Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Ad-Aware log file


  • Please log in to reply

#1
icanttelluit

icanttelluit

    New Member

  • Member
  • Pip
  • 3 posts
I was hoping that you could help me out. I read on of the other threads were you reffered to someone using Ad-Aware so I decided to try it, but I still seem to have quite a few left, though most of it is cookies.

Lavasoft Ad-aware Personal Build 6.181
Logfile created on :Wednesday, October 20, 2004 10:20:21 AM
Created with Ad-aware Personal, free for private use.
Using reference-file :01R345 19.10.2004
______________________________________________________

Reffile status:
=========================
Reference file loaded:
Reference Number : 01R345 19.10.2004
Internal build : 279
File location : C:\Program Files\Lavasoft\Ad-aware 6\reflist.ref
Total size : 1355923 Bytes
Signature data size : 1333583 Bytes
Reference data size : 22276 Bytes
Signatures total : 29489
Target categories : 10
Target families : 575

Memory + processor status:
==========================
Number of processors : 2
Processor architecture : Intel Pentium IV
Memory available:71 %
Total physical memory:1047532 kb
Available physical memory:737880 kb
Total page file size:2523772 kb
Available on page file:2322244 kb
Total virtual memory:2097024 kb
Available virtual memory:2049900 kb
OS:

Ad-aware Settings
=========================
Set : Activate in-depth scan (Recommended)
Set : Safe mode (always request confirmation)
Set : Scan active processes
Set : Scan registry
Set : Deep scan registry
Set : Scan my IE Favorites for banned URLs
Set : Scan within archives
Set : Scan my Hosts file

Extended Ad-aware Settings
=========================
Set : Unload recognized processes during scanning
Set : Include basic Ad-aware settings in logfile
Set : Include additional Ad-aware settings in logfile
Set : Let windows remove files in use at next reboot
Set : Delete quarantined objects after restoring
Set : Always back up reference file, before updating
Set : Play sound if scan produced a result


10-20-2004 10:20:21 AM - Scan started. (Custom mode)

Listing running processes
ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ

#:1 [smss.exe]
FilePath : \SystemRoot\System32\
ThreadCreationTime : 10-20-2004 2:18:47 PM
BasePriority : Normal


#:2 [winlogon.exe]
FilePath : \??\C:\WINDOWS\system32\
ThreadCreationTime : 10-20-2004 2:18:49 PM
BasePriority : High


#:3 [services.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 10-20-2004 2:18:49 PM
BasePriority : Normal
FileSize : 105 KB
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
CompanyName : Microsoft Corporation
FileDescription : Services and Controller app
InternalName : services.exe
OriginalFilename : services.exe
ProductName : Microsoft
Created on : 8/29/2002 10:00:00 AM
Last accessed : 10/20/2004 2:18:45 PM
Last modified : 8/4/2004 7:56:55 AM

#:4 [lsass.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 10-20-2004 2:18:49 PM
BasePriority : Normal
FileSize : 13 KB
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
CompanyName : Microsoft Corporation
FileDescription : LSA Shell (Export Version)
InternalName : lsass.exe
OriginalFilename : lsass.exe
ProductName : Microsoft
Created on : 8/29/2002 10:00:00 AM
Last accessed : 10/20/2004 2:18:45 PM
Last modified : 8/4/2004 7:56:50 AM

#:5 [ati2evxx.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 10-20-2004 2:18:50 PM
BasePriority : Normal
FileSize : 312 KB
Created on : 1/1/1980 5:00:00 AM
Last accessed : 10/20/2004 2:18:45 PM
Last modified : 8/25/2003 3:03:20 AM

#:6 [svchost.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 10-20-2004 2:18:50 PM
BasePriority : Normal
FileSize : 14 KB
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
OriginalFilename : svchost.exe
ProductName : Microsoft
Created on : 8/29/2002 10:00:00 AM
Last accessed : 10/20/2004 2:18:45 PM
Last modified : 8/4/2004 7:56:57 AM

#:7 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 10-20-2004 2:18:50 PM
BasePriority : Normal
FileSize : 14 KB
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
OriginalFilename : svchost.exe
ProductName : Microsoft
Created on : 8/29/2002 10:00:00 AM
Last accessed : 10/20/2004 2:18:45 PM
Last modified : 8/4/2004 7:56:57 AM

#:8 [spoolsv.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 10-20-2004 2:18:51 PM
BasePriority : Normal
FileSize : 56 KB
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
CompanyName : Microsoft Corporation
FileDescription : Spooler SubSystem App
InternalName : spoolsv.exe
OriginalFilename : spoolsv.exe
ProductName : Microsoft
Created on : 8/29/2002 10:00:00 AM
Last accessed : 10/20/2004 2:18:45 PM
Last modified : 8/4/2004 7:56:57 AM

#:9 [explorer.exe]
FilePath : C:\WINDOWS\
ThreadCreationTime : 10-20-2004 2:18:52 PM
BasePriority : Normal
FileSize : 1008 KB
FileVersion : 6.00.2900.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 6.00.2900.2180
CompanyName : Microsoft Corporation
FileDescription : Windows Explorer
InternalName : explorer
OriginalFilename : EXPLORER.EXE
ProductName : Microsoft
Created on : 8/29/2002 10:00:00 AM
Last accessed : 10/20/2004 2:18:52 PM
Last modified : 8/4/2004 7:56:49 AM

#:10 [hpgs2wnd.exe]
FilePath : C:\Program Files\Hewlett-Packard\HP Share-to-Web\
ThreadCreationTime : 10-20-2004 2:18:53 PM
BasePriority : Normal
FileSize : 68 KB
FileVersion : 2,7,0,0\
ProductVersion : 2,7,0,0\
Copyright : Copyright
CompanyName : Hewlett-Packard
FileDescription : hpgs2wnd
InternalName : hpgs2wnd
OriginalFilename : hpgs2wnd.exe
ProductName : Hewlett-Packard hpgs2wnd
Created on : 6/20/2002 7:30:04 PM
Last accessed : 10/20/2004 2:18:45 PM
Last modified : 6/20/2002 7:30:04 PM

#:11 [updaterui.exe]
FilePath : C:\Program Files\Network Associates\Common Framework\
ThreadCreationTime : 10-20-2004 2:18:53 PM
BasePriority : Normal
FileSize : 132 KB
FileVersion : 3.1.2.257
Copyright : Copyright
CompanyName : Network Associates, Inc.
FileDescription : Common User Interface
InternalName : UpdaterUI
OriginalFilename : UpdaterUI.exe
ProductName : McAfee Common Framework
Created on : 10/1/2004 8:00:15 AM
Last accessed : 10/20/2004 2:18:45 PM
Last modified : 3/26/2004 7:02:00 AM

#:12 [shstat.exe]
FilePath : C:\Program Files\Network Associates\VirusScan\
ThreadCreationTime : 10-20-2004 2:18:53 PM
BasePriority : Normal
FileSize : 88 KB
FileVersion : 7.0.0.511
ProductVersion : 7.0.0
Copyright : Copyright
CompanyName : Network Associates, Inc.
FileDescription : On-access scanner statistics
ProductName : VirusScan Enterprise
Created on : 3/6/2003 11:00:00 AM
Last accessed : 10/20/2004 2:18:45 PM
Last modified : 3/6/2003 11:00:00 AM

#:13 [qttask.exe]
FilePath : C:\Program Files\QuickTime\
ThreadCreationTime : 10-20-2004 2:18:53 PM
BasePriority : Normal
FileSize : 96 KB
FileVersion : 6.5.1
ProductVersion : QuickTime 6.5.1
CompanyName : Apple Computer, Inc.
InternalName : QuickTime Task
OriginalFilename : QTTask.exe
ProductName : QuickTime
Created on : 8/22/2004 5:06:53 PM
Last accessed : 10/20/2004 2:18:45 PM
Last modified : 8/22/2004 5:06:53 PM

#:14 [aim.exe]
FilePath : C:\Program Files\AIM\
ThreadCreationTime : 10-20-2004 2:18:53 PM
BasePriority : Normal
FileSize : 65 KB
FileVersion : 5.9.3690
ProductVersion : 5.9.3690
Copyright : Copyright
CompanyName : America Online, Inc.
FileDescription : AOL Instant Messenger
InternalName : AIM
OriginalFilename : AIM.EXE
ProductName : AOL Instant Messenger
Created on : 7/21/2004 5:13:55 PM
Last accessed : 10/20/2004 2:18:53 PM
Last modified : 9/1/2004 4:26:48 PM

#:15 [hpgs2wnf.exe]
FilePath : C:\Program Files\Hewlett-Packard\HP Share-to-Web\
ThreadCreationTime : 10-20-2004 2:18:53 PM
BasePriority : Normal
FileSize : 76 KB
FileVersion : 2, 7, 0,
ProductVersion : 2, 7, 0,
Copyright : Copyright 2002
FileDescription : hpgs2wnf Module
InternalName : hpgs2wnf
OriginalFilename : hpgs2wnf.EXE
ProductName : hpgs2wnf Module
Created on : 6/20/2002 7:36:38 PM
Last accessed : 10/20/2004 2:18:45 PM
Last modified : 6/20/2002 7:36:38 PM

#:16 [frameworkservice.exe]
FilePath : C:\Program Files\Network Associates\Common Framework\
ThreadCreationTime : 10-20-2004 2:19:04 PM
BasePriority : Normal
FileSize : 104 KB
FileVersion : 3.1.2.257
Copyright : Copyright
CompanyName : Network Associates, Inc.
FileDescription : Framework Service
InternalName : Framework
OriginalFilename : Framework.exe
ProductName : McAfee Common Framework
Created on : 10/1/2004 8:00:15 AM
Last accessed : 10/20/2004 2:18:45 PM
Last modified : 3/26/2004 7:02:00 AM

#:17 [mcshield.exe]
FilePath : C:\Program Files\Network Associates\VirusScan\
ThreadCreationTime : 10-20-2004 2:19:07 PM
BasePriority : High
FileSize : 228 KB
FileVersion : 7.0.0.237
ProductVersion : 7.0.0
Copyright : Copyright
CompanyName : Network Associates, Inc.
FileDescription : On-Access Scanner service
ProductName : VirusScan Enterprise
Created on : 3/6/2003 11:00:00 AM
Last accessed : 10/20/2004 2:18:45 PM
Last modified : 3/6/2003 11:00:00 AM

#:18 [vstskmgr.exe]
FilePath : C:\Program Files\Network Associates\VirusScan\
ThreadCreationTime : 10-20-2004 2:19:07 PM
BasePriority : Normal
FileSize : 124 KB
FileVersion : 7.0.0.511
ProductVersion : 7.0.0
Copyright : Copyright
CompanyName : Network Associates, Inc.
FileDescription : Task Manager : scheduling and OAS alerting service
ProductName : VirusScan Enterprise
Created on : 3/6/2003 11:00:00 AM
Last accessed : 10/20/2004 2:18:45 PM
Last modified : 3/6/2003 11:00:00 AM

#:19 [svchost.exe]
FilePath : C:\WINDOWS\System32\
ThreadCreationTime : 10-20-2004 2:19:07 PM
BasePriority : Normal
FileSize : 14 KB
FileVersion : 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158)
ProductVersion : 5.1.2600.2180
CompanyName : Microsoft Corporation
FileDescription : Generic Host Process for Win32 Services
InternalName : svchost.exe
OriginalFilename : svchost.exe
ProductName : Microsoft
Created on : 8/29/2002 10:00:00 AM
Last accessed : 10/20/2004 2:18:45 PM
Last modified : 8/4/2004 7:56:57 AM

#:20 [wanmpsvc.exe]
FilePath : C:\WINDOWS\
ThreadCreationTime : 10-20-2004 2:19:07 PM
BasePriority : Normal
FileSize : 64 KB
FileVersion : 7, 0, 0, 2
ProductVersion : 7, 0, 0, 2
Copyright : Copyright
CompanyName : America Online, Inc.
FileDescription : Wan Miniport (ATW) Service
InternalName : WanMPSvc
OriginalFilename : WanMPSvc.exe
ProductName : America Online
Created on : 7/22/2004 2:48:41 AM
Last accessed : 10/20/2004 2:18:45 PM
Last modified : 10/8/2002 5:00:24 PM

