Travel Fans
Go Back   Computer Juice Computer Software Virus, Spyware & Security

Register

 Default 

Sqmdata.sqm - PopUps, Background changes, virus?




Reply
 
Thread Tools
  #31  
Old 27th Jan 2008, 20:22
Moderator
Posts: 7,557
 
Open FindAWF

Press 2 then Enter when the window loads.

A text file will open called: files.txt

Copy the file paths in the code box above into the notepad that opens under the line like in the attachment I posted.

Close the .txt file and click 'Yes' to save the changes.

It will create another log to post here.
__________________


  #32  
Old 27th Jan 2008, 21:48
Full Member
Posts: 76
 
is it this log?



Find AWF report by noahdfear ©2006
Version 1.40

The current date is: Sun 01/27/2008
The current time is: 18:03:29.53


bak folders found
~~~~~~~~~~~


Directory of C:\HP\KBD\BAK

02/11/2003 07:02 PM 61,440 KBD.EXE
1 File(s) 61,440 bytes

Directory of C:\PROGRA~1\AIM\BAK

08/05/2005 02:08 PM 67,160 aim.exe
1 File(s) 67,160 bytes

Directory of C:\PROGRA~1\ITUNES\BAK

12/20/2005 07:54 PM 278,528 iTunesHelper.exe
1 File(s) 278,528 bytes

Directory of C:\PROGRA~1\MESSEN~1\BAK

0 File(s) 0 bytes

Directory of C:\PROGRA~1\MSNMES~1\BAK

0 File(s) 0 bytes

Directory of C:\PROGRA~1\QUICKT~1\BAK

06/26/2006 06:13 PM 155,648 qttask.exe
1 File(s) 155,648 bytes

Directory of C:\WINDOWS\CREATOR\BAK

12/17/2003 10:31 PM 118,784 Remind_XP.exe
1 File(s) 118,784 bytes

Directory of C:\WINDOWS\SMINST\BAK

04/14/2004 07:43 PM 233,472 RECGUARD.EXE
1 File(s) 233,472 bytes

Directory of C:\WINDOWS\SYSTEM\BAK

05/07/1998 03:04 PM 52,736 hpsysdrv.exe
1 File(s) 52,736 bytes

Directory of C:\WINDOWS\SYSTEM32\BAK

08/04/2004 11:00 AM 15,360 ctfmon.exe
06/07/2004 05:42 PM 659,456 hphmon06.exe
10/16/2002 03:57 PM 81,920 ps2.exe
3 File(s) 756,736 bytes

Directory of C:\PROGRA~1\COMMON~1\SYMANT~1\BAK

08/13/2004 12:17 PM 58,488 ccApp.exe
1 File(s) 58,488 bytes

Directory of C:\PROGRA~1\HP\{AAC4F~1\BAK

06/07/2004 05:53 PM 49,152 hphupd06.exe
1 File(s) 49,152 bytes

Directory of C:\PROGRA~1\COMMON~1\REAL\UPDATE~1\BAK

08/07/2004 01:03 PM 180,269 realsched.exe
1 File(s) 180,269 bytes

Directory of C:\PROGRA~1\JAVA\J2RE14~1.2_0\BIN\BAK

08/07/2004 11:36 AM 32,881 jusched.exe
1 File(s) 32,881 bytes

Directory of C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\BAK

03/04/2004 07:46 AM 172,032 hpztsb10.exe
1 File(s) 172,032 bytes


Duplicate files of bak directory contents
~~~~~~~~~~~~~~~~~~~~~~~

61440 Feb 11 2003 "C:\hp\KBD\bak\KBD.EXE"
67160 Dec 8 2004 "C:\Program Files\AIM\aim.exe"
67160 Aug 5 2005 "C:\Program Files\AIM\bak\aim.exe"
286720 Apr 21 2004 "C:\Program Files\iTunes\iTunesHelper.exe1168563073"
278528 Dec 20 2005 "C:\Program Files\iTunes\bak\iTunesHelper.exe"
155648 Jun 26 2006 "C:\Program Files\QuickTime\bak\qttask.exe"
118784 Dec 17 2003 "C:\WINDOWS\CREATOR\Remind_XP.exe"
118784 Dec 17 2003 "C:\WINDOWS\CREATOR\bak\Remind_XP.exe"
233472 Apr 14 2004 "C:\WINDOWS\SMINST\bak\RECGUARD.EXE"
52736 May 7 1998 "C:\WINDOWS\system\bak\hpsysdrv.exe"
15360 Aug 4 2004 "C:\WINDOWS\system32\ctfmon.exe"
15360 Aug 4 2004 "C:\WINDOWS\system32\bak\ctfmon.exe"
659456 Jun 7 2004 "C:\WINDOWS\system32\bak\hphmon06.exe"
81920 Oct 16 2002 "C:\WINDOWS\system32\ps2.EXE"
81920 Oct 16 2002 "C:\hp\drivers\keyboard\PS2.EXE"
81920 Oct 16 2002 "C:\WINDOWS\system32\bak\ps2.exe"
48752 Oct 4 2005 "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
58488 Aug 13 2004 "C:\Program Files\Common Files\Symantec Shared\bak\ccApp.exe"
49152 Jun 7 2004 "C:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\bak\hphupd06.exe"
180269 Aug 7 2004 "C:\Program Files\Common Files\Real\Update_OB\realsched.exe1168563073"
180269 Aug 7 2004 "C:\Program Files\Common Files\Real\Update_OB\bak\realsched.exe"
32881 Aug 7 2004 "C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe"
36975 Jun 3 2005 "C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe"
83608 Mar 14 2007 "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
132496 Jul 12 2007 "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
32881 Aug 7 2004 "C:\Program Files\Java\j2re1.4.2_03\bin\bak\jusched.exe"
172032 Mar 4 2004 "C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb10.exe"
172032 Mar 4 2004 "C:\WINDOWS\system32\spool\drivers\w32x86\3\bak\hpztsb10.exe"


end of report
  #33  
Old 27th Jan 2008, 22:16
Moderator
Posts: 7,557
 
Thats the same log as before. I need a new one from these instructions.


Double-click the FindAWF icon once again

If a Security Alert shows, allow the program to run.
As instructed, press any key to continue.
Use the following option: From the keyboard Press 2 then Enter to restore files from bak folders



A text file opens called: files.txt
Click below the line and paste the following list of files to be restored then close the notepad:




Code:
  "C:\hp\KBD\bak\KBD.EXE"
"C:\Program Files\AIM\bak\aim.exe"
"C:\Program Files\iTunes\bak\iTunesHelper.exe"
"C:\Program Files\QuickTime\bak\qttask.exe"
"C:\WINDOWS\CREATOR\bak\Remind_XP.exe"
"C:\WINDOWS\SMINST\bak\RECGUARD.EXE"
"C:\WINDOWS\system\bak\hpsysdrv.exe"
"C:\WINDOWS\system32\bak\ctfmon.exe"
"C:\WINDOWS\system32\bak\hphmon06.exe"
"C:\WINDOWS\system32\bak\ps2.exe"
"C:\Program Files\Common Files\Symantec Shared\bak\ccApp.exe"
"C:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\bak\hphupd06.exe"
"C:\Program Files\Common Files\Real\Update_OB\bak\realsched.exe"
"C:\Program Files\Java\j2re1.4.2_03\bin\bak\jusched.exe"
"C:\WINDOWS\system32\spool\drivers\w32x86\3\bak\hp ztsb10.exe"

Once the notepad is closed click Yes to save the changes.

Once files.txt is saved, FindAWF does the following:
-It attempts to terminate the process represented by each filename on the list, if running
-Deletes the rogue file from the parent folder, if present
-Copies the original file to the parent folder

When done with the above, it automatically runs a new scan and opens a new log.
Please attach the new FindAWF log in your reply.
__________________

  #34  
Old 27th Jan 2008, 23:00
Full Member
Posts: 76
 
LOL. the pictures reallyy helped.


Find AWF report by noahdfear ©2006
Version 1.40
Option 2 run successfully

The current date is: Sun 01/27/2008
The current time is: 21:55:28.54


bak folders found
~~~~~~~~~~~


Directory of C:\HP\KBD\BAK

02/11/2003 07:02 PM 61,440 KBD.EXE
1 File(s) 61,440 bytes

Directory of C:\PROGRA~1\AIM\BAK

08/05/2005 02:08 PM 67,160 aim.exe
1 File(s) 67,160 bytes

Directory of C:\PROGRA~1\ITUNES\BAK

12/20/2005 07:54 PM 278,528 iTunesHelper.exe
1 File(s) 278,528 bytes

Directory of C:\PROGRA~1\MESSEN~1\BAK

0 File(s) 0 bytes

Directory of C:\PROGRA~1\MSNMES~1\BAK

0 File(s) 0 bytes

Directory of C:\PROGRA~1\QUICKT~1\BAK

06/26/2006 06:13 PM 155,648 qttask.exe
1 File(s) 155,648 bytes

Directory of C:\WINDOWS\CREATOR\BAK

12/17/2003 10:31 PM 118,784 Remind_XP.exe
1 File(s) 118,784 bytes

Directory of C:\WINDOWS\SMINST\BAK

04/14/2004 07:43 PM 233,472 RECGUARD.EXE
1 File(s) 233,472 bytes

Directory of C:\WINDOWS\SYSTEM\BAK

05/07/1998 03:04 PM 52,736 hpsysdrv.exe
1 File(s) 52,736 bytes

Directory of C:\WINDOWS\SYSTEM32\BAK

08/04/2004 11:00 AM 15,360 ctfmon.exe
06/07/2004 05:42 PM 659,456 hphmon06.exe
10/16/2002 03:57 PM 81,920 ps2.exe
3 File(s) 756,736 bytes

Directory of C:\PROGRA~1\COMMON~1\SYMANT~1\BAK

08/13/2004 12:17 PM 58,488 ccApp.exe
1 File(s) 58,488 bytes

Directory of C:\PROGRA~1\HP\{AAC4F~1\BAK

06/07/2004 05:53 PM 49,152 hphupd06.exe
1 File(s) 49,152 bytes

Directory of C:\PROGRA~1\COMMON~1\REAL\UPDATE~1\BAK

08/07/2004 01:03 PM 180,269 realsched.exe
1 File(s) 180,269 bytes

Directory of C:\PROGRA~1\JAVA\J2RE14~1.2_0\BIN\BAK

08/07/2004 11:36 AM 32,881 jusched.exe
1 File(s) 32,881 bytes

Directory of C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\BAK

03/04/2004 07:46 AM 172,032 hpztsb10.exe
1 File(s) 172,032 bytes


Duplicate files of bak directory contents
~~~~~~~~~~~~~~~~~~~~~~~

61440 Feb 11 2003 "C:\hp\KBD\KBD.EXE"
61440 Feb 11 2003 "C:\hp\KBD\bak\KBD.EXE"
67160 Aug 5 2005 "C:\Program Files\AIM\aim.exe"
67160 Aug 5 2005 "C:\Program Files\AIM\bak\aim.exe"
286720 Apr 21 2004 "C:\Program Files\iTunes\iTunesHelper.exe1168563073"
278528 Dec 20 2005 "C:\Program Files\iTunes\bak\iTunesHelper.exe"
155648 Jun 26 2006 "C:\Program Files\QuickTime\qttask.exe"
155648 Jun 26 2006 "C:\Program Files\QuickTime\bak\qttask.exe"
118784 Dec 17 2003 "C:\WINDOWS\CREATOR\Remind_XP.exe"
118784 Dec 17 2003 "C:\WINDOWS\CREATOR\bak\Remind_XP.exe"
233472 Apr 14 2004 "C:\WINDOWS\SMINST\RECGUARD.EXE"
233472 Apr 14 2004 "C:\WINDOWS\SMINST\bak\RECGUARD.EXE"
52736 May 7 1998 "C:\WINDOWS\system\hpsysdrv.exe"
52736 May 7 1998 "C:\WINDOWS\system\bak\hpsysdrv.exe"
15360 Aug 4 2004 "C:\WINDOWS\system32\ctfmon.exe"
15360 Aug 4 2004 "C:\WINDOWS\system32\bak\ctfmon.exe"
659456 Jun 7 2004 "C:\WINDOWS\system32\hphmon06.exe"
659456 Jun 7 2004 "C:\WINDOWS\system32\bak\hphmon06.exe"
81920 Oct 16 2002 "C:\WINDOWS\system32\ps2.EXE"
81920 Oct 16 2002 "C:\hp\drivers\keyboard\PS2.EXE"
81920 Oct 16 2002 "C:\WINDOWS\system32\bak\ps2.exe"
58488 Aug 13 2004 "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
58488 Aug 13 2004 "C:\Program Files\Common Files\Symantec Shared\bak\ccApp.exe"
49152 Jun 7 2004 "C:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe"
49152 Jun 7 2004 "C:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\bak\hphupd06.exe"
180269 Aug 7 2004 "C:\Program Files\Common Files\Real\Update_OB\realsched.exe1168563073"
180269 Aug 7 2004 "C:\Program Files\Common Files\Real\Update_OB\bak\realsched.exe"
32881 Aug 7 2004 "C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe"
36975 Jun 3 2005 "C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe"
83608 Mar 14 2007 "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe"
132496 Jul 12 2007 "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
32881 Aug 7 2004 "C:\Program Files\Java\j2re1.4.2_03\bin\bak\jusched.exe"
172032 Mar 4 2004 "C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb10.exe"
172032 Mar 4 2004 "C:\WINDOWS\system32\spool\drivers\w32x86\3\bak\hpztsb10.exe"


end of report
  #35  
Old 28th Jan 2008, 09:03
Moderator
Posts: 7,557
 
I was hoping the pictures would help to explain it. Good job!! Still a few more steps with FindAWF and then we can move on.


Double-click the FindAWF icon once again

If a Security Alert shows, allow the program to run.
As instructed, press any key to continue.
Use the following option: From the Keyboard Press 3 then Enter to remove bak folders

A text file will open called: folders.txt
Click below the line and paste the following list of folders to be removed:
Code:
C:\HP\KBD\BAK
C:\PROGRA~1\AIM\BAK
C:\PROGRA~1\ITUNES\BAK
C:\PROGRA~1\QUICKT~1\BAK
C:\WINDOWS\CREATOR\BAK
C:\WINDOWS\SMINST\BAK
C:\WINDOWS\SYSTEM\BAK
C:\WINDOWS\SYSTEM32\BAK
C:\PROGRA~1\COMMON~1\SYMANT~1\BAK
C:\PROGRA~1\HP\{AAC4F~1\BAK
C:\PROGRA~1\COMMON~1\REAL\UPDATE~1\BAK
C:\PROGRA~1\JAVA\J2RE14~1.2_0\BIN\BAK
C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\BAK


Next, close the text file and click Yes to save the changes.

Once folders.txt is saved, FindAWF does the following:
* It deletes the contents of the bak folders
* Removes the bak folders

When done with the above, it automatically runs a new scan and opens a new log.
Please add the new FindAWF log in your reply.
__________________

  #36  
Old 28th Jan 2008, 11:08
Full Member
Posts: 76
 
Thanks.


Find AWF report by noahdfear ©2006
Version 1.40
Option 3 run successfully

The current date is: Mon 01/28/2008
The current time is: 10:05:53.76


bak folders found
~~~~~~~~~~~


Directory of C:\PROGRA~1\MESSEN~1\BAK

0 File(s) 0 bytes

Directory of C:\PROGRA~1\MSNMES~1\BAK

0 File(s) 0 bytes


Duplicate files of bak directory contents
~~~~~~~~~~~~~~~~~~~~~~~



end of report
  #37  
Old 28th Jan 2008, 11:22
Moderator
Posts: 7,557
 
Last step with FindAWF


Double-click the FindAWF icon once again

If a Security Alert shows, allow the program to run.
As instructed, press any key to continue.
Use the following option: Press 4 then Enter to reset domain zones

This removes all entries from the domain zones.
When the program returns to the main menu, use the following option:
From the Keyboard press E then Enter to EXIT

----------

Download and install CleanUp!

Open Cleanup! by double-clicking the icon on your desktop (or from the Start > All Programs menu).
Set the program up as follows:
  • Click Options...
  • Move the arrow down to Standard CleanUp!
  • Uncheck the following:
    • Delete Newsgroup cache
    • Delete Newsgroup Subscriptions
  • Click OK
Click the CleanUp! button to start the program. Reboot/logoff when prompted.

Note: CleanUp! deletes EVERYTHING out of your temp/temporary folders, it does not make backups. If you have any documents or programs that are saved in any Temporary Folders, please make a backup of these before running CleanUp! If you have a 64 bit Operating System do NOT run Cleanup and let me know as we will use another utility

----------

Download OTMoveIt2 by OldTimer OTMoveIt2.exe and place it on your desktop. (you may still have this from earlier)

1. Double click OTMoveIt2.exe to launch it.
2. Click on the CleanUp! button.
3. OTMoveIt2 will download a list from the Internet, if your firewall or other defensive programs alerts you, allow it access.
4. Click YES at the next prompt (list downloaded, Do you want to begin cleanup process?)
  • When finished exit out of OTMoveIt2
----------

Download DrWeb CureIt & save it to your desktop.

Scan with DrWeb-CureIt as follows:
  • Double-click on drweb-cureit.exe and then click Start.
  • An Express Scan of your PC notice will appear.
  • Under Start the Express Scan Now Click OK to start.
    • This is a short scan that will scan the files currently running in memory.
    • If or when something is found, click the Yes button when it asks you if you want to cure it.
  • Once the short scan has finished, Click Options > Change settings
  • Choose the Scan tab and UNcheck Heuristic analysis and click OK
  • Back at the main window, select the Complete scan button.
  • Then click the Green Arrow Start Scanning button on the right and the scan will start.
    • Click Yes to all if it asks if you want to cure/move any file(s).
  • When the scan is done.
  • In the Dr.Web CureIt menu on top left, click File and choose Save report list.
  • Save the DrWeb.csv report to your Desktop.
  • Exit Dr.Web Cureit.
  • Important! Reboot your computer because it could be possible that files in use will be moved/deleted during reboot.
  • After reboot, Right-click the Dr.Web log on the desktop and choose Open With > Notepad
  • Copy and paste that log in the next reply
----------

Next post add
Dr. Web log
__________________

  #38  
Old 28th Jan 2008, 11:43
Full Member
Posts: 76
 
Whats a 64 bit operating system?
  #39  
Old 28th Jan 2008, 11:43
Moderator
Posts: 7,557
 
Nevermind that, you have a 32bit.
__________________

  #40  
Old 28th Jan 2008, 18:45
Full Member
Posts: 76
 
KillWind.exe;C:\hp\bin;Tool.ProcessKill;;
WxBug.EXE;C:\Program Files\AIM\Sysfiles;Adware.Aws;;
CFD.exe;C:\Program Files\BroadJump\Client Foundation;Adware.Cfd;;
A0007198.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP140;Trojan.StartPage.1505;Deleted.;
A0007248.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP142;Trojan.StartPage.1505;Deleted.;
A0007281.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP143;Trojan.StartPage.1505;Deleted.;
A0007594.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP155;Trojan.StartPage.1505;Deleted.;
A0007674.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP157;Trojan.StartPage.1505;Deleted.;
A0007952.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP157;Trojan.StartPage.1505;Deleted.;
A0008083.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP158;Trojan.StartPage.1505;Deleted.;
A0008189.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP161;Trojan.StartPage.1505;Deleted.;
A0008382.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP162;Trojan.StartPage.1505;Deleted.;
A0008421.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP163;Trojan.StartPage.1505;Deleted.;
A0008440.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP164;Trojan.StartPage.1505;Deleted.;
A0008512.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP165;Trojan.StartPage.1505;Deleted.;
A0008534.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP165;Trojan.StartPage.1505;Deleted.;
A0008566.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP166;Trojan.StartPage.1505;Deleted.;
A0008601.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP167;Trojan.StartPage.1505;Deleted.;
A0008631.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP168;Trojan.StartPage.1505;Deleted.;
A0008729.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP169;Trojan.StartPage.1505;Deleted.;
A0008944.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP170;Trojan.StartPage.1505;Deleted.;
A0008965.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP172;Trojan.StartPage.1505;Deleted.;
A0009001.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP173;Trojan.StartPage.1505;Deleted.;
A0009017.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP173;Trojan.StartPage.1505;Deleted.;
A0009210.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP175;Trojan.StartPage.1505;Deleted.;
A0009236.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP176;Trojan.StartPage.1505;Deleted.;
A0009251.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP177;Trojan.StartPage.1505;Deleted.;
A0009270.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP178;Trojan.StartPage.1505;Deleted.;
A0009289.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP179;Trojan.StartPage.1505;Deleted.;
A0009315.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP180;Trojan.StartPage.1505;Deleted.;
A0009336.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP181;Trojan.StartPage.1505;Deleted.;
A0009355.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP181;Trojan.StartPage.1505;Deleted.;
A0009376.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP181;Trojan.StartPage.1505;Deleted.;
A0009424.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP183;Trojan.StartPage.1505;Deleted.;
A0009517.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP184;Trojan.StartPage.1505;Deleted.;
A0009549.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP184;Trojan.StartPage.1505;Deleted.;
A0009571.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP185;Trojan.StartPage.1505;Deleted.;
A0009591.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP185;Trojan.StartPage.1505;Deleted.;
A0009615.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP186;Trojan.StartPage.1505;Deleted.;
A0009636.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP187;Trojan.StartPage.1505;Deleted.;
A0009654.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP188;Trojan.StartPage.1505;Deleted.;
A0009684.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP189;Trojan.StartPage.1505;Deleted.;
A0009706.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP190;Trojan.StartPage.1505;Deleted.;
A0009724.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP191;Trojan.StartPage.1505;Deleted.;
A0009742.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP192;Trojan.StartPage.1505;Deleted.;
A0009757.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP193;Trojan.StartPage.1505;Deleted.;
A0009782.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP194;Trojan.StartPage.1505;Deleted.;
A0009826.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP195;Trojan.StartPage.1505;Deleted.;
A0009848.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP197;Trojan.StartPage.1505;Deleted.;
A0009885.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP199;Trojan.StartPage.1505;Deleted.;
A0009967.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP201;Trojan.StartPage.1505;Deleted.;
A0009995.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP202;Trojan.StartPage.1505;Deleted.;
A0010027.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP204;Trojan.StartPage.1505;Deleted.;
A0010071.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP205;Trojan.StartPage.1505;Deleted.;
A0010088.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP206;Trojan.StartPage.1505;Deleted.;
A0010107.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP207;Trojan.StartPage.1505;Deleted.;
A0010150.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP207;Trojan.StartPage.1505;Deleted.;
A0010191.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP208;Trojan.StartPage.1505;Deleted.;
A0010323.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP209;Trojan.StartPage.1505;Deleted.;
A0010350.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP210;Trojan.StartPage.1505;Deleted.;
A0010522.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP211;Trojan.StartPage.1505;Deleted.;
A0010705.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP212;Trojan.StartPage.1505;Deleted.;
A0010732.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP213;Trojan.StartPage.1505;Deleted.;
A0010768.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP214;Trojan.StartPage.1505;Deleted.;
A0010852.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP215;Trojan.StartPage.1505;Deleted.;
A0010903.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP216;Trojan.StartPage.1505;Deleted.;
A0010935.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP217;Trojan.StartPage.1505;Deleted.;
A0011006.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP218;Trojan.StartPage.1505;Deleted.;
A0013479.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP220;Trojan.StartPage.1505;Deleted.;
A0017015.dll;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP243;Trojan.Popuper.origin;Incurable.Moved.;
A0017016.dll;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP243;Adware.Msm;;
A0017017.dll;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP243;Adware.Msm;;
A0017163.exe;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP244;Trojan.Fakealert;Deleted.;
Reply

Register

Similar Threads
Thread Thread Starter Forum Replies Last Post
Search Engine Redirects to Ads,USB Cable Cause CPU Shutdown,virus Warning Popups Jacko2983 Virus, Spyware & Security 25 18th Aug 2009 18:16
CiD popups lazj Virus, Spyware & Security 8 15th Oct 2008 10:31
Moving Background XP ashmehta General Software Chat 5 8th May 2008 13:59
Popups shig Virus, Spyware & Security 1 18th Dec 2007 08:42
Thread Tools



Translations Powered by Powered by Google
Arabic Bulgarian Chinese Croatian Czech Danish Dutch English Finnish French German Greek Hebrew Hungarian Italian Japanese Korean Latvian Lithuanian Norwegian Polish Portuguese Romanian Russian Serbian Slovak Spanish Swedish Taiwanese Thai Turkish Ukrainian

Copyright ©2006 - 2010 Computer Juice.

Powered by vBulletin® Copyright ©2000 - 2010 Jelsoft Enterprises Ltd. SEO by vBSEO ©2009, Crawlability, Inc.