[Solved] Pop ups came back please help me remove...

Hi i keep on getting pop ups and i cannot seem to remove them. i have removed them once but they came back and now i have pop ups from different sites also. im trying to using Hijack to remove them but i am not sure of what to delete. When i use a a program used peer guardian it keep on blocking offer optimizer. Also when i use internet explorer it does a random aol search of an ip address with other numbers and letters on the address thoguh it is not my ip address.Any help will be greatly appreciated. Thank You.
Logfile of HijackThis v1.99.1
Scan saved at 8:42:04 PM, on 6/15/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Sony\Giga Pocket\shwserv.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzCdb\VzFw.exe
C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe
C:\Program Files\Sony\VAIO Media Integrated Server\Video\GPVSvr.exe
C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
C:\Program Files\Sony\Giga Pocket\RM_SV.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\HP\HP Software Update\HPWuSchd.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Angela\Local Settings\Temp\Temporary Directory 1 for HijackThis.zip\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.myspace.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.sony.com/vaiopeople
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.netscape.com
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.sony.com/vaiotv
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: MSEvents Object - {CE70731D-F28D-4D81-9D61-C8EE60378401} - C:\WINDOWS\system32\ddccd.dll
O3 - Toolbar: (no name) - {4E7BD74F-2B8D-469E-D0FC-E57AF4D5FA7D} - (no file)
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [DXDllRegExe] dxdllreg.exe
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
O4 - HKLM\..\Run: [Pure Networks Port Magic] "C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe" -Run
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /0
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [PeerGuardian] C:\Program Files\PeerGuardian2\pg2.exe
O4 - HKCU\..\Run: [Update Service] "C:\Program Files\Common Files\Teknum Systems\update.exe" /startup
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 3.0\resources\en-US\local\search.html
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\Program Files\AWS\WeatherBug\Weather.exe (file missing) (HKCU)
O14 - IERESET.INF: START_PAGE_URL=http://www.sony.com/vaiopeople
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - https://activatemyfios.verizon.net/sdcCommon/download/tgctlcm.cab
O16 - DPF: {1754A1BA-A1DF-4F10-B199-AA55AA1A120F} (InstallerBehaviorFactory Class) - https://signup.msn.com/pages/MsnInstC.cab
O16 - DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} (Groove Control) - http://tv.disney.go.com/global/download/otoy/OTOYAX29b.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {D06A22B4-6087-4D3D-B7AF-82B113E9ABD4} (CPostLaunch Object) - https://www2.verizon.net/update/msnwebinstall/includes/vzWebIns.CAB
O20 - Winlogon Notify: ddccd - C:\WINDOWS\system32\ddccd.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: mllml - C:\WINDOWS\system32\mllml.dll (file missing)
O20 - Winlogon Notify: sstqq - sstqq.dll (file missing)
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
O23 - Service: AOL Spyware Protection Service (AOLService) - Unknown owner - C:\Program Files\Common Files\AOL\AOL Spyware Protection\aolserv.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Giga Pocket Hardware Detector - Sony Corporation - C:\Program Files\Sony\Giga Pocket\shwserv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Sony TV Tuner Controller - Sony Corporation - C:\Program Files\Sony\Giga Pocket\halsv.exe
O23 - Service: Sony TV Tuner Manager - Sony Corporation - C:\Program Files\Sony\Giga Pocket\RM_SV.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: VAIO Entertainment Aggregation and Control Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzRs\VzRs.exe
O23 - Service: VAIO Entertainment File Import Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzCdb\VzFw.exe
O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe
O23 - Service: VAIO Entertainment UPnP Client Adapter - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VCSW\VCSW.exe
O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe
O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Unknown owner - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe" /Service=VAIOMediaPlatform-IntegratedServer-HTTP /RegRoot="SOFTWARE\Sony Corporation\VAIO Media Platform\2.0" /RegExt="Applications\IntegratedServer\HTTP (file missing)
O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Unknown owner - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe" /Service=VAIOMediaPlatform-Mobile-Gateway /RegRoot="SOFTWARE\Sony Corporation\VAIO Media Platform\2.0" /RegExt="\Addons\Packages\Mobile\Gateway" /DisplayName="VAIO Media Gateway Server (file missing)
O23 - Service: VAIO Media Video Server (VAIOMediaPlatform-VideoServer-AppServer) - Unknown owner - C:\Program Files\Sony\VAIO Media Integrated Server\Video\GPVSvr.exe" /Service=VAIOMediaPlatform-VideoServer-AppServer /DisplayName="VAIO Media Video Server (file missing)
O23 - Service: VAIO Media Video Server (HTTP) (VAIOMediaPlatform-VideoServer-HTTP) - Unknown owner - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe" /Service=VAIOMediaPlatform-VideoServer-HTTP /RegRoot="SOFTWARE\Sony Corporation\VAIO Media Platform\2.0" /RegExt="\Applications\VideoServer\HTTP (file missing)
O23 - Service: VAIO Media Video Server (UPnP) (VAIOMediaPlatform-VideoServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe

Comments

  • TroganTrogan London, UK
    edited June 2006
    Hi ItsAndroo, welcome to Short-Media! :)


    Please download VundoFix.exe to your desktop.
    • Double-click VundoFix.exe to run it.
    • Click the Scan for Vundo button.
    • Once it's done scanning, click the Remove Vundo button.
    • You will receive a prompt asking if you want to remove the files, click YES
    • Once you click yes, your desktop will go blank as it starts removing Vundo.
    • When completed, it will prompt that it will shutdown your computer, click OK.
    • Turn your computer back on.
    • Please post the contents of C:\vundofix.txt and a new HiJackThis log.
  • edited June 2006
    Thank you for your help.
    VundoFix V4.2.84

    Checking Java version...

    Java version is 1.4.2.5

    Scan started at 11:06:29 AM 6/16/2006

    Listing files found while scanning....

    C:\WINDOWS\system32\ddccd.dll
    C:\WINDOWS\system32\dccdd.ini
    C:\WINDOWS\system32\dccdd.bak1
    C:\WINDOWS\system32\dccdd.bak2
    C:\WINDOWS\system32\dccdd.ini2
    C:\WINDOWS\system32\dccdd.tmp

    C:\WINDOWS\system32\dccdd.bak1
    C:\WINDOWS\system32\dccdd.bak2
    C:\WINDOWS\system32\dccdd.tmp
    C:\WINDOWS\system32\dccdd.ini
    C:\WINDOWS\system32\dccdd.ini2
    C:\WINDOWS\system32\ddccd.dll
    C:\WINDOWS\system32\dccdd.ini2
    C:\WINDOWS\system32\dccdd.bak2
    C:\WINDOWS\system32\dccdd.tmp
    C:\WINDOWS\system32\dccdd.ini
    C:\WINDOWS\system32\dccdd.ini2
    C:\WINDOWS\system32\ddccd.dll
    Attempting to delete C:\WINDOWS\system32\ddccd.dll
    C:\WINDOWS\system32\ddccd.dll Has been deleted!

    Attempting to delete C:\WINDOWS\system32\dccdd.ini
    C:\WINDOWS\system32\dccdd.ini Has been deleted!

    Attempting to delete C:\WINDOWS\system32\dccdd.bak1
    C:\WINDOWS\system32\dccdd.bak1 Has been deleted!

    Attempting to delete C:\WINDOWS\system32\dccdd.bak2
    C:\WINDOWS\system32\dccdd.bak2 Has been deleted!

    Attempting to delete C:\WINDOWS\system32\dccdd.ini2
    C:\WINDOWS\system32\dccdd.ini2 Has been deleted!

    Attempting to delete C:\WINDOWS\system32\dccdd.tmp
    C:\WINDOWS\system32\dccdd.tmp Has been deleted!

    Performing Repairs to the registry.
    Done!

    Logfile of HijackThis v1.99.1
    Scan saved at 11:17:40 AM, on 6/16/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\hkcmd.exe
    C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\Program Files\HP\HP Software Update\HPWuSchd.exe
    C:\Program Files\Sony\Giga Pocket\shwserv.exe
    C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
    C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
    C:\Program Files\Real\RealPlayer\RealPlay.exe
    C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
    C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\AIM\aim.exe
    C:\Program Files\Norton AntiVirus\navapsvc.exe
    C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzCdb\VzFw.exe
    C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe
    C:\Program Files\Sony\VAIO Media Integrated Server\Video\GPVSvr.exe
    C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
    C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
    C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
    C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Sony\Giga Pocket\RM_SV.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\WINDOWS\system32\NOTEPAD.EXE
    C:\Documents and Settings\Angela\Local Settings\Temp\Temporary Directory 1 for HijackThis.zip\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.myspace.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.sony.com/vaiopeople
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.netscape.com
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.sony.com/vaiotv
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
    O3 - Toolbar: (no name) - {4E7BD74F-2B8D-469E-D0FC-E57AF4D5FA7D} - (no file)
    O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
    O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
    O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd.exe"
    O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
    O4 - HKLM\..\Run: [DXDllRegExe] dxdllreg.exe
    O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
    O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
    O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
    O4 - HKLM\..\Run: [Pure Networks Port Magic] "C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe" -Run
    O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKCU\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /0
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [PeerGuardian] C:\Program Files\PeerGuardian2\pg2.exe
    O4 - HKCU\..\Run: [Update Service] "C:\Program Files\Common Files\Teknum Systems\update.exe" /startup
    O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
    O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
    O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 3.0\resources\en-US\local\search.html
    O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
    O8 - Extra context menu item: &Translate English Word - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
    O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
    O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
    O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
    O8 - Extra context menu item: Translate Page into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
    O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
    O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
    O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\Program Files\AWS\WeatherBug\Weather.exe (file missing) (HKCU)
    O14 - IERESET.INF: START_PAGE_URL=http://www.sony.com/vaiopeople
    O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - https://activatemyfios.verizon.net/sdcCommon/download/tgctlcm.cab
    O16 - DPF: {1754A1BA-A1DF-4F10-B199-AA55AA1A120F} (InstallerBehaviorFactory Class) - https://signup.msn.com/pages/MsnInstC.cab
    O16 - DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} (Groove Control) - http://tv.disney.go.com/global/download/otoy/OTOYAX29b.cab
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
    O16 - DPF: {D06A22B4-6087-4D3D-B7AF-82B113E9ABD4} (CPostLaunch Object) - https://www2.verizon.net/update/msnwebinstall/includes/vzWebIns.CAB
    O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
    O20 - Winlogon Notify: mllml - C:\WINDOWS\system32\mllml.dll (file missing)
    O20 - Winlogon Notify: sstqq - sstqq.dll (file missing)
    O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
    O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    O23 - Service: AOL Spyware Protection Service (AOLService) - Unknown owner - C:\Program Files\Common Files\AOL\AOL Spyware Protection\aolserv.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    O23 - Service: Giga Pocket Hardware Detector - Sony Corporation - C:\Program Files\Sony\Giga Pocket\shwserv.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
    O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
    O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
    O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    O23 - Service: Sony TV Tuner Controller - Sony Corporation - C:\Program Files\Sony\Giga Pocket\halsv.exe
    O23 - Service: Sony TV Tuner Manager - Sony Corporation - C:\Program Files\Sony\Giga Pocket\RM_SV.exe
    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
    O23 - Service: VAIO Entertainment Aggregation and Control Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzRs\VzRs.exe
    O23 - Service: VAIO Entertainment File Import Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzCdb\VzFw.exe
    O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe
    O23 - Service: VAIO Entertainment UPnP Client Adapter - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VCSW\VCSW.exe
    O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe
    O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Unknown owner - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe" /Service=VAIOMediaPlatform-IntegratedServer-HTTP /RegRoot="SOFTWARE\Sony Corporation\VAIO Media Platform\2.0" /RegExt="Applications\IntegratedServer\HTTP (file missing)
    O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
    O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Unknown owner - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe" /Service=VAIOMediaPlatform-Mobile-Gateway /RegRoot="SOFTWARE\Sony Corporation\VAIO Media Platform\2.0" /RegExt="\Addons\Packages\Mobile\Gateway" /DisplayName="VAIO Media Gateway Server (file missing)
    O23 - Service: VAIO Media Video Server (VAIOMediaPlatform-VideoServer-AppServer) - Unknown owner - C:\Program Files\Sony\VAIO Media Integrated Server\Video\GPVSvr.exe" /Service=VAIOMediaPlatform-VideoServer-AppServer /DisplayName="VAIO Media Video Server (file missing)
    O23 - Service: VAIO Media Video Server (HTTP) (VAIOMediaPlatform-VideoServer-HTTP) - Unknown owner - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe" /Service=VAIOMediaPlatform-VideoServer-HTTP /RegRoot="SOFTWARE\Sony Corporation\VAIO Media Platform\2.0" /RegExt="\Applications\VideoServer\HTTP (file missing)
    O23 - Service: VAIO Media Video Server (UPnP) (VAIOMediaPlatform-VideoServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
  • TroganTrogan London, UK
    edited June 2006
    Good Job!


    Open HijackThis
    - Click the Do a system scan only button
    - Check the following entries (below)

    O3 - Toolbar: (no name) - {4E7BD74F-2B8D-469E-D0FC-E57AF4D5FA7D} - (no file)

    O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE

    O20 - Winlogon Notify: mllml - C:\WINDOWS\system32\mllml.dll (file missing)
    O20 - Winlogon Notify: sstqq - sstqq.dll (file missing)


    - Close ALL open windows (especially Internet Explorer!)
    Click Fix Checked

    =====

    Reboot and post a new HJT log. :)
  • edited June 2006
    I tihnk it worked, though My Peer Guardian is still blocking Oferroptimizer/static/callinghome.biz[SPY], st.( I heard it is spyware?) :) Thank you once again.
    Logfile of HijackThis v1.99.1
    Scan saved at 1:08:52 PM, on 6/17/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    C:\Program Files\Sony\Giga Pocket\shwserv.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Norton AntiVirus\navapsvc.exe
    C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzCdb\VzFw.exe
    C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe
    C:\Program Files\Sony\VAIO Media Integrated Server\Video\GPVSvr.exe
    C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
    C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
    C:\WINDOWS\system32\hkcmd.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
    C:\Program Files\HP\HP Software Update\HPWuSchd.exe
    C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
    C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
    C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
    C:\Program Files\Real\RealPlayer\RealPlay.exe
    C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
    C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\Sony\Giga Pocket\RM_SV.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\AIM\aim.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Documents and Settings\Angela\Local Settings\Temp\Temporary Directory 1 for HijackThis.zip\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.myspace.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.sony.com/vaiopeople
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.netscape.com
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.sony.com/vaiotv
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
    O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
    O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd.exe"
    O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
    O4 - HKLM\..\Run: [DXDllRegExe] dxdllreg.exe
    O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
    O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
    O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
    O4 - HKLM\..\Run: [Pure Networks Port Magic] "C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe" -Run
    O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKCU\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /0
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [PeerGuardian] C:\Program Files\PeerGuardian2\pg2.exe
    O4 - HKCU\..\Run: [Update Service] "C:\Program Files\Common Files\Teknum Systems\update.exe" /startup
    O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
    O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
    O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 3.0\resources\en-US\local\search.html
    O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
    O8 - Extra context menu item: &Translate English Word - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
    O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
    O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
    O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
    O8 - Extra context menu item: Translate Page into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
    O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
    O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
    O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\Program Files\AWS\WeatherBug\Weather.exe (file missing) (HKCU)
    O14 - IERESET.INF: START_PAGE_URL=http://www.sony.com/vaiopeople
    O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - https://activatemyfios.verizon.net/sdcCommon/download/tgctlcm.cab
    O16 - DPF: {1754A1BA-A1DF-4F10-B199-AA55AA1A120F} (InstallerBehaviorFactory Class) - https://signup.msn.com/pages/MsnInstC.cab
    O16 - DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} (Groove Control) - http://tv.disney.go.com/global/download/otoy/OTOYAX29b.cab
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
    O16 - DPF: {D06A22B4-6087-4D3D-B7AF-82B113E9ABD4} (CPostLaunch Object) - https://www2.verizon.net/update/msnwebinstall/includes/vzWebIns.CAB
    O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
    O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
    O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    O23 - Service: AOL Spyware Protection Service (AOLService) - Unknown owner - C:\Program Files\Common Files\AOL\AOL Spyware Protection\aolserv.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    O23 - Service: Giga Pocket Hardware Detector - Sony Corporation - C:\Program Files\Sony\Giga Pocket\shwserv.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
    O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
    O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
    O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    O23 - Service: Sony TV Tuner Controller - Sony Corporation - C:\Program Files\Sony\Giga Pocket\halsv.exe
    O23 - Service: Sony TV Tuner Manager - Sony Corporation - C:\Program Files\Sony\Giga Pocket\RM_SV.exe
    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
    O23 - Service: VAIO Entertainment Aggregation and Control Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzRs\VzRs.exe
    O23 - Service: VAIO Entertainment File Import Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzCdb\VzFw.exe
    O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe
    O23 - Service: VAIO Entertainment UPnP Client Adapter - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VCSW\VCSW.exe
    O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe
    O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Unknown owner - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe" /Service=VAIOMediaPlatform-IntegratedServer-HTTP /RegRoot="SOFTWARE\Sony Corporation\VAIO Media Platform\2.0" /RegExt="Applications\IntegratedServer\HTTP (file missing)
    O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
    O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Unknown owner - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe" /Service=VAIOMediaPlatform-Mobile-Gateway /RegRoot="SOFTWARE\Sony Corporation\VAIO Media Platform\2.0" /RegExt="\Addons\Packages\Mobile\Gateway" /DisplayName="VAIO Media Gateway Server (file missing)
    O23 - Service: VAIO Media Video Server (VAIOMediaPlatform-VideoServer-AppServer) - Unknown owner - C:\Program Files\Sony\VAIO Media Integrated Server\Video\GPVSvr.exe" /Service=VAIOMediaPlatform-VideoServer-AppServer /DisplayName="VAIO Media Video Server (file missing)
    O23 - Service: VAIO Media Video Server (HTTP) (VAIOMediaPlatform-VideoServer-HTTP) - Unknown owner - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe" /Service=VAIOMediaPlatform-VideoServer-HTTP /RegRoot="SOFTWARE\Sony Corporation\VAIO Media Platform\2.0" /RegExt="\Applications\VideoServer\HTTP (file missing)
    O23 - Service: VAIO Media Video Server (UPnP) (VAIOMediaPlatform-VideoServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
  • TroganTrogan London, UK
    edited June 2006
    Let me know if you use PartPoker and WeatherBug please.

    OfferOptimizer is Spyware, but I havn't heard of the other two before. Do the following scan:


    Please download Ewido Anti-Malware
    • Install Ewido
    • When installing the program, under "Additonal Options" uncheck:
      • Install background guard
      • Install scan via context menu
    • Once installed, open Ewido
    • You will need to update Ewido to the latest definition files
      • On the left hand side of the main screen click update.
      • Then click on the Start Update button.
    • The update will start and a progress bar will show the updates being installed.
      • If you are having problems with the updater, you can manually update Ewido » Ewido manual updates.
    • After it has finished, close Ewido.
    Next, please reboot your computer in Safe Mode by doing the following:
    1) Restart your computer
    2) After hearing your computer beep once during startup, but before the Windows icon appears, press F8.
    3) Instead of Windows loading as normal, a menu should appear
    4) Select the first option, to run Windows in Safe Mode.


    For additional help in booting into Safe Mode, see the following site:
    http://www.pchell.com/support/safemode.shtml

    Once in Safe Mode, please open Ewido.
    • Click on scanner
    • Click Complete System Scan. (Please don't use the computer while Ewido is scanning)
    • NOTE: During some scans with Ewido it is finding cases of false positives.
    • You will need to step through the process of cleaning files one-by-one.
    • If Ewido detects a file you KNOW to be legitimate, select none as the action.
    • DO NOT select "Perform action on all infections"
    • If you are unsure of any entry found select none for now.
    • When the scan is finished, click the Save report button at the bottom of the screen.
    • Save the report to your desktop
    Close Ewido

    Restart your computer in normal mode and please post a new HijackThis log, as well as the log from the Ewido scan.
  • edited June 2006

    ewido anti-malware - Scan report

    + Created on: 3:00:08 PM, 6/17/2006
    + Report-Checksum: 6203B5A2

    + Scan result:

    C:\Program Files\AWS\WeatherBug\MiniBugTransporter.dll -> Adware.Aws : Ignored
    :mozilla.6:C:\Documents and Settings\Angela\Application Data\Mozilla\Profiles\default\4mxrsfrs.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned without backup
    :mozilla.7:C:\Documents and Settings\Angela\Application Data\Mozilla\Profiles\default\4mxrsfrs.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned without backup
    :mozilla.7:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned without backup
    :mozilla.8:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned without backup
    :mozilla.9:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned without backup
    :mozilla.11:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
    :mozilla.12:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned without backup
    :mozilla.13:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned without backup
    :mozilla.14:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
    :mozilla.24:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
    :mozilla.25:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
    :mozilla.26:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
    :mozilla.27:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
    :mozilla.30:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
    :mozilla.33:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
    :mozilla.34:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
    :mozilla.35:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
    :mozilla.36:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
    :mozilla.37:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup
    :mozilla.40:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
    :mozilla.42:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned with backup
    :mozilla.45:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
    :mozilla.46:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
    :mozilla.47:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
    :mozilla.48:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
    :mozilla.49:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
    :mozilla.50:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
    :mozilla.51:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
    :mozilla.52:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
    :mozilla.54:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Tracking101 : Cleaned with backup
    :mozilla.66:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
    :mozilla.70:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
    :mozilla.75:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
    :mozilla.76:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
    :mozilla.77:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
    :mozilla.84:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup
    :mozilla.89:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned with backup
    :mozilla.90:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
    :mozilla.91:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
    :mozilla.92:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
    :mozilla.93:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
    :mozilla.94:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
    :mozilla.95:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
    :mozilla.96:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
    :mozilla.97:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
    :mozilla.98:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
    :mozilla.99:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
    :mozilla.100:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
    :mozilla.101:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned with backup
    :mozilla.102:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned with backup
    :mozilla.103:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
    :mozilla.104:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup
    :mozilla.106:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup
    :mozilla.112:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup
    :mozilla.113:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
    :mozilla.114:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
    :mozilla.115:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
    :mozilla.118:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup
    :mozilla.119:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup
    :mozilla.124:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
    :mozilla.125:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
    :mozilla.126:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
    :mozilla.127:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
    :mozilla.131:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
    :mozilla.132:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup
    :mozilla.133:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup
    :mozilla.134:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
    :mozilla.136:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
    :mozilla.137:C:\Documents and Settings\Gerry\Application Data\Mozilla\Firefox\Profiles\0rzdkuv1.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
    :mozilla.6:C:\Documents and Settings\Gerry\Application Data\Mozilla\Profiles\default\j6u9rnim.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
    :mozilla.7:C:\Documents and Settings\Gerry\Application Data\Mozilla\Profiles\default\j6u9rnim.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
    :mozilla.9:C:\Documents and Settings\Gerry\Application Data\Mozilla\Profiles\default\j6u9rnim.slt\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
    :mozilla.10:C:\Documents and Settings\Gerry\Application Data\Mozilla\Profiles\default\j6u9rnim.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
    C:\Documents and Settings\Gerry\Cookies\gerry@com[2].txt -> TrackingCookie.Com : Cleaned with backup
    C:\Documents and Settings\Gerry\Cookies\gerry@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned with backup
    C:\Documents and Settings\Gerry\Cookies\gerry@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned with backup
    :mozilla.6:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\e9f6oweh.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
    :mozilla.8:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\e9f6oweh.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
    :mozilla.13:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\e9f6oweh.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup
    :mozilla.14:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\e9f6oweh.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
    :mozilla.15:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\e9f6oweh.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
    :mozilla.16:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\e9f6oweh.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
    :mozilla.17:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\e9f6oweh.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
    :mozilla.18:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\e9f6oweh.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
    :mozilla.7:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
    :mozilla.8:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
    :mozilla.11:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
    :mozilla.12:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
    :mozilla.13:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
    :mozilla.25:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
    :mozilla.26:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
    :mozilla.27:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
    :mozilla.28:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
    :mozilla.29:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
    :mozilla.30:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
    :mozilla.32:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
    :mozilla.33:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
    :mozilla.34:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
    :mozilla.35:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
    :mozilla.36:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
    :mozilla.37:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
    :mozilla.42:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
    :mozilla.43:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup
    :mozilla.63:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
    :mozilla.64:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
    :mozilla.65:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
    :mozilla.66:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
    :mozilla.67:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
    :mozilla.72:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
    :mozilla.73:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
    :mozilla.74:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
    :mozilla.75:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
    :mozilla.76:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
    :mozilla.84:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
    :mozilla.85:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
    :mozilla.86:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
    :mozilla.88:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Revenue : Cleaned with backup
    :mozilla.89:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
    :mozilla.90:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
    :mozilla.91:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
    :mozilla.92:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
    :mozilla.93:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
    :mozilla.94:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
    :mozilla.95:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
    :mozilla.101:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned with backup
    :mozilla.102:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
    :mozilla.103:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
    :mozilla.105:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
    :mozilla.106:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
    :mozilla.107:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
    :mozilla.108:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
    :mozilla.109:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
    :mozilla.110:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
    :mozilla.111:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
    :mozilla.112:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
    :mozilla.113:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned with backup
    :mozilla.124:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
    :mozilla.125:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
    :mozilla.129:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Addynamix : Cleaned with backup
    :mozilla.130:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
    :mozilla.131:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
    :mozilla.145:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
    :mozilla.146:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
    :mozilla.147:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
    :mozilla.148:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
    :mozilla.149:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
    :mozilla.155:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Coremetrics : Cleaned with backup
    :mozilla.158:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup
    :mozilla.159:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
    :mozilla.160:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
    :mozilla.161:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
    :mozilla.162:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
    :mozilla.174:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
    :mozilla.175:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
    :mozilla.176:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
    :mozilla.177:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
    :mozilla.178:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
    :mozilla.179:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
    :mozilla.183:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
    :mozilla.184:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
    :mozilla.185:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
    :mozilla.186:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
    :mozilla.187:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
    :mozilla.188:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
    :mozilla.189:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
    :mozilla.190:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\i03vvi9n.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
    C:\Documents and Settings\Guest\Cookies\guest@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned with backup
    C:\Documents and Settings\Guest\Cookies\guest@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned with backup
    C:\Documents and Settings\Owner\Incomplete\CORRUPT-0-[Full] madden 06 gba.rar/Setup_toolBar.exe -> Downloader.IstBar.nj : Cleaned with backup
    C:\Documents and Settings\Owner\Local Settings\Temp\temp.fr398E -> Adware.Virtumonde : Cleaned with backup
    C:\Program Files\Mozilla Firefox\plugins\npclntax.dll -> Adware.Zango : Cleaned with backup
    C:\Program Files\Netscape\Netscape\Plugins\npclntax.dll -> Adware.Zango : Cleaned with backup
    C:\RECYCLER\S-1-5-21-484443019-2047204517-526056013-501\Dc1.txt -> TrackingCookie.2o7 : Cleaned with backup
    C:\RECYCLER\S-1-5-21-484443019-2047204517-526056013-501\Dc12.txt -> TrackingCookie.Bridgetrack : Cleaned with backup
    C:\RECYCLER\S-1-5-21-484443019-2047204517-526056013-501\Dc14.txt -> TrackingCookie.Hitslink : Cleaned with backup
    C:\RECYCLER\S-1-5-21-484443019-2047204517-526056013-501\Dc15.txt -> TrackingCookie.Cpvfeed : Cleaned with backup
    C:\RECYCLER\S-1-5-21-484443019-2047204517-526056013-501\Dc18.txt -> TrackingCookie.Coremetrics : Cleaned with backup
    C:\RECYCLER\S-1-5-21-484443019-2047204517-526056013-501\Dc21.txt -> TrackingCookie.Doubleclick : Cleaned with backup
    C:\RECYCLER\S-1-5-21-484443019-2047204517-526056013-501\Dc22.txt -> TrackingCookie.Hitbox : Cleaned with backup
    C:\RECYCLER\S-1-5-21-484443019-2047204517-526056013-501\Dc23.txt -> TrackingCookie.Hitbox : Cleaned with backup
    C:\RECYCLER\S-1-5-21-484443019-2047204517-526056013-501\Dc25.txt -> TrackingCookie.Dbbsrv : Cleaned with backup
    C:\RECYCLER\S-1-5-21-484443019-2047204517-526056013-501\Dc29.txt -> TrackingCookie.Hitbox : Cleaned with backup
    C:\RECYCLER\S-1-5-21-484443019-2047204517-526056013-501\Dc35.txt -> TrackingCookie.Questionmarket : Cleaned with backup
    C:\RECYCLER\S-1-5-21-484443019-2047204517-526056013-501\Dc4.txt -> TrackingCookie.Pointroll : Cleaned with backup
    C:\RECYCLER\S-1-5-21-484443019-2047204517-526056013-501\Dc41.txt -> TrackingCookie.Serving-sys : Cleaned with backup
    C:\RECYCLER\S-1-5-21-484443019-2047204517-526056013-501\Dc42.txt -> TrackingCookie.Reliablestats : Cleaned with backup
    C:\RECYCLER\S-1-5-21-484443019-2047204517-526056013-501\Dc5.txt -> TrackingCookie.Advertising : Cleaned with backup
    C:\RECYCLER\S-1-5-21-484443019-2047204517-526056013-501\Dc58.txt -> TrackingCookie.Adserver : Cleaned with backup
    C:\RECYCLER\S-1-5-21-484443019-2047204517-526056013-501\Dc59.txt -> TrackingCookie.Zedo : Cleaned with backup
    C:\RECYCLER\S-1-5-21-484443019-2047204517-526056013-501\Dc6.txt -> TrackingCookie.Atdmt : Cleaned with backup
    C:\WINDOWS\system32\awvtu(2).dll -> Adware.Virtumonde : Cleaned with backup


