Ok. So… I tried to look in these files and they were empty.
Then, I followed your instructions for the website and submitted it and it told me to let you know this:
The file you tried to upload was 0 Bytes or something prevented it from being uploaded. If someone requested you upload the file please let them know.The file you tried to upload was 0 Bytes or something prevented it from being uploaded. If someone requested you upload the file please let them know.
So now the active scan. Here is the active scan report (it said 3 viruses and 49 spyware) and below it is the new hijack summary:
Incident Status Location
Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@2o7[1].txt
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna
[email protected][1].txt
Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@adrevolver[2].txt
Spyware:Cookie/AdDynamix Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna
[email protected][1].txt
Spyware:Cookie/PointRoll Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna
[email protected][2].txt
Spyware:Cookie/adultfriendfinder Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@adultfriendfinder[1].txt
Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@advertising[1].txt
Spyware:Cookie/Apmebf Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@apmebf[2].txt
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@atdmt[1].txt
Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@atwola[1].txt
Spyware:Cookie/Bluestreak Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@bluestreak[2].txt
Spyware:Cookie/bravenetA Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@bravenet[2].txt
Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@casalemedia[2].txt
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@doubleclick[1].txt
Spyware:Cookie/Hitbox Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna
[email protected][1].txt
Spyware:Cookie/FastClick Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@fastclick[2].txt
Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@go[2].txt
Spyware:Cookie/Mediaplex Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@mediaplex[1].txt
Spyware:Cookie/Overture Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@overture[2].txt
Spyware:Cookie/QuestionMarket Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@questionmarket[2].txt
Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@realmedia[2].txt
Spyware:Cookie/Statcounter Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@statcounter[2].txt
Spyware:Cookie/Tradedoubler Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@tradedoubler[1].txt
Spyware:Cookie/Traffic Marketplace Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@trafficmp[2].txt
Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@tribalfusion[2].txt
Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms. chrsitna simon@zedo[2].txt
Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Cookies\ms[1].txt
Potentially unwanted tool:Application/Processor Not disinfected C:\Documents and Settings\Ms. Chrsitna Simon\Desktop\system programs\VirtumundoBeGone.exe
Adware:Adware/Yazzle Not disinfected C:\QooBox\Quarantine\C\Program Files\Common Files\Yazzle1549OinAdmin.exe.vir
Adware:Adware/Yazzle Not disinfected C:\QooBox\Quarantine\C\Program Files\Common Files\Yazzle1549OinUninstaller.exe.vir
Adware:Adware/TTC Not disinfected C:\QooBox\Quarantine\C\Program Files\Hijackthis\backups\backup-20070704-160859-825.dll.vir
Adware:Adware/TTC Not disinfected C:\QooBox\Quarantine\C\Program Files\Online Services\vihys83122.dll.vir
Virus:Generic Malware Disinfected C:\QooBox\Quarantine\C\Program Files\poolsv\svhost.exe.vir
Adware:Adware/Yazzle Not disinfected C:\QooBox\Quarantine\C\Program Files\poolsv\wr-1-0000077.exe.vir
Adware:Adware/Yazzle Not disinfected C:\QooBox\Quarantine\C\Program Files\poolsv\YazzleBundle-1549.exe.vir[¦++\Yazzle1549OinAdmin.exe]
Adware:Adware/Yazzle Not disinfected C:\QooBox\Quarantine\C\Program Files\svhost\wr-1-0000077.exe.vir
Adware:Adware/WinAntiSpyware Not disinfected C:\QooBox\Quarantine\C\WINDOWS\poolsv.exe.vir
Adware:Adware/Yazzle Not disinfected C:\QooBox\Quarantine\C\WINDOWS\retadpu1000106.exe.vir
Adware:Adware/Yazzle Not disinfected C:\QooBox\Quarantine\C\WINDOWS\retadpu77.exe.vir
Virus:Trj/Downloader.PAU Disinfected C:\QooBox\Quarantine\C\WINDOWS\system32\o02PrEz\o02PrEz1065.exe.vir
Spyware:Spyware/Virtumonde Not disinfected C:\VundoFix Backups\awvvt.dll.bad
Spyware:Spyware/Virtumonde Not disinfected C:\VundoFix Backups\iifcaby.dll.bad
Spyware:Spyware/Virtumonde Not disinfected C:\VundoFix Backups\ljjkigf.dll.bad
Spyware:Spyware/Virtumonde Not disinfected C:\VundoFix Backups\lmfkjcfm.dll.bad
Virus:Trj/Downloader.OZB Disinfected C:\VundoFix Backups\mgbpcqyb.exe.bad
Spyware:Spyware/Virtumonde Not disinfected C:\VundoFix Backups\pmnnl.dll.bad
Spyware:Spyware/Virtumonde Not disinfected C:\VundoFix Backups\qommjgg.dll.bad
Adware:Adware/WinAntivirus2006 Not disinfected C:\VundoFix Backups\qxttsxjd.dll.bad
Spyware:Spyware/Virtumonde Not disinfected C:\VundoFix Backups\sstts.dll.bad
Spyware:Spyware/Virtumonde Not disinfected C:\VundoFix Backups\tkbhshmv.dll.bad
Spyware:Spyware/Virtumonde Not disinfected C:\VundoFix Backups\urqqoml.dll.bad
Adware:Adware/TTC Not disinfected C:\WINDOWS\system32\X2\mwspasrt83122.exe[TTC.dll]
Adware:Adware/Yazzle Not disinfected C:\WINDOWS\system32\X3\w73r.exe
Hijack:
Logfile of HijackThis v1.99.1
Scan saved at 2:28:02 AM, on 7/7/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Dell\Media Experience\DMXLauncher.exe
C:\Program Files\McAfee.com\VSO\oasclnt.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
C:\Program Files\McAfee.com\VSO\mcvsshld.exe
C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe
C:\Program Files\Microsoft ActiveSync\wcescomm.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Digital Line Detect\DLG.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\Program Files\Lexmark 2200 Series\lxbvbmon.exe
C:\PROGRA~1\MI3AA1~1\rapimgr.exe
c:\progra~1\mcafee.com\vso\mcvsftsn.exe
c:\program files\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\Microsoft Office\Office10\WINWORD.EXE
C:\Program Files\Hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.yahoo.com/R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: McAfee AntiPhishing Filter - {41D68ED8-4CFF-4115-88A6-6EBB8AF19000} - c:\program files\mcafee\spamkiller\mcapfbho.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O4 - HKLM\..\Run: [DMXLauncher] C:\Program Files\Dell\Media Experience\DMXLauncher.exe
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [MSKDetectorExe] C:\PROGRA~1\McAfee\SPAMKI~1\MSKDetct.exe /startup
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [MSKAGENTEXE] C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
O4 - HKLM\..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [Lexmark 2200 Series] "C:\Program Files\Lexmark 2200 Series\lxbvbmgr.exe"
O4 - HKLM\..\Run: [FaxCenterServer] "C:\Program Files\Lexmark Fax Solutions\fm3032.exe" /s
O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 4.7\THGuard.exe"
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\wcescomm.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: (no name) - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\program files\mcafee\spamkiller\mcapfbho.dll
O9 - Extra 'Tools' menuitem: McAfee AntiPhishing Filter - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\program files\mcafee\spamkiller\mcapfbho.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) -
http://download.mcaf...01/mcinsctl.cabO16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) -
http://acs.pandasoft...free/asinst.cabO20 - Winlogon Notify: WgaLogon - C:\WINDOWS\
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee SpamKiller Server (MskService) - McAfee Inc. - C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe