MyTechSupport.ca :: Your Computer Technical Resource Headquarters! MyTechSupport.ca :: Your Computer Technical Resource Headquarters!
HOME FORUMS RESOURCES & TOOLS ARTICLES ONLINE STORE ABOUT US
Computer Support Forums arrow Internet & Network Support arrow Security & Viruses arrow Topic: The Most Determined Spyware EVER
March 29, 2020, 04:10:49 PM
 

Home Forum Rules Help Search Mobile Version Login Register

Welcome, Guest. Please login or register.
Did you miss your activation email?
March 29, 2020, 04:10:49 PM

Login with username, password and session length
 Featured Sites:
News
New  Check out our improved Download section for tons of software....
  0 Members and 1 Guest are viewing this topic.
Pages: [1] Go Down Print
Author Topic: The Most Determined Spyware EVER  (Read 2849 times)
DevilDialer
Newbie
*

Karma: +0/-0
Offline Offline

Gender: Male
Posts: 6


Bookmark and Share

View Profile
« on: November 23, 2005, 04:08:54 AM »

PLEASE SUPPLY RELEVANT INFORMATION:
Operating System Version: WinXp SP1
Problem Application Name & Version: TIBS Dialer AKA Dialer.wsv
Problem Hardware Make & Model: IE Browser Hijacking
Error Messages: None



Here is a Hijack this log for the TIBS dialer:

Logfile of HijackThis v1.99.1
Scan saved at 10:04:38 PM, on 11/22/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\WebSiteViewer\127036.dlr
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Hijack this\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer,(Default) = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = about:blank
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = cbinc:3128
O2 - BHO: (no name) - {00000000-0000-45B8-95E5-751A00C50DD0} - blank (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Program Files\Common Files\Symantec Shared\Security Center\UsrPrmpt.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra button: (no name) - {6685509E-B47B-4f47-8E16-9A5F3A62F683} - C:\WINDOWS\system32\shdocvw.dll (HKCU)
O10 - Broken Internet access because of LSP provider 'c:\windows\system32\zonelabs\vetredir.dll' missing
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1132713667958
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\UmVpbmEA\command.exe (file missing)
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe



Shocked  I have tried MS Antispyware, Ad-Aware, Spybot, NAV 2K5, Registry Mechanic, Deleted all Temp Files...... still this thing manifests itself and reinstalls EVERY single time PC is rebooted. I am fixing this for a friend with young children who do not need to see a program called s*xxx on the desktop as well as being redirected to pron sites randomly.

Any assistance is much appreciated. Thank you all for your time.

Logged

 
sUBs
Global Moderator
Hero Member
*****

Karma: +0/-0
Offline Offline

Posts: 278


Bookmark and Share

View Profile
« Reply #1 on: November 23, 2005, 01:19:49 PM »

Hello and Welcome

Please subscribe to this thread to get immediate notification of fixes as soon as they are posted.


= = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = =


Please download these additional files/programs.  Do not run them until instructed to do so.
Unless otherwise stated, they should be stored in same directory as the HiJackThis program.

CleanUp! - Install.

Ewido Security Suite
  • Install Ewido Security Suite
  • When installing, under "Additional Options" uncheck..
    • Install background guard
    • Install scan via context menu
  • Double-click the icon on Desktop to launch Ewido
You will need to update Ewido to the latest definition files.
  • On the left hand side of the main screen click update.
  • Then click on Start Update.
The update will start and a progress bar will show the updates being installed.
If you are having problems with the updater, you can use this link to manually update Ewido
When you have finished updating, EXIT Ewido.

LSPFix.exe

Instructions for using LSPFix
Double click on LSPFix.exe to run it.
Once running, you will be required to tick the disclaimer - "I know what I'm doing".
You'll find a windows with 2 panes.
In the left pane which is labeled 'Keep', select all instances of this file:
vetredir.dll
Then click on the arrow pointing to the right, >>.
This will move the entry to the right pane labeled 'Remove'
Click the Finish button to complete the fix.


UNPLUG YOUR COMPUTER FOM THE INTERNET WHEN YOU HAVE FINISHED DOWNLOADING


Please save the following instructions in Notepad. I have customed my instructions on the assumption that you have Notepad 'on'. It may lead to some confusion should you choose to do otherwise.

If there's anything that you don't understand, kindly ask your question(s) before proceeding with the fixes. There should not be any open browsers when you are carrying out the procedures below.


IT IS IMPORTANT THAT YOU DON'T MISS A STEP & PERFORM EVERYTHING IN THE RIGHT ORDER.


= = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = =


Click Start->Run - type SERVICES.MSC & then click on the OK button
 Locate the service - Command Service (cmdService)  
 Double-click on it to open the Properties dialog.
 Stop the service by using the Stop button.
 Change the Startup type to Disabled & then click on the OK button

 Then start HiJackThis & go to Config>Misc.Tools...> Delete an NT service...
 In the popup box that appears, type in cmdService   & then click on the OK button


= = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = =


Next, please reboot your computer in SafeMode by doing the following:
1. Restart your computer
2. After hearing your computer beep once during startup, but before the Windows icon appears, press F8.
3. Instead of Windows loading as normal, a menu should appear
4. Select the first option, to run Windows in Safe Mode.


= = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = =


Run a scan with HiJackThis & select/tick the following & click "Fix checked" :

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = about:blank
O2 - BHO: (no name) - {00000000-0000-45B8-95E5-751A00C50DD0} - blank (file missing)
O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\UmVpbmEA\command.exe (file missing)



= = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = =


If you have not done so already, please enable the viewing of Hidden files
From Windows Explorer, go to Tools>Folder Options> View tab.
  • Tick - Show hidden files and folder
  • Untick - Hide file extensions for known types
  • Untick - Hide protected operating system files
Click Yes to confirm & then click OK

Locate and delete the following files/folders, if present:
  • C:\WINDOWS\UmVpbmEA\
    C:\Program Files\WebSiteViewer\
    C:\Windows\erbmod.dll
    C:\Windows\misb.exe
    C:\Windows\12*.exe
    C:\Windows\drexinit.dll
    C:\Windows\cerbmod.dll
    C:\Windows\system32\dload.exe

= = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = =


Run Cleanup! using the following configuration:

1. Click Options...
2. Set the slider to Standard CleanUp!
3. Uncheck the following:
  • Delete Newsgroup cache
  • Delete Newsgroup Subscriptions
  • Scan local drives for temporary files
4. Click OK
5. Press the CleanUp! button to start the program. Reboot/logoff when prompted.
* CleanUp! will not create any backups!!


= = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = =


Run Ewido with it's updated definitions:(...it's important that all windows must be closed)
Click Scanner
Click Complete System Scan to begin scanning.
Click OK when prompted to clean files
With the first file it prompts to clean, select the option:
 "Perform action on all infections"
Choose clean and click OK.
Once finished, click the Save report button & save the report to your desktop

** Ewido scan would require at least an hour. I suggest that you go grab a cup of coffee & do something else while you wait for it to complete.


= = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = =


REBOOT TO NORMAL MODE


Perform an online scan with Internet Explorer with  Panda ActiveScan

*You needn't remain online while it's doing the scan but you have to re-connect after it has finished to see the report.
*Turn off the real time scanner of any existing antivirus program while performing the online scan



= = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = = =


Download Trend Micro
Logged

 
DevilDialer
Newbie
*

Karma: +0/-0
Offline Offline

Gender: Male
Posts: 6


Bookmark and Share

View Profile
« Reply #2 on: November 23, 2005, 03:22:02 PM »

Thank you for taking the time to reply. I will go ahead and get all these items completed just as soon as I get home (6pm CST). Again, thanks for the prompt response.

Regards,
Logged

 
DevilDialer
Newbie
*

Karma: +0/-0
Offline Offline

Gender: Male
Posts: 6


Bookmark and Share

View Profile
« Reply #3 on: November 24, 2005, 02:53:13 AM »

Here are the logs you requested:

Panda Active Scan:


Incident                      Status                        Location                                                                                                                                                                                                                                                        

Adware:Adware/Lop             Not desinfected               C:\DOCUME~1\LOCALS~1\APPLIC~1\ABOUTA~1\SUPPORTLOGCOAL.EXE                                                                                                                                                                                                      
Adware:adware program         Not desinfected               C:\WINDOWS\SYSTEM32\atmtd.dll                                                                                                                                                                                                                                  
Spyware:spyware/whazit        Not desinfected               C:\WINDOWS\SYSTEM32\fiz1                                                                                                                                                                                                                                        
Spyware:spyware/betterinet    Not desinfected               C:\WINDOWS\INF\satmat.inf                                                                                                                                                                                                                                      
Adware:adware/gator           Not desinfected               C:\WINDOWS\GatorHDPlugin.log-old.log                                                                                                                                                                                                                            
Dialer:dialer.bny             Not desinfected               C:\WINDOWS\pcconfig.dat                                                                                                                                                                                                                                        
Adware:adware/twain-tech      Not desinfected               C:\WINDOWS\satmat.ini                                                                                                                                                                                                                                          
Adware:adware/sidesearch      Not desinfected               C:\Documents and Settings\My Computer\Application Data\Lycos                                                                                                                                                                                                    
Adware:adware/aurora          Not desinfected               Windows Registry                                                                                                                                                                                                                                                
Dialer:dialer.bb              Not desinfected               HKEY_CLASSES_ROOT\Interface\{D6188A7D-376C-4970-91AD-675BFCF3762E}                                                                                                                                                                                              
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\ALVIN ACE\Application Data\about acid bone\AIM OOZE JUNK.exe                                                                                                                                                                          
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\ALVIN ACE\Application Data\about acid bone\izwsmxdu.exe                                                                                                                                                                              
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\ALVIN ACE\Application Data\about acid bone\supportlogcoal.exe                                                                                                                                                                        
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\ALVIN ACE\Application Data\Okay idle\Peak Enc.exe                                                                                                                                                                                    
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\fevie\Application Data\about acid bone\AIM OOZE JUNK.exe                                                                                                                                                                              
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\fevie\Application Data\about acid bone\supportlogcoal.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\fevie\Application Data\about acid bone\xmzqeaxu.exe                                                                                                                                                                                  
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\Florence\Application Data\about acid bone\AIM OOZE JUNK.exe                                                                                                                                                                          
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\Florence\Application Data\about acid bone\erporxya.exe                                                                                                                                                                                
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\Florence\Application Data\about acid bone\supportlogcoal.exe                                                                                                                                                                          
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\Florence\Application Data\Okay idle\Peak Enc.exe                                                                                                                                                                                      
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\about acid bone\AIM OOZE JUNK.exe                                                                                                                                                                      
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\about acid bone\boxzeyvi.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\about acid bone\dtfnspqu.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\about acid bone\dwpgedzx.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\about acid bone\gjmreyuh.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\about acid bone\gpyivjsv.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\about acid bone\heccsqua.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\about acid bone\hopetestthunkflag.exe                                                                                                                                                                  
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\about acid bone\jbgginog.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\about acid bone\kirdpsoe.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\about acid bone\lalpdaxy.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\about acid bone\mbrtqoyg.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\about acid bone\meyqzpxc.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\about acid bone\mowqydvs.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\about acid bone\qlcrwxfj.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\about acid bone\supportlogcoal.exe                                                                                                                                                                      
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\about acid bone\udrmdwmd.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\about acid bone\uzpdqbzo.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\about acid bone\vvbbkkoh.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\about acid bone\zcdhmllh.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\about acid bone\zlhnspbl.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\LocalService\Application Data\Okay idle\Managergram.exe                                                                                                                                                                              
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\AIM OOZE JUNK.exe                                                                                                                                                                        
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\ccazqlxh.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\czdsbzna.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\eftqlrnf.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\felqrtnv.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\hkvdlwfi.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\hopetestthunkflag.exe                                                                                                                                                                    
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\ibiciciq.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\imxejjpe.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\jutaydwr.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\jwbtplwv.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\kbrfxoqy.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\lxlznpua.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\nmrbxttr.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\oukssxbx.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\pefvprqq.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\pipwwtqy.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\puewlotp.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\pvbgrekt.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\qwnujsms.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\qxdogheo.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\rvdwlnsn.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\skcmydts.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\supportlogcoal.exe                                                                                                                                                                      
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\uqkisflc.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\wbzcnjvp.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\xbhghwwe.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\about acid bone\zwccjblr.exe                                                                                                                                                                            
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\My Computer\Application Data\Okay idle\Peak Enc.exe                                                                                                                                                                                  
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\Rica\Application Data\about acid bone\AIM OOZE JUNK.exe                                                                                                                                                                              
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\Rica\Application Data\about acid bone\hopetestthunkflag.exe                                                                                                                                                                          
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\Rica\Application Data\about acid bone\kxyzneeu.exe                                                                                                                                                                                    
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\Rica\Application Data\about acid bone\smoggmeb.exe                                                                                                                                                                                    
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\Rica\Application Data\about acid bone\supportlogcoal.exe                                                                                                                                                                              
Adware:Adware/Lop             Not desinfected               C:\Documents and Settings\Rica\Application Data\about acid bone\ypfdiygc.exe                                                                                                                                                                                    
Dialer:Dialer.BMY             Not desinfected               C:\WINDOWS\ibs.exe                                                                                                                                                                                                                                              
Adware:Adware/Transponder     Not desinfected               C:\WINDOWS\inf\polmx2.inf                                                                                                                                                                                                                                      
Spyware:Spyware/BetterInet    Not desinfected               C:\WINDOWS\inf\satmat.inf                                                                                                                                                                                                                                      
Dialer:Dialer.BMY             Not desinfected               C:\WINDOWS\msnmsn32.exe                                                                                                                                                                                                                                        
Adware:Adware/IPInsight       Not desinfected               C:\WINDOWS\satmat.ini                                                                                                                                                                                                                                          
Adware:Adware/Lop             Not desinfected               C:\WINDOWS\system32\config\systemprofile\Application Data\about acid bone\supportlogcoal.exe                                                                                                                                                                    


-----------------------------------------------------------------------------------------
HiJack This:


Logfile of HijackThis v1.99.1
Scan saved at 8:51:08 PM, on 11/23/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Hijack this\security suite\ewidoctrl.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Hijack this\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer,(Default) = www.google.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = cbinc:3128
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Program Files\Common Files\Symantec Shared\Security Center\UsrPrmpt.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1132713667958
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\Hijack this\security suite\ewidoctrl.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe

---------------------------------------------------------------------------------------
-------------------------------------------------------------------------------------

Ewido:

---------------------------------------------------------
 ewido security suite - Scan report
---------------------------------------------------------

 + Created on:         7:51:15 PM, 11/23/2005
 + Report-Checksum:      F0B95C25

 + Scan result:

   No infected objects found.


::Report End

-------------------------------------------------------------------------------
----------------------------------------------------------------------------


I'm pleased to say that the dialer icons and redirections are gone. Thank you very much. Is there anything else to be worried about there ?


Edt * I just got rid of all those panda scan Lop infections as well.
« Last Edit: November 24, 2005, 03:39:29 AM by DevilDialer » Logged

 
sUBs
Global Moderator
Hero Member
*****

Karma: +0/-0
Offline Offline

Posts: 278


Bookmark and Share

View Profile
« Reply #4 on: November 24, 2005, 08:28:22 AM »

I'm not sure if you managed to clean every file/folder found by Panda. But here's a list just in case ..  (let me know if any of them resist deletion)

C:\DOCUME~1\LOCALS~1\APPLIC~1\ABOUTA~1\SUPPORTLOGCOAL.EXE
C:\Documents and Settings\ALVIN ACE\Application Data\about acid bone\AIM OOZE JUNK.exe
C:\Documents and Settings\ALVIN ACE\Application Data\about acid bone\izwsmxdu.exe
C:\Documents and Settings\ALVIN ACE\Application Data\about acid bone\supportlogcoal.exe
C:\Documents and Settings\ALVIN ACE\Application Data\Okay idle\
C:\Documents and Settings\fevie\Application Data\about acid bone\
C:\Documents and Settings\Florence\Application Data\Okay idle\
C:\Documents and Settings\LocalService\Application Data\about acid bone\
C:\Documents and Settings\LocalService\Application Data\Okay idle\
C:\Documents and Settings\My Computer\Application Data\about acid bone\
C:\Documents and Settings\My Computer\Application Data\Okay idle\
C:\Documents and Settings\Rica\Application Data\about acid bone\
C:\WINDOWS\system32\config\systemprofile\Application Data\about acid bone\
C:\Documents and Settings\My Computer\Application Data\Lycos
C:\WINDOWS\SYSTEM32\fiz1
C:\WINDOWS\inf\polmx2.inf
C:\WINDOWS\inf\satmat.inf
C:\WINDOWS\msnmsn32.exe
C:\WINDOWS\satmat.ini
C:\WINDOWS\SYSTEM32\atmtd.dll
C:\WINDOWS\INF\satmat.inf
C:\WINDOWS\GatorHDPlugin.log-old.log
C:\WINDOWS\pcconfig.dat



Go to Start>Run - type REGEDIT

1. Navigate to these keys -

HKEY_CLASSES_ROOT\Interface\{D6188A7D-376C-4970-91AD-675BFCF3762E}

2. Right click & delete the key (only keys listed in RED need to be deleted)
3. Close the Registry Editor when you've finished  

If any of the above registry keys are giving you problems deleting, right click on them and click on Permissions. Then click on the Advanced button. Make sure the first box (Inherit from parent...) is checked. Click OK and OK. Then try deleting the entry again. Once you're done, close the Registry Editor.


Run CleanUp again after you have finished deletions

Next, download fl.zip.
Extract the contents to a new folder on Desktop. (do NOT run it from within the zip file)
Within the folder, locate & double-click fl.bat.
It should produce a report at c:\findlop.txt.
Post the contents of the report in your next reply along with a new HJT log
Logged

 
DevilDialer
Newbie
*

Karma: +0/-0
Offline Offline

Gender: Male
Posts: 6


Bookmark and Share

View Profile
« Reply #5 on: November 24, 2005, 03:37:56 PM »

I have addressed all items within the Panda active scan. (All deleted successfully)
When I get home once again I will take care of that Key and get another log posted.

Regards,
Logged

 
DevilDialer
Newbie
*

Karma: +0/-0
Offline Offline

Gender: Male
Posts: 6


Bookmark and Share

View Profile
« Reply #6 on: November 25, 2005, 12:26:40 AM »

Here is the Lop Scan results:

 Volume in drive C has no label.
 Volume Serial Number is 946C-CB35

 Directory of C:\Documents and Settings\Administrator\Application Data

11/19/2005  03:38 PM    <DIR>          Lavasoft
               0 File(s)              0 bytes
               1 Dir(s)  73,228,058,624 bytes free
 Volume in drive C has no label.
 Volume Serial Number is 946C-CB35

 Directory of C:\Documents and Settings\All Users\Application Data

11/17/2005  09:59 PM    <DIR>          .
11/17/2005  09:59 PM    <DIR>          ..
01/08/2004  08:27 AM    <DIR>          MSN6
04/19/2005  05:38 PM    <DIR>          Napster
01/18/2004  09:15 AM    <DIR>          nView_Profiles
11/14/2005  11:08 PM    <DIR>          Spybot - Search & Destroy
07/29/2005  07:46 PM    <DIR>          Symantec
11/22/2005  08:54 PM    <DIR>          Windows Genuine Advantage
               0 File(s)              0 bytes
               8 Dir(s)  73,228,054,528 bytes free
 Volume in drive C has no label.
 Volume Serial Number is 946C-CB35

 Directory of C:\Documents and Settings\ALVIN ACE\Application Data

03/25/2004  07:55 PM    <DIR>          Identities
03/27/2004  07:24 PM    <DIR>          InterVideo
03/25/2004  07:55 PM    <DIR>          Lycos
09/07/2005  06:03 PM    <DIR>          Macromedia
07/28/2005  09:12 PM    <DIR>          MSN6
11/23/2005  07:17 PM    <DIR>          QcBar
03/30/2004  08:27 PM    <DIR>          Sun
05/29/2005  03:22 PM                41 tvmcwrd.dll
05/29/2005  11:39 AM           384,444 tvmknwrd.dll
04/05/2004  10:42 AM    <DIR>          Yahoo!
               2 File(s)        384,485 bytes
               8 Dir(s)  73,228,054,528 bytes free
 Volume in drive C has no label.
 Volume Serial Number is 946C-CB35

 Directory of C:\Documents and Settings\fevie\Application Data

01/31/2004  07:44 PM    <DIR>          Identities
01/31/2004  07:45 PM    <DIR>          Lycos
08/05/2005  03:04 PM    <DIR>          Macromedia
               0 File(s)              0 bytes
               3 Dir(s)  73,228,054,528 bytes free
 Volume in drive C has no label.
 Volume Serial Number is 946C-CB35

 Directory of C:\Documents and Settings\Florence\Application Data

11/15/2005  11:58 PM    <DIR>          C2Media
01/04/2004  04:25 PM    <DIR>          Identities
02/23/2005  07:13 PM    <DIR>          InterVideo
01/22/2004  08:26 PM    <DIR>          Lycos
01/09/2004  06:44 PM    <DIR>          Macromedia
06/18/2004  06:14 PM    <DIR>          Messenger Plus! 3
07/04/2005  06:40 PM    <DIR>          MSN6
11/23/2005  07:17 PM    <DIR>          QcBar
01/13/2004  09:44 PM    <DIR>          Sun
05/30/2005  08:07 PM                37 tvmcwrd.dll
05/30/2005  04:31 PM           384,558 tvmknwrd.dll
05/30/2005  08:07 PM                33 tvmuknwrd.dll
01/21/2004  06:52 PM    <DIR>          Yahoo!
09/18/2004  10:32 PM    <DIR>          Yahoo! Messenger
               3 File(s)        384,628 bytes
              11 Dir(s)  73,228,054,528 bytes free
 Volume in drive C has no label.
 Volume Serial Number is 946C-CB35

 Directory of C:\Documents and Settings\My Computer\Application Data

04/19/2005  05:31 PM    <DIR>          funkitron
01/08/2004  02:56 PM    <DIR>          Help
01/02/2004  12:06 PM    <DIR>          Identities
01/02/2004  05:35 PM    <DIR>          InterVideo
11/14/2005  11:01 PM    <DIR>          Lavasoft
12/16/2004  08:47 AM    <DIR>          Lycos
01/08/2004  07:35 PM    <DIR>          Macromedia
11/22/2005  08:04 PM    <DIR>          Mozilla
01/09/2004  04:57 PM    <DIR>          MSN6
04/14/2005  01:08 PM    <DIR>          Roxio
01/09/2004  09:13 PM    <DIR>          Sun
01/04/2004  12:29 PM    <DIR>          Symantec
11/23/2005  06:50 PM    <DIR>          Trend Micro
02/15/2004  04:03 AM    <DIR>          Yahoo! Messenger
               0 File(s)              0 bytes
              14 Dir(s)  73,228,054,528 bytes free
 Volume in drive C has no label.
 Volume Serial Number is 946C-CB35

 Directory of C:\Documents and Settings\Reina\Application Data

03/11/2005  07:50 PM    <DIR>          Identities
10/02/2005  01:27 PM    <DIR>          InterVideo
09/06/2005  07:05 PM    <DIR>          Macromedia
10/02/2005  05:25 PM    <DIR>          MSN6
04/15/2005  03:29 PM    <DIR>          Sun
05/29/2005  05:16 PM           384,444 tvmknwrd.dll
               1 File(s)        384,444 bytes
               5 Dir(s)  73,228,050,432 bytes free
 Volume in drive C has no label.
 Volume Serial Number is 946C-CB35

 Directory of C:\Documents and Settings\Rica\Application Data

11/22/2005  09:25 PM    <DIR>          C2Media
01/04/2004  04:31 PM    <DIR>          Identities
01/18/2004  06:33 PM    <DIR>          InterVideo
01/24/2004  08:21 AM    <DIR>          Lycos
09/07/2005  08:01 PM    <DIR>          Macromedia
12/23/2004  09:11 PM    <DIR>          Messenger Plus! 3
05/23/2005  09:06 AM    <DIR>          MessengerPlus! 3
07/08/2005  11:29 PM    <DIR>          MSN6
11/23/2005  07:17 PM    <DIR>          QcBar
01/11/2004  02:02 PM    <DIR>          Sun
05/30/2005  06:04 PM           384,558 tvmknwrd.dll
05/30/2005  08:36 PM                33 tvmuknwrd.dll
02/02/2004  04:54 PM    <DIR>          Yahoo!
08/28/2004  11:55 AM    <DIR>          Yahoo! Messenger
               2 File(s)        384,591 bytes
              12 Dir(s)  73,228,050,432 bytes free
 Volume in drive C has no label.
 Volume Serial Number is 946C-CB35

 Directory of C:\Documents and Settings\Default User\Application Data

01/02/2004  05:39 AM    <DIR>          .
01/02/2004  05:39 AM    <DIR>          ..
01/02/2004  05:39 AM                62 desktop.ini
               1 File(s)             62 bytes
               2 Dir(s)  73,228,050,432 bytes free
 Volume in drive C has no label.
 Volume Serial Number is 946C-CB35

 Directory of C:\Documents and Settings\LocalService\Application Data

 Volume in drive C has no label.
 Volume Serial Number is 946C-CB35

 Directory of C:\Documents and Settings\NetworkService\Application Data

[TRACE] Enumerating jobs and queues
[TRACE] Activating job 'A034B7FF91BB36BB.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\florence\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Florence'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/29/2005 19:00:00
  NextRun:            11/24/2005 19:00:00
  StartError:         SCHED_E_ACCOUNT_INFORMATION_NOT_SET
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       10/16/1996
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A06F1FEF91A49933.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\rica\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Rica'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/29/2005 12:00:00
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       10/14/2000
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A2C3205A93B8CDFA.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\rica\applic~1\abouta~2\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Rica'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      10/02/2005 18:00:00
  NextRun:            11/24/2005 19:00:00
  StartError:         S_OK
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       10/25/1995
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A36F645091B91BF0.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\florence\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Florence'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/29/2005 19:00:00
  NextRun:            11/24/2005 19:00:00
  StartError:         SCHED_E_ACCOUNT_INFORMATION_NOT_SET
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       02/13/1998
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A42C6F7190EFE559.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\rica\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Rica'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/29/2005 12:00:00
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       02/12/1997
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A4300C1B91938257.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\alvina~1\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'ALVIN ACE'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/28/2005 22:00:02
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       10/27/1996
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A530242D9187DD3D.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\rica\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Rica'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/29/2005 12:00:00
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       02/27/2001
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A654F89191D36B81.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\florence\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Florence'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/29/2005 19:00:01
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       10/05/1998
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A6D9840191223841.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\rica\applic~1\abouta~2\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Rica'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      10/02/2005 18:00:00
  NextRun:            11/24/2005 19:00:00
  StartError:         S_OK
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       06/12/1996
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A6DB943191840EFD.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\florence\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Florence'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/29/2005 19:00:01
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       02/07/1999
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A70CCFE491DF4CD8.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\florence\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Florence'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/29/2005 19:00:01
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       02/03/2001
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A73455879187D0D7.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\alvina~1\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'ALVIN ACE'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/28/2005 22:00:04
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       10/06/2000
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A7BA5FA2918DD556.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\mycomp~1\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'My Computer'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      11/23/2005 20:00:03
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070003
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       10/18/1998
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A7D45FF09187D298.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\rica\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Rica'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/29/2005 12:00:00
  NextRun:            11/24/2005 19:00:00
  StartError:         SCHED_E_ACCOUNT_INFORMATION_NOT_SET
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       10/08/1999
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A805478B9102FB13.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\florence\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Florence'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/29/2005 19:00:01
  NextRun:            11/24/2005 19:00:00
  StartError:         SCHED_E_ACCOUNT_INFORMATION_NOT_SET
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       06/06/2001
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A80C4E6D9193C55D.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\rica\applic~1\abouta~2\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Rica'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      10/02/2005 18:00:01
  NextRun:            11/24/2005 19:00:00
  StartError:         S_OK
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       02/25/1996
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A8388D3B918B0437.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\locals~1\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'SYSTEM'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      00/00/0000  0:00:00
  NextRun:            11/24/2005 19:00:00
  StartError:         SCHED_S_TASK_HAS_NOT_RUN
  ExitCode:           0
  Status:             SCHED_S_TASK_HAS_NOT_RUN
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       10/11/1997
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A86693CD91810A65.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\progra~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'My Computer'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      10/14/2004 13:00:00
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070003
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       06/01/2000
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A87059AE9187D06E.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\florence\applic~1\abouta~2\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Florence'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      10/04/2005 18:00:00
  NextRun:            11/24/2005 19:00:00
  StartError:         S_OK
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       02/24/2001
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A8F752B591E8C715.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\rica\applic~1\abouta~2\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Rica'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      10/02/2005 18:00:01
  NextRun:            11/24/2005 19:00:00
  StartError:         S_OK
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       10/04/1999
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A934DF3C90FB542C.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\alvina~1\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'ALVIN ACE'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/28/2005 22:00:07
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       02/16/1998
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A94022079183DC5B.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\alvina~1\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'ALVIN ACE'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/28/2005 22:00:07
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       02/12/1996
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A94AF539910169CD.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\florence\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Florence'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/29/2005 19:00:02
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       10/21/1999
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A99EED5B90E1639B.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\rica\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Rica'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/29/2005 12:00:00
  NextRun:            11/24/2005 19:00:00
  StartError:         SCHED_E_ACCOUNT_INFORMATION_NOT_SET
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       10/19/2000
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A9CB1B4391A49A6B.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\rica\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Rica'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/29/2005 12:00:01
  NextRun:            11/24/2005 19:00:00
  StartError:         SCHED_E_ACCOUNT_INFORMATION_NOT_SET
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       02/25/1999
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A9EAAD3E91852446.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\rica\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Rica'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/29/2005 12:00:01
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       06/11/1999
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'A9F312679320BEBF.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\rica\applic~1\abouta~2\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Rica'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      10/02/2005 18:00:02
  NextRun:            11/24/2005 19:00:00
  StartError:         S_OK
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       02/02/1996
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'AA3CA72091AB2118.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\florence\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Florence'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/29/2005 19:00:02
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       02/07/1998
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'AA8A2F7F9181A3BB.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\alvina~1\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'ALVIN ACE'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/28/2005 22:00:10
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       06/07/2000
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'AAAF05B59184BA11.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\rica\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Rica'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/29/2005 12:00:02
  NextRun:            11/24/2005 19:00:00
  StartError:         SCHED_E_ACCOUNT_INFORMATION_NOT_SET
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       10/25/1997
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'AB0E709B9166199F.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\alvina~1\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'ALVIN ACE'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/28/2005 22:00:11
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       02/19/1999
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'AB6C74C89187EA94.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\florence\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Florence'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/29/2005 19:00:02
  NextRun:            11/24/2005 19:00:00
  StartError:         SCHED_E_ACCOUNT_INFORMATION_NOT_SET
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       10/25/2000
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'AB8B8F4F91D805CB.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\rica\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Rica'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/29/2005 12:00:02
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       06/16/1999
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'ABA75EFF9180D447.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\alvina~1\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'ALVIN ACE'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/28/2005 22:00:11
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       10/27/1999
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'AC16A45891A55790.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\florence\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Florence'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/29/2005 19:00:02
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       02/10/1999
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'AC6FAD4091845FEC.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\rica\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Rica'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/29/2005 12:00:03
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       02/05/1997
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'AC8BF7E291EC6C16.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\alvina~1\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'ALVIN ACE'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/28/2005 22:00:13
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       02/08/1996
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'ACEAFA5091657124.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\rica\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'Rica'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/29/2005 12:00:04
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       10/13/1997
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'ACF305C59198B831.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\alvina~1\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
  Comment:            ''
  Creator:            'ALVIN ACE'
  Priority:           NORMAL
  MaxRunTime:         259200000 (3d  0:00:00)
  IdleWait:           10
  IdleDeadline:       60
  MostRecentRun:      07/28/2005 22:00:14
  NextRun:            11/24/2005 19:00:00
  StartError:         0x80070002
  ExitCode:           0
  Status:             SCHED_S_TASK_READY
  ScheduledWorkItem Flags:
    DeleteWhenDone          = 0
    Suspend                 = 0
    StartOnlyIfIdle         = 0
    KillOnIdleEnd           = 0
    RestartOnIdleResume     = 0
    DontStartIfOnBatteries  = 0
    KillIfGoingOnBatteries  = 0
    RunOnlyIfLoggedOn       = 1
    SystemRequired          = 0
    Hidden                  = 1
  TaskFlags:          0

  1 Trigger

  Trigger 0:
    Type:            Daily
    DaysInterval:    1
    StartDate:       06/18/1996
    EndDate:         00/00/0000
    StartTime:       00:00
    MinutesDuration: 1440
    MinutesInterval: 60
    Flags:
      HasEndDate      = 0
      KillAtDuration  = 0
      Disabled        = 0


[TRACE] Activating job 'ACFC54FC9187C6EC.job'
[TRACE] Printing all job properties

  ApplicationName:    'c:\docume~1\florence\applic~1\abouta~1\AIM OOZE JUNK.exe'
  Parameters:         ''
  WorkingDirectory:   ''
Logged

 
DevilDialer
Newbie
*

Karma: +0/-0
Offline Offline

Gender: Male
Posts: 6


Bookmark and Share

View Profile
« Reply #7 on: November 25, 2005, 12:28:06 AM »

Hijack this:

Logfile of HijackThis v1.99.1
Scan saved at 6:24:57 PM, on 11/24/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Hijack this\security suite\ewidoctrl.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\System32\rundll32.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\UsrPrmpt.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Hijack this\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer,(Default) = www.google.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = cbinc:3128
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [SSC_UserPrompt] C:\Program Files\Common Files\Symantec Shared\Security Center\UsrPrmpt.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [PCPitstop Optimize Registration Reminder] C:\Program Files\PCPitstop\Optimize\Reminder.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\Yahoo!\MESSEN~1\YPager.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1132713667958
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\Hijack this\security suite\ewidoctrl.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe

Logged

 
sUBs
Global Moderator
Hero Member
*****

Karma: +0/-0
Offline Offline

Posts: 278


Bookmark and Share

View Profile
« Reply #8 on: November 25, 2005, 01:03:56 AM »

The findlop.txt seems incomplete. What happens after this...
quote:
[TRACE] Activating job 'ADAAD389917D4BA5.job'
[TRACE] Printing all job properties

ApplicationName: 'c:\docume~1\florence\applic~1\abo

Logged

 
sUBs
Global Moderator
Hero Member
*****

Karma: +0/-0
Offline Offline

Posts: 278


Bookmark and Share

View Profile
« Reply #9 on: November 25, 2005, 01:17:41 AM »

No need to repost the FindLOP.txt.

Please reboot to Safe Mode to delete these...

C:\Documents and Settings\ALVIN ACE\Application Data\QcBar
C:\Documents and Settings\ALVIN ACE\Application Data\tvmcwrd.dll
C:\Documents and Settings\ALVIN ACE\Application Data\tvmknwrd.dll

C:\Documents and Settings\fevie\Application Data\Lycos

C:\Documents and Settings\Florence\Application Data\C2Media
C:\Documents and Settings\Florence\Application Data\Lycos
C:\Documents and Settings\Florence\Application Data\QcBar
C:\Documents and Settings\Florence\Application Data\tvmcwrd.dll
C:\Documents and Settings\Florence\Application Data\tvmknwrd.dll
C:\Documents and Settings\Florence\Application Data\tvmuknwrd.dll

C:\Documents and Settings\My Computer\Application Data\Lycos

C:\Documents and Settings\Reina\Application Data\tvmknwrd.dll

C:\Documents and Settings\Rica\Application Data\C2Media
C:\Documents and Settings\Rica\Application Data\Lycos
C:\Documents and Settings\Rica\Application Data\QcBar
C:\Documents and Settings\Rica\Application Data\tvmknwrd.dll
C:\Documents and Settings\Rica\Application Data\tvmuknwrd.dll



After that, go to Start > Run - type cmd <Press Enter>
type attrib -h -r -s c:\windows\tasks\*.job<Press Enter>
type explorer %windir%\tasks<Press Enter>

that'll take you to the directory


Delete all these files..

A034B7FF91BB36BB.job
A06F1FEF91A49933.job
A2C3205A93B8CDFA.job
A36F645091B91BF0.job
A42C6F7190EFE559.job
A4300C1B91938257.job
A530242D9187DD3D.job
A654F89191D36B81.job
A6D9840191223841.job
A6DB943191840EFD.job
A70CCFE491DF4CD8.job
A73455879187D0D7.job
A7BA5FA2918DD556.job
A7D45FF09187D298.job
A805478B9102FB13.job
A80C4E6D9193C55D.job
A8388D3B918B0437.job
A86693CD91810A65.job
A87059AE9187D06E.job
A8F752B591E8C715.job
A934DF3C90FB542C.job
A94022079183DC5B.job
A94AF539910169CD.job
A99EED5B90E1639B.job
A9CB1B4391A49A6B.job
A9EAAD3E91852446.job
A9F312679320BEBF.job
AA3CA72091AB2118.job
AA8A2F7F9181A3BB.job
AAAF05B59184BA11.job
AB0E709B9166199F.job
AB6C74C89187EA94.job
AB8B8F4F91D805CB.job
ABA75EFF9180D447.job
AC16A45891A55790.job
AC6FAD4091845FEC.job
AC8BF7E291EC6C16.job
ACEAFA5091657124.job
ACF305C59198B831.job
ACFC54FC9187C6EC.job
AD0663B4918A1778.job
AD1FF8A9910C70C5.job
AD4A151791018D27.job
AD8ED75B91A949E3.job
AD9CEDC591DF9EDD.job
ADAAD389917D4BA5.job


Also delete any other instances of 16 lettered named jobs.


When done, reboot back to N/mode to post a fresh HJT log
Let me know if you still have other issues.



Logged

 
sUBs
Global Moderator
Hero Member
*****

Karma: +0/-0
Offline Offline

Posts: 278


Bookmark and Share

View Profile
« Reply #10 on: November 28, 2005, 05:52:15 PM »

Due to the lack of feedback, this Topic is closed.

If you need this topic reopened, please request this by sending the moderating team a PM with the address of the thread. This applies only to the original topic starter.

Everyone else please begin a New Topic.
Logged

 
Pages: [1] Go Up Print 
 
Jump to:  

Powered by MySQL Powered by PHP

Powered by SMF 1.1.21 | SMF © 2015, Simple Machines

Valid XHTML 1.0! Valid CSS!

Disclaimer
This site is NOT responsible for any damage that the information on this site may cause to your system. Everything you try, whether inspired by the response given from this site or not, is entirely at your own risk. All product names and company names used herein are for identification purpose only and may be trademarks or registered trademarks of their respective owners. We are in no way affiliated or representing any of the companies on this site unless specified.
Back to Top
Stop Spam Harvesters, Join Project Honey Pot Fight Back Against Spammers! Get Firefox! Get Thunderbird! View Sylvain Amyots profile on LinkedIn
Back to Top
Google visited last this page April 06, 2017, 06:22:57 PM