Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Problems with WinMixer Popups and Others. [CLOSED]


  • This topic is locked This topic is locked

#16
Unreal Vibration

Unreal Vibration

    Member

  • Topic Starter
  • Member
  • PipPip
  • 24 posts
Logfile of HijackThis v1.99.1
Scan saved at 11:28:54 AM, on 8/15/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\DAP\DAP.EXE
C:\Program Files\2Wire\2PortalMon.exe
C:\Program Files\Yahoo!\browser\ybrwicon.exe
C:\WINDOWS\System32\hkcmd.exe
C:\WINDOWS\BCMSMMSG.exe
C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\MSN Apps\Updater\01.02.3000.1001\en-us\msnappau.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\mozilla.org\Mozilla\mozilla.exe
C:\Documents and Settings\user\My Documents\Kai\HiJackThis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://yahoo.sbc.com/dsl
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\about.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
O4 - HKLM\..\Run: [IPInSightMonitor 01] "C:\Program Files\SBC Yahoo!\Connection Manager\IP InSight\IPMon32.exe"
O4 - HKLM\..\Run: [DownloadAccelerator] C:\PROGRA~1\DAP\DAP.EXE /STARTUP
O4 - HKLM\..\Run: [2wSysTray] C:\Program Files\2Wire\2PortalMon.exe
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [YBrowser] C:\Program Files\Yahoo!\browser\ybrwicon.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [BCMSMMSG] BCMSMMSG.exe
O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [DwlClient] C:\Program Files\Common Files\Dell\EUSW\Support.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [msnappau] "C:\Program Files\MSN Apps\Updater\01.02.3000.1001\en-us\msnappau.exe"
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 4.2\THGuard.exe"
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - Global Startup: America Online 9.0 Tray Icon.lnk = C:\Program Files\America Online 9.0\aoltray.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\DAP\dapextie.htm
O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\DAP\dapextie2.htm
O8 - Extra context menu item: Download All by FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: Download using FlashGet - C:\Program Files\FlashGet\jc_link.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\Program Files\Yahoo!\Common\ylogin.dll
O9 - Extra 'Tools' menuitem: Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\Program Files\Yahoo!\Common\ylogin.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zon...kr.cab31267.cab
O16 - DPF: {10093E98-C073-4C75-8D0E-FB5CD3A71D33} (ZoneUpwords Object) - http://messenger.zon...ds.cab31267.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zon...nt.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zon...er.cab28578.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.c...nst20040510.cab
O16 - DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} (Groove Control) - http://www.nick.com/.../GrooveAX27.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zon...nt.cab28578.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoft...free/asinst.cab
O16 - DPF: {AD8D3C68-0C60-4B53-8A9E-BC654BBB36FE} -
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn...pDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zon...ro.cab32846.cab
O16 - DPF: {C3DFA998-A486-11D4-AA25-00C04F72DAEB} (MSN Photo Upload Tool) - http://sc.groups.msn...UC/MsnPUpld.cab
O16 - DPF: {D18F962A-3722-4B59-B08D-28BB9EB2281E} (PhotosCtrl Class) - http://photos.yahoo....plorer1_9us.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zon...wn.cab28578.cab
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
O23 - Service: YPCService - Yahoo! Inc. - C:\WINDOWS\SYSTEM32\YPCSER~1.EXE
  • 0

Advertisements


#17
Michelle

Michelle

    Malware Removal Goddess

  • Retired Staff
  • 8,928 posts
It's looking much better :tazz:

Please download WebRoot SpySweeper from HERE (It's a 2 week trial):
  • Click the Free Trial link on the right - next to "SpySweeper for Home Computers" to download the program.
  • Install it.
  • Once the program is installed, it will open.
  • It will prompt you to update to the latest definitions, click Yes.
  • Once the definitions are installed, click Sweep Now on the left side.
  • Click the Start button.
  • When it's done scanning, click the Next button.
  • Make sure everything has a check next to it, then click the Next button.
  • It will remove all of the items found.
  • Click Session Log in the upper right corner, copy everything in that window.
  • Click the Summary tab and click Finish.
  • Paste the contents of the session log you copied into your next reply.

  • 0

#18
Unreal Vibration

Unreal Vibration

    Member

  • Topic Starter
  • Member
  • PipPip
  • 24 posts
********
11:59 AM: |··· Start of Session, Monday, August 15, 2005 ···|
11:59 AM: Spy Sweeper started
11:59 AM: Sweep initiated using definitions version 516
12:00 PM: Starting Memory Sweep
12:03 PM: Memory Sweep Complete, Elapsed Time: 00:03:01
12:03 PM: Starting Registry Sweep
12:03 PM: Found Adware: abcsearch
12:03 PM: HKCR\bman.bmanager\ (3 subtraces) (ID = 102391)
12:03 PM: HKCR\bman.ciexplorer\ (3 subtraces) (ID = 102392)
12:03 PM: HKLM\software\classes\bman.bmanager\ (3 subtraces) (ID = 102399)
12:03 PM: HKLM\software\classes\bman.ciexplorer\ (3 subtraces) (ID = 102400)
12:03 PM: HKLM\software\classes\typelib\{a6713e88-e0c0-4e24-a2f3-11067ba30115}\ (18 subtraces) (ID = 102408)
12:03 PM: HKCR\typelib\{a6713e88-e0c0-4e24-a2f3-11067ba30115}\ (18 subtraces) (ID = 102413)
12:03 PM: HKCR\typelib\{a6713e88-e0c0-4e24-a2f3-11067ba30115}\1.2\helpdir\ (1 subtraces) (ID = 102414)
12:03 PM: Found Trojan Horse: alwaysupdatednews
12:03 PM: HKCR\appid\aunbho.dll\ (1 subtraces) (ID = 103538)
12:03 PM: HKCR\appid\{b61f67f7-91f3-4a56-99a7-ab972f2318df}\ (1 subtraces) (ID = 103539)
12:03 PM: HKCR\interface\{032a2af0-ce7e-4ecb-908b-6a17d3d69a97}\ (8 subtraces) (ID = 103543)
12:03 PM: HKLM\software\classes\appid\aunbho.dll\ (1 subtraces) (ID = 103545)
12:03 PM: HKLM\software\classes\appid\{b61f67f7-91f3-4a56-99a7-ab972f2318df}\ (1 subtraces) (ID = 103546)
12:03 PM: HKLM\software\classes\interface\{032a2af0-ce7e-4ecb-908b-6a17d3d69a97}\ (8 subtraces) (ID = 103550)
12:03 PM: HKLM\software\classes\typelib\{b61f67f7-91f3-4a56-99a7-ab972f2318df}\ (9 subtraces) (ID = 103551)
12:03 PM: HKCR\typelib\{b61f67f7-91f3-4a56-99a7-ab972f2318df}\ (9 subtraces) (ID = 103556)
12:03 PM: Found Adware: browseraid
12:03 PM: HKU\S-1-5-21-4207288409-2464505330-2478006519-1007\software\a70f6a1d-0195-42a2-934c-d8ac0f7c08eb\ (1 subtraces) (ID = 105078)
12:03 PM: Found Adware: comet cursor
12:03 PM: HKCR\appid\dmserver.exe\ (1 subtraces) (ID = 106303)
12:03 PM: HKLM\software\classes\appid\dmserver.exe\ (1 subtraces) (ID = 106525)
12:03 PM: Found Adware: couponage
12:03 PM: HKLM\software\couponage\ (3891 subtraces) (ID = 112524)
12:03 PM: Found Adware: delfin
12:03 PM: HKLM\software\vidctrl\ (3 subtraces) (ID = 124897)
12:03 PM: Found Adware: ebates money maker
12:03 PM: HKU\S-1-5-21-4207288409-2464505330-2478006519-1007\software\microsoft\internet explorer\extensions\cmdmapping\ || {6685509e-b47b-4f47-8e16-9a5f3a62f683} (ID = 125587)
12:03 PM: Found Adware: drsnsrch.com hijack
12:03 PM: HKU\S-1-5-21-4207288409-2464505330-2478006519-1007\software\microsoft\search assistant\ || defaultsearchurl (ID = 128205)
12:03 PM: Found Adware: isearch desktop search
12:03 PM: HKCR\mfiltis\ (3 subtraces) (ID = 129007)
12:03 PM: HKLM\software\classes\mfiltis\ (3 subtraces) (ID = 129010)
12:03 PM: Found Trojan Horse: mynetprotector
12:03 PM: HKCR\bho.mybhospy.1\ (3 subtraces) (ID = 135472)
12:03 PM: HKCR\bho.mybhospy\ (5 subtraces) (ID = 135473)
12:03 PM: HKCR\interface\{1756f55d-5c4e-4721-8b0e-4b3958281b67}\ (8 subtraces) (ID = 135475)
12:03 PM: HKLM\software\classes\bho.mybhospy.1\ (3 subtraces) (ID = 135476)
12:03 PM: HKLM\software\classes\bho.mybhospy\ (5 subtraces) (ID = 135477)
12:03 PM: HKLM\software\classes\interface\{1756f55d-5c4e-4721-8b0e-4b3958281b67}\ (8 subtraces) (ID = 135479)
12:03 PM: HKLM\software\classes\typelib\{725869c2-85c2-488e-9828-6b9c6ca121d3}\ (9 subtraces) (ID = 135480)
12:03 PM: HKCR\typelib\{725869c2-85c2-488e-9828-6b9c6ca121d3}\ (9 subtraces) (ID = 135488)
12:03 PM: Found Adware: redzip toolbar
12:03 PM: HKU\S-1-5-21-4207288409-2464505330-2478006519-1007\software\microsoft\windows\currentversion\explorer\ || insid (ID = 139328)
12:03 PM: Found Adware: search3 toolbar
12:03 PM: HKU\S-1-5-21-4207288409-2464505330-2478006519-1007\software\microsoft\internet explorer\toolbar\webbrowser\ || {4e7bd74f-2b8d-469e-a1f6-fc7eb590a97d} (ID = 140779)
12:03 PM: Found Adware: shopathomeselect
12:03 PM: HKLM\software\classes\webinstaller.cexecute.1\ (3 subtraces) (ID = 141687)
12:03 PM: HKCR\webinstaller.cexecute.1\ (3 subtraces) (ID = 141739)
12:03 PM: Found Adware: yoursitebar
12:03 PM: HKCR\interface\{90ce74cc-788a-4a00-b38d-cbca08cc9e8f}\ (8 subtraces) (ID = 147833)
12:03 PM: HKLM\software\classes\interface\{90ce74cc-788a-4a00-b38d-cbca08cc9e8f}\ (8 subtraces) (ID = 147839)
12:03 PM: HKLM\software\classes\typelib\{cc257918-f435-4a33-8231-2b8195990cca}\ (9 subtraces) (ID = 147843)
12:03 PM: HKCR\typelib\{cc257918-f435-4a33-8231-2b8195990cca}\ (9 subtraces) (ID = 147862)
12:03 PM: Found Adware: shopnavupdater
12:03 PM: HKCR\clsid\{00027925-0017-4faf-9539-90e4ac0b9ec5}\ (11 subtraces) (ID = 359486)
12:03 PM: HKCR\clsid\{5e0910c6-9e45-481c-a2ec-0ec29c96ebeb}\ (11 subtraces) (ID = 359487)
12:03 PM: HKCR\clsid\{8f7d96aa-489a-4194-ab34-21ef42507932}\ (13 subtraces) (ID = 359488)
12:03 PM: HKCR\clsid\{79406f24-8e95-4af8-9fef-2ea2b504e707}\ (13 subtraces) (ID = 359489)
12:03 PM: HKCR\clsid\{b424e2aa-4466-41ca-8194-5a83995a9b15}\ (11 subtraces) (ID = 359490)
12:03 PM: HKCR\snb.band\ (5 subtraces) (ID = 359491)
12:03 PM: HKCR\sntb.bottomframe\ (5 subtraces) (ID = 359492)
12:03 PM: HKCR\sntb.leftframe\ (5 subtraces) (ID = 359493)
12:03 PM: HKCR\sntb.popupbrowser\ (5 subtraces) (ID = 359494)
12:03 PM: HKCR\sntb.popupwindow\ (5 subtraces) (ID = 359495)
12:03 PM: HKLM\software\classes\clsid\{00027925-0017-4faf-9539-90e4ac0b9ec5}\ (11 subtraces) (ID = 359496)
12:03 PM: HKLM\software\classes\clsid\{5e0910c6-9e45-481c-a2ec-0ec29c96ebeb}\ (11 subtraces) (ID = 359497)
12:03 PM: HKLM\software\classes\clsid\{8f7d96aa-489a-4194-ab34-21ef42507932}\ (13 subtraces) (ID = 359498)
12:03 PM: HKLM\software\classes\clsid\{79406f24-8e95-4af8-9fef-2ea2b504e707}\ (13 subtraces) (ID = 359499)
12:03 PM: HKLM\software\classes\clsid\{b424e2aa-4466-41ca-8194-5a83995a9b15}\ (11 subtraces) (ID = 359500)
12:03 PM: HKLM\software\classes\snb.band\ (5 subtraces) (ID = 359501)
12:03 PM: HKLM\software\classes\sntb.bottomframe\ (5 subtraces) (ID = 359502)
12:03 PM: HKLM\software\classes\sntb.leftframe\ (5 subtraces) (ID = 359503)
12:03 PM: HKLM\software\classes\sntb.popupbrowser.1\ (3 subtraces) (ID = 359504)
12:03 PM: HKLM\software\classes\sntb.popupbrowser\ (5 subtraces) (ID = 359505)
12:03 PM: HKLM\software\classes\sntb.popupwindow.1\ (3 subtraces) (ID = 359506)
12:03 PM: HKLM\software\classes\sntb.popupwindow\ (5 subtraces) (ID = 359507)
12:03 PM: HKLM\software\classes\typelib\{46bd3f46-6e46-43d2-a69d-fd8c05044475}\ (9 subtraces) (ID = 359508)
12:03 PM: HKCR\typelib\{46bd3f46-6e46-43d2-a69d-fd8c05044475}\ (9 subtraces) (ID = 359513)
12:03 PM: HKLM\software\dealsonline\.data\ (3399 subtraces) (ID = 639276)
12:03 PM: Registry Sweep Complete, Elapsed Time:00:00:44
12:03 PM: Starting Cookie Sweep
12:03 PM: Found Spy Cookie: yieldmanager cookie
12:03 PM: user@ad.yieldmanager[2].txt (ID = 3751)
12:03 PM: Found Spy Cookie: adknowledge cookie
12:03 PM: user@adknowledge[1].txt (ID = 2072)
12:03 PM: Found Spy Cookie: cc214142 cookie
12:03 PM: user@ads.cc214142[2].txt (ID = 2367)
12:03 PM: Found Spy Cookie: belnk cookie
12:03 PM: user@ath.belnk[1].txt (ID = 2293)
12:03 PM: Found Spy Cookie: atwola cookie
12:03 PM: user@atwola[1].txt (ID = 2255)
12:03 PM: user@belnk[2].txt (ID = 2292)
12:03 PM: Found Spy Cookie: com.com cookie
12:03 PM: user@com[2].txt (ID = 2445)
12:03 PM: user@dist.belnk[1].txt (ID = 2293)
12:03 PM: Found Spy Cookie: go.com cookie
12:03 PM: user@go[1].txt (ID = 2728)
12:03 PM: Found Spy Cookie: ic-live cookie
12:03 PM: user@ic-live[1].txt (ID = 2821)
12:03 PM: Found Spy Cookie: touchclarity cookie
12:03 PM: user@partypoker.touchclarity[1].txt (ID = 3567)
12:03 PM: Found Spy Cookie: partypoker cookie
12:03 PM: user@partypoker[1].txt (ID = 3111)
12:03 PM: user@psc.disney.go[1].txt (ID = 2729)
12:03 PM: Found Spy Cookie: realmedia cookie
12:03 PM: user@realmedia[1].txt (ID = 3235)
12:03 PM: Found Spy Cookie: adjuggler cookie
12:03 PM: user@rotator.adjuggler[1].txt (ID = 2071)
12:03 PM: Found Spy Cookie: reliablestats cookie
12:03 PM: user@stats1.reliablestats[2].txt (ID = 3254)
12:03 PM: user@www.disney.go[1].txt (ID = 2729)
12:03 PM: Found Spy Cookie: redzip cookie
12:03 PM: user@www.redzip[2].txt (ID = 3250)
12:03 PM: Found Spy Cookie: upspiral cookie
12:03 PM: user@www.upspiral[2].txt (ID = 3615)
12:03 PM: Cookie Sweep Complete, Elapsed Time: 00:00:05
12:03 PM: Starting File Sweep
12:04 PM: c:\windows\system32\vmss (ID = -2147481116)
12:04 PM: Found Adware: 180search assistant/zango
12:04 PM: c:\windows\system32\fleok (ID = -2147480556)
12:04 PM: c:\documents and settings\all users\application data\vidctrl (2 subtraces) (ID = -2147477475)
12:04 PM: Found Adware: winad
12:04 PM: c:\program files\winad client (1 subtraces) (ID = -2147480018)
12:04 PM: c:\documents and settings\all users\application data\msw (2 subtraces) (ID = -2147481510)
12:04 PM: c:\program files\mozilla firefox\extensions\{2bafa858-4ff3-4207-822e-ef46d1b431de} (4 subtraces) (ID = -2147480808)
12:04 PM: c:\documents and settings\all users\application data\nsv (17 subtraces) (ID = -2147481136)
12:04 PM: c:\windows\system32\vidctrl (ID = -2147481117)
12:04 PM: Found Adware: ezula ilookup
12:04 PM: d206411b-c8cc-4db6-ba06-108298 (ID = 60415)
12:05 PM: Found Adware: enbrowser
12:05 PM: 9fd.tmp (ID = 60130)
12:05 PM: wmv1920.dbd (ID = 57692)
12:05 PM: wmv1215.dbd (ID = 57687)
12:05 PM: 0dfd8492-26aa-4741-bc60-c9942b (ID = 57724)
12:06 PM: backup-20050315-123438-166.dll (ID = 70535)
12:06 PM: Found Adware: surfsidekick
12:06 PM: a8b6cef4-531f-4ec0-a638-d11035 (ID = 77692)
12:06 PM: Found Adware: virtualbouncer
12:06 PM: 444c2fde-4968-4e3d-a337-6cc5d0 (ID = 82790)
12:06 PM: wmv2007.dbd (ID = 57693)
12:06 PM: 681381b7-c3d6-4fb7-8ae0-acaf7c (ID = 111343)
12:06 PM: 90f72362-d454-4717-9592-d913c6 (ID = 82790)
12:07 PM: Found Adware: clkoptimizer
12:07 PM: vcm q installer_282_190.exe.tcf.vir (ID = 53199)
12:08 PM: Found Adware: ieplugin
12:08 PM: kwv2.dat (ID = 63356)
12:14 PM: Found Adware: dealhelper
12:14 PM: zlkgbiu1.xml (ID = 57650)
12:14 PM: zlkgbiu2.xml (ID = 57651)
12:14 PM: 494fb11e-63e7-49f6-a4b2-ff8dc0 (ID = 82790)
12:14 PM: 3accfe62-ff1d-47ce-beeb-4d1864 (ID = 82821)
12:15 PM: 02c04dcd-81d3-4758-a3d4-e39d34 (ID = 82815)
12:16 PM: installpreinstall_p1.exe (ID = 70545)
12:17 PM: baur5s9q.dat (ID = 75677)
12:18 PM: Found Adware: upspiral toolbar
12:18 PM: unist2.exe (ID = 82040)
12:18 PM: Found Adware: adlogix
12:18 PM: uninstall.exe (ID = 49258)
12:18 PM: zlkgbiu.xml (ID = 57649)
12:19 PM: wmv0315.ddx (ID = 57682)
12:19 PM: wmv1204.ddx (ID = 57682)
12:19 PM: wmv1125.ddx (ID = 57685)
12:19 PM: wmv1909.ddx (ID = 57691)
12:19 PM: Found Adware: relatedlinks bho
12:19 PM: lbbho.ini (ID = 73732)
12:19 PM: 76e97daf-b31e-45a7-b0f5-a77258 (ID = 60573)
12:19 PM: ba82b1a9-26f4-4880-88b3-ee7760 (ID = 60605)
12:19 PM: easymessengerax.inf (ID = 70537)
12:19 PM: 70tovmto.ini (ID = 75631)
12:19 PM: d5f28c77-f804-4e18-94c0-66ca92 (ID = 82817)
12:19 PM: uninstall (ID = 64345)
12:20 PM: File Sweep Complete, Elapsed Time: 00:16:17
12:20 PM: Full Sweep has completed. Elapsed time 00:20:19
12:20 PM: Traces Found: 7823
12:22 PM: Removal process initiated
12:23 PM: Quarantining All Traces: abcsearch
12:23 PM: Quarantining All Traces: alwaysupdatednews
12:23 PM: Quarantining All Traces: browseraid
12:23 PM: Quarantining All Traces: comet cursor
12:23 PM: Quarantining All Traces: couponage
12:23 PM: Quarantining All Traces: delfin
12:23 PM: Quarantining All Traces: ebates money maker
12:23 PM: Quarantining All Traces: drsnsrch.com hijack
12:23 PM: Quarantining All Traces: isearch desktop search
12:23 PM: Quarantining All Traces: mynetprotector
12:23 PM: Quarantining All Traces: redzip toolbar
12:23 PM: Quarantining All Traces: search3 toolbar
12:23 PM: Quarantining All Traces: shopathomeselect
12:23 PM: Quarantining All Traces: yoursitebar
12:23 PM: Quarantining All Traces: shopnavupdater
12:23 PM: Quarantining All Traces: yieldmanager cookie
12:23 PM: Quarantining All Traces: adknowledge cookie
12:23 PM: Quarantining All Traces: cc214142 cookie
12:23 PM: Quarantining All Traces: belnk cookie
12:23 PM: Quarantining All Traces: atwola cookie
12:23 PM: Quarantining All Traces: com.com cookie
12:23 PM: Quarantining All Traces: go.com cookie
12:23 PM: Quarantining All Traces: ic-live cookie
12:23 PM: Quarantining All Traces: touchclarity cookie
12:23 PM: Quarantining All Traces: partypoker cookie
12:23 PM: Quarantining All Traces: realmedia cookie
12:23 PM: Quarantining All Traces: adjuggler cookie
12:23 PM: Quarantining All Traces: reliablestats cookie
12:23 PM: Quarantining All Traces: redzip cookie
12:23 PM: Quarantining All Traces: upspiral cookie
12:23 PM: Quarantining All Traces: 180search assistant/zango
12:23 PM: Quarantining All Traces: winad
12:23 PM: Quarantining All Traces: ezula ilookup
12:23 PM: Quarantining All Traces: enbrowser
12:23 PM: Quarantining All Traces: surfsidekick
12:23 PM: Quarantining All Traces: virtualbouncer
12:23 PM: Quarantining All Traces: clkoptimizer
12:23 PM: Quarantining All Traces: ieplugin
12:23 PM: Quarantining All Traces: dealhelper
12:23 PM: Quarantining All Traces: upspiral toolbar
12:23 PM: Quarantining All Traces: adlogix
12:23 PM: Quarantining All Traces: relatedlinks bho
12:23 PM: Removal process completed. Elapsed time 00:01:07
********
11:57 AM: |··· Start of Session, Monday, August 15, 2005 ···|
11:57 AM: Spy Sweeper started
11:59 AM: |··· End of Session, Monday, August 15, 2005 ···|
  • 0

#19
Michelle

Michelle

    Malware Removal Goddess

  • Retired Staff
  • 8,928 posts
Please reboot your computer, then post a new HiJackThis log for me :tazz:
  • 0

#20
Unreal Vibration

Unreal Vibration

    Member

  • Topic Starter
  • Member
  • PipPip
  • 24 posts
Logfile of HijackThis v1.99.1
Scan saved at 12:48:14 PM, on 8/15/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\DAP\DAP.EXE
C:\Program Files\2Wire\2PortalMon.exe
C:\Program Files\Yahoo!\browser\ybrwicon.exe
C:\WINDOWS\System32\hkcmd.exe
C:\WINDOWS\BCMSMMSG.exe
C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\MSN Apps\Updater\01.02.3000.1001\en-us\msnappau.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\user\My Documents\Kai\HiJackThis\HijackThis.exe
C:\Program Files\mozilla.org\Mozilla\mozilla.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://yahoo.sbc.com/dsl
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\about.htm
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O3 - Toolbar: FlashGet Bar - {E0E899AB-F487-11D5-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\fgiebar.dll
O4 - HKLM\..\Run: [IPInSightMonitor 01] "C:\Program Files\SBC Yahoo!\Connection Manager\IP InSight\IPMon32.exe"
O4 - HKLM\..\Run: [DownloadAccelerator] C:\PROGRA~1\DAP\DAP.EXE /STARTUP
O4 - HKLM\..\Run: [2wSysTray] C:\Program Files\2Wire\2PortalMon.exe
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [YBrowser] C:\Program Files\Yahoo!\browser\ybrwicon.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [BCMSMMSG] BCMSMMSG.exe
O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_01\bin\jusched.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [DwlClient] C:\Program Files\Common Files\Dell\EUSW\Support.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [msnappau] "C:\Program Files\MSN Apps\Updater\01.02.3000.1001\en-us\msnappau.exe"
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 4.2\THGuard.exe"
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - Global Startup: America Online 9.0 Tray Icon.lnk = C:\Program Files\America Online 9.0\aoltray.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\DAP\dapextie.htm
O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\DAP\dapextie2.htm
O8 - Extra context menu item: Download All by FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: Download using FlashGet - C:\Program Files\FlashGet\jc_link.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\Program Files\Yahoo!\Common\ylogin.dll
O9 - Extra 'Tools' menuitem: Yahoo! Login - {2499216C-4BA5-11D5-BD9C-000103C116D5} - C:\Program Files\Yahoo!\Common\ylogin.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zon...kr.cab31267.cab
O16 - DPF: {10093E98-C073-4C75-8D0E-FB5CD3A71D33} (ZoneUpwords Object) - http://messenger.zon...ds.cab31267.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zon...nt.cab31267.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zon...er.cab28578.cab
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.c...nst20040510.cab
O16 - DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} (Groove Control) - http://www.nick.com/.../GrooveAX27.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zon...nt.cab28578.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoft...free/asinst.cab
O16 - DPF: {AD8D3C68-0C60-4B53-8A9E-BC654BBB36FE} -
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn...pDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zon...ro.cab32846.cab
O16 - DPF: {C3DFA998-A486-11D4-AA25-00C04F72DAEB} (MSN Photo Upload Tool) - http://sc.groups.msn...UC/MsnPUpld.cab
O16 - DPF: {D18F962A-3722-4B59-B08D-28BB9EB2281E} (PhotosCtrl Class) - http://photos.yahoo....plorer1_9us.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zon...wn.cab28578.cab
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
O23 - Service: YPCService - Yahoo! Inc. - C:\WINDOWS\SYSTEM32\YPCSER~1.EXE
  • 0

