SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 07/02/2007 at 10:00 PM
Application Version : 3.9.1008
Core Rules Database Version : 3259
Trace Rules Database Version: 1270
Scan type : Complete Scan
Total Scan Time : 01:24:30
Memory items scanned : 656
Memory threats detected : 0
Registry items scanned : 6029
Registry threats detected : 80
File items scanned : 63593
File threats detected : 164
Adware.MyWebSearch
HKLM\Software\Classes\CLSID\{00A6FAF1-072E-44cf-8957-5838F569A31D}
HKCR\CLSID\{00A6FAF1-072E-44CF-8957-5838F569A31D}
HKCR\CLSID\{00A6FAF1-072E-44CF-8957-5838F569A31D}
HKCR\CLSID\{00A6FAF1-072E-44CF-8957-5838F569A31D}\InprocServer32
HKCR\CLSID\{00A6FAF1-072E-44CF-8957-5838F569A31D}\InprocServer32#ThreadingModel
HKCR\CLSID\{00A6FAF1-072E-44CF-8957-5838F569A31D}\Programmable
C:\PROGRAM FILES\MYWEBSEARCH\SRCHASTT\2.BIN\MWSSRCAS.DLL
HKLM\Software\Classes\CLSID\{00A6FAF6-072E-44cf-8957-5838F569A31D}
HKCR\CLSID\{00A6FAF6-072E-44CF-8957-5838F569A31D}
HKCR\CLSID\{00A6FAF6-072E-44CF-8957-5838F569A31D}
HKCR\CLSID\{00A6FAF6-072E-44CF-8957-5838F569A31D}\InprocServer32
HKCR\CLSID\{00A6FAF6-072E-44CF-8957-5838F569A31D}\InprocServer32#ThreadingModel
HKCR\CLSID\{00A6FAF6-072E-44CF-8957-5838F569A31D}\Programmable
HKLM\Software\Classes\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}
HKCR\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}
HKCR\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}
HKCR\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}\InprocServer32
HKCR\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}\InprocServer32#ThreadingModel
HKCR\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}\Programmable
HKCR\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA}\TypeLib
C:\PROGRAM FILES\MYWEBSEARCH\BAR\2.BIN\MWSBAR.DLL
HKLM\Software\Classes\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}
HKCR\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}
HKCR\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}
HKCR\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}\InprocServer32
HKCR\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}\InprocServer32#ThreadingModel
HKCR\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}\Programmable
HKCR\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA}\TypeLib
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00A6FAF1-072E-44cf-8957-5838F569A31D}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{07B18EA1-A523-4961-B6BB-170DE4475CCA}
HKU\S-1-5-21-556024596-2039046382-635558155-1006\Software\Microsoft\Internet Explorer\URLSearchHooks#{00A6FAF6-072E-44cf-8957-5838F569A31D}
Adware.Accoona
HKLM\Software\Classes\CLSID\{364B6276-C6C1-40B6-A6D7-6C48871FD707}
HKCR\CLSID\{364B6276-C6C1-40B6-A6D7-6C48871FD707}
HKCR\CLSID\{364B6276-C6C1-40B6-A6D7-6C48871FD707}
HKCR\CLSID\{364B6276-C6C1-40B6-A6D7-6C48871FD707}\InprocServer32
HKCR\CLSID\{364B6276-C6C1-40B6-A6D7-6C48871FD707}\InprocServer32#ThreadingModel
HKCR\CLSID\{364B6276-C6C1-40B6-A6D7-6C48871FD707}\ProgID
HKCR\CLSID\{364B6276-C6C1-40B6-A6D7-6C48871FD707}\TypeLib
HKCR\CLSID\{364B6276-C6C1-40B6-A6D7-6C48871FD707}\VersionIndependentProgID
C:\PROGRAM FILES\ACCOONA\ATOOLBAR.DLL
HKLM\Software\Classes\CLSID\{944864A5-3916-46E2-96A9-A2E84F3F1208}
HKCR\CLSID\{944864A5-3916-46E2-96A9-A2E84F3F1208}
HKCR\CLSID\{944864A5-3916-46E2-96A9-A2E84F3F1208}
HKCR\CLSID\{944864A5-3916-46E2-96A9-A2E84F3F1208}\InprocServer32
HKCR\CLSID\{944864A5-3916-46E2-96A9-A2E84F3F1208}\InprocServer32#ThreadingModel
HKCR\CLSID\{944864A5-3916-46E2-96A9-A2E84F3F1208}\ProgID
HKCR\CLSID\{944864A5-3916-46E2-96A9-A2E84F3F1208}\Programmable
HKCR\CLSID\{944864A5-3916-46E2-96A9-A2E84F3F1208}\TypeLib
HKCR\CLSID\{944864A5-3916-46E2-96A9-A2E84F3F1208}\VersionIndependentProgID
C:\PROGRAM FILES\ACCOONA\ASEARCHASSIST.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{944864A5-3916-46E2-96A9-A2E84F3F1208}
HKLM\Software\Microsoft\Internet Explorer\Toolbar#{364B6276-C6C1-40B6-A6D7-6C48871FD707}
HKCR\ABar.ABarBand.1
HKCR\ABar.ABarBand.1\CLSID
HKCR\ABar.ABarBand
HKCR\ABar.ABarBand\CLSID
HKCR\ABar.ABarBand\CurVer
HKCR\TypeLib\{21F022C8-C045-4555-8A90-651E6A3DC6C6}
HKCR\TypeLib\{21F022C8-C045-4555-8A90-651E6A3DC6C6}\1.0
HKCR\TypeLib\{21F022C8-C045-4555-8A90-651E6A3DC6C6}\1.0\0
HKCR\TypeLib\{21F022C8-C045-4555-8A90-651E6A3DC6C6}\1.0\0\win32
HKCR\TypeLib\{21F022C8-C045-4555-8A90-651E6A3DC6C6}\1.0\FLAGS
HKCR\TypeLib\{21F022C8-C045-4555-8A90-651E6A3DC6C6}\1.0\HELPDIR
C:\PROGRAM FILES\ACCOONA\SAREMOVE.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{1D1D6F93-1B0C-4060-8D79-09274A81BD2A}\RP329\A0025922.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{1D1D6F93-1B0C-4060-8D79-09274A81BD2A}\RP329\A0025925.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{1D1D6F93-1B0C-4060-8D79-09274A81BD2A}\RP332\A0026829.DLL
Adware.Tracking Cookie
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][5].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][3].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][9].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\denis
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][5].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][4].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][3].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][4].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][5].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][6].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][7].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][8].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][1].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][2].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][3].txt
C:\Documents and Settings\Denise\Cookies\
[email protected][4].txt
Trojan.WinAntiSpyware/WinAntiVirus 2006/2007
HKU\S-1-5-21-556024596-2039046382-635558155-1006\Software\WinAntiVirus Pro 2007
HKCR\UWAP7.PCheck.1
HKCR\UWAP7.PCheck.1\CLSID
HKCR\UWAP7.PCheck.1\CurVer
HKCR\TypeLib\{6F520BE0-9B54-4558-816F-224E67997DF3}
HKCR\TypeLib\{6F520BE0-9B54-4558-816F-224E67997DF3}\1.0
HKCR\TypeLib\{6F520BE0-9B54-4558-816F-224E67997DF3}\1.0\0
HKCR\TypeLib\{6F520BE0-9B54-4558-816F-224E67997DF3}\1.0\0\win32
HKCR\TypeLib\{6F520BE0-9B54-4558-816F-224E67997DF3}\1.0\FLAGS
HKCR\TypeLib\{6F520BE0-9B54-4558-816F-224E67997DF3}\1.0\HELPDIR
HKCR\Interface\{459F4226-1AAB-43B6-9DC1-B6313EF83749}
HKCR\Interface\{459F4226-1AAB-43B6-9DC1-B6313EF83749}\ProxyStubClsid
HKCR\Interface\{459F4226-1AAB-43B6-9DC1-B6313EF83749}\ProxyStubClsid32
HKCR\Interface\{459F4226-1AAB-43B6-9DC1-B6313EF83749}\TypeLib
HKCR\Interface\{459F4226-1AAB-43B6-9DC1-B6313EF83749}\TypeLib#Version
C:\Program Files\Common Files\WinAntiVirus Pro 2007\err.log
C:\Program Files\Common Files\WinAntiVirus Pro 2007
C:\Program Files\WinAntiVirus Pro 2007\plugins
C:\Program Files\WinAntiVirus Pro 2007
C:\Documents and Settings\Denise\Application Data\WinAntiVirus Pro 2007\avtasks.dat
C:\Documents and Settings\Denise\Application Data\WinAntiVirus Pro 2007\CookieList.dat
C:\Documents and Settings\Denise\Application Data\WinAntiVirus Pro 2007\history.db
C:\Documents and Settings\Denise\Application Data\WinAntiVirus Pro 2007\Logs\update.log
C:\Documents and Settings\Denise\Application Data\WinAntiVirus Pro 2007\Logs\wa7Support.log
C:\Documents and Settings\Denise\Application Data\WinAntiVirus Pro 2007\Logs\winav.log
C:\Documents and Settings\Denise\Application Data\WinAntiVirus Pro 2007\Logs
C:\Documents and Settings\Denise\Application Data\WinAntiVirus Pro 2007\PGE.dat
C:\Documents and Settings\Denise\Application Data\WinAntiVirus Pro 2007
C:\UWA7P\Quar
C:\WINDOWS\..\UWA7P
C:\SYSTEM VOLUME INFORMATION\_RESTORE{1D1D6F93-1B0C-4060-8D79-09274A81BD2A}\RP329\A0025917.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{1D1D6F93-1B0C-4060-8D79-09274A81BD2A}\RP329\A0026063.EXE
Trojan.Media-Codec/V3
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IExplorer Security Plug-in
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IExplorer Security Plug-in#DisplayName
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IExplorer Security Plug-in#UninstallString
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Explorer Secure Bar
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Explorer Secure Bar#DisplayName
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Explorer Secure Bar#UninstallString
Malware.SpyLocked
C:\PROGRAM FILES\SPYLOCKED 4.3\SPYLOCKED 4.3.URL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{1D1D6F93-1B0C-4060-8D79-09274A81BD2A}\RP329\A0025923.EXE
Trojan.Smitfraud Variant-Gen
C:\SYSTEM VOLUME INFORMATION\_RESTORE{1D1D6F93-1B0C-4060-8D79-09274A81BD2A}\RP333\A0026961.DLL
Trojan.Unknown Origin
C:\SYSTEM VOLUME INFORMATION\_RESTORE{1D1D6F93-1B0C-4060-8D79-09274A81BD2A}\RP333\A0026971.ICO
C:\SYSTEM VOLUME INFORMATION\_RESTORE{1D1D6F93-1B0C-4060-8D79-09274A81BD2A}\RP333\A0026972.ICO
SmitFraudFix v2.199
Scan done at 20:17:24.26, Mon 07/02/2007
Run from C:\Documents and Settings\Denise\Desktop\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
The filesystem type is NTFS
Fix run in safe mode
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Before SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{596e4935-4d3b-4a3c-842d-2efd1b3de598}"="hundi"
[HKEY_CLASSES_ROOT\CLSID\{596e4935-4d3b-4a3c-842d-2efd1b3de598}\InProcServer32]
@="C:\WINDOWS\system32\pjgerka.dll"
[HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{596e4935-4d3b-4a3c-842d-2efd1b3de598}\InProcServer32]
@="C:\WINDOWS\system32\pjgerka.dll"
»»»»»»»»»»»»»»»»»»»»»»»» Killing process
»»»»»»»»»»»»»»»»»»»»»»»» hosts
127.0.0.1 localhost
»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix
GenericRenosFix by S!Ri
C:\WINDOWS\system32\pjgerka.dll -> Hoax.Win32.Renos.gen.o
C:\WINDOWS\system32\pjgerka.dll -> Deleted
»»»»»»»»»»»»»»»»»»»»»»»» Deleting infected files
C:\DOCUME~1\ALLUSE~1\STARTM~1\Online Security Guide.url Deleted
C:\DOCUME~1\ALLUSE~1\STARTM~1\Security Troubleshooting.url Deleted
C:\DOCUME~1\Denise\FAVORI~1\Online Security Test.url Deleted
C:\Program Files\Video ActiveX Access\ Deleted
»»»»»»»»»»»»»»»»»»»»»»»» DNS
HKLM\SYSTEM\CCS\Services\Tcpip\..\{243192E3-CFD2-4CB6-9953-E88B9311B835}: DhcpNameServer=68.87.76.178 68.87.78.130
HKLM\SYSTEM\CS1\Services\Tcpip\..\{243192E3-CFD2-4CB6-9953-E88B9311B835}: DhcpNameServer=68.87.76.178 68.87.78.130
HKLM\SYSTEM\CS3\Services\Tcpip\..\{243192E3-CFD2-4CB6-9953-E88B9311B835}: DhcpNameServer=68.87.76.178 68.87.78.130
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=68.87.76.178 68.87.78.130
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=68.87.76.178 68.87.78.130
HKLM\SYSTEM\CS3\Services\Tcpip\Parameters: DhcpNameServer=68.87.76.178 68.87.78.130
»»»»»»»»»»»»»»»»»»»»»»»» Deleting Temp Files
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, following keys are not inevitably infected!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""
»»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning
Registry Cleaning done.
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler After SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
»»»»»»»»»»»»»»»»»»»»»»»» End
THANKS SO MUCH--THE PROBLEM SEEMS TO BE GONE!!!!