Hey, thanks for the reply
Ive done everything youve asked
Here is my new HJT log:
Logfile of HijackThis v1.99.1
Scan saved at 10:57:23 PM, on 12/10/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Maxtor\Maxtor Backup\MaxBackServiceInt.exe
C:\Program Files\Maxtor\OneTouch\Utils\SyncServices.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\System32\r_server.exe
C:\WINDOWS\System32\DSentry.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\D-Link\AirPlus G\AirGCFG.exe
C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
C:\Program Files\Dell Photo AIO Printer 922\dlbtbmgr.exe
C:\Program Files\Maxtor\OneTouch\utils\Onetouch.exe
C:\Program Files\Dell Photo AIO Printer 922\dlbtbmon.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\MessengerDiscovery\msgdiscoveryx.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.0.720.3640\GoogleToolbarNotifier.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Milton\Desktop\Security\Hijack this\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.dell.comR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.myspace.com/shteveyO2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [URLLSTCK.exe] C:\Program Files\Norton Internet Security\UrlLstCk.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [D-Link AirPlus G] C:\Program Files\D-Link\AirPlus G\AirGCFG.exe
O4 - HKLM\..\Run: [ANIWZCS2Service] C:\Program Files\ANI\ANIWZCS2 Service\WZCSLDR2.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\McAfee.com\Agent\McUpdate.exe
O4 - HKLM\..\Run: [MCAgentExe] C:\PROGRA~1\McAfee.com\Agent\McAgent.exe
O4 - HKLM\..\Run: [Dell Photo AIO Printer 922] "C:\Program Files\Dell Photo AIO Printer 922\dlbtbmgr.exe"
O4 - HKLM\..\Run: [MaxtorOneTouch] C:\Program Files\Maxtor\OneTouch\utils\Onetouch.exe
O4 - HKLM\..\Run: [mxomssmenu] "C:\Program Files\Maxtor\OneTouch Status\maxmenumgr.exe"
O4 - HKLM\..\Run: [Windows APCI Verifier] dhcpserv.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\RunServices: [Windows APCI Verifier] dhcpserv.exe
O4 - HKCU\..\Run: [MessengerDiscovery] C:\Program Files\MessengerDiscovery\msgdiscoveryx.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.0.720.3640\GoogleToolbarNotifier.exe
O4 - Startup: Slide.exe.lnk = C:\Program Files\Slide\Slide.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft....k/?linkid=39204O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) -
http://download.mcaf...90/mcinsctl.cabO16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) -
http://spaces.msn.co...ad/MsnPUpld.cabO16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) -
http://upload.facebo...otoUploader.cabO16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://v5.windowsupd...b?1101982174525O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) -
http://acs.pandasoft...free/asinst.cabO16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) -
http://download.mcaf...,23/mcgdmgr.cabO16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) -
https://download.mac...ash/swflash.cabO16 - DPF: {FE5D6722-826F-11D5-A24E-0060B0F1A5AE} (Tukati Launcher) -
http://www.tukati.co...1.21/tukati.cabO17 - HKLM\System\CCS\Services\Tcpip\..\{677864ED-41CC-4B26-AAE8-1AB00C647872}: NameServer = 192.168.1.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{70CB1D38-1E2F-4C54-A479-995974AA5F1E}: NameServer = 203.2.75.132,198.142.0.51
O17 - HKLM\System\CCS\Services\Tcpip\..\{90EE02DC-EFB5-4E4B-9573-04286B3C711A}: NameServer = 192.168.0.1
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: ANIWZCSd Service (ANIWZCSdService) - Alpha Networks Inc. - C:\Program Files\ANI\ANIWZCS2 Service\ANIWZCSdS.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: dlbt_device - Dell - C:\WINDOWS\system32\dlbtcoms.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: MaxBackServiceInt - Unknown owner - C:\Program Files\Maxtor\Maxtor Backup\MaxBackServiceInt.exe
O23 - Service: MaxSyncService (NTService1) - - C:\Program Files\Maxtor\OneTouch\Utils\SyncServices.exe
O23 - Service: Remote Administrator Service (r_server) - Unknown owner - C:\WINDOWS\System32\r_server.exe" /service (file missing)
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
Here is the AVG report:
---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------
+ Created at: 9:54:02 PM 12/10/2006
+ Scan result:
C:\Documents and Settings\Milton\Local Settings\Temporary Internet Files\Content.IE5\458NO787\Yinstall[1].mp3 -> Adware.PurityScan : Cleaned with backup (quarantined).
C:\WINDOWS\Yinstall.exe -> Adware.PurityScan : Cleaned with backup (quarantined).
C:\Program Files\Common Files\{304F90AC-09BB-1033-1202-03051220003d}\MyToolBar.dll -> Adware.Softomate : Cleaned with backup (quarantined).
C:\Program Files\Common Files\{F04F90AC-09BB-1033-1202-03051220003d}\Update.exe -> Adware.Softomate : Cleaned with backup (quarantined).
C:\Program Files\Common Files\{F04F90AC-09BB-1033-1202-03051220003d}\services.dll -> Adware.Softomate : Cleaned with backup (quarantined).
C:\Program Files\MSN Messenger\msnmsgr.exe -> Backdoor.Agent.fs : Cleaned with backup (quarantined).
C:\ovvpecjh.exe -> Downloader.Small.ctf : Cleaned with backup (quarantined).
C:\Documents and Settings\Guest\Desktop\GoogleToolbarInstaller.exe -> Dropper.Inflator.a : Cleaned with backup (quarantined).
:mozilla.27:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.28:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.29:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.453:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.502:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.
:mozilla.503:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.
:mozilla.504:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.
:mozilla.78:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.92:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.477:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Counted : Cleaned.
:mozilla.33:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.34:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.35:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.52:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.509:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.510:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.511:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.512:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.513:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.514:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.515:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.516:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.517:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.336:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Revenue : Cleaned.
:mozilla.353:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.354:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.355:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.356:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.357:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.100:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.101:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.102:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.103:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.104:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.105:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.106:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.107:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.108:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.109:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.110:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.111:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.112:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.113:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.114:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.115:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.116:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.117:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.118:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.119:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.120:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.121:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.98:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.99:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.365:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.366:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.367:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.368:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.369:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.370:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.371:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.372:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.373:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.374:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.375:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.376:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.377:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.378:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.379:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.380:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.391:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.392:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.393:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.394:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.428:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned.
:mozilla.429:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned.
:mozilla.430:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned.
:mozilla.442:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Yadro : Cleaned.
:mozilla.459:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.460:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.461:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.450:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.451:C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
C:\WINDOWS\Temp\$_3472452.EXE -> Trojan.Sinowal.az : Cleaned with backup (quarantined).
C:\jttsdgjj.exe -> Trojan.Sinowal.az : Cleaned with backup (quarantined).
C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00002.dll -> Trojan.Sinowal.bd : Cleaned with backup (quarantined).
C:\Documents and Settings\Milton\Local Settings\Temporary Internet Files\Content.IE5\QRBTM990\GFORCE[1].exe -> Worm.VB.ao : Cleaned with backup (quarantined).
C:\WINDOWS\b.exe -> Worm.VB.ao : Cleaned with backup (quarantined).
::Report end
And here is my Active scan report:
Incident Status Location
Virus:trj/torpig.a Disinfected Operating system
Adware:adware/ncase Not disinfected c:\windows\msbb.exe.temp
Adware:adware/dluxde Not disinfected c:\program files\linksw
Adware:adware/sahagent Not disinfected Windows Registry
Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt[.atwola.com/]
Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt[.belnk.com/]
Spyware:Cookie/bravenetA Not disinfected C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt[.bravenet.com/]
Spyware:Cookie/DomainSponsor Not disinfected C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt[landing.domainsponsor.com/]
Spyware:Cookie/Netster Not disinfected C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt[lb1.netster.com/]
Spyware:Cookie/Netster Not disinfected C:\Documents and Settings\Milton\Application Data\Mozilla\Firefox\Profiles\u38nrx3a.default\cookies.txt[lb3.netster.com/]
Virus:Trj/Agent.CUO Disinfected C:\ffgwmpsk.exe
Adware:Adware/Maxifiles Not disinfected C:\Program Files\Common Files\{304F90AC-09BB-1033-1202-03051220003d}\Activate.exe
Adware:Adware/DollarRevenue Not disinfected C:\Program Files\Common Files\{304F90AC-09BB-1033-1202-03051220003d}\Uninst.exe
Adware:Adware/Maxifiles Not disinfected C:\WINDOWS\mny.exe
Virus:W32/Netsky.D.worm Disinfected Local Folders\Deleted Items\Re: Here\yours.pif
Virus:W32/Netsky.P.worm Disinfected Local Folders\Deleted Items\Re: Sex pictures\www.freeporn4all.pif
Hacktool:Exploit/iFrame Not disinfected Local Folders\Deleted Items\Mail Delivery (failure
[email protected])
Virus:W32/Netsky.P.worm Disinfected Local Folders\Deleted Items\Mail Delivery (failure
[email protected])\message.scr
Virus:W32/Netsky.P.worm Disinfected Local Folders\Deleted Items\Hi\patch3425.pif
Hacktool:Exploit/iFrame Not disinfected Local Folders\Deleted Items\Mail Delivery (failure
[email protected])
Virus:W32/Netsky.P.worm Disinfected Local Folders\Deleted Items\Mail Delivery (failure
[email protected])\message.scr
Virus:W32/Netsky.D.worm Disinfected Local Folders\Deleted Items\Re: My details\my_details.pif
Virus:W32/Netsky.D.worm Disinfected Local Folders\Deleted Items\Re: Thanks!\message_part2.pif
Virus:W32/Netsky.D.worm Disinfected Local Folders\Deleted Items\Re: Your letter\your_letter.pif
Virus:W32/Bagle.BK.worm!CME-245 Disinfected Local Folders\Deleted Items\Delivery service mail\wsd01.scr
Virus:W32/Bagle.BK.worm!CME-245 Disinfected Local Folders\Deleted Items\You are made active\zupd02.scr
Virus:W32/Netsky.D.worm Disinfected Local Folders\Deleted Items\Re: Your website\your_website.pif
Virus:W32/Sober.AH.worm!CME-681 Disinfected Local Folders\Deleted Items\Your IP was logged\list.zip[File-packed_dataInfo.exe]
Virus:W32/Sober.AH.worm!CME-681 Disinfected Local Folders\Deleted Items\smtp mail failed\mail_body.zip[File-packed_dataInfo.exe]
Virus:W32/Sober.AH.worm!CME-681 Disinfected Local Folders\Deleted Items\You visit illegal websites\list.zip[File-packed_dataInfo.exe]
Hacktool:Exploit/iFrame Not disinfected Local Folders\Inbox\Mail Delivery (failure
[email protected])
Virus:W32/Netsky.P.worm Disinfected Local Folders\Inbox\Mail Delivery (failure
[email protected])\message.scr
Virus:W32/Netsky.P.worm Disinfected Local Folders\Inbox\Re: Protected Mail System\message.zip[details.txt .pif]
Virus:W32/Netsky.D.worm Disinfected Local Folders\Inbox\Re: Your letter\your_letter.pif
Adware:Adware/CWS.Yexe Not disinfected Local Folders\Norton AntiSpam Folder\[Norton AntiSpam] screen saver\web.exe
Virus:W32/Netsky.D.worm Disinfected Local Folders\Norton AntiSpam Folder\[Norton AntiSpam] Re: Your software\application.pif