    ::Report End


    Logfile of HijackThis v1.99.1
    Scan saved at 3:01:20 PM, on 6/17/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\hkcmd.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\Program Files\HP\HP Software Update\HPWuSchd.exe
    C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
    C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
    C:\Program Files\Real\RealPlayer\RealPlay.exe
    C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
    C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    C:\Program Files\AIM\aim.exe
    C:\Program Files\ewido anti-malware\ewidoctrl.exe
    C:\Program Files\Sony\Giga Pocket\shwserv.exe
    C:\Program Files\Norton AntiVirus\navapsvc.exe
    C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzCdb\VzFw.exe
    C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe
    C:\Program Files\Sony\VAIO Media Integrated Server\Video\GPVSvr.exe
    C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
    C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
    C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
    C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Sony\Giga Pocket\RM_SV.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\iTunes\iTunes.exe
    C:\Documents and Settings\Angela\Local Settings\Temp\Temporary Directory 1 for HijackThis.zip\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.myspace.com/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.sony.com/vaiopeople
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.netscape.com
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.sony.com/vaiotv
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
    O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
    O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\HP\HP Software Update\HPWuSchd.exe"
    O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
    O4 - HKLM\..\Run: [DXDllRegExe] dxdllreg.exe
    O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
    O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
    O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
    O4 - HKLM\..\Run: [Pure Networks Port Magic] "C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe" -Run
    O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKCU\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /0
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [PeerGuardian] C:\Program Files\PeerGuardian2\pg2.exe
    O4 - HKCU\..\Run: [Update Service] "C:\Program Files\Common Files\Teknum Systems\update.exe" /startup
    O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
    O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
    O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 3.0\resources\en-US\local\search.html
    O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
    O8 - Extra context menu item: &Translate English Word - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
    O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
    O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
    O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
    O8 - Extra context menu item: Translate Page into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
    O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
    O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
    O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
    O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\Program Files\AWS\WeatherBug\Weather.exe (file missing) (HKCU)
    O14 - IERESET.INF: START_PAGE_URL=http://www.sony.com/vaiopeople
    O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - https://activatemyfios.verizon.net/sdcCommon/download/tgctlcm.cab
    O16 - DPF: {1754A1BA-A1DF-4F10-B199-AA55AA1A120F} (InstallerBehaviorFactory Class) - https://signup.msn.com/pages/MsnInstC.cab
    O16 - DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} (Groove Control) - http://tv.disney.go.com/global/download/otoy/OTOYAX29b.cab
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
    O16 - DPF: {D06A22B4-6087-4D3D-B7AF-82B113E9ABD4} (CPostLaunch Object) - https://www2.verizon.net/update/msnwebinstall/includes/vzWebIns.CAB
    O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
    O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
    O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    O23 - Service: AOL Spyware Protection Service (AOLService) - Unknown owner - C:\Program Files\Common Files\AOL\AOL Spyware Protection\aolserv.exe
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
    O23 - Service: Giga Pocket Hardware Detector - Sony Corporation - C:\Program Files\Sony\Giga Pocket\shwserv.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
    O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
    O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
    O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    O23 - Service: Sony TV Tuner Controller - Sony Corporation - C:\Program Files\Sony\Giga Pocket\halsv.exe
    O23 - Service: Sony TV Tuner Manager - Sony Corporation - C:\Program Files\Sony\Giga Pocket\RM_SV.exe
    O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
    O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
    O23 - Service: VAIO Entertainment Aggregation and Control Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzRs\VzRs.exe
    O23 - Service: VAIO Entertainment File Import Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzCdb\VzFw.exe
    O23 - Service: VAIO Entertainment TV Device Arbitration Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VzCs\VzHardwareResourceManager\VzHardwareResourceManager.exe
    O23 - Service: VAIO Entertainment UPnP Client Adapter - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Entertainment\VCSW\VCSW.exe
    O23 - Service: VAIO Media Integrated Server (VAIOMediaPlatform-IntegratedServer-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\VMISrv.exe
    O23 - Service: VAIO Media Integrated Server (HTTP) (VAIOMediaPlatform-IntegratedServer-HTTP) - Unknown owner - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe" /Service=VAIOMediaPlatform-IntegratedServer-HTTP /RegRoot="SOFTWARE\Sony Corporation\VAIO Media Platform\2.0" /RegExt="Applications\IntegratedServer\HTTP (file missing)
    O23 - Service: VAIO Media Integrated Server (UPnP) (VAIOMediaPlatform-IntegratedServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
    O23 - Service: VAIO Media Gateway Server (VAIOMediaPlatform-Mobile-Gateway) - Unknown owner - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\VmGateway.exe" /Service=VAIOMediaPlatform-Mobile-Gateway /RegRoot="SOFTWARE\Sony Corporation\VAIO Media Platform\2.0" /RegExt="\Addons\Packages\Mobile\Gateway" /DisplayName="VAIO Media Gateway Server (file missing)
    O23 - Service: VAIO Media Video Server (VAIOMediaPlatform-VideoServer-AppServer) - Unknown owner - C:\Program Files\Sony\VAIO Media Integrated Server\Video\GPVSvr.exe" /Service=VAIOMediaPlatform-VideoServer-AppServer /DisplayName="VAIO Media Video Server (file missing)
    O23 - Service: VAIO Media Video Server (HTTP) (VAIOMediaPlatform-VideoServer-HTTP) - Unknown owner - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe" /Service=VAIOMediaPlatform-VideoServer-HTTP /RegRoot="SOFTWARE\Sony Corporation\VAIO Media Platform\2.0" /RegExt="\Applications\VideoServer\HTTP (file missing)
    O23 - Service: VAIO Media Video Server (UPnP) (VAIOMediaPlatform-VideoServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
  • TroganTrogan London, UK
    edited June 2006
    Let me know if you use PartPoker and WeatherBug please.
    Could you let me know about the above please.

    How are things now?
  • edited June 2006
    My program (perr guardian) still blocks the offer optimizer address but it seemd it only happens when im on myspace. other than that i have not recieved anymore pop ups.. I do not use weather bug but i use accuweather for firefox and i also used to play aprty poker but i have not uninstalled it yet. Thank you once again for your time and helping me fix my computer :)
  • TroganTrogan London, UK
    edited June 2006
    Your welcome! Looks like everything is back to normal. :cheers:

    I'l mark this resolved. If you need help again, just start a new thread. :)
This discussion has been closed.