Thread
I was able to do everything except run Nialfix because the link was not working http://users.pandora...chy/nailfix.exe
Anyway my sytem seems to be working ok, but I wanted to post my log so someone with much more knowledge about this than I have could check them over.
---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 7:51:27 AM, 9/6/2005
+ Report-Checksum: 6D386C9C
+ Scan result:
HKLM\SOFTWARE\Classes\CLSID\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} -> Spyware.GameSpyArcade : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{9F95F736-0F62-4214-A4B4-CAA6738D4C07} -> Spyware.SaveNow : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{A6790AA5-C6C7-4BCF-A46D-0FDAC4EA90EB} -> Spyware.Azsearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{B75F75B8-93F3-429D-FF34-660B206D897A} -> Spyware.PurityScan : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{FFF5092F-7172-4018-827B-FA5868FB0478} -> Spyware.ZToolbar : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{6DEEE498-08CC-43F0-BCA0-DBB5A25C9501} -> Spyware.SimpleBar : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{C285D18D-43A2-4AEF-83FB-BF280E660A97} -> Spyware.SaveNow : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{84C94803-B5EC-4491-B2BE-7B113E013B77} -> Spyware.SimpleBar : Cleaned with backup
HKLM\SOFTWARE\Classes\ZToolbar.activator -> Spyware.Azsearch : Cleaned with backup
HKLM\SOFTWARE\Classes\ZToolbar.activator\CLSID -> Spyware.Azsearch : Cleaned with backup
HKLM\SOFTWARE\Classes\ZToolbar.activator\CurVer -> Spyware.Azsearch : Cleaned with backup
HKLM\SOFTWARE\Classes\ZToolbar.ParamWr -> Spyware.Azsearch : Cleaned with backup
HKLM\SOFTWARE\Classes\ZToolbar.ParamWr\CLSID -> Spyware.Azsearch : Cleaned with backup
HKLM\SOFTWARE\Classes\ZToolbar.ParamWr\CurVer -> Spyware.Azsearch : Cleaned with backup
HKLM\SOFTWARE\Classes\ZToolbar.StockBar -> Spyware.Azsearch : Cleaned with backup
HKLM\SOFTWARE\Classes\ZToolbar.StockBar\CLSID -> Spyware.Azsearch : Cleaned with backup
HKLM\SOFTWARE\Classes\ZToolbar.StockBar\CurVer -> Spyware.Azsearch : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} -> Spyware.GameSpyArcade : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a} -> Spyware.Alexa : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{B75F75B8-93F3-429D-FF34-660B206D897A} -> Spyware.PurityScan : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{FFF5092F-7172-4018-827B-FA5868FB0478} -> Spyware.ZToolbar : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Best Search Engine!!! -> Spyware.CoolWebSearch : Cleaned with backup
[264] C:\WINDOWS\system32\tcpG4T.dll -> TrojanSpy.Goldun.bp : Cleaned with backup
[1376] C:\WINDOWS\system32\init32m.exe -> TrojanDownloader.Agent.ho : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.28:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.29:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.65:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.66:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.175:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.176:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.177:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.189:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.190:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.191:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.192:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.193:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.208:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.209:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.210:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.211:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.212:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.250:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Masterstats : Cleaned with backup
:mozilla.364:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Adjuggler : Cleaned with backup
