Thank you Cretemonster,
I really need your help: am I doing any better?
I followed your instructions and here come the 3 new reports:
Logfile of HijackThis v1.99.1
Scan saved at 3:25:30 PM, on 8/24/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9AA.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\PROTEC~1\PPTbc.EXE
C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe
C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\palmOne\HOTSYNC.EXE
C:\Program Files\Protector Plus\POPSCAN.EXE
C:\Program Files\Toshiba\Power Management\CeEPwrSvc.exe
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\WINDOWS\system32\DVDRAMSV.exe
C:\Program Files\Protector Plus\PPAVMon.exe
C:\Program Files\Protector Plus\PPServ.exe
C:\WINDOWS\system32\svchost.exe
c:\TOSHIBA\Ivp\Swupdate\swupdtmr.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\toshiba\ivp\ism\ivpsvmgr.exe
C:\Documents and Settings\Roberta Lonati\Desktop\Ad-Spyware\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://www.toshiba.com/searchR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.italiansonline.net/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://toshibadirect.com/R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Internet Explorer Provided by Cox High Speed Internet
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: EpsonToolBandKicker Class - {E99421FB-68DD-40F0-B4AC-B7027CAE2F1A} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O3 - Toolbar: EPSON Web-To-Page - {EE5D279F-081B-4404-994D-C6B60AAEBA6D} - C:\Program Files\EPSON\EPSON Web-To-Page\EPSON Web-To-Page.dll
O4 - HKLM\..\Run: [PadTouch] C:\Program Files\TOSHIBA\Touch and Launch\PadExe.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [Pinger] c:\toshiba\ivp\ism\pinger.exe /run
O4 - HKLM\..\Run: [EPSON Stylus CX4600 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATI9AA.EXE /P26 "EPSON Stylus CX4600 Series" /O6 "USB001" /M "Stylus CX4600"
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [PP2000 Taskbar Control] C:\PROGRA~1\PROTEC~1\PPTbc.EXE
O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 4.2\THGuard.exe"
O4 - HKLM\..\Run: [WinPatrol] C:\Program Files\BillP Studios\WinPatrol\winpatrol.exe
O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - Startup: Manager HotSync.LNK = C:\Program Files\palmOne\HOTSYNC.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.toshiba.com
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) -
http://by104fd.bay10...es/MsnPUpld.cabO16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://update.micros...b?1124575823625O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) -
http://a840.g.akamai...all/xscan53.cabO16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) -
http://www.pandasoft...free/asinst.cabO20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: CeEPwrSvc - COMPAL ELECTRONIC INC. - C:\Program Files\Toshiba\Power Management\CeEPwrSvc.exe
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: DVD-RAM_Service - Matsushita Electric Industrial Co., Ltd. - C:\WINDOWS\system32\DVDRAMSV.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Protector Plus Anti-virus Monitor Service (ProtectorPlusAVMonitor) - Unknown owner - C:\Program Files\Protector Plus\PPAVMon.exe
O23 - Service: Protector Plus Service (ProtectorPlusService) - Unknown owner - C:\Program Files\Protector Plus\PPServ.exe
O23 - Service: Swupdtmr - Unknown owner - c:\TOSHIBA\Ivp\Swupdate\swupdtmr.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 3:18:26 PM, 8/24/2005
+ Report-Checksum: 93D5D041
+ Scan result:
C:\Program Files\Spy Cleaner\Backup\03_30_200521_43_51.zip/1.scl -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\03_30_200521_43_51.zip/2.scl -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\03_30_200521_43_51.zip/3.scl -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\03_30_200521_43_51.zip/4.scl -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\03_30_200521_43_51.zip/5.scl -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\03_30_200521_43_51.zip/6.scl -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\03_30_200521_43_51.zip/7.scl -> Spyware.Cookie.Mediaplex : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\03_30_200521_43_51.zip/8.scl -> Spyware.Cookie.Bluestreak : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\03_30_200521_43_51.zip/9.scl -> Spyware.Cookie.Itrack : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_06_200521_44_01.zip/0.scl -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_06_200521_44_01.zip/1.scl -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_06_200521_44_01.zip/10.scl -> Spyware.Cookie.Bluestreak : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_06_200521_44_01.zip/12.scl -> Spyware.Cookie.Itrack : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_06_200521_44_01.zip/13.scl -> Spyware.Cookie.Valueclick : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_06_200521_44_01.zip/2.scl -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_06_200521_44_01.zip/3.scl -> Spyware.Cookie.Coremetrics : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_06_200521_44_01.zip/4.scl -> Spyware.Cookie.Coremetrics : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_06_200521_44_01.zip/5.scl -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_06_200521_44_01.zip/6.scl -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_06_200521_44_01.zip/7.scl -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_06_200521_44_01.zip/8.scl -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_06_200521_44_01.zip/9.scl -> Spyware.Cookie.Mediaplex : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_09_200507_22_12.zip/0.scl -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_09_200507_22_12.zip/1.scl -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_09_200507_22_12.zip/2.scl -> Spyware.Cookie.Mediaplex : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_15_200514_34_41.zip/0.scl -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_15_200514_34_41.zip/1.scl -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_15_200514_34_41.zip/10.scl -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_15_200514_34_41.zip/11.scl -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_15_200514_34_41.zip/12.scl -> Spyware.Cookie.Mediaplex : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_15_200514_34_41.zip/13.scl -> Spyware.Cookie.Bluestreak : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_15_200514_34_41.zip/2.scl -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_15_200514_34_41.zip/3.scl -> Spyware.Cookie.Centrport : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_15_200514_34_41.zip/4.scl -> Spyware.Cookie.Coremetrics : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_15_200514_34_41.zip/5.scl -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_15_200514_34_41.zip/6.scl -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_15_200514_34_41.zip/7.scl -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_15_200514_34_41.zip/8.scl -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_15_200514_34_41.zip/9.scl -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_16_200518_23_37.zip/0.scl -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_16_200518_23_37.zip/1.scl -> Spyware.Cookie.Coremetrics : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_16_200518_23_37.zip/2.scl -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_16_200518_23_37.zip/3.scl -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_16_200518_23_37.zip/4.scl -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_16_200518_23_37.zip/5.scl -> Spyware.Cookie.Mediaplex : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_16_200518_33_33.zip/1.scl -> Spyware.Cookie.Overture : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_16_200518_33_33.zip/10.scl -> Spyware.Cookie.Liveperson : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_16_200518_33_33.zip/11.scl -> Spyware.Cookie.Tradedoubler : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_16_200518_33_33.zip/12.scl -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_16_200518_33_33.zip/13.scl -> Spyware.Cookie.Pointroll : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_16_200518_33_33.zip/15.scl -> Spyware.Cookie.Falkag : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_16_200518_33_33.zip/4.scl -> Spyware.Cookie.Tribalfusion : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_16_200518_33_33.zip/5.scl -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_16_200518_33_33.zip/6.scl -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_16_200518_33_33.zip/7.scl -> Spyware.Cookie.Overture : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_17_200509_31_00.zip/0.scl -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_17_200509_31_00.zip/3.scl -> Spyware.Cookie.Revenue : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_19_200509_13_25.zip/1.scl -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_19_200509_13_25.zip/2.scl -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_19_200509_13_25.zip/3.scl -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_19_200509_13_25.zip/4.scl -> Spyware.Cookie.Coremetrics : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_19_200509_13_25.zip/5.scl -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_20_200522_23_43.zip/0.scl -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_20_200522_23_43.zip/1.scl -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_20_200522_23_43.zip/2.scl -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_20_200522_23_43.zip/3.scl -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_20_200522_23_43.zip/4.scl -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_20_200522_23_43.zip/6.scl -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_20_200522_23_43.zip/8.scl -> Spyware.Cookie.Valueclick : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\04_21_200510_27_14.zip/0.scl -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_19_200507_52_04.zip/1.scl -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_19_200507_52_04.zip/10.scl -> Spyware.Cookie.Mediaplex : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_19_200507_52_04.zip/11.scl -> Spyware.Cookie.Adserver : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_19_200507_52_04.zip/16.scl -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_19_200507_52_04.zip/17.scl -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_19_200507_52_04.zip/2.scl -> Spyware.Cookie.Centrport : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_19_200507_52_04.zip/20.scl -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_19_200507_52_04.zip/22.scl -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_19_200507_52_04.zip/25.scl -> Spyware.Cookie.Falkag : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_19_200507_52_04.zip/26.scl -> Spyware.Cookie.Webtrendslive : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_19_200507_52_04.zip/3.scl -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_19_200507_52_04.zip/4.scl -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_19_200507_52_04.zip/5.scl -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_19_200507_52_04.zip/6.scl -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_19_200507_52_04.zip/7.scl -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_19_200507_52_04.zip/8.scl -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_19_200507_52_04.zip/9.scl -> Spyware.Cookie.Linksynergy : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/10.scl -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/11.scl -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/12.scl -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/13.scl -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/14.scl -> Spyware.Cookie.Hitbox : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/15.scl -> Spyware.Cookie.Linksynergy : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/16.scl -> Spyware.Cookie.Mediaplex : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/19.scl -> Spyware.Cookie.Ru4 : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/2.scl -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/20.scl -> Spyware.Cookie.Qksrv : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/22.scl -> Spyware.Cookie.Adserver : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/24.scl -> Spyware.Cookie.Bfast : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/26.scl -> Spyware.Cookie.Addynamix : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/3.scl -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/30.scl -> Spyware.Cookie.Bluestreak : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/32.scl -> Spyware.Cookie.Tribalfusion : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/34.scl -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/35.scl -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/36.scl -> Spyware.Cookie.Casalemedia : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/37.scl -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/4.scl -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/40.scl -> Spyware.Cookie.Clickagents : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/41.scl -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/42.scl -> Spyware.Cookie.Tradedoubler : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/46.scl -> Spyware.Cookie.Falkag : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/47.scl -> Spyware.Cookie.Falkag : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/49.scl -> Spyware.Cookie.Valueclick : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/5.scl -> Spyware.Cookie.Centrport : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/50.scl -> Spyware.Cookie.Webtrendslive : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/7.scl -> Spyware.Cookie.Coremetrics : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/8.scl -> Spyware.Cookie.Coremetrics : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\05_28_200519_13_49.zip/9.scl -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\06_09_200522_10_30.zip/7.scl -> Spyware.Cookie.Itrack : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\06_12_200508_31_47.zip/2.scl -> Spyware.Cookie.Bluestreak : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\06_13_200522_44_57.zip/3.scl -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\06_13_200522_44_57.zip/6.scl -> Spyware.Cookie.Tradedoubler : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\06_13_200522_44_57.zip/8.scl -> Spyware.Cookie.Addynamix : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\06_23_200521_28_14.zip/2.scl -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\06_23_200521_28_14.zip/3.scl -> Spyware.Cookie.Overture : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\06_23_200521_28_14.zip/5.scl -> Spyware.Cookie.Addynamix : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\06_23_200521_28_14.zip/6.scl -> Spyware.Cookie.Falkag : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\06_26_200508_24_51.zip/0.scl -> Spyware.Cookie.Qksrv : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\06_26_200508_24_51.zip/4.scl -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\06_26_200508_24_51.zip/5.scl -> Spyware.Cookie.Overture : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\06_26_200508_24_51.zip/7.scl -> Spyware.Cookie.Liveperson : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\06_26_200508_24_51.zip/8.scl -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\06_26_200510_41_59.zip/1.scl -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\07_10_200508_10_42.zip/11.scl -> Spyware.Cookie.Addynamix : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\07_10_200508_10_42.zip/12.scl -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\07_10_200508_10_42.zip/13.scl -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\07_10_200508_10_42.zip/15.scl -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\07_10_200508_10_42.zip/3.scl -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\07_10_200508_10_42.zip/8.scl -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\07_10_200508_58_04.zip/0.scl -> Spyware.Cookie.Bluestreak : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\07_10_200508_58_04.zip/1.scl -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\07_11_200520_54_00.zip/2.scl -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\07_11_200520_54_00.zip/5.scl -> Spyware.Cookie.Liveperson : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\07_16_200523_30_37.zip/2.scl -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\07_16_200523_30_37.zip/3.scl -> Spyware.Cookie.Overture : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\07_23_200523_50_46.zip/0.scl -> Spyware.Cookie.Adtech : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\07_23_200523_50_46.zip/2.scl -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\07_23_200523_50_46.zip/3.scl -> Spyware.Cookie.Itrack : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\07_23_200523_50_46.zip/5.scl -> Spyware.Cookie.Tradedoubler : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\07_23_200523_50_46.zip/7.scl -> Spyware.Cookie.Statcounter : Cleaned with backup
C:\Program Files\Spy Cleaner\Backup\07_23_200523_50_46.zip/8.scl -> Spyware.Cookie.Falkag : Cleaned with backup
C:\WINDOWS\system32\drivers\df_kmd.sys -> Trojan.Rootkit.Agent.af : Cleaned with backup
::Report End
Incident Status Location
Dialer:dialer.bjp No disinfected HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS\ZONEMAP\DOMAINS\ARCHIVIOSEX.NET
Dialer:dialer.akd No disinfected HKEY_CURRENT_USER\SOFTWARE\MICROSOFT\WINDOWS\CURRENTVERSION\INTERNET SETTINGS\ZONEMAP\DOMAINS\SGRUNT.BIZ
Spyware:Spyware/Virtumonde No disinfected C:\Documents and Settings\Roberta Lonati\Desktop\VundoFix\VundoFix\backups\backup-20050824-094001-609.dll
Possible Virus. No disinfected C:\Program Files\TrojanHunter 4.2\Tools\Process Viewer\ProcessViewer.exe
Spyware:Spyware/Virtumonde No disinfected C:\WINDOWS\Config\keydoc.dll
Possible Virus. No disinfected C:\WINDOWS\Temp\ASHeuristic\ProcessViewer.exe.vir