Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Infected (not sure what it is) [CLOSED]


  • This topic is locked This topic is locked

#1
abcpn08

abcpn08

    New Member

  • Member
  • Pip
  • 2 posts
Here is my Hijack This log....


---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------

+ Created at: 2:40:12 PM 3/9/2008

+ Scan result:



HKLM\SOFTWARE\Classes\WR -> Adware.Generic : Cleaned with backup (quarantined).
C:\Documents and Settings\Owner\Local Settings\Temp\removalfile.bat -> Not-A-Virus.Adware.Virtumonde : Cleaned with backup (quarantined).
:mozilla.100:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.101:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.102:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.103:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.104:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.106:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.108:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.109:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.110:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.111:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.115:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.117:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.118:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.119:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.120:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.121:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.122:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.123:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.125:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.127:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.128:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.129:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.130:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.131:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.244:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.257:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.329:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.458:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.486:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.537:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.547:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.608:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.88:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.99:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Owner\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Aavalue : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Aavalue : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Aavalue : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Addynamix : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Adrevolver : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Adrevolver : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Advertising : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.155:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Bfast : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Bridgetrack : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Burstbeacon : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Burstnet : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Casalemedia : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Clickhype : Cleaned.
:mozilla.98:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Coremetrics : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Coremetrics : Cleaned.
:mozilla.317:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.112:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.113:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.114:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.115:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.487:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.494:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.548:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.141:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.143:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.144:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.164:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.172:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.176:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.473:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.474:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.476:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.193:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.194:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.307:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.308:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.309:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.403:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Masterstats : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Masterstats : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Msn : Cleaned.
:mozilla.479:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.480:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Pointroll : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Pro-market : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Questionmarket : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.337:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Realtracker : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Realtracker : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Revsci : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Ru4 : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.420:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Sexlist : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Sexlist : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Sextracker : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Sextracker : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Skype : Cleaned.
:mozilla.10:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.11:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.12:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.186:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.187:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.188:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.189:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.190:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.191:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.192:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.193:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.194:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.195:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.9:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Statcounter : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Tracking101 : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Trafficmp : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.296:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.523:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Webtrends : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Webtrends : Cleaned.
:mozilla.292:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Webtrendslive : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Wegcash : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt -> TrackingCookie.Wegcash : Cleaned.
:mozilla.512:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.513:C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt -> TrackingCookie.Zedo : Cleaned.


::Report end





````````````````````````````````````````````````````````
````````````````````````````````````````````````````````
````````````````````````````````````````````````````````
````````````````````````````````````````````````````````





SUPERAntiSpyware Scan Log
Generated 03/09/2008 at 03:41 PM

Application Version : 3.6.1000

Core Rules Database Version : 3416
Trace Rules Database Version: 1408

Scan type : Complete Scan
Total Scan Time : 00:35:17

Memory items scanned : 381
Memory threats detected : 1
Registry items scanned : 5947
Registry threats detected : 21
File items scanned : 42338
File threats detected : 144

Trojan.WinFixer
C:\WINDOWS\SYSTEM32\AWTSP.DLL
C:\WINDOWS\SYSTEM32\AWTSP.DLL
HKLM\Software\Classes\CLSID\{57FCB3D9-7DEF-4711-97DE-BACBEC6E571C}
HKCR\CLSID\{57FCB3D9-7DEF-4711-97DE-BACBEC6E571C}
HKCR\CLSID\{57FCB3D9-7DEF-4711-97DE-BACBEC6E571C}\InprocServer32
HKCR\CLSID\{57FCB3D9-7DEF-4711-97DE-BACBEC6E571C}\InprocServer32#ThreadingModel
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{57FCB3D9-7DEF-4711-97DE-BACBEC6E571C}

Unclassified.Unknown Origin
HKLM\Software\Classes\CLSID\{11A69AE4-FBED-4832-A2BF-45AF82825583}
HKCR\CLSID\{11A69AE4-FBED-4832-A2BF-45AF82825583}
HKCR\CLSID\{11A69AE4-FBED-4832-A2BF-45AF82825583}
HKCR\CLSID\{11A69AE4-FBED-4832-A2BF-45AF82825583}\InprocServer32
HKCR\CLSID\{11A69AE4-FBED-4832-A2BF-45AF82825583}\InprocServer32#ThreadingModel
C:\WINDOWS\SYSTEM32\VHSAAZDG.DLL

Adware.Vundo Variant
HKLM\Software\Classes\CLSID\{A95B2816-1D7E-4561-A202-68C0DE02353A}
HKCR\CLSID\{A95B2816-1D7E-4561-A202-68C0DE02353A}
HKCR\CLSID\{A95B2816-1D7E-4561-A202-68C0DE02353A}\InprocServer32
HKCR\CLSID\{A95B2816-1D7E-4561-A202-68C0DE02353A}\InprocServer32#ThreadingModel
HKLM\Software\Classes\CLSID\{C21A6090-1697-4B92-B5FE-33F0F0471370}
HKCR\CLSID\{C21A6090-1697-4B92-B5FE-33F0F0471370}
HKCR\CLSID\{C21A6090-1697-4B92-B5FE-33F0F0471370}\InprocServer32
HKCR\CLSID\{C21A6090-1697-4B92-B5FE-33F0F0471370}\InprocServer32#ThreadingModel
C:\WINDOWS\SYSTEM32\VTSTS.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A95B2816-1D7E-4561-A202-68C0DE02353A}
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{C21A6090-1697-4B92-B5FE-33F0F0471370}
HKCR\CLSID\{A95B2816-1D7E-4561-A202-68C0DE02353A}

Adware.Tracking Cookie
C:\Documents and Settings\Owner\Cookies\[email protected][2].txt
C:\Documents and Settings\Owner\Cookies\[email protected][1].txt
C:\Documents and Settings\Owner\Cookies\[email protected][1].txt
C:\Documents and Settings\Owner\Cookies\[email protected][1].txt
C:\Documents and Settings\Owner\Cookies\[email protected][1].txt
C:\Documents and Settings\Owner\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][3].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][3].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt

Adware.MyWebSearch
C:\PROGRAM FILES\MYWEBSEARCH\BAR\1.BIN\MWSOEMON.EXE

Adware.Vundo Variant/Rel
C:\WINDOWS\SYSTEM32\STSTV.INI
C:\WINDOWS\SYSTEM32\STSTV.INI2




``````````````````````````````````````````````
``````````````````````````````````````````````
``````````````````````````````````````````````
``````````````````````````````````````````````




Incident Status Location

Potentially unwanted tool:Application/PRScheduler Not disinfected C:\Documents and Settings\Owner\Start Menu\Programs\Startup\PowerReg Scheduler V3.exe
Spyware:spyware/searchcentrix Not disinfected Windows Registry
Spyware:Cookie/Com.com Not disinfected C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt[.com.com/]
Spyware:Cookie/Apmebf Not disinfected C:\Documents and Settings\Default User\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt[.apmebf.com/]
Spyware:Cookie/Com.com Not disinfected C:\Documents and Settings\Default User\Cookies\[email protected][1].txt
Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
Spyware:Cookie/Target Not disinfected C:\Documents and Settings\Default User\Cookies\[email protected][2].txt
Spyware:Cookie/Com.com Not disinfected C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt[.statcounter.com/]
Spyware:Cookie/FastClick Not disinfected C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt[.fastclick.net/]
Spyware:Cookie/Bfast Not disinfected C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt[.bfast.com/]
Spyware:Cookie/Apmebf Not disinfected C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt[.apmebf.com/]
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Owner\Cookies\[email protected][1].txt
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Owner\Cookies\[email protected][1].txt
Spyware:Cookie/Dbbsrv Not disinfected C:\Documents and Settings\Owner\Cookies\[email protected][1].txt
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Owner\Cookies\[email protected][1].txt
Spyware:Cookie/Linksynergy Not disinfected C:\Documents and Settings\Owner\Cookies\[email protected][2].txt
Potentially unwanted tool:Application/KillApp.B Not disinfected C:\hp\bin\KillIt.exe
Potentially unwanted tool:Application/MyWebSearch Not disinfected C:\RECYCLER\S-1-5-21-22795971-1235746358-2159898392-1003\Dc17.exe
Spyware:Cookie/Com.com Not disinfected C:\WINDOWS\system32\config\systemprofile\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt[.com.com/]
Spyware:Cookie/Apmebf Not disinfected C:\WINDOWS\system32\config\systemprofile\Application Data\Mozilla\Firefox\Profiles\nwzuru79.default\cookies.txt[.apmebf.com/]
Spyware:Cookie/Com.com Not disinfected C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][1].txt
Spyware:Cookie/Go Not disinfected C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt
Spyware:Cookie/Target Not disinfected C:\WINDOWS\system32\config\systemprofile\Cookies\[email protected][2].txt








``````````````````````````````````````````````
``````````````````````````````````````````````
``````````````````````````````````````````````
``````````````````````````````````````````````






Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 8:00:03 PM, on 3/9/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16608)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe
C:\windows\system\hpsysdrv.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\System32\hphmon05.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Multimedia Card Reader\shwicon2k.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
C:\WINDOWS\ALCXMNTR.EXE
C:\WINDOWS\system32\igfxtray.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Compaq Connections\1940576\Program\BackWeb-1940576.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\interMute\SpamSubtract\SpamSub.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Owner\Desktop\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qus10.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://srch-qus10.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-qus10.hpwis.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://srch-qus10.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://srch-qus10.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft....k/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,C:\Program Files\Common Files\Microsoft Shared\mtssc.exe,
O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Common\ycomp5,1,1,0.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_04\bin\jusched.exe"
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [HPHUPD05] c:\Program Files\HP\{45B6180B-DCAB-4093-8EE8-6164457517F0}\hphupd05.exe
O4 - HKLM\..\Run: [HPHmon05] C:\WINDOWS\System32\hphmon05.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [Sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe
O4 - HKLM\..\Run: [Reminder] "C:\Windows\Creator\Remind_XP.exe"
O4 - HKLM\..\Run: [mmtask] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'Default user')
O4 - .DEFAULT User Startup: Organize.lnk = ? (User 'Default user')
O4 - .DEFAULT User Startup: spamsubtract.lnk = C:\Program Files\interMute\SpamSubtract\SpamSub.exe (User 'Default user')
O4 - Startup: Organize.lnk = ?
O4 - Startup: PowerReg Scheduler V3.exe
O4 - Startup: spamsu
  • 0

Advertisements


#2
Rorschach112

Rorschach112

    Ralphie

  • Retired Staff
  • 47,710 posts
Hello

Please download ComboFix from Here or Here to your Desktop.

**Note: In the event you already have Combofix, this is a new version that I need you to download. It is important that it is saved directly to your desktop**
  • Please, never rename Combofix unless instructed.
  • Close any open browsers.
  • Close/disable all anti virus and anti malware programs so they do not interfere with the running of ComboFix.

    -----------------------------------------------------------

    • Very Important! Temporarily disable your anti-virus, script blocking and any anti-malware real-time protection before performing a scan. They can interfere with ComboFix or remove some of its embedded files which may cause "unpredictable results".
    • Click on this link to see a list of programs that should be disabled. The list is not all inclusive. If yours is not listed and you don't know how to disable it, please ask.

      -----------------------------------------------------------

    • Close any open browsers.
    • WARNING: Combofix will disconnect your machine from the Internet as soon as it starts
    • Please do not attempt to re-connect your machine back to the Internet until Combofix has completely finished.
    • If there is no internet connection after running Combofix, then restart your computer to restore back your connection.

    -----------------------------------------------------------

  • Double click on combofix.exe & follow the prompts.
  • When finished, it will produce a report for you.
  • Please post the "C:\ComboFix.txt" along with a new HijackThis log for further review.
**Note: Do not mouseclick combofix's window while it's running. That may cause it to stall**
  • 0

#3
Rorschach112

Rorschach112

    Ralphie

  • Retired Staff
  • 47,710 posts
Due to lack of feedback, this topic has been closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP