Tom's Guide | Tom's Hardware | Tom's Games
![]() |
![]() |
![]() |
First Id like to say sorry for maybe posting something that may have been previously posted. Also, thank you all in advance for any help you may supply me with.
Im running windows xp pro sp2 build. I was trying to dl something off of limewire and mistakingly dl'd something I shouldnt have.
On to the issue at hand, Buddypicture(s?) was installed on my computer. My task manager has been compromised and I can no longer access it, My limewire kept launching and I have since uninstalled it till I can adress this issue.
My spysweeper warns me of registry changes and I try to reject the changes but they instantly reappear.
At startup,my Pest patrol finds buddypicture and quarentines it,but I still get no access to my task manager. Also at start up I get a windows error message stating that b.exe has encoutered an error and has to close.
So, I have tried some steps I've come across on the net with no luck. I leave my issue in your capable hands and hope any or all of you can help as Im limited in knowledge when it comes to such intricate details where computers are concerned.
Again, thank you all in advance and Im sorry if this is a repeat.
I like video games :

Please post a Hijack This log so that the files associated with the virus/spyware/hijacker can be identified.
Please download HJTsetup.exe from this link http://www.thespykiller.co.uk/files/HJTsetup.exe to your desktop.
Doubleclick on the HJTsetup.exe icon on your desktop.
By default it will install to C:\Program Files\Hijack This.
Continue to click "next" in the setup dialogue boxes until you get to the "Select Addition Tasks" dialogue.
Put a check by "Create a desktop icon" then click "Next" again.
Continue to follow the rest of the prompts from there.
At the final dialogue box click "Finish" and it will launch Hijack This.
Click on the "Do a system scan and save a logfile" button. It will scan and the log should open in notepad.
Click on "Edit > Select All" then click on "Edit > Copy" to copy the entire contents of the log and post it in this thread.Do not fix anything yet unless you know what you are doing. This is a powerful tool that can crash the computer if used improperly.

Thank you jabuck
Here is the info you requested
Logfile of HijackThis v1.99.1
Scan saved at 5:36:19 PM, on 3/3/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\LEXBCES.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.exe
C:\WINDOWS\Explorer.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Logitech\Easy Synchronization\servicestub.exe
C:\Program Files\Logitech\Easy Synchronization\LogitechEasySync.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.exe
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlservr.exe
C:\WINDOWS\system32\taskmgr.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Media Player\WMPNetwk.exe
C:\Program Files\Logitech\Easy Synchronization\LogitechEasySync.exe
C:\Program Files\CA\eTrust PestPatrol\PPActiveDetection.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\SOUNDMAN.exe
C:\Program Files\Pure Networks\Network Magic\nmsrvc.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAJA.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\Program Files\Pure Networks\Network Magic\nmapp.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
C:\Documents and Settings\Drezon\Desktop\Randoms\HijackThis.exeR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://express.rogers.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?Lin...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?Lin...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?Lin...
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?Lin...
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Rogers Hi-Speed Internet
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [Launch Ai Booster] "C:\Program Files\ASUS\Ai Booster\OverClk.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Easy Synchronization] C:\Program Files\Logitech\Easy Synchronization\LogitechEasySync.exe
O4 - HKLM\..\Run: [Lexmark X6100 Series] "C:\Program Files\Lexmark X6100 Series\lxbfbmgr.exe"
O4 - HKLM\..\Run: [eTrust PestPatrol Active Protection] "C:\Program Files\CA\eTrust PestPatrol\PPActiveDetection.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.exe
O4 - HKLM\..\Run: [Ink Monitor] C:\Program Files\EPSON\Ink Monitor\InkMonitor.exe
O4 - HKLM\..\Run: [EPSON Stylus Photo R340 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAJA.exe /P30 "EPSON Stylus Photo R340 Series" /O6 "USB002" /M "Stylus Photo R340"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [nmapp] "C:\Program Files\Pure Networks\Network Magic\nmapp.exe" -autorun -nosplash
O4 - HKLM\..\RunOnce: [Easy Synchronization] C:\Program Files\Logitech\Easy Synchronization\LogitechEasySync.exe --ports
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /0
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: svchost.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://hispeed.rogers.com
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yah...
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microso...
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} - http://messenger.msn.com/download/M...
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://cdn2.zone.msn.com/binFramewo...
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://zone.msn.com/bingame/popcapl...
O16 - DPF: {EDBE48BE-0150-4BD9-9B01-48559B6EE90A} (CWindowsConnectNow Object) - http://support.dlink.com/references...
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Protocol: pure-go - {4746C79A-2042-4332-8650-48966E44ABA8} - C:\Program Files\Common Files\Pure Networks Shared\puresp3.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Unknown owner - C:\Program Files\Common Files\Logitech\Bluetooth\LBTSERV.exe (file missing)
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.exe
O23 - Service: Logitech Easy Synchronization - Unknown owner - C:\Program Files\Logitech\Easy Synchronization\servicestub.exe
O23 - Service: Pure Networks Net2Go Service (nmraapache) - Unknown owner - C:\Program Files\Pure Networks\Network Magic\WebServer\bin\nmraapache.exe" -k runservice (file missing)
O23 - Service: Pure Networks Network Magic Service (nmservice) - Pure Networks, Inc. - C:\Program Files\Pure Networks\Network Magic\nmsrvc.exeI like video games :

I see one suspicious item but need a closer look at the computer.
Please download Comboscan from this link:
Close all applications and windows.
Double-click on comboscan.exe to run it, and follow the prompts.
When the scan is complete, a text file will open - ComboScan.txt
Copy (Ctrl+A then Ctrl+C) and paste (Ctrl+V) the contents of ComboScan.txt in your next post.
A folder, C:\ComboScan, will also open. In it will be another text file, Supplementary.txt.
Please attach Supplementary.txt to your post.Note: some firewalls may warn that sigcheck.exe is trying to access the internet - please ensure that you allow sigcheck.exe permission to do so.

