Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Infected with Internet Security Pro


  • This topic is locked This topic is locked
20 replies to this topic

#1 sohcrates

sohcrates

  • Members
  • 24 posts
  • OFFLINE
  •  
  • Local time:03:25 AM

Posted 24 June 2013 - 09:44 AM

Hello, and thank you in advance for your help.  I recently became infected with the Internet Security Pro virus/trojan.  I followed the directions in this post:  http://www.bleepingcomputer.com/virus-removal/remove-internet-security-2012 in your forums.  I was able to run MBAM in safe mode.  I did so several times, and most of the virus seems to be gone.  I can now open executables and the virus has stopped showing me popup alerts. It has also stopped running its automatic scan when I start the computer.  

 

I disconnected the computer from the network immediately when I detected the problem, and it has only been reconnected to allow MBAM to update and recently to check for internet redirects.  

 

Now the computer is behaving normally, except for Microsoft Security Essentials and the firewall.  I can browse the internet without redirects and I can open programs, including MBAM.  When I run MBAM now, it finds nothing in its full scan.  

 

When I try to open MSE, I get an error message stating that the file can not be accessed by the system.  If I try to reinstall it, the install fails.  If I try to access the windows firewall, I get an error message stating "Due to an unidentified problem, Windows cannot display Windows Firewall settings."

 

I once again disconnected the computer from the network.

 

I have enclosed my DDS log and attached the attach.text.  

 

Please help me finish eradicating this beast. 

 

Thank you in advance

 

Ethan

 

 

DDS (Ver_2012-11-20.01) - NTFS_x86 
Internet Explorer: 8.0.6001.18702
Run by Ethan Maniatis at 9:20:05 on 2013-06-24
Microsoft Windows XP Professional  5.1.2600.3.1252.1.1033.18.3326.2855 [GMT -4:00]
.
AV: Microsoft Security Essentials *Enabled/Updated* {EDB4FA23-53B8-4AFA-8C5D-99752CCA7095}
.
============== Running Processes ================
.
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Windows Home Server\esClient.exe
C:\Program Files\Windows Home Server\WHSConnector.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\mcrdsvc.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\WINDOWS\System32\svchost.exe -k netsvcs
C:\WINDOWS\system32\svchost.exe -k NetworkService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\system32\svchost.exe -k LocalService
C:\WINDOWS\System32\svchost.exe -k HTTPFilter
.
============== Pseudo HJT Report ===============
.
uStart Page = hxxp://www.google.com/
BHO: Adobe PDF Link Helper: {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
BHO: BrowserHelper Class: {9A065C65-4EE7-4DDD-9918-F129089A894A} - c:\program files\windows home server\WHSDeskBands.dll
TB: Home Server Banner: {D73E76A3-F902-45BD-8FC8-95AE8E014671} - c:\program files\windows home server\WHSDeskBands.dll
uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
mRun: [ehTray] c:\windows\ehome\ehtray.exe
mRun: [SoundMan] SOUNDMAN.EXE
mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
mRun: [Adobe ARM] "c:\program files\common files\adobe\arm\1.0\AdobeARM.exe"
mRun: [MSC] "c:\program files\microsoft security client\msseces.exe" -hide -runkey
mRunOnce: [AvgUninstallURL] cmd.exe /c start http://www.avg.com/ww.special-uninstallation-feedback-appf?lic=OQBBAFYARgBSAEUARQAtAFYATgBKADMAMgAtAEcAMwBMAEEAQQAtAEEANAA4ADkAUgAtADkAVQBKAEsARgAtAEUASwBLADMAWAA"&"inst=NwA3AC0AMwA5ADEAMgA2ADgAMAA5ADYALQBUAEIAOQArADIALQBGAEwAKwA5AC0AWABPADMANgArADEALQBGADkATQA3AEMAKwA1AC0ARgA5AE0AMQAwAEIAKwAyAC0AWABPADkAKwAxAC0ARgA5AE0AMgArADEALQBEAEQAVAArADEAMQA0ADgAMgAtAEQARAA5ADAARgArADEALQBTAFQAOQAwAEYAQQBQAFAAKwAxAC0ARgA5ADAATQAxADIAQQBUACsAMQAtAEYAOQAwAE0AMQAyAEEAKwAxAC0ARgA5ADAATQAxADIAQQBCACsAMQAtAFUAOQA1ACsAMQAtAEYAOQAwAE0AMQAyAEEAVABCAE4AKwAxAA"&"prod=90"&"ver=9.0.894
StartupFolder: c:\docume~1\ethanm~1\startm~1\programs\startup\shortc~1.lnk - c:\program files\homeseer hs2\HomeSeer.exe
StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\window~1.lnk - c:\windows\installer\{21e49794-7c13-4e84-8659-55bd378267d5}\WHSTrayApp.exe
uPolicies-Explorer: NoDriveTypeAutoRun = dword:145
mPolicies-Windows\System: Allow-LogonScript-NetbiosDisabled = dword:1
mPolicies-Explorer: NoDriveTypeAutoRun = dword:145
IE: Google Sidewiki... - c:\program files\google\google toolbar\component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html
IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
.
INFO: HKCU has more than 50 listed domains.
If you wish to scan all of them, select the 'Force scan all domains' option.
.
.
INFO: HKLM has more than 50 listed domains.
   If you wish to scan all of them, select the 'Force scan all domains' option.
.
DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://go.microsoft.com/fwlink/?linkid=39204
DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxp://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Hosts: 127.0.0.1 www.spywareinfo.com
.
============= SERVICES / DRIVERS ===============
.
R0 MpFilter;Microsoft Malware Protection Driver;c:\windows\system32\drivers\MpFilter.sys [2010-10-24 195296]
R2 esClient;Windows Media Center Client Service;c:\program files\windows home server\esClient.exe [2011-1-10 97136]
R2 McrdSvc;Media Center Extender Service;c:\windows\ehome\mcrdsvc.exe [2005-8-5 99328]
R2 ousbehci;OrangeWare USB Enhanced Host Controller Service;c:\windows\system32\drivers\ousbehci.sys [2010-10-4 45440]
R2 WHSConnector;Windows Home Server Connector Service;c:\program files\windows home server\WHSConnector.exe [2011-1-10 376688]
R3 ousb2hub;OrangeWare USB 2.0 Root Hub Support;c:\windows\system32\drivers\ousb2hub.sys [2010-10-4 56960]
R3 oxmep;OXPCI support driver;c:\windows\system32\drivers\oxmep.sys [2007-6-25 6656]
R3 oxmf;OXPCI Bus enumerator;c:\windows\system32\drivers\oxmf.sys [2007-6-25 23552]
R3 Oxmfuf;Filter driver for OX16PCI95x ports;c:\windows\system32\drivers\oxmfuf.sys [2007-6-25 7168]
R3 oxser;OX16C95x Serial port driver;c:\windows\system32\drivers\oxser.sys [2007-6-25 72704]
.
=============== Created Last 30 ================
.
2013-06-22 17:20:24 -------- d-----w- c:\documents and settings\ethan maniatis\application data\Malwarebytes
2013-06-22 17:20:16 -------- d-----w- c:\documents and settings\all users\application data\Malwarebytes
2013-06-22 17:20:15 22856 ----a-w- c:\windows\system32\drivers\mbam.sys
2013-06-22 17:20:15 -------- d-----w- c:\program files\Malwarebytes' Anti-Malware
2013-06-21 21:10:54 7068072 ----a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\{7967e309-f1ac-4064-8f51-361cda11cc26}\mpengine.dll
2013-06-20 07:54:41 7068072 ----a-w- c:\documents and settings\all users\application data\microsoft\microsoft antimalware\definition updates\backup\mpengine.dll
.
==================== Find3M  ====================
.
2013-05-07 22:30:06 920064 ----a-w- c:\windows\system32\wininet.dll
2013-05-07 22:30:05 43520 ----a-w- c:\windows\system32\licmgr10.dll
2013-05-07 22:30:05 1469440 ------w- c:\windows\system32\inetcpl.cpl
2013-05-07 21:53:29 385024 ----a-w- c:\windows\system32\html.iec
2013-05-03 01:30:20 2149888 ----a-w- c:\windows\system32\ntoskrnl.exe
2013-05-03 00:38:17 2028544 ----a-w- c:\windows\system32\ntkrnlpa.exe
2013-05-02 15:28:50 238872 ------w- c:\windows\system32\MpSigStub.exe
2013-04-22 14:05:58 1072544 ----a-w- c:\windows\system32\nvdrsdb0.bin
2013-04-22 14:05:58 1 ----a-w- c:\windows\system32\nvdrssel.bin
2013-04-22 14:05:55 1072544 ----a-w- c:\windows\system32\nvdrsdb1.bin
2013-04-10 01:31:19 1876352 ----a-w- c:\windows\system32\win32k.sys
.
============= FINISH:  9:20:17.17 ===============
 

 

Attached Files



BC AdBot (Login to Remove)

 


#2 TB-Psychotic

TB-Psychotic

  • Malware Response Team
  • 6,349 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:08:25 AM

Posted 24 June 2013 - 12:23 PM

Hi there,
my name is Marius and I will be assisting you with your Malware related problems.

Before we move on, please read the following points carefully.
  • First, read my instructions completely. If there is anything that you do not understand kindly ask before proceeding.
  • Perform everything in the correct order. Sometimes one step requires the previous one.
  • If you have any problems while you are follow my instructions, Stop there and tell me the exact nature of your problem.
  • Do not run any other scans without instruction or Add/ Remove Software unless I tell you to do so. This would change the output of our tools and could be confusing for me.
  • Post all Logfiles as a reply rather than as an attachment unless I specifically ask you. If you can not post all logfiles in one reply, feel free to use more posts.
  • If I don't hear from you within 3 days from this initial or any subsequent post, then this thread will be closed.
  • Stay with me. I will give you some advice about prevention after the cleanup process. Absence of symptoms does not always mean the computer is clean.
  • My first language is not english. So please do not use slang or idioms. It could be hard for me to read. Thanks for your understanding.
Please download Malwarebytes Anti-Rootkit from here Malwarebytes : Malwarebytes Anti-Rootkit and save it to your desktop.

Be sure to print out and follow the instructions provided on that same page.

Caution: This is a beta version so please be sure to read the disclaimer and back up any important data before using.
  • Double click the mbar.zip file to open it, then 'Extract all files'.
  • Double click the mbar folder to open it, then double click mbar.exe to start the tool.
Check for Updates, then Scan your system for malware

If malware is found, do NOT press the Cleanup button yet. Click EXIT.

I'd like to see the log first so I can see what it sees. You'll find the log in that mbar folder as MBAR-log-<date and time>***.txt . Please attach that to your next reply.
Proud Member of UNITE & TB
 
My help is free, however, if you want to support my fight against malware, click here --> btn_donate_SM.gif <--(no worries, every little bit helps)

#3 sohcrates

sohcrates
  • Topic Starter

  • Members
  • 24 posts
  • OFFLINE
  •  
  • Local time:03:25 AM

Posted 24 June 2013 - 03:32 PM

Hello and thank you Marius.

 

I did as you instructed and here is the log.  It wasn't named as you predicted.  It was just named system-log, but I think that's it.  I haven't allowed the program to do any cleaning yet.  I will await your instructions.  Thank you

 

---------------------------------------
Malwarebytes Anti-Rootkit BETA 1.06.0.1004
 
© Malwarebytes Corporation 2011-2012
 
OS version: 5.1.2600 Windows XP Service Pack 3 x86
 
Account is Administrative
 
Internet Explorer version: 8.0.6001.18702
 
File system is: NTFS
Disk drives: C:\ DRIVE_FIXED
CPU speed: 2.000000 GHz
Memory total: 3488051200, free: 2953134080
 
Downloaded database version: v2013.06.24.06
Initializing...
------------ Kernel report ------------
     06/24/2013 16:10:04
------------ Loaded modules -----------
\WINDOWS\system32\ntkrnlpa.exe
\WINDOWS\system32\hal.dll
\WINDOWS\system32\KDCOM.DLL
\WINDOWS\system32\BOOTVID.dll
yorax.sys
ACPI.sys
\WINDOWS\system32\DRIVERS\WMILIB.SYS
pci.sys
isapnp.sys
compbatt.sys
\WINDOWS\system32\DRIVERS\BATTC.SYS
pciide.sys
\WINDOWS\system32\DRIVERS\PCIIDEX.SYS
MountMgr.sys
ftdisk.sys
dmload.sys
dmio.sys
PartMgr.sys
VolSnap.sys
atapi.sys
nvata.sys
disk.sys
\WINDOWS\system32\DRIVERS\CLASSPNP.SYS
fltmgr.sys
sr.sys
MpFilter.sys
PxHelp20.sys
KSecDD.sys
Ntfs.sys
NDIS.sys
Mup.sys
\SystemRoot\system32\DRIVERS\AmdPPM.sys
\SystemRoot\system32\DRIVERS\nv4_mini.sys
\SystemRoot\system32\DRIVERS\VIDEOPRT.SYS
\SystemRoot\system32\DRIVERS\usbohci.sys
\SystemRoot\system32\DRIVERS\USBPORT.SYS
\SystemRoot\System32\Drivers\ousbehci.sys
\SystemRoot\system32\DRIVERS\imapi.sys
\SystemRoot\system32\DRIVERS\cdrom.sys
\SystemRoot\system32\DRIVERS\redbook.sys
\SystemRoot\system32\DRIVERS\ks.sys
\SystemRoot\system32\DRIVERS\oxmf.sys
\SystemRoot\system32\DRIVERS\oxmep.sys
\SystemRoot\system32\drivers\ALCXWDM.SYS
\SystemRoot\system32\drivers\portcls.sys
\SystemRoot\system32\drivers\drmk.sys
\SystemRoot\system32\DRIVERS\nvnetbus.sys
\SystemRoot\system32\DRIVERS\NVNRM.SYS
\SystemRoot\system32\DRIVERS\fdc.sys
\SystemRoot\system32\DRIVERS\serial.sys
\SystemRoot\system32\DRIVERS\serenum.sys
\SystemRoot\system32\DRIVERS\parport.sys
\SystemRoot\system32\DRIVERS\audstub.sys
\SystemRoot\system32\DRIVERS\rasl2tp.sys
\SystemRoot\system32\DRIVERS\ndistapi.sys
\SystemRoot\system32\DRIVERS\ndiswan.sys
\SystemRoot\system32\DRIVERS\raspppoe.sys
\SystemRoot\system32\DRIVERS\raspptp.sys
\SystemRoot\system32\DRIVERS\TDI.SYS
\SystemRoot\system32\DRIVERS\psched.sys
\SystemRoot\system32\DRIVERS\msgpc.sys
\SystemRoot\system32\DRIVERS\ptilink.sys
\SystemRoot\system32\DRIVERS\raspti.sys
\SystemRoot\system32\DRIVERS\rdpdr.sys
\SystemRoot\system32\DRIVERS\termdd.sys
\SystemRoot\system32\DRIVERS\kbdclass.sys
\SystemRoot\system32\DRIVERS\mouclass.sys
\SystemRoot\system32\DRIVERS\swenum.sys
\SystemRoot\system32\DRIVERS\update.sys
\SystemRoot\system32\DRIVERS\mssmbios.sys
\SystemRoot\System32\Drivers\NDProxy.SYS
\SystemRoot\system32\DRIVERS\usbhub.sys
\SystemRoot\system32\DRIVERS\USBD.SYS
\SystemRoot\system32\DRIVERS\ousb2hub.sys
\SystemRoot\system32\DRIVERS\oxser.sys
\SystemRoot\system32\DRIVERS\oxmfuf.sys
\SystemRoot\system32\DRIVERS\NVENETFD.sys
\SystemRoot\System32\Drivers\Fs_Rec.SYS
\SystemRoot\System32\Drivers\Null.SYS
\SystemRoot\System32\Drivers\Beep.SYS
\SystemRoot\system32\DRIVERS\HIDPARSE.SYS
\SystemRoot\System32\drivers\vga.sys
\SystemRoot\System32\Drivers\mnmdd.SYS
\SystemRoot\System32\DRIVERS\RDPCDD.sys
\SystemRoot\System32\Drivers\Msfs.SYS
\SystemRoot\System32\Drivers\Npfs.SYS
\SystemRoot\system32\DRIVERS\rasacd.sys
\SystemRoot\system32\DRIVERS\ipsec.sys
\SystemRoot\system32\DRIVERS\tcpip.sys
\SystemRoot\system32\DRIVERS\netbt.sys
\SystemRoot\system32\DRIVERS\wanarp.sys
\SystemRoot\System32\drivers\afd.sys
\SystemRoot\system32\DRIVERS\netbios.sys
\SystemRoot\system32\DRIVERS\rdbss.sys
\SystemRoot\system32\DRIVERS\mrxsmb.sys
\SystemRoot\System32\Drivers\Fips.SYS
\SystemRoot\system32\DRIVERS\usbccgp.sys
\SystemRoot\system32\DRIVERS\hidusb.sys
\SystemRoot\system32\DRIVERS\HIDCLASS.SYS
\SystemRoot\system32\DRIVERS\kbdhid.sys
\SystemRoot\system32\DRIVERS\mouhid.sys
\SystemRoot\System32\Drivers\Cdfs.SYS
\SystemRoot\System32\Drivers\dump_nvata.sys
\SystemRoot\System32\Drivers\dump_WMILIB.SYS
\SystemRoot\System32\win32k.sys
\SystemRoot\System32\drivers\Dxapi.sys
\SystemRoot\System32\watchdog.sys
\SystemRoot\System32\drivers\dxg.sys
\SystemRoot\System32\drivers\dxgthk.sys
\SystemRoot\System32\nv4_disp.dll
\SystemRoot\System32\ATMFD.DLL
\SystemRoot\system32\DRIVERS\ndisuio.sys
\SystemRoot\system32\DRIVERS\mrxdav.sys
\SystemRoot\System32\Drivers\ParVdm.SYS
\SystemRoot\System32\Drivers\HTTP.sys
\SystemRoot\system32\DRIVERS\srv.sys
\SystemRoot\system32\drivers\wdmaud.sys
\SystemRoot\system32\drivers\sysaudio.sys
\SystemRoot\System32\Drivers\TDTCP.SYS
\SystemRoot\System32\Drivers\RDPWD.SYS
\SystemRoot\System32\Drivers\Fastfat.SYS
\??\C:\DOCUME~1\ETHANM~1\LOCALS~1\Temp\mbr.sys
\SystemRoot\system32\DRIVERS\USBSTOR.SYS
\SystemRoot\system32\drivers\kmixer.sys
\??\C:\WINDOWS\system32\drivers\mbamchameleon.sys
\??\C:\WINDOWS\system32\drivers\mbamswissarmy.sys
\WINDOWS\system32\ntdll.dll
----------- End -----------
Done!
<<<1>>>
Upper Device Name: \Device\Harddisk1\DR10
Upper Device Object: 0xffffffff8894a1f0
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\00000086\
Lower Device Object: 0xffffffff8a5cdea0
Lower Device Driver Name: \Driver\USBSTOR\
<<<1>>>
Upper Device Name: \Device\Harddisk0\DR0
Upper Device Object: 0xffffffff8ac3aab8
Upper Device Driver Name: \Driver\Disk\
Lower Device Name: \Device\0000005f\
Lower Device Object: 0xffffffff8aba2030
Lower Device Driver Name: \Driver\nvata\
<<<2>>>
Device number: 0, partition: 1
Physical Sector Size: 512
Drive: 0, DevicePointer: 0xffffffff8ac3aab8, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff8abd6e08, DeviceName: Unknown, DriverName: \Driver\PartMgr\
DevicePointer: 0xffffffff8ac3aab8, DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff8abe3f18, DeviceName: \Device\00000060\, DriverName: \Driver\ACPI\
DevicePointer: 0xffffffff8aba2030, DeviceName: \Device\0000005f\, DriverName: \Driver\nvata\
------------ End ----------
Alternate DeviceName: \Device\Harddisk0\DR0\, DriverName: \Driver\Disk\
Upper DeviceData: 0x0, 0x0, 0x0
Lower DeviceData: 0x0, 0x0, 0x0
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
<<<2>>>
Device number: 0, partition: 1
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Scanning drivers directory: C:\WINDOWS\system32\drivers...
<<<2>>>
Device number: 0, partition: 1
<<<3>>>
Volume: C:
File system type: NTFS
SectorSize = 512, ClusterSize = 4096, MFTRecordSize = 1024, MFTIndexSize = 4096 bytes
Done!
Drive 0
Scanning MBR on drive 0...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: 56F856F8
 
Partition information:
 
    Partition 0 type is Primary (0x7)
    Partition is ACTIVE.
    Partition starts at LBA: 63  Numsec = 234420417
    Partition file system is NTFS
    Partition is bootable
 
    Partition 1 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
    Partition 2 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
    Partition 3 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
Disk Size: 120034123776 bytes
Sector size: 512 bytes
 
Scanning physical sectors of unpartitioned space on drive 0 (1-62-234421648-234441648)...
Done!
Physical Sector Size: 512
Drive: 1, DevicePointer: 0xffffffff8894a1f0, DeviceName: \Device\Harddisk1\DR10\, DriverName: \Driver\Disk\
--------- Disk Stack ------
DevicePointer: 0xffffffff888c9200, DeviceName: Unknown, DriverName: \Driver\PartMgr\
DevicePointer: 0xffffffff8894a1f0, DeviceName: \Device\Harddisk1\DR10\, DriverName: \Driver\Disk\
DevicePointer: 0xffffffff8a5cdea0, DeviceName: \Device\00000086\, DriverName: \Driver\USBSTOR\
------------ End ----------
Alternate DeviceName: \Device\Harddisk1\DR10\, DriverName: \Driver\Disk\
Upper DeviceData: 0x0, 0x0, 0x0
Lower DeviceData: 0x0, 0x0, 0x0
Drive 1
Scanning MBR on drive 1...
Inspecting partition table:
MBR Signature: 55AA
Disk Signature: 0
 
Partition information:
 
    Partition 0 type is Other (0x6)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 245  Numsec = 3999499
 
    Partition 1 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
    Partition 2 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
    Partition 3 type is Empty (0x0)
    Partition is NOT ACTIVE.
    Partition starts at LBA: 0  Numsec = 0
 
Disk Size: 2048729600 bytes
Sector size: 512 bytes
 
Done!
Infected: c:\RECYCLER\S-1-5-18\$a7adb32ed7a6584d584309c95197d3f8\@ --> [Trojan.Siredef.C]
Infected: c:\RECYCLER\S-1-5-21-343818398-879983540-725345543-1003\$a7adb32ed7a6584d584309c95197d3f8\@ --> [Trojan.Siredef.C]
Infected: HKCU\SOFTWARE\CLASSES\CLSID\{fbeb8a05-beee-4442-804e-409d6c4515e9} --> [Hijack.Trojan.Siredef.C]
Infected: c:\RECYCLER\S-1-5-18\$a7adb32ed7a6584d584309c95197d3f8\U --> [Trojan.Siredef.C]
Infected: c:\RECYCLER\S-1-5-21-343818398-879983540-725345543-1003\$a7adb32ed7a6584d584309c95197d3f8\U --> [Trojan.Siredef.C]
Infected: c:\RECYCLER\S-1-5-18\$a7adb32ed7a6584d584309c95197d3f8\L --> [Trojan.Siredef.C]
Infected: c:\RECYCLER\S-1-5-21-343818398-879983540-725345543-1003\$a7adb32ed7a6584d584309c95197d3f8\L --> [Trojan.Siredef.C]
Infected: c:\RECYCLER\S-1-5-18\$a7adb32ed7a6584d584309c95197d3f8 --> [Trojan.Siredef.C]
Infected: c:\RECYCLER\S-1-5-21-343818398-879983540-725345543-1003\$a7adb32ed7a6584d584309c95197d3f8 --> [Trojan.Siredef.C]
Scan finished


#4 TB-Psychotic

TB-Psychotic

  • Malware Response Team
  • 6,349 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:08:25 AM

Posted 24 June 2013 - 03:38 PM

Run another scan with mbar.exe and click the CleanUp button. It will require a reboot.

When it has rebooted, run another scan with mbar.exe and click CleanUp again if necessary.

Send the mbar-log.txt along with an update on machine behavior.
Proud Member of UNITE & TB
 
My help is free, however, if you want to support my fight against malware, click here --> btn_donate_SM.gif <--(no worries, every little bit helps)

#5 sohcrates

sohcrates
  • Topic Starter

  • Members
  • 24 posts
  • OFFLINE
  •  
  • Local time:03:25 AM

Posted 24 June 2013 - 05:04 PM

Here you go Marius:

 

The machine seems to be better.  I can now access the firewall again.  But I still can not start MSE.  When I try to do so, I get an error message saying "C:\Program Files\Microsoft Security Client\msseces.exe  The File can not be accessed by the system."

 

Should I try to re-install it?

 

Here is the log:

 

Malwarebytes Anti-Rootkit BETA 1.06.0.1004
www.malwarebytes.org
 
Database version: v2013.06.24.06
 
Windows XP Service Pack 3 x86 NTFS
Internet Explorer 8.0.6001.18702
Ethan Maniatis :: HOME-AUTO [administrator]
 
6/24/2013 4:58:58 PM
mbar-log-2013-06-24 (16-58-58).txt
 
Scan type: Quick scan
Scan options enabled: Anti-Rootkit | Drivers | MBR | Physical Sectors | Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUM | P2P
Scan options disabled: PUP
Objects scanned: 196363
Time elapsed: 12 minute(s), 11 second(s)
 
Memory Processes Detected: 0
(No malicious items detected)
 
Memory Modules Detected: 0
(No malicious items detected)
 
Registry Keys Detected: 0
(No malicious items detected)
 
Registry Values Detected: 0
(No malicious items detected)
 
Registry Data Items Detected: 0
(No malicious items detected)
 
Folders Detected: 0
(No malicious items detected)
 
Files Detected: 0
(No malicious items detected)
 
Physical Sectors Detected: 0
(No malicious items detected)
 
(end)


#6 TB-Psychotic

TB-Psychotic

  • Malware Response Team
  • 6,349 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:08:25 AM

Posted 25 June 2013 - 09:51 AM

No, that won´t help.

 

Please download Farbar Service Scanner and run it on the computer with the issue.

  • Make sure the following options are checked:
    • Internet Services
    • Windows Firewall
    • System Restore
    • Security Center
    • Windows Update
  • Press "Scan".
  • It will create a log (FSS.txt) in the same directory the tool is run.
  • Please copy and paste the log to your reply.


Proud Member of UNITE & TB
 
My help is free, however, if you want to support my fight against malware, click here --> btn_donate_SM.gif <--(no worries, every little bit helps)

#7 sohcrates

sohcrates
  • Topic Starter

  • Members
  • 24 posts
  • OFFLINE
  •  
  • Local time:03:25 AM

Posted 25 June 2013 - 10:25 AM

OK,

 

I did as you asked.  As I said, the computer is not connected to the internet, so I don't think the scan was that useful.  I ran it again after connecting to the internet, and I have included both logs.

 

Farbar Service Scanner Version: 16-06-2013
Ran by Ethan Maniatis (administrator) on 25-06-2013 at 11:21:37
Running from "F:\antivirus take 2"
Microsoft Windows XP Service Pack 3 (X86)
Boot Mode: Normal
****************************************************************
 
Internet Services:
============
 
Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo.com is accessible.
 
 
Windows Firewall:
=============
 
Firewall Disabled Policy: 
==================
 
 
System Restore:
============
 
System Restore Disabled Policy: 
========================
 
 
Security Center:
============
 
 
Windows Update:
============
 
Windows Autoupdate Disabled Policy: 
============================
 
 
File Check:
========
C:\WINDOWS\system32\dhcpcsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\netbt.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\tcpip.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\ipsec.sys => MD5 is legit
C:\WINDOWS\system32\dnsrslvr.dll => MD5 is legit
C:\WINDOWS\system32\ipnathlp.dll => MD5 is legit
C:\WINDOWS\system32\netman.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\srsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\sr.sys => MD5 is legit
C:\WINDOWS\system32\wscsvc.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\wuauserv.dll => MD5 is legit
C:\WINDOWS\system32\qmgr.dll => MD5 is legit
C:\WINDOWS\system32\es.dll => MD5 is legit
C:\WINDOWS\system32\cryptsvc.dll => MD5 is legit
C:\WINDOWS\system32\svchost.exe => MD5 is legit
C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\services.exe => MD5 is legit
 
Extra List:
=======
Gpc(3) IPSec(5) NetBT(6) PSched(7) Tcpip(4) 
0x080000000500000001000000020000000300000004000000560000000600000007000000
IpSec Tag value is correct.
 
**** End of log ****

 

 

Here's the connected one:

 

Farbar Service Scanner Version: 16-06-2013
Ran by Ethan Maniatis (administrator) on 25-06-2013 at 11:21:37
Running from "F:\antivirus take 2"
Microsoft Windows XP Service Pack 3 (X86)
Boot Mode: Normal
****************************************************************
 
Internet Services:
============
 
Connection Status:
==============
Localhost is accessible.
LAN connected.
Google IP is accessible.
Google.com is accessible.
Yahoo.com is accessible.
 
 
Windows Firewall:
=============
 
Firewall Disabled Policy: 
==================
 
 
System Restore:
============
 
System Restore Disabled Policy: 
========================
 
 
Security Center:
============
 
 
Windows Update:
============
 
Windows Autoupdate Disabled Policy: 
============================
 
 
File Check:
========
C:\WINDOWS\system32\dhcpcsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\afd.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\netbt.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\tcpip.sys => MD5 is legit
C:\WINDOWS\system32\Drivers\ipsec.sys => MD5 is legit
C:\WINDOWS\system32\dnsrslvr.dll => MD5 is legit
C:\WINDOWS\system32\ipnathlp.dll => MD5 is legit
C:\WINDOWS\system32\netman.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\srsvc.dll => MD5 is legit
C:\WINDOWS\system32\Drivers\sr.sys => MD5 is legit
C:\WINDOWS\system32\wscsvc.dll => MD5 is legit
C:\WINDOWS\system32\wbem\WMIsvc.dll => MD5 is legit
C:\WINDOWS\system32\wuauserv.dll => MD5 is legit
C:\WINDOWS\system32\qmgr.dll => MD5 is legit
C:\WINDOWS\system32\es.dll => MD5 is legit
C:\WINDOWS\system32\cryptsvc.dll => MD5 is legit
C:\WINDOWS\system32\svchost.exe => MD5 is legit
C:\WINDOWS\system32\rpcss.dll => MD5 is legit
C:\WINDOWS\system32\services.exe => MD5 is legit
 
Extra List:
=======
Gpc(3) IPSec(5) NetBT(6) PSched(7) Tcpip(4) 
0x080000000500000001000000020000000300000004000000560000000600000007000000
IpSec Tag value is correct.
 
**** End of log ****


#8 TB-Psychotic

TB-Psychotic

  • Malware Response Team
  • 6,349 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:08:25 AM

Posted 25 June 2013 - 10:42 AM

Please download Farbar's Recovery Scan Tool to your desktop: FRST 32bit or FRST 64bit (If not sure: Start --> Computer (right click) --> properties)

  • Run FRST.
  • Don´t change one of the checkboxes and hit Scan.
  • Logfiles are created on your desktop.
  • Poste the FRST.txt and (after the first scan only!) the Addition.txt.


Proud Member of UNITE & TB
 
My help is free, however, if you want to support my fight against malware, click here --> btn_donate_SM.gif <--(no worries, every little bit helps)

#9 sohcrates

sohcrates
  • Topic Starter

  • Members
  • 24 posts
  • OFFLINE
  •  
  • Local time:03:25 AM

Posted 25 June 2013 - 10:58 AM

Here are the logs Marius,

 

Scan result of Farbar Recovery Scan Tool (FRST) (x86) Version: 25-06-2013 01
Ran by Ethan Maniatis (administrator) on 25-06-2013 11:49:18
Running from F:\antivirus take 2
Microsoft Windows XP Professional Service Pack 3 (X86) OS Language: English(US)
Internet Explorer Version 8
Boot Mode: Normal
 
==================== Processes (Whitelisted) ===================
 
(Microsoft Corporation) C:\WINDOWS\eHome\ehRecvr.exe
(Microsoft Corporation) C:\WINDOWS\eHome\ehSched.exe
(Microsoft Corporation) C:\Program Files\Windows Home Server\esClient.exe
(Microsoft Corporation) C:\WINDOWS\ehome\mcrdsvc.exe
(Microsoft Corporation) C:\Program Files\Windows Home Server\WHSConnector.exe
(Microsoft Corporation) C:\WINDOWS\ehome\ehtray.exe
(Realtek Semiconductor Corp.) C:\WINDOWS\SOUNDMAN.EXE
(Microsoft Corporation) C:\WINDOWS\eHome\ehmsas.exe
(Microsoft Corporation) C:\Program Files\Windows Home Server\WHSTrayApp.exe
(HomeSeer Technologies, LLC) C:\Program Files\HomeSeer HS2\Speaker.exe
() C:\Documents and Settings\Ethan Maniatis\Application Data\U3\0000187C5A60C274\LaunchPad.exe
(Microsoft Corporation) C:\WINDOWS\system32\wuauclt.exe
 
==================== Registry (Whitelisted) ==================
 
HKLM\...\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe [64512 2005-08-05] (Microsoft Corporation)
HKLM\...\Run: [SoundMan] SOUNDMAN.EXE [x]
HKLM\...\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe" [38872 2012-07-31] (Adobe Systems Incorporated)
HKLM\...\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe" [958576 2013-04-04] (Adobe Systems Incorporated)
HKLM\...\Run: [MSC] "c:\Program Files\Microsoft Security Client\msseces.exe" -hide -runkey [947152 2013-01-27] ()
HKLM\...\Runonce: [AvgUninstallURL] cmd.exe /c start http://www.avg.com/ww.special-uninstallation-feedback-appf?lic=OQBBAFYARgBSAEUARQAtAFYATgBKADMAMgAtAEcAMwBMAEEAQQAtAEEANAA4ADkAUgAtADkAVQBKAEsARgAtAEUASwBLADMAWAA"&"inst=NwA3AC0AMwA5ADEAMgA2ADgAMAA5ADYALQBUAEIAOQArADIALQBGAEwAKwA5AC0AWABPADMANgArADEALQBGADkATQA3AEMAKwA1AC0ARgA5AE0AMQAwAEIAKwAyAC0AWABPADkAKwAxAC0ARgA5AE0AMgArADEALQBEAEQAVAArADEAMQA0ADgAMgAtAEQARAA5ADAARgArADEALQBTAFQAOQAwAEYAQQBQAFAAKwAxAC0ARgA5ADAATQAxADIAQQBUACsAMQAtAEYAOQAwAE0AMQAyAEEAKwAxAC0ARgA5ADAATQAxADIAQQBCACsAMQAtAFUAOQA1ACsAMQAtAEYAOQAwAE0AMQAyAEEAVABCAE4AKwAxAA"&"prod=90"&"ver=9.0.894 [x]
HKLM\...D6A79037F57F\InprocServer32: [Default-fastprox] fastprox.dll ATTENTION! ====> ZeroAccess
MountPoints2: E - E:\LaunchU3.exe -a
MountPoints2: {5aa82bee-abb0-11df-96ba-806d6172696f} - D:\Client_Installation.exe
MountPoints2: {70e960c1-abd9-11df-b36a-ec9606a68c1a} - E:\LaunchU3.exe -a
Startup: C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Windows Home Server.lnk
ShortcutTarget: Windows Home Server.lnk -> C:\WINDOWS\Installer\{21E49794-7C13-4E84-8659-55BD378267D5}\WHSTrayApp.exe (Microsoft Corporation)
Startup: C:\Documents and Settings\Ethan Maniatis\Start Menu\Programs\Startup\Shortcut to HomeSeer.lnk
ShortcutTarget: Shortcut to HomeSeer.lnk -> C:\Program Files\HomeSeer HS2\HomeSeer.exe (HomeSeer Technologies, LLC)
 
==================== Internet (Whitelisted) ====================
 
HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.google.com/
HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.microsoft.com/isapi/redir.dll?prd=ie&ar=iesearch
SearchScopes: HKLM - {0633EE93-D776-472f-A0FF-E1416B8B2E3A} URL = http://search.live.com/results.aspx?q={searchTerms}&src={referrer:source?}
BHO: Adobe PDF Link Helper - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll (Adobe Systems Incorporated)
BHO: BrowserHelper Class - {9A065C65-4EE7-4DDD-9918-F129089A894A} - C:\Program Files\Windows Home Server\WHSDeskBands.dll (Microsoft Corporation)
Toolbar: HKLM - Home Server Banner - {D73E76A3-F902-45BD-8FC8-95AE8E014671} - C:\Program Files\Windows Home Server\WHSDeskBands.dll (Microsoft Corporation)
DPF: {17492023-C23A-453E-A040-C7C580BBF700} http://go.microsoft.com/fwlink/?linkid=39204
DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} http://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
Handler: ipp - No CLSID Value - 
Handler: msdaipp - No CLSID Value - 
Hosts: There are more than one entry in Hosts. See Hosts section of Addition.txt
Tcpip\Parameters: [DhcpNameServer] 192.168.1.1
 
========================== Services (Whitelisted) =================
 
R2 esClient; C:\Program Files\Windows Home Server\esClient.exe [97136 2011-01-10] (Microsoft Corporation)
R2 McrdSvc; C:\WINDOWS\ehome\mcrdsvc.exe [99328 2005-08-05] (Microsoft Corporation)
S2 MsMpSvc; c:\Program Files\Microsoft Security Client\MsMpEng.exe [20456 2013-01-27] ()
R2 WHSConnector; C:\Program Files\Windows Home Server\WHSConnector.exe [376688 2011-01-10] (Microsoft Corporation)
 
==================== Drivers (Whitelisted) ====================
 
R3 ALCXWDM; C:\Windows\System32\drivers\ALCXWDM.SYS [3841856 2005-12-02] (Realtek Semiconductor Corp.)
R1 AmdPPM; C:\Windows\System32\DRIVERS\AmdPPM.sys [33792 2007-04-16] (Advanced Micro Devices)
R0 MpFilter; C:\Windows\System32\DRIVERS\MpFilter.sys [195296 2013-01-20] (Microsoft Corporation)
R0 nvata; C:\Windows\System32\DRIVERS\nvata.sys [100736 2006-04-24] (NVIDIA Corporation)
R3 NVENETFD; C:\Windows\System32\DRIVERS\NVENETFD.sys [54784 2008-08-01] (NVIDIA Corporation)
R3 nvnetbus; C:\Windows\System32\DRIVERS\nvnetbus.sys [22016 2008-08-01] (NVIDIA Corporation)
R3 ousb2hub; C:\Windows\System32\DRIVERS\ousb2hub.sys [56960 2005-06-15] (OrangeWare Corporation)
R2 ousbehci; C:\Windows\System32\Drivers\ousbehci.sys [45440 2005-06-15] (OrangeWare Corporation)
R3 oxmep; C:\Windows\System32\DRIVERS\oxmep.sys [6656 2007-06-25] (SIIG, Inc.)
R3 oxmf; C:\Windows\System32\DRIVERS\oxmf.sys [23552 2007-06-25] (SIIG, Inc.)
R3 Oxmfuf; C:\Windows\System32\DRIVERS\oxmfuf.sys [7168 2007-06-25] (SIIG, Inc.)
R3 oxser; C:\Windows\System32\DRIVERS\oxser.sys [72704 2007-06-25] (SIIG, Inc.)
S4 Abiosdsk; No ImagePath
S4 abp480n5; No ImagePath
S4 adpu160m; No ImagePath
S4 Aha154x; No ImagePath
S4 aic78u2; No ImagePath
S4 aic78xx; No ImagePath
S4 AliIde; No ImagePath
S4 amsint; No ImagePath
S4 asc; No ImagePath
S4 asc3350p; No ImagePath
S4 asc3550; No ImagePath
S4 Atdisk; No ImagePath
S4 cd20xrnt; No ImagePath
S1 Changer; No ImagePath
S4 CmdIde; No ImagePath
S4 Cpqarray; No ImagePath
U4 dac2w2k; No ImagePath
S4 dac960nt; No ImagePath
S4 dpti2o; No ImagePath
S4 hpn; No ImagePath
S1 i2omgmt; No ImagePath
S4 i2omp; No ImagePath
S4 ini910u; No ImagePath
S4 IntelIde; No ImagePath
S1 lbrtfdc; No ImagePath
S4 mraid35x; No ImagePath
S1 PCIDump; No ImagePath
S3 PDCOMP; No ImagePath
S3 PDFRAME; No ImagePath
S3 PDRELI; No ImagePath
S3 PDRFRAME; No ImagePath
S4 perc2; No ImagePath
S4 perc2hib; No ImagePath
S4 ql1080; No ImagePath
S4 Ql10wnt; No ImagePath
S4 ql12160; No ImagePath
S4 ql1240; No ImagePath
S4 ql1280; No ImagePath
S4 Simbad; No ImagePath
S4 Sparrow; No ImagePath
S4 symc810; No ImagePath
S4 symc8xx; No ImagePath
S4 sym_hi; No ImagePath
S4 sym_u3; No ImagePath
S4 TosIde; No ImagePath
S4 ultra; No ImagePath
S4 ViaIde; No ImagePath
S3 WDICA; No ImagePath
U1 WS2IFSL; 
 
==================== NetSvcs (Whitelisted) ===================
 
NETSVC: MHN -> C:\Windows\System32\mhn.dll (Microsoft Corporation)
 
==================== One Month Created Files and Folders ========
 
2013-06-25 11:48 - 2013-06-25 11:48 - 00000000 ____D C:\FRST
2013-06-24 16:10 - 2013-06-24 18:00 - 00000000 ____D C:\Documents and Settings\All Users\Application Data\Malwarebytes' Anti-Malware (portable)
2013-06-24 10:38 - 2013-06-24 10:38 - 11091432 ____A (Microsoft Corporation) C:\Documents and Settings\Ethan Maniatis\Desktop\mseinstall.exe
2013-06-24 09:52 - 2013-06-24 09:53 - 00009934 ____A C:\Documents and Settings\Ethan Maniatis\Desktop\Rkill.txt
2013-06-24 09:20 - 2013-06-24 09:20 - 00022130 ____A C:\Documents and Settings\Ethan Maniatis\Desktop\attach.txt
2013-06-24 09:20 - 2013-06-24 09:20 - 00006631 ____A C:\Documents and Settings\Ethan Maniatis\Desktop\dds.txt
2013-06-24 09:18 - 2013-06-24 16:58 - 00000000 ____D C:\Documents and Settings\Ethan Maniatis\Desktop\antivirus
2013-06-22 14:53 - 2013-06-22 14:53 - 00000000 ____D C:\Windows\CSC
2013-06-22 13:20 - 2013-06-22 13:20 - 00000794 ____A C:\Documents and Settings\All Users\Desktop\Malwarebytes Anti-Malware.lnk
2013-06-22 13:20 - 2013-06-22 13:20 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-06-22 13:20 - 2013-06-22 13:20 - 00000000 ____D C:\Documents and Settings\Ethan Maniatis\Application Data\Malwarebytes
2013-06-22 13:20 - 2013-06-22 13:20 - 00000000 ____D C:\Documents and Settings\All Users\Application Data\Malwarebytes
2013-06-22 13:20 - 2013-04-04 14:50 - 00022856 ____A (Malwarebytes Corporation) C:\Windows\System32\Drivers\mbam.sys
2013-06-22 10:03 - 2013-06-22 10:03 - 00000000 __SHD C:\Documents and Settings\LocalService\IETldCache
2013-06-22 10:02 - 2013-06-22 10:02 - 00000812 ____A C:\Documents and Settings\All Users\Desktop\Internet Security Pro.lnk
2013-06-16 20:20 - 2013-06-16 20:20 - 00000000 __HDC C:\Windows\$NtUninstallKB2839229$
2013-06-16 20:16 - 2013-06-16 20:17 - 00012542 ____A C:\Windows\KB2838727-IE8.log
2013-06-16 20:15 - 2013-06-16 20:20 - 00015818 ____A C:\Windows\KB2839229.log
 
==================== One Month Modified Files and Folders ========
 
2013-06-25 11:49 - 2010-08-19 17:03 - 01254213 ____A C:\Windows\WindowsUpdate.log
2013-06-25 11:48 - 2013-06-25 11:48 - 00000000 ____D C:\FRST
2013-06-25 11:48 - 2010-08-19 18:05 - 00000000 ____D C:\Documents and Settings\Ethan Maniatis\Application Data\U3
2013-06-25 11:19 - 2010-10-13 22:06 - 00540672 ____A C:\Documents and Settings\Ethan Maniatis\Desktop\homeseerconfig.mdb
2013-06-25 03:44 - 2010-08-19 16:55 - 00000000 ____D C:\Windows\Registration
2013-06-25 03:43 - 2010-08-19 17:11 - 00000062 __ASH C:\Documents and Settings\Ethan Maniatis\Local Settings\desktop.ini
2013-06-25 03:43 - 2010-08-19 17:09 - 00000062 __ASH C:\Documents and Settings\LocalService\Local Settings\desktop.ini
2013-06-25 03:43 - 2010-08-19 17:09 - 00000006 ___AH C:\Windows\Tasks\SA.DAT
2013-06-25 03:43 - 2010-08-19 17:08 - 00000062 __ASH C:\Documents and Settings\NetworkService\Local Settings\desktop.ini
2013-06-25 03:42 - 2012-03-21 19:43 - 00000284 ____A C:\Windows\Tasks\shutdown.job
2013-06-25 03:42 - 2010-08-19 17:11 - 00000178 ___SH C:\Documents and Settings\Ethan Maniatis\ntuser.ini
2013-06-25 03:42 - 2010-08-19 17:09 - 00032632 ____A C:\Windows\SchedLgU.Txt
2013-06-24 18:00 - 2013-06-24 16:10 - 00000000 ____D C:\Documents and Settings\All Users\Application Data\Malwarebytes' Anti-Malware (portable)
2013-06-24 16:58 - 2013-06-24 09:18 - 00000000 ____D C:\Documents and Settings\Ethan Maniatis\Desktop\antivirus
2013-06-24 16:57 - 2010-10-04 08:00 - 00000000 ____D C:\Documents and Settings\Ethan Maniatis\Desktop\Backup
2013-06-24 16:54 - 2011-05-13 21:46 - 00001919 ____A C:\Windows\epplauncher.mif
2013-06-24 10:39 - 2004-08-10 08:00 - 00013646 ____A C:\Windows\System32\wpa.dbl
2013-06-24 10:38 - 2013-06-24 10:38 - 11091432 ____A (Microsoft Corporation) C:\Documents and Settings\Ethan Maniatis\Desktop\mseinstall.exe
2013-06-24 09:53 - 2013-06-24 09:52 - 00009934 ____A C:\Documents and Settings\Ethan Maniatis\Desktop\Rkill.txt
2013-06-24 09:20 - 2013-06-24 09:20 - 00022130 ____A C:\Documents and Settings\Ethan Maniatis\Desktop\attach.txt
2013-06-24 09:20 - 2013-06-24 09:20 - 00006631 ____A C:\Documents and Settings\Ethan Maniatis\Desktop\dds.txt
2013-06-23 20:49 - 2010-08-19 19:46 - 00000000 ____D C:\Documents and Settings\Ethan Maniatis\My Documents\Software
2013-06-23 20:44 - 2010-08-19 20:12 - 00000000 __HDC C:\Windows\$NtUninstallKB975467$
2013-06-23 19:27 - 2011-03-17 08:17 - 00000000 __HDC C:\Windows\$NtUninstallKB2476687$
2013-06-22 14:53 - 2013-06-22 14:53 - 00000000 ____D C:\Windows\CSC
2013-06-22 14:51 - 2010-08-19 20:12 - 00000000 __HDC C:\Windows\$NtUninstallKB974112$
2013-06-22 13:20 - 2013-06-22 13:20 - 00000794 ____A C:\Documents and Settings\All Users\Desktop\Malwarebytes Anti-Malware.lnk
2013-06-22 13:20 - 2013-06-22 13:20 - 00000000 ____D C:\Program Files\Malwarebytes' Anti-Malware
2013-06-22 13:20 - 2013-06-22 13:20 - 00000000 ____D C:\Documents and Settings\Ethan Maniatis\Application Data\Malwarebytes
2013-06-22 13:20 - 2013-06-22 13:20 - 00000000 ____D C:\Documents and Settings\All Users\Application Data\Malwarebytes
2013-06-22 10:03 - 2013-06-22 10:03 - 00000000 __SHD C:\Documents and Settings\LocalService\IETldCache
2013-06-22 10:02 - 2013-06-22 10:02 - 00000812 ____A C:\Documents and Settings\All Users\Desktop\Internet Security Pro.lnk
2013-06-22 09:50 - 2013-03-16 09:18 - 00000384 ___AH C:\Windows\Tasks\Microsoft Antimalware Scheduled Scan.job
2013-06-22 09:42 - 2013-02-03 03:38 - 00981439 ____A C:\Windows\setupapi.log
2013-06-22 09:42 - 2010-08-19 12:49 - 00304658 ____A C:\Windows\setupact.log
2013-06-22 00:07 - 2010-10-03 21:26 - 00000000 ____D C:\Program Files\HomeSeer HS2
2013-06-16 20:20 - 2013-06-16 20:20 - 00000000 __HDC C:\Windows\$NtUninstallKB2839229$
2013-06-16 20:20 - 2013-06-16 20:15 - 00015818 ____A C:\Windows\KB2839229.log
2013-06-16 20:20 - 2010-08-19 12:51 - 02435254 ____A C:\Windows\FaxSetup.log
2013-06-16 20:20 - 2010-08-19 12:51 - 01166597 ____A C:\Windows\ocgen.log
2013-06-16 20:20 - 2010-08-19 12:51 - 01112919 ____A C:\Windows\tsoc.log
2013-06-16 20:20 - 2010-08-19 12:51 - 00752176 ____A C:\Windows\msmqinst.log
2013-06-16 20:20 - 2010-08-19 12:51 - 00696175 ____A C:\Windows\comsetup.log
2013-06-16 20:20 - 2010-08-19 12:51 - 00662753 ____A C:\Windows\iis6.log
2013-06-16 20:20 - 2010-08-19 12:51 - 00440042 ____A C:\Windows\netfxocm.log
2013-06-16 20:20 - 2010-08-19 12:51 - 00419567 ____A C:\Windows\ntdtcsetup.log
2013-06-16 20:20 - 2010-08-19 12:51 - 00273957 ____A C:\Windows\plusoc.log
2013-06-16 20:20 - 2010-08-19 12:51 - 00244480 ____A C:\Windows\MedCtrOC.log
2013-06-16 20:20 - 2010-08-19 12:51 - 00131439 ____A C:\Windows\ehOCGen.log
2013-06-16 20:20 - 2010-08-19 12:51 - 00123362 ____A C:\Windows\tabletoc.log
2013-06-16 20:20 - 2010-08-19 12:51 - 00121805 ____A C:\Windows\msgsocm.log
2013-06-16 20:20 - 2010-08-19 12:51 - 00113906 ____A C:\Windows\ocmsn.log
2013-06-16 20:20 - 2010-08-19 12:51 - 00001374 ____A C:\Windows\imsins.log
2013-06-16 20:17 - 2013-06-16 20:16 - 00012542 ____A C:\Windows\KB2838727-IE8.log
2013-06-16 20:17 - 2010-08-19 18:24 - 73381792 ____A (Microsoft Corporation) C:\Windows\System32\MRT.exe
2013-06-16 20:17 - 2010-08-19 18:17 - 00278449 ____A C:\Windows\updspapi.log
2013-06-16 20:17 - 2010-08-19 12:51 - 00001374 ____A C:\Windows\imsins.BAK
 
==================== Bamital & volsnap Check =================
 
C:\Windows\explorer.exe => MD5 is legit
C:\Windows\System32\winlogon.exe => MD5 is legit
C:\Windows\System32\svchost.exe => MD5 is legit
C:\Windows\System32\services.exe => MD5 is legit
C:\Windows\System32\User32.dll => MD5 is legit
C:\Windows\System32\userinit.exe => MD5 is legit
C:\Windows\System32\Drivers\volsnap.sys => MD5 is legit
C:\Program Files\Microsoft Security Client\MsMpEng.exe => ATTENTION: ZeroAccess. Use DeleteJunctionsIndirectory: C:\Program Files\Microsoft Security Client
 
==================== End Of Log ============================

 

 

Additional scan result of Farbar Recovery Scan Tool (x86) Version: 25-06-2013 01
Ran by Ethan Maniatis at 2013-06-25 11:49:48
Running from F:\antivirus take 2
Boot Mode: Normal
==========================================================
 
 
==================== Installed Programs =======================
 
Adobe AIR (Version: 2.0.3.13070)
Adobe Flash Player 11 ActiveX (Version: 11.5.502.135)
Adobe Reader 9.5.2 (Version: 9.5.2)
GacInstall4_2_1_12 (Version: 1.00.0000)
GacInstall4_4_0_3 (Version: 1.00.0000)
HomeSeer HS2 (Version: 2.4.1)
HomeSeer Plug-in HSTouch Server (Version: 1.0.60)
Malwarebytes Anti-Malware version 1.75.0.1300 (Version: 1.75.0.1300)
Microsoft .NET Framework 1.0 Hotfix (KB2572066)
Microsoft .NET Framework 1.0 Hotfix (KB2604042)
Microsoft .NET Framework 1.0 Hotfix (KB2656378)
Microsoft .NET Framework 1.0 Security Update (KB2698035)
Microsoft .NET Framework 1.0 Security Update (KB2742607)
Microsoft .NET Framework 1.1 (Version: 1.1.4322)
Microsoft .NET Framework 1.1 Security Update (KB2698023)
Microsoft .NET Framework 1.1 Security Update (KB2742597)
Microsoft .NET Framework 1.1 Security Update (KB979906)
Microsoft .NET Framework 2.0 Service Pack 2 (Version: 2.2.30729)
Microsoft .NET Framework 3.0 Service Pack 2 (Version: 3.2.30729)
Microsoft .NET Framework 3.5 SP1
Microsoft .NET Framework 3.5 SP1 (Version: 3.5.30729)
Microsoft Application Error Reporting (Version: 12.0.6012.5000)
Microsoft Security Client (Version: 4.2.0223.1)
Microsoft Visual C++ 2005 Redistributable (Version: 8.0.61001)
MSXML 6 Service Pack 2 (KB973686) (Version: 6.20.2003.0)
NVIDIA Display Control Panel (Version: 6.14.11.9745)
NVIDIA Drivers (Version: 1.10.59.37)
NVIDIA nView Desktop Manager (Version: 6.14.10.12561)
OneHome Connect (Version: 5.42)
Realtek AC'97 Audio (Version: 5.18)
Spybot - Search & Destroy (Version: 1.6.2)
Tweak UI
Update for Microsoft .NET Framework 3.5 SP1 (KB963707) (Version: 1)
Update for Windows Internet Explorer 8 (KB976662) (Version: 1)
Update for Windows Internet Explorer 8 (KB982632) (Version: 1)
Update for Windows Media Player 10 (KB913800)
Update for Windows Media Player 10 (KB926251)
Update for Windows XP (KB2141007) (Version: 1)
Update for Windows XP (KB2345886) (Version: 1)
Update for Windows XP (KB2467659) (Version: 1)
Update for Windows XP (KB2541763) (Version: 1)
Update for Windows XP (KB2616676-v2) (Version: 2)
Update for Windows XP (KB2641690) (Version: 1)
Update for Windows XP (KB2661254-v2) (Version: 2)
Update for Windows XP (KB2718704) (Version: 1)
Update for Windows XP (KB2736233) (Version: 1)
Update for Windows XP (KB2749655) (Version: 1)
Update for Windows XP (KB951978) (Version: 1)
Update for Windows XP (KB955759) (Version: 1)
Update for Windows XP (KB967715) (Version: 1)
Update for Windows XP (KB968389) (Version: 1)
Update for Windows XP (KB971029) (Version: 1)
Update for Windows XP (KB971737) (Version: 1)
Update for Windows XP (KB973687) (Version: 1)
Update for Windows XP (KB973815) (Version: 1)
Update Rollup 2 for Windows XP Media Center Edition 2005
WebFldrs XP (Version: 9.50.7523)
Windows Genuine Advantage Validation Tool (KB892130)
Windows Genuine Advantage Validation Tool (KB892130) (Version: 1.7.0069.2)
Windows Home Server Connector (Version: 6.0.3436.0)
Windows Imaging Component (Version: 3.0.0.0)
Windows Internet Explorer 8 (Version: 20090308.140743)
Windows Media Format Runtime
Windows XP Media Center Edition 2005 KB2502898
Windows XP Media Center Edition 2005 KB2619340
Windows XP Media Center Edition 2005 KB2628259
Windows XP Media Center Edition 2005 KB925766
Windows XP Media Center Edition 2005 KB973768
Windows XP Service Pack 3 (Version: 20080414.031525)
 
==================== Restore Points  =========================
 
28-03-2013 07:58:32 System Checkpoint
29-03-2013 07:54:21 Software Distribution Service 3.0
30-03-2013 07:58:05 System Checkpoint
31-03-2013 05:57:24 Software Distribution Service 3.0
01-04-2013 05:59:08 System Checkpoint
01-04-2013 07:54:53 Software Distribution Service 3.0
02-04-2013 07:58:33 System Checkpoint
03-04-2013 07:54:40 Software Distribution Service 3.0
04-04-2013 07:58:33 System Checkpoint
05-04-2013 07:54:18 Software Distribution Service 3.0
06-04-2013 07:58:07 System Checkpoint
07-04-2013 05:56:58 Software Distribution Service 3.0
08-04-2013 06:47:12 System Checkpoint
08-04-2013 07:54:59 Software Distribution Service 3.0
09-04-2013 07:58:35 System Checkpoint
09-04-2013 15:52:59 Software Distribution Service 3.0
09-04-2013 16:11:31 Software Distribution Service 3.0
10-04-2013 16:47:11 System Checkpoint
11-04-2013 07:54:42 Software Distribution Service 3.0
12-04-2013 07:58:36 System Checkpoint
13-04-2013 07:54:15 Software Distribution Service 3.0
14-04-2013 05:56:48 Software Distribution Service 3.0
15-04-2013 06:59:10 System Checkpoint
15-04-2013 07:54:36 Software Distribution Service 3.0
16-04-2013 07:58:37 System Checkpoint
17-04-2013 07:54:46 Software Distribution Service 3.0
18-04-2013 07:58:36 System Checkpoint
19-04-2013 07:54:43 Software Distribution Service 3.0
20-04-2013 07:59:09 System Checkpoint
21-04-2013 06:22:23 Software Distribution Service 3.0
22-04-2013 06:47:12 System Checkpoint
22-04-2013 07:54:38 Software Distribution Service 3.0
22-04-2013 14:01:22 Software Distribution Service 3.0
23-04-2013 14:47:22 System Checkpoint
24-04-2013 07:55:00 Software Distribution Service 3.0
25-04-2013 07:58:33 System Checkpoint
26-04-2013 07:54:35 Software Distribution Service 3.0
27-04-2013 07:58:51 System Checkpoint
28-04-2013 06:13:26 Software Distribution Service 3.0
29-04-2013 06:59:44 System Checkpoint
29-04-2013 07:54:39 Software Distribution Service 3.0
30-04-2013 07:59:37 System Checkpoint
01-05-2013 07:54:12 Software Distribution Service 3.0
02-05-2013 07:58:33 System Checkpoint
03-05-2013 07:54:35 Software Distribution Service 3.0
04-05-2013 07:59:25 System Checkpoint
05-05-2013 05:31:53 Software Distribution Service 3.0
06-05-2013 06:11:13 System Checkpoint
06-05-2013 07:54:42 Software Distribution Service 3.0
07-05-2013 07:59:43 System Checkpoint
08-05-2013 07:54:38 Software Distribution Service 3.0
09-05-2013 07:58:35 System Checkpoint
10-05-2013 07:54:42 Software Distribution Service 3.0
11-05-2013 07:59:16 System Checkpoint
12-05-2013 05:34:53 Software Distribution Service 3.0
13-05-2013 05:59:13 System Checkpoint
13-05-2013 07:54:33 Software Distribution Service 3.0
14-05-2013 07:59:53 System Checkpoint
15-05-2013 07:54:48 Software Distribution Service 3.0
16-05-2013 07:58:36 System Checkpoint
16-05-2013 17:24:53 Software Distribution Service 3.0
17-05-2013 07:54:34 Software Distribution Service 3.0
18-05-2013 07:58:10 System Checkpoint
19-05-2013 05:33:53 Software Distribution Service 3.0
20-05-2013 05:47:11 System Checkpoint
20-05-2013 07:54:35 Software Distribution Service 3.0
21-05-2013 08:00:11 System Checkpoint
22-05-2013 07:54:38 Software Distribution Service 3.0
23-05-2013 07:58:36 System Checkpoint
24-05-2013 07:54:35 Software Distribution Service 3.0
25-05-2013 07:58:36 System Checkpoint
03-06-2013 00:36:11 Software Distribution Service 3.0
04-06-2013 00:39:18 System Checkpoint
04-06-2013 07:54:58 Software Distribution Service 3.0
05-06-2013 07:58:35 System Checkpoint
06-06-2013 07:54:55 Software Distribution Service 3.0
07-06-2013 07:58:34 System Checkpoint
08-06-2013 07:54:36 Software Distribution Service 3.0
09-06-2013 05:56:06 Software Distribution Service 3.0
10-06-2013 05:58:46 System Checkpoint
10-06-2013 07:54:38 Software Distribution Service 3.0
11-06-2013 07:58:38 System Checkpoint
12-06-2013 07:54:45 Software Distribution Service 3.0
13-06-2013 07:59:05 System Checkpoint
14-06-2013 07:54:46 Software Distribution Service 3.0
15-06-2013 07:58:35 System Checkpoint
17-06-2013 00:16:42 Software Distribution Service 3.0
17-06-2013 00:22:22 Software Distribution Service 3.0
18-06-2013 00:47:08 System Checkpoint
18-06-2013 07:55:11 Software Distribution Service 3.0
19-06-2013 07:58:39 System Checkpoint
20-06-2013 07:54:37 Software Distribution Service 3.0
21-06-2013 21:10:50 Software Distribution Service 3.0
23-06-2013 23:42:40 System Checkpoint
24-06-2013 20:53:24 Malwarebytes Anti-Rootkit Restore Point
 
==================== Hosts content: ==========================
127.0.0.1       localhost
127.0.0.1 www.007guard.com
127.0.0.1 007guard.com
127.0.0.1 008i.com
127.0.0.1 www.008k.com
127.0.0.1 008k.com
127.0.0.1 www.00hq.com
127.0.0.1 00hq.com
127.0.0.1 010402.com
127.0.0.1 www.032439.com
127.0.0.1 032439.com
127.0.0.1 www.0scan.com
127.0.0.1 0scan.com
127.0.0.1 1000gratisproben.com
127.0.0.1 www.1000gratisproben.com
127.0.0.1 1001namen.com
127.0.0.1 www.1001namen.com
127.0.0.1 100888290cs.com
127.0.0.1 www.100888290cs.com
127.0.0.1 www.100sexlinks.com
127.0.0.1 100sexlinks.com
127.0.0.1 10sek.com
127.0.0.1 www.10sek.com
127.0.0.1 www.1-2005-search.com
127.0.0.1 1-2005-search.com
127.0.0.1 123fporn.info
127.0.0.1 www.123fporn.info
127.0.0.1 123haustiereundmehr.com
127.0.0.1 www.123haustiereundmehr.com
 
There are more than 1000 lines.
 
 
==================== Scheduled Tasks (whitelisted) =============
 
Task: C:\WINDOWS\Tasks\Microsoft Antimalware Scheduled Scan.job => c:\Program Files\Microsoft Security Client\MpCmdRun.exe
Task: C:\WINDOWS\Tasks\shutdown.job => C:\WINDOWS\system32\shutdown.exe
 
==================== Faulty Device Manager Devices =============
 
 
==================== Event log errors: =========================
 
Application errors:
==================
Error: (06/24/2013 04:54:25 PM) (Source: Microsoft Security Client Setup) (User: )
Description: HRESULT:0x8004FF0A
Description:.  0x8004FF0A.
 
Error: (06/24/2013 10:39:11 AM) (Source: Microsoft Security Client Setup) (User: )
Description: HRESULT:0x80070643
Description:.  0x80070643. Fatal error during installation.
 
Error: (06/24/2013 10:39:09 AM) (Source: MsiInstaller) (User: HOME-AUTO)
Description: Product: Microsoft Security Client -- The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2324. The arguments are: 1920, c:\Program Files\Microsoft Security Client\SymSrv.yes,
 
Error: (06/24/2013 06:49:53 AM) (Source: Microsoft Security Client Setup) (User: )
Description: HRESULT:0x80070643
Description:.  0x80070643. Fatal error during installation.
 
Error: (06/24/2013 06:49:50 AM) (Source: MsiInstaller) (User: HOME-AUTO)
Description: Product: Microsoft Security Client -- The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2324. The arguments are: 1920, c:\Program Files\Microsoft Security Client\SymSrv.yes,
 
Error: (06/23/2013 08:49:58 PM) (Source: Microsoft Security Client Setup) (User: )
Description: HRESULT:0x80070643
Description:.  0x80070643. Fatal error during installation.
 
Error: (06/23/2013 08:49:52 PM) (Source: MsiInstaller) (User: HOME-AUTO)
Description: Product: Microsoft Security Client -- The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2324. The arguments are: 1920, c:\Program Files\Microsoft Security Client\SymSrv.yes,
 
Error: (03/14/2013 00:31:47 AM) (Source: HomeServer) (User: )
Description: Backup set 479 on SERVERDEUCE failed: Microsoft.HomeServer.Backup.Protocol.ProtocolException: Client / Server connection lost
   at Microsoft.HomeServer.Backup.Protocol.ReconnectableStream.TryReconnect(Int32 localGeneration)
   at Microsoft.HomeServer.Backup.Protocol.ReconnectableStream.WriteWithReconnect(Int32 count)
   at Microsoft.HomeServer.Backup.Protocol.ReconnectableStream.Write(Byte[] buffer, Int32 offset, Int32 count)
   at Microsoft.HomeServer.Common.Client.BinaryWriterEx.Write(Int64 value)
   at Microsoft.HomeServer.Backup.Protocol.BackupProtocol.Send(Request request)
   at Microsoft.HomeServer.Backup.Protocol.BackupProtocol.SendClusterHash(Int64 clusterIndex, Byte[] hash)
   at Microsoft.HomeServer.Backup.BackupOp.BackupOperation.DoClusterPass1()
   at Microsoft.HomeServer.Backup.BackupOp.BackupOperation.RunWithoutCatch()
   at Microsoft.HomeServer.Backup.BackupOp.BackupOperation.Run()
   at Microsoft.HomeServer.Backup.BackupOp.BackupSetOperation.RunWithoutCatch()
   at Microsoft.HomeServer.Backup.BackupOp.BackupSetOperation.Run()
 
Error: (03/14/2013 00:30:09 AM) (Source: HomeServer) (User: )
Description: Backup of volume C: to SERVERDEUCE failed: Microsoft.HomeServer.Backup.Protocol.ProtocolException: Client / Server connection lost
   at Microsoft.HomeServer.Backup.Protocol.ReconnectableStream.TryReconnect(Int32 localGeneration)
   at Microsoft.HomeServer.Backup.Protocol.ReconnectableStream.WriteWithReconnect(Int32 count)
   at Microsoft.HomeServer.Backup.Protocol.ReconnectableStream.Write(Byte[] buffer, Int32 offset, Int32 count)
   at Microsoft.HomeServer.Common.Client.BinaryWriterEx.Write(Int64 value)
   at Microsoft.HomeServer.Backup.Protocol.BackupProtocol.Send(Request request)
   at Microsoft.HomeServer.Backup.Protocol.BackupProtocol.SendClusterHash(Int64 clusterIndex, Byte[] hash)
   at Microsoft.HomeServer.Backup.BackupOp.BackupOperation.DoClusterPass1()
   at Microsoft.HomeServer.Backup.BackupOp.BackupOperation.RunWithoutCatch()
   at Microsoft.HomeServer.Backup.BackupOp.BackupOperation.Run()
 
Error: (01/01/2013 05:15:07 PM) (Source: Application Hang) (User: )
Description: Hanging application iexplore.exe, version 8.0.6001.18702, hang module hungapp, version 0.0.0.0, hang address 0x00000000.
 
 
System errors:
=============
Error: (06/25/2013 03:43:30 AM) (Source: Service Control Manager) (User: )
Description: The Microsoft Antimalware Service service failed to start due to the following error: 
%%1920
 
Error: (06/24/2013 05:01:05 PM) (Source: 0) (User: )
Description: \Device\Harddisk0\D
 
Error: (06/24/2013 04:56:08 PM) (Source: Service Control Manager) (User: )
Description: The Microsoft Antimalware Service service failed to start due to the following error: 
%%1920
 
Error: (06/23/2013 08:46:56 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service terminated with the following error: 
%%1060
 
Error: (06/23/2013 08:46:56 PM) (Source: Service Control Manager) (User: )
Description: The Microsoft Antimalware Service service failed to start due to the following error: 
%%1920
 
Error: (06/23/2013 08:45:27 PM) (Source: 0) (User: )
Description: 0xC0000001HarddiskVolume1
 
Error: (06/23/2013 07:29:12 PM) (Source: Service Control Manager) (User: )
Description: The Computer Browser service terminated with the following error: 
%%1060
 
Error: (06/23/2013 07:29:12 PM) (Source: Service Control Manager) (User: )
Description: The Microsoft Antimalware Service service failed to start due to the following error: 
%%1920
 
Error: (06/23/2013 07:27:43 PM) (Source: 0) (User: )
Description: 0xC0000001HarddiskVolume1
 
Error: (06/23/2013 07:26:45 PM) (Source: DCOM) (User: NT AUTHORITY)
Description: DCOM got error "%%1084" attempting to start the service EventSystem with arguments ""
in order to run the server:
{1BE1F766-5536-11D1-B726-00C04FB926AF}
 
 
Microsoft Office Sessions:
=========================
Error: (06/24/2013 04:54:25 PM) (Source: Microsoft Security Client Setup)(User: )
Description: HRESULT:0x8004FF0A
Description:.  0x8004FF0A.
 
Error: (06/24/2013 10:39:11 AM) (Source: Microsoft Security Client Setup)(User: )
Description: HRESULT:0x80070643
Description:.  0x80070643. Fatal error during installation.
 
Error: (06/24/2013 10:39:09 AM) (Source: MsiInstaller)(User: HOME-AUTO)
Description: Product: Microsoft Security Client -- The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2324. The arguments are: 1920, c:\Program Files\Microsoft Security Client\SymSrv.yes, (NULL)(NULL)(NULL)
 
Error: (06/24/2013 06:49:53 AM) (Source: Microsoft Security Client Setup)(User: )
Description: HRESULT:0x80070643
Description:.  0x80070643. Fatal error during installation.
 
Error: (06/24/2013 06:49:50 AM) (Source: MsiInstaller)(User: HOME-AUTO)
Description: Product: Microsoft Security Client -- The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2324. The arguments are: 1920, c:\Program Files\Microsoft Security Client\SymSrv.yes, (NULL)(NULL)(NULL)
 
Error: (06/23/2013 08:49:58 PM) (Source: Microsoft Security Client Setup)(User: )
Description: HRESULT:0x80070643
Description:.  0x80070643. Fatal error during installation.
 
Error: (06/23/2013 08:49:52 PM) (Source: MsiInstaller)(User: HOME-AUTO)
Description: Product: Microsoft Security Client -- The installer has encountered an unexpected error installing this package. This may indicate a problem with this package. The error code is 2324. The arguments are: 1920, c:\Program Files\Microsoft Security Client\SymSrv.yes, (NULL)(NULL)(NULL)
 
Error: (03/14/2013 00:31:47 AM) (Source: HomeServer)(User: )
Description: 479SERVERDEUCEMicrosoft.HomeServer.Backup.Protocol.ProtocolException: Client / Server connection lost
   at Microsoft.HomeServer.Backup.Protocol.ReconnectableStream.TryReconnect(Int32 localGeneration)
   at Microsoft.HomeServer.Backup.Protocol.ReconnectableStream.WriteWithReconnect(Int32 count)
   at Microsoft.HomeServer.Backup.Protocol.ReconnectableStream.Write(Byte[] buffer, Int32 offset, Int32 count)
   at Microsoft.HomeServer.Common.Client.BinaryWriterEx.Write(Int64 value)
   at Microsoft.HomeServer.Backup.Protocol.BackupProtocol.Send(Request request)
   at Microsoft.HomeServer.Backup.Protocol.BackupProtocol.SendClusterHash(Int64 clusterIndex, Byte[] hash)
   at Microsoft.HomeServer.Backup.BackupOp.BackupOperation.DoClusterPass1()
   at Microsoft.HomeServer.Backup.BackupOp.BackupOperation.RunWithoutCatch()
   at Microsoft.HomeServer.Backup.BackupOp.BackupOperation.Run()
   at Microsoft.HomeServer.Backup.BackupOp.BackupSetOperation.RunWithoutCatch()
   at Microsoft.HomeServer.Backup.BackupOp.BackupSetOperation.Run()
 
Error: (03/14/2013 00:30:09 AM) (Source: HomeServer)(User: )
Description: 479C:SERVERDEUCEMicrosoft.HomeServer.Backup.Protocol.ProtocolException: Client / Server connection lost
   at Microsoft.HomeServer.Backup.Protocol.ReconnectableStream.TryReconnect(Int32 localGeneration)
   at Microsoft.HomeServer.Backup.Protocol.ReconnectableStream.WriteWithReconnect(Int32 count)
   at Microsoft.HomeServer.Backup.Protocol.ReconnectableStream.Write(Byte[] buffer, Int32 offset, Int32 count)
   at Microsoft.HomeServer.Common.Client.BinaryWriterEx.Write(Int64 value)
   at Microsoft.HomeServer.Backup.Protocol.BackupProtocol.Send(Request request)
   at Microsoft.HomeServer.Backup.Protocol.BackupProtocol.SendClusterHash(Int64 clusterIndex, Byte[] hash)
   at Microsoft.HomeServer.Backup.BackupOp.BackupOperation.DoClusterPass1()
   at Microsoft.HomeServer.Backup.BackupOp.BackupOperation.RunWithoutCatch()
   at Microsoft.HomeServer.Backup.BackupOp.BackupOperation.Run()
 
Error: (01/01/2013 05:15:07 PM) (Source: Application Hang)(User: )
Description: iexplore.exe8.0.6001.18702hungapp0.0.0.000000000
 
 
==================== Memory info =========================== 
 
Percentage of memory in use: 13%
Total physical RAM: 3326.46 MB
Available physical RAM: 2869.72 MB
Total Pagefile: 5210.54 MB
Available Pagefile: 4900.29 MB
Total Virtual: 2047.88 MB
Available Virtual: 1949.55 MB
 
==================== Drives ================================
 
Drive c: (Automation) (Fixed) (Total:111.78 GB) (Free:95.5 GB) NTFS ==>[Drive with boot components (Windows XP)]
Drive d: (SWInstallationCD) (CDROM) (Total:0.35 GB) (Free:0 GB) CDFS
Drive e: (U3 System) (CDROM) (Total:0.01 GB) (Free:0 GB) CDFS
Drive f: () (Removable) (Total:1.91 GB) (Free:1.75 GB) FAT
 
==================== MBR & Partition Table ==================
 
========================================================
Disk: 0 (MBR Code: Windows XP) (Size: 112 GB) (Disk ID: 56F856F8)
Partition 1: (Active) - (Size=112 GB) - (Type=07 NTFS)
 
========================================================
Disk: 1 (Size: 2 GB) (Disk ID: 00000000)
Partition 1: (Not Active) - (Size=2 GB) - (Type=06)
 
==================== End Of Log ============================


#10 TB-Psychotic

TB-Psychotic

  • Malware Response Team
  • 6,349 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:08:25 AM

Posted 25 June 2013 - 11:14 AM

Fix with FRST

  • Open notepad (Start =>All Programs => Accessories => Notepad).
  • Please copy the entire contents of the code box below.
    (To do this highlight the contents of the box, right click on it and select copy. Right-click in the open notepad and select Paste). Save it on the flashdrive as fixlist.txt

    HKLM\...\Runonce: [AvgUninstallURL] cmd.exe /c start http://www.avg.com/ww.special-uninstallation-feedback-appf?lic=OQBBAFYARgBSAEUARQAtAFYATgBKADMAMgAtAEcAMwBMAEEAQQAtAEEANAA4ADkAUgAtADkAVQBKAEsARgAtAEUASwBLADMAWAA"&"inst=NwA3AC0AMwA5ADEAMgA2ADgAMAA5ADYALQBUAEIAOQArADIALQBGAEwAKwA5AC0AWABPADMANgArADEALQBGADkATQA3AEMAKwA1AC0ARgA5AE0AMQAwAEIAKwAyAC0AWABPADkAKwAxAC0ARgA5AE0AMgArADEALQBEAEQAVAArADEAMQA0ADgAMgAtAEQARAA5ADAARgArADEALQBTAFQAOQAwAEYAQQBQAFAAKwAxAC0ARgA5ADAATQAxADIAQQBUACsAMQAtAEYAOQAwAE0AMQAyAEEAKwAxAC0ARgA5ADAATQAxADIAQQBCACsAMQAtAFUAOQA1ACsAMQAtAEYAOQAwAE0AMQAyAEEAVABCAE4AKwAxAA"&"prod=90"&"ver=9.0.894 [x]
    HKLM\...D6A79037F57F\InprocServer32: [Default-fastprox] fastprox.dll ATTENTION! ====> ZeroAccess
    
    C:\WINDOWS\Tasks\shutdown.job
    C:\Documents and Settings\All Users\Desktop\Internet Security Pro.lnk
    DeleteJunctionsIndirectory: C:\Program Files\Microsoft Security Client
     
    

    NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system

    Now please enter System Recovery Options again.

  • Run frst.exe (on 64bit, run frst64.exe) and press the Fix button just once and wait.
  • The tool will make a log on the flashdrive (Fixlog.txt) please post it to your reply.

Proud Member of UNITE & TB
 
My help is free, however, if you want to support my fight against malware, click here --> btn_donate_SM.gif <--(no worries, every little bit helps)

#11 sohcrates

sohcrates
  • Topic Starter

  • Members
  • 24 posts
  • OFFLINE
  •  
  • Local time:03:25 AM

Posted 25 June 2013 - 11:33 AM

Here you go Marius.

 

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 25-06-2013 01
Ran by Ethan Maniatis at 2013-06-25 12:28:53 Run:1
Running from F:\antivirus take 2
Boot Mode: Normal
 
==============================================
 
HKLM\Software\Microsoft\Windows\CurrentVersion\RunOnce\\AvgUninstallURL => Value deleted successfully.
HKLM\Software\Classes\CLSID\{5839FCA9-774D-42A1-ACDA-D6A79037F57F}\InprocServer32\\Default => Value was restored successfully.
C:\WINDOWS\Tasks\shutdown.job => Moved successfully.
C:\Documents and Settings\All Users\Desktop\Internet Security Pro.lnk => Moved successfully.
"C:\Program Files\Microsoft Security Client" => Deleting reparse point and unlocking started.
"C:\Program Files\Microsoft Security Client\Antimalware" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\Backup" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\DbgHelp.dll" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\Drivers" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\en-us" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\EppManifest.dll" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\LegitLib.dll" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\MpAsDesc.dll" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\MpClient.dll" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\MpCmdRun.exe" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\MpCommu.dll" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\mpevmsg.dll" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\MpOAv.dll" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\MpRTP.dll" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\MpSvc.dll" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\MsMpCom.dll" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\MsMpEng.exe" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\MsMpLics.dll" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\MsMpRes.dll" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\msseces.exe" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\MsseWat.dll" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\Setup.exe" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\SetupRes.dll" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\shellext.dll" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\sqmapi.dll" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\SymSrv.dll" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client\SymSrv.yes" => Deleting reparse point and unlocking completed.
"C:\Program Files\Microsoft Security Client" => Deleting reparse point and unlocking completed.
 
 
The system needs a manual reboot. 
 
==== End of Fixlog ====


#12 TB-Psychotic

TB-Psychotic

  • Malware Response Team
  • 6,349 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:08:25 AM

Posted 25 June 2013 - 11:59 AM

Reboot if you haven´t already.

 

Please go to here to run the online scannner from ESET.

  • Turn off the real time scanner of any existing antivirus program while performing the online scan
  • Tick the box next to YES, I accept the Terms of Use.
  • Click Start
  • When asked, allow the activex control to install
  • Click Start
  • Make sure that the option Remove found threats is unticked
  • Click on Advanced Settings and ensure these options are ticked:
    • Scan for potentially unwanted applications
    • Scan for potentially unsafe applications
    • Enable Anti-Stealth Technology
  • Click Scan
  • Wait for the scan to finish
  • If any threats were found, click the 'List of found threats' , then click Export to text file....
  • Save it to your desktop, then please copy and paste that log as a reply to this topic.


Proud Member of UNITE & TB
 
My help is free, however, if you want to support my fight against malware, click here --> btn_donate_SM.gif <--(no worries, every little bit helps)

#13 sohcrates

sohcrates
  • Topic Starter

  • Members
  • 24 posts
  • OFFLINE
  •  
  • Local time:03:25 AM

Posted 25 June 2013 - 01:05 PM

Here you go...

 

C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\170501[1].js HTML/Iframe.B.Gen virus
C:\Program Files\Common Files\SmartHome\Device Manager\SDM3.exe probably unknown NewHeur_PE virus
 



#14 TB-Psychotic

TB-Psychotic

  • Malware Response Team
  • 6,349 posts
  • OFFLINE
  •  
  • Gender:Male
  • Local time:08:25 AM

Posted 25 June 2013 - 01:06 PM

Fix with FRST

  • Open notepad (Start =>All Programs => Accessories => Notepad).
  • Please copy the entire contents of the code box below.
    (To do this highlight the contents of the box, right click on it and select copy. Right-click in the open notepad and select Paste).
  • Save it to the same direction as frst.exe (or frst64.exe) as fixlist.txt.

    C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U
     
    
    NOTICE: This script was written specifically for this user, for use on that particular machine. Running this on another machine may cause damage to your operating system
  • Run frst.exe (on 64bit, run frst64.exe) and press the Fix button just once and wait.
  • The tool will make a log (Fixlog.txt) which you find where you saved FRST. Please post it to your reply.

 

 

 

 

Then we can do the cleanup - if you are facing any issues, report that immediately.

Scan with adwCleaner


Please download AdwCleaner to your desktop.


  • Run adwcleaner.exe.
  • Hit delete.
  • When the run is finished, it will open up a text file.
  • Please post its contents within your next reply.
  • You´ll find the log file at C:\AdwCleaner[S1].txt also.


SecurityCheck

Please download SecurityCheck: LINK1 LINK2

  • Save it to your desktop, start it and follow the instructions in the window.
  • After the scan finished the (checkup.txt) will open. Copy its content to your thread.


Proud Member of UNITE & TB
 
My help is free, however, if you want to support my fight against malware, click here --> btn_donate_SM.gif <--(no worries, every little bit helps)

#15 sohcrates

sohcrates
  • Topic Starter

  • Members
  • 24 posts
  • OFFLINE
  •  
  • Local time:03:25 AM

Posted 25 June 2013 - 01:28 PM

Everything seems OK at this point.  MSE has returned to normal function.

 

 

Here are the logs:

 

Fix result of Farbar Recovery Tool (FRST written by Farbar) (x86) Version: 25-06-2013 01
Ran by Ethan Maniatis at 2013-06-25 14:13:57 Run:2
Running from F:\antivirus take 2
Boot Mode: Normal

==============================================

"C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U" directory move:

Could not move C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\0[1].htm. => Scheduled to move on reboot.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\1.7.1.min[1].jgz => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\10[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\10[2].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\11[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\11[2].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\12[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\12[2].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\13[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\13[2].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\14593[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\170501[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\171463774[1].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\192_168_1_13[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\192_168_1_13[2].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\192_168_1_13[3].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\1;ct=2684037355;st=1669;adcid=1;itime=909726357;reqtype=25;;kr20759=1980623;kr14214=404650;kr9569=404331;kp=236934;kvrid=51c5ae5e35a0a8fe2fbd5ade0a0200d1[1] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\1xoF7xagcgTciuKfazwb-Q8lylFXtQv_ZunlG6JLxfo[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\22[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\23[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\24[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\24[2].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\24[3].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\300x250_qtp[1].mp4 => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\3365859[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\383918[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\386681[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\390317[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\390339[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\4300ae64-546c-4bbe-9026-6779b3684fb9_18[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\4493i0DB667016D416031[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\45[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\45[2].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\46[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\48[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\5004[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\64x36[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\6ef177b8-1a15-4e39-bdda-6b672064860b_21[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\80x31_logo[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\80x80px-LS-db7dc303_gosling[1].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\aclk[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\aclk[2].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\acq_fios_3x_+LC_Coupon_standard_728x90_20130504[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\actiontec_topbar_adv_setup[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\actiontec_topbar_status[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ActionZone_widetop[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\adchoices_1.4_blue[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ADSAdClient31[1].txt => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\adsbymflogo[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ads[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ads[1].php => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ads[2].php => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ad_300x600b[1].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ai017c34b791df970b017c38797d0e970b[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ai017c34b791df970b017c38797d2e970b[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ai017c34b791df970b017c38797d36970b[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ai017c34b791df970b017c38797d46970b[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ai017c34b791df970b017d4133db7a970c[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ai017c34b791df970b017d42a886c9970c[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ai017c34b791df970b017ee6a96fb2970d[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ai017c34b791df970b017eea1cc1f4970d[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ai017c34b791df970b017eea1cc20e970d[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ajax_loading[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\all[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\animation-min[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\arr_li[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\autotab[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\avatar57788_22[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\avatar666_66[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\aYnbzGdm[1].swf => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\back-navi[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\background[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\background[2].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\badge_advanced_member.v1371743800[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\bal_2[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\bg_backgrounds01_new[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\bg_images[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\bg_info[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\bg_line_bottom[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\bg_stripe[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\billboard[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\binglogo[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\bk-coretag[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\bk-static[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\blank[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\blan[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\bleeping[1].ico => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\bm2_manual_h[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\bm2_plugin_n[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\bm2_status_n[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\bottom_right[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\Bounce[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\brand[1] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\breadcrumb-arrow[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\breadcrumb-bg[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\broker-config_s2[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\bubbletranswhitecaret[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\bubble_red_br[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\bubble_red_cb[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\bubble_red_ct[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\bubble_red_tl[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\bullet_black[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\Button_AddAction[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_cancel[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_cancel[2].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_cancel_bg[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_Change[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_dev_h[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_email_s[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_email_s[2].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_go[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_interfaces_h[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_interfaces_h[2].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_interfaces_n[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_interfaces_s[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_lithium_logo[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_name_h[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_OK-n[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_phone_n[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_phone_s[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_Register[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_start[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_test[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_trigger_n[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_webserver_h[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_website_h[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\button_website_n[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\c641cc8d-f054-4fdf-9456-ee8259186e1b_5[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\CAKMLWED.HTM => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\calendar[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\career[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\carousel_golf[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\category-divider[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ca[1] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\CA_Left[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\CA_Right[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\cb=gapi[1].loaded_0 => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\cb=gapi[1].loaded_1 => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\cb=gapi[2].loaded_0 => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\cbc6f38d-b79c-4bff-8b67-b81eb9676ab3_5[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\chart_safety[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\Chrome+Speedtest+1x1[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\cleardot[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\cleardot[2].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\cleardot[3].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\click[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\click[1].ic => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ClientBiSettings.Wol[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\clock[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\clock[2].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\colorbox[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\colorbox_bg[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\comboCA04MSR4 => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\comboCA16WV2L => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\comboCA6Q430J => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\comboCA9485QV => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\comboCAQKJF42 => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\combo[10] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\combo[11] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\combo[1] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\combo[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\combo[2] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\combo[2].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\combo[3] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\combo[3].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\combo[4] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\combo[4].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\combo[5] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\combo[6] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\combo[7] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\combo[8] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\combo[9] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\comment-reply.min[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\comment[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\community_bg[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\community_leader[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\computerstatusprotected_web[1].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\contents[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\controls[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\controls[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\controls[2].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\corev4[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\core[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\crossdomain[1].xml => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\crossdomain[2].xml => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\css[1].ashx => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\custom[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\custom[2].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\default+en.I[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\default[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\default[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\default[2].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\default[3].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\default[5].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\default[6].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\demo[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\departments[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\desktop.ini => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\detector[1].swf => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\digg[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\dragdrop[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\dropbox[1].css => Moved successfully.
Could not move C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\DtCol[2].htm. => Scheduled to move on reboot.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\dt[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\dt[2].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\dt[3].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\dt[4].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\dt[5].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\dt[6].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\dt[7].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\dt[8].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\dwnArrow[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\e2fec421b1bbaa91[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\e9979a8b-c439-452a-a09f-d3b32df0e5b1_13[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\eav-v6_108x40[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\elqCfg.min[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\endscreen-vfljrqX9W[1].swf => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\eos-trial-button-eav[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\er.88.app.3ie33cpgj6dhi.ver.46.app.3ie3464o3ed33.ver.9.app.62dhh6thj8cb3.ver.31.app.64c1n65hm8o9m.ver.15.app.66c1j6ph68ohn.ver.31.app.6cdj26sq3cdb6.ver[1].8 => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\er.88.app.3ie33cpgj6dhi.ver.46.app.3ie3464o3ed33.ver.9.app.62dhh6thj8cb3.ver.31.app.64c1n65hm8o9m.ver.15.app.66c1j6ph68ohn.ver.31.app.6cdj26sq3cdb6.ver[2].8 => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\evnm3526&edit=16ec63e09[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\evnm3526&edit=1ca217792[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\evnm3526&edit=1e50fab38[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\facebook_icon[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\fancy_nav_left[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\fancy_shadow_n[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\fancy_shadow_s[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\favicon[1].ico => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\favicon[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\favicon[2].ico => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\favicon[2].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\favicon[3].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\favicon[4].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\fbconnect[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\feed[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\find_button[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\find_div[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\flyoutclosebtnround[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\form-fieldbg[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\forum-logo[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\functions[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\functions[2].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\genuineparts_banner[1].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\george_zimmer_120x48_1371658648[1].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\getInPage[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\gfl[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\Glass_leftcap[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\Glass_rightcap[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\GotoIntrnt_btn[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\gray_button[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\gray_button[2].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\head-f86d890f4b46a9349ea053e2d4f9afb8.merged[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\header_bg[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\header_dropdown[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\heading-spacer[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\heading2[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\heading[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\help-btn[1].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\home-arrow-left[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\home-arrow-right[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\home2[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\hub[1].html => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\h_tools[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\h_tools_div[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\icn_loading_animated-vflff1Mjj[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\icon-author[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\icons-default.v1371743800[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ico_rss_27[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ico_world[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ico_youtube_25[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\images[1].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\images[2].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\imp[1] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\imp[2] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\index[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\index[1].php => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\infinity.js[10].aspx => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\infinity.js[11].aspx => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\infinity.js[1].aspx => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\infinity.js[2].aspx => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\infinity.js[3].aspx => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\infinity.js[4].aspx => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\infinity.js[5].aspx => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\infinity.js[6].aspx => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\infinity.js[7].aspx => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\infinity.js[8].aspx => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\infinity.js[9].aspx => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\InlineLabelEditor[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\intranetticker[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ips_options[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\jquery-1.6.min[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\jquery-1.8.1.min[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\jquery-ui[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\jquery.hoverIntent.minified[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\jquery.infinitecarousel2.min[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\jquery.min[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\jquery.min[2].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\jquery[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\jstags[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\kidseat_120x48_1372118304[1].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\KonaFlashBase[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\KonaSend[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\KonaSend[2].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\KonaSend[3].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\KonaSend[4].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\KonaSend[5].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\KonaSend[6].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\KonaSend[7].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\lang-sql[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\latency[1].txt => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\latency[2].txt => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\latency[3].txt => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\latency[4].txt => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\latency[5].txt => Moved successfully.
Could not move C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\launch[1].htm. => Scheduled to move on reboot.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\lift_nav_new[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\lightbox[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\linkback_about[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\linkedin_icon[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\locale[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\login-left[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\logo[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\logo[2].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\magnifying-glass[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\main_menu_tile[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\main_toolbar_cdn.min[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\mdc-form_b_fix[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\mdc-form_b_fix[2].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\mdc-nav1-norm4[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\mdc-plug-norm[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\mdc-plug-norm[2].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\mdc-plug-over[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\message[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\microsoft_logo_footer_v3[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\mqdefault[1].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\mqdefault[2].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\mqdefault[3].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\mqdefault[4].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\Mse_Download_Links[1].xml => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\mymedia[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\MyNtwk_top[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\navbit-home[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\navi-divider[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\nav_div1[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\nav_logo129[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\newheader_bg[1].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\off[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\omnicodef[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\online-scanner-popup[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\online-scanner[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\on[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\oo_black[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\optn=64[1] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\oX3h85a2YJF[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\p1[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\page-bg[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\page-layouts-21[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\page_bg[1].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\parent[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\PartsLookupPickList[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\PartsLookupResults[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\partslookup[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\parts_ad_dealer[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\photo[1] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\photo[2] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ph_pauseroll[1].xml => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ph_pauseroll[2].xml => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ph_pauseroll[3].xml => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ph_postroll[1].xml => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\picnet.table.filter.min[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ping[1] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ping[2] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ping[3] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\pixel-vfl3z5WfW[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\plusone[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\popover[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\PopUnder[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\PopUnder[2].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\PopUnder[3].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\PopUnder[4].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\prettify[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\products_06[1].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\professional_irrigation_main[1].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\profile_b32[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\progress[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\projectnews_bizmetrics[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\prototype[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ptj[1] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ptj[2] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ptj[3] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ptj[4] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\pVuO3nFivZkdQ7StHlkCaEinVauGAA_95gT1C8tfGkCUJ6gr3xb2dz8zMo9p2HjgwErBOVqKxtenDisgQmhK5y3oFjLigI6RBQdO-WbFhc4Yf8MBxFMUXTOC-TX8G6h1txwdQpgL4tbk9b-E07y3v[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\p[1].json => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\Q6Gk6LV2RnH[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\quant[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\quicklinks_committees[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\random750x750[1].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\random750x750[2].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\RCSSerial_status[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\red_button[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\red_pjson[1] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\rental_main[1].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\reset-fonts-grids[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\right_door[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\round_bottom[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\round_title_bg[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\round_top_left[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\round_top_right[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\rs=AItRSTMxcUTKX7_k7F3jagv1ABf8swPrOg[1] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\rs=AItRSTNGd_bujcbi6C8YsodA60AbaiIe9w[1] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\rs=AItRSTNGd_bujcbi6C8YsodA60AbaiIe9w[2] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\rs=AItRSTPAYKFRw9lExN50m-0ulvKxQqIqRQ[1] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\rs=AItRSTPIKUBTK4qEpDFqRRAofSlC0_aF8g[1] => Moved successfully.
Could not move C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\RSltPrc[1].htm. => Scheduled to move on reboot.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\scbgreybackbar[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\scbsmbnavbg[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\scbsmbspritebg[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\scriptaculous[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ScriptResource[1].axd => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\ScriptResource[2].axd => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\script[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\search.I[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\search[10] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\search[1] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\search[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\search[1].xml => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\search[2] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\search[2].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\search[2].xml => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\search[3] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\search[3].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\search[3].xml => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\search[4] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\search[4].xml => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\search[5] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\search[6] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\search[7] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\search[8] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\search[9] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\security-essentials-download[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\segments[1].json => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\sfo[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\share-fb[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\share-tw[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\simplitech_425x100[1].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\si[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\si[2].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\si[3].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\skin[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\skypelogo[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\sp.core[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\sp.ribbon[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\spinner-32x32-anim[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\spr_tip[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\srch-gh-ltr-105420[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\standard-wide[1].swf => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\start[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\start[2].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\stif9273728c[1] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\store-box-add-to-cart-green[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\store[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\stories_footer_bg[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\style[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\style[3].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\subnavigation[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\sunrise[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\sunset[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\sunset[2].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\sunset[3].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\superfish[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\svrGP[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\svrGP[2].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\svrGP[3].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\svrGP[4].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\swp[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\system.base[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\s[10] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\s[11] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\s[1] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\s[2] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\s[3] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\s[4] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\s[5] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\s[6] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\s[7] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\s[8] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\s[9] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\s_code[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\s_code_2[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\tabs-hover-bg[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\tncVIktsEeGk4RIxOSbhOA[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\tooltip_stem_topright[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\top-highlight[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\top-nav_on-bg[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\top[1] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\top[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\toro-logo[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\Toro.PubSub[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\trig710781824427[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\trig7107a059ed47[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\trig7107[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\twitter[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\uploadCA2E0RMU.htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\uploadCA68X8V9.htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\upload[10].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\upload[11].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\upload[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\upload[2].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\upload[3].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\upload[4].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\upload[5].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\upload[6].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\upload[7].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\upload[8].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\upload[9].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\url[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\url[2].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\url[3].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\user[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\vbseo_ui[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\vbulletin-sidebar[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\vereos[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\verizonapex-book-webfont[1].eot => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\verizonapex-medium-webfont[1].eot => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\videobtn[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\videoplayback[1] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\video_15x11[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\v[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\watch[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\WebResource[1].axd => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\WebResource[2].axd => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\WebResource[2].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\WebResource[3].axd => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\WebResource[4].axd => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\webtrends.fpcdom[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\webtrends.min[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\webValidator[1].aspx => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\wheretobuy_banner[1].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\widget-forum[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\wsclient_50_4[1].swf => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\wt[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\www-core-vflUSm0E7[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\www-searchbox-vfl7NXbj_[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\www-watch-transcript-vfl-zKZyz[1].css => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\www_common_mod-vflsKUx_x[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\www_watch_transcript_mod-vflRs35JM[1].js => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\xd_arbiter[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\xrefid[1].gif => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\y100_1[1].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\y20_1[1].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\yahoo-login-sprite-1.4[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\youtube[1].png => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\yql[1] => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\z_master_and_timecutter_right_side[1].jpg => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\z_master_and_timercutter_rear[1].jpg => Moved successfully.
Could not move "C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U" directory. => Scheduled to move on reboot.

=========== Result of Scheduled Files to move ===========
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\0[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\DtCol[2].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\launch[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U\RSltPrc[1].htm => Moved successfully.
C:\Documents and Settings\Ethan Maniatis\Local Settings\Temporary Internet Files\Content.IE5\7CQL8K2U => Moved successfully.

==== End of Fixlog ====

 

# AdwCleaner v2.303 - Logfile created 06/25/2013 at 14:18:33
# Updated 08/06/2013 by Xplode
# Operating system : Microsoft Windows XP Service Pack 3 (32 bits)
# User : Ethan Maniatis - HOME-AUTO
# Boot Mode : Normal
# Running from : F:\antivirus take 2\adwcleaner.exe
# Option [Delete]

***** [Services] *****

 

# AdwCleaner v2.303 - Logfile created 06/25/2013 at 14:19:01
# Updated 08/06/2013 by Xplode
# Operating system : Microsoft Windows XP Service Pack 3 (32 bits)
# User : Ethan Maniatis - HOME-AUTO
# Boot Mode : Normal
# Running from : F:\antivirus take 2\adwcleaner.exe
# Option [Delete]

***** [Services] *****

***** [Files / Folders] *****

***** [Registry] *****

Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{3CA2F312-6F6E-4B53-A66E-4E65E497C8C0}
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\grusskartencenter.com
Key Deleted : HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains\grusskartencenter.com

***** [Internet Browsers] *****

-\\ Internet Explorer v8.0.6001.18702

[OK] Registry is clean.

*************************

AdwCleaner[S1].txt - [323 octets] - [25/06/2013 14:18:33]
AdwCleaner[S2].txt - [1043 octets] - [25/06/2013 14:19:01]

########## EOF - C:\AdwCleaner[S2].txt - [1103 octets] ##########

 

 

 Results of screen317's Security Check version 0.99.68 
 Windows XP Service Pack 3 x86  
 Internet Explorer 8 Out of date!
``````````````Antivirus/Firewall Check:``````````````
 Windows Firewall Enabled! 
Please wait while WMIC is being installed.d
i
s
p
l
a
y
N
a
m
e
ECHO is off.
M
i
c
r
o
s
o
f
t
ECHO is off.
S
e
c
u
r
i
t
y
ECHO is off.
E
s
e
n
t
i
a
l
s
ECHO is off.
 Antivirus up to date! (On Access scanning disabled!)
`````````Anti-malware/Other Utilities Check:`````````
 MVPS Hosts File 
 Spybot - Search & Destroy
 Malwarebytes Anti-Malware version 1.75.0.1300 
 Adobe Reader 9 Adobe Reader out of Date!
````````Process Check: objlist.exe by Laurent```````` 
 Microsoft Security Essentials MSMpEng.exe
 Microsoft Security Essentials msseces.exe
 SecurityCheck.exe   
`````````````````System Health check`````````````````
 Total Fragmentation on Drive C:: 16% Defragment your hard drive soon! (Do NOT defrag if SSD!)
````````````````````End of Log``````````````````````
 






0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users