Sarah's thread

edited October 2006 in Hardware
Hi i am also experiencing a skipping audio on my laptop and was wondering if you could help. Here is my HJT log
Logfile of HijackThis v1.99.1
Scan saved at 22:08:41, on 25/10/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\Explorer.EXE
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\Messenger\msmsgs.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\ISafe.exe
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
C:\Program Files\Network Associates\VirusScan\vstskmgr.exe
C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\VetMsg.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgwb.dat
C:\Program Files\iTunes\iTunes.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.euro.dell.com/countries/uk/enu/gen/default.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.cardiff.ac.uk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.euro.dell.com/countries/uk/enu/gen/default.htm
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.euro.dell.com/countries/uk/enu/gen/default.htm
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = wmplayer.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Tiscali 10.0
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [SsAAD.exe] C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmatch.com/mmz/openWebRadio.html (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O15 - Trusted Zone: http://Download.Windowsupdate.com
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by108fd.bay108.hotmail.msn.com/resources/MsnPUpld.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: CAISafe - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\ISafe.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\mcshield.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\vstskmgr.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
O23 - Service: VET Message Service (VETMSGNT) - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\VetMsg.exe

i look foward to hearing from you

Sarah x

Comments

  • jmoney3457jmoney3457 Maine
    edited October 2006
    hi sarah i have moved you into your own thread, for future reference please start your own topic..see here for details-->http://www.short-media.com/forum/showthread.php?t=51013 and also please do the following...First download ewido anti-spyware from HERE and save that file to your desktop.
    1. Once you have downloaded ewido anti-spyware, locate the icon on the desktop and double-click it to launch the set up program.
    2. Once the setup is complete you will need to run ewido and update the definition files.
    3. On the main screen select the "Update" icon then click "Start Update". The update will start and a progress bar will show the updates being installed.
    4. Once the update has completed select the "Scanner" icon at the top of the screen, then select the "Settings" tab.
    5. Once in the Settings screen click on "Recommended actions" and then select "Quarantine".
    6. Under "Reports"
      • Select "Automatically generate report after every scan"
      • Un-Select "Only if threats were found"
    Close ewido anti-spyware and reboot your computer into Safe Mode.
    1. Lauch ewido-anti-spyware by double-clicking the icon on your desktop.
      IMPORTANT: Do not open any other windows or programs while ewido is scanning, it may interfere with the scanning proccess.
    2. Select the "Scanner" icon at the top and then the "Scan" tab then click on "Complete System Scan"
    3. Ewido will now begin the scanning process, be patient this may take a little time.
    4. Ewido will list any infections found on the left hand side. When the scan has finished, it should automatically set the recommended action to Quarantine--if not click on Recommended Action and set it there. Click the Apply all actions button. Ewido will display "All actions have been applied" on the right hand side.
    5. Click on "Save Report", then "Save Report As". This will create a text file. Make sure you know where to find this file again (like on the Desktop).
    6. Close ewido & post that report here
  • edited October 2006
    Here is my
    report.
    AVG Anti-Spyware - Scan Report

    + Created at: 12:38:09 26/10/2006

    + Scan result:



    :mozilla.451:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
    :mozilla.293:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.414:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.442:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.686:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.687:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.689:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.691:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.699:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.81:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.820:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.82:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.838:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.83:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.84:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.85:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.86:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.87:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.88:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.181:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
    :mozilla.182:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
    :mozilla.654:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.
    :mozilla.656:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.
    :mozilla.228:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.229:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.230:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.231:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.232:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.233:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.371:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.89:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
    :mozilla.90:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
    :mozilla.264:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.265:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.266:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.267:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.268:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.257:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adviva : Cleaned.
    :mozilla.19:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
    C:\Documents and Settings\Sarah FitzGerald\Cookies\sarah [email]fitzgerald@atdmt[2].txt[/email] -> TrackingCookie.Atdmt : Cleaned.
    :mozilla.809:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
    :mozilla.806:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
    :mozilla.188:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.381:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Clickhype : Cleaned.
    :mozilla.781:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Com : Cleaned.
    :mozilla.782:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Com : Cleaned.
    :mozilla.246:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Coremetrics : Cleaned.
    :mozilla.44:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
    C:\Documents and Settings\Sarah FitzGerald\Cookies\sarah [email]fitzgerald@doubleclick[1].txt[/email] -> TrackingCookie.Doubleclick : Cleaned.
    :mozilla.763:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
    :mozilla.768:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
    :mozilla.771:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
    :mozilla.777:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
    :mozilla.240:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Etracker : Cleaned.
    :mozilla.429:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
    :mozilla.430:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
    :mozilla.234:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.235:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.236:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.237:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.238:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.276:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
    :mozilla.110:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
    :mozilla.78:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
    :mozilla.356:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
    :mozilla.357:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
    :mozilla.358:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
    :mozilla.363:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
    :mozilla.364:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
    :mozilla.92:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Ivwbox : Cleaned.
    :mozilla.851:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
    :mozilla.852:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
    :mozilla.70:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
    :mozilla.385:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
    :mozilla.97:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
    :mozilla.98:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
    :mozilla.367:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    :mozilla.368:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    :mozilla.369:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    :mozilla.370:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    :mozilla.440:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Quarterserver : Cleaned.
    :mozilla.67:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
    :mozilla.68:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
    :mozilla.69:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
    C:\Documents and Settings\Sarah FitzGerald\Cookies\sarah [email]fitzgerald@questionmarket[2].txt[/email] -> TrackingCookie.Questionmarket : Cleaned.
    :mozilla.397:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Revenue : Cleaned.
    :mozilla.123:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.124:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.125:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.126:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.127:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.128:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    C:\Documents and Settings\Sarah FitzGerald\Cookies\sarah [email]fitzgerald@serving-sys[1].txt[/email] -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.688:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
    :mozilla.700:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
    :mozilla.723:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
    :mozilla.724:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
    :mozilla.738:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
    :mozilla.366:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
    :mozilla.296:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.297:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.298:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.299:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.184:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.186:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.275:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
    :mozilla.404:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
    :mozilla.163:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
    :mozilla.164:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
    :mozilla.785:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
    :mozilla.787:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
    :mozilla.796:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
    :mozilla.198:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.199:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.200:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.201:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.202:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.204:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.205:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.360:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.


    ::Report end
  • edited October 2006
    hey sorry in my eagerness i carried out the first scan before entering safe mode here is the report from the safe mode scan:
    AVG Anti-Spyware - Scan Report

    + Created at: 17:15:57 26/10/2006

    + Scan result:



    :mozilla.466:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
    :mozilla.110:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.111:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.112:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.113:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.114:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.115:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.116:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.117:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.313:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.429:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.457:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.701:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.702:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.704:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.706:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.714:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.835:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.853:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.206:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
    :mozilla.207:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
    :mozilla.669:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.
    :mozilla.671:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.
    :mozilla.253:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.254:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.255:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.256:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.257:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.258:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.387:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.118:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
    :mozilla.119:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
    :mozilla.284:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.285:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.286:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.287:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.288:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.277:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Adviva : Cleaned.
    :mozilla.53:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
    :mozilla.824:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
    :mozilla.821:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
    :mozilla.213:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.397:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Clickhype : Cleaned.
    :mozilla.796:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Com : Cleaned.
    :mozilla.797:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Com : Cleaned.
    :mozilla.266:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Coremetrics : Cleaned.
    :mozilla.28:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
    :mozilla.778:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
    :mozilla.783:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
    :mozilla.786:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
    :mozilla.792:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
    :mozilla.260:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Etracker : Cleaned.
    :mozilla.444:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
    :mozilla.445:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
    :mozilla.10:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.11:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.12:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.13:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.14:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.15:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.16:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
    :mozilla.296:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
    :mozilla.107:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
    :mozilla.137:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
    :mozilla.376:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
    :mozilla.377:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
    :mozilla.378:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
    :mozilla.383:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
    :mozilla.384:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
    :mozilla.121:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Ivwbox : Cleaned.
    :mozilla.866:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
    :mozilla.867:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
    :mozilla.100:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
    :mozilla.401:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
    :mozilla.42:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
    :mozilla.43:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
    :mozilla.29:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    :mozilla.30:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    :mozilla.31:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    :mozilla.32:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    :mozilla.455:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Quarterserver : Cleaned.
    :mozilla.97:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
    :mozilla.98:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
    :mozilla.99:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
    :mozilla.413:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Revenue : Cleaned.
    :mozilla.148:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.149:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.150:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.151:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.152:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.153:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.703:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
    :mozilla.715:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
    :mozilla.738:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
    :mozilla.739:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
    :mozilla.753:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
    :mozilla.386:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
    :mozilla.316:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.317:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.318:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.319:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.209:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.211:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.295:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
    :mozilla.17:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
    :mozilla.188:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
    :mozilla.189:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
    :mozilla.800:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
    :mozilla.802:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
    :mozilla.811:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
    :mozilla.223:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.224:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.225:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.226:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.227:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.229:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.230:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.380:C:\Documents and Settings\Sarah FitzGerald\Application Data\Mozilla\Firefox\Profiles\u1zt7s7e.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.


    ::Report end
  • jmoney3457jmoney3457 Maine
    edited October 2006
    no problem nothing serious just cookies, please post new HJT log
  • edited October 2006
    Here is my new HJT log:

    Logfile of HijackThis v1.99.1
    Scan saved at 13:16:49, on 27/10/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\LEXBCES.EXE
    C:\WINDOWS\system32\LEXPPS.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\ISafe.exe
    C:\WINDOWS\system32\CTsvcCDA.EXE
    C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
    C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\WINDOWS\System32\keyhook.exe
    C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
    C:\Program Files\Real\RealPlayer\RealPlay.exe
    C:\Program Files\Dell\Media Experience\PCMService.exe
    C:\Program Files\Common Files\Network Associates\TalkBack\tbmon.exe
    C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
    C:\WINDOWS\system32\dla\tfswctrl.exe
    C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVRID.exe
    C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVTray.exe
    C:\Program Files\Apoint\Apoint.exe
    C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
    C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
    C:\WINDOWS\AGRSMMSG.exe
    C:\Program Files\MSN Messenger\MsnMsgr.Exe
    C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
    C:\Program Files\Skype\Phone\Skype.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
    C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe
    C:\Program Files\AOL 9.0\aoltray.exe
    C:\WINDOWS\SYSTEM32\sistray.exe
    C:\Program Files\Apoint\Apntex.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
    C:\Program Files\Java\jre1.5.0_06\bin\jucheck.exe
    C:\WINDOWS\explorer.exe
    C:\Program Files\Hijackthis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.euro.dell.com/countries/uk/enu/gen/default.htm
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.cardiff.ac.uk/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.euro.dell.com/countries/uk/enu/gen/default.htm
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.euro.dell.com/countries/uk/enu/gen/default.htm
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = wmplayer.exe
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Tiscali 10.0
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
    O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
    O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
    O4 - HKLM\..\Run: [VirusScan] c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
    O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [SiS Windows KeyHook] C:\WINDOWS\System32\keyhook.exe
    O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
    O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
    O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
    O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Program Files\Common Files\Network Associates\TalkBack\tbmon.exe"
    O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
    O4 - HKLM\..\Run: [CAVRID] "C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVRID.exe"
    O4 - HKLM\..\Run: [CaAvTray] "C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVTray.exe"
    O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
    O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
    O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
    O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [SsAAD.exe] C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
    O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [Creative Detector] "C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe" /R
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe
    O4 - Global Startup: AOL 9.0 Tray Icon.lnk = C:\Program Files\AOL 9.0\aoltray.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
    O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\SYSTEM32\sistray.exe
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
    O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmatch.com/mmz/openWebRadio.html (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O15 - Trusted Zone: http://Download.Windowsupdate.com
    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by108fd.bay108.hotmail.msn.com/resources/MsnPUpld.cab
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    O23 - Service: CAISafe - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\ISafe.exe
    O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
    O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
    O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\mcshield.exe
    O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\vstskmgr.exe
    O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
    O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
    O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
    O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
    O23 - Service: VET Message Service (VETMSGNT) - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\VetMsg.exe
  • jmoney3457jmoney3457 Maine
    edited October 2006
    Please download/run this tool-->http://www.xblock.com/download/xclean_micro.exe it will scan for spyware alphanumerically and if/when it detects something a prompt box will come up asking you to remove or ignore obviously choose remove then once the scan is done it will NOT produce a log so don't worry about posting one just try and note some of the things it removes and list them in your next reply (if possible) and reboot when it asks you to and also return with a fresh HJT log
  • edited October 2006
    Here is what X Block removed from my laptop:
    Detected BonziBuddy:
    CLSIDs (1) :
    {065e6fd4-1bf9-11d2-bae8-00104b9e0792}

    Registry Keys (2) :
    HKEY_CLASSES_ROOT\interface\{065e6fd4-1bf9-11d2-bae8-00104b9e0792}
    HKEY_LOCAL_MACHINE\Software\Classes\Interface\{065e6fd4-1bf9-11d2-bae8-00104b9e0792}

    Detected CoolWebSearch:
    CLSIDs (1) :
    {00000000-0000-0000-0000-000000000000}

    Registry Keys (1) :
    HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-0000-0000-0000-000000000000}

    Detected WhenU-UControl:
    CLSIDs (1) :
    {c831c7c9-e46c-45f2-b44e-b7f72e2a9a1d}

    Registry Keys (2) :
    HKEY_LOCAL_MACHINE\Software\CLASSES\CLSID\{c831c7c9-e46c-45f2-b44e-b7f72e2a9a1d}
    HKEY_CLASSES_ROOT\CLSID\{c831c7c9-e46c-45f2-b44e-b7f72e2a9a1d}

    And here is my new HJT Log:
    Logfile of HijackThis v1.99.1
    Scan saved at 20:06:38, on 28/10/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\LEXBCES.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\LEXPPS.EXE
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
    C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
    C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe
    C:\WINDOWS\System32\keyhook.exe
    C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
    C:\Program Files\Real\RealPlayer\RealPlay.exe
    C:\Program Files\Dell\Media Experience\PCMService.exe
    C:\Program Files\Common Files\Network Associates\TalkBack\tbmon.exe
    C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
    C:\WINDOWS\system32\dla\tfswctrl.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVRID.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVTray.exe
    C:\Program Files\Apoint\Apoint.exe
    C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
    C:\WINDOWS\AGRSMMSG.exe
    C:\Program Files\MSN Messenger\MsnMsgr.Exe
    C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
    C:\Program Files\Skype\Phone\Skype.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
    C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe
    C:\Program Files\Apoint\Apntex.exe
    C:\Program Files\AOL 9.0\aoltray.exe
    C:\WINDOWS\SYSTEM32\sistray.exe
    C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\ISafe.exe
    C:\WINDOWS\system32\CTsvcCDA.EXE
    C:\Program Files\Network Associates\VirusScan\vstskmgr.exe
    C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\VetMsg.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Hijackthis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.euro.dell.com/countries/uk/enu/gen/default.htm
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.cardiff.ac.uk/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.euro.dell.com/countries/uk/enu/gen/default.htm
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.euro.dell.com/countries/uk/enu/gen/default.htm
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = wmplayer.exe
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Tiscali 10.0
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
    O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
    O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
    O4 - HKLM\..\Run: [VirusScan] c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
    O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe"
    O4 - HKLM\..\Run: [SiS Windows KeyHook] C:\WINDOWS\System32\keyhook.exe
    O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
    O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
    O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
    O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Program Files\Common Files\Network Associates\TalkBack\tbmon.exe"
    O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
    O4 - HKLM\..\Run: [CAVRID] "C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVRID.exe"
    O4 - HKLM\..\Run: [CaAvTray] "C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVTray.exe"
    O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
    O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
    O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
    O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [SsAAD.exe] C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
    O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [Creative Detector] "C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe" /R
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe
    O4 - Global Startup: AOL 9.0 Tray Icon.lnk = C:\Program Files\AOL 9.0\aoltray.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
    O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\SYSTEM32\sistray.exe
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
    O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmatch.com/mmz/openWebRadio.html (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O15 - Trusted Zone: http://Download.Windowsupdate.com
    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by108fd.bay108.hotmail.msn.com/resources/MsnPUpld.cab
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    O23 - Service: CAISafe - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\ISafe.exe
    O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
    O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
    O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\mcshield.exe
    O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\vstskmgr.exe
    O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
    O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
    O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
    O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
    O23 - Service: VET Message Service (VETMSGNT) - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\VetMsg.exe
  • jmoney3457jmoney3457 Maine
    edited October 2006
    Please run the BitDefender online scan from here; http://www.bitdefender.com/scan8/ie.html
    You will need to allow an active x install for the scan to run.
    Leave the scanning options at default and press "click here to scan"
    When finished scanning, click on "click here to export the scan report"
    Save it to your desktop, at "file name" type in "bdscan" then click save.
    Please zip the bdscan.html file then attach the bdscan.html file to your next post along with a new hijackthis log
  • edited October 2006
    I ran Bit Defender which did not find any problems on my computer. Here is the new HJT scan anyway
    Logfile of HijackThis v1.99.1
    Scan saved at 18:44:34, on 29/10/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\LEXBCES.EXE
    C:\WINDOWS\system32\LEXPPS.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
    C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe
    C:\WINDOWS\System32\keyhook.exe
    C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
    C:\Program Files\Real\RealPlayer\RealPlay.exe
    C:\Program Files\Dell\Media Experience\PCMService.exe
    C:\Program Files\Common Files\Network Associates\TalkBack\tbmon.exe
    C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    C:\WINDOWS\system32\dla\tfswctrl.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVRID.exe
    C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVTray.exe
    C:\Program Files\Apoint\Apoint.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
    C:\WINDOWS\AGRSMMSG.exe
    C:\Program Files\MSN Messenger\MsnMsgr.Exe
    C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
    C:\Program Files\Skype\Phone\Skype.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
    C:\Program Files\Apoint\Apntex.exe
    C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe
    C:\WINDOWS\system32\CTsvcCDA.EXE
    C:\Program Files\AOL 9.0\aoltray.exe
    C:\WINDOWS\SYSTEM32\sistray.exe
    C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\WINDOWS\System32\svchost.exe
    C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
    C:\Program Files\Hijackthis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.euro.dell.com/countries/uk/enu/gen/default.htm
    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.cardiff.ac.uk/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.euro.dell.com/countries/uk/enu/gen/default.htm
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.euro.dell.com/countries/uk/enu/gen/default.htm
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = wmplayer.exe
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Tiscali 10.0
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
    O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
    O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
    O4 - HKLM\..\Run: [VirusScan] c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
    O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe"
    O4 - HKLM\..\Run: [SiS Windows KeyHook] C:\WINDOWS\System32\keyhook.exe
    O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
    O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
    O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
    O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Program Files\Common Files\Network Associates\TalkBack\tbmon.exe"
    O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
    O4 - HKLM\..\Run: [CAVRID] "C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVRID.exe"
    O4 - HKLM\..\Run: [CaAvTray] "C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVTray.exe"
    O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
    O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
    O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
    O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [SsAAD.exe] C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
    O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [Creative Detector] "C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe" /R
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe
    O4 - Global Startup: AOL 9.0 Tray Icon.lnk = C:\Program Files\AOL 9.0\aoltray.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
    O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\SYSTEM32\sistray.exe
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
    O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmatch.com/mmz/openWebRadio.html (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O15 - Trusted Zone: http://Download.Windowsupdate.com
    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by108fd.bay108.hotmail.msn.com/resources/MsnPUpld.cab
    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    O23 - Service: CAISafe - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\ISafe.exe
    O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
    O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
    O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\mcshield.exe
    O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\vstskmgr.exe
    O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
    O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
    O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
    O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
    O23 - Service: VET Message Service (VETMSGNT) - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\VetMsg.exe
  • jmoney3457jmoney3457 Maine
    edited October 2006
    open hijackthis click do a system scan only and put a check next to the following entries R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.cardiff.ac.uk/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.euro.dell.com/countries/u...en/default.htm
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.euro.dell.com/countries/u...en/default.htm
    O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
    now close ALL open windows except HJT and click fix checked reboot and post new hjt log and besides those I don't see anything else..it could be a hard/software issue ..after this would you like me to move your thread into the windows forum where they'll be able to help you more?
  • edited October 2006
    Here is my new HJT log. Thanks for all your help if you could move my thread to a windows forum where I would receive more help tha would be great. Thanks again for all your help
    Logfile of HijackThis v1.99.1
    Scan saved at 21:21:57, on 30/10/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\LEXBCES.EXE
    C:\WINDOWS\system32\LEXPPS.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
    C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
    C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe
    C:\WINDOWS\System32\keyhook.exe
    C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
    C:\Program Files\Real\RealPlayer\RealPlay.exe
    C:\Program Files\Dell\Media Experience\PCMService.exe
    C:\Program Files\Common Files\Network Associates\TalkBack\tbmon.exe
    C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
    C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    C:\WINDOWS\system32\dla\tfswctrl.exe
    C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVRID.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVTray.exe
    C:\Program Files\Apoint\Apoint.exe
    C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
    C:\WINDOWS\AGRSMMSG.exe
    C:\Program Files\MSN Messenger\MsnMsgr.Exe
    C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
    C:\Program Files\Skype\Phone\Skype.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
    C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe
    C:\Program Files\AOL 9.0\aoltray.exe
    C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\ISafe.exe
    C:\Program Files\Apoint\Apntex.exe
    C:\WINDOWS\SYSTEM32\sistray.exe
    C:\WINDOWS\system32\CTsvcCDA.EXE
    C:\Program Files\Network Associates\VirusScan\mcshield.exe
    C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\autodown.exe
    C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\VetMsg.exe
    C:\Program Files\Hijackthis\HijackThis.exe
    C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
    C:\WINDOWS\system32\wuauclt.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.euro.dell.com/countries/uk/enu/gen/default.htm
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = wmplayer.exe
    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Tiscali 10.0
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
    O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
    O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
    O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
    O4 - HKLM\..\Run: [VirusScan] c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
    O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe"
    O4 - HKLM\..\Run: [SiS Windows KeyHook] C:\WINDOWS\System32\keyhook.exe
    O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
    O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
    O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
    O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Program Files\Common Files\Network Associates\TalkBack\tbmon.exe"
    O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
    O4 - HKLM\..\Run: [CAVRID] "C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVRID.exe"
    O4 - HKLM\..\Run: [CaAvTray] "C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\CAVTray.exe"
    O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
    O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
    O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
    O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [SsAAD.exe] C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
    O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [Creative Detector] "C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe" /R
    O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe
    O4 - Global Startup: AOL 9.0 Tray Icon.lnk = C:\Program Files\AOL 9.0\aoltray.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
    O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\SYSTEM32\sistray.exe
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\ssv.dll
    O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
    O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
    O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmatch.com/mmz/openWebRadio.html (file missing)
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O15 - Trusted Zone: http://Download.Windowsupdate.com
    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by108fd.bay108.hotmail.msn.com/resources/MsnPUpld.cab
    O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
    O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    O23 - Service: CAISafe - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\ISafe.exe
    O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
    O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
    O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\mcshield.exe
    O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\vstskmgr.exe
    O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
    O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
    O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
    O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
    O23 - Service: VET Message Service (VETMSGNT) - Computer Associates International, Inc. - C:\Program Files\CA\eTrust Internet Security Suite\eTrust EZ Antivirus\VetMsg.exe
  • jmoney3457jmoney3457 Maine
    edited October 2006
    your welcome :) heres few tips on cleanup/prevention...Now that you are clean, please follow these simple steps in order to keep your computer clean and secure:
    1. Disable and Enable System Restore. - If you are using Windows ME or XP then you should disable and re-enable system restore to make sure there are no infected files found in a restore point.

      You can find instructions on how to enable and reenable system restore here:

      Managing Windows Millenium System Restore

      or

      Windows XP System Restore Guide

      Re-enable system restore with instructions from tutorial above
      Next,

      This process will clean out your Temp files and your Temporary Internet Files. Please do both steps:

      Step 1: Delete Temp Files
      To clean out your temp files, click on Start and then run, and type %temp% and press the ok button.

      This should open up the temp directory that your machine uses. Please delete all files that are found there. If you get an error when deleting a file, skip that file and delete all the others. If you had trouble deleting a file, reboot into Safe Mode and follow this step again. You should now be able to delete all the files.

      Step 2: Delete Temporary Internet Files
      Now I want you to open up Internet Explorer, and click on the Tools menu and then Internet Options. At the General tab, which should be the first tab you are currently on, click on the Delete Files button and put a checkmark in Delete offline content. Then press the OK button. This may take quite a while, so do not be alarmed with how long it takes. When it is done, your Temporary Internet Files will now be deleted.

    2. Make your Internet Explorer more secure - This can be done by following these simple instructions:
      1. From within Internet Explorer click on the Tools menu and then click on Options.
      2. Click once on the Security tab
      3. Click once on the Internet icon so it becomes highlighted.
      4. Click once on the Custom Level button.
        1. Change the Download signed ActiveX controls to Prompt
        2. Change the Download unsigned ActiveX controls to Disable
        3. Change the Initialize and script ActiveX controls not marked as safe to Disable
        4. Change the Installation of desktop items to Prompt
        5. Change the Launching programs and files in an IFRAME to Prompt
        6. Change the Navigate sub-frames across different domains to Prompt
        7. When all these settings have been made, click on the OK button.
        8. If it prompts you as to whether or not you want to save the settings, press the Yes button.
      5. Next press the Apply button and then the OK to exit the Internet Properties page.
    3. Use an AntiVirus Software - It is very important that your computer has an anti-virus software running on your machine. This alone can save you a lot of trouble with malware in the future.

      See this link for a listing of some online & their stand-alone antivirus programs:

      Virus, Spyware, and Malware Protection and Removal Resources

    4. Update your AntiVirus Software - It is imperitive that you update your Antivirus software at least once a week (Even more if you wish). If you do not update your antivirus software then it will not be able to catch any of the new variants that may come out.

    5. Use a Firewall - I can not stress how important it is that you use a Firewall on your computer. Without a firewall your computer is succeptible to being hacked and taken over. I am very serious about this and see it happen almost every day with my clients. Simply using a Firewall in its default configuration can lower your risk greatly.

      For a tutorial on Firewalls and a listing of some available ones see the link below:

      Understanding and Using Firewalls

    6. Visit Microsoft's Windows Update Site Frequently - It is important that you visit http://www.windowsupdate.com regularly. This will ensure your computer has always the latest security updates available installed on your computer. If there are new updates to install, install them immediately, reboot your computer, and revisit the site until there are no more critical updates.

    7. Install Spybot - Search and Destroy - Install and download Spybot - Search and Destroy with its TeaTimer option. This will provide realtime spyware & hijacker protection on your computer alongside your virus protection. You should also scan your computer with program on a regular basis just as you would an antivirus software.

      A tutorial on installing & using this product can be found here:

      Using Spybot - Search & Destroy to remove Spyware , Malware, and Hijackers

    8. Install Ad-Aware - Install and download Ad-Aware. ou should also scan your computer with program on a regular basis just as you would an antivirus software in conjunction with Spybot.

      A tutorial on installing & using this product can be found here:

      Using Ad-aware to remove Spyware, Malware, & Hijackers from Your Computer

    9. Install SpywareBlaster - SpywareBlaster will added a large list of programs and sites into your Internet Explorer settings that will protect you from running and downloading known malicious programs.

      A tutorial on installing & using this product can be found here:

      Using SpywareBlaster to protect your computer from Spyware and Malware

    10. Update all these programs regularly - Make sure you update all the programs I have listed regularly. Without regular updates you WILL NOT be protected when new malicious programs are released.
    Follow this list and your potential for being infected again will reduce dramatically.

    here are some additional utilities that will enhance your safety
    • IE/Spyad <= IE/Spyad places over 4000 websites and domains in the IE Restricted list which will severely impair attempts to infect your system. It basically prevents any downloads (Cookies etc) from the sites listed, although you will still be able to connect to the sites.
    • MVPS Hosts file <= The MVPS Hosts file replaces your current HOSTS file with one containing well know ad sites etc. Basically, this prevents your coputer from connecting to those sites by redirecting them to 127.0.0.1 which is your local computer
    • Google Toolbar <= Get the free google toolbar to help stop pop up windows.
    • Winpatrol <= Download and install the free version of Winpatrol. a tutorial for this product is located here:
      Using Winpatrol to protect your computer from malicious software
    Hide System Files
    1. Click Start.
    2. Open My Computer.
    3. Select Tools menu
    4. Click Folder Options.
    5. Select the View Tab.
    6. Uncheck Show hidden files and foldersin the Hidden files and folders section.
    7. Select Hide protected operating system files (recommended) option.
    8. Check the Hide file extensions for known file types option.
    9. Click Yes.
    10. Click OK.
    and now ill move your thread to the windows forum:thumbsup:
  • jmoney3457jmoney3457 Maine
    edited October 2006
    could 1 of the windows expert help this nice person out? thanks!
Sign In or Register to comment.