:mozilla.440:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.441:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.442:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.443:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.460:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.532:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.549:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.550:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.551:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.552:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.554:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.555:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.556:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.557:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.558:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.559:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.560:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.562:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.563:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.564:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.572:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.573:C:\Documents and Settings\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
C:\Documents and Settings\Eric Gregory\Start Menu\Programs\SpySheriff -> Spyware.SpySheriff : Cleaned with backup
C:\Documents and Settings\Eric Gregory\Start Menu\Programs\SpySheriff\SpySheriff.lnk -> Spyware.SpySheriff : Cleaned with backup
C:\Program Files\AWS\WeatherBug\MiniBugTransporter.dll -> Spyware.Wheaterbug : Cleaned with backup
C:\Program Files\SpySheriff -> Spyware.SpySheriff : Cleaned with backup
C:\Program Files\SpySheriff\base.avd -> Spyware.SpySheriff : Cleaned with backup
C:\Program Files\SpySheriff\base001.avd -> Spyware.SpySheriff : Cleaned with backup
C:\Program Files\SpySheriff\found.wav -> Spyware.SpySheriff : Cleaned with backup
C:\Program Files\SpySheriff\heur000.dll -> Spyware.SpySheriff : Cleaned with backup
C:\Program Files\SpySheriff\heur001.dll -> Spyware.SpySheriff : Cleaned with backup
C:\Program Files\SpySheriff\heur002.dll -> Spyware.SpySheriff : Cleaned with backup
C:\Program Files\SpySheriff\IESecurity.dll -> Spyware.SpySheriff : Cleaned with backup
C:\Program Files\SpySheriff\notfound.wav -> Spyware.SpySheriff : Cleaned with backup
C:\Program Files\SpySheriff\ProcMon.dll -> Spyware.SpySheriff : Cleaned with backup
C:\Program Files\SpySheriff\removed.wav -> Spyware.SpySheriff : Cleaned with backup
C:\Program Files\SpySheriff\SpySheriff.dvm -> Spyware.SpySheriff : Cleaned with backup
C:\Program Files\SpySheriff\Uninstall.exe -> Spyware.SpySheriff : Cleaned with backup
C:\WINDOWS\Downloaded Program Files\gsda.dll -> Dialer.Generic : Cleaned with backup
C:\WINDOWS\sys752.exe -> TrojanProxy.Lager.x : Cleaned with backup
C:\WINDOWS\sys753.exe -> TrojanDropper.Microjoin : Cleaned with backup
C:\WINDOWS\sys826.exe -> TrojanDropper.Microjoin : Cleaned with backup
C:\WINDOWS\sys833.exe -> TrojanProxy.Lager.x : Cleaned with backup
C:\WINDOWS\sys834.exe -> TrojanDropper.Microjoin : Cleaned with backup
C:\WINDOWS\sys835.exe -> TrojanDropper.Small.acz : Cleaned with backup
C:\WINDOWS\sys836.exe -> TrojanProxy.Lager.x : Cleaned with backup
C:\WINDOWS\sys837.exe -> TrojanDropper.Microjoin : Cleaned with backup
C:\WINDOWS\sys84.exe -> TrojanProxy.Lager.x : Cleaned with backup
C:\WINDOWS\sys85.exe -> TrojanDropper.Microjoin : Cleaned with backup
C:\WINDOWS\system32\clihanlm.exe -> TrojanDropper.Small.acz : Cleaned with backup
C:\WINDOWS\system32\dgnpkkcn.exe -> TrojanDropper.Small.acz : Cleaned with backup
C:\WINDOWS\system32\doser.exe -> Trojan.Small.fh : Cleaned with backup
C:\WINDOWS\system32\ekpmjkih.exe -> TrojanDropper.Small.acz : Cleaned with backup
C:\WINDOWS\system32\fmqfaboa.exe -> TrojanDropper.Small.acz : Cleaned with backup
C:\WINDOWS\system32\init32m.exe -> TrojanDownloader.Agent.ho : Cleaned with backup
C:\WINDOWS\system32\jnjcjfge.exe -> TrojanDropper.Small.acz : Cleaned with backup
C:\WINDOWS\system32\latest.exe -> Trojan.Crypt.l : Cleaned with backup
C:\WINDOWS\system32\socks.exe -> Worm.Bagz.i : Cleaned with backup
C:\WINDOWS\system32\sysvcs.exe -> Trojan.Crypt.l : Cleaned with backup
C:\WINDOWS\system32\tcpG4T.dll -> TrojanSpy.Goldun.bp : Cleaned with backup
C:\WINDOWS\system32\vxgame1.exe -> TrojanDropper.Small.acg : Cleaned with backup
C:\WINDOWS\system32\vxh8jkdq1.exe -> TrojanDownloader.Small.bho : Cleaned with backup
C:\WINDOWS\system32\vxh8jkdq2.exe -> Spyware.Hijacker.Generic : Cleaned with backup
C:\WINDOWS\system32\vxh8jkdq8.exe -> TrojanDownloader.Small.bho : Cleaned with backup
C:\winld32.dll -> TrojanDownloader.Small.anu : Cleaned with backup
C:\winstall.exe -> Spyware.Hijacker.Generic : Cleaned with backup
:mozilla.26:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.27:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.28:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.29:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.65:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.66:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.175:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.176:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.177:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.189:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.190:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.191:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.192:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.193:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.208:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.209:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.210:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.211:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.212:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.250:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Masterstats : Cleaned with backup
:mozilla.364:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Adjuggler : Cleaned with backup
:mozilla.440:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.441:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.442:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.443:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.460:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.532:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.549:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.550:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.551:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.552:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.554:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.555:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.556:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.557:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.558:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.559:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.560:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.562:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.563:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.564:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.572:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.573:D:\Documents and Settings Backup\Eric Gregory\Application Data\Mozilla\Firefox\Profiles\x92dl36h.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
D:\Documents and Settings Backup\Eric Gregory\Cookies\eric [email protected][1].txt -> Spyware.Cookie.Falkag : Cleaned with backup
D:\Documents and Settings Backup\Eric Gregory\Cookies\eric [email protected][2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
D:\Documents and Settings Backup\Eric Gregory\Cookies\eric [email protected][1].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
D:\Documents and Settings Backup\Eric Gregory\Cookies\eric [email protected][2].txt -> Spyware.Cookie.Falkag : Cleaned with backup
D:\Documents and Settings Backup\Eric Gregory\Cookies\eric [email protected][1].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
D:\Documents and Settings Backup\Eric Gregory\Cookies\eric gregory@casalemedia[1].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
D:\Documents and Settings Backup\Eric Gregory\Cookies\eric [email protected][1].txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
D:\Documents and Settings Backup\Eric Gregory\Cookies\eric gregory@com[1].txt -> Spyware.Cookie.Com : Cleaned with backup
D:\Documents and Settings Backup\Eric Gregory\Cookies\eric [email protected][1].txt -> Spyware.Cookie.Masterstats : Cleaned with backup
D:\Documents and Settings Backup\Eric Gregory\Cookies\eric [email protected][1].txt -> Spyware.Cookie.Adjuggler : Cleaned with backup
D:\Documents and Settings Backup\Eric Gregory\Cookies\eric [email protected][2].txt -> Spyware.Cookie.Com : Cleaned with backup
D:\Documents and Settings Backup\Eric Gregory\Cookies\eric [email protected][1].txt -> Spyware.Cookie.Liveperson : Cleaned with backup
D:\Documents and Settings Backup\Eric Gregory\Cookies\eric gregory@serving-sys[1].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
D:\Documents and Settings Backup\Eric Gregory\Cookies\eric gregory@statcounter[1].txt -> Spyware.Cookie.Statcounter : Cleaned with backup
D:\Downloads\alt.binaries.pictures.centerfolds.playboy\( aGRf - Some CCDE here ....rest in ABFPVP ) - ccde_PM199702_Yvonne_Hoffmann_29.jpg\Casino Treasure.exe -> Spyware.Casino : Cleaned with backup
D:\Downloads\Sorting\DivXToDVD + CopyToDVD + Crack.rar/CopyToDVD 3.0.41 Crack.zip/start.exe -> TrojanDropper.Bridge : Cleaned with backup
::Report End
Logfile of HijackThis v1.99.1
Scan saved at 8:02:08 AM, on 9/6/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.EXE
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Norton Password Manager\AcctMgr.exe
C:\WINDOWS\System32\RioMSC.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Creative\SBAudigy2ZS\Surround Mixer\CTSysVol.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Creative\SBAudigy2ZS\DVDAudio\CTDVDDet.EXE
C:\WINDOWS\System32\RUNDLL32.EXE
C:\WINDOWS\System32\MSTMON_S.EXE
C:\WINDOWS\System32\kernels32.exe
C:\PROGRA~1\SecCopy\SecCopy.exe
C:\Program Files\AIM\aim.exe
C:\WINDOWS\System32\vxh8jkdq5.exe
C:\Program Files\ARM Software\MacroMaker\MacroMaker.exe
C:\Documents and Settings\Eric Gregory\Desktop\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = file://C:\WINDOWS\blank.mht
F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\System32\kernels32.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Adobe Acrobat 6.0\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: bho2gr Class - {31FF080D-12A3-439A-A2EF-4BA95A3148E8} - C:\Internet Apps\GetRight\xx2gr.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: AcroIEToolbarHelper Class - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Adobe Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 6.0\Acrobat\AcroIEFavClient.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: (no name) - {A6790AA5-C6C7-4BCF-A46D-0FDAC4EA90EB} - (no file)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NVIDIA nTune] "C:\Program Files\NVIDIA Corporation\nTune\\nTune.exe" clear
O4 - HKLM\..\Run: [AcctMgr] C:\Program Files\Norton Password Manager\AcctMgr.exe /startup
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy2ZS\Surround Mixer\CTSysVol.exe /r
O4 - HKLM\..\Run: [CTDVDDET] C:\Program Files\Creative\SBAudigy2ZS\DVDAudio\CTDVDDet.EXE
O4 - HKLM\..\Run: [SBDrvDet] C:\Program Files\Creative\SB Drive Det\SBDrvDet.exe /r
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [KONICA MINOLTA magicolor 2400W STD] C:\WINDOWS\System32\MSTMON_S.EXE STARTUP
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [System] C:\WINDOWS\System32\kernels32.exe
O4 - HKCU\..\Run: [Second Copy 2000] "C:\PROGRA~1\SecCopy\SecCopy.exe"
O4 - HKCU\..\Run: [SB Audigy 2 Startup Menu] "C:\Program Files\Creative\SBAudigy2ZS\Program\Startup Menu\ChkColor.EXE"
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [Windows installer] C:\winstall.exe
O4 - HKCU\..\Run: [SNInstall] C:\WINDOWS\System32\vxh8jkdq2.exe
O4 - HKCU\..\Run: [aupd] C:\WINDOWS\System32\sysvcs.exe
O4 - HKCU\..\Run: [SpySheriff] C:\Program Files\SpySheriff\SpySheriff.exe
O4 - Startup: MacroMaker.lnk = ?
O8 - Extra context menu item: Download with GetRight - C:\Internet Apps\GetRight\GRdownload.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Open with GetRight Browser - C:\Internet Apps\GetRight\GRbrowse.htm
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O15 - Trusted Zone: http://www.goteamspeak.com
O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (FilePlanet Download Control Class) - http://www.fileplane...DC_1_0_0_44.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.micros...b?1120274636453
O20 - Winlogon Notify: tcpG4T - tcpG4T.dll (file missing)
O21 - SSODL: System - {22557BA4-6E3C-4402-BD78-27296F0AC589} - ssmc.dll (file missing)
O21 - SSODL: SysTray.Excn - {1722ECFF-4356-4f5b-B534-E67294FE75E9} - C:\WINDOWS\System32\hdffpinn.dll (file missing)
O21 - SSODL: Adobe PageMaker 7.0 - {C3A27168-041E-EA00-DE21-3C2F66D9D61F} - c:\program files\adobe\pagemaker 7.0\winalwh32.dll
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Creative Service for CDROM Access - Unknown owner - C:\WINDOWS\System32\CTsvcCDA.exe (file missing)
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~1\NPROTECT.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Rio MSC Manager (RioMSC) - Digital Networks North America, Inc. - C:\WINDOWS\System32\RioMSC.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe