Thanks *so much* for your help--what an invaluable website.
Thankfully, Freepod.com no longer comes up at startup (and the p*rn file that came with it, it was from an AIM link that got sent to my daughter), but there is still something here that is very persistent.
Here is the ewido report:
---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 10:14:48 PM, 10/7/2005
+ Report-Checksum: 513266E2
+ Scan result:
HKLM\SOFTWARE\YourSiteBar -> Spyware.ISTBar : Error during cleaning
HKLM\SOFTWARE\YourSiteBar\Historycompare_item -> Spyware.ISTBar : Error during cleaning
HKLM\SOFTWARE\YourSiteBar\Historyfiles -> Spyware.ISTBar : Error during cleaning
HKU\S-1-5-21-2658524170-1420592788-619799861-1003\Software\DNS -> Adware.Shorty : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Avenue Media -> Spyware.InternetOptimizer : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\DNS -> Adware.Shorty : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\DownloadWare -> Spyware.Downloadware : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\DownloadWare\Prefs -> Spyware.Downloadware : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\dsktb -> Spyware.IEPlugin : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\dsktb\DesktopToolbar -> Spyware.IEPlugin : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Hopper -> Spyware.NetworkEssentials : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\intexp -> Spyware.IEPlugin : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\intexp\Config -> Spyware.IEPlugin : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\intexp\Config\button0 -> Spyware.IEPlugin : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\intexp\Config\button1 -> Spyware.IEPlugin : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\intexp\Config\button2 -> Spyware.IEPlugin : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\intexp\Config\button3 -> Spyware.IEPlugin : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\intexp\Config\KeyWordFreqCap -> Spyware.IEPlugin : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\intexp\MyFileSystem2 -> Spyware.IEPlugin : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\IST -> Spyware.ISTBar : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\LocalNRD -> Spyware.BetterInternet : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Microsoft\Internet Explorer\Explorer Bars\{8CBA1B49-8144-4721-A7B1-64C578C9EED7} -> Spyware.SideFind : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Microsoft\Internet Explorer\Extensions\CmdMapping\\{6685509E-B47B-4f47-8E16-9A5F3A62F683} -> Spyware.MoneyMaker : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Microsoft\Internet Explorer\Extensions\CmdMapping\\{10E42047-DEB9-4535-A118-B3F6EC39B807} -> Spyware.SideFind : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Microsoft\Internet Explorer\Extensions\{6685509E-B47B-4f47-8E16-9A5F3A62F683} -> Spyware.MoneyMaker : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Microsoft\Internet Explorer\MenuExt\Ebates -> Spyware.MoneyMaker : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Microsoft\Internet Explorer\MenuExt\Web Rebates -> Spyware.WebRebates : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000000-DD60-0064-6EC2-6E0100000000} -> Spyware.MediaMotor : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0000607D-D204-42C7-8E46-216055BF9918} -> Spyware.TwainTech : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0007522A-2297-43C1-8EB1-C90B0FF20DA5} -> Spyware.ShopNav : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{01F44A8A-8C97-4325-A378-76E68DC4AB2E} -> Spyware.IEPlugin : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0421701D-CF13-4E70-ADF0-45A953E7CB8B} -> Spyware.SmartPops : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10E42047-DEB9-4535-A118-B3F6EC39B807} -> Spyware.SideFind : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{6685509E-B47B-4F47-8E16-9A5F3A62F683} -> Spyware.MoneyMaker : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{69135BDE-5FDC-4B61-98AA-82AD2091BCCC} -> Spyware.IEPlugin : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{83DE62E0-5805-11D8-9B25-00E04C60FAF2} -> Spyware.BlazeFind : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{86227D9C-0EFE-4F8A-AA55-30386A3F5686} -> Spyware.YourSiteBar : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8F4E5661-F99E-4B3E-8D85-0EA71C0748E4} -> Spyware.MoneyTree : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A3FDD654-A057-4971-9844-4ED8E67DBBB8} -> Spyware.ISTBar : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{CE31A1F7-3D90-4874-8FBE-A5D97F8BC8F1} -> Spyware.BargainBuddy : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E8EAEB34-F7B5-4C55-87FF-720FAF53D841} -> Spyware.MidAddle : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{EA5A82FB-D6BE-44F9-9363-B1ABABC153C1} -> Spyware.BetterInternet : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\msbb -> Spyware.180Solutions : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Pynix -> Spyware.MediaMotor : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\salm -> Spyware.180Solutions : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1009\Software\Updater -> Spyware.KeenValue : Cleaned with backup
HKU\S-1-5-21-2658524170-1420592788-619799861-1010\Software\DNS -> Adware.Shorty : Cleaned with backup
:mozilla.18:C:\Documents and Settings\Conor\Application Data\Mozilla\Firefox\Profiles\tjk6pr73.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.19:C:\Documents and Settings\Conor\Application Data\Mozilla\Firefox\Profiles\tjk6pr73.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.20:C:\Documents and Settings\Conor\Application Data\Mozilla\Firefox\Profiles\tjk6pr73.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.21:C:\Documents and Settings\Conor\Application Data\Mozilla\Firefox\Profiles\tjk6pr73.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.29:C:\Documents and Settings\Conor\Application Data\Mozilla\Firefox\Profiles\tjk6pr73.default\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Conor\Application Data\Mozilla\Firefox\Profiles\tjk6pr73.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Conor\Application Data\Mozilla\Firefox\Profiles\tjk6pr73.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Conor\Application Data\Mozilla\Firefox\Profiles\tjk6pr73.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.33:C:\Documents and Settings\Conor\Application Data\Mozilla\Firefox\Profiles\tjk6pr73.default\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Conor\Application Data\Mozilla\Firefox\Profiles\tjk6pr73.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Conor\Application Data\Mozilla\Firefox\Profiles\tjk6pr73.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Conor\Application Data\Mozilla\Firefox\Profiles\tjk6pr73.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Conor\Application Data\Mozilla\Firefox\Profiles\tjk6pr73.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Conor\Application Data\Mozilla\Firefox\Profiles\tjk6pr73.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Conor\Application Data\Mozilla\Firefox\Profiles\tjk6pr73.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Conor\Application Data\Mozilla\Firefox\Profiles\tjk6pr73.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Conor\Application Data\Mozilla\Firefox\Profiles\tjk6pr73.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Conor\Application Data\Mozilla\Firefox\Profiles\tjk6pr73.