You helpful people helped me get rid of the smitfraud trojan a while back, and I thought you might be able to help me with this.
I have a feeling I have some type of spyware (possibly a password logger and possibly others) embedded in my system. My computer runs really slow when I connect to the internet and just in general over the past few days.
Here is my current Hijackthislog -
Logfile of HijackThis v1.99.1
Scan saved at 9:13:59 AM, on 6/16/2005
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\WINDOWS\system32\slserv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\Lavasoft\Ad-Aware SE Professional\Ad-Watch.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\CleanUp!\Cleanup.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRA~1\MICROS~2\Office10\OUTLOOK.EXE
C:\Program Files\Microsoft Office\Office10\WINWORD.EXE
C:\WINDOWS\slrundll.exe
C:\Documents and Settings\Jennifer\Desktop\HijackThis.exe
O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~1\tools\iesdsg.dll
O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AWMON] "C:\Program Files\Lavasoft\Ad-Aware SE Professional\Ad-Watch.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{1875F90A-E01E-460A-A055-5338A3CC7629}: NameServer = 203.109.252.42 203.109.252.43
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe
Also, here is my CLEANUP! log (notice there are lots of index.dat files that say will be deleted when you restart, but they never are because I reboot and they don't go away) -
ALSO note that I ran this Cleanup a second time (one straight after the other) and found ALL these new TEMP/etc items which were not there the first time
CleanUp! started on 06/16/05 09:19:54.
C:\Documents and Settings\Jennifer\Local Settings\Temporary Internet Files\Content.IE5\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\Jennifer\Local Settings\Temporary Internet Files\Content.IE5\CX2BCDYZ\Malware_Removal_HiJackThis_Logs_Go_Here-new-topic-f37[1].html currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\Jennifer\Local Settings\Temporary Internet Files\Content.IE5\CX2BCDYZ\Malware_Removal_HiJackThis_Logs_Go_Here-new-topic-f37[1].html currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\Jennifer\Local Settings\Temporary Internet Files\Content.IE5\CX2BCDYZ\Malware_Removal_HiJackThis_Logs_Go_Here-new-topic-f37[1].html currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\Jennifer\Local Settings\Temporary Internet Files\Content.IE5\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\Jennifer\Local Settings\Temporary Internet Files\Content.IE5\CX2BCDYZ\Malware_Removal_HiJackThis_Logs_Go_Here-new-topic-f37[1].html currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\Jennifer\Local Settings\History\History.IE5\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\Jennifer\Local Settings\History\History.IE5\MSHist012005061620050617\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\Jennifer\Local Settings\History\History.IE5\MSHist012005061620050617\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\Jennifer\Local Settings\History\History.IE5\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\Jennifer\Local Settings\History\History.IE5\MSHist012005061620050617\index.dat currently in use. Will be deleted when Windows is restarted.
'Typed URLs' (Internet Explorer) - removed from the registry.
C:\Documents and Settings\Jennifer\Cookies\index.dat currently in use. Will be deleted when Windows is restarted.
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\~DFEE9.tmp currently in use. Will be deleted when Windows is restarted.
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\DFC5A2B2.TMP - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\0006C9D5.key - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\about.bmp - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\avp.klb - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\avp.set - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\avp.vnd - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\bitmap1.bmp - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\ca.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\config.lan - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\daily-ex.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\daily-x.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\daily.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\eicar.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\esupdate.exe - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\ext001.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\ext002.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\ext003.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\ext004.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\ext999.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\fa.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\gen001.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\gen002.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\gen003.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\gen004.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\gen999.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Getvlist.exe - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\ipc.dll - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\kavsign.exe - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\kavss.dat - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\kavss.dll - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\kavss.exe - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\kavssd.dll - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\kavssdi.dll - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\kavssi.dll - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\KAVUpd.dll - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\KAVUpd.exe - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\kavvlg.dll - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\kernel.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\keyid.dat - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\krndos.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\krnengn.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\krnexe.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\krnexe32.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\krnjava.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\krnmacro.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\krnunp.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\language.ini - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\license.exe - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\license.txt - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\loadtxt.exe - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\mail.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\main.avi - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\malw001.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\malw002.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\malw003.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\malw004.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\MicroWorld Toolkit Utility.txt - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\msvlclnt.dll - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\mwav.ini - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\mwavscan.com - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\mwti.sgn - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\ocr.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\product.bmp - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\psapi.dll - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\riched32.dll - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\smart.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\sysr.txt - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj001.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj002.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj003.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj004.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj005.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj006.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj007.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj008.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj009.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj010.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj011.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj012.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj013.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj014.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj015.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj016.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj017.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj018.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj019.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj020.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj021.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj022.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj023.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj024.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj025.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\troj026.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp001.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp002.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp003.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp004.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp005.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp006.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp007.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp008.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp009.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp010.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp011.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp012.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp013.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp014.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp015.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp016.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp017.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp018.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp019.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp020.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp021.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp022.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\unp023.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\viewtcp.exe - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\ViewTcp.lan - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\virus.avi - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\virus001.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\virus002.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\virus003.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\virus004.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\virus005.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\virus006.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\virus007.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\virus008.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\virus009.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\virus010.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\virus011.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\virus012.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\virus013.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\virus014.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\virus015.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\virus016.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\virus017.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\virus018.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\virus019.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\virus020.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\WIN.PRO - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\worm001.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\worm002.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\worm003.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\worm004.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\worm005.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\worm999.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\x-files.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\MWAV.LOG - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\mwXface.log - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Perflib_Perfdata_b38.dat currently in use. Will be deleted when Windows is restarted.
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\ca.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\daily-ex.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\daily-x.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\daily.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\eicar.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\ext001.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\ext002.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\ext003.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\ext004.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\ext999.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\fa.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\gen001.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\gen002.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\gen003.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\gen004.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\gen999.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\kernel.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\krndos.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\krnengn.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\krnexe.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\krnexe32.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\krnjava.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\krnmacro.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\krnunp.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\mail.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\malw001.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\malw002.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\malw003.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\malw004.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\ocr.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\smart.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj001.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj002.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj003.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj004.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj005.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj006.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj007.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj008.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj009.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj010.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj011.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj012.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj013.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj014.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj015.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj016.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj017.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj018.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj019.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj020.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj021.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj022.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj023.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj024.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj025.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\troj026.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp001.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp002.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp003.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp004.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp005.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp006.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp007.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp008.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp009.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp010.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp011.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp012.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp013.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp014.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp015.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp016.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp017.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp018.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp019.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp020.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp021.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp022.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\unp023.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\virus001.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\virus002.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\virus003.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\virus004.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\virus005.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\virus006.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\virus007.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\virus008.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\virus009.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\virus010.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\virus011.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\virus012.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\virus013.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\virus014.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\virus015.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\virus016.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\virus017.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\virus018.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\virus019.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\virus020.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\worm001.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\worm002.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\worm003.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\worm004.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\worm005.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\worm999.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\x-files.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\avp.set - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\avp.klb - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Download\ - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\ca.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\daily-ex.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\daily-x.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\daily.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\eicar.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\ext001.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\ext002.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\ext003.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\ext004.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\ext999.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\fa.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\gen001.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\gen002.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\gen003.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\gen004.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\gen999.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\kernel.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\krndos.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\krnengn.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\krnexe.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\krnexe32.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\krnjava.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\krnmacro.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\krnunp.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\mail.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\malw001.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\malw002.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\malw003.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\malw004.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\ocr.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\smart.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj001.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj002.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj003.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj004.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj005.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj006.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj007.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj008.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj009.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj010.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj011.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj012.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj013.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj014.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj015.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj016.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj017.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj018.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj019.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj020.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj021.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj022.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj023.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj024.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj025.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\troj026.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp001.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp002.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp003.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp004.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp005.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp006.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp007.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp008.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp009.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp010.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp011.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp012.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp013.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp014.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp015.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp016.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp017.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp018.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp019.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp020.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp021.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp022.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\unp023.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\virus001.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\virus002.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\virus003.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\virus004.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\virus005.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\virus006.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\virus007.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\virus008.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\virus009.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\virus010.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\virus011.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\virus012.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\virus013.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\virus014.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\virus015.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\virus016.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\virus017.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\virus018.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\virus019.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\virus020.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\worm001.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\worm002.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\worm003.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\worm004.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\worm005.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\worm999.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\x-files.avc - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\avp.set - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\avp.klb - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Bases_X\ - deleted
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\~DFEE9.tmp currently in use. Will be deleted when Windows is restarted.
C:\DOCUME~1\Jennifer\LOCALS~1\Temp\Perflib_Perfdata_b38.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\Jennifer\Cookies\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\Jennifer\locals~1\tempor~1\Content.IE5\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\Jennifer\locals~1\tempor~1\Content.IE5\CX2BCDYZ\Malware_Removal_HiJackThis_Logs_Go_Here-new-topic-f37[1].html currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\Jennifer\Cookies\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\Jennifer\Local Settings\History\History.IE5\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\Jennifer\Local Settings\History\History.IE5\MSHist012005061620050617\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\Jennifer\Local Settings\Temp\~DFEE9.tmp currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\Jennifer\Local Settings\Temp\Perflib_Perfdata_b38.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\Jennifer\Local Settings\Temporary Internet Files\Content.IE5\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\Jennifer\Local Settings\Temporary Internet Files\Content.IE5\CX2BCDYZ\Malware_Removal_HiJackThis_Logs_Go_Here-new-topic-f37[1].html currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\LocalService\Cookies\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\LocalService\locals~1\tempor~1\Content.IE5\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\LocalService\Cookies\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\LocalService\Local Settings\History\History.IE5\index.dat currently in use. Will be deleted when Windows is restarted.
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\index.dat currently in use. Will be deleted when Windows is restarted.
'Run MRU' list - removed from the registry.
Paint Recent File List - removed from the registry.
Telnet's MRU list - removed from the registry.
CleanUp! recovered 17.9 MB of disk space from 367 files.
CleanUp! finished on 06/16/05 09:20:09.
Interestingly as well (and perhaps scary) I also ran SPYWARE DOCTOR (I have a free version that only finds viruses and doesn't remove them).
It found 2 infections -
PASSWORD DETECTOR
found in -
C:\Program Files\CleanUp!\uninstall.exe
C:\System Volume Information\_restore{E47F9DFB-D64F-43C6-A121_75700BCA29CF}\RP33\A0006592.exe
Should I be concerned about these?
I have Adaware, Spybot and AVG antivirus (have ran all and they say everything is fine, just as they
did when I was infected with the smitfraud virus)
Any help would be appreciated.
Hayden