#21
Michelle

Michelle

    Malware Removal Goddess

  • Retired Staff
  • 8,928 posts
Microsoft Anti-Spyware is going to keep putting this entry back:

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\about.htm

We can try this, but if it doesn't work, you can browse around in the program to see if you can find that entry (C:\WINDOWS\about.htm) to remove it out of the program or Microsoft Anti-Spyware will need to be uninstalled...

We try to use MS Anti-Spyware to get rid of it.
  • Open Microsoft Antispyware.
  • In the right upper corner go to Advanced tools
  • Please click on "Change restore setting to a new URL".
  • Change it to something you would like to use as your homepage.
  • If prompted for the change, allow it.
  • When the left hand side is showing a 'good' restore, press "Restore This Setting Now".
  • We need to get a non-infected page there.
After doing that Run HiJackThis. Place a check next to this item, if found and click FIX CHECKED:

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\WINDOWS\about.htm

Close HiJackThis.

One more program I want you to run (it's quick):

Please download Trend Micro™ Anti-Spyware for the Web Utility (by clicking the "Scan and Clean your PC" button).
  • Save it to your desktop.
  • Double-click the new icon on your desktop (tmas-web-scan.exe)
  • It will say "Loading TrendMicro definitions".
  • Once the definitions are loaded, the program will appear to close then re-open.
  • Click Start Scan
  • After it's done scanning, click Scan Results
  • Make sure all items found have a check next to them, then click Clean Threats Now.
  • Click Exit.
Reboot your computer. In place of the TrendMicro icon will be a text file called Antispyware.log, please double-click that log and copy the entire contents and paste them here.
  • 0

#22
Unreal Vibration

Unreal Vibration

    Member

  • Topic Starter
  • Member
  • PipPip
  • 24 posts
I probably will not be able to post again until tonight. Sorry. Here is the log (You can ignore the /E: Drive files, I believe):

Started Scanning
Internet Cookies
Found 'partypoker.com' in 'Internet Explorer Cache'
Found 'partypoker.touchclarity.com' in 'Internet Explorer Cache'
Found 'ads.cc214142.com' in 'Internet Explorer Cache'
Found 'adknowledge.com' in 'Internet Explorer Cache'
Found 'go.com' in 'Internet Explorer Cache'
Found 'ad.yieldmanager.com' in 'Internet Explorer Cache'
Found 'atwola.com' in 'Internet Explorer Cache'
Found 'com.com' in 'Internet Explorer Cache'
Found 'dist.belnk.com' in 'Internet Explorer Cache'
Found 'realmedia.com' in 'Internet Explorer Cache'
Found 'belnk.com' in 'Internet Explorer Cache'
Programs in Memory
Found 'DAP.exe' in 'C:\Program Files\DAP'
Windows Registry
Found '' in 'SOFTWARE\LimeWire'
Found '' in 'Software\SpeedBit\Download Accelerator'
Found '' in 'Software\SpeedBit\Download Accelerator\ADS'
Found '' in 'Software\SpeedBit\Download Accelerator\ADS\Default'
Found '' in 'Software\SpeedBit\Download Accelerator\NoTrigger'
Found '' in 'Software\SpeedBit\Download Accelerator\NoTrigger\Always'
Found '' in 'Software\SpeedBit\Download Accelerator\NoTrigger\WhenFound'
Found '' in 'Software\SpeedBit\Download Accelerator\NoTrigger\WhenNotFound'
Found '' in 'SOFTWARE\Classes\CLSID\{5BFA1DAF-5EDC-11D2-959E-00C00C02DA5E}'
Found '' in 'SOFTWARE\Classes\CLSID\{5BFA1DAF-5EDC-11D2-959E-00C00C02DA5E}\InprocServer32'
Found '' in 'SOFTWARE\Classes\CLSID\{5BFA1DAF-5EDC-11D2-959E-00C00C02DA5E}\ProgID'
Found '' in 'SOFTWARE\Classes\CLSID\{5BFA1DAF-5EDC-11D2-959E-00C00C02DA5E}\TypeLib'
Found '' in 'SOFTWARE\Classes\CLSID\{5BFA1DAF-5EDC-11D2-959E-00C00C02DA5E}\VersionIndependentProgID'
Found '' in 'SOFTWARE\Classes\CLSID\{8110AEA1-AD5B-4B90-883F-04A9A33B106E}'
Found '' in 'SOFTWARE\Classes\CLSID\{8110AEA1-AD5B-4B90-883F-04A9A33B106E}\InprocServer32'
Found '' in 'SOFTWARE\Classes\CLSID\{8110AEA1-AD5B-4B90-883F-04A9A33B106E}\ProgID'
Found '' in 'SOFTWARE\Classes\CLSID\{8110AEA1-AD5B-4B90-883F-04A9A33B106E}\VersionIndependentProgID'
Found '' in 'SOFTWARE\Classes\CLSID\{9738B9E6-8AFA-11D2-959E-444553540002}'
Found '' in 'SOFTWARE\Classes\CLSID\{9738B9E6-8AFA-11D2-959E-444553540002}\InProcServer32'
Found '' in 'SOFTWARE\Classes\CLSID\{9738B9E6-8AFA-11D2-959E-444553540002}\ProgID'
Found '' in 'SOFTWARE\Classes\DAPIE.Catcher.1\CLSID'
Found '' in 'SOFTWARE\Classes\DAPIE.Catcher\CLSID'
Found '' in 'SOFTWARE\Classes\DAPIE.DownloadAcceleratorIE.1'
Found '' in 'SOFTWARE\Classes\DAPIE.DownloadAcceleratorIE.1\CLSID'
Found '' in 'SOFTWARE\Classes\DAPIE.DownloadAcceleratorIE\CLSID'
Found '' in 'SOFTWARE\Classes\DAPIE.DownloadAcceleratorIE\CurVer'
Found '' in 'SOFTWARE\Classes\DAPNS.Protocol.1'
Found '' in 'SOFTWARE\Classes\DAPNS.Protocol.1\CLSID'
Found '' in 'SOFTWARE\Classes\Interface\{03D365CB-878A-4495-9350-7C67743335D9}'
Found '' in 'SOFTWARE\Classes\Interface\{03D365CB-878A-4495-9350-7C67743335D9}\ProxyStubClsid'
Found '' in 'SOFTWARE\Classes\Interface\{03D365CB-878A-4495-9350-7C67743335D9}\ProxyStubClsid32'
Found '' in 'SOFTWARE\Classes\Interface\{03D365CB-878A-4495-9350-7C67743335D9}\TypeLib'
Found '' in 'SOFTWARE\Classes\Interface\{5BFA1DAE-5EDC-11D2-959E-00C00C02DA5E}'
Found '' in 'SOFTWARE\Classes\Interface\{5BFA1DAE-5EDC-11D2-959E-00C00C02DA5E}\ProxyStubClsid'
Found '' in 'SOFTWARE\Classes\Interface\{5BFA1DAE-5EDC-11D2-959E-00C00C02DA5E}\ProxyStubClsid32'
Found '' in 'SOFTWARE\Classes\Interface\{5BFA1DAE-5EDC-11D2-959E-00C00C02DA5E}\TypeLib'
Found '' in 'SOFTWARE\Classes\TypeLib\{5BFA1DA1-5EDC-11D2-959E-00C00C02DA5E}\1.0'
Found '' in 'SOFTWARE\Classes\TypeLib\{5BFA1DA1-5EDC-11D2-959E-00C00C02DA5E}\1.0\0\win32'
Found '' in 'SOFTWARE\Classes\TypeLib\{5BFA1DA1-5EDC-11D2-959E-00C00C02DA5E}\1.0\FLAGS'
Found '' in 'SOFTWARE\Classes\TypeLib\{5BFA1DA1-5EDC-11D2-959E-00C00C02DA5E}\1.0\HELPDIR'
Found '' in 'SOFTWARE\SpeedBit\Download Accelerator\Updates'
Found '' in 'SOFTWARE\Magnet'
Found '' in 'SOFTWARE\Classes\magnet'
Found '' in 'SOFTWARE\Classes\magnet\shell\open\command'
Found '' in 'Software\Microsoft\Internet Explorer\Explorer Bars\{90C61707-C8F8-43DB-A25C-C1F4B18EE41E}'
Found '' in 'SOFTWARE\ScreenSaver.com\Relevant Knowledge'
Found 'URL Protocol' in 'SOFTWARE\Classes\magnet'
Found '' in 'Software\AppConf'
Found 'confset' in 'Software\AppConf'
Found '' in 'Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\Range1'
Found '' in 'SOFTWARE\Classes\AppID\urlcli.DLL'
Found '' in 'SOFTWARE\Wise Solutions\Wise Installation System\Repair\C:/Program Files/VBouncer/INSTALL.LOG'
Found '' in 'SOFTWARE\Classes\Remove'
Found '' in 'SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Ext'
Found '' in 'SYSTEM\CurrentControlSet\Enum\Root\LEGACY_DELPROT'
Found 'NextInstance' in 'SYSTEM\CurrentControlSet\Enum\Root\LEGACY_DELPROT'
Found 'PluginLevel' in 'SYSTEM\CurrentControlSet\Control\Session Manager'
Found '' in 'SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinMX'
Found '' in 'SOFTWARE\Classes\TypeLib\{80F06796-5DE1-44CC-90A7-8B275950CFD7}\1.0\HELPDIR'
Found '' in 'SOFTWARE\Classes\TypeLib\{80F06796-5DE1-44CC-90A7-8B275950CFD7}\1.0\FLAGS'
Found '' in 'SOFTWARE\Classes\TypeLib\{80F06796-5DE1-44CC-90A7-8B275950CFD7}\1.0\0\win32'
Found '' in 'SOFTWARE\Classes\TypeLib\{80F06796-5DE1-44CC-90A7-8B275950CFD7}\1.0\0'
Found '' in 'SOFTWARE\Classes\TypeLib\{80F06796-5DE1-44CC-90A7-8B275950CFD7}\1.0'
Found '' in 'SOFTWARE\Classes\TypeLib\{80F06796-5DE1-44CC-90A7-8B275950CFD7}'
Found '' in 'SOFTWARE\Classes\Interface\{6D9A2918-F869-40F8-85ED-4F7F1B4BB6B7}'
Found '' in 'SOFTWARE\MySearch\bar'
Found 'CacheDir' in 'SOFTWARE\MySearch\bar'
Found 'HistoryDir' in 'SOFTWARE\MySearch\bar'
Found 'Id' in 'SOFTWARE\MySearch\bar'
Internet URL Shortcuts
Files and Directories
Found '28.gif-7233f61-79038a01.gif' in 'C:\Documents and Settings\user\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\file'
Found '' in 'C:\Documents and Settings\user\Start Menu\Programs\WinMX'
Found 'packet.dll' in 'C:\Program Files\BitComet Accelerator'
Found 'DAP.exe' in 'C:\Program Files\DAP'
Found 'UninstallLib.exe' in 'C:\Program Files\FlashGet'
Found 'LimeWire.exe' in 'C:\Program Files\LimeWire\LimeWire 4.2.6'
Found 'LimeWire20.dll' in 'C:\Program Files\LimeWire\LimeWire 4.2.6'
Found 'EFD6A00C-6B2B-432E-934F-DF37DB' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\3048D733-025F-4238-A016-189945'
Found '0D3432CA-C580-4034-A277-2F2930' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\3D43714B-01B0-4464-A30D-CD73B1'
Found '2366C4F6-C57B-40FA-A9A1-F792C7' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\3D43714B-01B0-4464-A30D-CD73B1'
Found 'D79A8404-4FD0-4F4E-AC7D-DA22AF' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\3D43714B-01B0-4464-A30D-CD73B1'
Found '06C7A32F-85FF-491E-9723-CB8886' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found '0BD0543E-156F-4DBD-B164-60FDDA' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found '10EBAC11-ECF5-47C7-A311-6BBBDF' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found '1F2CD5EC-DF4F-4AFA-9839-7C30AB' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found '26459A18-246E-4860-9AF7-F74603' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found '2B0842DD-3A30-4351-B30C-DA9678' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found '3226E6B7-97F9-4A95-A9A5-981511' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found '43362596-A98C-44EA-8218-43AC02' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found '520ECB75-C508-4DD9-BC43-E2C686' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found '53789205-9285-47F5-B2E0-8649CF' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found '59323A1A-E1BE-42C9-9457-4EC6A3' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found '5D98CAB0-2319-447F-93E5-73FE98' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found '674F1BA1-7787-427D-AC31-68A11C' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found 'AAE5CC08-1B04-4011-8C2B-1273FB' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found 'ADE2DF84-0403-442B-92D8-75791A' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found 'B85F2158-6252-4465-B85F-A27723' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found 'BCAC347A-3F87-423D-9250-F55D65' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found 'BFC2545A-003B-4DF9-8A0C-D928EB' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found 'C42A9E04-55B7-494B-A13A-B39730' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found 'C95B9E07-0F4E-4FE9-8C69-D6948C' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found 'DF124A5B-57DA-4E3E-A78F-5B3041' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found 'EAFC441F-3674-47D9-9173-E096C4' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found 'EBD79F93-8BA4-4FE7-89C5-039DA7' in 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99'
Found '' in 'C:\Program Files\WinMX'
Found 'errcatch.exe' in 'C:\Program Files\WinMX'
Found 'uninstall.exe' in 'C:\Program Files\WinMX'
Found 'WinMX.exe' in 'C:\Program Files\WinMX'
Found 'Audio - Alternative Rock.kpl' in 'E:\WINDOWS\New Folder'
Found 'Audio - Barrington Levy.kpl' in 'E:\WINDOWS\New Folder'
Found 'Audio - Electronica.kpl' in 'E:\WINDOWS\New Folder'
Found 'Audio - Folk.kpl' in 'E:\WINDOWS\New Folder'
Found 'Audio - Funk.kpl' in 'E:\WINDOWS\New Folder'
Found 'Audio - Jazz.kpl' in 'E:\WINDOWS\New Folder'
Found 'Audio - Pop Rock.kpl' in 'E:\WINDOWS\New Folder'
Found 'Audio - R&B.kpl' in 'E:\WINDOWS\New Folder'
Found 'Audio - Hip Hop.kpl' in 'E:\WINDOWS\New Folder'
Finished Scanning
Started Backup
Unable to create the registry key HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_DELPROT for restore. [SCANMODS] Error=5.
Unable to create the registry key HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_DELPROT for restore. [SCANMODS] Error=5.
Unable to backup the item 'E:\WINDOWS\New Folder\Audio - Alternative Rock.kpl'. [SCANMODS] FCIAddFile failed. FCI Error=1, 'File not found'.
Unable to backup the item 'E:\WINDOWS\New Folder\Audio - Barrington Levy.kpl'. [SCANMODS] FCIAddFile failed. FCI Error=1, 'File not found'.
Unable to backup the item 'E:\WINDOWS\New Folder\Audio - Electronica.kpl'. [SCANMODS] FCIAddFile failed. FCI Error=1, 'File not found'.
Unable to backup the item 'E:\WINDOWS\New Folder\Audio - Folk.kpl'. [SCANMODS] FCIAddFile failed. FCI Error=1, 'File not found'.
Unable to backup the item 'E:\WINDOWS\New Folder\Audio - Funk.kpl'. [SCANMODS] FCIAddFile failed. FCI Error=1, 'File not found'.
Unable to backup the item 'E:\WINDOWS\New Folder\Audio - Jazz.kpl'. [SCANMODS] FCIAddFile failed. FCI Error=1, 'File not found'.
Unable to backup the item 'E:\WINDOWS\New Folder\Audio - Pop Rock.kpl'. [SCANMODS] FCIAddFile failed. FCI Error=1, 'File not found'.
Unable to backup the item 'E:\WINDOWS\New Folder\Audio - R&B.kpl'. [SCANMODS] FCIAddFile failed. FCI Error=1, 'File not found'.
Unable to backup the item 'E:\WINDOWS\New Folder\Audio - Hip Hop.kpl'. [SCANMODS] FCIAddFile failed. FCI Error=1, 'File not found'.
Finished Backup
Started Cleaning
Checking for 'C:\Program Files\DAP\DAP.exe' in shortcut areas.
Found 'Download Accelerator.lnk' in 'C:\Documents and Settings\All Users\Start Menu\Programs\Download Accelerator\'
Found 'Download Accelerator Plus.lnk' in 'C:\Documents and Settings\user\Desktop\Unused Desktop Shortcuts\'
Checking for 'C:\Program Files\DAP\DAP.exe' in startup areas.
Cleaning 'C:\Program Files\DAP\DAP.exe'
[SCANMODS] WARNING: Deletion of the file 'C:\Program Files\DAP\DAP.exe' requires a reboot.
[SCANMODS] WARNING: Unable to remove registry keys under 'HKLM\'SYSTEM\CurrentControlSet\Enum\Root\LEGACY_DELPROT'. Error=5.
Checking for 'C:\Documents and Settings\user\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\file\28.gif-7233f61-79038a01.gif' in shortcut areas.
Checking for 'C:\Documents and Settings\user\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\file\28.gif-7233f61-79038a01.gif' in startup areas.
Cleaning 'C:\Documents and Settings\user\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\file\28.gif-7233f61-79038a01.gif'
Checking for 'C:\Documents and Settings\user\Start Menu\Programs\WinMX' in shortcut areas.
Checking for 'C:\Documents and Settings\user\Start Menu\Programs\WinMX' in startup areas.
Cleaning 'C:\Documents and Settings\user\Start Menu\Programs\WinMX'
Checking for 'C:\Documents and Settings\user\Start Menu\Programs\WinMX\WinMX.lnk' in shortcut areas.
Checking for 'C:\Documents and Settings\user\Start Menu\Programs\WinMX\WinMX.lnk' in startup areas.
Cleaning 'C:\Documents and Settings\user\Start Menu\Programs\WinMX\WinMX.lnk'
Checking for 'C:\Program Files\BitComet Accelerator\packet.dll' in shortcut areas.
Checking for 'C:\Program Files\BitComet Accelerator\packet.dll' in startup areas.
Cleaning 'C:\Program Files\BitComet Accelerator\packet.dll'
Checking for 'C:\Program Files\DAP\DAP.exe' in shortcut areas.
Checking for 'C:\Program Files\DAP\DAP.exe' in startup areas.
Cleaning 'C:\Program Files\DAP\DAP.exe'
Checking for 'C:\Program Files\FlashGet\UninstallLib.exe' in shortcut areas.
Checking for 'C:\Program Files\FlashGet\UninstallLib.exe' in startup areas.
Cleaning 'C:\Program Files\FlashGet\UninstallLib.exe'
Checking for 'C:\Program Files\LimeWire\LimeWire 4.2.6\LimeWire.exe' in shortcut areas.
Found 'LimeWire 4.2.6.lnk' in 'C:\Documents and Settings\All Users\Start Menu\Programs\LimeWire\'
Found 'LimeWire 4.2.6.lnk' in 'C:\Documents and Settings\All Users\Desktop\'
Checking for 'C:\Program Files\LimeWire\LimeWire 4.2.6\LimeWire.exe' in startup areas.
Cleaning 'C:\Program Files\LimeWire\LimeWire 4.2.6\LimeWire.exe'
Checking for 'C:\Program Files\LimeWire\LimeWire 4.2.6\LimeWire20.dll' in shortcut areas.
Checking for 'C:\Program Files\LimeWire\LimeWire 4.2.6\LimeWire20.dll' in startup areas.
Cleaning 'C:\Program Files\LimeWire\LimeWire 4.2.6\LimeWire20.dll'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\3048D733-025F-4238-A016-189945\EFD6A00C-6B2B-432E-934F-DF37DB' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\3048D733-025F-4238-A016-189945\EFD6A00C-6B2B-432E-934F-DF37DB' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\3048D733-025F-4238-A016-189945\EFD6A00C-6B2B-432E-934F-DF37DB'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\3D43714B-01B0-4464-A30D-CD73B1\0D3432CA-C580-4034-A277-2F2930' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\3D43714B-01B0-4464-A30D-CD73B1\0D3432CA-C580-4034-A277-2F2930' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\3D43714B-01B0-4464-A30D-CD73B1\0D3432CA-C580-4034-A277-2F2930'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\3D43714B-01B0-4464-A30D-CD73B1\2366C4F6-C57B-40FA-A9A1-F792C7' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\3D43714B-01B0-4464-A30D-CD73B1\2366C4F6-C57B-40FA-A9A1-F792C7' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\3D43714B-01B0-4464-A30D-CD73B1\2366C4F6-C57B-40FA-A9A1-F792C7'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\3D43714B-01B0-4464-A30D-CD73B1\D79A8404-4FD0-4F4E-AC7D-DA22AF' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\3D43714B-01B0-4464-A30D-CD73B1\D79A8404-4FD0-4F4E-AC7D-DA22AF' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\3D43714B-01B0-4464-A30D-CD73B1\D79A8404-4FD0-4F4E-AC7D-DA22AF'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\06C7A32F-85FF-491E-9723-CB8886' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\06C7A32F-85FF-491E-9723-CB8886' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\06C7A32F-85FF-491E-9723-CB8886'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\0BD0543E-156F-4DBD-B164-60FDDA' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\0BD0543E-156F-4DBD-B164-60FDDA' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\0BD0543E-156F-4DBD-B164-60FDDA'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\10EBAC11-ECF5-47C7-A311-6BBBDF' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\10EBAC11-ECF5-47C7-A311-6BBBDF' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\10EBAC11-ECF5-47C7-A311-6BBBDF'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\1F2CD5EC-DF4F-4AFA-9839-7C30AB' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\1F2CD5EC-DF4F-4AFA-9839-7C30AB' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\1F2CD5EC-DF4F-4AFA-9839-7C30AB'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\26459A18-246E-4860-9AF7-F74603' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\26459A18-246E-4860-9AF7-F74603' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\26459A18-246E-4860-9AF7-F74603'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\2B0842DD-3A30-4351-B30C-DA9678' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\2B0842DD-3A30-4351-B30C-DA9678' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\2B0842DD-3A30-4351-B30C-DA9678'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\3226E6B7-97F9-4A95-A9A5-981511' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\3226E6B7-97F9-4A95-A9A5-981511' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\3226E6B7-97F9-4A95-A9A5-981511'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\43362596-A98C-44EA-8218-43AC02' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\43362596-A98C-44EA-8218-43AC02' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\43362596-A98C-44EA-8218-43AC02'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\520ECB75-C508-4DD9-BC43-E2C686' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\520ECB75-C508-4DD9-BC43-E2C686' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\520ECB75-C508-4DD9-BC43-E2C686'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\53789205-9285-47F5-B2E0-8649CF' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\53789205-9285-47F5-B2E0-8649CF' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\53789205-9285-47F5-B2E0-8649CF'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\59323A1A-E1BE-42C9-9457-4EC6A3' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\59323A1A-E1BE-42C9-9457-4EC6A3' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\59323A1A-E1BE-42C9-9457-4EC6A3'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\5D98CAB0-2319-447F-93E5-73FE98' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\5D98CAB0-2319-447F-93E5-73FE98' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\5D98CAB0-2319-447F-93E5-73FE98'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\674F1BA1-7787-427D-AC31-68A11C' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\674F1BA1-7787-427D-AC31-68A11C' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\674F1BA1-7787-427