Thank you once again.
Here is the comboscan txt
ComboScan v20070226.18 run by Drezon on 2007-03-03 at 18:25:50
Computer is in Normal Mode.
----------------------Successfully created restore point.
Performed disk cleanup.
-- HijackThis (run as DrLogfile of HijackThis v1.99.1
Scan saved at 6:26:01 PM, on 3/3/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\LEXBCES.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.exe
C:\WINDOWS\Explorer.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Logitech\Easy Synchronization\servicestub.exe
C:\Program Files\Logitech\Easy Synchronization\LogitechEasySync.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.exe
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlservr.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Media Player\WMPNetwk.exe
C:\Program Files\Logitech\Easy Synchronization\LogitechEasySync.exe
C:\Program Files\CA\eTrust PestPatrol\PPActiveDetection.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\SOUNDMAN.exe
C:\Program Files\Pure Networks\Network Magic\nmsrvc.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAJA.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\Program Files\Pure Networks\Network Magic\nmapp.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
C:\Documents and Settings\Drezon\Desktop\Randoms\comboscan.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\DOCUME~1\Drezon\Desktop\Randoms\Drezon.exeR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://express.rogers.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?Lin...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?Lin...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?Lin...
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?Lin...
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Rogers Hi-Speed Internet
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [Launch Ai Booster] "C:\Program Files\ASUS\Ai Booster\OverClk.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Easy Synchronization] C:\Program Files\Logitech\Easy Synchronization\LogitechEasySync.exe
O4 - HKLM\..\Run: [Lexmark X6100 Series] "C:\Program Files\Lexmark X6100 Series\lxbfbmgr.exe"
O4 - HKLM\..\Run: [eTrust PestPatrol Active Protection] "C:\Program Files\CA\eTrust PestPatrol\PPActiveDetection.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.exe
O4 - HKLM\..\Run: [Ink Monitor] C:\Program Files\EPSON\Ink Monitor\InkMonitor.exe
O4 - HKLM\..\Run: [EPSON Stylus Photo R340 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAJA.exe /P30 "EPSON Stylus Photo R340 Series" /O6 "USB002" /M "Stylus Photo R340"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [nmapp] "C:\Program Files\Pure Networks\Network Magic\nmapp.exe" -autorun -nosplash
O4 - HKLM\..\RunOnce: [Easy Synchronization] C:\Program Files\Logitech\Easy Synchronization\LogitechEasySync.exe --ports
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /0
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.1128.5462\GoogleToolbarNotifier.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Bluetooth.lnk = ?
O4 - Global Startup: svchost.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://hispeed.rogers.com
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yah...
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microso...
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} - http://messenger.msn.com/download/M...
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://cdn2.zone.msn.com/binFramewo...
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://zone.msn.com/bingame/popcapl...
O16 - DPF: {EDBE48BE-0150-4BD9-9B01-48559B6EE90A} (CWindowsConnectNow Object) - http://support.dlink.com/references...
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Protocol: pure-go - {4746C79A-2042-4332-8650-48966E44ABA8} - C:\Program Files\Common Files\Pure Networks Shared\puresp3.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Unknown owner - C:\Program Files\Common Files\Logitech\Bluetooth\LBTSERV.exe (file missing)
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.exe
O23 - Service: Logitech Easy Synchronization - Unknown owner - C:\Program Files\Logitech\Easy Synchronization\servicestub.exe
O23 - Service: Pure Networks Net2Go Service (nmraapache) - Unknown owner - C:\Program Files\Pure Networks\Network Magic\WebServer\bin\nmraapache.exe" -k runservice (file missing)
O23 - Service: Pure Networks Network Magic Service (nmservice) - Pure Networks, Inc. - C:\Program Files\Pure Networks\Network Magic\nmsrvc.exe
-- File Associat-------.bat - batfile - "%1" %*
.chm - chm.file - "C:\WINDOWS\hh.exe" %1
.cmd - cmdfile - "%1" %*
.com - comfile - "%1" %*
.exe - exefile - "%1" %*
.hlp - hlpfile - %SystemRoot%\System32\winhlp32.exe %1
.inf - inffile - %SystemRoot%\System32\NOTEPAD.exe %1
.ini - inifile - %SystemRoot%\System32\NOTEPAD.exe %1
.js - JSFile - %SystemRoot%\System32\WScript.exe "%1" %*
.lnk - lnkfile - {00021401-0000-0000-C000-000000000046}
.pif - piffile - "%1" %*
.reg - regfile - regedit.exe "%1"
.scr - scrfile - "%1" /S
.txt - txtfile - %SystemRoot%\system32\NOTEPAD.exe %1
.vbs - VBSFile - %SystemRoot%\System32\WScript.exe "%1" %*
-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ----------------------3R Afc (PPdus ASPI Shell) - C:\WINDOWS\system32\drivers\afc.sys
3R ALCXWDM (Service for Realtek AC97 Audio (WDM)) - C:\WINDOWS\system32\drivers\ALCXWDM.SYS
1R AmdK8 (AMD Processor Driver) - C:\WINDOWS\system32\drivers\AmdK8.sys
3R Arp1394 (1394 ARP Client Protocol) - C:\WINDOWS\system32\drivers\arp1394.sys
2R ASInsHelp - C:\WINDOWS\system32\drivers\AsInsHelp32.sys
1R AsIO - C:\WINDOWS\system32\drivers\AsIO.sys
2R Aspi32 - C:\WINDOWS\system32\drivers\ASPI32.SYS
3R ati2mtag - C:\WINDOWS\system32\drivers\ati2mtag.sys
1R Avg7Core (AVG7 Kernel) - C:\WINDOWS\system32\drivers\avg7core.sys
1R Avg7RsW (AVG7 Wrap Driver) - C:\WINDOWS\system32\drivers\avg7rsw.sys
1R Avg7RsXP (AVG7 Rezident Driver) - C:\WINDOWS\system32\drivers\avg7rsxp.sys
3S btaudio (Bluetooth Audio Device) - C:\WINDOWS\system32\drivers\btaudio.sys
3S BTDriver (Bluetooth Virtual Communications Driver) - C:\WINDOWS\system32\drivers\btport.sys
3R BTKRNL (Bluetooth Bus Enumerator) - C:\WINDOWS\system32\drivers\btkrnl.sys
3S btwhid - C:\WINDOWS\system32\drivers\btwhid.sys
3S BTWUSB (WIDCOMM USB Bluetooth Driver) - C:\WINDOWS\system32\drivers\btwusb.sys
3S DFUBTUSB (WIDCOMM USB Bluetooth Driver in DFU State) - C:\WINDOWS\system32\drivers\frmupgr.sys
3S DVC (USB DVC Svc) - C:\WINDOWS\system32\drivers\DVC.sys
3R dvd43llh - C:\WINDOWS\system32\drivers\dvd43llh.sys
3R GEARAspiWDM (GEAR CDRom Filter) - C:\WINDOWS\system32\drivers\GEARAspiWDM.sys
3R hidusb (Microsoft HID Class Driver) - C:\WINDOWS\system32\drivers\hidusb.sys
1R kbdhid (Keyboard HID Driver) - C:\WINDOWS\system32\drivers\kbdhid.sys
3S LMouKE (Logitech SetPoint Mouse Filter Driver) - C:\WINDOWS\system32\DRIVERS\LMouKE.Sys (not found)
3R mouhid (Mouse HID Driver) - C:\WINDOWS\system32\drivers\mouhid.sys
3R ms_mpu401 (Microsoft MPU-401 MIDI UART Driver) - C:\WINDOWS\system32\drivers\msmpu401.sys
3S MTDVC2 (Panasonic DVC USB-SERIAL2 Driver for NT Technology) - C:\WINDOWS\system32\drivers\mtdv2ku2.sys
3S MTDVC2_ENUM (Panasonic DVC COM2 Driver for NT Technology) - C:\WINDOWS\system32\drivers\mtdv2ks2.sys
3R MTsensor (ATK0110 ACPI UTILITY) - C:\WINDOWS\system32\drivers\ASACPI.sys
3R NIC1394 (1394 Net Driver) - C:\WINDOWS\system32\drivers\nic1394.sys
0R nvata - C:\WINDOWS\system32\drivers\nvata.sys
3R NVENETFD (NVIDIA nForce Networking Controller Driver) - C:\WINDOWS\system32\drivers\NVENETFD.sys
3R nvnetbus (NVIDIA Network Bus Enumerator) - C:\WINDOWS\system32\drivers\nvnetbus.sys
0R ohci1394 (Texas Instruments OHCI Compliant IEEE 1394 Host Controller) - C:\WINDOWS\system32\drivers\ohci1394.sys
3R Pcouffin (Low level access layer for CD devices) - C:\WINDOWS\system32\drivers\Pcouffin.sys
2R pnarp (Network Magic Device Discovery Driver) - C:\WINDOWS\system32\drivers\pnarp.sys
3S PRISM_A02 (D-Link Wireless 802.11b/g Driver (USB)) - C:\WINDOWS\system32\drivers\PRISMA02.sys
2R purendis (Network Magic Wireless Driver) - C:\WINDOWS\system32\drivers\purendis.sys
3S SONYPVU1 (Sony USB Filter Driver (SONYPVU1)) - C:\WINDOWS\system32\drivers\SONYPVU1.SYS
3R usbccgp (Microsoft USB Generic Parent Driver) - C:\WINDOWS\system32\drivers\usbccgp.sys
3R usbehci (Microsoft USB 2.0 Enhanced Host Controller Miniport Driver) - C:\WINDOWS\system32\drivers\usbehci.sys
3R usbohci (Microsoft USB Open Host Controller Miniport Driver) - C:\WINDOWS\system32\drivers\usbohci.sys
3R usbprint (Microsoft USB PRINTER Class) - C:\WINDOWS\system32\drivers\usbprint.sys
3R usbscan (USB Scanner Driver) - C:\WINDOWS\system32\drivers\usbscan.sys
3S USBSTOR (USB Mass Storage Driver) - C:\WINDOWS\system32\drivers\USBSTOR.SYS
3R vsbus (Virtual Serial Bus Enumerator) - C:\WINDOWS\system32\drivers\vsb.sys
3S vserial (ELTIMA Virtual Serial Ports Driver) - C:\WINDOWS\system32\drivers\vserial.sys
3S WudfPf (Windows Driver Foundation - User-mode Driver Framework Platform Driver) - C:\WINDOWS\system32\drivers\WudfPf.sys
3S WudfRd (Windows Driver Foundation - User-mode Driver Framework Reflector) - C:\WINDOWS\system32\drivers\WudfRd.sys
-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------3S Adobe LM Service - "C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe"
3S aspnet_state (ASP.NET State Service) - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\aspnet_state.exe
2R Ati HotKey Poller - C:\WINDOWS\system32\Ati2evxx.exe
2S ATI Smart - C:\WINDOWS\system32\ati2sgag.exe
2R Avg7Alrt (AVG7 Alert Manager Server) - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
2R Avg7UpdSvc (AVG7 Update Service) - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
3S clr_optimization_v2.0.50727_32 (.NET Runtime Optimization Service v2.0.50727_X86) - C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
3S gusvc (Google Updater Service) - "C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe"
3S I2owstpirksw -
3R iPodService - C:\Program Files\iPod\bin\iPodService.exe
2S LBTServ (Logitech Bluetooth Service) - C:\Program Files\Common Files\Logitech\Bluetooth\LBTSERV.exe
2R LexBceS (LexBce Server) - C:\WINDOWS\system32\LEXBCES.exe
2R Logitech Easy Synchronization - C:\Program Files\Logitech\Easy Synchronization\servicestub.exe
2R MSSQL$MICROSOFTBCM - C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlservr.exe -sMICROSOFTBCM
3S MSSQLServerADHelper - C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqladhlp.exe
3S nmraapache (Pure Networks Net2Go Service) - "C:\Program Files\Pure Networks\Network Magic\WebServer\bin\nmraapache.exe" -k runservice
2R nmservice (Pure Networks Network Magic Service) - "C:\Program Files\Pure Networks\Network Magic\nmsrvc.exe"
3S ose (Office Source Engine) - "C:\Program Files\Common Files\Microsoft Shared\Source Engine\OSE.exe"
3S SQLAgent$MICROSOFTBCM - C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlagent.exe -i MICROSOFTBCM
-- Files created between 2007-02-03 and 20----------2007-03-03 17:14:54 155648 --a------ C:\WINDOWS\b.exe
2007-03-03 15:56:07 0 d-------- C:\Documents and Settings\Administrator\Application Data\AVG7
2007-03-03 15:53:47 0 d-------- C:\Documents and Settings\Administrator\Application Data\Webroot
2007-03-03 01:47:58 786432 --ah----- C:\Documents and Settings\Administrator\NTUSER.DAT
2007-03-02 23:12:13 62464 --a------ C:\WINDOWS\system32\bszip.dll
2007-03-02 23:12:11 175104 --a------ C:\onoes.exe
2007-03-02 23:11:06 0 ---hs---- C:\WINDOWS\system32\tracert.com
2007-03-02 23:11:06 0 ---hs---- C:\WINDOWS\system32\tasklist.com
2007-03-02 23:11:06 0 ---hs---- C:\WINDOWS\system32\taskkill.com
2007-03-02 23:11:06 0 ---hs---- C:\WINDOWS\system32\ping.com
2007-03-02 23:11:06 0 ---hs---- C:\WINDOWS\system32\netstat.com
2007-03-02 23:11:06 0 ---hs---- C:\WINDOWS\system32\cmd.com
2007-03-02 23:11:06 0 d--hs---- C:\Program Files\outlook
2007-03-02 23:11:06 0 d--hs---- C:\Documents and Settings\Drezon\Complete
2007-03-01 20:42:05 0 d-------- C:\Documents and Settings\All Users\Application Data\Adobe
2007-02-26 13:27:30 0 d-------- C:\ATI
2007-02-25 17:58:14 25792 --a------ C:\WINDOWS\system32\drivers\pnarp.sys
2007-02-25 17:58:07 26944 --a------ C:\WINDOWS\system32\drivers\purendis.sys
-- Find3M Re-----------2007-03-03 16:10:21 16206402 -r-hs---- C:\AVG7DB_F.DAT
2007-03-03 16:10:09 0 d-------- C:\Documents and Settings\Drezon\Application Data\AVG7
2007-03-03 00:39:27 0 d-------- C:\Program Files\Registry Mechanic<REGIST~1>
2007-03-02 23:17:57 12243953 --a------ C:\AVG7QT.DAT
2007-03-01 20:41:05 0 d-------- C:\Documents and Settings\Drezon\Application Data\AdobeUM
2007-02-26 22:06:31 0 d-------- C:\Documents and Settings\Drezon\Application Data\CopyToDvd<COPYTO~1>
2007-02-26 13:31:39 0 d-------- C:\Program Files\ATI Technologies<ATITEC~1>
2007-02-26 13:28:49 0 d--h----- C:\Program Files\InstallShield Installation Information<INSTAL~1>
2007-02-25 17:58:01 0 d-------- C:\Program Files\Common Files\Pure Networks Shared<PURENE~1>
2007-02-02 18:34:00 520192 -----n--- C:\WINDOWS\system32\ati2sgag.exe
2007-02-02 12:17:00 307200 --a------ C:\WINDOWS\system32\atiiiexx.dll
2007-02-02 12:04:44 307200 --a------ C:\WINDOWS\system32\ATIDEMGX.dll
2007-02-02 12:03:43 264704 --a------ C:\WINDOWS\system32\ati2dvag.dll
2007-02-02 11:57:08 118784 --a------ C:\WINDOWS\system32\atipdlxx.dll
2007-02-02 11:56:56 110592 --a------ C:\WINDOWS\system32\Oemdspif.dll
2007-02-02 11:56:48 26112 --a------ C:\WINDOWS\system32\Ati2mdxx.exe
2007-02-02 11:56:41 42496 --a------ C:\WINDOWS\system32\ati2edxx.dll
2007-02-02 11:56:29 110592 --a------ C:\WINDOWS\system32\ati2evxx.dll
2007-02-02 11:55:08 446464 --a------ C:\WINDOWS\system32\ati2evxx.exe
2007-02-02 11:54:20 53248 --a------ C:\WINDOWS\system32\ATIDDC.DLL
2007-02-02 11:46:45 2827968 --a------ C:\WINDOWS\system32\ati3duag.dll
2007-02-02 11:40:29 1272960 --a------ C:\WINDOWS\system32\ativvaxx.dll
2007-02-02 11:40:11 3107788 --a------ C:\WINDOWS\system32\ativvaxx.dat
2007-02-02 11:27:17 241664 --a------ C:\WINDOWS\system32\atikvmag.dll
2007-02-02 11:25:54 17408 --a------ C:\WINDOWS\system32\atitvo32.dll
2007-02-02 11:20:28 348160 --a------ C:\WINDOWS\system32\ati2cqag.dll
2007-02-02 11:19:49 5312512 --a------ C:\WINDOWS\system32\atioglxx.dll
2007-02-02 02:58:56 0 d-------- C:\Program Files\Google
2007-01-30 08:21:34 128813 --a------ C:\WINDOWS\system32\atiicdxx.dat
2007-01-29 00:58:06 60416 -----n--- C:\WINDOWS\system32\tzchange.exe
2007-01-12 09:27:42 232960 --a------ C:\WINDOWS\system32\webcheck.dll
2007-01-12 09:27:42 51712 -----n--- C:\WINDOWS\system32\msfeedsbs.dll<MSFEED~1.DLL>
2007-01-12 09:27:42 458752 -----n--- C:\WINDOWS\system32\msfeeds.dll
2007-01-12 09:27:42 6054400 --a------ C:\WINDOWS\system32\ieframe.dll
2007-01-09 20:01:36 0 d-------- C:\Documents and Settings\Drezon\Application Data\Sun
2007-01-09 01:53:23 0 d-------- C:\Program Files\Java
2007-01-08 19:04:54 105984 --a------ C:\WINDOWS\system32\url.dll
2007-01-08 19:04:08 102400 --a------ C:\WINDOWS\system32\occache.dll
2007-01-08 19:02:04 266752 --a------ C:\WINDOWS\system32\iertutil.dll
2007-01-08 19:02:04 44544 --a------ C:\WINDOWS\system32\iernonce.dll
2007-01-08 19:02:02 384000 --a------ C:\WINDOWS\system32\iedkcs32.dll
2007-01-08 19:02:02 383488 -----n--- C:\WINDOWS\system32\ieapfltr.dll
2007-01-08 19:02:02 161792 --a------ C:\WINDOWS\system32\ieakui.dll
2007-01-08 19:02:02 230400 --a------ C:\WINDOWS\system32\ieaksie.dll
2007-01-08 19:02:02 153088 --a------ C:\WINDOWS\system32\ieakeng.dll
2007-01-08 19:01:14 17408 --a------ C:\WINDOWS\system32\corpol.dll
2007-01-08 19:00:48 124928 --a------ C:\WINDOWS\system32\advpack.dll
2007-01-08 18:08:14 56832 --a------ C:\WINDOWS\system32\ie4uinit.exe
2007-01-08 18:08:10 13824 --a------ C:\WINDOWS\system32\ieudinit.exe
2006-12-19 13:52:18 134656 --a------ C:\WINDOWS\system32\shsvcs.dll
2006-12-19 10:16:47 333824 --a------ C:\WINDOWS\system32\wiaservc.dll
-- Registry -----------
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"MSMSGS"="\"C:\\Program Files\\Messenger\\msmsgs.exe\" /background"
"SpySweeper"="\"C:\\Program Files\\Webroot\\Spy Sweeper\\SpySweeper.exe\" /0"
"ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe"
"WMPNSCFG"="C:\\Program Files\\Windows Media Player\\WMPNSCFG.exe"
"swg"="C:\\Program Files\\Google\\GoogleToolbarNotifier\\1.2.1128.5462\\GoogleToolbarNotifier.exe"[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"Launch Ai Booster"="\"C:\\Program Files\\ASUS\\Ai Booster\\OverClk.exe\""
"NeroFilterCheck"="C:\\WINDOWS\\system32\\NeroCheck.exe"
"Easy Synchronization"="C:\\Program Files\\Logitech\\Easy Synchronization\\LogitechEasySync.exe"
"Lexmark X6100 Series"="\"C:\\Program Files\\Lexmark X6100 Series\\lxbfbmgr.exe\""
"eTrust PestPatrol Active Protection"="\"C:\\Program Files\\CA\\eTrust PestPatrol\\PPActiveDetection.exe\""
"AVG7_CC"="C:\\PROGRA~1\\Grisoft\\AVG7\\avgcc.exe /STARTUP"
"AVG7_EMC"="C:\\PROGRA~1\\Grisoft\\AVG7\\avgemc.exe"
"iTunesHelper"="C:\\Program Files\\iTunes\\iTunesHelper.exe"
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"SoundMan"="SOUNDMAN.EXE"
"Ink Monitor"="C:\\Program Files\\EPSON\\Ink Monitor\\InkMonitor.exe"
"EPSON Stylus Photo R340 Series"="C:\\WINDOWS\\System32\\spool\\DRIVERS\\W32X86\\3\\E_FATIAJA.exe /P30 \"EPSON Stylus Photo R340 Series\" /O6 \"USB002\" /M \"Stylus Photo R340\""
"SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre1.5.0_10\\bin\\jusched.exe\""
"nmapp"="\"C:\\Program Files\\Pure Networks\\Network Magic\\nmapp.exe\" -autorun -nosplash"[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\runonce]
"Easy Synchronization"="C:\\Program Files\\Logitech\\Easy Synchronization\\LogitechEasySync.exe --ports"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{FE24CD78-7C63-465D-8787-4EDF7FC79895}"="ShellExecuteHook class"[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
"WPDShServiceObj"="{AAA288BA-9A4C-45B0-95D7-94D524869DB5}"[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"AVG7_Run"="C:\\PROGRA~1\\Grisoft\\AVG7\\avgw.exe /RUNONCE"[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\run]
"AVG7_Run"="C:\\PROGRA~1\\Grisoft\\AVG7\\avgw.exe /RUNONCE"[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost]
HTTPFilter REG_MULTI_SZ HTTPFilter\0\0
LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0
NetworkService REG_MULTI_SZ DnsCache\0\0
DcomLaunch REG_MULTI_SZ DcomLaunch\0TermService\0\0
rpcss REG_MULTI_SZ RpcSs\0\0
imgsvc REG_MULTI_SZ StiSvc\0\0
termsvcs REG_MULTI_SZ TermService\0\0
WudfServiceGroup REG_MULTI_SZ WUDFSvc\0\0
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{54c03bda-d74e-11da-9ac6-000f3dde0ddd}]
Shell\AutoRun\command G:\setupSNK.exe[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{7bef6377-d649-11da-a7e1-806d6172696f}]
Shell\AutoRun\command D:\ASUSACPI.exe
-- End of ComboScan: finished at 2007-03-03 at 18:2-
and here is the supplementary txt
ComboScan v20070226.18 run by Drezon on 2007-03-03 at 18:25:50
Supplementary logfile - please post this as an attachment with your post.
------------------------ System Informa------
Microsoft Windows XP Professional (build 2600) SP 2.0
Architecture: X86; Language: EnglishCPU 0: AMD Athlon(tm) 64 X2 Dual Core Processor 4400+
CPU 1: AMD Athlon(tm) 64 X2 Dual Core Processor 4400+
Percentage of Memory in Use: 49%
Physical Memory (total/avail): 1023.48 MiB / 515.49 MiB
Pagefile Memory (total/avail): 2460.58 MiB / 2016.01 MiB
Virtual Memory (total/avail): 2047.88 MiB / 1994.22 MiBA: is Removable (Unformatted)
C: is Fixed (NTFS) - 232.88 GiB total, 89.23 GiB free.
D: is CDROM (No Media)
E: is CDROM (No Media)
-- Security Ce---------AUOptions is scheduled to auto-install.
Windows Internal Firewall is enabled.FirstRunDisabled is set.
AntivirusOverride is set.-- Environment Varia---
ALLUSERSPROFILE=C:\Documents and Settings\All Users
APPDATA=C:\Documents and Settings\Drezon\Application Data
CLIENTNAME=Console
CommonProgramFiles=C:\Program Files\Common Files
COMPUTERNAME=MASEANDPOINT
ComSpec=C:\WINDOWS\system32\cmd.exe
FP_NO_HOST_CHECK=NO
HOMEDRIVE=C:
HOMEPATH=\Documents and Settings\Drezon
LOGONSERVER=\\MASEANDPOINT
NUMBER_OF_PROCESSORS=2
OS=Windows_NT
Path=C:\WINDOWS\system32;C:\WINDOWS;C:\WINDOWS\System32\Wbem;C:\Program Files\Microsoft Office\OFFICE11\Business Contact Manager\IM;C:\Program Files\Microsoft SQL Server\80\Tools\Binn\;C:\Program Files\Microsoft Office\OFFICE11\Business Contact Manager\
PATHEXT=.COM;.EXE;.BAT;.CMD;.VBS;.VBE;.JS;.JSE;.WSF;.WSH
PROCESSOR_ARCHITECTURE=x86
PROCESSOR_IDENTIFIER=x86 Family 15 Model 35 Stepping 2, AuthenticAMD
PROCESSOR_LEVEL=15
PROCESSOR_REVISION=2302
ProgramFiles=C:\Program Files
PROMPT=$P$G
SESSIONNAME=Console
SystemDrive=C:
SystemRoot=C:\WINDOWS
TEMP=C:\DOCUME~1\Drezon\LOCALS~1\Temp
TMP=C:\DOCUME~1\Drezon\LOCALS~1\Temp
USERDOMAIN=MASEANDPOINT
USERNAME=Drezon
USERPROFILE=C:\Documents and Settings\Drezon
windir=C:\WINDOWS
-- User Prof-----------Drezon [I](admin)[/I]
Administrator [I](admin)[/I]
-- Add/Remove Prog-------> rundll32.exe setupapi.dll,InstallHinfSection DefaultUninstall 132 C:\WINDOWS\INF\PCHealth.inf
1Click DVD Copy 4.1 --> "C:\Program Files\LG Software Innovations\1Click DVD Copy 4.1\setup\uninst.exe"
Ad-aware 6 Professional --> C:\PROGRA~1\Lavasoft\AD-AWA~1\UNWISE.exe C:\PROGRA~1\Lavasoft\AD-AWA~1\INSTALL.LOG
Adobe Flash Player 9 ActiveX --> C:\WINDOWS\system32\Macromed\Flash\FlashUtil9b.exe -uninstallDelete
Adobe Photoshop CS --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{EFB21DE7-8C19-4A88-BB28-A766E16493BC}\setup.exe" -l0x9
Adobe Reader 7.0.9 --> MsiExec.exe /I{AC76BA86-7AD7-1033-7B44-A70900000002}
Ai Booster --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{74BF0A46-DF67-4D86-B038-BF0E51871B66}\Setup.exe" -l0x9
ArcSoft PhotoImpression 5 --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{D433ABC3-0CD8-4BB0-B6A9-84501B4B47B7}\Setup.exe" -l0x9
Athlon 64 Processor Driver --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{C151CE54-E7EA-4804-854B-F515368B0798}\setup.exe" -l0x9
ATI - Software Uninstall Utility --> C:\Program Files\ATI Technologies\UninstallAll\AtiCimUn.exe
ATI Catalyst Control Center --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\09\01\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{055EE59D-217B-43A7-ABFF-507B966405D8}\setup.exe" -l0x1000
ATI Display Driver --> rundll32 C:\WINDOWS\system32\atiiiexx.dll,_InfEngUnInstallINFFile_RunDLL@16 -force_restart -flags:0x2010001 -inf_class:DISPLAY -clean
ATI HYDRAVISION --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{083F79E4-6FE9-46FB-A6C6-4F8862742947}\setup.exe"
AVG Anti-Virus 7.0 --> C:\Program Files\Grisoft\AVG7\setup.exe /UNINSTALL
Business Contact Manager for Outlook 2003 --> MsiExec.exe /I{66563AD8-637B-407F-BCA7-0233A16891AB}
CA eTrust PestPatrol --> "C:\Program Files\CA\eTrust PestPatrol\ppv5instutil.exe" /shutdownapps /uninstall
Cool & Quiet --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{1ADE1AA0-7F82-4BB1-B1BD-727DE438057B}\Setup.exe" -l0x9
CopyToDVD --> "C:\Program Files\vso\CopyToDVD\unins000.exe"
DVD-CLONER V3.00 Build 880 --> "C:\Program Files\Dvd-cloner\unins000.exe"
DVD43 v3.9.0 --> "C:\Program Files\dvd43\unins000.exe"
DVDFab Decrypter 3.0.5.0 --> "C:\Program Files\DVDFab Decrypter 3\unins000.exe"
EPSON Print CD --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FF477885-5EA8-40D0-ADF3-D4C1B86FAEA4}\setup.exe" -l0x9 -SYSTEM
EPSON Printer Software --> C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\EPUPDATE.exe /R
EPSON SPR340 User's Guide --> C:\Program Files\epson\guide\spr340_le\uninstall.exe
Google Toolbar for Internet Explorer --> regsvr32 /u /s "c:\program files\google\googletoolbar3.dll"
HijackThis 1.99.1 --> C:\Documents and Settings\Drezon\Local Settings\Temporary Internet Files\Content.IE5\487E7MSH\HijackThis.exe /uninstall
Hotfix for Windows Media Format SDK (KB902344) --> "C:\WINDOWS\$NtUninstallKB902344$\spuninst\spuninst.exe"
Ink Monitor --> C:\Program Files\EPSON\Ink Monitor\InkMonitor.exe -U
iPod for Windows 2005-03-23 --> C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{44A537A5-859C-43A6-8285-C0668142A090} /l1033
iPod for Windows 2006-03-23 --> C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{2070F79D-46BC-4EEA-8F02-9B4DCABAE7CB} /l1033
iTunes --> C:\Program Files\Common Files\InstallShield\Driver\8\Intel 32\IDriver.exe /M{3CB41017-F5CA-4C56-934C-ED02156251E6}
J2SE Runtime Environment 5.0 Update 10 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150100}
J2SE Runtime Environment 5.0 Update 8 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150080}
J2SE Runtime Environment 5.0 Update 9 --> MsiExec.exe /I{3248F0A8-6813-11D6-A77B-00B0D0150090}
Lexmark X6100 Series --> C:\WINDOWS\system32\spool\drivers\w32x86\3\LXBFUN5C.exe -dLexmark X6100 Series
Microsoft Compression Client Pack 1.0 for Windows XP --> "C:\WINDOWS\$NtUninstallMSCompPackV1$\spuninst\spuninst.exe"
Microsoft Office Professional Edition 2003 --> MsiExec.exe /I{91110409-6000-11D3-8CFE-0150048383C9}
Microsoft User-Mode Driver Framework Feature Pack 1.0 --> "C:\WINDOWS\$NtUninstallWudf01000$\spuninst\spuninst.exe"
Microsoft Visual C++ 2005 Redistributable --> MsiExec.exe /X{A49F249F-0C91-497F-86DF-B2585E8E76B7}
Mobile Phone Suite Easy Synchronization --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\PROFES~1\RunTime\0701\Intel32\Ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{AC134D03-97F1-45B9-B32A-52E885AFA895}\setup.exe" -l0x9
MSN Messenger 7.5 --> MsiExec.exe /I{CEB3A11A-03EA-11DA-BFBD-00065BBDC0B5}
Nero OEM --> C:\Program Files\Ahead\nero\uninstall\UNNERO.exe /UNINSTALL
Network Magic --> MsiExec.exe /X{CC964932-75AE-4C79-8EBF-865C799C3D35}
NVIDIA Drivers --> C:\WINDOWS\system32\NVUNINST.exe UninstallGUI
QuickTime --> C:\WINDOWS\unvise32qt.exe C:\WINDOWS\system32\QuickTime\Uninstall.log
Realtek AC'97 Audio --> RunDll32 C:\PROGRA~1\COMMON~1\INSTAL~1\engine\6\INTEL3~1\ctor.dll,LaunchSetup "C:\Program Files\InstallShield Installation Information\{FB08F381-6533-4108-B7DD-039E11FBC27E}\setup.exe" REMOVE
Registry Mechanic 5.0 --> "C:\Program Files\Registry Mechanic\unins000.exe"
Spy Sweeper --> "C:\Program Files\Webroot\Spy Sweeper\unins000.exe"
USB Driver for Panasonic DVC --> C:\PROGRA~1\COMMON~1\INSTAL~1\Driver\7\INTEL3~1\IDriver.exe /M{6304CCF6-3343-4DA5-96B6-84B3A644B93B} /l1033
WIDCOMM Bluetooth Software --> MsiExec.exe /X{3F4EC965-28EF-45C3-B063-04B25D4E9679}
Windows Driver Package - Pure Networks, Inc. Network Magic Device Discovery Driver (02/08/2007 4.1.7039.0) --> rundll32.exe C:\PROGRA~1\DIFX\B7A8D76A63BBE060C656AA54D656BF7D1C31D4C3\DIFxAppA.dll, DIFxARPUninstallDriverPackage C:\WINDOWS\system32\DRVSTORE\pnarp_FACF9A084BDF0845CE91C7F87C9E1A569DD2DC5E\pnarp.inf
Windows Driver Package - Pure Networks, Inc. Network Magic Wireless Driver (02/08/2007 4.1.7039.0) --> rundll32.exe C:\PROGRA~1\DIFX\B7A8D76A63BBE060C656AA54D656BF7D1C31D4C3\DIFxAppA.dll, DIFxARPUninstallDriverPackage C:\WINDOWS\system32\DRVSTORE\purendis_B44C44A0F3F9608E3241CD86C035F4AF1CE54D81\purendis.inf
Windows Media Connect --> "C:\WINDOWS\$NtUninstallWMCSetup$\spuninst\spuninst.exe"
Windows Media Format 11 runtime --> "C:\WINDOWS\$NtUninstallWMFDist11$\spuninst\spuninst.exe"
Yahoo! Install Manager --> C:\WINDOWS\system32\regsvr32 /u C:\WINDOWS\DOWNLO~1\YINSTH~1.DLL
Yahoo! Toolbar for Internet Explorer --> C:\PROGRA~1\Yahoo!\Common\unyt.exe
-- End of ComboScan: finished at 2007-03-03 at 18:2-I like video games :

Please download Brute Force Uninstaller
Unzip it to it’s own folder (c:\BFU)Double click BFU.exe to run it. When the "Brute Force Uninstaller" window appears, click the "globe" icon in the top right hand corner.
In the "Download BFU script..." window, copy and paste the following and then click OK:http://metallica.geekstogo.com/alcanshorty.bfu
You should see the file alcanshorty.bfu appear in the bfu folder next to BFU.exe.
Reboot into safe mode.
Open the bfu folder and double click BFU.exe.
To select the scriptfile to execute, first double click the folder icon to the left of the globe.
You should now see a window containing alcanshorty.bfu, simply double click it.
Finally, click the Execute button to begin.When the tool has finished running, you will get a "BFU" window with the message "Completed script execution", click on OK.
Then post a new comboscan please.

Here is the post bfu combo scan
ComboScan v20070226.18 run by Drezon on 2007-03-03 at 20:06:22
Computer is in Normal Mode.
------------------------ HijackThis (run as Dr
Logfile of HijackThis v1.99.1
Scan saved at 8:06:27 PM, on 3/3/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\LEXBCES.exe
C:\WINDOWS\system32\LEXPPS.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Logitech\Easy Synchronization\servicestub.exe
C:\Program Files\Logitech\Easy Synchronization\LogitechEasySync.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.exe
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTBCM\Binn\sqlservr.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Pure Networks\Network Magic\nmsrvc.exe
C:\Program Files\Logitech\Easy Synchronization\LogitechEasySync.exe
C:\Program Files\CA\eTrust PestPatrol\PPActiveDetection.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\SOUNDMAN.exe
C:\Program Files\EPSON\Ink Monitor\InkMonitor.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAJA.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\Program Files\Pure Networks\Network Magic\nmapp.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Media Player\WMPNSCFG.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\Drezon\Desktop\Randoms\comboscan.exe
C:\DOCUME~1\Drezon\Desktop\Randoms\Drezon.exeR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://express.rogers.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?Lin...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?Lin...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?Lin...
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?Lin...
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Rogers Hi-Speed Internet
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [Launch Ai Booster] "C:\Program Files\ASUS\Ai Booster\OverClk.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [Easy Synchronization] C:\Program Files\Logitech\Easy Synchronization\LogitechEasySync.exe
O4 - HKLM\..\Run: [Lexmark X6100 Series] "C:\Program Files\Lexmark X6100 Series\lxbfbmgr.exe"
O4 - HKLM\..\Run: [eTrust PestPatrol Active Protection] "C:\Program Files\CA\eTrust PestPatrol\PPActiveDetection.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.exe
O4 - HKLM\..\Run: [Ink Monitor] C:\Program Files\EPSON\Ink Monitor\InkMonitor.exe
O4 - HKLM\..\Run: [EPSON Stylus Photo R340 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIAJA.exe /P30 "EPSON Stylus Photo R340 Series" /O6 "USB002" /M "Stylus Photo R340"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [nmapp] "C:\Program Files\Pure Networks\Network Magic\nmapp.exe" -autorun -nosplash
O4 - HKLM\..\RunOnce: [Easy Synchronization] C:\Program Files\Logitech\Easy Synchronization\LogitechEasySync.exe --ports
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /0
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [WMPNSCFG] C:\Program Files\Windows Media Player\WMPNSCFG.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Bluetooth.lnk = ?
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-12650 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://hispeed.rogers.com
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yah...
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microso...
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} - http://messenger.msn.com/download/M...
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://cdn2.zone.msn.com/binFramewo...
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://zone.msn.com/bingame/popcapl...
O16 - DPF: {EDBE48BE-0150-4BD9-9B01-48559B6EE90A} (CWindowsConnectNow Object) - http://support.dlink.com/references...
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O18 - Protocol: pure-go - {4746C79A-2042-4332-8650-48966E44ABA8} - C:\Program Files\Common Files\Pure Networks Shared\puresp3.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Logitech Bluetooth Service (LBTServ) - Unknown owner - C:\Program Files\Common Files\Logitech\Bluetooth\LBTSERV.exe (file missing)
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.exe
O23 - Service: Logitech Easy Synchronization - Unknown owner - C:\Program Files\Logitech\Easy Synchronization\servicestub.exe
O23 - Service: Pure Networks Net2Go Service (nmraapache) - Unknown owner - C:\Program Files\Pure Networks\Network Magic\WebServer\bin\nmraapache.exe" -k runservice (file missing)
O23 - Service: Pure Networks Network Magic Service (nmservice) - Pure Networks, Inc. - C:\Program Files\Pure Networks\Network Magic\nmsrvc.exe
-- Files created between 2007-02-03 and 20----------2007-03-03 19:57:12 0 d-------- C:\bintheredunthat<BINTHE~1>
2007-03-03 19:51:07 155648 --a------ C:\WINDOWS\b.exe
2007-03-03 19:44:53 0 d-------- C:\bfu
2007-03-03 19:43:28 0 d-------- C:\New Folder<NEWFOL~1>
2007-03-03 15:56:07 0 d-------- C:\Documents and Settings\Administrator\Application Data\AVG7
2007-03-03 15:53:47 0 d-------- C:\Documents and Settings\Administrator\Application Data\Webroot
2007-03-03 01:47:58 786432 --ah----- C:\Documents and Settings\Administrator\NTUSER.DAT
2007-03-02 23:12:13 62464 --a------ C:\WINDOWS\system32\bszip.dll
2007-03-02 23:11:06 0 d--hs---- C:\Documents and Settings\Drezon\Complete
2007-03-01 20:42:05 0 d-------- C:\Documents and Settings\All Users\Application Data\Adobe
2007-02-26 13:27:30 0 d-------- C:\ATI
2007-02-25 17:58:14 25792 --a------ C:\WINDOWS\system32\drivers\pnarp.sys
2007-02-25 17:58:07 26944 --a------ C:\WINDOWS\system32\drivers\purendis.sys
-- Find3M Re-----------2007-03-03 19:41:24 66048 --a------ C:\BFU.exe
2007-03-03 19:26:02 0 d-------- C:\Documents and Settings\Drezon\Application Data\AVG7
2007-03-03 16:10:21 16206402 -r-hs---- C:\AVG7DB_F.DAT
2007-03-03 00:39:27 0 d-------- C:\Program Files\Registry Mechanic<REGIST~1>
2007-03-02 23:17:57 12243953 --a------ C:\AVG7QT.DAT
2007-03-01 20:41:05 0 d-------- C:\Documents and Settings\Drezon\Application Data\AdobeUM
2007-02-26 22:06:31 0 d-------- C:\Documents and Settings\Drezon\Application Data\CopyToDvd<COPYTO~1>
2007-02-26 13:31:39 0 d-------- C:\Program Files\ATI Technologies<ATITEC~1>
2007-02-26 13:28:49 0 d--h----- C:\Program Files\InstallShield Installation Information<INSTAL~1>
2007-02-25 17:58:01 0 d-------- C:\Program Files\Common Files\Pure Networks Shared<PURENE~1>
2007-02-02 18:34:00 520192 -----n--- C:\WINDOWS\system32\ati2sgag.exe
2007-02-02 12:17:00 307200 --a------ C:\WINDOWS\system32\atiiiexx.dll
2007-02-02 12:04:44 307200 --a------ C:\WINDOWS\system32\ATIDEMGX.dll
2007-02-02 12:03:43 264704 --a------ C:\WINDOWS\system32\ati2dvag.dll
2007-02-02 11:57:08 118784 --a------ C:\WINDOWS\system32\atipdlxx.dll
2007-02-02 11:56:56 110592 --a------ C:\WINDOWS\system32\Oemdspif.dll
2007-02-02 11:56:48 26112 --a------ C:\WINDOWS\system32\Ati2mdxx.exe
2007-02-02 11:56:41 42496 --a------ C:\WINDOWS\system32\ati2edxx.dll
2007-02-02 11:56:29 110592 --a------ C:\WINDOWS\system32\ati2evxx.dll
2007-02-02 11:55:08 446464 --a------ C:\WINDOWS\system32\ati2evxx.exe
2007-02-02 11:54:20 53248 --a------ C:\WINDOWS\system32\ATIDDC.DLL
2007-02-02 11:46:45 2827968 --a------ C:\WINDOWS\system32\ati3duag.dll
2007-02-02 11:40:29 1272960 --a------ C:\WINDOWS\system32\ativvaxx.dll
2007-02-02 11:40:11 3107788 --a------ C:\WINDOWS\system32\ativvaxx.dat
2007-02-02 11:27:17 241664 --a------ C:\WINDOWS\system32\atikvmag.dll
2007-02-02 11:25:54 17408 --a------ C:\WINDOWS\system32\atitvo32.dll
2007-02-02 11:20:28 348160 --a------ C:\WINDOWS\system32\ati2cqag.dll
2007-02-02 11:19:49 5312512 --a------ C:\WINDOWS\system32\atioglxx.dll
2007-02-02 02:58:56 0 d-------- C:\Program Files\Google
2007-01-30 08:21:34 128813 --a------ C:\WINDOWS\system32\atiicdxx.dat
2007-01-29 00:58:06 60416 -----n--- C:\WINDOWS\system32\tzchange.exe
2007-01-12 09:27:42 232960 --a------ C:\WINDOWS\system32\webcheck.dll
2007-01-12 09:27:42 51712 -----n--- C:\WINDOWS\system32\msfeedsbs.dll<MSFEED~1.DLL>
2007-01-12 09:27:42 458752 -----n--- C:\WINDOWS\system32\msfeeds.dll
2007-01-12 09:27:42 6054400 --a------ C:\WINDOWS\system32\ieframe.dll
2007-01-09 20:01:36 0 d-------- C:\Documents and Settings\Drezon\Application Data\Sun
2007-01-09 01:53:23 0 d-------- C:\Program Files\Java
2007-01-08 19:04:54 105984 --a------ C:\WINDOWS\system32\url.dll
2007-01-08 19:04:08 102400 --a------ C:\WINDOWS\system32\occache.dll
2007-01-08 19:02:04 266752 --a------ C:\WINDOWS\system32\iertutil.dll
2007-01-08 19:02:04 44544 --a------ C:\WINDOWS\system32\iernonce.dll
2007-01-08 19:02:02 384000 --a------ C:\WINDOWS\system32\iedkcs32.dll
2007-01-08 19:02:02 383488 -----n--- C:\WINDOWS\system32\ieapfltr.dll
2007-01-08 19:02:02 161792 --a------ C:\WINDOWS\system32\ieakui.dll
2007-01-08 19:02:02 230400 --a------ C:\WINDOWS\system32\ieaksie.dll
2007-01-08 19:02:02 153088 --a------ C:\WINDOWS\system32\ieakeng.dll
2007-01-08 19:01:14 17408 --a------ C:\WINDOWS\system32\corpol.dll
2007-01-08 19:00:48 124928 --a------ C:\WINDOWS\system32\advpack.dll
2007-01-08 18:08:14 56832 --a------ C:\WINDOWS\system32\ie4uinit.exe
2007-01-08 18:08:10 13824 --a------ C:\WINDOWS\system32\ieudinit.exe
2006-12-19 13:52:18 134656 --a------ C:\WINDOWS\system32\shsvcs.dll
2006-12-19 10:16:47 333824 --a------ C:\WINDOWS\system32\wiaservc.dll
-- Registry -----------
[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"MSMSGS"="\"C:\\Program Files\\Messenger\\msmsgs.exe\" /background"
"SpySweeper"="\"C:\\Program Files\\Webroot\\Spy Sweeper\\SpySweeper.exe\" /0"
"ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe"
"WMPNSCFG"="C:\\Program Files\\Windows Media Player\\WMPNSCFG.exe"[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"Launch Ai Booster"="\"C:\\Program Files\\ASUS\\Ai Booster\\OverClk.exe\""
"NeroFilterCheck"="C:\\WINDOWS\\system32\\NeroCheck.exe"
"Easy Synchronization"="C:\\Program Files\\Logitech\\Easy Synchronization\\LogitechEasySync.exe"
"Lexmark X6100 Series"="\"C:\\Program Files\\Lexmark X6100 Series\\lxbfbmgr.exe\""
"eTrust PestPatrol Active Protection"="\"C:\\Program Files\\CA\\eTrust PestPatrol\\PPActiveDetection.exe\""
"AVG7_CC"="C:\\PROGRA~1\\Grisoft\\AVG7\\avgcc.exe /STARTUP"
"AVG7_EMC"="C:\\PROGRA~1\\Grisoft\\AVG7\\avgemc.exe"
"iTunesHelper"="C:\\Program Files\\iTunes\\iTunesHelper.exe"
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"SoundMan"="SOUNDMAN.EXE"
"Ink Monitor"="C:\\Program Files\\EPSON\\Ink Monitor\\InkMonitor.exe"
"EPSON Stylus Photo R340 Series"="C:\\WINDOWS\\System32\\spool\\DRIVERS\\W32X86\\3\\E_FATIAJA.exe /P30 \"EPSON Stylus Photo R340 Series\" /O6 \"USB002\" /M \"Stylus Photo R340\""
"SunJavaUpdateSched"="\"C:\\Program Files\\Java\\jre1.5.0_10\\bin\\jusched.exe\""
"nmapp"="\"C:\\Program Files\\Pure Networks\\Network Magic\\nmapp.exe\" -autorun -nosplash"[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\runonce]
"Easy Synchronization"="C:\\Program Files\\Logitech\\Easy Synchronization\\LogitechEasySync.exe --ports"
[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{FE24CD78-7C63-465D-8787-4EDF7FC79895}"="ShellExecuteHook class"[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\shellserviceobjectdelayload]
"WPDShServiceObj"="{AAA288BA-9A4C-45B0-95D7-94D524869DB5}"[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"AVG7_Run"="C:\\PROGRA~1\\Grisoft\\AVG7\\avgw.exe /RUNONCE"[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\run]
"AVG7_Run"="C:\\PROGRA~1\\Grisoft\\AVG7\\avgw.exe /RUNONCE"[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost]
HTTPFilter REG_MULTI_SZ HTTPFilter\0\0
LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0
NetworkService REG_MULTI_SZ DnsCache\0\0
DcomLaunch REG_MULTI_SZ DcomLaunch\0TermService\0\0
rpcss REG_MULTI_SZ RpcSs\0\0
imgsvc REG_MULTI_SZ StiSvc\0\0
termsvcs REG_MULTI_SZ TermService\0\0
WudfServiceGroup REG_MULTI_SZ WUDFSvc\0\0
[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{54c03bda-d74e-11da-9ac6-000f3dde0ddd}]
Shell\AutoRun\command G:\setupSNK.exe[HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\MountPoints2\{7bef6377-d649-11da-a7e1-806d6172696f}]
Shell\AutoRun\command D:\ASUSACPI.exe
-- End of ComboScan: finished at 2007-03-03 at 20:0-I like video games :

Please download ATF-Cleaner to your desktop from this link
http://www.atribune.org/content/view/19/2/ We will need it later in safe modeDownload and install AVG Anti-Spyware We will need this later in safe mode
Be sure to update AVG Anti- Spyware
Next, please reboot your computer in Safe Mode by doing the following :
Restart your computer
After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually;
Instead of Windows loading as normal, a menu with options should appear;
Select the first option, to run Windows in Safe Mode, then press "Enter".
Choose your usual account.
Navigate to and delete these files if found:
C:\WINDOWS\b.exe
C:\WINDOWS\system32\bszip.dll
Run ATF-Cleaner from safe mode.Double-click ATF-Cleaner.exe to run the program.
Under Main choose: Select All
Click the Empty Selected button.Empty the restore folder. Go to start>control panel>system>system restore tab>check the box beside "turn off system restore>apply (takes a minute)>ok. Go back and uncheck the box to turn system restore back on>apply>ok.
In Safe Mode, run AVG Anti-spyware and click on the Scanner tab at the top. Click the "Settings" tab and then change the recommended action to Quarantine and click Automatically generate report after every scan. Click back to the "Scan" tab and then click on Complete System Scan. This scan can take quite a while to run, so be prepared.
AVG Anti-Spyware will list any infections found on the left hand side. When the scan has finished, it will automatically set the recommended action. Click the Apply all actions button. AVG Anti-Spyware will display "All actions have been applied" on the right hand side.
Click on "Save Report", then "Save Report As". This will create a text file. Make sure you know where to find this file again (like on the Desktop).
Post the AVG report please.

Jabuck,please accept my sincerest thanks for you help and generousity.
Two things I should mention before I post the avg scan log.
1. when I tried to turn my system restore back ON, I was told that I am unable to do so in safe mode, I continued with the rest of your directions
2. While avg was quarantining the threats it found,it informed me that 1 of them was imbedded in an entire ( cant remember what ) and asked if I would like to quarantine the entire ( cant remember what) and I clicked ok. There were 740 infected items, and 3 threats found.I'll also mention that I no longer have isssues getting into my task manager,and the b.exe error no longer surfaces,I would like to continue with any more steps you may have had in mind though,thank you so much again.
And here is the avg logAVG Anti-Spyware - Scan Report
+ Created at: 9:10:04 PM 3/3/2007+ Scan result:
C:\Documents and Settings\Drezon\Application Data\Webroot\Spy Sweeper\Backup\Startup\svchost.exe.bak -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\123 Video Converter 3.5.9.9.8.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\3DMark 2005.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\AOLsoft IconExtractor 1.1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Accessbar 1.1.3.213.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Acoustica Spin It Again 1.1.0.30.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Adobe Reader SpeedUp v.1.34.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Advanced MP3 WMA Recorder v.6.5.6.21.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Alcohol 120% 1.9.5.4327.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Alive WMA MP3 Recorder 2.6.3.6.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\And Round Again 1.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Anti Tracks 4.1.4.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\AnyDVD 6.0.1.1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Arc DVD Copy v.1.3.2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Arial Audio Converter 2.3.26.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Ashampoo Burning Studio 6.20.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Atani v.3.8.11.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Atomix Virtual DJ 4.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Aurora Media Workshop 3.3.16.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Autonamer Pro 1.0.25.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Avast Virus Cleaner 1.0.209.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\BackOnTrack 2.7.18.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Bandwidth Controller v0.31b.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\BlindWrite 5.2.6.139.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Blue Market Pro v.1.0.2363.32312.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\BookCAT 8.10.01.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Bookkeeping for REALTORS 1.1.22.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Business Card Designer Pro v.4.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\CD DVD catalog 2.3.0.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\CaptureXT Screen Capture 2.2.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\DevTest Professional v.7.5.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Dr.Web 4.33.2.08280.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\ERStudio v.7.1.0.4512.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Easyimage Batch 1.0.4.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Elite Utilities 9.0.0 Pro Platinum.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\EmEditor Pro 6.00.1 Final.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\ExtractNow v4.28.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\FastStone Capture v3.3.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\FileRescuePlus 4.0.0.15.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\FileZilla 2.2.27.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Flash Speed 200%.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Foxit PDF Editor 1.4 Build 1531.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Goldfish Aquarium V2.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Hard Drive Test Pilot v2.6.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Honestech TVR 2.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Honestech VHS to DVD 2.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\InsidePro PasswordsPro v2.2.1.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Internet Download Manager 5.05.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Internet Tv And Radio Player V3.3.0.1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\IsoBuster v1.9.1.1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\JPEG Enhancer v1.60.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Kaspersky Anti-Virus 6.0.1.380.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\KeyCreator v5.5.1.0454.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Magix Audio Cleaning Lab Deluxe v10.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Maxthon 2.0.0 Build 6363.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Meesoft Commander v 1.29.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\MestReC v4.9.9.6.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\MidiRunner v1.39.0.1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\MilkShape 3D 1.7.7a.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Mp3 Doctor v5.11.048.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\NETanalyser 4.06.170.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Nero Portable 7.2.0.3b for USB.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Net Nanny 5.1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\NewsReactor v.1.0.9044.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Panda Antivirus 2007.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Photolightning v4.3.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Real Estate Calculator Suite 4.4.01.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Registry Mechanic 4.0.0.100.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Registry Speedup 1.00.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Remote Installer 1.3.78.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\SciWriter 2.0.21.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Shadow Security Scanner 7.85.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Smart Install Maker v2.40.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Snappy Software Snappy Fax v3.68.1.1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Softplug Adventus Df Vsti V1.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Spyware Doctor 4.0.0.2603.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Stardock IconPackager v.3.10 Enhanced.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Super Cleaner 2.80.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\System Safety Monitor 2.1.0.575 beta.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\TVPaintAnimation 1.0c.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\ThunderStor 2.1.7.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Universal Shield v4.1.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Web Cache Illuminator v4.8.4.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Web OfficeView 3.81.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\WebcamXP Pro 2006 v2.37.144.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Webroot Spysweeper 4.5.9.7.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\WinXMedia DVD Ripper v4.02.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Winamp 5.25 Build 812 Beta.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Winutilities V4.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Xion Audio Player v1.0.58.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\ZD Soft Video Recorder v1.0.3.0.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\Zend Studio 3.5.1Client.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\Limewire dl's\_\xzxzxzxzxzxz.exe -> Dropper.VB.lu : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\My Documents\programs\1 Click DVD Copy 4.1.0.5 plus cracked.zip/crack.exe -> Trojan.Delf.li : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\'Final Armada [EUR][UMDFull][Multi5][PSP][www.emwreloaded.com].zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\'Final Armada [EUR][UMDRip][Multi5][PSP][www.emwreloaded.com].zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\'Heroes Of Might And Magic Coleccion [PC][DVD][Spanish-English][www.emwreloaded.com].zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\'Test Drive Unlimited [PC][DVD][Multi][www.emwreloaded.com].zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\- (torrential.kicks-ass.org).zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\- Select one -.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\- mininova org - Microsoft Windows Vista Ultimate 32Bit FRENCH DVD-iND.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\02.28.07 Resident Evil 4 - HATRED.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\147 Funny videos Collection 2007.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\2006 dvdrip.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\A set of Paris Hilton Pictures in a sexy calendar format 3630139 TPB.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\About CNET Networks.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Advanced search.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Air America Radio - The Rachel Maddow Show 03 01 07.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\All RSS feeds.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\All Software.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\American Idol S06E16 Top 20 Results HDTV XviD-FQM [eztv].zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Are You Smarter Than A 5th Grader S01E02 PDTV XviD-SORNY [eztv].zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Are You Smarter Than A 5th Grader S01E03 PDTV XViD-YesTV [eztv].zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Armin van Buuren - A State of Trance 290 [01-03-2007][TMB] mp3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\AutoCad 2007 Incl Crack.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Avril Lavigne 34 lovely Wallpapers (1024x768) { www IPTorrents com }.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\BEAUTIFUL WOMEN AND A FEW HOT CARS { www IPTorrents com }.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Batman - The Dark Knight Returns Comic - 200 Pages.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Beyond.the.Break.S02E07.DSR.XviD-2SD - (torrential.kicks-ass.org).zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Boredoms - Super Roots [1993].zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Brain Sync - Brain Power - [www slotorrent net].zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Browse categories.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Bullet Proof Abs Second Edition.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\CNET TV.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Casino Royale French-Dvdrip Www Torrentofile Com-SDX-.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Collection King of Blues - Vol 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Collection King of the Blues - Vol 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Compare Prices.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Copyright policy.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Digital Blasphemy - (2007) High Resolution Wallpapers - [www slotorrent net].zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\EA Games Generic Multi Keygen v140-FFF.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Extra server power....zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Fallout Boy - Discography - Incl. NEW Album.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Free MP3s.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Geek.To.Freak.With.Dennis.Rodman.S01E03.HDTV.XviD - (torrential.kicks-ass.org).zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Getting Things Done The Art of Stress-Free Productivity by David Allen pdf.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Ghost Rider TS XViD mVs { www IPTorrents com }.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Help Center.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Home Power Magazine Solar wind and renewable energy systems Issue 117 { www IPTorrents com }.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\How To Develop A Super Power Memory.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IEWatch Professional 4.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IFA Database 01.00.01.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IFAebook 7.7.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IFH - Income From Home Toolbar 4.5.85.0 (for IE 5+).zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IFS Lab Fractal Generator 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IFTA Reporting Software 3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IFocus 1.01.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IGA 3.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IGC SE 1.01.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IGES Import for AutoCAD 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IGI 2 Covert Strike 1.1 - 1.2 patch (UK) .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IGI 2 Covert Strike 1.1 patch (UK) .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IGI 2 Covert Strike Safemode patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IGI 2 Covert Strike - Area 27 map .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IGI 2 Covert Strike - Dockside multiplayer map .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IGI 2 Covert Strike - Libyan Village map .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IGI 2 Covert Strike - Winterland map .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IGI 2 Covert Strike Single-player demo .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IGSuite Integrated Groupware Suite 3.2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IHRA Drag Racing 1.01 patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IHRA Drag Racing 1.02 patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\II WorkSchedule 5.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IIS 4.0 Cumulative Security Update MS01-044.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IIS 5.0 Cumulative Security Update MS01-044.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IIS Anti-leech Sniffer Dog 3.16.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IIS Metabase Explorer 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IIS Security Audit 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IIS5 File-Fragment Reading via Malformed HTR Request Vulnerability Patch (MS01-004).zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IIS5 Malformed URL Service Failure Vulnerability Patch MS01-014 (3101).zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IIS5 Malformed WebDAV Request Vulnerability Patch MS01-016 (30801).zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IISGate 4.71.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IISGuard 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IISKeeper 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IISxpress 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\II_Calendar 2.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IL-2 Sturmovik 1.0.3a patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IL-2 Sturmovik 1.0.4a patch (supplemental) .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IL-2 Sturmovik 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IL-2 Sturmovik 1.1a patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IL-2 Sturmovik 1.2 patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IL-2 Sturmovik 1.2ov patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IL-2 Sturmovik Forgotten Battles Rebirth of Honor demo .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IL-2 Sturmovik The Forgotten Battles 1.0 Patch 1.22.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IL-2 Sturmovik The Forgotten Battles 1.21 Patch 1.22.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IL-2 Sturmovik demo .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ILook 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ILoveVideoz Toolbar 4.5.119.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IM Cocktails 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IM Commander 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IM Hangman 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IM Lock Home Edition 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IM Lock Professional 2006 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IM Sniffer 0.8.42.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IM Speak 3.7.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IM+ Bluetooth for Symbian Series 60 2nd Edition 1.06.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IM+ for BlackBerry 4.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IM+ for Palm 2.5.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IM+ for Pocket PC 4.21.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IM+ for Sony Ericsson P900P910P910i 3.57.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IM+ for Symbian Series 60 2nd Edition 5.50.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IM+ for Symbian Series 60 3rd Edition 5.56.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IM+ for Symbian Series 80 1.41.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IM2 Instant Messenger 1.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IM2001 1.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMAN (Invoice Manager) 2.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMAN- Invoice Manager 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMAP Notify 1.0.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMArchive 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMBoss Google Talk Sniffer Monitor 1.0.09.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMBoss MSN Sniffer Monitor 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMC Messenger 1.0.4.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMCaster E-Marketer for ICQ 10.6.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMCaster UIN Manager 2.2.1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMCourier 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMDb Photo Trawler 1.4.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMDetect MSN Monitor Pro 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMDict (Chinese) 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMG-Bar 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMI Contacts 2EA 1.31.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMI GAL Exporter 3.05.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMI Mailbox Statistics 2.08.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMInspector Personal Edition 1.2 build 46.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMMonitor AIM Spy 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMMonitor Enterprise 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMMonitor ICQ Spy 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMMonitor MSN Spy 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMMonitor Yahoo Messenger Spy 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMP-Instant Message Personalities 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMPS License Plate Recognition 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMS Telephone On-Hold Player 3.05.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMSpellchecker XP 1.53.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMSurfSentinel 2005.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMTiger 0.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMVITE 1.8.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMail Server 7.06.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMbot 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMnapper 0.9.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMsecure 1.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMsecure Pro 1.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMterrupt Home Version 2.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IMterrupt Professional 2006 2.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\INAJ The Easy-To-Use Address Book 5.2.8.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IeUnit 2.1.238.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\If You Believe You Can .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Iggle Pop 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Ignition 2.10.0.52.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Ignition demo .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\IgtEditor 1.22.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Ikojo Toolbar 4.5.109.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Ilixis Image Console 2.0.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Illuminati 1.05.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Illumination 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Illumination 110 Lighting Console 1.02.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Illumination 3.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Illustrix Butterfly Dream (Pocket) 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Illustrix Cat Dream (Palm) 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Illustrix Dog Dream 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImGiant Instant Messenger 2.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImGiant Lite 3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImRe 2.0.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImTranslator Plugin for Internet Explorer 3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Accounting Premier 9.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Accounting Standard 9.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image ActiveX SDK 10.66.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Albums (For Microsoft Access) 3.0.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Analyzer 1.26.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Anvil 2.0.5.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Armada 1.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Assistant 2.83.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Broadway 5.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Browser Arctic 5.0 build 7.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Chest 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Comparator 1.03.01.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Comparer 2.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Composer 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Compressor 5.0.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Constructor 1.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Converter .exe 2.0.77.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Converter .exe 3 Scripting Edition 3.0.36u.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Converter 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Converter Pro 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Converter Utility 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Converter and Resizer Utility 1.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Converter pro 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Cut 1.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Doctor 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Downloader 1.0a.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Downloader 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Downloader 3.31.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Editor 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Effects 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Explorer Pro 7.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Exporter (PDF Edition) 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Filename Management System 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Format Studio 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Frame 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Genius Professional 3.0.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Grabber 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Icon Converter 1.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image InDepth 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Info Tookit 3.0.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Info Toolkit 1.5.1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Master 2000 1.0.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Merger .exe 1.0.0.19.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Operation 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Optimization SDK 4.1.9.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Optimizer 4.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Processing Wizard 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Quick Saver 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image ReSizer 1.0.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Recognition Web Test Plugin 4.301.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Repainter 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Resizer Pro 2006 2.6.6.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image RollNow 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Scroller 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Server SDK 4.1.8.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Sizer 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Sizer 1.03.17.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Studio Pro 5.2.60220.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Styler 1 build 250.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Surfer 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Thumbnailer and Converter 2.41.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image To Icon 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image To Icon Convertor 3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image To PDF 3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image To PDF COMSDK 3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image To PDF COMSDK Unlimited License 3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image To PDF Command Line 3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image To PDF OCR Converter (PDF E-Book Maker) 1.7.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image To PDF(PDF E-Book Maker) 1.7.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Tricks 2.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Vault 1.01.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Video Machine 3.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Viewer 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Viewer CP ActiveX Control 4.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Viewer CP Pro ActiveX Control 1.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Viewer In Depth 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Voyager 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image Watermarks 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image for DOS 1.98.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image for Windows 1.64.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image to PDF 1.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image to PDF Command Line Tool 1.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image to PDF Dynamic Link Library 1.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image-Puzzle 1.25.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image2PDF 1.0.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image2PDF Command Line 3.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image2SWF for Macintosh 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image2SWF for Windows 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Image2db 2.0.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageArchivist 3.85.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageAssemble.exe 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageBadger 4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageBeagle 4.1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageBox 1.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageBuddy 3.0.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageButton.net 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageCD Catalog 2.7 build 140706.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageCaster 2.0.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageConvert 1.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageConverter 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageConverter Plus 6.3.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageConvertor 1.1.0328.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageCrush 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageCycler 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageDIG 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageDV 1.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageDiff 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageDock 5.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageDupeless 1.6.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageEdit 1.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageEffects 1.8.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageEvents 1.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageEvents X 1.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageExpo 3.1.16.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageExtractor 2003.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageFans 1.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageForge Gold 4.01.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageForge Pro 3.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageFox 2.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageGear Enterprise 12.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageGear Professional 13.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageGlue 5.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageGrab for Office 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageGrabDummy 2.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageIT 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageIngester 1.6.7.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageIsle 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageKeep Express 1.2.9c.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageKlebor 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageMatics StillMotion Creator 1.7a.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageMixer CD DVD Label Maker 2.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImagePDF Creator 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImagePlacer 1.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImagePlus 1.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImagePlus 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImagePlus 2.1.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageRaptor 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageRecall 3.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageReducer 2004.7.1 build 157.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageResiZor 2.1.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageResiZor 2.14 build 203.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageRing 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageSalsa 1.8.9.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageShak QuickShot 1.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageSite Pro 1.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageSorter 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageSpy 2.0.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageStore 1.0 SP2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageSwitch 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageTasks 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageToASCII 1.1.0.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageToMp3 1.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageViewer ActiveX Control 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageViewer Pro 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageViewerPlus 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageWalker 2.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageWell 2.1 build 227.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageWiz Free 2.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageWorx 1.1.2135.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImageX 3.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imagemap Applet Builder 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imagen 2.4.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imagero 1.91.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imagery 1.9.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imagery 3D 0.1.4.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Images Generator 8.0.16.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Images In Context 1.6.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Images of Arizona 2006.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Images of Mars Screensaver - Volume 1 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Images of Mars Screensaver - Volume 2 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Images of Naples Florida Screen Saver 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Images of New York .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Images of Sedona 2006.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Images of the Grand Canyon 2006.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imagetrix 5.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imagicon 1.8.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imagination Image Map Editor 5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imagine 0.9.7.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImagineIT Toolbar 1.04.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imaging Express 1.4.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imagistik 3.0.18.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imagistik Calendar Builder 1.0 1.1.2398.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imagistik Image Driver Lite 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imagistik Pictures 1.0.2359.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imagistik Print Preview and Edit 3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imagistik Scan 2.0.2016.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imail Zip Antivirus 4.2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imation SuperDisk USB Drivers for Macintosh 3.2 (12211999).zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imazer 1.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imazine the Tools Bevel SE 1.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imesh Manager 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Img2CAD 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImgConverter 1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImgConverter 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImgResizer 2.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImgResizer Pro 1.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\ImgX Controls 6.3.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imhotext 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Immersion TouchWare Gaming 1.0.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Immortal Cities Children of the Nile v1.1 patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Immortal Cities Children of the Nile v1.2 patch .zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Immune War 2.1.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Imoel-cms 0.1.5.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Settings\Drezon\Complete\Impact ColorFax Lite 7.02.zip/Setup.exe -> Worm.VB.dw : Cleaned with backup (quarantined).
C:\Documents and Set

It is recommended by most help forums that you uninstall LimeWire and this is a good example why you would want to. There are other programs that are better and are not loaded why spyware.
Looks like two folder were heavily infected. You should open AVG-AntiSpyware> show quarantined> select all> finally remove.
Then tomorrow afternoon go through the cleanup procedure again and post a new avg report at that time.
Your java is out of date and could have cause part of the problem.
Download the latest version of http://java.sun.com/javase/downloads/index.jsp
Scroll down to where it says "The J2SE Runtime Environment (JRE) allows end-users to run Java applications".
Click the "Download" button to the right.
Check the box that says: "Accept License Agreement". The page will refresh.
Click on the link to download Windows Offline Installation with or without Multi-language and save to your desktop.
Close any programs you may have running - especially your web browser.
Go to Start > Control Panel double-click on Add/Remove programs and remove all older versions of Java. Check any item with Java Runtime Environment (JRE or J2SE) in the name. It should have the "coffee cup" icon next to it.
Click the Remove or Change/Remove button. Repeat as many times as necessary to remove each Java versions.
Reboot your computer once all Java components are removed
. Then from your desktop double-click on jre-1_6_0-windowsi586-p.exe to install the newest version.
You should consider adding "Spywareblaster" to your arsenol of antispyware tools, just do a google search for spywareblaster, download it,install it, and update it. Its free and runs in the background, so you don't actually run it, and re-writes malicious script before it can install on your computer. Look for updates weekly as there is no auto-update on the free version.

I have a couple of general questions for you in regards to what you just reccomended.
Please reffer me to a better program to dl with,as I do a lot of downloading.
Also,you directed me to run another avg anti spyware scan again tomorrow,should I do that in safe mode,or am I done with the safe mode boot ups?Again, thank you so much for all your help.
I like video games :

Run AVG AntiSpyware from safe mode.
I don't use p2p's but Phex and Frostwire are supposed to be spyware free.

jabuck
Here is a list of programs that I currently have protecting my computer.
Avg antivirus 7.o
Ad-aware 6.0
Spysweeper 3.5
Pest patrol
And now Spyware blaster.
If you wouldnt mind maybe reffering me to better/newer programs I would appreciate it,and once again thank you so much for all the help.
Here is todays avg antispyware log,scanned in safe mode. Please let me know if there is anything more that you may have found that needs to be adressed. Thank you once again. Cheers
AVG Anti-Spyware - Scan Report
+ Created at: 4:33:08 PM 3/4/2007+ Scan result:
Nothing found.
::Report end
I like video games :

If avg 7.0 is the free version you need to update to the 7.5 version. Just download the newer version> go to add/remove programs and uninstall the older version> instll the new version on your desktop> update it.
If the avg icon in system try is greyed out it is not updated.
I would uninstall pest patrol as you have enough antispyware and they also can conflict.
Be sure your java is updated as soon as possible.
If your computer is operating ok you should be in good shape.
Glad we could help.

![]() |
![]() |
![]() |

This post is quite old and has been locked from receiving new replies. Please create a new posting instead.
| Ads by Google |