My computer has gotten Slow!
mikeysdabest
New York
Hi over the past weeks my computer has gotten slow and i would like to know if anyone can determine why here is the hijackthis log:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:38:16 AM, on 1/27/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\atiptaxx.exe
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
C:\Program Files\Analog Devices\SoundMAX\SMax4.exe
C:\Program Files\USB Disk Win98 Driver\Res.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\AIM6\aim6.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\Program Files\AIM6\aolsoftware.exe
C:\Program Files\AVG\AVG8\avgscanx.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRA~1\AVG\AVG8\aAvgApi.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://cgi.verizon.net/bookmarks/bmredir.asp?region=all&bw=dsl&cd=6.1&bm=ho_search
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://cgi.verizon.net/bookmarks/bmredir.asp?region=all&bw=dsl&cd=6.1&bm=ho_home
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Verizon Online
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1;*.local
R3 - URLSearchHook: AOLSearchHook Class - {54EB34EA-E6BE-4CFD-9F4F-C4A0C2EAFA22} - C:\Program Files\AIM Search\AOLSearch.dll
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)
O2 - BHO: AVG Safe Search - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: (no name) - {4E7BD74F-2B8D-469E-D0FC-E57AF4D5FA7D} - (no file)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: AOLSearchHook Class - {54EB34EA-E6BE-4CFD-9F4F-C4A0C2EAFA22} - C:\Program Files\AIM Search\AOLSearch.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: (no name) - {4E7BD74F-2B8D-469E-D0FC-E57AF4D5FA7D} - (no file)
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O4 - HKLM\..\Run: [AtiPTA] atiptaxx.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\SMax4.exe" /tray
O4 - HKLM\..\Run: [USB Storage Toolbox] C:\Program Files\USB Disk Win98 Driver\Res.EXE
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
--
End of file - 7073 bytes
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:38:16 AM, on 1/27/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\atiptaxx.exe
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
C:\Program Files\Analog Devices\SoundMAX\SMax4.exe
C:\Program Files\USB Disk Win98 Driver\Res.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\AIM6\aim6.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\Program Files\AIM6\aolsoftware.exe
C:\Program Files\AVG\AVG8\avgscanx.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRA~1\AVG\AVG8\aAvgApi.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://cgi.verizon.net/bookmarks/bmredir.asp?region=all&bw=dsl&cd=6.1&bm=ho_search
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://cgi.verizon.net/bookmarks/bmredir.asp?region=all&bw=dsl&cd=6.1&bm=ho_home
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Verizon Online
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1;*.local
R3 - URLSearchHook: AOLSearchHook Class - {54EB34EA-E6BE-4CFD-9F4F-C4A0C2EAFA22} - C:\Program Files\AIM Search\AOLSearch.dll
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)
O2 - BHO: AVG Safe Search - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: (no name) - {4E7BD74F-2B8D-469E-D0FC-E57AF4D5FA7D} - (no file)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: AOLSearchHook Class - {54EB34EA-E6BE-4CFD-9F4F-C4A0C2EAFA22} - C:\Program Files\AIM Search\AOLSearch.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: (no name) - {4E7BD74F-2B8D-469E-D0FC-E57AF4D5FA7D} - (no file)
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O4 - HKLM\..\Run: [AtiPTA] atiptaxx.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\SMax4.exe" /tray
O4 - HKLM\..\Run: [USB Storage Toolbox] C:\Program Files\USB Disk Win98 Driver\Res.EXE
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - AppInit_DLLs: avgrsstx.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
--
End of file - 7073 bytes
0
Comments
heres a updated log:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 7:03:24 AM, on 1/28/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\atiptaxx.exe
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
C:\Program Files\Analog Devices\SoundMAX\SMax4.exe
C:\Program Files\USB Disk Win98 Driver\Res.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\AIM6\aim6.exe
C:\Program Files\AIM6\aolsoftware.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://cgi.verizon.net/bookmarks/bmredir.asp?region=all&bw=dsl&cd=6.1&bm=ho_search
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://cgi.verizon.net/bookmarks/bmredir.asp?region=all&bw=dsl&cd=6.1&bm=ho_home
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Verizon Online
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1;*.local
R3 - URLSearchHook: AOLSearchHook Class - {54EB34EA-E6BE-4CFD-9F4F-C4A0C2EAFA22} - C:\Program Files\AIM Search\AOLSearch.dll
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)
O2 - BHO: AVG Safe Search - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: (no name) - {4E7BD74F-2B8D-469E-D0FC-E57AF4D5FA7D} - (no file)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: AOLSearchHook Class - {54EB34EA-E6BE-4CFD-9F4F-C4A0C2EAFA22} - C:\Program Files\AIM Search\AOLSearch.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: (no name) - {4E7BD74F-2B8D-469E-D0FC-E57AF4D5FA7D} - (no file)
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O4 - HKLM\..\Run: [AtiPTA] atiptaxx.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\SMax4.exe" /tray
O4 - HKLM\..\Run: [USB Storage Toolbox] C:\Program Files\USB Disk Win98 Driver\Res.EXE
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
--
End of file - 7107 bytes
Sorry for the delay.
Please do the following...
1. Download ATF (Atribune Temp File) Cleaner© by Atribune to your desktop.
This program is for XP and Windows 2000 only!
- Double-click ATF Cleaner.exe to open it.
- Under Main select the following:
- Windows Temp
- Current User Temp
- All Users Temp
- Temporary Internet Files
- Java Cache
*The other boxes are optional*Then click the Empty Selected button.
Click Exit on the Main menu to close the program.
2. Please download Malwarebytes' Anti-Malware to your desktop.
3. I need to see another log from HijackThis.
4. Please post the following...
Malwarebytes log
Uninstall list
New HijackThis log
Hi thanks you so much for helping me ive been having serious problems with this slow computer. Here is what you asked for in order i think
Malwarebytes' Anti-Malware 1.33
Database version: 1718
Windows 5.1.2600 Service Pack 3
2/2/2009 8:50:42 PM
mbam-log-2009-02-02 (20-50-42).txt
Scan type: Full Scan (C:\|)
Objects scanned: 160551
Time elapsed: 1 hour(s), 23 minute(s), 31 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 8
Files Infected: 187
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
C:\Program Files\SystemDoctor Free (Rogue.SystemDoctor) -> Quarantined and deleted successfully.
C:\Program Files\OneStepSearch (Adware.OneStepSearch) -> Quarantined and deleted successfully.
C:\Program Files\BitDownload (Trojan.Lop) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Quarantine (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Registry Backups (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Settings (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
Files Infected:
C:\System Volume Information\_restore{04C98855-1618-40B8-875E-08BAE9E124E6}\RP789\A0341415.dll (Rogue.AscentivePerformance) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{04C98855-1618-40B8-875E-08BAE9E124E6}\RP789\A0341418.exe (Rogue.AscentivePerformance) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{04C98855-1618-40B8-875E-08BAE9E124E6}\RP793\A0342490.dll (Rogue.SpywareStop) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{04C98855-1618-40B8-875E-08BAE9E124E6}\RP793\A0342492.exe (Rogue.PCSpeedScan) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{04C98855-1618-40B8-875E-08BAE9E124E6}\RP793\A0342501.exe (Rogue.AscentivePerformance) -> Quarantined and deleted successfully.
C:\System Volume Information\_restore{04C98855-1618-40B8-875E-08BAE9E124E6}\RP793\A0342502.dll (Rogue.AscentivePerformance) -> Quarantined and deleted successfully.
C:\Program Files\SystemDoctor Free\ResErrors.log (Rogue.SystemDoctor) -> Quarantined and deleted successfully.
C:\Program Files\SystemDoctor Free\st.dat (Rogue.SystemDoctor) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\rs.dat (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 23 - 05_54_01 PM_125.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 23 - 05_54_04 PM_546.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 23 - 06_38_44 PM_031.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 23 - 06_49_55 PM_921.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 23 - 07_29_16 PM_609.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 23 - 09_09_54 PM_625.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 23 - 10_09_07 PM_468.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 23 - 10_50_13 PM_281.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 24 - 10_30_51 AM_906.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 24 - 11_07_07 AM_812.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 26 - 04_19_34 PM_000.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 26 - 07_03_18 PM_046.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 26 - 08_10_50 PM_343.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 26 - 09_12_01 PM_234.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 26 - 09_52_36 PM_437.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 26 - 11_18_38 AM_875.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 27 - 04_10_09 PM_437.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 27 - 06_12_20 PM_250.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 27 - 08_43_07 PM_796.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 27 - 12_04_04 PM_937.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 27 - 12_15_30 PM_031.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 27 - 12_23_43 PM_281.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 28 - 01_58_57 PM_609.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 28 - 09_36_18 AM_203.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 28 - 11_31_57 AM_156.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 29 - 03_09_25 PM_796.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 29 - 08_16_15 PM_312.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 29 - 10_59_05 PM_515.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 30 - 01_37_06 PM_937.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 30 - 05_33_14 PM_093.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 30 - 11_39_11 AM_265.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 31 - 11_00_11 AM_000.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 31 - 11_03_25 AM_078.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Aug 31 - 12_10_19 PM_703.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 01 - 09_20_03 AM_421.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 01 - 09_31_50 PM_843.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 01 - 11_05_43 AM_359.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 02 - 03_14_26 PM_890.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 02 - 07_08_42 PM_421.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 02 - 11_35_54 AM_296.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 02 - 11_47_19 AM_968.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 02 - 12_12_08 PM_031.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 03 - 05_03_30 PM_765.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 03 - 08_35_59 PM_796.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 03 - 08_43_24 PM_234.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 03 - 09_24_00 PM_312.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 04 - 06_26_37 PM_921.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 04 - 08_05_36 AM_468.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 04 - 08_44_27 AM_468.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 05 - 02_56_13 PM_968.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 05 - 06_54_44 PM_343.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 05 - 07_34_36 AM_765.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 05 - 09_26_19 PM_265.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 05 - 09_40_05 AM_140.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 06 - 04_42_06 PM_500.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 06 - 07_26_07 PM_078.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 06 - 07_34_03 PM_984.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 06 - 08_13_40 PM_015.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 07 - 05_22_06 PM_562.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 07 - 06_27_25 PM_890.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 07 - 06_47_06 PM_078.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 07 - 06_54_59 PM_625.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 07 - 08_08_26 AM_406.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 07 - 10_31_24 PM_515.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 08 - 02_11_50 PM_468.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 08 - 03_45_02 PM_109.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 08 - 08_40_07 PM_515.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 08 - 08_45_30 PM_843.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 08 - 09_18_52 AM_937.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 08 - 09_34_15 PM_671.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 09 - 04_51_00 PM_718.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 09 - 07_25_34 PM_796.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 09 - 11_41_26 AM_953.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 09 - 12_40_12 PM_671.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 10 - 04_33_32 PM_296.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 10 - 05_41_26 PM_312.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 10 - 05_47_24 PM_015.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 10 - 06_19_03 PM_593.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 10 - 06_46_15 PM_531.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 10 - 06_54_02 PM_781.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 10 - 07_16_42 PM_703.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 10 - 07_24_02 PM_390.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 10 - 09_19_38 PM_171.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 11 - 04_07_52 PM_921.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 11 - 04_23_50 PM_468.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 11 - 07_14_44 PM_953.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 12 - 04_01_43 PM_859.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 12 - 08_00_50 PM_796.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 13 - 02_16_45 PM_171.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 13 - 06_31_22 AM_171.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 13 - 07_44_38 PM_718.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 13 - 07_51_34 PM_953.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 13 - 10_24_44 AM_656.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 13 - 10_48_22 AM_078.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 14 - 03_29_01 PM_609.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 14 - 05_34_58 PM_031.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 14 - 08_44_04 AM_062.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 14 - 10_27_39 PM_421.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 14 - 11_19_50 AM_812.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 14 - 12_50_02 PM_453.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 15 - 04_01_00 PM_031.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 15 - 08_50_41 PM_703.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 15 - 10_32_27 AM_906.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 15 - 10_54_12 AM_687.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 16 - 01_38_59 PM_906.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 16 - 03_37_14 PM_156.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 16 - 03_42_36 PM_265.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 16 - 06_47_56 PM_687.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 16 - 08_29_46 AM_546.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 16 - 09_33_44 AM_281.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 16 - 09_39_24 AM_484.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 17 - 03_53_53 PM_578.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 17 - 04_07_05 PM_546.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 17 - 06_36_06 PM_562.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 17 - 06_43_53 PM_078.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 18 - 12_33_36 PM_437.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 19 - 04_13_43 PM_921.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 19 - 08_02_12 PM_390.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 19 - 08_05_42 AM_125.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 19 - 10_30_38 AM_203.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 19 - 10_40_16 AM_468.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 19 - 10_49_10 AM_468.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 20 - 04_12_20 PM_937.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 20 - 07_55_44 PM_765.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 20 - 08_33_31 AM_875.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 20 - 10_57_36 AM_468.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 21 - 09_02_14 AM_265.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 21 - 09_06_50 AM_203.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 22 - 09_01_43 AM_812.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 22 - 09_04_13 PM_703.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 22 - 11_19_55 AM_750.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 23 - 10_35_38 AM_671.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 24 - 11_12_53 PM_625.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 24 - 12_25_47 PM_500.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 24 - 12_29_43 PM_109.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 25 - 01_14_13 PM_078.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 25 - 01_16_36 PM_687.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 25 - 07_18_09 AM_390.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 25 - 07_36_18 PM_984.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 25 - 09_10_04 AM_515.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 30 - 12_07_13 PM_734.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Dec 30 - 12_59_58 PM_328.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Nov 30 - 01_01_27 PM_125.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Nov 30 - 01_06_08 PM_062.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Nov 30 - 01_10_13 PM_843.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Nov 30 - 01_16_59 PM_046.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Nov 30 - 08_21_44 PM_062.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Nov 30 - 10_05_46 PM_796.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Nov 30 - 10_10_09 PM_531.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Nov 30 - 10_14_09 PM_187.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 01 - 10_03_09 PM_921.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 02 - 03_20_02 PM_734.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 02 - 10_00_57 PM_453.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 02 - 12_22_59 PM_531.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 03 - 08_14_31 PM_093.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 03 - 10_02_36 AM_359.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 04 - 02_43_11 PM_484.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 05 - 04_49_43 PM_218.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 05 - 05_53_29 PM_046.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 06 - 02_03_00 PM_328.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 06 - 08_47_48 AM_250.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 06 - 11_07_49 AM_531.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 06 - 11_13_31 AM_296.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 07 - 01_20_16 PM_015.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 07 - 02_39_16 PM_968.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 07 - 03_03_29 PM_828.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 07 - 07_51_30 AM_234.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 07 - 11_47_00 AM_750.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 07 - 12_24_00 PM_234.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 07 - 12_26_48 PM_359.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 13 - 09_57_58 AM_703.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Log\2007 Sep 13 - 10_04_56 AM_843.log (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Settings\CustomScan.stg (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Settings\IgnoreList.stg (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Settings\ScanInfo.stg (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Settings\ScanResults.stg (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Settings\SelectedFolders.stg (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
C:\Documents and Settings\MIKEY\Application Data\AdwareAlert\Settings\Settings.stg (Rogue.AdwareAlert) -> Quarantined and deleted successfully.
then the uninstall list..
Adobe Flash Player 10 ActiveX
Adobe Flash Player 10 Plugin
AIM 6
AIM MusicLink 4.0.0.0
AIM MusicLink 4.1.0.0
AIM Search
Apple Mobile Device Support
Apple Software Update
ATI Display Driver
AVG Free 8.0
Bonjour
CCleaner (remove only)
Choice Guard
Corel Paint Shop Pro Photo X2
Google Earth
HijackThis 2.0.2
iTunes
Java(TM) 6 Update 11
LimeWire PRO 4.18.8
Malwarebytes' Anti-Malware
Microsoft .NET Framework 2.0 Service Pack 1
Microsoft .NET Framework 3.0 Service Pack 1
Microsoft .NET Framework 3.5
Microsoft .NET Framework 3.5
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Internationalized Domain Names Mitigation APIs
Microsoft National Language Support Downlevel APIs
Microsoft Silverlight
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 Redistributable
Mozilla Firefox (3.0.5)
MP3 Player Utilities 4.00
MSVCRT
MSXML 4.0 SP2 (KB954430)
MSXML 6.0 Parser (KB933579)
QuickTime
Security Update for Windows Internet Explorer 7 (KB938127)
Security Update for Windows Internet Explorer 7 (KB950759)
Security Update for Windows Internet Explorer 7 (KB953838)
Security Update for Windows Internet Explorer 7 (KB956390)
Security Update for Windows Internet Explorer 7 (KB958215)
Security Update for Windows Internet Explorer 7 (KB960714)
Segoe UI
SoundMAX
Spybot - Search & Destroy
System Requirements Lab
USB Disk Win98 Driver
Verizon Broadband Toolbar
Verizon Online
Verizon Online Support Center
Windows Imaging Component
Windows Live Call
Windows Live Communications Platform
Windows Live Essentials
Windows Live Essentials
Windows Live Messenger
Windows Live Sign-in Assistant
Windows Live Upload Tool
Windows Media Format 11 runtime
Windows Media Format 11 runtime
Windows Media Player 11
Windows Media Player 11
Windows XP Service Pack 3
WinRAR archiver
then the new log
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:55:21 PM, on 2/2/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\atiptaxx.exe
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
C:\Program Files\Analog Devices\SoundMAX\SMax4.exe
C:\Program Files\USB Disk Win98 Driver\Res.EXE
C:\Program Files\Java\jre6\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\AIM6\aim6.exe
C:\Program Files\AIM6\aolsoftware.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\PROGRA~1\AVG\AVG8\avgnsx.exe
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://cgi.verizon.net/bookmarks/bmredir.asp?region=all&bw=dsl&cd=6.1&bm=ho_search
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://cgi.verizon.net/bookmarks/bmredir.asp?region=all&bw=dsl&cd=6.1&bm=ho_home
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Verizon Online
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1;*.local
R3 - URLSearchHook: AOLSearchHook Class - {54EB34EA-E6BE-4CFD-9F4F-C4A0C2EAFA22} - C:\Program Files\AIM Search\AOLSearch.dll
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)
O2 - BHO: AVG Safe Search - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: (no name) - {4E7BD74F-2B8D-469E-D0FC-E57AF4D5FA7D} - (no file)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: AOLSearchHook Class - {54EB34EA-E6BE-4CFD-9F4F-C4A0C2EAFA22} - C:\Program Files\AIM Search\AOLSearch.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre6\bin\ssv.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: (no name) - {4E7BD74F-2B8D-469E-D0FC-E57AF4D5FA7D} - (no file)
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O4 - HKLM\..\Run: [AtiPTA] atiptaxx.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\SMax4.exe" /tray
O4 - HKLM\..\Run: [USB Storage Toolbox] C:\Program Files\USB Disk Win98 Driver\Res.EXE
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\Windows Live\Messenger\msnmsgr.exe" /background
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre6\bin\jp2iexp.dll
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Protexis Licensing V2 (PSI_SVC_2) - Protexis Inc. - C:\Program Files\Common Files\Protexis\License Service\PsiService_2.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
--
End of file - 7140 bytes
These slowdowns are not always malware related. However, we will check.
You have several P2P filesharing program installed.
- Many of these programs come with unwanted components bundled with them.
- If you wish to find out whether the one you're using does click here.
Please note: Even if you are using a "safe" P2P program, it is only the program that is safe. You will be sharing files from uncertified sources, and these are often infected. The bad guys use P2P filesharing as a major conduit to spread their wares.I recommend you uninstall all forms of P2P programs via Add/Remove programs in Control Panel.
Please note: you must NOT use this whilst we are cleaning your machine.
Please do the following...
Click Start > Run > type in appwiz.cpl and hit enter. From the list uninstall the following, if present:
Java(TM) 6 Update 11
LimeWire PRO 4.18.8 <-- Optional. Refer to note above.
2. Now download and install Java SE Runtime Environment (JRE) 6 Update 12.
3. Open HijackThis
- Click the Do a system scan only button
- Check the following entries (below)
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)
O2 - BHO: (no name) - {4E7BD74F-2B8D-469E-D0FC-E57AF4D5FA7D} - (no file)
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O3 - Toolbar: (no name) - {4E7BD74F-2B8D-469E-D0FC-E57AF4D5FA7D} - (no file)
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
- Close ALL open windows (especially Internet Explorer!)
- Click Fix Checked
Close HiajckThis
4. Please do an online scan with Kaspersky WebScanner
Click on Kaspersky Online Scanner
You will be promted to install an ActiveX component from Kaspersky, Click Yes.
Note for Internet Explorer 7 users: If at any time you have trouble with the accept button of the licence, click on the Zoom tool located at the right bottom of the IE window and set the zoom to 75 %. Once the license accepted, reset to 100%.
Extended (if available otherwise Standard)
Scan Archives
Scan Mail Bases
[*]Click OK
[*]Now under select a target to scan:
Select
My Computer[*]This will program will start and scan your system.
[*]The scan will take a while so be patient and let it run.
[*]Once the scan is complete it will display if your system has been infected.
- Now click on the Save Report As button:
- Change Save as type: to Text file
- Save this as Kaspersky scan to your Desktop
[*]Post the Kaspersky report in your next reply, along with a new HijackThis logkaspersky scan:
KASPERSKY ONLINE SCANNER 7 REPORT
Tuesday, February 17, 2009
Operating System: Microsoft Windows XP Home Edition Service Pack 2 (build 2600)
Kaspersky Online Scanner 7 version: 7.0.25.0
Program database last update: Wednesday, February 18, 2009 01:24:20
Records in database: 1810228
Scan settings:
Scan using the following database: extended
Scan archives: yes
Scan mail databases: yes
Scan area - My Computer:
A:\
C:\
D:\
E:\
Scan statistics:
Files scanned: 67781
Threat name: 8
Infected objects: 18
Suspicious objects: 0
Duration of the scan: 02:09:22
File name / Threat name / Threats count
C:\Documents and Settings\mikey.MICHEAL-186BDAA\My Documents\LimeWire\Saved\30 Seconds to mars - The Kill (Bury Me).mp3 Infected: Trojan-Downloader.WMA.GetCodec.c 1
C:\Documents and Settings\mikey.MICHEAL-186BDAA\My Documents\LimeWire\Saved\danny fernandez - fantasy - greatest hits.mp3 Infected: Trojan-Downloader.WMA.GetCodec.n 1
C:\Documents and Settings\mikey.MICHEAL-186BDAA\My Documents\LimeWire\Saved\Day 26 - Co Star.mp3 Infected: Trojan-Downloader.WMA.GetCodec.c 1
C:\Documents and Settings\mikey.MICHEAL-186BDAA\My Documents\LimeWire\Saved\sin banderas 2009.mp3 Infected: Trojan-Downloader.WMA.GetCodec.w 1
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Incomplete\Preview-T-3515159-gaitas de vigo .wma Infected: Trojan-Downloader.WMA.Wimad.n 1
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Incomplete\Preview-T-3545425-muineira de chantada.mp3 Infected: Trojan-Downloader.WMA.GetCodec.c 1
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Incomplete\Preview-T-3545425-rianxeira.mp3 Infected: Trojan-Downloader.WMA.GetCodec.c 1
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Incomplete\Preview-T-3545425-roda do muino.mp3 Infected: Trojan-Downloader.WMA.GetCodec.c 1
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Incomplete\Preview-T-3877627-celta vigo .mp3 Infected: Trojan-Downloader.WMA.GetCodec.n 1
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Incomplete\Preview-T-5745425-gaiteiros.mp3 Infected: Trojan-Downloader.WMA.GetCodec.c 1
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Incomplete\Preview-T-5745425-rianxeira.mp3 Infected: Trojan-Downloader.WMA.GetCodec.c 1
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Saved\believe keisha cole jahiem.mp3 Infected: Trojan-Downloader.WMA.GetCodec.c 1
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Saved\celta vigo.mp3 Infected: Trojan-Downloader.WMA.GetCodec.c 1
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Saved\Meet The Spartans (2007).avi Infected: Trojan-Downloader.WMA.GetCodec.a 1
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Saved\muineiras.mp3 Infected: Trojan-Downloader.WMA.GetCodec.c 1
C:\Program Files\Common Files\aolback\Comps\toolbar\toolbr.exe Infected: not-a-virus:AdWare.Win32.SearchIt.t 1
C:\Program Files\MP3 Player Utilities 4.00\DelDrv.exe Infected: not-a-virus:RiskTool.Win32.Deleter.e 1
C:\QooBox\Quarantine\C\WINDOWS\Downloaded Program Files\USDR6_9999_N18M1603NetInstaller.exe.vir Infected: not-a-virus:Downloader.Win32.WinFixer.ar 1
The selected area was scanned.
the new hijackthis log also:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 1:27:23 PM, on 2/17/2009
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16791)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\WINDOWS\system32\atiptaxx.exe
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
C:\Program Files\Analog Devices\SoundMAX\SMax4.exe
C:\Program Files\USB Disk Win98 Driver\Res.EXE
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\Program Files\Java\jre6\bin\jusched.exe
C:\PROGRA~1\AVG\AVG8\avgtray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\AVG\AVG8\avgemc.exe
C:\PROGRA~1\AVG\AVG8\avgrsx.exe
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\AVG\AVG8\avgui.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\AVG\AVG8\avgscanx.exe
C:\Program Files\AVG\AVG8\avgcsrvx.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRA~1\AVG\AVG8\aAvgApi.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://cgi.verizon.net/bookmarks/bmredir.asp?region=all&bw=dsl&cd=6.1&bm=ho_search
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://search.orbitdownloader.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Verizon Online
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1;*.local
O2 - BHO: WormRadar.com IESiteBlocker.NavFilter - {3CA2F312-6F6E-4B53-A66E-4E65E497C8C0} - C:\Program Files\AVG\AVG8\avgssie.dll
O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
O4 - HKLM\..\Run: [AtiPTA] atiptaxx.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
O4 - HKLM\..\Run: [SoundMAX] "C:\Program Files\Analog Devices\SoundMAX\SMax4.exe" /tray
O4 - HKLM\..\Run: [USB Storage Toolbox] C:\Program Files\USB Disk Win98 Driver\Res.EXE
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
O20 - Winlogon Notify: avgrsstarter - C:\WINDOWS\SYSTEM32\avgrsstx.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
--
End of file - 5591 bytes
You have many infected files that have come from Limewire (please see previous note about P2P programs).
Find and delete these infected files...
C:\Documents and Settings\mikey.MICHEAL-186BDAA\My Documents\LimeWire\Saved\30 Seconds to mars - The Kill (Bury Me).mp3
C:\Documents and Settings\mikey.MICHEAL-186BDAA\My Documents\LimeWire\Saved\danny fernandez - fantasy - greatest hits.mp3
C:\Documents and Settings\mikey.MICHEAL-186BDAA\My Documents\LimeWire\Saved\Day 26 - Co Star.mp3
C:\Documents and Settings\mikey.MICHEAL-186BDAA\My Documents\LimeWire\Saved\sin banderas 2009.mp3
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Incomplete\Preview-T-3515159-gaitas de vigo .wma
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Incomplete\Preview-T-3545425-muineira de chantada.mp3
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Incomplete\Preview-T-3545425-rianxeira.mp3
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Incomplete\Preview-T-3545425-roda do muino.mp3
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Incomplete\Preview-T-3877627-celta vigo .mp3
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Incomplete\Preview-T-5745425-gaiteiros.mp3
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Incomplete\Preview-T-5745425-rianxeira.mp3
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Saved\believe keisha cole jahiem.mp3
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Saved\celta vigo.mp3
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Saved\Meet The Spartans (2007).avi
C:\Documents and Settings\serafin pousada\My Documents\LimeWire\Saved\muineiras.mp3
C:\Program Files\MP3 Player Utilities 4.00\DelDrv.exe
If you do not know what these two are, delete them:
C:\Program Files\Common Files\aolback\Comps\toolbar\toolbr.exe
C:\Program Files\MP3 Player Utilities 4.00\DelDrv.exe
Apart from that, everything looks clean.