D-AC31-68A11C'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\AAE5CC08-1B04-4011-8C2B-1273FB' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\AAE5CC08-1B04-4011-8C2B-1273FB' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\AAE5CC08-1B04-4011-8C2B-1273FB'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\ADE2DF84-0403-442B-92D8-75791A' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\ADE2DF84-0403-442B-92D8-75791A' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\ADE2DF84-0403-442B-92D8-75791A'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\B85F2158-6252-4465-B85F-A27723' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\B85F2158-6252-4465-B85F-A27723' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\B85F2158-6252-4465-B85F-A27723'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\BCAC347A-3F87-423D-9250-F55D65' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\BCAC347A-3F87-423D-9250-F55D65' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\BCAC347A-3F87-423D-9250-F55D65'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\BFC2545A-003B-4DF9-8A0C-D928EB' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\BFC2545A-003B-4DF9-8A0C-D928EB' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\BFC2545A-003B-4DF9-8A0C-D928EB'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\C42A9E04-55B7-494B-A13A-B39730' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\C42A9E04-55B7-494B-A13A-B39730' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\C42A9E04-55B7-494B-A13A-B39730'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\C95B9E07-0F4E-4FE9-8C69-D6948C' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\C95B9E07-0F4E-4FE9-8C69-D6948C' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\C95B9E07-0F4E-4FE9-8C69-D6948C'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\DF124A5B-57DA-4E3E-A78F-5B3041' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\DF124A5B-57DA-4E3E-A78F-5B3041' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\DF124A5B-57DA-4E3E-A78F-5B3041'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\EAFC441F-3674-47D9-9173-E096C4' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\EAFC441F-3674-47D9-9173-E096C4' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\EAFC441F-3674-47D9-9173-E096C4'
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\EBD79F93-8BA4-4FE7-89C5-039DA7' in shortcut areas.
Checking for 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\EBD79F93-8BA4-4FE7-89C5-039DA7' in startup areas.
Cleaning 'C:\Program Files\Microsoft AntiSpyware\Quarantine\C30CCBED-E89B-4EF9-8140-D24B99\EBD79F93-8BA4-4FE7-89C5-039DA7'
Checking for 'C:\Program Files\WinMX' in shortcut areas.
Checking for 'C:\Program Files\WinMX' in startup areas.
Cleaning 'C:\Program Files\WinMX'
Checking for 'C:\Program Files\WinMX\colors.dat' in shortcut areas.
Checking for 'C:\Program Files\WinMX\colors.dat' in startup areas.
Cleaning 'C:\Program Files\WinMX\colors.dat'
Checking for 'C:\Program Files\WinMX\errcatch.exe' in shortcut areas.
Checking for 'C:\Program Files\WinMX\errcatch.exe' in startup areas.
Cleaning 'C:\Program Files\WinMX\errcatch.exe'
Checking for 'C:\Program Files\WinMX\library.dat' in shortcut areas.
Checking for 'C:\Program Files\WinMX\library.dat' in startup areas.
Cleaning 'C:\Program Files\WinMX\library.dat'
Checking for 'C:\Program Files\WinMX\license.txt' in shortcut areas.
Checking for 'C:\Program Files\WinMX\license.txt' in startup areas.
Cleaning 'C:\Program Files\WinMX\license.txt'
Checking for 'C:\Program Files\WinMX\settings.dat' in shortcut areas.
Checking for 'C:\Program Files\WinMX\settings.dat' in startup areas.
Cleaning 'C:\Program Files\WinMX\settings.dat'
Checking for 'C:\Program Files\WinMX\uninstall.exe' in shortcut areas.
Checking for 'C:\Program Files\WinMX\uninstall.exe' in startup areas.
Cleaning 'C:\Program Files\WinMX\uninstall.exe'
Checking for 'C:\Program Files\WinMX\WinMX.exe' in shortcut areas.
Found 'WinMX.lnk' in 'C:\Documents and Settings\user\Application Data\Microsoft\Internet Explorer\Quick Launch\'
Found 'WinMX.lnk' in 'C:\Documents and Settings\user\Start Menu\Programs\WinMX\'
[SCANMODS] The file 'C:\Documents and Settings\user\Start Menu\Programs\WinMX\WinMX.lnk' was not found. Most likely already cleaned by another scanner module.
Checking for 'C:\Program Files\WinMX\WinMX.exe' in startup areas.
Cleaning 'C:\Program Files\WinMX\WinMX.exe'
Checking for 'C:\Program Files\WinMX\wpnpchannelcmds.txt' in shortcut areas.
Checking for 'C:\Program Files\WinMX\wpnpchannelcmds.txt' in startup areas.
Cleaning 'C:\Program Files\WinMX\wpnpchannelcmds.txt'
Checking for 'C:\Program Files\WinMX\errcatch.exe' in shortcut areas.
Checking for 'C:\Program Files\WinMX\errcatch.exe' in startup areas.
Cleaning 'C:\Program Files\WinMX\errcatch.exe'
[SCANMODS] The file 'C:\Program Files\WinMX\errcatch.exe' was not found. Most likely already cleaned by another scanner module.
Checking for 'C:\Program Files\WinMX\uninstall.exe' in shortcut areas.
Checking for 'C:\Program Files\WinMX\uninstall.exe' in startup areas.
Cleaning 'C:\Program Files\WinMX\uninstall.exe'
[SCANMODS] The file 'C:\Program Files\WinMX\uninstall.exe' was not found. Most likely already cleaned by another scanner module.
Checking for 'C:\Program Files\WinMX\WinMX.exe' in shortcut areas.
Found 'WinMX.lnk' in 'C:\Documents and Settings\user\Application Data\Microsoft\Internet Explorer\Quick Launch\'
Found 'WinMX.lnk' in 'C:\Documents and Settings\user\Start Menu\Programs\WinMX\'
[SCANMODS] The file 'C:\Documents and Settings\user\Application Data\Microsoft\Internet Explorer\Quick Launch\WinMX.lnk' was not found. Most likely already cleaned by another scanner module.
[SCANMODS] The file 'C:\Documents and Settings\user\Start Menu\Programs\WinMX\WinMX.lnk' was not found. Most likely already cleaned by another scanner module.
Checking for 'C:\Program Files\WinMX\WinMX.exe' in startup areas.
Cleaning 'C:\Program Files\WinMX\WinMX.exe'
[SCANMODS] The file 'C:\Program Files\WinMX\WinMX.exe' was not found. Most likely already cleaned by another scanner module.
Checking for 'E:\WINDOWS\New Folder\Audio - Alternative Rock.kpl' in shortcut areas.
Checking for 'E:\WINDOWS\New Folder\Audio - Alternative Rock.kpl' in startup areas.
Cleaning 'E:\WINDOWS\New Folder\Audio - Alternative Rock.kpl'
[SCANMODS] The file 'E:\WINDOWS\New Folder\Audio - Alternative Rock.kpl' was not found. Most likely already cleaned by another scanner module.
Checking for 'E:\WINDOWS\New Folder\Audio - Barrington Levy.kpl' in shortcut areas.
Checking for 'E:\WINDOWS\New Folder\Audio - Barrington Levy.kpl' in startup areas.
Cleaning 'E:\WINDOWS\New Folder\Audio - Barrington Levy.kpl'
[SCANMODS] The file 'E:\WINDOWS\New Folder\Audio - Barrington Levy.kpl' was not found. Most likely already cleaned by another scanner module.
Checking for 'E:\WINDOWS\New Folder\Audio - Electronica.kpl' in shortcut areas.
Checking for 'E:\WINDOWS\New Folder\Audio - Electronica.kpl' in startup areas.
Cleaning 'E:\WINDOWS\New Folder\Audio - Electronica.kpl'
[SCANMODS] The file 'E:\WINDOWS\New Folder\Audio - Electronica.kpl' was not found. Most likely already cleaned by another scanner module.
Checking for 'E:\WINDOWS\New Folder\Audio - Folk.kpl' in shortcut areas.
Checking for 'E:\WINDOWS\New Folder\Audio - Folk.kpl' in startup areas.
Cleaning 'E:\WINDOWS\New Folder\Audio - Folk.kpl'
[SCANMODS] The file 'E:\WINDOWS\New Folder\Audio - Folk.kpl' was not found. Most likely already cleaned by another scanner module.
Checking for 'E:\WINDOWS\New Folder\Audio - Funk.kpl' in shortcut areas.
Checking for 'E:\WINDOWS\New Folder\Audio - Funk.kpl' in startup areas.
Cleaning 'E:\WINDOWS\New Folder\Audio - Funk.kpl'
[SCANMODS] The file 'E:\WINDOWS\New Folder\Audio - Funk.kpl' was not found. Most likely already cleaned by another scanner module.
Checking for 'E:\WINDOWS\New Folder\Audio - Jazz.kpl' in shortcut areas.
Checking for 'E:\WINDOWS\New Folder\Audio - Jazz.kpl' in startup areas.
Cleaning 'E:\WINDOWS\New Folder\Audio - Jazz.kpl'
[SCANMODS] The file 'E:\WINDOWS\New Folder\Audio - Jazz.kpl' was not found. Most likely already cleaned by another scanner module.
Checking for 'E:\WINDOWS\New Folder\Audio - Pop Rock.kpl' in shortcut areas.
Checking for 'E:\WINDOWS\New Folder\Audio - Pop Rock.kpl' in startup areas.
Cleaning 'E:\WINDOWS\New Folder\Audio - Pop Rock.kpl'
[SCANMODS] The file 'E:\WINDOWS\New Folder\Audio - Pop Rock.kpl' was not found. Most likely already cleaned by another scanner module.
Checking for 'E:\WINDOWS\New Folder\Audio - R&B.kpl' in shortcut areas.
Checking for 'E:\WINDOWS\New Folder\Audio - R&B.kpl' in startup areas.
Cleaning 'E:\WINDOWS\New Folder\Audio - R&B.kpl'
[SCANMODS] The file 'E:\WINDOWS\New Folder\Audio - R&B.kpl' was not found. Most likely already cleaned by another scanner module.
Checking for 'E:\WINDOWS\New Folder\Audio - Hip Hop.kpl' in shortcut areas.
Checking for 'E:\WINDOWS\New Folder\Audio - Hip Hop.kpl' in startup areas.
Cleaning 'E:\WINDOWS\New Folder\Audio - Hip Hop.kpl'
[SCANMODS] The file 'E:\WINDOWS\New Folder\Audio - Hip Hop.kpl' was not found. Most likely already cleaned by another scanner module.
Finished Cleaning
  • 0

#23
Michelle

Michelle

    Malware Removal Goddess

  • Retired Staff
  • 8,928 posts
Are you having any other problems?
  • 0

#24
Unreal Vibration

Unreal Vibration

    Member

  • Topic Starter
  • Member
  • PipPip
  • 24 posts
Yes, actually; for one reason or another, my /E: Drive keeps shutting down when I try to open certain files. I'm guessing that may be a problem caused by the hardware, though, so yeah.

Either way, thanks for all the help you've given! You have no idea how much I appreciate what you've done.
  • 0

#25
Michelle

Michelle

    Malware Removal Goddess

  • Retired Staff
  • 8,928 posts
What do you mean keeps shutting down and what kind of files causes this?
  • 0

Advertisements


#26
Unreal Vibration

Unreal Vibration

    Member

  • Topic Starter
  • Member
  • PipPip
  • 24 posts
I don't really believe that it has anything to do with the type because, for some reason or another, it suddenly 'shuts down' (the power light goes off but I can still hear it running) when I: open certain music files, try to look at a folder inside My Documents, or it runs into certain files while I'm scanning it.
  • 0

#27
Michelle

Michelle

    Malware Removal Goddess

  • Retired Staff
  • 8,928 posts
Actually, it may have something to do with the type of file.

Open HijackThis.
*Click on None of the above, just start the program
*Click Config (bottom right)
*Click Misc Tools
*Click Open Uninstall Manager
*Click Save List - Save it anywhere.
*A notepad will pop-up after it's saved, please copy everything in that Notepad and paste it here.
  • 0

#28
Unreal Vibration

Unreal Vibration

    Member

  • Topic Starter
  • Member
  • PipPip
  • 24 posts
1.0
1.0
3D Groove Playback Engine
3DSexVilla-015.001
Ad-Aware SE Personal
Adobe Download Manager 1.2 (Remove Only)
Adobe Photoshop Album 2.0 Starter Edition
Adobe Photoshop CS
Adobe Reader 6.0.1
AIM Toolbar
America Online (Choose which version to remove)
AMIP (remove only)
AOL Coach Version 1.0(Build:20040229.1 en)
AOL Connectivity Services
AOL Instant Messenger
AOL Spyware Protection
AOL Toolbar
AOL You've Got Pictures Screensaver
Application Verifier Database
AsfTools 3.1 (remove only)
Astonia 3
AV Voice Changer Software 4.0
AV Voice Changer Software DIAMOND 4.0
Azureus
BCM V.92 56K Modem
BitComet Accelerator 1.0
BitTornado 0.3.7
Broadcom Management Programs
Build Your Own Net Dream (remove only)
Camel's MPEGJoin
Camel's MPEGJoin (C:\Program Files\Camel's MPEGJoin\)
Camel's MPEGJoin (C:\Program Files\Camel's MPEGJoin\) #3
Camel's MPEGJoin (C:\Program Files\Camel's MPEGJoin\) #4
Camel's MPEGJoin (C:\Program Files\Camel's MPEGJoin\) #5
Camel's MPEGJoin (C:\Program Files\Camel's MPEGJoin\) #6
CCleaner (remove only)
CDisplay 1.8
CleanUp!
Compatibility Administrator 3.0
Creative WebCam Center
Creative WebCam Live! Driver (1.00.06.0414)
Creative WebCam Live! User's Guide (English)
Dell Digital Jukebox Driver
Dell Solution Center
Dell Support 5.0.0 (734)
Diner Dash (remove only)
Direct Show Ogg Vorbis Filter (remove only)
DirectX 9 Hotfix - KB839643
DivX Player
DivX Pro Codec Adware
Download Accelerator Plus
Duel Masters Civilizations
Duel Masters Zone
Duel Masters Zone Images Installer
EarthLink Setup Files
ewido security suite
ffdshow (remove only)
FlashGet(JetCar)
Get Yahoo! Messenger
GunBound
HijackThis 1.99.1
Images 1.0
Images 1.0
Intel® Extreme Graphics Driver
ipAddress 2.51.2
J2SE Runtime Environment 5.0 Update 1
J2SE Runtime Environment 5.0 Update 2
Jasc Paint Shop Photo Album
Jasc Paint Shop Pro 8 Dell Edition
Java 2 Runtime Environment, SE v1.4.1_02
Java 2 Runtime Environment, SE v1.4.2
Java 2 Runtime Environment, SE v1.4.2_05
Java Web Start
KXploit Tool
Learn2 Player (Uninstall Only)
LimeWire
LiveUpdate 2.6 (Symantec Corporation)
Macromedia Shockwave Player
MAIET Gunz
Matroska Pack - Lazy Man's MKV 0.94 (2004-11-11)
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1
Microsoft .NET Framework 1.1 Hotfix (KB886903)
Microsoft AntiSpyware
Microsoft Application Compatibility Analyzer 1.0
Microsoft Data Access Components KB870669
Microsoft Encarta Encyclopedia Standard 2004
Microsoft Money 2004
Microsoft Money 2004 System Pack
mIRC
Mozilla (1.7.1)
Mozilla Firefox (1.0.6)
MSN Messenger 7.0
MSN Messenger Names Toolkit
MSN Toolbar
MUSICMATCH® Jukebox
Norton WMI Update
OIN
OpenMG Limited Patch 4.0-04-11-01-01
OpenMG Secure Module 4.0.05
Paltalk Messenger
Paltalk PV75 Build 547
Panda ActiveScan
Peck's Power Join
Peck's Power Join (C:\Program Files\PeckJoin\)
Peck's Power Join (C:\Program Files\PeckJoin\) #3
Promo Images
QuickTime
Rampage of the Super Warriors Images
RealPlayer
Registry Mechanic
RPG Maker 2003 v1.06
SBC Yahoo! Applications
SBC Yahoo! DSL Home Networking Installer
Security Update for Step By Step Interactive Training (KB898458)
Security Update for Windows XP (KB883939)
Security Update for Windows XP (KB890046)
Security Update for Windows XP (KB896358)
Security Update for Windows XP (KB896422)
Security Update for Windows XP (KB896428)
Security Update for Windows XP (KB901214)
Security Update for Windows XP (KB903235)
Shadowclash Images 1.0
Shockwave
Snes9x
Sonic DLA
Sonic RecordNow!
Sonic Update Manager
SonicStage 2.3.00
Spy Sweeper
Spybot - Search & Destroy 1.3
SpywareBlaster v3.3
Survivor ™
Tibia 7.4
TrojanHunter 4.2
Update for Windows XP (KB894391)
Update for Windows XP (KB898461)
VideoLAN VLC media player 0.8.1
VX2 Cleaner plug-in for Ad-Aware SE
Winamp (remove only)
Windows Application Verifier 2.50
Windows Installer 3.1 (KB893803)
Windows Installer 3.1 (KB893803)
Windows XP Hotfix - KB834707
Windows XP Hotfix - KB867282
Windows XP Hotfix - KB873333
Windows XP Hotfix - KB873339
Windows XP Hotfix - KB885250
Windows XP Hotfix - KB885835
Windows XP Hotfix - KB885836
Windows XP Hotfix - KB885932
Windows XP Hotfix - KB886185
Windows XP Hotfix - KB887472
Windows XP Hotfix - KB887742
Windows XP Hotfix - KB888113
Windows XP Hotfix - KB888302
Windows XP Hotfix - KB890047
Windows XP Hotfix - KB890175
Windows XP Hotfix - KB890859
Windows XP Hotfix - KB890923
Windows XP Hotfix - KB891781
Windows XP Hotfix - KB893066
Windows XP Hotfix - KB893086
Windows XP Service Pack 2
WinRAR archiver
WINXP SP2 TCP Fix
WinZip
WordPerfect Office 11
xp-AntiSpy 3.93
YahELite 292
Yahoo! Toolbar
Yugioh Virtual Desktop
YVD
  • 0

#29
Michelle

Michelle

    Malware Removal Goddess

  • Retired Staff
  • 8,928 posts
Ok, I want to try this, but no guarantees it will work...

There are 2 reasons to get rid of this program. 1.) is that it comes bundled with Adware (note the name) and 2.) codecs cause problems such as this freezing when you go into certain folders.

Go to Start > Control Panel > Add or Remove Programs and remove the following:

DivX Pro Codec Adware

Then reboot your computer and see if the E drive still freezes on you.
  • 0

#30
Unreal Vibration

Unreal Vibration

    Member

  • Topic Starter
  • Member
  • PipPip
  • 24 posts
Yeah, it still freezes. But I did notice that the HiJackThis file had none of the files that are on my /E: Drive listed.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP