Unsolved
This post is more than 5 years old
19 Posts
0
1295
October 29th, 2006 18:00
Trojan-Spy.Win32@mx
I like many other people on this thread seem have contracted the dreaded Trojan virus...
I've been trying to figure out how to get rid of it since yesterday when I discovered that I had it.
Here is my HJT log file and hopefully you can help me.
Logfile of HijackThis v1.99.1
Scan saved at 2:00:25 PM, on 10/29/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\igfxtray.exe
C:\WINDOWS\System32\hkcmd.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Common Files\AOL\1156835425\ee\AOLSoftware.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe
C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe
C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\System32\tcpsvcs.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\VideoKeyCodec\isamonitor.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\VideoKeyCodec\isamini.exe
C:\Program Files\VideoKeyCodec\pmsngr.exe
C:\Program Files\VideoKeyCodec\pmmon.exe
C:\Program Files\Hijackthis\HijackThis.exe
C:\Program Files\Mozilla Firefox\firefox.exe
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O1 - Hosts: 127.255.255.255 serial.alcohol-soft.com
O1 - Hosts: 127.255.255.255 www.alcohol-soft.com
O1 - Hosts: 127.255.255.255 images.alcohol-soft.com
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {8bf5b8fc-11cb-409f-8c91-4d4ca04a1b6d} - C:\Program Files\VideoKeyCodec\isaddon.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Protection Bar - {1a29a79a-b9c8-44a9-bedf-7fadde3cf33f} - C:\Program Files\VideoKeyCodec\iesplugin.dll (file missing)
O4 - HKLM\..\Run: [EPSON Stylus Photo R200 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2H1.EXE /P30 "EPSON Stylus Photo R200 Series" /O6 "USB001" /M "Stylus Photo R200"
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1156835425\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [EasyLinkAdvisor] "C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe" /startup
O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1157248879650
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1157263243967
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: ferrateen - {27321538-5739-4aa1-b84c-7d18e4383f1f} - C:\WINDOWS\system32\rrtcany.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AOL Connectivity Service (AOL ACS) - Unknown owner - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe (file missing)
O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
I've been trying to figure out how to get rid of it since yesterday when I discovered that I had it.
Here is my HJT log file and hopefully you can help me.
Logfile of HijackThis v1.99.1
Scan saved at 2:00:25 PM, on 10/29/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\igfxtray.exe
C:\WINDOWS\System32\hkcmd.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Common Files\AOL\1156835425\ee\AOLSoftware.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe
C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe
C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\System32\tcpsvcs.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\VideoKeyCodec\isamonitor.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\VideoKeyCodec\isamini.exe
C:\Program Files\VideoKeyCodec\pmsngr.exe
C:\Program Files\VideoKeyCodec\pmmon.exe
C:\Program Files\Hijackthis\HijackThis.exe
C:\Program Files\Mozilla Firefox\firefox.exe
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O1 - Hosts: 127.255.255.255 serial.alcohol-soft.com
O1 - Hosts: 127.255.255.255 www.alcohol-soft.com
O1 - Hosts: 127.255.255.255 images.alcohol-soft.com
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {8bf5b8fc-11cb-409f-8c91-4d4ca04a1b6d} - C:\Program Files\VideoKeyCodec\isaddon.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Protection Bar - {1a29a79a-b9c8-44a9-bedf-7fadde3cf33f} - C:\Program Files\VideoKeyCodec\iesplugin.dll (file missing)
O4 - HKLM\..\Run: [EPSON Stylus Photo R200 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2H1.EXE /P30 "EPSON Stylus Photo R200 Series" /O6 "USB001" /M "Stylus Photo R200"
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1156835425\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [EasyLinkAdvisor] "C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe" /startup
O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1157248879650
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1157263243967
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: ferrateen - {27321538-5739-4aa1-b84c-7d18e4383f1f} - C:\WINDOWS\system32\rrtcany.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AOL Connectivity Service (AOL ACS) - Unknown owner - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe (file missing)
O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
No Events found!


Bugbatter
4 Apprentice
•
20.5K Posts
0
October 29th, 2006 19:00
Please download SmitfraudFix
Extract the content (a folder named SmitfraudFix) to your Desktop.
Download AVG Anti-Spyware from HERE and save that file to your desktop.
This is a 30 day trial of the program
Go to Start > Run and type: services.msc
Open the SmitfraudFix folder and double-click smitfraudfix.cmd
Select option #1 - Search by typing 1 and press " Enter"; a text file will appear, which lists infected files (if present).
Please copy/paste the content of that report into your next reply.
IMPORTANT: Do NOT run any other options until you are asked to do so!
Note : process.exe is detected by some antivirus programs (AntiVir, Dr.Web, Kaspersky) as a "RiskTool"; it is not a virus, but a program used to stop system processes. Antivirus programs cannot distinguish between "good" and "malicious" use of such programs, therefore they may alert the user.
http://www.beyondlogic.org/consulting/proc...processutil.htm
wchris1988
19 Posts
0
October 29th, 2006 19:00
SmitFraudFix v2.117
Scan done at 15:34:51.32, Sun 10/29/2006
Run from C:\Documents and Settings\Owner\Desktop\SmitfraudFix\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
Fix run in normal mode
»»»»»»»»»»»»»»»»»»»»»»»» C:\
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32
C:\WINDOWS\system32\rrtcany.dll FOUND !
»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32\LogFiles
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Owner
»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Owner\Application Data
»»»»»»»»»»»»»»»»»»»»»»»» Start Menu
C:\DOCUME~1\ALLUSE~1\STARTM~1\Online Security Guide.url FOUND !
C:\DOCUME~1\ALLUSE~1\STARTM~1\Security Troubleshooting.url FOUND !
»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\Owner\FAVORI~1
»»»»»»»»»»»»»»»»»»»»»»»» Desktop
»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files
C:\Program Files\PestTrap\ FOUND !
C:\Program Files\VideoKeyCodec\ FOUND !
C:\Program Files\VirusBursters\ FOUND !
»»»»»»»»»»»»»»»»»»»»»»»» Corrupted keys
»»»»»»»»»»»»»»»»»»»»»»»» Desktop Components
[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"
»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, following keys are not inevitably infected!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{27321538-5739-4aa1-b84c-7d18e4383f1f}"="ferrateen"
[HKEY_CLASSES_ROOT\CLSID\{27321538-5739-4aa1-b84c-7d18e4383f1f}\InProcServer32]
@="C:\WINDOWS\system32\rrtcany.dll"
[HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{27321538-5739-4aa1-b84c-7d18e4383f1f}\InProcServer32]
@="C:\WINDOWS\system32\rrtcany.dll"
»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, following keys are not inevitably infected!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""
»»»»»»»»»»»»»»»»»»»»»»»» pe386-msguard-lzx32
»»»»»»»»»»»»»»»»»»»»»»»» Scanning wininet.dll infection
»»»»»»»»»»»»»»»»»»»»»»»» End
Bugbatter
4 Apprentice
•
20.5K Posts
0
October 29th, 2006 22:00
Please reboot your computer in Safe Mode by doing the following :
- Restart your computer
- After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually;
- Instead of Windows loading as normal, a menu with options should appear;
- Select the first option, to run Windows in Safe Mode, then press "Enter".
- Choose your usual account.
Once in Safe Mode, open the SmitfraudFix folder again and double-click smitfraudfix.cmdSelect option #2 - Clean by typing 2 and press " Enter" to delete infected files.
You will be prompted : "Registry cleaning - Do you want to clean the registry ?"; answer "Yes" by typing Y and press "Enter" in order to remove the Desktop background and clean registry keys associated with the infection.
The tool will now check if wininet.dll is infected. You may be prompted to replace the infected file (if found); answer "Yes" by typing Y and press "Enter".
The tool may need to restart your computer to finish the cleaning process; if it doesn't, please restart anyway into normal Windows.
A text file will appear onscreen, with results from the cleaning process; please copy/paste the content of that report along with all others into your next reply along with a new HijackThis log.
The report can also be found at the root of the system drive, usually at C:\rapport.txt
Warning : Running option #2 on a non-infected computer will remove your Desktop background.
____________________________________________________________
Clean out your Temporary Internet files. Proceed like this:
- Quit Internet Explorer and quit any instances of Windows Explorer.
- Click Start, click Control Panel, and then double-click Internet Options.
- On the General tab, click Delete Files under Temporary Internet Files.
- In the Delete Files dialog box, tick the Delete all offline content check box , and then click OK.
- On the General tab, click Delete Cookies under Temporary Internet Files, and then click OK.
- Click on the Programs tab then click the Reset Web Settings button. Click Apply then OK.
- Click OK.
Next Click Start, click Control Panel and then double-click Display.Click on the Desktop tab, then click the Customize Desktop button. Click on the Web tab. Under Web Pages you should see a checked entry called Security info or something similar. If it is there, select that entry and click the Delete button. Click Ok then Apply and Ok.
Empty the Recycle Bin by right-clicking the Recycle Bin icon on your Desktop, and then clicking Empty Recycle Bin
______________________________
Close ALL open Windows / Programs / Folders.
In your next reply please include:
1. The report from SmitfraudFix found here: C:\rapport.txt
2. The report from AVG AS
3. A fresh HijackThis log
You may need several replies to post the requested logs, otherwise they might get cut off.
wchris1988
19 Posts
0
October 30th, 2006 01:00
:mozilla.149:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.150:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.151:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.152:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.153:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.154:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.155:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.156:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.160:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Sexcounter : Error during cleaning.
:mozilla.161:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Sexcounter : Error during cleaning.
:mozilla.162:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Sexcounter : Error during cleaning.
:mozilla.163:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Sexcounter : Error during cleaning.
:mozilla.164:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Sexcounter : Error during cleaning.
:mozilla.165:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Sexcounter : Error during cleaning.
:mozilla.696:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Sexlist : Error during cleaning.
:mozilla.864:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Sexlist : Cleaned.
:mozilla.852:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Specificclick : Error during cleaning.
:mozilla.853:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Specificclick : Error during cleaning.
:mozilla.336:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Starware : Cleaned.
:mozilla.337:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Starware : Cleaned.
:mozilla.338:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Starware : Cleaned.
:mozilla.339:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Starware : Cleaned.
:mozilla.100:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.101:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.102:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.103:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.104:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.105:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.106:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.107:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.108:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.109:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.10:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.110:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.111:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.112:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.113:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.114:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.115:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.116:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.117:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.118:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.119:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.11:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.120:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.121:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.122:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.123:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.124:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.125:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.126:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.127:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.128:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.129:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.12:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.130:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.131:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.132:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.133:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.13:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
wchris1988
19 Posts
0
October 30th, 2006 01:00
Scan saved at 9:20:53 PM, on 10/29/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\igfxtray.exe
C:\WINDOWS\System32\hkcmd.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Common Files\AOL\1156835425\ee\AOLSoftware.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe
C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\System32\tcpsvcs.exe
C:\Program Files\Hijackthis\HijackThis.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O1 - Hosts: 127.255.255.255 serial.alcohol-soft.com
O1 - Hosts: 127.255.255.255 www.alcohol-soft.com
O1 - Hosts: 127.255.255.255 images.alcohol-soft.com
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [EPSON Stylus Photo R200 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2H1.EXE /P30 "EPSON Stylus Photo R200 Series" /O6 "USB001" /M "Stylus Photo R200"
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1156835425\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [EasyLinkAdvisor] "C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe" /startup
O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1157248879650
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1157263243967
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AOL Connectivity Service (AOL ACS) - Unknown owner - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe (file missing)
O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
wchris1988
19 Posts
0
October 30th, 2006 01:00
:mozilla.9:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.928:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Tacoda : Error during cleaning.
:mozilla.929:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Tacoda : Error during cleaning.
:mozilla.476:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Targetnet : Error during cleaning.
:mozilla.675:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Targetnet : Cleaned.
:mozilla.318:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Tracking101 : Error during cleaning.
:mozilla.566:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Tracking101 : Cleaned.
:mozilla.825:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Trafficmp : Error during cleaning.
:mozilla.826:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Trafficmp : Error during cleaning.
:mozilla.791:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Trafic : Error during cleaning.
:mozilla.952:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Trafic : Cleaned.
:mozilla.348:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.418:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Tribalfusion : Error during cleaning.
:mozilla.491:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Valuead : Error during cleaning.
:mozilla.492:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Valuead : Error during cleaning.
:mozilla.493:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Valuead : Error during cleaning.
:mozilla.494:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Valuead : Error during cleaning.
:mozilla.495:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Valuead : Error during cleaning.
:mozilla.496:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Valuead : Error during cleaning.
:mozilla.497:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Valuead : Error during cleaning.
:mozilla.685:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Valuead : Cleaned.
:mozilla.686:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Valuead : Cleaned.
:mozilla.687:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Valuead : Cleaned.
:mozilla.688:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Valuead : Cleaned.
:mozilla.689:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Valuead : Cleaned.
:mozilla.690:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Valuead : Cleaned.
:mozilla.889:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Valueclick : Error during cleaning.
:mozilla.946:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Valueclick : Error during cleaning.
:mozilla.771:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Web-stat : Error during cleaning.
:mozilla.772:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Web-stat : Error during cleaning.
:mozilla.773:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Web-stat : Error during cleaning.
:mozilla.934:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned.
:mozilla.935:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned.
:mozilla.936:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned.
:mozilla.180:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Yadro : Cleaned.
:mozilla.299:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Yadro : Error during cleaning.
:mozilla.349:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.351:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.352:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.819:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Yieldmanager : Error during cleaning.
:mozilla.820:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Yieldmanager : Error during cleaning.
:mozilla.821:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Yieldmanager : Error during cleaning.
:mozilla.854:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Zedo : Error during cleaning.
:mozilla.855:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Zedo : Error during cleaning.
:mozilla.856:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Zedo : Error during cleaning.
::Report end
wchris1988
19 Posts
0
October 30th, 2006 01:00
:mozilla.342:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.343:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.423:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Fastclick : Error during cleaning.
:mozilla.424:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Fastclick : Error during cleaning.
:mozilla.286:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Findwhat : Error during cleaning.
:mozilla.544:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Findwhat : Cleaned.
:mozilla.54:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.344:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Hitslink : Error during cleaning.
:mozilla.592:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.181:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Hotlog : Cleaned.
:mozilla.279:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Liveperson : Error during cleaning.
:mozilla.280:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Liveperson : Error during cleaning.
:mozilla.281:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Liveperson : Error during cleaning.
:mozilla.540:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.541:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.542:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.563:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Liveperson : Error during cleaning.
:mozilla.564:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Liveperson : Error during cleaning.
:mozilla.686:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Liveperson : Error during cleaning.
:mozilla.687:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Liveperson : Error during cleaning.
:mozilla.688:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Liveperson : Error during cleaning.
:mozilla.750:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.751:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.855:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.856:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.857:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.347:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Mediaplex : Error during cleaning.
:mozilla.348:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Mediaplex : Error during cleaning.
:mozilla.595:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.596:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.123:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Onestat : Error during cleaning.
:mozilla.124:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Onestat : Error during cleaning.
:mozilla.125:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Onestat : Error during cleaning.
:mozilla.127:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Onestat : Error during cleaning.
:mozilla.469:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.470:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.471:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.472:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.350:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.846:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Pointroll : Error during cleaning.
:mozilla.847:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Pointroll : Error during cleaning.
:mozilla.848:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Pointroll : Error during cleaning.
:mozilla.849:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Pointroll : Error during cleaning.
:mozilla.609:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Qksrv : Error during cleaning.
:mozilla.610:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Qksrv : Error during cleaning.
:mozilla.788:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned.
:mozilla.789:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned.
:mozilla.834:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Questionmarket : Error during cleaning.
:mozilla.835:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Questionmarket : Error during cleaning.
:mozilla.836:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Questionmarket : Error during cleaning.
:mozilla.164:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.165:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.166:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.167:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.168:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.833:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Ru4 : Error during cleaning.
:mozilla.839:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Ru4 : Error during cleaning.
:mozilla.840:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Ru4 : Error during cleaning.
:mozilla.841:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Ru4 : Error during cleaning.
:mozilla.842:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Ru4 : Error during cleaning.
:mozilla.827:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Serving-sys : Error during cleaning.
:mozilla.828:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Serving-sys : Error during cleaning.
:mozilla.829:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Serving-sys : Error during cleaning.
:mozilla.830:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Serving-sys : Error during cleaning.
:mozilla.831:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Serving-sys : Error during cleaning.
wchris1988
19 Posts
0
October 30th, 2006 01:00
:mozilla.15:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.16:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.17:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.18:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.19:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.20:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.21:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.22:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.23:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.24:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.25:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.26:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.27:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.28:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.29:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.30:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.31:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.32:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.33:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.34:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.35:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.36:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.37:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.38:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.39:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.40:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.41:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.42:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.43:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.44:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.45:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.46:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.47:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.48:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.49:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.50:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.51:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.52:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.53:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.54:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.55:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.56:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.57:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.6:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning.
:mozilla.84:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.85:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.86:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.87:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.88:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.89:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.90:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.91:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.92:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.93:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.94:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.95:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.96:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.97:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.98:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
wchris1988
19 Posts
0
October 30th, 2006 01:00
AVG Anti-Spyware - Scan Report
---------------------------------------------------------
+ Created at: 9:16:10 PM 10/29/2006
+ Scan result:
C:\System Volume Information\_restore{B7316E07-07C6-4162-BC42-C6516D9471C7}\RP136\A0021239.exe -> Adware.Spysheriff : Cleaned.
:mozilla.625:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.247realmedia : Error during cleaning.
:mozilla.626:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.247realmedia : Error during cleaning.
:mozilla.800:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.801:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.276:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.278:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.279:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.280:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.281:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.282:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.283:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.351:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.2o7 : Error during cleaning.
:mozilla.352:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.2o7 : Error during cleaning.
:mozilla.353:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.2o7 : Error during cleaning.
:mozilla.354:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.2o7 : Error during cleaning.
:mozilla.355:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.2o7 : Error during cleaning.
:mozilla.599:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.583:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.7search : Error during cleaning.
:mozilla.584:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.7search : Error during cleaning.
:mozilla.769:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.7search : Cleaned.
:mozilla.770:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.7search : Cleaned.
:mozilla.367:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.368:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.822:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Adbrite : Error during cleaning.
:mozilla.823:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Adbrite : Error during cleaning.
:mozilla.930:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Adbrite : Error during cleaning.
:mozilla.931:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Adbrite : Error during cleaning.
:mozilla.932:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Adbrite : Error during cleaning.
:mozilla.933:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Adbrite : Error during cleaning.
:mozilla.934:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Adbrite : Error during cleaning.
:mozilla.935:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Adbrite : Error during cleaning.
:mozilla.936:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Adbrite : Error during cleaning.
:mozilla.937:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Adbrite : Error during cleaning.
:mozilla.938:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Adbrite : Error during cleaning.
:mozilla.939:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Adbrite : Error during cleaning.
:mozilla.345:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.346:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.359:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.360:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.361:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.362:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.812:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Adrevolver : Error during cleaning.
:mozilla.813:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Adrevolver : Error during cleaning.
:mozilla.814:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Adrevolver : Error during cleaning.
:mozilla.815:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Adrevolver : Error during cleaning.
:mozilla.816:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Adrevolver : Error during cleaning.
:mozilla.817:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Adrevolver : Error during cleaning.
:mozilla.818:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Adrevolver : Error during cleaning.
:mozilla.347:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.356:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.357:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.358:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.364:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.413:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Advertising : Error during cleaning.
:mozilla.414:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Advertising : Error during cleaning.
:mozilla.415:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Advertising : Error during cleaning.
:mozilla.416:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Advertising : Error during cleaning.
:mozilla.417:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Advertising : Error during cleaning.
:mozilla.363:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.380:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Atdmt : Error during cleaning.
:mozilla.406:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Bfast : Cleaned.
:mozilla.589:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Bfast : Error during cleaning.
:mozilla.600:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Bluestreak : Error during cleaning.
:mozilla.779:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.811:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Casalemedia : Error during cleaning.
:mozilla.383:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Clickbank : Error during cleaning.
:mozilla.612:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Clickbank : Cleaned.
:mozilla.810:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Cqcounter : Error during cleaning.
:mozilla.216:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Doubleclick : Error during cleaning.
:mozilla.521:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.751:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Esomniture : Error during cleaning.
:mozilla.916:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.306:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Etracker : Error during cleaning.
:mozilla.307:C:\Documents and Settings\Owner\My Documents\filelib\chrisww1988\FEBE 2006 10-24 14.59.20\profile{default}.fbu/cookies.txt -> TrackingCookie.Etracker : Error during cleaning.
:mozilla.555:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Etracker : Cleaned.
:mozilla.556:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Etracker : Cleaned.
:mozilla.340:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\zikzcfyl.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
wchris1988
19 Posts
0
October 30th, 2006 01:00
Scan done at 19:36:18.53, Sun 10/29/2006
Run from C:\Documents and Settings\Owner\Desktop\SmitfraudFix\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
Fix run in safe mode
»»»»»»»»»»»»»»»»»»»»»»»» Before SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{27321538-5739-4aa1-b84c-7d18e4383f1f}"="ferrateen"
[HKEY_CLASSES_ROOT\CLSID\{27321538-5739-4aa1-b84c-7d18e4383f1f}\InProcServer32]
@="C:\WINDOWS\system32\rrtcany.dll"
[HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{27321538-5739-4aa1-b84c-7d18e4383f1f}\InProcServer32]
@="C:\WINDOWS\system32\rrtcany.dll"
»»»»»»»»»»»»»»»»»»»»»»»» Killing process
»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix
GenericRenosFix by S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Deleting infected files
C:\WINDOWS\system32\rrtcany.dll Deleted
C:\DOCUME~1\ALLUSE~1\STARTM~1\Online Security Guide.url Deleted
C:\DOCUME~1\ALLUSE~1\STARTM~1\Security Troubleshooting.url Deleted
C:\Program Files\PestTrap\ Deleted
C:\Program Files\VideoKeyCodec\ Deleted
C:\Program Files\VirusBursters\ Deleted
»»»»»»»»»»»»»»»»»»»»»»»» Deleting Temp Files
»»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning
Registry Cleaning done.
»»»»»»»»»»»»»»»»»»»»»»»» After SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
»»»»»»»»»»»»»»»»»»»»»»»» End
Bugbatter
4 Apprentice
•
20.5K Posts
0
October 30th, 2006 18:00
Please launch HijackThis and place a checkmark next to these:
O1 - Hosts: 127.255.255.255 serial.alcohol-soft.com
O1 - Hosts: 127.255.255.255 www.alcohol-soft.com
O1 - Hosts: 127.255.255.255 images.alcohol-soft.com
Close all windows except HijackThis and click "Fix Checked". Close HijackThis.
Reboot.
Now lets' clean some more of those cookies. You will need to re-enter information when you visit your favorite sites, though.
CCleaner:
Download and scan each user profile with CCleaner:
http://www.ccleaner.com/downloadbuilds.asp
** Select to download the BASIC version.
1. Before first use, select Options > Advanced and UNCHECK
" Only delete files in Windows Temp folder older than 48 hours"
2. Then select the items you wish to clean up.
In the Windows Tab:
• Clean all entries in the "Internet Explorer" section.
• Clean all the entries in the "Windows Explorer" section.
• Clean all entries in the "System" section.
• Clean all entries in the "Advanced" section.
• Clean any others that you choose.
In the Applications Tab:
• Clean all in the Firefox/Mozilla section if you use it.
• Clean all in the Opera section if you use it.
• Clean Sun Java in the Internet Section.
• Clean any others that you choose.
3. Click the " Run Cleaner" button.
4. A pop up box will appear advising this process will permanently delete files from your system.
5. Click " OK" and it will scan and clean your system.
6. Click " exit" when done.
REBOOT.
Your Java is out of date. Older versions have vulnerabilities that malware can use to infect your system. Please follow these steps to remove older version Java components and update.
Updating Java:
Official JAVA Installation Instructions if needed.
Follwoing that, please post a fresh Hijackthis log for final review. Thanks. :)
wchris1988
19 Posts
0
October 30th, 2006 20:00
Scan saved at 4:14:55 PM, on 10/30/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\igfxtray.exe
C:\WINDOWS\System32\hkcmd.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Common Files\AOL\1156835425\ee\AOLSoftware.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\System32\tcpsvcs.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Hijackthis\HijackThis.exe
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [EPSON Stylus Photo R200 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2H1.EXE /P30 "EPSON Stylus Photo R200 Series" /O6 "USB001" /M "Stylus Photo R200"
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1156835425\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [EasyLinkAdvisor] "C:\Program Files\Linksys EasyLink Advisor\LinksysAgent.exe" /startup
O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1157248879650
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1157263243967
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AOL Connectivity Service (AOL ACS) - Unknown owner - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe (file missing)
O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
THANK YOU :)
Bugbatter
4 Apprentice
•
20.5K Posts
0
October 31st, 2006 01:00
Your log appears to be in good shape.
After something like this it is a good idea to purge the Restore Points and start fresh.
If everything is running well....
To flush the XP System Restore Points:
(Using XP, you must be logged in as Administrator to do this.)
Go to Start>Run and type msconfig Press enter.
When msconfig opens, click the Launch System Restore Button.
On the next page, click the System Restore Settings Link on the left.
Check the box labeled Turn Off System Restore.
Reboot. Go back in and turn System Restore ON. A new Restore Point will be created.
Here is my standard list of simple steps that you can take to reduce the chance of infection in the future.
You may have already taken some of these steps:
1. Visit Windows Update:
Make sure that you have all the Critical Updates recommended for your operating system and IE. The first defense against infection is a properly patched OS.
Windows Update: http://v4.windowsupdate.microsoft.com/en/default.asp
2. Adjust your security settings for ActiveX:
Go to Internet Options/Security/Internet, press 'default level', then OK.
Now press "Custom Level."
In the ActiveX section, set the first two options ("Download signed and unsigned ActiveX controls) to 'prompt', and 'Initialize and Script ActiveX controls not marked as safe" to 'disable'.
3. Download and install the following free programs:
a. SpywareBlaster:
http://www.javacoolsoftware.com/spywareblaster.html
Tutorial here: http://www.bleepingcomputer.com/forums/tutorial49.html
b. SpywareGuard:
http://www.javacoolsoftware.com/spywareguard.html
Tutorial here: http://www.bleepingcomputer.com/tutorials/tutorial50.html
Periodically check for updates in both programs.
4. Please use a firewall and realtime anti-virus. Keep the anti-virus software and firewall software up to date.
Note: Zone Alarm Firewall (Zone Labs) http://www.zonelabs.com/store/content/company/products/trial_zaFamily/trial_zaFamily.jsp?lid=home_freedownloads
Sunbelt Kerio has a free version: http://www.kerio.com/kpf_download.html
5. You might consider installing Mozilla / Firefox.
http://www.mozilla.org/
6. Install spyware detection and removal programs:
You may also want to consider installing either or both of AdAware (free version) and Spybot S&D (freeware). Use these programs to regularly scan your system for and remove many forms of spyware/malware.
a. Ad-aware: http://www.lavasoft.de/software/adaware/
b. SpyBot S&D: http://safer-networking.org/en/news/2005-05-31.html
I would check for updates in SpyBot once a week or so.
Check for updates in Ad-aware frequently.
If you have recently installed AVG Anti-Spyware, it is a free trial product for 30 days. After that you can purchase it for full features OR you can also keep the free version to use as an on-demand scanner (recommended).
You will still be able to manually update it using the *update* button
7. Before using or purchasing any Spyware/Malware protection/removal program, always check the Rogue/Suspect Spyware List.
Here is the link:
http://www.spywarewarrior.com/rogue_anti-spyware.htm
8. If you have not already done so, you might want to install CCleaner and run it in each user's profile: http://www.ccleaner.com/
** UNcheck the option to install the Yahoo toolbr.
9. If you use Adobe Reader it may need to be updated to be sure that you have a more secure version. If you are using a version prior to v. 6.05, you should update to 6.05, preferably version 7.08. It would be best to remove prior versions before updating to a new version.
Info here: http://www.adobe.com/support/downloads/product.jsp?product=10&platform=Windows
If you need additional assistance, the Adobe forums are here: http://www.adobe.com/support/forums/main.html
10. Make sure you are using the most updated version of Java. The most updated version is jre-1_5_0_09.
Older versions have vulnerabilities that malware can use to infect your system. Please follow these steps to remove older version Java components and update.
Official JAVA Installation Instructions if needed.
11. Here are some helpful articles:
"So how did I get infected in the first place?"
http://computercops.biz/postlite7736-.html
"I'm not pulling your leg, honest"
by Sandi Hardmeier
http://www.microsoft.com/windows/IE/community/columns/pulling.mspx
Let us know if we have not resolved your problem. Otherwise, you are good to go.
Happy and Safe Surfing!