SashiMurai
Posts: 13 +0
Malwarebytes' Anti-Malware 1.50
www.malwarebytes.org
Database version: 5290
Windows 6.1.7600
Internet Explorer 8.0.7600.16385
12/10/2010 3:37:57 PM
mbam-log-2010-12-10 (15-37-57).txt
Scan type: Quick scan
Objects scanned: 152319
Time elapsed: 2 minute(s), 14 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 13
Registry Values Infected: 1
Registry Data Items Infected: 0
Folders Infected: 29
Files Infected: 198
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_CLASSES_ROOT\CLSID\{4D1EC4CA-4B92-4324-B8F8-C9A6ED06A8AE} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{6F098504-CDB1-420F-A2E6-DDC0B835FEDF} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\HBLiteAX.Info.1 (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\HBLiteAX.Info (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4D1EC4CA-4B92-4324-B8F8-C9A6ED06A8AE} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{4E674574-3F0B-491d-8AE3-F90B43A34FD6} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\HBLiteAX.UserProfiles.1 (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\HBLiteAX.UserProfiles (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4E674574-3F0B-491D-8AE3-F90B43A34FD6} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A078F691-9C07-4AF2-BF43-35E79EECF8B7} (Adware.Softomate) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\hblitesa (Adware.HotBar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\HBLite (Adware.HotBar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HBLiteSA (Adware.HotBar) -> Quarantined and deleted successfully.
Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\extensions\HBLite@HBLite.com (Adware.HotBar) -> Value: HBLite@HBLite.com -> Quarantined and deleted successfully.
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
c:\program files (x86)\common files\comobject (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\autoconfig (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\profile (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\profile\chrome (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\dictionaries (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\extensions (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\greprefs (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\plugins (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\dtd (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\entitytables (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\fonts (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\html (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\searchplugins (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\uninstall (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\programdata\2aca5cc3-0f83-453d-a079-1076fe1a8b65 (Adware.Seekmo) -> Quarantined and deleted successfully.
c:\Users\Silver S\AppData\Roaming\HBLite (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\programdata\HBLiteSA (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\HBLite (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\HBLite\bin (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\HBLite\bin\11.0.326.0 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\HBLite\bin\11.0.326.0\firefox (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\HBLite\bin\11.0.326.0\firefox\extensions (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\HBLite\bin\11.0.326.0\firefox\extensions\plugins (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\Hotbar (Adware.Hotbar) -> Quarantined and deleted successfully.
Files Infected:
c:\program files (x86)\HBLite\bin\11.0.326.0\hblitesaax.dll (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\blocklist.xml (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\accessiblemarshal.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\application.ini (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\browserconfig.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\crashreporter-override.ini (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\crashreporter.exe (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\crashreporter.ini (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\freebl3.chk (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\hostdata.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\js3250.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\LICENSE (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\mozcrt19.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\nspr4.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\nss3.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\nssckbi.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\nssdbm3.chk (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\nssutil3.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\platform.ini (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\plc4.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\plds4.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\README.txt (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\smime3.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\softokn3.chk (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\sqlite3.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\ssl3.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\update.locale (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\updater.exe (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\updater.ini (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\xpcom.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\xul.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\browser.xpt (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\browserdirprovider.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\brwsrcmp.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\components.list (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\compreg.dat (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\feedconverter.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\feedprocessor.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\feedwriter.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\fuelapplication.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\gpsdgeolocationprovider.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\jsconsole-clhandler.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\networkgeolocationprovider.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsaddonrepository.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsbadcerthandler.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsblocklistservice.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsbrowsercontenthandler.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsbrowserglue.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nscontentdispatchchooser.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nscontentprefservice.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsdefaultclh.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsdownloadmanagerui.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsextensionmanager.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsformautocomplete.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nshandlerservice.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nshelperappdlg.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nslivemarkservice.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nslogininfo.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsloginmanager.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsloginmanagerprompter.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsmicrosummaryservice.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsplacesautocomplete.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsplacesdbflush.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsplacestransactionsservice.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsprivatebrowsingservice.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsproxyautoconfig.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nssafebrowsingapplication.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nssearchservice.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nssearchsuggestions.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nssessionstartup.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nssessionstore.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nssetdefaultbrowser.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nssidebar.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nstaggingservice.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nstrytoclose.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsupdateservice.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsupdateservicestub.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsupdatetimermanager.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsurlclassifierlib.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsurlclassifierlistmanager.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsurlformatter.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nswebhandlerapp.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\pluginglue.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\storage-legacy.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\storage-mozstorage.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\txexsltregexfunctions.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\webcontentconverter.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\xpti.dat (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\autoconfig\platform.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\autoconfig\prefcalls.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\profile\bookmarks.html (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\profile\localstore.rdf (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\profile\mimetypes.rdf (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\profile\prefs.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\profile\chrome\userchrome-example.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\profile\chrome\usercontent-example.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\dictionaries\en-US.aff (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\dictionaries\en-US.dic (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}\icon.png (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}\install.rdf (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}\preview.png (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\greprefs\all.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\greprefs\security-prefs.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\greprefs\xpinstall.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\certutils.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\ctypes.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\downloadlastdir.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\downloadutils.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\fileutils.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\iso8601dateutils.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\lightweightthemeconsumer.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\lightweightthememanager.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\NetUtil.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\networkprioritizer.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\openlocationlasturl.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\placesdbutils.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\pluralform.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\windowdraggingutils.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\windowspreviewpertab.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\xpcomutils.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\plugins\npbasic.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\plugins\npnul32.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\arrow.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\arrowd.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\broken-image.png (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\charsetalias.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\charsetdata.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\contenteditable.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\designmode.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\editoroverride.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\forms.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\grabber.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\hiddenwindow.html (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\html.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\langgroups.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\language.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\loading-image.png (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\mathml.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\quirk.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\svg.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-column-after-active.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-column-after-hover.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-column-after.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-column-before-active.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-column-before-hover.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-column-before.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-row-after-active.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-row-after-hover.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-row-after.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-row-before-active.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-row-before-hover.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-row-before.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-remove-column-active.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-remove-column-hover.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-remove-column.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-remove-row-active.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-remove-row-hover.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-remove-row.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\ua.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\viewsource.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\wincharset.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\dtd\mathml.dtd (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\dtd\xhtml11.dtd (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\entitytables\html40latin1.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\entitytables\html40special.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\entitytables\html40symbols.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\entitytables\htmlentityversions.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\entitytables\mathml20.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\entitytables\transliterate.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\fonts\mathfont.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\fonts\mathfontstandardsymbolsl.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\fonts\mathfontstixnonunicode.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\fonts\mathfontstixsize1.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\fonts\mathfontsymbol.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\fonts\mathfontunicode.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\html\folder.png (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\searchplugins\amazondotcom.xml (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\searchplugins\answers.xml (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\searchplugins\creativecommons.xml (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\searchplugins\eBay.xml (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\searchplugins\google.xml (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\searchplugins\wikipedia.xml (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\searchplugins\yahoo.xml (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\uninstall\helper.exe (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\Windows\System32\iexplore.sy_ (Malware.Trace) -> Quarantined and deleted successfully.
c:\Windows\SysWOW64\iexplore.sy_ (Malware.Trace) -> Quarantined and deleted successfully.
c:\programdata\HBLiteSA\HBLiteSA.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\programdata\HBLiteSA\hblitesaabout.mht (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\programdata\HBLiteSA\hblitesaau.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\programdata\HBLiteSA\hblitesaeula.mht (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\programdata\HBLiteSA\hblitesa_kyf.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\HBLite\bin\11.0.326.0\hblitesahook.dll (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\HBLite\bin\11.0.326.0\hbliteuninstaller.exe (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\HBLite\bin\11.0.326.0\firefox\extensions\install.rdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\HBLite\bin\11.0.326.0\firefox\extensions\plugins\npclntax_hblitesa.dll (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\Hotbar\about hotbar.lnk (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\Hotbar\hotbar customer support center.lnk (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\Hotbar\hotbar uninstall instructions.lnk (Adware.Hotbar) -> Quarantined and deleted successfully.
------------------------------
GMER 1.0.15.15530 - http://www.gmer.net
Rootkit scan 2010-12-10 16:18:14
Windows 6.1.7600
Running: fxkj9w9v.exe
---- Registry - GMER 1.0.15 ----
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg@s1 771343423
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg@s2 285507792
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg@h0 2
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 C:\Program Files (x86)\DAEMON Tools Lite\
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0 0x00 0x00 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 0
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0xCC 0x0B 0x63 0xCF ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0x90 0xB1 0x12 0x79 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0xEE 0x44 0x25 0x06 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq1
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq1@hdf12 0x3E 0xCE 0x11 0xAF ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq2
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq2@hdf12 0x96 0x22 0x58 0x38 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq3
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq3@hdf12 0x93 0xAE 0x4C 0xE8 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@p0 C:\Program Files (x86)\DAEMON Tools Lite\
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0 1
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh 0x6C 0xC9 0xB6 0x0B ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@khjeh 0x64 0x3D 0x00 0x2D ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40@khjeh 0x6F 0xD4 0x29 0x30 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41@khjeh 0xF5 0x8C 0x75 0x43 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 C:\Program Files (x86)\DAEMON Tools Lite\
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0 0x00 0x00 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 0
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0xCC 0x0B 0x63 0xCF ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0x90 0xB1 0x12 0x79 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0xEE 0x44 0x25 0x06 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq1 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq1@hdf12 0x3E 0xCE 0x11 0xAF ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq2 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq2@hdf12 0x96 0x22 0x58 0x38 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq3 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq3@hdf12 0x93 0xAE 0x4C 0xE8 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@p0 C:\Program Files (x86)\DAEMON Tools Lite\
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0 1
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh 0x6C 0xC9 0xB6 0x0B ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@khjeh 0x64 0x3D 0x00 0x2D ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40@khjeh 0x6F 0xD4 0x29 0x30 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41@khjeh 0xF5 0x8C 0x75 0x43 ...
Reg HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartPage\NewShortcuts@C:\Users\Silver S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\\xb7ÉËÙÍÁ\xb6\xb9\\xb7ÉËÙÍÁ\xb6\xb9.lnk 1
Reg HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartPage\NewShortcuts@C:\Users\Silver S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\\xb7ÉËÙÍÁ\xb6\xb9\Ð\xb6ÔØ\xb7ÉËÙÍÁ\xb6\xb9.lnk 1
Reg HKCU\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Persisted@C:\Program Files (x86)\Tudou\\xb7ÉËÙTudou\uninst.exe 33
---- EOF - GMER 1.0.15 ----
www.malwarebytes.org
Database version: 5290
Windows 6.1.7600
Internet Explorer 8.0.7600.16385
12/10/2010 3:37:57 PM
mbam-log-2010-12-10 (15-37-57).txt
Scan type: Quick scan
Objects scanned: 152319
Time elapsed: 2 minute(s), 14 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 13
Registry Values Infected: 1
Registry Data Items Infected: 0
Folders Infected: 29
Files Infected: 198
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_CLASSES_ROOT\CLSID\{4D1EC4CA-4B92-4324-B8F8-C9A6ED06A8AE} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{6F098504-CDB1-420F-A2E6-DDC0B835FEDF} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\HBLiteAX.Info.1 (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\HBLiteAX.Info (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4D1EC4CA-4B92-4324-B8F8-C9A6ED06A8AE} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{4E674574-3F0B-491d-8AE3-F90B43A34FD6} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\HBLiteAX.UserProfiles.1 (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\HBLiteAX.UserProfiles (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{4E674574-3F0B-491D-8AE3-F90B43A34FD6} (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{A078F691-9C07-4AF2-BF43-35E79EECF8B7} (Adware.Softomate) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\Software\hblitesa (Adware.HotBar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\HBLite (Adware.HotBar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\HBLiteSA (Adware.HotBar) -> Quarantined and deleted successfully.
Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Mozilla\Firefox\extensions\HBLite@HBLite.com (Adware.HotBar) -> Value: HBLite@HBLite.com -> Quarantined and deleted successfully.
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
c:\program files (x86)\common files\comobject (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\autoconfig (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\profile (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\profile\chrome (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\dictionaries (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\extensions (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd} (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\greprefs (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\plugins (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\dtd (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\entitytables (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\fonts (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\html (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\searchplugins (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\uninstall (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\programdata\2aca5cc3-0f83-453d-a079-1076fe1a8b65 (Adware.Seekmo) -> Quarantined and deleted successfully.
c:\Users\Silver S\AppData\Roaming\HBLite (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\programdata\HBLiteSA (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\HBLite (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\HBLite\bin (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\HBLite\bin\11.0.326.0 (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\HBLite\bin\11.0.326.0\firefox (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\HBLite\bin\11.0.326.0\firefox\extensions (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\HBLite\bin\11.0.326.0\firefox\extensions\plugins (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\Hotbar (Adware.Hotbar) -> Quarantined and deleted successfully.
