\A0069792.DLL
     
  2. 2oldGeek

    2oldGeek Active member

    Joined:
    Jun 16, 2005
    Messages:
    3,658
    Likes Received:
    38
    Trophy Points:
    78
    Hi Klinster,

    MBAM and SAS are two of the best cleaning programs and it looks like they did a bang up job for you….

    Just a little house keeping left. After you do the following you should polish it off by running Disk Cleanup and Disk Defragmenter…..


    Some entries have been positively identified as malicious programs.

    Reboot your computer into safe mode.

    When your computer is starting up, tap the F8 key on your keyboard continuously until you are presented with the Startup Menu or Windows Advanced Options Menu, depending on your version of Windows. Use the arrow keys on your keyboard to choose Safe Mode from the menu and press Enter.

    When you want to get out of Safe Mode, simply shut down and restart your computer.

    Run HijackThis again, and place a check mark next to the following entries.

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customiz...//www.yahoo.com
    (Description: Sends information back to Yahoo.)

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customiz.../search/ie.html
    (Description: Sends information back to Yahoo.)

    O3 - Toolbar: (no name) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - (no file)
    (Description: A blank toolbar entry. Possibly an adware toolbar that was removed by an anti-virus or anti-spyware program.)

    O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
    (Description: Realtek AC97 Audio - Event Monitor. "Spyware" file used surreptitiously to monitor one's actions. It is not a sinister one, like remote control programs, but it is being used by Realtek to gather data about customers )

    O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
    (Description: Viewpoint Manager Service. Related to viewpoint which is usually considered foistware, usually installed with AOL. Link: http://en.wikipedia.org/wiki/Foistware)

    The following are not necessarily spyware/malware, but suggest you place a check mark next to the following entries, as these programs may be taking up system resources.

    O4 - HKLM\..\Run: [TkBellExe] \"C:\Program Files\Common Files\Real\Update_OB\realsched.exe\" –osboot
    (Description: RealPlayer scheduler. Completely unnecessary. Removing this entry will free up a small amount of system resources.)

    O4 - HKLM\..\Run: [SunJavaUpdateSched] \"C:\Program Files\Java\jre6\bin\jusched.exe\"
    (Description: Sun Java update scheduler. Checks for updates. Not necessary. Removing this entry will free up a small amount of system resources.)

    1) Press the "Fix checked" button. Then close HijackThis.
    [​IMG]

    2) Search for and delete the file Alcxmntr.exe
    3) Uninstall Viewpoint from Control Panel -> Add/Remove Programs
    4) Empty your recycle bin.
    5) Run Windows Update and install all critical updates.
    6) Reboot one last time.


    That should take care of it…..

    2oG
     

Share This Page