WHEW with my fingers crossed it worked. looks like i picked up more spyware?
please dont ask me to do that panda scan again, because it did delete explorer.exe for some strange reason.
thanks for your time especially since my computer was really infected.
Incident Status Location
Spyware:Spyware/7r7t Not disinfected C:\a312anZ.exe
Spyware:Cookie/Target Not disinfected C:\Documents and Settings\Joanne\Application Data\Mozilla\Firefox\Profiles\oyfufmxk.default\cookies.txt[.target.com/]
Spyware:Cookie/Rightmedia Not disinfected C:\Documents and Settings\Joanne\Application Data\Mozilla\Firefox\Profiles\oyfufmxk.default\cookies.txt[rightmedia.net/]
Spyware:Cookie/Inet-Traffic Not disinfected C:\Documents and Settings\Joanne\Application Data\Mozilla\Firefox\Profiles\oyfufmxk.default\cookies.txt[.inet-traffic.com/]
Spyware:Cookie/bravenetA Not disinfected C:\Documents and Settings\Joanne\Application Data\Mozilla\Firefox\Profiles\oyfufmxk.default\cookies.txt[.bravenet.com/]
Spyware:Spyware/7r7t Not disinfected C:\Documents and Settings\Joanne\Local Settings\Temp\tool4_b2search.exe
Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies-1.txt[.realmedia.com/]
Spyware:Cookie/FastClick Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.fastclick.net/]
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.doubleclick.net/]
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.atdmt.com/]
Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.realmedia.com/]
Spyware:Cookie/QuestionMarket Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.questionmarket.com/]
Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.2o7.net/]
Spyware:Cookie/Statcounter Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.statcounter.com/]
Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[ad.yieldmanager.com/]
Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.advertising.com/]
Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.tribalfusion.com/]
Spyware:Cookie/Traffic Marketplace Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.trafficmp.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.casalemedia.com/]
Spyware:Cookie/bravenetA Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.bravenet.com/]
Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.go.com/]
Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.atwola.com/]
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Nick\Cookies\nick@atdmt[2].txt
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Nick\Cookies\nick@doubleclick[2].txt
Potentially unwanted tool:Application/Processor Not disinfected C:\Documents and Settings\Nick\Desktop\SmitfraudFix\Process.exe
Possible Virus. Not disinfected C:\Documents and Settings\Nick\Desktop\SmitfraudFix\swsc.exe
Adware:Adware/FlashTrack Not disinfected C:\Documents and Settings\Nick\Local Settings\Application Data\bp12.exe[f.bak]
Adware:Adware/FlashTrack Not disinfected C:\Documents and Settings\Nick\Local Settings\Application Data\bp12.exe[Flacpy_inst.exe][flacpy.exe]
Virus:Trj/Downloader.JFL Disinfected C:\Program Files\Microsoft AntiSpyware\DeactivatedItems\8F5DAEFA-7DE2-411B-8C03-19FC32.asq
Adware:Adware/Ucmore Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\09231C61-4ABF-4E47-94C8-8F4262\71420B90-A9DF-48E5-9A54-31A3B9
Adware:Adware/Ucmore Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\09231C61-4ABF-4E47-94C8-8F4262\D399F274-83F5-4640-A38C-486D39
Potentially unwanted tool:Application/Zango Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\77D1F4CF-0BC1-49CA-BBBF-EB4F28\006FFE89-137A-4C79-8D37-90ADD8
Adware:Adware/DelFinMedia Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\87803CCC-0ED5-4BA8-8CE1-2B5E84\FFF11E7C-543E-4A1E-AAA5-3A36C3
Adware:Adware/Ucmore Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\88CF18B1-6C46-4551-8DCE-81B391\18C3AE72-1B02-4499-BABC-25D130
Adware:Adware/Ucmore Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\88CF18B1-6C46-4551-8DCE-81B391\814A842F-35E0-4562-A5B3-C6A501
Adware:Adware/Ucmore Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\D14281F5-E54D-4DAA-8B85-CCAD1E\D90190F9-BC8D-4B6D-AE52-BA185E
Adware:Adware/Ucmore Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\D14281F5-E54D-4DAA-8B85-CCAD1E\F78D83FE-3C1F-4B86-A377-9395B6
Adware:Adware/Ucmore Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\F51A4168-C45B-46C7-BA5C-EC4407\453C82E1-29A6-49ED-8602-C13403
Adware:Adware/Ucmore Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\F51A4168-C45B-46C7-BA5C-EC4407\E00F8644-2628-44F4-B7D7-01D46E
Virus:Bck/Delf.ACV Disinfected C:\RECYCLER\S-1-5-21-4278643492-1549369083-2604307461-500\Dc3.exe
Adware:Adware/ISearch Not disinfected C:\WINDOWS\delprot.ini
Adware:adware/isearch Not disinfected C:\WINDOWS\deskbar.ini
Virus:W32/Admincash.B Disinfected C:\WINDOWS\explorer.exe
Spyware:Spyware/BetterInet Not disinfected C:\WINDOWS\INF\biini.inf
Adware:adware/exact.bargainbuddy Not disinfected C:\WINDOWS\msxct1.ini
Adware:Adware/ImGiant Not disinfected C:\WINDOWS\myurlff.exe
Virus:W32/Netsky.Z.worm Disinfected C:\WINDOWS\pk_zip1.log[C:\WINDOWS\pk_zip1.zip][Details.txt .exe]
Virus:W32/Netsky.Z.worm Disinfected C:\WINDOWS\pk_zip2.log[C:\WINDOWS\pk_zip2.zip][Notice.txt .exe]
Virus:W32/Netsky.Z.worm Disinfected C:\WINDOWS\pk_zip3.log[C:\WINDOWS\pk_zip3.zip][Important.txt .exe]
Virus:W32/Netsky.Z.worm Disinfected C:\WINDOWS\pk_zip4.log[C:\WINDOWS\pk_zip4.zip][Bill.txt .exe]
Virus:W32/Netsky.Z.worm Disinfected C:\WINDOWS\pk_zip5.log[C:\WINDOWS\pk_zip5.zip][Data.txt .exe]
Virus:W32/Netsky.Z.worm Disinfected C:\WINDOWS\pk_zip6.log[C:\WINDOWS\pk_zip6.zip][Part-2.txt .exe]
Virus:W32/Netsky.Z.worm Disinfected C:\WINDOWS\pk_zip7.log[C:\WINDOWS\pk_zip7.zip][Textfile.txt .exe]
Virus:W32/Netsky.Z.worm Disinfected C:\WINDOWS\pk_zip8.log[C:\WINDOWS\pk_zip8.zip][Informations.txt .exe]
Adware:adware/sidesearch Not disinfected C:\WINDOWS\sepsd.bin
Virus:Trj/SpyBot.AFG Disinfected C:\WINDOWS\SYSTEM32\BC.tmp
Virus:Trj/Agent.CVI Disinfected C:\WINDOWS\SYSTEM32\ert.dll
Spyware:Spyware/SafeSurf Not disinfected C:\WINDOWS\SYSTEM32\InstallerV3.exe
Spyware:Spyware/SafeSurf Not disinfected C:\WINDOWS\SYSTEM32\InstallerV4.exe
Spyware:Spyware/SafeSurf Not disinfected C:\WINDOWS\SYSTEM32\InstallerV5.exe[ExtractDLL.dll]
Virus:Trj/Gagar.AS Disinfected C:\WINDOWS\SYSTEM32\mukhecho.exe
Adware:Adware/BigTrafficNet Not disinfected C:\WINDOWS\SYSTEM32\nsx4ED.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\SYSTEM32\sigqcyrp.exe
Spyware:spyware/media-motor Not disinfected C:\WINDOWS\ubber60.ini
Spyware:spyware/adclicker Not disinfected C:\WINDOWS\usta33.ini
Logfile of HijackThis v1.99.1
Scan saved at 7:38:21 PM, on 11/1/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
come on, i dont want to play stump the spyware experts.
hockey please be patient, I know how irritating it is to be infected with useless malware but all of us spyware helpers volunteer our time on here we're NOT paid or anything of that, we do it because we like to help others out however we also have real lifes ie school, family, friends, etc and also like trog said help on other forums not just here..so please be patient and respectful with trogan
hockey please be patient, I know how irritating it is to be infected with useless malware but all of us spyware helpers volunteer our time on here we're NOT paid or anything of that, we do it because we like to help others out however we also have real lifes ie school, family, friends, etc and also like trog said help on other forums not just here..so please be patient and respectful with trogan
i wasnt trying to be an @ss... hard to be sarcastic on the net.
sry if i was being offensive.
i wasnt trying to be an @ss... hard to be sarcastic on the net.
sry if i was being offensive.
LOL sorry hockey bro my bad, it was early in the morn and my sense of humor and such were out the window then i shoulda caught on you were being sarcastic no worries:smiles:
HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a} -> Adware.Generic : Cleaned with backup (quarantined).
C:\Documents and Settings\Steve\Start Menu\Programs\ClockSync -> Adware.WhenU : Cleaned with backup (quarantined).
:mozilla.33:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.34:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.35:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.37:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.38:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.39:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.40:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.41:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Joanne\Cookies\joanne@2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.118:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.120:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.131:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.137:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.138:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.139:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.264:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.265:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.266:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.329:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.64:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.65:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.66:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.67:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.68:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.69:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.70:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.71:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.163:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.164:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.93:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.94:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.95:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.96:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.97:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.11:C:\Documents and Settings\Joanne\Application Data\Mozilla\Firefox\Profiles\oyfufmxk.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.42:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\Joanne\Cookies\joanne@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\Nick\Cookies\nick@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.102:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.210:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned.
:mozilla.144:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.341:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.342:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.121:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Clickhype : Cleaned.
:mozilla.155:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned.
:mozilla.156:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned.
:mozilla.157:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned.
:mozilla.158:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned.
:mozilla.23:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\Joanne\Cookies\joanne@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.87:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.88:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.89:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.90:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.141:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.145:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.146:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.147:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.148:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.405:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.149:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.150:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.152:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.166:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.167:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.168:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.169:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.170:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.237:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.316:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.317:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.107:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.119:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.190:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.103:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.104:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.105:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.106:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.43:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.44:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.45:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.180:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Revenue : Cleaned.
:mozilla.379:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.380:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.381:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.298:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.299:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.300:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.301:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.302:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.303:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.82:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.83:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.84:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.132:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.133:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.136:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.304:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.340:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.122:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.123:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.124:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.125:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.126:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.128:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.129:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.130:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.20:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.21:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.22:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.256:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
:mozilla.142:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.143:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.191:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.192:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.193:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Zedo : Cleaned.
C:\WINDOWS\SYSTEM32\clk.dll -> Trojan.Agent.fd : Cleaned with backup (quarantined).
::Report end
Logfile of HijackThis v1.99.1
Scan saved at 5:38:10 PM, on 11/5/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Comments
ima try repairing with a windows disc
please dont ask me to do that panda scan again, because it did delete explorer.exe for some strange reason.
thanks for your time especially since my computer was really infected.
Incident Status Location
Spyware:Spyware/7r7t Not disinfected C:\a312anZ.exe
Spyware:Cookie/Target Not disinfected C:\Documents and Settings\Joanne\Application Data\Mozilla\Firefox\Profiles\oyfufmxk.default\cookies.txt[.target.com/]
Spyware:Cookie/Rightmedia Not disinfected C:\Documents and Settings\Joanne\Application Data\Mozilla\Firefox\Profiles\oyfufmxk.default\cookies.txt[rightmedia.net/]
Spyware:Cookie/Inet-Traffic Not disinfected C:\Documents and Settings\Joanne\Application Data\Mozilla\Firefox\Profiles\oyfufmxk.default\cookies.txt[.inet-traffic.com/]
Spyware:Cookie/bravenetA Not disinfected C:\Documents and Settings\Joanne\Application Data\Mozilla\Firefox\Profiles\oyfufmxk.default\cookies.txt[.bravenet.com/]
Spyware:Spyware/7r7t Not disinfected C:\Documents and Settings\Joanne\Local Settings\Temp\tool4_b2search.exe
Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies-1.txt[.realmedia.com/]
Spyware:Cookie/FastClick Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.fastclick.net/]
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.doubleclick.net/]
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.atdmt.com/]
Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.realmedia.com/]
Spyware:Cookie/QuestionMarket Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.questionmarket.com/]
Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.2o7.net/]
Spyware:Cookie/Statcounter Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.statcounter.com/]
Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[ad.yieldmanager.com/]
Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.advertising.com/]
Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.tribalfusion.com/]
Spyware:Cookie/Traffic Marketplace Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.trafficmp.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.casalemedia.com/]
Spyware:Cookie/bravenetA Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.bravenet.com/]
Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.go.com/]
Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt[.atwola.com/]
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Nick\Cookies\nick@atdmt[2].txt
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Nick\Cookies\nick@doubleclick[2].txt
Potentially unwanted tool:Application/Processor Not disinfected C:\Documents and Settings\Nick\Desktop\SmitfraudFix\Process.exe
Possible Virus. Not disinfected C:\Documents and Settings\Nick\Desktop\SmitfraudFix\swsc.exe
Adware:Adware/FlashTrack Not disinfected C:\Documents and Settings\Nick\Local Settings\Application Data\bp12.exe[f.bak]
Adware:Adware/FlashTrack Not disinfected C:\Documents and Settings\Nick\Local Settings\Application Data\bp12.exe[Flacpy_inst.exe][flacpy.exe]
Virus:Trj/Downloader.JFL Disinfected C:\Program Files\Microsoft AntiSpyware\DeactivatedItems\8F5DAEFA-7DE2-411B-8C03-19FC32.asq
Adware:Adware/Ucmore Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\09231C61-4ABF-4E47-94C8-8F4262\71420B90-A9DF-48E5-9A54-31A3B9
Adware:Adware/Ucmore Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\09231C61-4ABF-4E47-94C8-8F4262\D399F274-83F5-4640-A38C-486D39
Potentially unwanted tool:Application/Zango Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\77D1F4CF-0BC1-49CA-BBBF-EB4F28\006FFE89-137A-4C79-8D37-90ADD8
Adware:Adware/DelFinMedia Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\87803CCC-0ED5-4BA8-8CE1-2B5E84\FFF11E7C-543E-4A1E-AAA5-3A36C3
Adware:Adware/Ucmore Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\88CF18B1-6C46-4551-8DCE-81B391\18C3AE72-1B02-4499-BABC-25D130
Adware:Adware/Ucmore Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\88CF18B1-6C46-4551-8DCE-81B391\814A842F-35E0-4562-A5B3-C6A501
Adware:Adware/Ucmore Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\D14281F5-E54D-4DAA-8B85-CCAD1E\D90190F9-BC8D-4B6D-AE52-BA185E
Adware:Adware/Ucmore Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\D14281F5-E54D-4DAA-8B85-CCAD1E\F78D83FE-3C1F-4B86-A377-9395B6
Adware:Adware/Ucmore Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\F51A4168-C45B-46C7-BA5C-EC4407\453C82E1-29A6-49ED-8602-C13403
Adware:Adware/Ucmore Not disinfected C:\Program Files\Microsoft AntiSpyware\Quarantine\F51A4168-C45B-46C7-BA5C-EC4407\E00F8644-2628-44F4-B7D7-01D46E
Virus:Bck/Delf.ACV Disinfected C:\RECYCLER\S-1-5-21-4278643492-1549369083-2604307461-500\Dc3.exe
Adware:Adware/ISearch Not disinfected C:\WINDOWS\delprot.ini
Adware:adware/isearch Not disinfected C:\WINDOWS\deskbar.ini
Virus:W32/Admincash.B Disinfected C:\WINDOWS\explorer.exe
Spyware:Spyware/BetterInet Not disinfected C:\WINDOWS\INF\biini.inf
Adware:adware/exact.bargainbuddy Not disinfected C:\WINDOWS\msxct1.ini
Adware:Adware/ImGiant Not disinfected C:\WINDOWS\myurlff.exe
Virus:W32/Netsky.Z.worm Disinfected C:\WINDOWS\pk_zip1.log[C:\WINDOWS\pk_zip1.zip][Details.txt .exe]
Virus:W32/Netsky.Z.worm Disinfected C:\WINDOWS\pk_zip2.log[C:\WINDOWS\pk_zip2.zip][Notice.txt .exe]
Virus:W32/Netsky.Z.worm Disinfected C:\WINDOWS\pk_zip3.log[C:\WINDOWS\pk_zip3.zip][Important.txt .exe]
Virus:W32/Netsky.Z.worm Disinfected C:\WINDOWS\pk_zip4.log[C:\WINDOWS\pk_zip4.zip][Bill.txt .exe]
Virus:W32/Netsky.Z.worm Disinfected C:\WINDOWS\pk_zip5.log[C:\WINDOWS\pk_zip5.zip][Data.txt .exe]
Virus:W32/Netsky.Z.worm Disinfected C:\WINDOWS\pk_zip6.log[C:\WINDOWS\pk_zip6.zip][Part-2.txt .exe]
Virus:W32/Netsky.Z.worm Disinfected C:\WINDOWS\pk_zip7.log[C:\WINDOWS\pk_zip7.zip][Textfile.txt .exe]
Virus:W32/Netsky.Z.worm Disinfected C:\WINDOWS\pk_zip8.log[C:\WINDOWS\pk_zip8.zip][Informations.txt .exe]
Adware:adware/sidesearch Not disinfected C:\WINDOWS\sepsd.bin
Virus:Trj/SpyBot.AFG Disinfected C:\WINDOWS\SYSTEM32\BC.tmp
Virus:Trj/Agent.CVI Disinfected C:\WINDOWS\SYSTEM32\ert.dll
Spyware:Spyware/SafeSurf Not disinfected C:\WINDOWS\SYSTEM32\InstallerV3.exe
Spyware:Spyware/SafeSurf Not disinfected C:\WINDOWS\SYSTEM32\InstallerV4.exe
Spyware:Spyware/SafeSurf Not disinfected C:\WINDOWS\SYSTEM32\InstallerV5.exe[ExtractDLL.dll]
Virus:Trj/Gagar.AS Disinfected C:\WINDOWS\SYSTEM32\mukhecho.exe
Adware:Adware/BigTrafficNet Not disinfected C:\WINDOWS\SYSTEM32\nsx4ED.dll
Spyware:Spyware/Virtumonde Not disinfected C:\WINDOWS\SYSTEM32\sigqcyrp.exe
Spyware:spyware/media-motor Not disinfected C:\WINDOWS\ubber60.ini
Spyware:spyware/adclicker Not disinfected C:\WINDOWS\usta33.ini
Logfile of HijackThis v1.99.1
Scan saved at 7:38:21 PM, on 11/1/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Autodesk\3dsMax8\mentalray\satellite\raysat_3dsmax8server.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\AIM\aim.exe
C:\WINDOWS\SYSTEM32\ZoneLabs\vsmon.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\BCMSMMSG.exe
C:\WINDOWS\System32\RUNDLL32.EXE
C:\Program Files\Logitech\MouseWare\system\em_exec.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\HJT\HJT.exe
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 66.98.238.8:3128
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [IMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [BCMSMMSG] BCMSMMSG.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: Bodog Poker - {F47C1DB5-ED21-4dc1-853E-D1495792D4C5} - C:\Program Files\Bodog Poker\BPGame.exe
O15 - ProtocolDefaults: 'http' protocol is in Trusted Zone, should be Internet Zone
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {CC32D4D8-2A0B-4CEB-B105-C9B968379105} (CGameManagerCtrl Object) - http://www.disney.go.com/games/downloads/gamemanager/DIGGameManager.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: kavsvc - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe
O23 - Service: RaySat_3dsmax8 Server (mi-raysat_3dsmax8) - Unknown owner - C:\Program Files\Autodesk\3dsMax8\mentalray\satellite\raysat_3dsmax8server.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\SYSTEM32\ZoneLabs\vsmon.exe
come on, i dont want to play stump the spyware experts.
_________________
- Update AVG Anti-Syware
- Next, print or save the following instructions and boot your computer into Safe Mode. Make sure you can view Hidden Files and Folders first.
- Once in Safe Mode, find and delete the following in RED, if present:
C:\Documents and Settings\Joanne\Local Settings\Temp\tool4_b2search.exe
C:\Documents and Settings\Nick\Local Settings\Application Data\bp12.exe
C:\a312anZ.exe
C:\WINDOWS\delprot.ini
C:\WINDOWS\deskbar.ini
C:\WINDOWS\INF\biini.inf
C:\WINDOWS\msxct1.ini
C:\WINDOWS\myurlff.exe
C:\WINDOWS\sepsd.bin
C:\WINDOWS\ubber60.ini
C:\WINDOWS\usta33.ini
C:\WINDOWS\SYSTEM32\InstallerV3.exe
C:\WINDOWS\SYSTEM32\InstallerV4.exe
C:\WINDOWS\SYSTEM32\InstallerV5.exe
C:\WINDOWS\SYSTEM32\nsx4ED.dll
C:\WINDOWS\SYSTEM32\sigqcyrp.exe
- Run a scan with AVG Anti-Spyware and save a log
- Reboot back into Normal Mode.
- Post a new HijackThis log, and the AVG AS log.
- Let me know how things are
sry if i was being offensive.
Let us know when you've done everything in my last post.
AVG Anti-Spyware - Scan Report
+ Created at: 5:34:01 PM 11/5/2006
+ Scan result:
HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a} -> Adware.Generic : Cleaned with backup (quarantined).
C:\Documents and Settings\Steve\Start Menu\Programs\ClockSync -> Adware.WhenU : Cleaned with backup (quarantined).
:mozilla.33:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.34:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.35:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.37:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.38:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.39:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.40:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.41:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Joanne\Cookies\joanne@2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.118:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.120:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.131:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.137:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.138:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.139:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.264:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.265:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.266:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.329:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.64:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.65:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.66:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.67:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.68:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.69:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.70:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.71:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.163:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.164:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.93:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.94:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.95:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.96:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.97:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.11:C:\Documents and Settings\Joanne\Application Data\Mozilla\Firefox\Profiles\oyfufmxk.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.42:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\Joanne\Cookies\joanne@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\Nick\Cookies\nick@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.102:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.210:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned.
:mozilla.144:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.341:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.342:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.121:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Clickhype : Cleaned.
:mozilla.155:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned.
:mozilla.156:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned.
:mozilla.157:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned.
:mozilla.158:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned.
:mozilla.23:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\Joanne\Cookies\joanne@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.87:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.88:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.89:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.90:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.141:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.145:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.146:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.147:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.148:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.405:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.149:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.150:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.152:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.166:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.167:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.168:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.169:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.170:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.237:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.316:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.317:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.107:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.119:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.190:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.103:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.104:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.105:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.106:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.43:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.44:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.45:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.180:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Revenue : Cleaned.
:mozilla.379:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.380:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.381:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.298:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.299:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.300:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.301:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.302:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.303:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.82:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.83:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.84:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.132:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.133:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.136:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.304:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.340:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.122:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.123:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.124:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.125:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.126:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.128:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.129:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.130:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.20:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.21:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.22:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.256:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
:mozilla.142:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.143:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.191:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.192:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.193:C:\Documents and Settings\Nick\Application Data\Mozilla\Firefox\Profiles\vvfah0y9.Default User\cookies.txt -> TrackingCookie.Zedo : Cleaned.
C:\WINDOWS\SYSTEM32\clk.dll -> Trojan.Agent.fd : Cleaned with backup (quarantined).
::Report end
Logfile of HijackThis v1.99.1
Scan saved at 5:38:10 PM, on 11/5/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Autodesk\3dsMax8\mentalray\satellite\raysat_3dsmax8server.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\SYSTEM32\ZoneLabs\vsmon.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\BCMSMMSG.exe
C:\WINDOWS\System32\RUNDLL32.EXE
C:\Program Files\Logitech\MouseWare\system\em_exec.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\HJT\HJT.exe
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = 66.98.238.8:3128
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [Zone Labs Client] C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [IMJPMIG8.1] "C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [IMEKRMIG6.1] C:\WINDOWS\ime\imkr6_1\IMEKRMIG.EXE
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\System32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [BCMSMMSG] BCMSMMSG.exe
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Bodog Poker - {F47C1DB5-ED21-4dc1-853E-D1495792D4C5} - C:\Program Files\Bodog Poker\BPGame.exe
O15 - ProtocolDefaults: 'http' protocol is in Trusted Zone, should be Internet Zone
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {CC32D4D8-2A0B-4CEB-B105-C9B968379105} (CGameManagerCtrl Object) - http://www.disney.go.com/games/downloads/gamemanager/DIGGameManager.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: kavsvc - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe
O23 - Service: RaySat_3dsmax8 Server (mi-raysat_3dsmax8) - Unknown owner - C:\Program Files\Autodesk\3dsMax8\mentalray\satellite\raysat_3dsmax8server.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\SYSTEM32\ZoneLabs\vsmon.exe