Files Infected:
c:\program files (x86)\HBLite\bin\11.0.326.0\hblitesaax.dll (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\blocklist.xml (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\accessiblemarshal.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\application.ini (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\browserconfig.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\crashreporter-override.ini (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\crashreporter.exe (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\crashreporter.ini (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\freebl3.chk (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\hostdata.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\js3250.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\LICENSE (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\mozcrt19.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\nspr4.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\nss3.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\nssckbi.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\nssdbm3.chk (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\nssutil3.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\platform.ini (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\plc4.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\plds4.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\README.txt (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\smime3.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\softokn3.chk (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\sqlite3.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\ssl3.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\update.locale (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\updater.exe (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\updater.ini (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\xpcom.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\xul.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\browser.xpt (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\browserdirprovider.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\brwsrcmp.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\components.list (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\compreg.dat (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\feedconverter.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\feedprocessor.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\feedwriter.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\fuelapplication.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\gpsdgeolocationprovider.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\jsconsole-clhandler.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\networkgeolocationprovider.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsaddonrepository.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsbadcerthandler.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsblocklistservice.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsbrowsercontenthandler.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsbrowserglue.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nscontentdispatchchooser.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nscontentprefservice.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsdefaultclh.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsdownloadmanagerui.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsextensionmanager.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsformautocomplete.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nshandlerservice.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nshelperappdlg.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nslivemarkservice.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nslogininfo.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsloginmanager.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsloginmanagerprompter.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsmicrosummaryservice.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsplacesautocomplete.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsplacesdbflush.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsplacestransactionsservice.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsprivatebrowsingservice.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsproxyautoconfig.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nssafebrowsingapplication.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nssearchservice.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nssearchsuggestions.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nssessionstartup.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nssessionstore.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nssetdefaultbrowser.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nssidebar.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nstaggingservice.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nstrytoclose.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsupdateservice.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsupdateservicestub.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsupdatetimermanager.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsurlclassifierlib.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsurlclassifierlistmanager.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nsurlformatter.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\nswebhandlerapp.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\pluginglue.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\storage-legacy.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\storage-mozstorage.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\txexsltregexfunctions.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\webcontentconverter.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\components\xpti.dat (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\autoconfig\platform.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\autoconfig\prefcalls.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\profile\bookmarks.html (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\profile\localstore.rdf (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\profile\mimetypes.rdf (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\profile\prefs.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\profile\chrome\userchrome-example.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\defaults\profile\chrome\usercontent-example.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\dictionaries\en-US.aff (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\dictionaries\en-US.dic (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}\icon.png (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}\install.rdf (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}\preview.png (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\greprefs\all.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\greprefs\security-prefs.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\greprefs\xpinstall.js (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\certutils.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\ctypes.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\downloadlastdir.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\downloadutils.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\fileutils.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\iso8601dateutils.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\lightweightthemeconsumer.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\lightweightthememanager.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\NetUtil.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\networkprioritizer.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\openlocationlasturl.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\placesdbutils.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\pluralform.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\windowdraggingutils.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\windowspreviewpertab.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\modules\xpcomutils.jsm (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\plugins\npbasic.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\plugins\npnul32.dll (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\arrow.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\arrowd.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\broken-image.png (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\charsetalias.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\charsetdata.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\contenteditable.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\designmode.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\editoroverride.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\forms.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\grabber.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\hiddenwindow.html (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\html.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\langgroups.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\language.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\loading-image.png (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\mathml.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\quirk.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\svg.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-column-after-active.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-column-after-hover.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-column-after.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-column-before-active.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-column-before-hover.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-column-before.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-row-after-active.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-row-after-hover.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-row-after.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-row-before-active.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-row-before-hover.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-add-row-before.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-remove-column-active.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-remove-column-hover.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-remove-column.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-remove-row-active.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-remove-row-hover.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\table-remove-row.gif (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\ua.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\viewsource.css (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\wincharset.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\dtd\mathml.dtd (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\dtd\xhtml11.dtd (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\entitytables\html40latin1.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\entitytables\html40special.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\entitytables\html40symbols.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\entitytables\htmlentityversions.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\entitytables\mathml20.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\entitytables\transliterate.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\fonts\mathfont.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\fonts\mathfontstandardsymbolsl.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\fonts\mathfontstixnonunicode.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\fonts\mathfontstixsize1.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\fonts\mathfontsymbol.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\fonts\mathfontunicode.properties (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\res\html\folder.png (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\searchplugins\amazondotcom.xml (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\searchplugins\answers.xml (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\searchplugins\creativecommons.xml (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\searchplugins\eBay.xml (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\searchplugins\google.xml (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\searchplugins\wikipedia.xml (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\searchplugins\yahoo.xml (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\program files (x86)\common files\comobject\uninstall\helper.exe (Trojan.ObCom) -> Quarantined and deleted successfully.
c:\Windows\System32\iexplore.sy_ (Malware.Trace) -> Quarantined and deleted successfully.
c:\Windows\SysWOW64\iexplore.sy_ (Malware.Trace) -> Quarantined and deleted successfully.
c:\programdata\HBLiteSA\HBLiteSA.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\programdata\HBLiteSA\hblitesaabout.mht (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\programdata\HBLiteSA\hblitesaau.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\programdata\HBLiteSA\hblitesaeula.mht (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\programdata\HBLiteSA\hblitesa_kyf.dat (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\HBLite\bin\11.0.326.0\hblitesahook.dll (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\HBLite\bin\11.0.326.0\hbliteuninstaller.exe (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\HBLite\bin\11.0.326.0\firefox\extensions\install.rdf (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\program files (x86)\HBLite\bin\11.0.326.0\firefox\extensions\plugins\npclntax_hblitesa.dll (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\Hotbar\about hotbar.lnk (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\Hotbar\hotbar customer support center.lnk (Adware.Hotbar) -> Quarantined and deleted successfully.
c:\programdata\microsoft\Windows\start menu\Programs\Hotbar\hotbar uninstall instructions.lnk (Adware.Hotbar) -> Quarantined and deleted successfully.
------------------------------
GMER 1.0.15.15530 - http://www.gmer.net
Rootkit scan 2010-12-10 16:18:14
Windows 6.1.7600
Running: fxkj9w9v.exe
---- Registry - GMER 1.0.15 ----
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg@s1 771343423
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg@s2 285507792
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg@h0 2
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 C:\Program Files (x86)\DAEMON Tools Lite\
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0 0x00 0x00 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 0
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0xCC 0x0B 0x63 0xCF ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0x90 0xB1 0x12 0x79 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0xEE 0x44 0x25 0x06 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq1
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq1@hdf12 0x3E 0xCE 0x11 0xAF ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq2
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq2@hdf12 0x96 0x22 0x58 0x38 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq3
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq3@hdf12 0x93 0xAE 0x4C 0xE8 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@p0 C:\Program Files (x86)\DAEMON Tools Lite\
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0 1
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh 0x6C 0xC9 0xB6 0x0B ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@khjeh 0x64 0x3D 0x00 0x2D ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40@khjeh 0x6F 0xD4 0x29 0x30 ...
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41
Reg HKLM\SYSTEM\CurrentControlSet\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41@khjeh 0xF5 0x8C 0x75 0x43 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@p0 C:\Program Files (x86)\DAEMON Tools Lite\
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@u0 0x00 0x00 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@h0 0
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC@hdf12 0xCC 0x0B 0x63 0xCF ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001@hdf12 0x90 0xB1 0x12 0x79 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq0@hdf12 0xEE 0x44 0x25 0x06 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq1 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq1@hdf12 0x3E 0xCE 0x11 0xAF ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq2 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq2@hdf12 0x96 0x22 0x58 0x38 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq3 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\14919EA49A8F3B4AA3CF1058D9A64CEC\00000001\gdq3@hdf12 0x93 0xAE 0x4C 0xE8 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@p0 C:\Program Files (x86)\DAEMON Tools Lite\
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@h0 1
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4@khjeh 0x6C 0xC9 0xB6 0x0B ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@a0 0x20 0x01 0x00 0x00 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001@khjeh 0x64 0x3D 0x00 0x2D ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf40@khjeh 0x6F 0xD4 0x29 0x30 ...
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41 (not active ControlSet)
Reg HKLM\SYSTEM\ControlSet002\services\sptd\Cfg\19659239224E364682FA4BAF72C53EA4\00000001\0Jf41@khjeh 0xF5 0x8C 0x75 0x43 ...
Reg HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartPage\NewShortcuts@C:\Users\Silver S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\\xb7ÉËÙÍÁ\xb6\xb9\\xb7ÉËÙÍÁ\xb6\xb9.lnk 1
Reg HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\StartPage\NewShortcuts@C:\Users\Silver S\AppData\Roaming\Microsoft\Windows\Start Menu\Programs\\xb7ÉËÙÍÁ\xb6\xb9\Ð\xb6ÔØ\xb7ÉËÙÍÁ\xb6\xb9.lnk 1
Reg HKCU\Software\Microsoft\Windows NT\CurrentVersion\AppCompatFlags\Compatibility Assistant\Persisted@C:\Program Files (x86)\Tudou\\xb7ÉËÙTudou\uninst.exe 33
---- EOF - GMER 1.0.15 ----