Bullguard Antivirus Forum Download A Free Copy Of Bullguard Antivirus Software
Free Antivirus Forum - Learn about antivirus, firewalls and personal security Free Antivirus Forum - Learn about antivirus, firewalls and personal security
 HomeLog InRegisterCommunity CalendarSearch the ForumView The Member ListHelp
Antivirus 2008
   
BullGuard Antivirus Forum > Virus Removal > Removal Help > Antivirus 2008  
Forum Quick Jump
 
New Topic Locked Topic Printable version of : Antivirus 2008
[ << Previous Thread | Next Thread >> ]

Jeminda
New Member


Date Joined May 2008
Total Posts : 7
 
   Posted 5-25-2008 12:15 (GMT +1)    Quote: Antivirus 2008Alert an admin about: Antivirus 2008
Hi All!
 
I need help removing Antivirus 2008 adware virus from my computer. I accidently downloaded it via a bit-torrent.
 
It has locked me out of my C drive, nor can I access Task Manager. My Nortons anti-virus software has been unable to remove it.
 
Below is the log file from Hijack This! Any help would be greatly appreciated.
 
Cheers
Jeminda
 
Logfile of HijackThis v1.99.1
Scan saved at 20:46: VIRUS ALERT!, on 25/05/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16640)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
c:\Program Files\Common Files\Symantec Shared\ccProxy.exe
c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\Program Files\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\windows\system\hpsysdrv.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\WINDOWS\System32\hphmon05.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\Common Files\InterVideo\SchSvr\SchSvr.exe
C:\Program Files\InterVideo\Common\Bin\WinRemote.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE
C:\WINDOWS\system32\rundll32.exe
C:\PROGRA~1\INTERN~2\mum.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe
C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Updates from HP\137903\Program\BackWeb-137903.exe
C:\PROGRA~1\COMMON~1\Nokia\MPAPI\MPAPI3s.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\System32\HPZipm12.exe
C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLLoginProxy.exe
C:\WINDOWS\explorer.exe
C:\Program Files\HP\hpcoretech\comp\hpdarc.exe
C:\Program Files\zabkat\xplorer2_lite\xplorer2_lite.exe
C:\Documents and Settings\Owner\My Documents\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_AU&c=Q304&bd=pavilion&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iesearch&locale=EN_AU&c=Q304&bd=pavilion&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iesearch&locale=EN_AU&c=Q304&bd=pavilion&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://home.netscape.com/home/winsearch.html
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://softwarereferral.com/jump.php?wmid=6010&mid=MjI6Ojg5&lid=2
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://home.netscape.com/home/winsearch200.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://keyword.netscape.com/keyword/%s
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R3 - URLSearchHook: AOLTBSearch Class - {EA756889-2338-43DB-8F07-D1CA6FB9C90D} - C:\Program Files\AOL\AIM Toolbar 5.0\aoltb.dll
O3 - Toolbar: HP view - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\Program Files\HP\Digital Imaging\bin\hpdtlk02.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - c:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: AOL|7 Bar - {80DAB143-0FD4-4758-8DD8-F131515F524A} - C:\PROGRA~1\AOL7\Toolbar\AOLTOO~1.DLL
O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - c:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: AIM Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AIM Toolbar 5.0\aoltb.dll
O3 - Toolbar: gktxaspm - {2890C98D-5959-4A94-A6C2-C59E85462152} - C:\WINDOWS\gktxaspm.dll
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HPHUPD05] c:\Program Files\HP\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe
O4 - HKLM\..\Run: [HPHmon05] C:\WINDOWS\System32\hphmon05.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [Home Theater SchSvr] "C:\Program Files\Common Files\InterVideo\SchSvr\SchSvr.exe"
O4 - HKLM\..\Run: [WINCINEMAMGR] "C:\Program Files\InterVideo\Common\Bin\WinRemote.exe"
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [funk] funk.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE -startup
O4 - HKLM\..\Run: [30bddb6b] rundll32.exe "C:\WINDOWS\system32\eiwbplbo.dll",b
O4 - HKLM\..\Run: [antiviirus] C:\Program Files\antiviirus.exe
O4 - HKCU\..\Run: [BackupNotify] c:\Program Files\HP\Digital Imaging\bin\backupnotify.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Acme.PCHButton] C:\PROGRA~1\HPPAVI~1\Pavilion\XPHWWBS4\plugin\bin\PCHButton.exe
O4 - HKCU\..\Run: [InternodeUsage] C:\PROGRA~1\INTERN~2\mum.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Updates from HP.lnk = C:\Program Files\Updates from HP\137903\Program\BackWeb-137903.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O7 - HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System, DisableRegedit=1
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aim toolbar 5.0\resources\en-us\local\search.html
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: AIM Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AIM Toolbar 5.0\aoltb.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: PokerLeague - {8c4fba92-10a4-4f4c-ad30-0b14ddb1c883} - C:\Documents and Settings\Owner\Start Menu\Programs\PokerLeague\PokerLeague.lnk (HKCU)
O11 - Options group: [INTERNATIONAL] International*
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
O16 - DPF: {05D44720-58E3-49E6-BDF6-D00330E511D3} (StagingUI Object) - http://zone.msn.com/binFrameWork/v10/StagingUI.cab55579.cab
O16 - DPF: {3BB54395-5982-4788-8AF4-B5388FFDD0D8} (MSN Games – Buddy Invite) - http://zone.msn.com/BinFrameWork/v10/ZBuddy.cab55579.cab
O16 - DPF: {5736C456-EA94-4AAC-BB08-917ABDD035B3} (ZonePAChat Object) - http://zone.msn.com/binframework/v10/ZPAChat.cab55579.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1131357741890
O16 - DPF: {80B626D6-BC34-4BCF-B5A1-7149E4FD9CFA} (UnoCtrl Class) - http://zone.msn.com/bingame/zpagames/GAME_UNO1.cab60096.cab
O16 - DPF: {8C279F4E-917E-4CD2-8DF0-D9C73C0CE763} (ZPA_WheelOfFortune Object) - http://zone.msn.com/bingame/zpagames/zpa_wof.cab55579.cab
O16 - DPF: {9BDF4724-10AA-43D5-BD15-AEA0D2287303} (MSN Games – Texas Holdem Poker) - http://sympatico.zone.msn.com/bingame/zpagames/zpa_txhe.cab72909.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://cdn2.zone.msn.com/binFramework/v10/ZIntro.cab56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {CAC181B0-4D70-402D-B571-C596A47D0CE0} (CBankshotZoneCtrl Class) - http://zone.msn.com/bingame/zpagames/zpa_pool.cab56649.cab
O16 - DPF: {DA2AA6CF-5C7A-4B71-BC3B-C771BB369937} (MSN Games – Game Communicator) - http://zone.msn.com/binframework/v10/StProxy.cab55579.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://zone.msn.com/bingame/popcaploader_v10.cab
O16 - DPF: {FF3C5A9F-5A99-4930-80E8-4709194C2AD3} (MSN Games – Backgammon) - http://zone.msn.com/bingame/zpagames/ZPA_Backgammon.cab64162.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O21 - SSODL: DrvKbd - {31821e5e-3318-4fee-b9ef-e273d5ffb853} - C:\WINDOWS\Resources\DrvKbd.dll
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - c:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - c:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
 
 
Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 14290
 
   Posted 5-25-2008 1:32 (GMT +1)    Quote: Antivirus 2008Alert an admin about: Antivirus 2008
Hi Jeminda smile
 
 
 
Please download Combofix:
 
 
And save to the desktop.

Close all other browser windows.
 
 
 
Important-> Temporarily disable your anti-virus, real-time protection before performing a scan. They can interfere with combofix or remove some of its embedded files which may cause "unpredictable results".
 
 
Go to Start->Run and copy/paste: ComboFix /snapshot and hit OK. It should run Combofix.
 
Please note, that once you start combofix you should not click anywhere on the combofix window as it can cause the program to stall. In fact, when combofix is running, do not touch your computer at all and just take a break as it may take a while for it to complete.

 When finished, it will produce a logfile located at C:\combofix.txt.
 

Post the contents of that log in your next reply with a new hijackthis log.
 
Please copy and paste your log files. DO NOT add it as an attachment



NB. If you are using any P2P (file sharing) programs, please remove them before we clean your computer.. We do not clean logs that have P2P applications installed as this can cause reinfection during your cleaning.


Do NOT post your problem in someone elses thread.

Back to Top
 

Jeminda
New Member


Date Joined May 2008
Total Posts : 7
 
   Posted 5-26-2008 9:38 (GMT +1)    Quote: Antivirus 2008Alert an admin about: Antivirus 2008
Hi Touch!

Thanks for your help! It's much appreciated.

I've struck a problem while following your instructions. I'm missing allot of the options that use to be available in the 'Start' menu due to this virus. I'm missing 'Run'; 'All Programs'; 'Control Panel'; Help & Support'; 'My Computer'; and 'My Documents'! I only have 'Set Program Access & Defaults' & 'Turn Off Computer' left in the 'Start' menu.

Is there another way that I can launch 'Combofix' without having to use 'Run'?

Cheers
Jeminda
Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 14290
 
   Posted 5-26-2008 10:04 (GMT +1)    Quote: Antivirus 2008Alert an admin about: Antivirus 2008
Sure, doubleclick on combofix icon. It should run Combofix as well


Do NOT post your problem in someone elses thread.

Back to Top
 

Jeminda
New Member


Date Joined May 2008
Total Posts : 7
 
   Posted 5-26-2008 10:59 (GMT +1)    Quote: Antivirus 2008Alert an admin about: Antivirus 2008
Hi Touch!

Below are the reports logged by Combofix and Hijackthis!

Cheers
Jeminda


ComboFix 08-05-25.3 - Owner 2008-05-26 18:55:43.1 - NTFSx86
Microsoft Windows XP Home Edition 5.1.2600.2.1252.1.1033.18.151 [GMT 10:00]Running from: C:\Documents and Settings\Owner\Desktop\ComboFix.exe
* Created a new restore point
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\Documents and Settings\Owner\Favorites\Error Cleaner.url
C:\Documents and Settings\Owner\Favorites\Privacy Protector.url
C:\Documents and Settings\Owner\Favorites\Spyware&Malware Protection.url
C:\Program Files\antiviirus.exe
C:\Program Files\tmp0.exe
C:\Program Files\tmp1.exe
C:\Program Files\tmp2.exe
C:\WINDOWS\cookies.ini
C:\WINDOWS\gktxaspm.dll
C:\WINDOWS\gnowmebk.dll
C:\WINDOWS\nldfmtapefs.dll
C:\WINDOWS\pxgdslro.dll
C:\WINDOWS\resources\DrvKbd.dll
C:\WINDOWS\system32\818646\818646.dll
C:\WINDOWS\system32\ckcdcmnw.ini
C:\WINDOWS\system32\efcDTLCu.dll
C:\WINDOWS\system32\mcrh.tmp
C:\WINDOWS\system32\oblpbwie.ini
C:\WINDOWS\system32\uCLTDcfe.ini
C:\WINDOWS\system32\uCLTDcfe.ini2

.
((((((((((((((((((((((((((((((((((((((( Drivers/Services )))))))))))))))))))))))))))))))))))))))))))))))))
.

-------\Legacy_NAVAPSVC
-------\Service_navapsvc


((((((((((((((((((((((((( Files Created from 2008-04-26 to 2008-05-26 )))))))))))))))))))))))))))))))
.

2008-05-26 16:52 . 2008-05-26 16:52 90,624 --a------ C:\WINDOWS\system32\wnmcdckc.dll
2008-05-24 21:14 . 2008-05-26 19:13 <DIR> d-------- C:\WINDOWS\system32\818646
2008-05-24 21:14 . 2008-05-24 21:14 149 --a------ C:\345543.bat
2008-05-24 21:14 . 2008-05-24 21:14 110 --a------ C:\818646.bat
2008-05-24 21:13 . 2008-05-24 21:13 <DIR> d-------- C:\Documents and Settings\Owner\Application Data\TmpRecentIcons
2008-05-24 20:05 . 2008-05-24 20:05 <DIR> d-------- C:\Program Files\Enigma Software Group
2008-05-24 15:35 . 2008-05-24 21:09 <DIR> d-------- C:\Program Files\Antivirus 2008 PRO
2008-05-24 14:54 . 2008-05-24 04:50 139,264 --a------ C:\WINDOWS\eope.exe
2008-05-24 14:54 . 2008-05-24 04:51 81,920 --a------ C:\WINDOWS\mdtgkswr.exe
2008-05-24 14:54 . 2008-05-24 14:54 29,312 --a------ C:\WINDOWS\system32\ljJARjiH.dll
2008-05-18 18:24 . 2000-03-29 16:18 139,264 --a------ C:\WINDOWS\system32\Mpeg2Decoder.ax
2008-05-18 18:24 . 2000-03-29 16:18 94,208 --a------ C:\WINDOWS\system32\Mpeg2Parser.ax
2008-05-01 10:38 . 2008-05-13 22:07 268 --ah----- C:\sqmdata19.sqm
2008-05-01 10:38 . 2008-05-13 22:07 244 --ah----- C:\sqmnoopt19.sqm
2008-04-30 21:55 . 2008-05-12 23:36 268 --ah----- C:\sqmdata18.sqm
2008-04-30 21:55 . 2008-05-12 23:36 244 --ah----- C:\sqmnoopt18.sqm
2008-04-29 21:25 . 2008-05-11 22:43 268 --ah----- C:\sqmdata17.sqm
2008-04-29 21:25 . 2008-05-11 22:43 244 --ah----- C:\sqmnoopt17.sqm
2008-04-28 00:09 . 2008-05-11 14:40 268 --ah----- C:\sqmdata16.sqm
2008-04-28 00:09 . 2008-05-11 14:40 244 --ah----- C:\sqmnoopt16.sqm
2008-04-26 15:42 . 2008-05-11 12:46 268 --ah----- C:\sqmdata15.sqm
2008-04-26 15:42 . 2008-05-11 12:46 244 --ah----- C:\sqmnoopt15.sqm

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-05-26 09:21 --------- d-----w C:\Program Files\Common Files\Symantec Shared
2008-05-24 11:09 --------- d-----w C:\Documents and Settings\Owner\Application Data\Azureus
2008-05-24 00:58 --------- d-----w C:\Program Files\PokerLeague
2008-05-21 09:53 --------- d-----w C:\Program Files\mIRC
2008-05-19 11:58 --------- d-----w C:\Documents and Settings\Owner\Application Data\ZoomBrowser EX
2008-05-19 11:57 --------- d-----w C:\Documents and Settings\All Users\Application Data\ZoomBrowser
2008-05-13 01:00 --------- d-----w C:\Documents and Settings\Owner\Application Data\AdobeUM
2008-03-31 07:06 --------- d-----w C:\Documents and Settings\Owner\Application Data\Nokia Multimedia Player
2008-03-31 07:06 --------- d-----w C:\Documents and Settings\Owner\Application Data\Nokia
2008-03-31 07:05 --------- d-----w C:\Documents and Settings\Owner\Application Data\DataLayer
2008-03-31 06:58 --------- d-----w C:\Program Files\DIFX
2008-03-31 06:58 --------- d-----w C:\Documents and Settings\Owner\Application Data\PC Suite
2008-03-31 06:57 --------- d-----w C:\Program Files\Nokia
2008-03-31 06:57 --------- d-----w C:\Program Files\Common Files\PCSuite
2008-03-31 06:57 --------- d-----w C:\Program Files\Common Files\Nokia
2008-03-31 06:57 --------- d-----w C:\Documents and Settings\All Users\Application Data\PC Suite
2008-03-27 08:12 151,583 ----a-w C:\WINDOWS\system32\msjint40.dll
2008-03-27 00:58 --------- d-----w C:\Documents and Settings\Owner\Application Data\Viewpoint
2008-03-26 23:57 --------- d-----w C:\Program Files\Click'N Design 3D (V5)
2008-03-19 09:47 1,845,248 ----a-w C:\WINDOWS\system32\win32k.sys
2008-03-01 13:06 826,368 ----a-w C:\WINDOWS\system32\wininet.dll
2005-10-27 00:51 6,871,966 ----a-w C:\Program Files\Azureus_2.3.0.4_Win32.setup.exe
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{613E416F-BCB6-43AD-B0FC-DF7B0D5A70BF}]
2008-05-24 14:54 29312 --a------ C:\WINDOWS\system32\ljJARjiH.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar]
"{2890C98D-5959-4A94-A6C2-C59E85462152}"= "C:\WINDOWS\gktxaspm.dll" [ ]

[HKEY_CLASSES_ROOT\clsid\{2890c98d-5959-4a94-a6c2-c59e85462152}]
[HKEY_CLASSES_ROOT\gktxaspm.1]
[HKEY_CLASSES_ROOT\TypeLib\{E84E3733-34F2-43F6-BD3A-5A4FD4D67848}]
[HKEY_CLASSES_ROOT\gktxaspm]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"BackupNotify"="c:\Program Files\HP\Digital Imaging\bin\backupnotify.exe" [2004-01-09 01:34 32768]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2004-08-04 17:56 15360]
"Acme.PCHButton"="C:\PROGRA~1\HPPAVI~1\Pavilion\XPHWWBS4\plugin\bin\PCHButton.exe" [2004-04-02 15:20 159744]
"InternodeUsage"="C:\PROGRA~1\INTERN~2\mum.exe" [2008-03-21 12:30 1334272]
"MsnMsgr"="C:\Program Files\Windows Live\Messenger\MsnMsgr.exe" [2007-10-18 11:34 5724184]
"PcSync"="C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe" [2006-04-11 17:52 1409024]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"IMJPMIG8.1"="C:\WINDOWS\IME\imjp8_1\IMJPMIG.exe" [2004-08-04 15:31 208952]
"MSPY2002"="C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe" [2004-02-13 14:12 59392]
"PHIME2002ASync"="C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.exe" [2004-02-12 21:08 455168]
"PHIME2002A"="C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.exe" [2004-02-12 21:08 455168]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe" [2007-09-25 01:11 132496]
"hpsysdrv"="c:\windows\system\hpsysdrv.exe" [1998-05-07 16:04 52736]
"HP Component Manager"="C:\Program Files\HP\hpcoretech\hpcmpmgr.exe" [2003-12-22 15:38 241664]
"HPHUPD05"="c:\Program Files\HP\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe" [2003-08-21 03:23 49152]
"HPHmon05"="C:\WINDOWS\System32\hphmon05.exe" [2003-08-21 03:15 483328]
"KBD"="C:\HP\KBD\KBD.EXE" [2003-02-11 19:02 61440]
"Home Theater SchSvr"="C:\Program Files\Common Files\InterVideo\SchSvr\SchSvr.exe" [2004-03-24 10:30 155648]
"WINCINEMAMGR"="C:\Program Files\InterVideo\Common\Bin\WinRemote.exe" [2004-05-05 19:34 192512]
"Recguard"="C:\WINDOWS\SMINST\RECGUARD.EXE" [2004-04-13 21:43 233472]
"PS2"="C:\WINDOWS\system32\ps2.exe" [2002-10-16 15:57 81920]
"ccApp"="C:\Program Files\Common Files\Symantec Shared\ccApp.exe" [2006-03-09 11:47 71328]
"AGRSMMSG"="AGRSMMSG.exe" [2004-06-29 09:06 88363 C:\WINDOWS\AGRSMMSG.exe]
"NvCplDaemon"="C:\WINDOWS\System32\NvCpl.dll" [2004-02-23 21:43 3026944]
"nwiz"="nwiz.exe" [2004-02-23 21:43 753664 C:\WINDOWS\system32\nwiz.exe]
"Symantec NetDriver Monitor"="C:\PROGRA~1\SYMNET~1\SNDMon.exe" [2005-10-28 19:20 100056]
"OpwareSE2"="C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe" [2003-05-08 12:00 49152]
"AlcxMonitor"="ALCXMNTR.EXE" [2004-09-07 13:47 57344 C:\WINDOWS\ALCXMNTR.EXE]
"funk"="funk.exe" []
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2006-06-11 23:22 180269]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007-04-27 09:41 282624]
"iTunesHelper"="C:\Program Files\iTunes\iTunesHelper.exe" [2007-05-26 12:45 257088]
"PCSuiteTrayApplication"="C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.exe" [2006-04-26 08:29 237568]
"30bddb6b"="C:\WINDOWS\system32\wnmcdckc.dll" [2008-05-26 16:52 90624]

[HKEY_USERS\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Run]
"ALUAlert"="C:\Program Files\Symantec\LiveUpdate\ALUNotify.exe" [2003-08-13 18:38 54472]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
HP Digital Imaging Monitor.lnk - C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe [2003-09-16 12:19:24 237568]
Updates from HP.lnk - C:\Program Files\Updates from HP\137903\Program\BackWeb-137903.exe [2004-04-02 15:04:23 16384]

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\policies\explorer]
"NoToolbarCustomize"= 1 (0x1)
"NoStartMenuMorePrograms"= 1 (0x1)

[hkey_local_machine\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{613E416F-BCB6-43AD-B0FC-DF7B0D5A70BF}"= C:\WINDOWS\system32\ljJARjiH.dll [2008-05-24 14:54 29312]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\ljJARjiH]
ljJARjiH.dll 2008-05-24 14:54 29312 C:\WINDOWS\system32\ljJARjiH.dll

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
"DisableMonitoring"=dword:00000001

[HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
"DisableMonitoring"=dword:00000001

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile]
"EnableFirewall"= 0 (0x0)

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"%windir%\\system32\\sessmgr.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"C:\\Program Files\\iTunes\\iTunes.exe"=
"C:\\Program Files\\Messenger\\msmsgs.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\msnmsgr.exe"=
"C:\\Program Files\\Windows Live\\Messenger\\livecall.exe"=

R2 Viewpoint Manager Service;Viewpoint Manager Service;"C:\Program Files\Viewpoint\Common\ViewpointService.exe" [2007-01-05 07:38]
S3 usb2vcom;Nokia CA-42 USB;C:\WINDOWS\system32\DRIVERS\usb2vcom.sys [2006-04-03 17:41]

*Newly Created Service* - NAVAPSVC
.
Contents of the 'Scheduled Tasks' folder
"2008-05-26 08:46:03 C:\WINDOWS\Tasks\Check Updates for Windows Live Toolbar.job"
- C:\Program Files\Windows Live Toolbar\MSNTBUP.EXE
"2008-05-23 12:08:43 C:\WINDOWS\Tasks\Norton AntiVirus - Scan my computer.job"
- c:\PROGRA~1\NORTON~1\Navw32.exeh/task:
"2008-05-26 09:27:50 C:\WINDOWS\Tasks\Symantec NetDetect.job"
- C:\Program Files\Symantec\LiveUpdate\NDETECT.EXE
.
**************************************************************************

catchme 0.3.1361 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-05-26 19:25:41
Windows 5.1.2600 Service Pack 2 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
--------------------- DLLs Loaded Under Running Processes ---------------------

PROCESS: C:\WINDOWS\system32\winlogon.exe
-> C:\WINDOWS\system32\ljJARjiH.dll

PROCESS: C:\WINDOWS\explorer.exe
-> C:\WINDOWS\system32\wnmcdckc.dll
.
------------------------ Other Running Processes ------------------------
.
C:\Program Files\Common Files\Symantec Shared\CCPROXY.EXE
C:\Program Files\Common Files\Symantec Shared\CCSETMGR.EXE
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\CCEVTMGR.EXE
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
C:\PROGRA~1\COMMON~1\Nokia\MPAPI\MPAPI3s.exe
C:\WINDOWS\system32\hpzipm12.exe
C:\Program Files\Norton AntiVirus\NAVAPSVC.EXE
.
**************************************************************************
.
Completion time: 2008-05-26 19:45:35 - machine was rebooted
ComboFix-quarantined-files.txt 2008-05-26 09:45:19

Pre-Run: 48,650,285,056 bytes free
Post-Run: 49,727,975,424 bytes free

207 --- E O F --- 2008-05-17 05:53:13


Logfile of HijackThis v1.99.1
Scan saved at 19:49: VIRUS ALERT!, on 26/05/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16640)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
c:\Program Files\Common Files\Symantec Shared\ccProxy.exe
c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe
C:\windows\system\hpsysdrv.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\WINDOWS\System32\hphmon05.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\Common Files\InterVideo\SchSvr\SchSvr.exe
C:\Program Files\InterVideo\Common\Bin\WinRemote.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\PROGRA~1\INTERN~2\mum.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Updates from HP\137903\Program\BackWeb-137903.exe
C:\PROGRA~1\COMMON~1\Nokia\MPAPI\MPAPI3s.exe
C:\WINDOWS\System32\HPZipm12.exe
c:\Program Files\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\zabkat\xplorer2_lite\xplorer2_lite.exe
C:\Documents and Settings\Owner\My Documents\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iesearch&locale=EN_AU&c=Q304&bd=pavilion&pf=desktop
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://softwarereferral.com/jump.php?wmid=6010&mid=MjI6Ojg5&lid=2
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://home.netscape.com/home/winsearch200.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://keyword.netscape.com/keyword/%s
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R3 - URLSearchHook: (no name) - {EA756889-2338-43DB-8F07-D1CA6FB9C90D} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {613E416F-BCB6-43AD-B0FC-DF7B0D5A70BF} - C:\WINDOWS\system32\ljJARjiH.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AIM Toolbar 5.0\aoltb.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Web assistant - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - c:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - c:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: HP view - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\Program Files\HP\Digital Imaging\bin\hpdtlk02.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - c:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: AOL|7 Bar - {80DAB143-0FD4-4758-8DD8-F131515F524A} - C:\PROGRA~1\AOL7\Toolbar\AOLTOO~1.DLL
O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - c:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: (no name) - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - (no file)
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: AIM Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AIM Toolbar 5.0\aoltb.dll
O3 - Toolbar: gktxaspm - {2890C98D-5959-4A94-A6C2-C59E85462152} - C:\WINDOWS\gktxaspm.dll (file missing)
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe"
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HPHUPD05] c:\Program Files\HP\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe
O4 - HKLM\..\Run: [HPHmon05] C:\WINDOWS\System32\hphmon05.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [Home Theater SchSvr] "C:\Program Files\Common Files\InterVideo\SchSvr\SchSvr.exe"
O4 - HKLM\..\Run: [WINCINEMAMGR] "C:\Program Files\InterVideo\Common\Bin\WinRemote.exe"
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [funk] funk.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE -startup
O4 - HKLM\..\Run: [30bddb6b] rundll32.exe "C:\WINDOWS\system32\wnmcdckc.dll",b
O4 - HKCU\..\Run: [BackupNotify] c:\Program Files\HP\Digital Imaging\bin\backupnotify.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Acme.PCHButton] C:\PROGRA~1\HPPAVI~1\Pavilion\XPHWWBS4\plugin\bin\PCHButton.exe
O4 - HKCU\..\Run: [InternodeUsage] C:\PROGRA~1\INTERN~2\mum.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Updates from HP.lnk = C:\Program Files\Updates from HP\137903\Program\BackWeb-137903.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aim toolbar 5.0\resources\en-us\local\search.html
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_03\bin\ssv.dll
O9 - Extra button: AIM Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AIM Toolbar 5.0\aoltb.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: PokerLeague - {8c4fba92-10a4-4f4c-ad30-0b14ddb1c883} - C:\Documents and Settings\Owner\Start Menu\Programs\PokerLeague\PokerLeague.lnk (HKCU)
O11 - Options group: [INTERNATIONAL] International*
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: CabBuilder - http://kiw.imgag.com/imgag/kiw/toolbar/download/InstallerControl.cab
O16 - DPF: {05D44720-58E3-49E6-BDF6-D00330E511D3} (StagingUI Object) - http://zone.msn.com/binFrameWork/v10/StagingUI.cab55579.cab
O16 - DPF: {3BB54395-5982-4788-8AF4-B5388FFDD0D8} (MSN Games – Buddy Invite) - http://zone.msn.com/BinFrameWork/v10/ZBuddy.cab55579.cab
O16 - DPF: {5736C456-EA94-4AAC-BB08-917ABDD035B3} (ZonePAChat Object) - http://zone.msn.com/binframework/v10/ZPAChat.cab55579.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1131357741890
O16 - DPF: {80B626D6-BC34-4BCF-B5A1-7149E4FD9CFA} (UnoCtrl Class) - http://zone.msn.com/bingame/zpagames/GAME_UNO1.cab60096.cab
O16 - DPF: {8C279F4E-917E-4CD2-8DF0-D9C73C0CE763} (ZPA_WheelOfFortune Object) - http://zone.msn.com/bingame/zpagames/zpa_wof.cab55579.cab
O16 - DPF: {9BDF4724-10AA-43D5-BD15-AEA0D2287303} (MSN Games – Texas Holdem Poker) - http://sympatico.zone.msn.com/bingame/zpagames/zpa_txhe.cab72909.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (MSN Games - Installer) - http://cdn2.zone.msn.com/binFramework/v10/ZIntro.cab56649.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {CAC181B0-4D70-402D-B571-C596A47D0CE0} (CBankshotZoneCtrl Class) - http://zone.msn.com/bingame/zpagames/zpa_pool.cab56649.cab
O16 - DPF: {DA2AA6CF-5C7A-4B71-BC3B-C771BB369937} (MSN Games – Game Communicator) - http://zone.msn.com/binframework/v10/StProxy.cab55579.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://zone.msn.com/bingame/popcaploader_v10.cab
O16 - DPF: {FF3C5A9F-5A99-4930-80E8-4709194C2AD3} (MSN Games – Backgammon) - http://zone.msn.com/bingame/zpagames/ZPA_Backgammon.cab64162.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\WI1F86~1\MESSEN~1\MSGRAP~1.DLL
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: ljJARjiH - C:\WINDOWS\SYSTEM32\ljJARjiH.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - c:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ServiceLayer - Nokia. - C:\Program Files\Common Files\PCSuite\Services\ServiceLayer.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe
Back to Top
 

Touch
Forum Moderator




Date Joined Jun 2004
Total Posts : 14290
 
   Posted 5-26-2008 12:57 (GMT +1)    Quote: Antivirus 2008Alert an admin about: Antivirus 2008
Open notepad and copy/paste the text in the quote box below into it:
Quote:
-----------------------------------------------------
KILLALL::
 
Snapshot::
 
File::
C:\WINDOWS\system32\wnmcdckc.dll
C:\345543.bat
C:\818646.bat
C:\WINDOWS\eope.exe
C:\WINDOWS\mdtgkswr.exe
C:\WINDOWS\system32\ljJARjiH.dll

C:\Program Files\Azureus_2.3.0.4_Win32.setup.exe
C:\WINDOWS\system32\ljJARjiH.dll
 
 
Folder::
C:\Program Files\Antivirus 2008 PRO
C:\Documents and Settings\Owner\Application Data\Azureus
C:\Documents and Settings\Owner\Application Data\Viewpoint
C:\Program Files\Viewpoint

 
Registry::
[-HKEY_CLASSES_ROOT\clsid\{2890c98d-5959-4a94-a6c2-c59e85462152}]
[-HKEY_CLASSES_ROOT\gktxaspm.1]
[-HKEY_CLASSES_ROOT\TypeLib\{E84E3733-34F2-43F6-BD3A-5A4FD4D67848}]
[-HKEY_CLASSES_ROOT\gktxaspm]
 
----------------------------------------------
 
Save this as CFScript.txt
 
 
At this point, You MUST EXIT ALL BROWSERS NOW before continuing!
Referring to the picture above, drag CFScript.txt into ComboFix.exe.
ComboFix will now run a scan on your system.
It may reboot your system when it finishes. This is normal.
 
 
Post new hijackthis log along with fresh combofix log
 


Do NOT post your problem in someone elses thread.

Back to Top
 

Jeminda
New Member


Date Joined May 2008
Total Posts : 7
 
   Posted 5-26-2008 2:32 (GMT +1)    Quote: Antivirus 2008Alert an admin about: Antivirus 2008
Hi Touch!
Have completed your latest instructions. Reports below.
Still show signs of infection. Still unable to access computer's C drive. Have 'VIRUS ALERT' showing after the clock on the computer (ie: 23:26: VIRUS ALERT! ).
Cheers
Jeminda


ComboFix 08-05-25.3 - Owner 2008-05-26 22:08:56.2 - NTFSx86
Microsoft Windows XP Home Edition  5.1.2600.2.1252.1.1033.18.198 [GMT 10:00]
Running from: C:\Documents and Settings\Owner\Desktop\ComboFix.exe
Command switches used :: C:\Documents and Settings\Owner\My Documents\CFScript.txt
 * Created a new restore point
FILE ::
C:\345543.bat
C:\818646.bat
C:\Program Files\Azureus_2.3.0.4_Win32.setup.exe
C:\WINDOWS\eope.exe
C:\WINDOWS\mdtgkswr.exe
C:\WINDOWS\system32\ljJARjiH.dll
C:\WINDOWS\system32\wnmcdckc.dll
.
(((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
.
C:\345543.bat
C:\818646.bat
C:\Documents and Settings\Owner\Application Data\Azureus
C:\Documents and Settings\Owner\Application Data\Azureus\.keystore
C:\Documents and Settings\Owner\Application Data\Azureus\active\A87D99744FD9B260DC2341D3A655B774AE75134F.dat
C:\Documents and Settings\Owner\Application Data\Azureus\azureus.config
C:\Documents and Settings\Owner\Application Data\Azureus\azureus.statistics
C:\Documents and Settings\Owner\Application Data\Azureus\dht\addresses.dat
C:\Documents and Settings\Owner\Application Data\Azureus\dht\contacts.dat
C:\Documents and Settings\Owner\Application Data\Azureus\dht\diverse.dat
C:\Documents and Settings\Owner\Application Data\Azureus\downloads.config
C:\Documents and Settings\Owner\Application Data\Azureus\logs\debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1130763001250_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1130893324046_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1131523128156_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1132100661656_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1132150095328_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1132903250703_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1133489044937_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1137118803491_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1137118929054_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1137119032569_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1141526886234_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1142169411421_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1143299139640_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1143469072031_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1158419478234_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1158911888406_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1159612788984_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1160224922156_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1160837070843_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1160837070843_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1162012856312_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1162012856312_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1162024235671_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1162637779062_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1162730223468_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1162730223468_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1163251889484_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1163251889484_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1163843743843_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1163843743843_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1165147241562_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1165147241562_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1170467208408_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1170467208408_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1172573979265_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1175169884765_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1175169884765_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1178936153015_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1178940434140_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1178974844312_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1179150064609_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1179384592125_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1180946874562_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1181229121359_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1181521864718_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1182497043625_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1183980931421_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1184466958562_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1184466958562_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1184475334234_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1184475362703_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1184651284109_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1186548103609_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1187152861234_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1187251501625_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1187420973140_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1187680279890_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1188046641671_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1188046641671_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1190715134312_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1190715134312_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1191029797140_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1191029797140_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1192609611375_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1192609611375_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1192692755714_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1193134514156_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1193134514156_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1193731335296_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1194064924093_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1195644385614_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1195644385614_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1196683156093_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1196683156093_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1196763118234_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1196763118234_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1200304463265_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1200304463265_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1203590651896_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1203590651896_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1203844732828_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1203844732828_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1204332794468_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1204332794468_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1210467231343_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1210467231343_debug_2.log
C:\Documents and Settings\Owner\Application Data\Azureus\logs\save\1211187608734_debug_1.log
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\-~mininova.org~-_Heroes_S02E11_HDTV_XviD-LOL.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\-=mininova.org=-_The_Bourne_Ultimatum[2007]DvDrip_AC3[Eng]-FXG.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\..${}!!.!&chown..&$old.I.Am.!Legend.2007.£DVD_SCR_[ENG].XviD.iMBT_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[AiA I-Z] Macross Frontier 04.mp4.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[AiA_I-Z]_Macross_Frontier_03.mp4_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[Gattai]_Macross_Frontier_-_02_[1280x720_h264]_[A406A2E6].mkv_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[Gattai]_Macross_Frontier_-_06_[1280x720_h264]_[EB77EC7C].mkv_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt] Alias[1].S05E01.HDTV.XviD-LOL.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt] Battlestar Galactica The Resistance Webisode 1-4.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt] battlestar[1].galactica.s02e13.ws.dsr.xvid-omicron.[VTV].avi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt] Battlestar[1].Galactica.S02E17.WS.DSR.XviD-LOKi.avi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt] Battlestar[1].Galactica.S03E04.WS.DSR.XviD-ORENJi.avi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt] battlestar[1].galactica.s03e06.ws.dsr.xvid-orenji.[VTV].avi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt] Battlestar[1].Galactica.S03E07.DSR.XviD-ORENJi.avi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt] Battlestar[1].Galactica.S03E08.WS.DSR.XviD-ORENJi.avi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt] Battlestar[1].Galactica.S03E09.WS.DSR.XviD-ORENJi.avi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt] Battlestar[1].Galactica.S03E10.WS.DSR.XviD-ORENJi.avi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt] Lost[1].s02e06.hdtv.720p-HQ.xvid-int.avi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt] Lost[1].S02E06.HDTV.XviD-CRiMSON.rar.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt] Lost[1].S02E06.HDTV.XviD-IPS.avi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt] the[1].west.wing.706.hdtv-lol.[VTV].avi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt] the[1].west.wing.s07e05.hdtv.xvid-tcm.[VTV].avi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt] the[1].west.wing.s07e07.hdtv.xvid-tcm.[VTV].avi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_[torrential_ws]_Flash_Gordon_S01E01_WS_DSR_XviD-W4F_[smaragdtorrent.to].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Battlestar.Galactica.Razor.2007.DVDSCR.XviD.iNT-TD.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Battlestar.Galactica.Razor.DVDSCR.XViD-HooKah_[www.NewTorrents.info].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Battlestar.Galactica.S04E06.READNFO.HDTV.XviD-0TV.[eztv].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Bionic.Woman.S01E01.PROPER.HDTV.XviD-STFU.avi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Bionic.Woman.S01E04.HDTV.XviD-XOR.avi.1233237.SN.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Bionic_Woman_S01E05_HDTV_XviD-XOR_[smaragdtorrent.to].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Blade_Season_1.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Donnie_Darko_-_Soundtrack_&_Score_(2cd).torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Dreamwave_Transformers.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Flash.Gordon.2007.S01E04.WS.DSRip.XviD-aAF.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Flash.Gordon.2007.S01E05.WS.DSRip.XviD-aAF.[eztv].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Flash_Gordon_S01E02_WS_DSR_XviD-SYS_[eztv]_[smaragdtorrent.to].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Harry.Potter.And.The.Goblet.Of.Fire.2005.720p.nHD.x264.AAC.NhaNc.3757996.TPB.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Heroes.S02E01.HDTV.XviD-XOR.1174216.SN.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Heroes.S02E05.HDTV.XviD-LOL_[www.NewTorrents.info].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Heroes.S02E06.HDTV.XviD-LOL.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Heroes.s02e07.VOSTF.by.Crystall.avi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Heroes_S02E04_VOSTFR_HDTV_XviD-ELiTE_[smaragdtorrent.to].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Pirates.of.the.Caribbean-Dead.Mans.Chest[2006]DvDrip[Eng]-aXXo_[www.NewTorrents.info].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Pirates.of.the.Caribbean.At.Worlds.End.TS.XViD-mVs_[_www.torrentat.org_].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Smallville.S07E05.HDTV.XviD-XOR.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Spiderman.3.(2007).HR.DVDRip.XviD-LaR.1122166.SN.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Tin.Man.Part.2.HDTV.Xvid.H_[www.NewTorrents.info].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Transformers[2007]PROPER.DvDrip[Eng].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Transformers_Office_Movie_Prequel___Adaptation_(Complete).3729121.TPB.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Transformers_UK.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_womens.murder.club.108.hdtv-lol.[VTV].avi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[isoHunt]_Womens.Murder.Club.S01E01.HDTV.XViD-Caph.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[Seiyan]_Macross-Frontier_01_(english_subbed_xvid).avi_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[Tact]_Robotech.The.Shadow.Chronicles.2006.DVDRip.XviD_-_FF_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[torrential.ws]_Heroes.S02E01.HDTV.XviD-XOR.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\[Zero-Raws]_Macross_FRONTIER_07_(MBS_x264+AAC_16_9_1440x1080).mp4_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\_-=mininova.org=-_The_Bourne_Ultimatum[2007]DvDrip_AC3[Eng]-FXG.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\_-mininova.org-__Tin.Man.Part.2.PROPER.HDTV.XViD-WPi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\_[isoHunt] Battlestar Galactica The Resistance Webisode 1-4.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\_[isoHunt]_Dreamwave_Transformers.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\_[isoHunt]_Flash.Gordon.2007.S01E04.WS.DSRip.XviD-aAF.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\_[isoHunt]_Heroes.S02E01.HDTV.XviD-XOR.1174216.SN.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\_[isoHunt]_Transformers_UK.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\__[isoHunt] Battlestar Galactica The Resistance Webisode 1-4.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\__Lost 2x10 (HDTV-LOL) [VTV].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\_=mininova.org=_Ocean's.13[2007]DvDrip[Eng]-aXXo.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\_Alias 5x02 (HDTV-LOL)[VTV].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\_Battlestar Galactica - The Resistance Webisode 3 [www iPodNova net].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\_Battlestar Galactica S03E05 WS DSR XviD-CRiMSON [eztv].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\_DORA_THE_EXPLORER_-__FAIRYTALE_ADVENTURE_i....torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\_Fantastic_Four_Rise_of_the_Silver_Surfer_-_2007_XviD_DVDrip_-FaCadE.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\_Heroes_-_HEROES_S01E01-13_HDTV_XviD-LOL_FQM_SAiNTS_FPN.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\_Lost 2x10 (HDTV-LOL) [VTV].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\_Lost.S04E08.HDTV.XViD-DOT.[eztv]_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\_The.Bourne.Identity.2002.DVDRip.AC3.XviD.iNT-PFa.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\_Tin.Man.Part.2.HDTV.XviD-TiNMaN.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\{mininova.org}_Tin.Man.Part.3.HDTV.XviD-TiNMaN.[eztv].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\=mininova.org=_Ocean's.13[2007]DvDrip[Eng]-aXXo.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\10,000_BC[2008]R5_DvDrip_AC3[Eng]-FXG_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\24_S06E01_HR_HDTV_XviD-CTU_[eztv].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\24_s06e24_hdtv_xvid-lol_[eztv].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\3_10_to_Yuma[2007]DvDrip[Eng]-FXG_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\300.DVDRip.XviD-NEPTUNE.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\ACDC_-_Live_Collector's_Edition_[Remastered_2003].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Alan_Jackson_-_Greatest_Hits_Volume_II.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Alias 5x01 (HDTV-LOL) [VTV].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Alias 5x02 (HDTV-LOL)[VTV].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Alias S05E01 HDTV XviD-LOL-[BTC].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Ashley_Tisdale-Headstrong_RETAIL___2_Bonus_Tracks_(190_VBR_LAME).torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Avril_Lavigne_-_The_Best_!!!!_Thing_(2...torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\avril_lavigne_girlfriend.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\AZU22001.tmp
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\AZU2429.tmp
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\AZU31333.tmp
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\AZU4498.tmp
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\AZU45502.tmp
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\AZU47971.tmp
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\AZU49152.tmp
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Batman.Begins.DVDRip.XviD.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar Galactica - BattleStar Galactica The Resistance Webisode 04 [www iPodNova net].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar Galactica - Battlestar Galactica The Resistance Webisode 07.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar Galactica - Battlestar Galactica The Resistance Webisode 09 3533426 TPB.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar Galactica - Battlestar Galactica The Resistance Webisode 1.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar Galactica - The Resistance Webisode 3 [www iPodNova net].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar Galactica - webisode 08.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar Galactica - Webisode 5.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar Galactica - webisode 6.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar Galactica 2x11 (DSRip-LOKi) [VTV].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar Galactica 2x12 (DSRip-LOKi) [VTV].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar Galactica 2x19 (DSRip-ORENJi)[VTV].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar Galactica 2x19 DSVCD [BL].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar Galactica 3x03 (DSRip-KYR)[VTV].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar Galactica S02E20 DSR XviD-XOR [eztv].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar Galactica S03E01 WS DSR XviD-OMiCRON [eztv].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar Galactica S03E02 WS DSR XviD-OMiCRON [eztv].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar Galactica S03E05 WS DSR XviD-CRiMSON [eztv].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\battlestar galactica s03e05 ws dsr xvid-crimson [TPB].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar Galactica S03E06 PROPER WS DSR XviD-CRiMSON.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar Galactica S03E11 WS DSR XviD-ORENJi avi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar Galactica The Resistance Webisode 10 [www iPodNova net].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar.Galactica.Razor.2007.DVDSCR.XviD_-_[TESTER].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar.Galactica.Razor.2007.UNRATED.EXTENDED.DVDRip.XviD-WAT_{_www.IPTorrents.com_}_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar.Galactica.Revealed.WS.DSRip.XviD-aAF.[eztv]_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar.Galactica.S03E13.WS.DSR.XviD-ORENJi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar.Galactica.S04E01.HDTV.XviD-LOL.[eztv]_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar.Galactica.S04E02.HDTV.XviD-LOL.[eztv]_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar.Galactica.S04E03.The.Ties.That.Bind.HDTV.XviD-FQM.[eztv]_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar.Galactica.S04E04.Escape.Velocity.HDTV.XviD-FQM.[eztv]_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar.Galactica.S04E05.The.Road.Less.Travelled.HDTV.XviD-FQM.[eztv]_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar.Galactica.S04E07.Guess.Whats.Coming.to.Dinner.HDTV.XviD-FQM.[eztv]_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar.Galactica.The.Phenomenon.WS.DSRip.XviD-aAF.[eztv]_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\battlestar[1].galactica.216.ws.dsr-loki.[VTV].avi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar[1].Galactica.S02E14.WS.DSR.XviD-UMD.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar[1].Galactica.S02E15.WS.DSR.XviD-LOKi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar[1].Galactica.S02E18.WS.DSRip.XviD-SFM.[VTV].avi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar[1].Galactica.S02E19.Lay.Down.Y...torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\BattleStar[1].Galactica.The.Resistance.Webisode.04.[www.iPodNova.net].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar_Galactica_-_Battlestar_Galactica_S03E12_WS_DSRip_XviD-aAF.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar_Galactica_-_Battlestar_Galactica_S03E15_WS_DSR_XviD-ORENJi_CORETORRENTS_.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar_Galactica_3x14_(DSRip-ORENJi)[VTV].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar_Galactica_3x16_(DSRip-ORENJi)[VTV].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar_galactica_3x18_(dsrip-orenji)[vtv].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar_Galactica_3x19_(DSRip-PROPER-2SD)_[VTV].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar_galactica_s03e17_ws_dsr_xvid-orenji_[eztv].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Battlestar_galactica_s03e20_ws_dsr_xvid-orenji_[eztv].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Bee_Movie[2007]DvDrip[Eng]-FXG_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Bee_Movie_[2007]_DVDSCR_XviD-PUKKA_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Beowulf[2007]DvDrip[Eng]-FXG_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Bionic.Woman.S01E04.HDTV.XviD-XOR.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Bionic.Woman.S01E05.HDTV.XviD-XOR.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Bionic_Woman_S01E01_HDTV_XviD-NoTV_[eztv].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\bionic_woman_s01e02_hdtv_xvid_xor.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Bionic_Woman_S01E03_HDTV_XviD-XOR_[eztv].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Bionic_Woman_S01E06_HR_HDTV_XviD-2HD_[eztv].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Bionic_Woman_S01E07_HDTV_XviD-LOL_[eztv].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Black_Hawk_Down_(2001)_[ENG]_[DVDrip].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Blade.The.Series.S01E01.HDTV.XviD-SYS.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Blades.Of.Glory.DVDRip.XviD-DoNE_[MovieX].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Bon_Jovi_-_MTV_Unplugged-June_2007_www.pnworld.biz.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Borat[2006]DvDrip.AC3[Eng]-aXXo_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Burn_Notice_(Season_1_Complete)_XviD-mE_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Cloverfield.DVDRip.XviD-DiAMOND.[www.UsaBit.com]_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\COLDPLAY_-_Live_2003.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Conspiracy[2008]DvDrip[Eng]-aXXo_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\d-mininova.org-b__Tin.Man.Part1.DSR.XviD-iHT.[eztv].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Diamond.Dogs[2007]DvDrip[Eng]-aXXo_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Die_Hard_4_(2007)_DVDRip_XviD.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Dixie_Chicks_All_Four_Studio_Albums.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\DORA_THE_EXPLORER_-__FAIRYTALE_ADVENTURE_i....torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Dora_The_Explorer__Meet_Diego.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Dragon_Wars[2007]DvDrip[Eng]-FXG_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Earth_vs_The_Flying_Saucers_(1956)_DVDRip_(SiRiUs_sHaRe)_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Fantastic.4.Rise.Of.The.Silver.Surfer_-_DVD_Quality_-_Sample_Inc.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Fantastic.Four-Rise.Of.The.Silver.Surfer[2007]DvDrip.AC3[Eng]-aXXo_^mininova.org^.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Fantastic_Four_Rise_of_the_Silver_Surfer_-_2007__DVDrip_-GNC.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Fantastic_Four_Rise_of_the_Silver_Surfer_-_2007__DVDrip_-mVs_-[ScOR].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Fantastic_Four_Rise_of_the_Silver_Surfer_-_2007_XviD_DVDrip_-FaCadE.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Fantastic_Four_Rise_of_the_Silver_Surfer_-_2007_XviD_DVDrip_-MiMicK.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Fantastic_Four_Rise_of_the_Silver_Surfer_2007_DVDrip_XviD_[mVs]_-BTMon.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Fantastic_Four_Rise_Of_The_Silver_Surfer_avi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Fergie_-_The_Dutchess_[2006][CD_SkidVid_Cov]192Kbps.3530185.TPB_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Firefly_Season_1_Complete_DvdRip_Ac3.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Flags.Of.Our.Fathers[2006]DvDrip[Eng]-aXXo_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Flash.Gordon.2007.S01E03.DSR.XviD-XOR.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Flash.Gordon.2007.S01E04.WS.DSRip.XviD-aAF.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Flash.Gordon.S01E07.DSR.XviD-NoTV.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\flash_gordon_s01e06_dsr_xvid-notv_[eztv].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Foo_Fighters_-_Times_Like_These_(Live_Earth).avi.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Foo_Fighters_Live_Roswell_N.M._2005.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Gabriella_Cilmi_-_Lessons_To_Be_Learned_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Garth_Brooks_The_Limited_Edition_6_CD_Collection_Mental_RG.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Gary_Jules_-_Mad_World_(Donnie_Darko.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Ghost.Rider[2007]DvDrip[Eng]-aXXo_[mininova].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Good_Charlotte_-_Good_Morning_Revival_[2007][www.emwreloaded.com].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Gwen_Stefani_-_The_Sweet_Escape.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Hairspray[2007]DvDrip[Eng]-FXG_^mininova.org^.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Harry.Potter.And.The.Order.Of.The.Phoenix.2007.DVDRip.XviD-FLAiTE.torrent
C:\Documents and Settings\Owner\Application Data\Azureus\torrents\Harry_Potter_and_the_Chamber_of_Secrets_(2002)_[ENG]_[DVDrip].torrent
C:\Documents and Settings\Owner\Application Data\Azureus\tor