#:21 [symwsc.exe]
FilePath : C:\Program Files\Common Files\Symantec Shared\Security Center\
ThreadCreationTime : 10-20-2004 2:19:08 PM
BasePriority : Normal
FileSize : 309 KB
FileVersion : 2005.1.1.12
ProductVersion : 2005.1
Copyright : Copyright © 1997-2004 Symantec Corporation
CompanyName : Symantec Corporation
FileDescription : Norton Security Center Service
InternalName : SymWSC.exe
OriginalFilename : SymWSC.exe
ProductName : Norton Security Center
Created on : 8/5/2004 9:23:10 PM
Last accessed : 10/20/2004 2:18:45 PM
Last modified : 9/24/2004 2:15:42 AM

#:22 [wuauclt.exe]
FilePath : C:\WINDOWS\system32\
ThreadCreationTime : 10-20-2004 2:19:54 PM
BasePriority : Normal
FileSize : 111 KB
FileVersion : 5.4.3790.2182 built by: srv03_rtm(ntvbl04)
ProductVersion : 5.4.3790.2182
CompanyName : Microsoft Corporation
FileDescription : Automatic Updates
InternalName : wuauclt.exe
OriginalFilename : wuauclt.exe
ProductName : Microsoft
Created on : 8/29/2002 10:00:00 AM
Last accessed : 10/20/2004 2:17:59 PM
Last modified : 8/3/2004 6:02:20 PM

#:23 [ad-aware.exe]
FilePath : C:\Program Files\Lavasoft\Ad-aware 6\
ThreadCreationTime : 10-20-2004 2:20:10 PM
BasePriority : Normal
FileSize : 668 KB
FileVersion : 6.0.1.181
ProductVersion : 6.0.0.0
Copyright : Copyright
CompanyName : Lavasoft Sweden
FileDescription : Ad-aware 6 core application
InternalName : Ad-aware.exe
OriginalFilename : Ad-aware.exe
ProductName : Lavasoft Ad-aware Plus
Created on : 10/20/2004 9:43:39 AM
Last accessed : 10/20/2004 2:20:10 PM
Last modified : 7/13/2003 2:00:20 AM

Memory scan result :
ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ
New objects : 0
Objects found so far: 0


Started registry scan
ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ

Favoriteman Object recognized!
Type : RegValue
Data :
Category : Malware
Comment : "Counter"
Rootkey : HKEY_CURRENT_USER
Object : Software\Microsoft\Windows
Value : Counter


Favoriteman Object recognized!
Type : RegValue
Data :
Category : Malware
Comment : "Server"
Rootkey : HKEY_CURRENT_USER
Object : Software\Microsoft\Windows
Value : Server


Favoriteman Object recognized!
Type : RegValue
Data :
Category : Malware
Comment : "Object"
Rootkey : HKEY_CURRENT_USER
Object : Software\Microsoft\Windows
Value : Object


Registry scan result :
ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ
New objects : 3
Objects found so far: 3


Started deep registry scan
ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ

Deep registry scan result :
ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ
New objects : 0
Objects found so far: 3


Deep scanning and examining files (C:)
ŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻŻ

Tracking Cookie Object recognized!
Type : File
Data : nick@0[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/18/2004 8:33:41 AM
Last accessed : 10/20/2004 2:22:16 PM
Last modified : 10/18/2004 8:33:41 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@0[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 8/22/2004 8:46:52 PM
Last accessed : 10/20/2004 2:22:16 PM
Last modified : 8/22/2004 8:49:19 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@2o7[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\
FileSize : 2 KB
Created on : 10/20/2004 8:16:04 AM
Last accessed : 10/20/2004 2:22:16 PM
Last modified : 10/20/2004 8:46:00 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@a.as-us.falkag[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/20/2004 8:41:29 AM
Last accessed : 10/20/2004 2:22:16 PM
Last modified : 10/20/2004 8:41:29 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@ad-logics[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/20/2004 9:25:50 AM
Last accessed : 10/20/2004 2:22:16 PM
Last modified : 10/20/2004 9:25:50 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@ad8.bannerbank[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 9/24/2004 7:10:44 PM
Last accessed : 10/20/2004 2:22:16 PM
Last modified : 9/24/2004 7:10:44 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@ad9.bannerbank[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 9/24/2004 7:10:43 PM
Last accessed : 10/20/2004 2:22:16 PM
Last modified : 9/24/2004 7:10:43 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@adrevolver[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/19/2004 4:42:53 PM
Last accessed : 10/20/2004 2:22:16 PM
Last modified : 10/19/2004 4:43:14 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@ads.addynamix[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/15/2004 8:10:23 AM
Last accessed : 10/20/2004 2:22:16 PM
Last modified : 10/15/2004 8:10:23 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@ads.specificpop[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 8/23/2004 3:10:52 AM
Last accessed : 10/20/2004 2:22:16 PM
Last modified : 8/23/2004 3:10:53 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@advertising[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/20/2004 2:19:50 PM
Last accessed : 10/20/2004 2:19:50 PM
Last modified : 10/20/2004 2:19:50 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@as-us.falkag[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/15/2004 4:09:39 PM
Last accessed : 10/20/2004 2:22:17 PM
Last modified : 10/15/2004 4:09:39 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@atdmt[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/20/2004 8:40:07 AM
Last accessed : 10/20/2004 2:22:17 PM
Last modified : 10/20/2004 8:40:07 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@bluestreak[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/19/2004 4:20:46 AM
Last accessed : 10/20/2004 2:22:17 PM
Last modified : 10/19/2004 4:20:46 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@bravenet[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 9/14/2004 8:03:35 PM
Last accessed : 10/20/2004 2:22:17 PM
Last modified : 9/14/2004 8:03:35 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@casalemedia[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/19/2004 7:42:23 PM
Last accessed : 10/20/2004 2:22:17 PM
Last modified : 10/19/2004 7:42:23 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@centrport[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 8/18/2004 5:27:31 PM
Last accessed : 10/20/2004 2:22:17 PM
Last modified : 8/18/2004 5:27:31 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@cgi-bin[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 7/24/2004 7:22:25 PM
Last accessed : 10/20/2004 2:22:17 PM
Last modified : 7/24/2004 7:22:25 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@cgi-bin[3].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 9/20/2004 6:07:35 AM
Last accessed : 10/20/2004 2:22:17 PM
Last modified : 9/20/2004 6:07:35 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@cgi-bin[4].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/14/2004 2:57:02 AM
Last accessed : 10/20/2004 2:22:17 PM
Last modified : 10/14/2004 2:57:02 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@citi.bridgetrack[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/12/2004 2:40:25 AM
Last accessed : 10/20/2004 2:22:17 PM
Last modified : 10/12/2004 2:40:25 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@counter2.hitslink[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/20/2004 8:52:47 AM
Last accessed : 10/20/2004 2:22:17 PM
Last modified : 10/20/2004 9:12:34 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@datecam[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 9/23/2004 6:40:09 PM
Last accessed : 10/20/2004 2:22:17 PM
Last modified : 9/23/2004 6:40:09 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@domainsponsor[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 8/31/2004 12:34:38 AM
Last accessed : 10/20/2004 2:22:17 PM
Last modified : 9/12/2004 11:56:19 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@doubleclick[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/20/2004 8:39:30 AM
Last accessed : 10/20/2004 2:19:51 PM
Last modified : 10/20/2004 8:39:30 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@edge.ru4[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\
FileSize : 3 KB
Created on : 10/19/2004 4:53:02 PM
Last accessed : 10/20/2004 2:22:17 PM
Last modified : 10/19/2004 4:53:02 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@euniverseads[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/19/2004 4:52:35 PM
Last accessed : 10/20/2004 2:22:18 PM
Last modified : 10/19/2004 4:53:01 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@fastclick[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\
FileSize : 1 KB
Created on : 10/20/2004 8:41:30 AM
Last accessed : 10/20/2004 2:22:18 PM
Last modified : 10/20/2004 8:41:30 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@fortunecity[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/20/2004 8:09:49 AM
Last accessed : 10/20/2004 2:22:18 PM
Last modified : 10/20/2004 8:09:49 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@gator[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\
FileSize : 1 KB
Created on : 9/29/2004 6:34:12 AM
Last accessed : 10/20/2004 2:22:18 PM
Last modified : 9/29/2004 6:34:12 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@hc2.humanclick[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/20/2004 8:34:10 AM
Last accessed : 10/20/2004 2:22:18 PM
Last modified : 10/20/2004 8:34:10 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@hitbox[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/20/2004 8:40:10 AM
Last accessed : 10/20/2004 2:22:18 PM
Last modified : 10/20/2004 8:40:10 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@hotlog[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/15/2004 4:09:43 PM
Last accessed : 10/20/2004 2:22:18 PM
Last modified : 10/15/2004 4:09:55 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@internetfuel[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 8/22/2004 4:01:50 PM
Last accessed : 10/20/2004 2:22:18 PM
Last modified : 8/22/2004 8:17:41 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@landing.domainsponsor[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 9/12/2004 11:56:19 PM
Last accessed : 10/20/2004 2:22:19 PM
Last modified : 9/12/2004 11:56:19 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@locators[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 8/23/2004 8:28:52 AM
Last accessed : 10/20/2004 2:22:19 PM
Last modified : 8/23/2004 8:28:52 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@maxserving[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/18/2004 8:36:02 AM
Last accessed : 10/20/2004 2:22:19 PM
Last modified : 10/18/2004 8:36:02 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@overture[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 9/6/2004 11:33:10 PM
Last accessed : 10/20/2004 2:22:19 PM
Last modified : 9/6/2004 11:33:10 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@paycounter[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 7/21/2004 5:26:58 PM
Last accessed : 10/20/2004 2:22:19 PM
Last modified : 7/21/2004 5:26:58 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@phg.hitbox[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/20/2004 8:40:10 AM
Last accessed : 10/20/2004 2:22:19 PM
Last modified : 10/20/2004 8:40:10 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@qksrv[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 8/31/2004 6:05:35 AM
Last accessed : 10/20/2004 2:22:19 PM
Last modified : 8/31/2004 6:05:35 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@questionmarket[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/19/2004 4:36:49 PM
Last accessed : 10/20/2004 2:19:52 PM
Last modified : 10/20/2004 8:39:52 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@realmedia[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/19/2004 4:51:58 PM
Last accessed : 10/20/2004 2:22:19 PM
Last modified : 10/19/2004 4:53:02 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@revenue[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/18/2004 8:35:11 AM
Last accessed : 10/20/2004 2:22:19 PM
Last modified : 10/18/2004 8:35:11 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@servedby.advertising[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/20/2004 2:19:50 PM
Last accessed : 10/20/2004 2:19:50 PM
Last modified : 10/20/2004 2:19:50 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@server.iad.liveperson[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/15/2004 4:12:33 PM
Last accessed : 10/20/2004 2:22:20 PM
Last modified : 10/15/2004 4:12:33 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@statcounter[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 9/23/2004 5:02:28 AM
Last accessed : 10/20/2004 2:22:20 PM
Last modified : 9/23/2004 5:02:28 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@tickle[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 8/21/2004 3:33:47 PM
Last accessed : 10/20/2004 2:22:20 PM
Last modified : 9/18/2004 7:12:30 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@tracking.thunderdownloads[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/18/2004 8:38:33 AM
Last accessed : 10/20/2004 2:22:20 PM
Last modified : 10/18/2004 8:38:33 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@trafficmp[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\
FileSize : 1 KB
Created on : 10/19/2004 9:59:35 PM
Last accessed : 10/20/2004 2:22:20 PM
Last modified : 10/19/2004 9:59:35 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@tribalfusion[2].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/20/2004 8:41:30 AM
Last accessed : 10/20/2004 2:22:21 PM
Last modified : 10/20/2004 8:41:30 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@tripod[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 9/18/2004 7:12:26 AM
Last accessed : 10/20/2004 2:22:21 PM
Last modified : 9/18/2004 7:12:44 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@web4.realtracker[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/12/2004 2:40:22 AM
Last accessed : 10/20/2004 2:22:21 PM
Last modified : 10/12/2004 2:40:22 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@www.paypopup[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 8/22/2004 8:22:14 PM
Last accessed : 10/20/2004 2:22:22 PM
Last modified : 8/22/2004 8:22:14 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@www.sphosting-adserver[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 9/24/2004 6:08:30 PM
Last accessed : 10/20/2004 2:22:23 PM
Last modified : 9/24/2004 6:08:30 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@www1.paypopup[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 8/21/2004 3:38:55 PM
Last accessed : 10/20/2004 2:22:23 PM
Last modified : 8/21/2004 3:38:55 PM



Tracking Cookie Object recognized!
Type : File
Data : nick@z1.adserver[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\
FileSize : 1 KB
Created on : 7/24/2004 6:32:56 PM
Last accessed : 10/20/2004 2:22:24 PM
Last modified : 10/18/2004 8:32:09 AM



Tracking Cookie Object recognized!
Type : File
Data : nick@zedo[1].txt
Category : Data Miner
Comment :
Object : C:\Documents and Settings\Nick\Cookies\

Created on : 10/10/2004 9:11:11 PM
Last accessed : 10/20/2004 2:22:24 PM
Last modified : 10/10/2004 9:11:11 PM



eUniverse Object recognized!
Type : File
Data : a0066350.exe
Category : Data Miner
Comment :
Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP91\
FileSize : 84 KB
FileVersion : 1, 3, 0, 0
ProductVersion : 1, 3, 0, 0
Copyright : Copyright © 2003
FileDescription : sui MFC Application
InternalName : sui
OriginalFilename : sui.EXE
ProductName : sui Application
Created on : 11/6/2003 2:07:34 AM
Last accessed : 10/20/2004 2:16:53 PM
Last modified : 11/6/2003 2:07:34 AM



SahAgent Object recognized!
Type : File
Data : a0066351.dll
Category : Data Miner
Comment :
Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP91\
FileSize : 56 KB
FileVersion : 2, 0, 0, 1
ProductVersion : 2, 0, 0, 1
Copyright : Copyright
CompanyName : ShopAtHomeSelect
FileDescription : LSP
InternalName : LSP
OriginalFilename : LSP.DLL
ProductName : ShopAtHomeSelect LSP
Created on : 10/18/2004 8:38:37 AM
Last accessed : 10/20/2004 2:16:52 PM
Last modified : 4/27/2004 11:06:14 AM



eUniverse Object recognized!
Type : File
Data : a0066353.exe
Category : Data Miner
Comment :
Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP91\
FileSize : 90 KB
Created on : 12/3/2003 9:51:00 PM
Last accessed : 10/20/2004 2:16:52 PM
Last modified : 12/3/2003 9:51:00 PM



ClearSearch Object recognized!
Type : File
Data : a0066354.exe
Category : Data Miner
Comment :
Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP91\
FileSize : 76 KB
FileVersion : 1, 0, 0, 3
ProductVersion : 1, 0, 0, 3
Copyright : Copyright
CompanyName : Clear Search
FileDescription : Loader
InternalName : Loader
OriginalFilename : Loader.exe
ProductName : Loader
Created on : 10/18/2004 8:37:26 AM
Last accessed : 10/20/2004 2:16:53 PM
Last modified : 8/20/2003 6:11:00 PM



eUniverse Object recognized!
Type : File
Data : a0066355.exe
Category : Data Miner
Comment :
Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP91\
FileSize : 32 KB
FileVersion : 1, 3, 5, 0
ProductVersion : 1, 3, 5, 0
Copyright : Copyright © 2003
FileDescription : Setup
InternalName : Tipb
OriginalFilename : tipb.EXE
ProductName : Setup
Created on : 11/15/2003 11:07:40 AM
Last accessed : 10/20/2004 2:16:53 PM
Last modified : 11/15/2003 11:07:40 AM



eUniverse Object recognized!
Type : File
Data : a0066356.dll
Category : Data Miner
Comment :
Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP91\
FileSize : 40 KB
FileVersion : 1, 0, 0, 1
ProductVersion : 1, 0, 0, 1
Copyright : Copyright 2003
FileDescription : BHO Module
InternalName : BHO
OriginalFilename : BHO.DLL
ProductName : BHO Module
Created on : 10/16/2003 5:49:20 PM
Last accessed : 10/20/2004 2:16:53 PM
Last modified : 10/16/2003 5:49:20 PM



ClearSearch Object recognized!
Type : File
Data : a0066357.exe
Category : Data Miner
Comment :
Object : C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP91\
FileSize : 79 KB
FileVersion : 1, 4, 0, 4
ProductVersion : 1, 4, 0, 4
Copyright : Copyright
CompanyName : Clear Search
FileDescription : Loader
InternalName : Loader
OriginalFilename : Loader.exe
ProductName : Loader
Created on : 9/23/2004 4:41:02 AM
Last accessed : 10/20/2004 2:16:53 PM
Last modified : 9/23/2004 4:40:57 AM



BlazingTools Perfect Keylogger Object recognized!
Type : File
Data : bpk.exe
Category : Monitoring Tool
Comment :
Object : C:\WINDOWS\SYSTEM32\
FileSize : 384 KB
Created on : 9/27/2003 6:33:16 AM
Last accessed : 10/20/2004 2:34:12 PM
Last modified : 9/27/2003 6:33:16 AM



Favoriteman Object recognized!
Type : File
Data : im64.dll
Category : Malware
Comment :
Object : C:\WINDOWS\SYSTEM32\

Created on : 10/18/2004 8:38:16 AM
Last accessed : 10/20/2004 2:34:20 PM
Last modified : 10/18/2004 8:38:16 AM
  • 0

Advertisements


#2
-=jonnyrotten=-

-=jonnyrotten=-

    Member 2k

  • Retired Staff
  • 2,678 posts
Here is the newest version of Ad-aware. Use this and then download Hijack This and post a Hijack This log.

Using Ad-aware: Open Ad-Aware and use the Check for updates now link. Download and accept the latest reference file. When finished click the Start button. When done scanning, the Abort button will change to Next. Click the Next button. Right-click in the Scanning Results window and click "Select all objects". Then click the "Next" button and confirm that you want to delete the selected entries.

CLICK HERE to download Ad-aware

Let us take a closer look at what is running on your PC. We'll need you to use a free diagnostic tool (HiJackThis) and post a log back here with the results.

Click the HijackThis Guide in my signature, download it and follow the instructions in the guide.

Most of what it lists will be harmless or even essential, DO NOT delete or modify anything yet! Someone will be along to tell you what steps to take after you post the contents of the scan results.

-=jonnyrotten=- <_<
  • 0

#3
icanttelluit

icanttelluit

    New Member

  • Topic Starter
  • Member
  • Pip
  • 3 posts
Here is my HiJack this

Logfile of HijackThis v1.98.2
Scan saved at 12:58:08 AM, on 10/21/2004
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
C:\Program Files\Network Associates\VirusScan\mcshield.exe
C:\Program Files\Network Associates\VirusScan\vstskmgr.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Documents and Settings\Nick\Local Settings\Temp\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = https://my.rutgers.edu/portal/
R3 - Default URLSearchHook is missing
O2 - BHO: CSBBCore Class - {00000000-0000-0000-0000-000000002230} - C:\Program Files\CSBB\CSBB.DLL
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [saap] c:\windows\ioneei~1\saap.exe
O4 - HKLM\..\Run: [WhenUSearchWHSE] C:\Program Files\WhenUSearch\whse.exe
O4 - HKLM\..\Run: [CSV7P28] C:\Program Files\CSBB\CSV7P28.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
  • 0

#4
admin

admin

    Founder Geek

  • Administrator
  • 24,504 posts
Please go offline, close all browsers and any open Windows, making sure that only HijackThis is open. Scan and when it finishes, put an X in the boxes, only next to these following items, then click fix checked.
R3 - Default URLSearchHook is missing
O2 - BHO: CSBBCore Class - {00000000-0000-0000-0000-000000002230} - C:\Program Files\CSBB\CSBB.DLL
O4 - HKLM\..\Run: [saap] c:\windows\ioneei~1\saap.exe
O4 - HKLM\..\Run: [WhenUSearchWHSE] C:\Program Files\WhenUSearch\whse.exe
O4 - HKLM\..\Run: [CSV7P28] C:\Program Files\CSBB\CSV7P28.exe


Please reboot into safe mode - How do I boot into "Safe" mode?.
Be sure you're able to view hidden files, and remove the following files in bold (if found):C:\Program Files\CSBB <- this folder
c:\windows\ioneei~1 <- this folder (name abbreviated)
C:\Program Files\WhenUSearch <- this folder
C:\Program Files\CSBB <- this folder

Reboot your PC.

If you would please, rescan with HijackThis and post a fresh log in this same topic, and let us know how your system's working. <_<
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP