Tech Support Guy banner
  • Please post in our Community Feedback thread for help with the new forum software! If you are having trouble logging in, please Contact Us for assistance.
Status
Not open for further replies.
1 - 9 of 9 Posts

·
Registered
Joined
·
8 Posts
Discussion Starter · #1 ·
i've recently got a trojan that cannot be detected by mcafee antivirus version 10.0 when scanned but every few minutes detects it when browsing. mcafee alerts pop up saying loadadv559.exe file has been infected by new malware.j trojan and it couldn't be cleaned but has been deleted. it also shows another following that pop up alert unfortunately i don't have it's name but it says to be cleaned. however, neither are so, every start up the alert shows them back and obviously doesnt fully remove them. there is a previous post on here about the same trojan posted back jan 5th but what exactly to remove doesn't apply to me. i followed the steps that were shown and have logs from AVG, HJT and PandaScan. i will post all 3 following this.. i am running windows xp home edition 2002. i dont think it's 2nd edition. any help would be appreciated.. thanx
 

·
Registered
Joined
·
8 Posts
Discussion Starter · #2 ·
this is the HJT log..

Logfile of HijackThis v1.99.1
Scan saved at 9:04:11 AM, on 1/15/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\System32\brsvc01a.exe
C:\WINDOWS\System32\brss01a.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\system32\Brmfrmps.exe
c:\program files\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Lanovation\PrismXL\PRISMXL.SYS
C:\WINDOWS\system32\slserv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\BRMFRSMG.EXE
C:\Program Files\Gateway Utilities\GWInkMonitor.exe
C:\Program Files\Intel\NCS\PROSet\PRONoMgr.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Scansoft\PaperPort\pptd40nt.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\MMDiag.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mim.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\TDS Accelerator\slipcore.exe
C:\Program Files\McAfee.com\VSO\mcvsshld.exe
c:\program files\mcafee.com\agent\mcagent.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\Program Files\McAfee.com\VSO\oasclnt.exe
C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Yahoo!\Messenger\ypager.exe
c:\progra~1\mcafee.com\vso\mcvsftsn.exe
C:\Program Files\MySpace\IM\MySpaceIM.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
C:\Program Files\Scansoft\PaperPort\SmartUI\SmartUI.exe
C:\Program Files\TDS Accelerator\slipgui.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = c:\secure32.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:6711
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: ts - {4006DCA3-433D-4FC8-AC36-42DA7797DCB7} - C:\WINDOWS\system32\bho.dll (file missing)
O2 - BHO: PBlockHelper Class - {4115122B-85FF-4DD3-9515-F075BEDE5EB5} - C:\Program Files\TDS Accelerator\PBHelper.dll
O2 - BHO: UberButton Class - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: (no name) - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - (no file)
O2 - BHO: YahooTaggedBM Class - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - C:\Program Files\Yahoo!\Common\YIeTagBm.dll
O2 - BHO: (no name) - {A5EEA09E-84BF-4940-9847-245B3301242C} - C:\WINDOWS\system32\pmkhg.dll (file missing)
O3 - Toolbar: TDS Accelerator - {8B79EE88-E62D-4AA8-B530-CC357BA112B7} - C:\Program Files\TDS Accelerator\Toolband.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O4 - HKLM\..\Run: [Gateway Ink Monitor] "C:\Program Files\Gateway Utilities\GWInkMonitor.exe"
O4 - HKLM\..\Run: [PRONoMgr.exe] C:\Program Files\Intel\NCS\PROSet\PRONoMgr.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [PaperPort PTD] C:\Program Files\Scansoft\PaperPort\pptd40nt.exe
O4 - HKLM\..\Run: [IndexSearch] C:\Program Files\Scansoft\PaperPort\IndexSearch.exe
O4 - HKLM\..\Run: [SetDefPrt] C:\Program Files\Brother\BRMFLPRO\BrDefPrt.exe
O4 - HKLM\..\Run: [MimBoot] C:\Program Files\Musicmatch\Musicmatch Jukebox\mimboot.exe
O4 - HKLM\..\Run: [WorksFUD] C:\Program Files\Microsoft Works\wkfud.exe
O4 - HKLM\..\Run: [Microsoft Works Portfolio] C:\Program Files\Microsoft Works\WksSb.exe /AllUsers
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [SlipStream] "C:\Program Files\TDS Accelerator\slipcore.exe"
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hp\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [AutoSys] C:\WINDOWS\system32\autosys.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\ypager.exe" -quiet
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_7 -reboot 1
O4 - HKCU\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe
O4 - HKCU\..\Run: [Windows installer] C:\winstall.exe
O4 - HKCU\..\Run: [1] "C:\WINDOWS\system32\1.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: AutoCAD Startup Accelerator.lnk = C:\Program Files\Common Files\Autodesk Shared\acstart16.exe
O4 - Global Startup: Corel Colleagues & Contacts Reminders.LNK = C:\Program Files\Corel\Print Office\cffrem.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqthb08.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
O4 - Global Startup: SmartUI.lnk = ?
O4 - Global Startup: TDS Accelerator.lnk = C:\Program Files\TDS Accelerator\slipgui.exe
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O15 - Trusted Zone: *.musicmatch.com
O15 - Trusted Zone: *.musicmatch.com (HKLM)
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.mcafee.com/molbin/shared/mcinsctl/4,0,0,101/mcinsctl.cab
O16 - DPF: {511073AD-BE56-4D43-AE68-93390514385E} (TechToolsActivex.TechTools) - hcp://system/TechTools.CAB
O16 - DPF: {739E8D90-2F4C-43AD-A1B8-66C356FCEA35} (RunExeActiveX.RunExe) - hcp://system/RunExeActiveX.CAB
O16 - DPF: {99CDFD87-F97A-42E1-9C13-D18220D90AD1} (StartFirstControl.CheckFirst) - hcp://system/StartFirstControl.CAB
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: partnershipreg - C:\Documents and Settings\All Users\Documents\Settings\partnership.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: winrge32 - winrge32.dll (file missing)
O23 - Service: Autodesk Licensing Service - Autodesk, Inc. - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Brother Popup Suspend service for Resource manager (brmfrmps) - Unknown owner - C:\WINDOWS\system32\Brmfrmps.exe" -service (file missing)
O23 - Service: BrSplService (Brother XP spl Service) - brother Industries Ltd - C:\WINDOWS\System32\brsvc01a.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: Microsoft authenticate service (MsaSvc) - Unknown owner - C:\WINDOWS\system32\msasvc.exe (file missing)
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: PrismXL - Lanovation - C:\Program Files\Common Files\Lanovation\PrismXL\PRISMXL.SYS
O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
O23 - Service: streamci.exe - Unknown owner - C:\WINDOWS\system32\streamci.exe (file missing)
 

·
Registered
Joined
·
8 Posts
Discussion Starter · #3 ·
the AVG log..

---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------

+ Created at: 9:00:18 AM 1/15/2007

+ Scan result:

HKLM\SOFTWARE\Classes\BHO.Adware -> Adware.Ezula : No action taken.
HKLM\SOFTWARE\Classes\BHO.Adware.1 -> Adware.Ezula : No action taken.
HKLM\SOFTWARE\Classes\BHO.Adware\CLSID -> Adware.Ezula : No action taken.
HKLM\SOFTWARE\Classes\BHO.Adware\CurVer -> Adware.Ezula : No action taken.
HKLM\SOFTWARE\Classes\BHO.Hider -> Adware.Ezula : No action taken.
HKLM\SOFTWARE\Classes\BHO.Hider.1 -> Adware.Ezula : No action taken.
HKLM\SOFTWARE\Classes\BHO.Hider\CLSID -> Adware.Ezula : No action taken.
HKLM\SOFTWARE\Classes\BHO.Hider\CurVer -> Adware.Ezula : No action taken.
HKLM\SOFTWARE\Classes\CLSID\{4006DCA3-433D-4FC8-AC36-42DA7797DCB7} -> Adware.eZula : No action taken.
HKLM\SOFTWARE\Microsoft\Webext -> Adware.Ezula : No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{4006DCA3-433D-4FC8-AC36-42DA7797DCB7} -> Adware.eZula : No action taken.
HKU\S-1-5-21-1229272821-688789844-682003330-1004\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4006DCA3-433D-4FC8-AC36-42DA7797DCB7} -> Adware.eZula : No action taken.
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\\AutoSys -> Adware.Generic : No action taken.
HKU\S-1-5-21-1229272821-688789844-682003330-1004\Software\Microsoft\Windows\CurrentVersion\Run\\Windows installer -> Adware.PestTrap : No action taken.
C:\Documents and Settings\Linden Repair\Local Settings\Temporary Internet Files\Content.IE5\TF3NX9CI\1[1].exe -> Backdoor.Small.ml : No action taken.
C:\System Volume Information\_restore{0FDD7BD3-5121-477C-946C-9AA8EE0355B4}\RP7\A0001357.exe -> Backdoor.Small.ml : No action taken.
C:\Documents and Settings\Linden Repair\AIPQ.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\BMEQ.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\CEAO.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\CFKH.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\DHEJ.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\DQGL.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\ECKC.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\EHEL.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\ELME.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\EPLN.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\FHEM.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\FNTK.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\GFPU.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\GUBS.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\HTNU.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\ISOQ.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\ITUB.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\JBRH.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\JKCB.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\KKRI.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\LGQJ.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\LLIF.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\Local Settings\Temporary Internet Files\Content.IE5\KE0DIEKQ\inst[1].exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\MCHU.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\MDIR.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\MUMG.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\NCPA.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\NGDL.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\OBBH.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\OKGJ.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\ONGQ.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\OTIT.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\PUNU.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\QJST.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\REDC.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\SAOQ.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\SCRO.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\SIQI.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\SLJO.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\SRRT.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\TOQF.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\UCKF.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\UFMT.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\UKKH.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\UMDU.exe -> Downloader.Agent.bdm : No action taken.
C:\System Volume Information\_restore{0FDD7BD3-5121-477C-946C-9AA8EE0355B4}\RP7\A0001358.exe -> Downloader.Agent.bdm : No action taken.
C:\System Volume Information\_restore{0FDD7BD3-5121-477C-946C-9AA8EE0355B4}\RP7\A0001359.exe -> Downloader.Agent.bdm : No action taken.
C:\System Volume Information\_restore{0FDD7BD3-5121-477C-946C-9AA8EE0355B4}\RP7\A0001361.exe -> Downloader.Agent.bdm : No action taken.
C:\System Volume Information\_restore{0FDD7BD3-5121-477C-946C-9AA8EE0355B4}\RP7\A0001363.exe -> Downloader.Agent.bdm : No action taken.
C:\System Volume Information\_restore{0FDD7BD3-5121-477C-946C-9AA8EE0355B4}\RP7\A0001365.exe -> Downloader.Agent.bdm : No action taken.
C:\System Volume Information\_restore{0FDD7BD3-5121-477C-946C-9AA8EE0355B4}\RP7\A0001366.exe -> Downloader.Agent.bdm : No action taken.
C:\System Volume Information\_restore{0FDD7BD3-5121-477C-946C-9AA8EE0355B4}\RP7\A0001367.exe -> Downloader.Agent.bdm : No action taken.
C:\System Volume Information\_restore{0FDD7BD3-5121-477C-946C-9AA8EE0355B4}\RP7\A0001368.exe -> Downloader.Agent.bdm : No action taken.
C:\WINDOWS\system32\DCMK.exe -> Downloader.Agent.bdm : No action taken.
C:\WINDOWS\system32\EHIH.exe -> Downloader.Agent.bdm : No action taken.
C:\WINDOWS\system32\IFPK.exe -> Downloader.Agent.bdm : No action taken.
C:\WINDOWS\system32\KFUC.exe -> Downloader.Agent.bdm : No action taken.
C:\WINDOWS\system32\KUOG.exe -> Downloader.Agent.bdm : No action taken.
C:\WINDOWS\system32\NNMI.exe -> Downloader.Agent.bdm : No action taken.
C:\Documents and Settings\Linden Repair\Local Settings\Temporary Internet Files\Content.IE5\4HAR0TA3\si[1].exe -> Downloader.Reqlook.r : No action taken.
:mozilla.35:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.37:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.38:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.39:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.40:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.41:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.42:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.43:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.44:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.45:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.46:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.47:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.48:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.49:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.50:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.51:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.52:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.53:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\Linden Repair\Cookies\linden [email protected][1].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\Linden Repair\Cookies\[email protected][2].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\Linden Repair\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][2].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][2].txt -> TrackingCookie.2o7 : No action taken.
:mozilla.251:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.7search : No action taken.
:mozilla.252:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.7search : No action taken.
:mozilla.439:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Aavalue : No action taken.
:mozilla.440:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Aavalue : No action taken.
:mozilla.441:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Aavalue : No action taken.
C:\Documents and Settings\Linden Repair\Cookies\[email protected][2].txt -> TrackingCookie.Adbrite : No action taken.
C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][1].txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.283:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
C:\Documents and Settings\Linden Repair\Cookies\[email protected][2].txt -> TrackingCookie.Adtrak : No action taken.
C:\Documents and Settings\Linden Repair\Cookies\[email protected][1].txt -> TrackingCookie.Adtrak : No action taken.
:mozilla.100:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.101:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.95:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.97:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.98:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.99:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
C:\Documents and Settings\Linden Repair\Cookies\[email protected][1].txt -> TrackingCookie.Advertising : No action taken.
C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][2].txt -> TrackingCookie.Advertising : No action taken.
:mozilla.63:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Atdmt : No action taken.
C:\Documents and Settings\Linden Repair\Cookies\[email protected][1].txt -> TrackingCookie.Atdmt : No action taken.
C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][2].txt -> TrackingCookie.Atdmt : No action taken.
:mozilla.149:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Bfast : No action taken.
C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][1].txt -> TrackingCookie.Bfast : No action taken.
:mozilla.242:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Bluestreak : No action taken.
:mozilla.233:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Burstnet : No action taken.
C:\Documents and Settings\Linden Repair\Cookies\linden_[email protected][1].txt -> TrackingCookie.Casalemedia : No action taken.
C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][2].txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.165:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Centrport : No action taken.
:mozilla.166:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Centrport : No action taken.
:mozilla.359:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Clickagents : No action taken.
:mozilla.360:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Clickagents : No action taken.
:mozilla.361:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Clickagents : No action taken.
:mozilla.362:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Clickagents : No action taken.
:mozilla.363:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Clickagents : No action taken.
:mozilla.258:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Com : No action taken.
:mozilla.259:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Com : No action taken.
:mozilla.266:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Coremetrics : No action taken.
:mozilla.96:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
C:\Documents and Settings\Linden Repair\Cookies\[email protected][1].txt -> TrackingCookie.Doubleclick : No action taken.
C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][1].txt -> TrackingCookie.Doubleclick : No action taken.
:mozilla.261:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
:mozilla.262:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
:mozilla.287:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
:mozilla.288:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
:mozilla.289:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
:mozilla.299:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
:mozilla.320:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
:mozilla.321:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
:mozilla.322:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
:mozilla.365:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
:mozilla.369:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
:mozilla.392:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
:mozilla.454:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
:mozilla.457:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
:mozilla.460:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
:mozilla.466:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
:mozilla.470:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
:mozilla.472:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][2].txt -> TrackingCookie.Euroclick : No action taken.
:mozilla.107:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.108:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
C:\Documents and Settings\Linden Repair\Cookies\[email protected][1].txt -> TrackingCookie.Fastclick : No action taken.
C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][1].txt -> TrackingCookie.Fastclick : No action taken.
C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][1].txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.160:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Findwhat : No action taken.
:mozilla.247:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Goclick : No action taken.
:mozilla.248:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Goclick : No action taken.
:mozilla.215:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Hitslink : No action taken.
:mozilla.216:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Hitslink : No action taken.
:mozilla.217:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Hitslink : No action taken.
:mozilla.218:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Hitslink : No action taken.
C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][1].txt -> TrackingCookie.Hitslink : No action taken.
:mozilla.79:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Mediaplex : No action taken.
:mozilla.80:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Mediaplex : No action taken.
C:\Documents and Settings\Linden Repair\Cookies\[email protected][1].txt -> TrackingCookie.Mediaplex : No action taken.
C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][1].txt -> TrackingCookie.Mediaplex : No action taken.
:mozilla.211:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.212:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.351:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Overture : No action taken.
C:\Documents and Settings\Linden Repair\Cookies\[email protected][2].txt -> TrackingCookie.Overture : No action taken.
C:\Documents and Settings\Linden Repair\Cookies\[email protected][1].txt -> TrackingCookie.Overture : No action taken.
:mozilla.243:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Paycounter : No action taken.
:mozilla.102:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.103:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.104:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.105:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.230:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Qksrv : No action taken.
:mozilla.231:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Qksrv : No action taken.
:mozilla.219:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
:mozilla.220:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
:mozilla.238:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.239:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.240:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.241:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.341:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Targetnet : No action taken.
:mozilla.68:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.69:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.70:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.71:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.72:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.73:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.74:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.75:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
 

·
Registered
Joined
·
8 Posts
Discussion Starter · #4 ·
C:\Documents and Settings\Linden Repair\Cookies\[email protected][2].txt -> TrackingCookie.Trafficmp : No action taken.
C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][1].txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.94:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Tribalfusion : No action taken.
C:\Documents and Settings\Linden Repair\Cookies\[email protected][2].txt -> TrackingCookie.Tribalfusion : No action taken.
C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][2].txt -> TrackingCookie.Tribalfusion : No action taken.
C:\Documents and Settings\Linden Repair\Cookies\linden [email protected][2].txt -> TrackingCookie.Valuead : No action taken.
:mozilla.384:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Webtrendslive : No action taken.
:mozilla.385:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Webtrendslive : No action taken.
:mozilla.92:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.93:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
C:\Documents and Settings\Linden Repair\Cookies\[email protected][2].txt -> TrackingCookie.Yieldmanager : No action taken.
C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][2].txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.201:C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
[632] C:\Documents and Settings\All Users\Documents\Settings\partnership.dll -> Trojan.Agent.oh : No action taken.
C:\RECYCLER\S-1-5-21-1229272821-688789844-682003330-1004\Dc301.exe -> Trojan.Pakes : No action taken.
C:\RECYCLER\S-1-5-21-1229272821-688789844-682003330-1004\Dc302.exe -> Trojan.Pakes : No action taken.
C:\WINDOWS\Temp\win259.tmp.exe -> Trojan.Pakes : No action taken.
C:\WINDOWS\Temp\win31F.tmp.exe -> Trojan.Pakes : No action taken.
C:\System Volume Information\_restore{0FDD7BD3-5121-477C-946C-9AA8EE0355B4}\RP7\A0001360.exe -> Trojan.Sinowal.bh : No action taken.

::Report end
 

·
Banned
Joined
·
5,809 Posts
is avg just anti spyware or the av program too?

only run one av program.
 

·
Registered
Joined
·
8 Posts
Discussion Starter · #6 ·
and finally the panda scan log..

Incident Status Location

Virus:w32/locksky.au.worm Disinfected Operating system
Virus:trj/abwiz.a Not disinfected Operating system
Virus:trj/torpig.a Disinfected Operating system
Hacktool:rootkit/zaqt.a Not disinfected hkey_local_machine\system\currentcontrolset\services\DP1112
Adware:adware/popupsearches Not disinfected Windows Registry
Adware:adware/oemji Not disinfected Windows Registry
Adware:adware/webext Not disinfected Windows Registry
Adware:adware/spysheriff Not disinfected Windows Registry
Adware:adware/secure32 Not disinfected Windows Registry
Adware:adware/beginto Not disinfected Windows Registry
Potentially unwanted tool:application/zango Not disinfected HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8FCDF9D9-A28B-480F-8C3D-581F119A8AB8}
Adware:adware/ist.istbar Not disinfected Windows Registry
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\AIPQ.exe
Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.2o7.net/]
Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.112.2o7.net/]
Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.2o7.net/]
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.atdmt.com/]
Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.realmedia.com/]
Spyware:Cookie/Traffic Marketplace Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.trafficmp.com/]
Spyware:Cookie/Mediaplex Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.mediaplex.com/]
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[ad.yieldmanager.com/]
Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.tribalfusion.com/]
Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.advertising.com/]
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.doubleclick.net/]
Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.advertising.com/]
Spyware:Cookie/PointRoll Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.ads.pointroll.com/]
Spyware:Cookie/FastClick Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.fastclick.net/]
Spyware:Cookie/Bfast Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.bfast.com/]
Spyware:Cookie/Findwhat Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.findwhat.com/]
Spyware:Cookie/CentrPort Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.centrport.net/]
Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.zedo.com/]
Spyware:Cookie/Overture Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.overture.com/]
Spyware:Cookie/Hitslink Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[counter.hitslink.com/]
Spyware:Cookie/WUpd Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.revenue.net/]
Spyware:Cookie/Maxserving Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.maxserving.com/]
Spyware:Cookie/Apmebf Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.apmebf.com/]
Spyware:Cookie/QkSrv Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.qksrv.net/]
Spyware:Cookie/Apmebf Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.apmebf.com/]
Spyware:Cookie/BurstNet Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.burstnet.com/]
Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.serving-sys.com/]
Spyware:Cookie/Bluestreak Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.bluestreak.com/]
Spyware:Cookie/PayCounter Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.paycounter.com/]
Spyware:Cookie/GoClick Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[c.goclick.com/]
Spyware:Cookie/7search Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.7search.com/]
Spyware:Cookie/Com.com Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.com.com/]
Spyware:Cookie/Coremetrics Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.data.coremetrics.com/]
Spyware:Cookie/Rightmedia Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[rightmedia.net/]
Spyware:Cookie/Mammamediasolutions Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.targetnet.com/]
Spyware:Cookie/Overture Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.perf.overture.com/]
Spyware:Cookie/WebtrendsLive Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[statse.webtrendslive.com/S123579]
Spyware:Cookie/did-it Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.did-it.com/]
Spyware:Cookie/bravenetA Not disinfected C:\Documents and Settings\Linden Repair\Application Data\Mozilla\Firefox\Profiles\3nweqwf2.default\cookies.txt[.bravenet.com/]
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\BMEQ.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\CEAO.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\CFKH.exe
Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Linden Repair\Cookies\[email protected][2].txt
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Linden Repair\Cookies\[email protected][2].txt
Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Linden Repair\Cookies\[email protected][1].txt
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Linden Repair\Cookies\[email protected][1].txt
Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\Linden Repair\Cookies\[email protected][1].txt
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Linden Repair\Cookies\[email protected][1].txt
Spyware:Cookie/FastClick Not disinfected C:\Documents and Settings\Linden Repair\Cookies\[email protected][1].txt
Spyware:Cookie/Mediaplex Not disinfected C:\Documents and Settings\Linden Repair\Cookies\[email protected][1].txt
 

·
Registered
Joined
·
8 Posts
Discussion Starter · #7 ·
Spyware:Cookie/Overture Not disinfected C:\Documents and Settings\Linden Repair\Cookies\[email protected][2].txt
Spyware:Cookie/Overture Not disinfected C:\Documents and Settings\Linden Repair\Cookies\[email protected][1].txt
Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Linden Repair\Cookies\[email protected][1].txt
Spyware:Cookie/Traffic Marketplace Not disinfected C:\Documents and Settings\Linden Repair\Cookies\[email protected][2].txt
Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Linden Repair\Cookies\[email protected][2].txt
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\DHEJ.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\DQGL.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\ECKC.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\EHEL.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\ELME.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\EPLN.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\FHEM.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\FNTK.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\GFPU.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\GUBS.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\HTNU.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\ISOQ.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\ITUB.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\JBRH.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\JKCB.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\KKRI.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\LGQJ.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\LLIF.exe
Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][2].txt
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][2].txt
Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][2].txt
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][2].txt
Spyware:Cookie/Bfast Not disinfected C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][1].txt
Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][2].txt
Spyware:Cookie/Hitslink Not disinfected C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][1].txt
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][1].txt
Spyware:Cookie/FastClick Not disinfected C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][1].txt
Spyware:Cookie/FastClick Not disinfected C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][1].txt
Spyware:Cookie/Mediaplex Not disinfected C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][1].txt
Spyware:Cookie/Traffic Marketplace Not disinfected C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][1].txt
Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Linden Repair\Local Settings\Temp\Cookies\linden [email protected][2].txt
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\Local Settings\Temporary Internet Files\Content.IE5\KE0DIEKQ\inst[1].exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\MCHU.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\MDIR.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\MUMG.exe
Adware:Adware/PopupSearches Not disinfected C:\Documents and Settings\Linden Repair\My Documents\SignCut 2002\serial_signcut.exe[²èÇ]
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\NCPA.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\NGDL.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\OBBH.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\OKGJ.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\ONGQ.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\OTIT.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\PUNU.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\QJST.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\REDC.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\SAOQ.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\SCRO.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\SIQI.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\SLJO.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\SRRT.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\TOQF.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\UCKF.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\UFMT.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\UKKH.exe
Adware:Adware/Maxifiles Not disinfected C:\Documents and Settings\Linden Repair\UMDU.exe
Adware:Adware/SystemDoctor Not disinfected C:\RECYCLER\S-1-5-21-1229272821-688789844-682003330-1004\Dc301.exe
Adware:Adware/SystemDoctor Not disinfected C:\RECYCLER\S-1-5-21-1229272821-688789844-682003330-1004\Dc302.exe
Adware:Adware/Maxifiles Not disinfected C:\WINDOWS\system32\DCMK.exe
Adware:Adware/Maxifiles Not disinfected C:\WINDOWS\system32\EHIH.exe
Adware:Adware/Maxifiles Not disinfected C:\WINDOWS\system32\IFPK.exe
Adware:Adware/Maxifiles Not disinfected C:\WINDOWS\system32\KFUC.exe
Adware:Adware/Maxifiles Not disinfected C:\WINDOWS\system32\KUOG.exe
Adware:Adware/Maxifiles Not disinfected C:\WINDOWS\system32\NNMI.exe
Adware:Adware/SystemDoctor Not disinfected C:\WINDOWS\Temp\win259.tmp.exe
Adware:Adware/SystemDoctor Not disinfected C:\WINDOWS\Temp\win31F.tmp.exe
Adware:Adware/PopupSearches Not disinfected Local Folders\Deleted Items\Emailing: serial signcut\serial signcut.exe[²èÇ]
Virus:Trj/Mitglieder.FB Disinfected Local Folders\Deleted Items\price2.zip[09_price.exe]
Virus:Trj/Gagar.CC Disinfected Local Folders\Deleted Items\Wishing You Happiness!\postcard.exe
Adware:Adware/PopupSearches Not disinfected Local Folders\Deleted Items\Emailing: serial signcut\serial signcut.exe[²èÇ]
Adware:Adware/PopupSearches Not disinfected Local Folders\Sent Items\Fw: Emailing: serial signcut\serial signcut.exe[²èÇ]
 

·
Registered
Joined
·
8 Posts
Discussion Starter · #9 ·
when i get the AVG antivirus log posted will this help.. instead of the AVG antispyware.. can the other logs still be used or should i run them again to get new logs.. since i'm gonna be running AVG av..
 
1 - 9 of 9 Posts
Status
Not open for further replies.
Top