![]() |
| |||||||
|
![]() |
| | Thread Tools |
|
#31
| |||
| |||
| Open FindAWF Press 2 then Enter when the window loads. A text file will open called: files.txt Copy the file paths in the code box above into the notepad that opens under the line like in the attachment I posted. Close the .txt file and click 'Yes' to save the changes. It will create another log to post here. |
|
#32
| |||
| |||
| is it this log? Find AWF report by noahdfear ©2006 Version 1.40 The current date is: Sun 01/27/2008 The current time is: 18:03:29.53 bak folders found ~~~~~~~~~~~ Directory of C:\HP\KBD\BAK 02/11/2003 07:02 PM 61,440 KBD.EXE 1 File(s) 61,440 bytes Directory of C:\PROGRA~1\AIM\BAK 08/05/2005 02:08 PM 67,160 aim.exe 1 File(s) 67,160 bytes Directory of C:\PROGRA~1\ITUNES\BAK 12/20/2005 07:54 PM 278,528 iTunesHelper.exe 1 File(s) 278,528 bytes Directory of C:\PROGRA~1\MESSEN~1\BAK 0 File(s) 0 bytes Directory of C:\PROGRA~1\MSNMES~1\BAK 0 File(s) 0 bytes Directory of C:\PROGRA~1\QUICKT~1\BAK 06/26/2006 06:13 PM 155,648 qttask.exe 1 File(s) 155,648 bytes Directory of C:\WINDOWS\CREATOR\BAK 12/17/2003 10:31 PM 118,784 Remind_XP.exe 1 File(s) 118,784 bytes Directory of C:\WINDOWS\SMINST\BAK 04/14/2004 07:43 PM 233,472 RECGUARD.EXE 1 File(s) 233,472 bytes Directory of C:\WINDOWS\SYSTEM\BAK 05/07/1998 03:04 PM 52,736 hpsysdrv.exe 1 File(s) 52,736 bytes Directory of C:\WINDOWS\SYSTEM32\BAK 08/04/2004 11:00 AM 15,360 ctfmon.exe 06/07/2004 05:42 PM 659,456 hphmon06.exe 10/16/2002 03:57 PM 81,920 ps2.exe 3 File(s) 756,736 bytes Directory of C:\PROGRA~1\COMMON~1\SYMANT~1\BAK 08/13/2004 12:17 PM 58,488 ccApp.exe 1 File(s) 58,488 bytes Directory of C:\PROGRA~1\HP\{AAC4F~1\BAK 06/07/2004 05:53 PM 49,152 hphupd06.exe 1 File(s) 49,152 bytes Directory of C:\PROGRA~1\COMMON~1\REAL\UPDATE~1\BAK 08/07/2004 01:03 PM 180,269 realsched.exe 1 File(s) 180,269 bytes Directory of C:\PROGRA~1\JAVA\J2RE14~1.2_0\BIN\BAK 08/07/2004 11:36 AM 32,881 jusched.exe 1 File(s) 32,881 bytes Directory of C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\BAK 03/04/2004 07:46 AM 172,032 hpztsb10.exe 1 File(s) 172,032 bytes Duplicate files of bak directory contents ~~~~~~~~~~~~~~~~~~~~~~~ 61440 Feb 11 2003 "C:\hp\KBD\bak\KBD.EXE" 67160 Dec 8 2004 "C:\Program Files\AIM\aim.exe" 67160 Aug 5 2005 "C:\Program Files\AIM\bak\aim.exe" 286720 Apr 21 2004 "C:\Program Files\iTunes\iTunesHelper.exe1168563073" 278528 Dec 20 2005 "C:\Program Files\iTunes\bak\iTunesHelper.exe" 155648 Jun 26 2006 "C:\Program Files\QuickTime\bak\qttask.exe" 118784 Dec 17 2003 "C:\WINDOWS\CREATOR\Remind_XP.exe" 118784 Dec 17 2003 "C:\WINDOWS\CREATOR\bak\Remind_XP.exe" 233472 Apr 14 2004 "C:\WINDOWS\SMINST\bak\RECGUARD.EXE" 52736 May 7 1998 "C:\WINDOWS\system\bak\hpsysdrv.exe" 15360 Aug 4 2004 "C:\WINDOWS\system32\ctfmon.exe" 15360 Aug 4 2004 "C:\WINDOWS\system32\bak\ctfmon.exe" 659456 Jun 7 2004 "C:\WINDOWS\system32\bak\hphmon06.exe" 81920 Oct 16 2002 "C:\WINDOWS\system32\ps2.EXE" 81920 Oct 16 2002 "C:\hp\drivers\keyboard\PS2.EXE" 81920 Oct 16 2002 "C:\WINDOWS\system32\bak\ps2.exe" 48752 Oct 4 2005 "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" 58488 Aug 13 2004 "C:\Program Files\Common Files\Symantec Shared\bak\ccApp.exe" 49152 Jun 7 2004 "C:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\bak\hphupd06.exe" 180269 Aug 7 2004 "C:\Program Files\Common Files\Real\Update_OB\realsched.exe1168563073" 180269 Aug 7 2004 "C:\Program Files\Common Files\Real\Update_OB\bak\realsched.exe" 32881 Aug 7 2004 "C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe" 36975 Jun 3 2005 "C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe" 83608 Mar 14 2007 "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe" 132496 Jul 12 2007 "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" 32881 Aug 7 2004 "C:\Program Files\Java\j2re1.4.2_03\bin\bak\jusched.exe" 172032 Mar 4 2004 "C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb10.exe" 172032 Mar 4 2004 "C:\WINDOWS\system32\spool\drivers\w32x86\3\bak\hpztsb10.exe" end of report |
|
#33
| |||
| |||
| Thats the same log as before. I need a new one from these instructions. Double-click the FindAWF icon once again If a Security Alert shows, allow the program to run. As instructed, press any key to continue. Use the following option: From the keyboard Press 2 then Enter to restore files from bak folders ![]() A text file opens called: files.txt Click below the line and paste the following list of files to be restored then close the notepad: ![]() Code: "C:\hp\KBD\bak\KBD.EXE"
"C:\Program Files\AIM\bak\aim.exe"
"C:\Program Files\iTunes\bak\iTunesHelper.exe"
"C:\Program Files\QuickTime\bak\qttask.exe"
"C:\WINDOWS\CREATOR\bak\Remind_XP.exe"
"C:\WINDOWS\SMINST\bak\RECGUARD.EXE"
"C:\WINDOWS\system\bak\hpsysdrv.exe"
"C:\WINDOWS\system32\bak\ctfmon.exe"
"C:\WINDOWS\system32\bak\hphmon06.exe"
"C:\WINDOWS\system32\bak\ps2.exe"
"C:\Program Files\Common Files\Symantec Shared\bak\ccApp.exe"
"C:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\bak\hphupd06.exe"
"C:\Program Files\Common Files\Real\Update_OB\bak\realsched.exe"
"C:\Program Files\Java\j2re1.4.2_03\bin\bak\jusched.exe"
"C:\WINDOWS\system32\spool\drivers\w32x86\3\bak\hp ztsb10.exe"
Once the notepad is closed click Yes to save the changes. Once files.txt is saved, FindAWF does the following: -It attempts to terminate the process represented by each filename on the list, if running -Deletes the rogue file from the parent folder, if present -Copies the original file to the parent folder When done with the above, it automatically runs a new scan and opens a new log. Please attach the new FindAWF log in your reply. |
|
#34
| |||
| |||
| LOL. the pictures reallyy helped. Find AWF report by noahdfear ©2006 Version 1.40 Option 2 run successfully The current date is: Sun 01/27/2008 The current time is: 21:55:28.54 bak folders found ~~~~~~~~~~~ Directory of C:\HP\KBD\BAK 02/11/2003 07:02 PM 61,440 KBD.EXE 1 File(s) 61,440 bytes Directory of C:\PROGRA~1\AIM\BAK 08/05/2005 02:08 PM 67,160 aim.exe 1 File(s) 67,160 bytes Directory of C:\PROGRA~1\ITUNES\BAK 12/20/2005 07:54 PM 278,528 iTunesHelper.exe 1 File(s) 278,528 bytes Directory of C:\PROGRA~1\MESSEN~1\BAK 0 File(s) 0 bytes Directory of C:\PROGRA~1\MSNMES~1\BAK 0 File(s) 0 bytes Directory of C:\PROGRA~1\QUICKT~1\BAK 06/26/2006 06:13 PM 155,648 qttask.exe 1 File(s) 155,648 bytes Directory of C:\WINDOWS\CREATOR\BAK 12/17/2003 10:31 PM 118,784 Remind_XP.exe 1 File(s) 118,784 bytes Directory of C:\WINDOWS\SMINST\BAK 04/14/2004 07:43 PM 233,472 RECGUARD.EXE 1 File(s) 233,472 bytes Directory of C:\WINDOWS\SYSTEM\BAK 05/07/1998 03:04 PM 52,736 hpsysdrv.exe 1 File(s) 52,736 bytes Directory of C:\WINDOWS\SYSTEM32\BAK 08/04/2004 11:00 AM 15,360 ctfmon.exe 06/07/2004 05:42 PM 659,456 hphmon06.exe 10/16/2002 03:57 PM 81,920 ps2.exe 3 File(s) 756,736 bytes Directory of C:\PROGRA~1\COMMON~1\SYMANT~1\BAK 08/13/2004 12:17 PM 58,488 ccApp.exe 1 File(s) 58,488 bytes Directory of C:\PROGRA~1\HP\{AAC4F~1\BAK 06/07/2004 05:53 PM 49,152 hphupd06.exe 1 File(s) 49,152 bytes Directory of C:\PROGRA~1\COMMON~1\REAL\UPDATE~1\BAK 08/07/2004 01:03 PM 180,269 realsched.exe 1 File(s) 180,269 bytes Directory of C:\PROGRA~1\JAVA\J2RE14~1.2_0\BIN\BAK 08/07/2004 11:36 AM 32,881 jusched.exe 1 File(s) 32,881 bytes Directory of C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\BAK 03/04/2004 07:46 AM 172,032 hpztsb10.exe 1 File(s) 172,032 bytes Duplicate files of bak directory contents ~~~~~~~~~~~~~~~~~~~~~~~ 61440 Feb 11 2003 "C:\hp\KBD\KBD.EXE" 61440 Feb 11 2003 "C:\hp\KBD\bak\KBD.EXE" 67160 Aug 5 2005 "C:\Program Files\AIM\aim.exe" 67160 Aug 5 2005 "C:\Program Files\AIM\bak\aim.exe" 286720 Apr 21 2004 "C:\Program Files\iTunes\iTunesHelper.exe1168563073" 278528 Dec 20 2005 "C:\Program Files\iTunes\bak\iTunesHelper.exe" 155648 Jun 26 2006 "C:\Program Files\QuickTime\qttask.exe" 155648 Jun 26 2006 "C:\Program Files\QuickTime\bak\qttask.exe" 118784 Dec 17 2003 "C:\WINDOWS\CREATOR\Remind_XP.exe" 118784 Dec 17 2003 "C:\WINDOWS\CREATOR\bak\Remind_XP.exe" 233472 Apr 14 2004 "C:\WINDOWS\SMINST\RECGUARD.EXE" 233472 Apr 14 2004 "C:\WINDOWS\SMINST\bak\RECGUARD.EXE" 52736 May 7 1998 "C:\WINDOWS\system\hpsysdrv.exe" 52736 May 7 1998 "C:\WINDOWS\system\bak\hpsysdrv.exe" 15360 Aug 4 2004 "C:\WINDOWS\system32\ctfmon.exe" 15360 Aug 4 2004 "C:\WINDOWS\system32\bak\ctfmon.exe" 659456 Jun 7 2004 "C:\WINDOWS\system32\hphmon06.exe" 659456 Jun 7 2004 "C:\WINDOWS\system32\bak\hphmon06.exe" 81920 Oct 16 2002 "C:\WINDOWS\system32\ps2.EXE" 81920 Oct 16 2002 "C:\hp\drivers\keyboard\PS2.EXE" 81920 Oct 16 2002 "C:\WINDOWS\system32\bak\ps2.exe" 58488 Aug 13 2004 "C:\Program Files\Common Files\Symantec Shared\ccApp.exe" 58488 Aug 13 2004 "C:\Program Files\Common Files\Symantec Shared\bak\ccApp.exe" 49152 Jun 7 2004 "C:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe" 49152 Jun 7 2004 "C:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\bak\hphupd06.exe" 180269 Aug 7 2004 "C:\Program Files\Common Files\Real\Update_OB\realsched.exe1168563073" 180269 Aug 7 2004 "C:\Program Files\Common Files\Real\Update_OB\bak\realsched.exe" 32881 Aug 7 2004 "C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe" 36975 Jun 3 2005 "C:\Program Files\Java\jre1.5.0_04\bin\jusched.exe" 83608 Mar 14 2007 "C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe" 132496 Jul 12 2007 "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe" 32881 Aug 7 2004 "C:\Program Files\Java\j2re1.4.2_03\bin\bak\jusched.exe" 172032 Mar 4 2004 "C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb10.exe" 172032 Mar 4 2004 "C:\WINDOWS\system32\spool\drivers\w32x86\3\bak\hpztsb10.exe" end of report |
|
#35
| |||
| |||
| I was hoping the pictures would help to explain it. Good job!! Still a few more steps with FindAWF and then we can move on. Double-click the FindAWF icon once again If a Security Alert shows, allow the program to run. As instructed, press any key to continue. Use the following option: From the Keyboard Press 3 then Enter to remove bak folders A text file will open called: folders.txt Click below the line and paste the following list of folders to be removed: Code: C:\HP\KBD\BAK
C:\PROGRA~1\AIM\BAK
C:\PROGRA~1\ITUNES\BAK
C:\PROGRA~1\QUICKT~1\BAK
C:\WINDOWS\CREATOR\BAK
C:\WINDOWS\SMINST\BAK
C:\WINDOWS\SYSTEM\BAK
C:\WINDOWS\SYSTEM32\BAK
C:\PROGRA~1\COMMON~1\SYMANT~1\BAK
C:\PROGRA~1\HP\{AAC4F~1\BAK
C:\PROGRA~1\COMMON~1\REAL\UPDATE~1\BAK
C:\PROGRA~1\JAVA\J2RE14~1.2_0\BIN\BAK
C:\WINDOWS\SYSTEM32\SPOOL\DRIVERS\W32X86\3\BAK
Next, close the text file and click Yes to save the changes. Once folders.txt is saved, FindAWF does the following: * It deletes the contents of the bak folders * Removes the bak folders When done with the above, it automatically runs a new scan and opens a new log. Please add the new FindAWF log in your reply. |
|
#36
| |||
| |||
| Thanks. Find AWF report by noahdfear ©2006 Version 1.40 Option 3 run successfully The current date is: Mon 01/28/2008 The current time is: 10:05:53.76 bak folders found ~~~~~~~~~~~ Directory of C:\PROGRA~1\MESSEN~1\BAK 0 File(s) 0 bytes Directory of C:\PROGRA~1\MSNMES~1\BAK 0 File(s) 0 bytes Duplicate files of bak directory contents ~~~~~~~~~~~~~~~~~~~~~~~ end of report |
|
#37
| |||
| |||
| Last step with FindAWF ![]() Double-click the FindAWF icon once again If a Security Alert shows, allow the program to run. As instructed, press any key to continue. Use the following option: Press 4 then Enter to reset domain zones This removes all entries from the domain zones. When the program returns to the main menu, use the following option: From the Keyboard press E then Enter to EXIT ---------- Download and install CleanUp! Open Cleanup! by double-clicking the icon on your desktop (or from the Start > All Programs menu). Set the program up as follows:
Note: CleanUp! deletes EVERYTHING out of your temp/temporary folders, it does not make backups. If you have any documents or programs that are saved in any Temporary Folders, please make a backup of these before running CleanUp! If you have a 64 bit Operating System do NOT run Cleanup and let me know as we will use another utility ---------- Download OTMoveIt2 by OldTimer OTMoveIt2.exe and place it on your desktop. (you may still have this from earlier) 1. Double click OTMoveIt2.exe to launch it. 2. Click on the CleanUp! button. 3. OTMoveIt2 will download a list from the Internet, if your firewall or other defensive programs alerts you, allow it access. 4. Click YES at the next prompt (list downloaded, Do you want to begin cleanup process?)
Download DrWeb CureIt & save it to your desktop. Scan with DrWeb-CureIt as follows:
Next post add Dr. Web log |
|
#38
| |||
| |||
| Whats a 64 bit operating system? |
|
#39
| |||
| |||
| Nevermind that, you have a 32bit. |
|
#40
| |||
| |||
| KillWind.exe;C:\hp\bin;Tool.ProcessKill;; WxBug.EXE;C:\Program Files\AIM\Sysfiles;Adware.Aws;; CFD.exe;C:\Program Files\BroadJump\Client Foundation;Adware.Cfd;; A0007198.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP140;Trojan.StartPage.1505;Deleted.; A0007248.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP142;Trojan.StartPage.1505;Deleted.; A0007281.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP143;Trojan.StartPage.1505;Deleted.; A0007594.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP155;Trojan.StartPage.1505;Deleted.; A0007674.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP157;Trojan.StartPage.1505;Deleted.; A0007952.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP157;Trojan.StartPage.1505;Deleted.; A0008083.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP158;Trojan.StartPage.1505;Deleted.; A0008189.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP161;Trojan.StartPage.1505;Deleted.; A0008382.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP162;Trojan.StartPage.1505;Deleted.; A0008421.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP163;Trojan.StartPage.1505;Deleted.; A0008440.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP164;Trojan.StartPage.1505;Deleted.; A0008512.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP165;Trojan.StartPage.1505;Deleted.; A0008534.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP165;Trojan.StartPage.1505;Deleted.; A0008566.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP166;Trojan.StartPage.1505;Deleted.; A0008601.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP167;Trojan.StartPage.1505;Deleted.; A0008631.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP168;Trojan.StartPage.1505;Deleted.; A0008729.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP169;Trojan.StartPage.1505;Deleted.; A0008944.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP170;Trojan.StartPage.1505;Deleted.; A0008965.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP172;Trojan.StartPage.1505;Deleted.; A0009001.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP173;Trojan.StartPage.1505;Deleted.; A0009017.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP173;Trojan.StartPage.1505;Deleted.; A0009210.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP175;Trojan.StartPage.1505;Deleted.; A0009236.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP176;Trojan.StartPage.1505;Deleted.; A0009251.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP177;Trojan.StartPage.1505;Deleted.; A0009270.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP178;Trojan.StartPage.1505;Deleted.; A0009289.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP179;Trojan.StartPage.1505;Deleted.; A0009315.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP180;Trojan.StartPage.1505;Deleted.; A0009336.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP181;Trojan.StartPage.1505;Deleted.; A0009355.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP181;Trojan.StartPage.1505;Deleted.; A0009376.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP181;Trojan.StartPage.1505;Deleted.; A0009424.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP183;Trojan.StartPage.1505;Deleted.; A0009517.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP184;Trojan.StartPage.1505;Deleted.; A0009549.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP184;Trojan.StartPage.1505;Deleted.; A0009571.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP185;Trojan.StartPage.1505;Deleted.; A0009591.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP185;Trojan.StartPage.1505;Deleted.; A0009615.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP186;Trojan.StartPage.1505;Deleted.; A0009636.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP187;Trojan.StartPage.1505;Deleted.; A0009654.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP188;Trojan.StartPage.1505;Deleted.; A0009684.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP189;Trojan.StartPage.1505;Deleted.; A0009706.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP190;Trojan.StartPage.1505;Deleted.; A0009724.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP191;Trojan.StartPage.1505;Deleted.; A0009742.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP192;Trojan.StartPage.1505;Deleted.; A0009757.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP193;Trojan.StartPage.1505;Deleted.; A0009782.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP194;Trojan.StartPage.1505;Deleted.; A0009826.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP195;Trojan.StartPage.1505;Deleted.; A0009848.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP197;Trojan.StartPage.1505;Deleted.; A0009885.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP199;Trojan.StartPage.1505;Deleted.; A0009967.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP201;Trojan.StartPage.1505;Deleted.; A0009995.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP202;Trojan.StartPage.1505;Deleted.; A0010027.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP204;Trojan.StartPage.1505;Deleted.; A0010071.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP205;Trojan.StartPage.1505;Deleted.; A0010088.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP206;Trojan.StartPage.1505;Deleted.; A0010107.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP207;Trojan.StartPage.1505;Deleted.; A0010150.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP207;Trojan.StartPage.1505;Deleted.; A0010191.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP208;Trojan.StartPage.1505;Deleted.; A0010323.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP209;Trojan.StartPage.1505;Deleted.; A0010350.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP210;Trojan.StartPage.1505;Deleted.; A0010522.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP211;Trojan.StartPage.1505;Deleted.; A0010705.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP212;Trojan.StartPage.1505;Deleted.; A0010732.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP213;Trojan.StartPage.1505;Deleted.; A0010768.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP214;Trojan.StartPage.1505;Deleted.; A0010852.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP215;Trojan.StartPage.1505;Deleted.; A0010903.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP216;Trojan.StartPage.1505;Deleted.; A0010935.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP217;Trojan.StartPage.1505;Deleted.; A0011006.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP218;Trojan.StartPage.1505;Deleted.; A0013479.reg;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP220;Trojan.StartPage.1505;Deleted.; A0017015.dll;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP243;Trojan.Popuper.origin;Incurable.Moved.; A0017016.dll;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP243;Adware.Msm;; A0017017.dll;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP243;Adware.Msm;; A0017163.exe;C:\System Volume Information\_restore{E7B21304-9105-4D9D-AFAC-E7088FDCC6A0}\RP244;Trojan.Fakealert;Deleted.; |
![]() |
|
Similar Threads | ||||
| Thread | Thread Starter | Forum | Replies | Last Post |
| Search Engine Redirects to Ads,USB Cable Cause CPU Shutdown,virus Warning Popups | Jacko2983 | Virus, Spyware & Security | 25 | 18th Aug 2009 18:16 |
| CiD popups | lazj | Virus, Spyware & Security | 8 | 15th Oct 2008 10:31 |
| Moving Background XP | ashmehta | General Software Chat | 5 | 8th May 2008 13:59 |
| Popups | shig | Virus, Spyware & Security | 1 | 18th Dec 2007 08:42 |
| Thread Tools | |
| |