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.60:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.61:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.62:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.67:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.68:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.69:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.70:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.71:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.73:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.87:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.88:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.89:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.90:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.91:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.97:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.98:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.99:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.100:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.101:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.102:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.103:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.104:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.105:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.106:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.107:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.108:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.109:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.110:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.111:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.112:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.113:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.114:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.115:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.116:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.117:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.118:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.119:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.120:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.121:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.122:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.123:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.124:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.125:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.126:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.127:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.128:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.129:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.130:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.131:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.133:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.134:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.135:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.136:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.137:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.138:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.139:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.140:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.141:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.142:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.143:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.144:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.145:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.146:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.147:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.148:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.149:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.150:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.151:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Addynamix : Cleaned with backup
:mozilla.152:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.153:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.154:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.155:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.156:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.157:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.158:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.160:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.169:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.170:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.171:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.177:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.178:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.201:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.205:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.207:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.208:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.209:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.210:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.225:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.226:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.227:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.228:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.229:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.230:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.231:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.232:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.235:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.236:C:\Documents and Settings\Meghan\Application Data\Mozilla\Firefox\Profiles\4gg7v8a7.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
C:\Documents and Settings\Meghan\Cookies\meghan@advertising[2].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Documents and Settings\Meghan\Cookies\meghan@atdmt[1].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Documents and Settings\Meghan\Cookies\meghan@doubleclick[2].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Documents and Settings\Meghan\Cookies\meghan@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Documents and Settings\Meghan\Cookies\
[email protected][1].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Documents and Settings\Meghan\Cookies\meghan@tradedoubler[1].txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
C:\Documents and Settings\Michael\Start Menu\Programs\Power Scan -> Spyware.PowerScan : Cleaned with backup
C:\Documents and Settings\Michael\Start Menu\Programs\Power Scan\Power Scan.lnk -> Spyware.PowerScan : Cleaned with backup
C:\Program Files\Common Files\services.exe -> Spyware.Maxifiles : Cleaned with backup
C:\Program Files\Common Files\Windows\services32.exe -> Spyware.Maxifiles : Cleaned with backup
C:\Program Files\Common Files\__delete_on_reboot__services.exe -> Spyware.Maxifiles : Cleaned with backup
::Report End
Here is the HIjack report after I finished everything:
Logfile of HijackThis v1.99.1
Scan saved at 10:15:51 PM, on 10/7/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
c:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Sony\MD Simple Burner\NetMDSB.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\Program Files\Softex\OmniPass\Omniserv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\winlogon.exe
C:\Program Files\Softex\OmniPass\OPXPApp.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb09.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\TrojanHunter 4.2\THGuard.exe
C:\Program Files\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = www.google.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext =
http://mmjb.musicmat...ANG=ENU&Grant=0R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Comcast
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_5_0.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: XBTP07618 - {2296428D-C133-4928-B76A-A200FF409572} - C:\PROGRA~1\FREEPR~1\freeprod.dll
O2 - BHO: eBay Toolbar Helper - {22D8E815-4A5E-4DFB-845E-AAB64207F5BD} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll (file missing)
O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - C:\Program Files\Microsoft Money\System\mnyside.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - c:\Program Files\Norton AntiVirus\NavShExt.dll
O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file)
O2 - BHO: Internet Explorer Web Content Catcher - {FFF4E223-7019-4ce7-BE03-D7D3C8CCE884} - C:\Program Files\DNS\Catcher.dll
O3 - Toolbar: HP View - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpdtlk02.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - c:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: AIM Search - {40D41A8B-D79B-43d7-99A7-9EE0F344C385} - C:\Program Files\AIM Toolbar\AIMBar.dll
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_5_0.dll
O3 - Toolbar: eBay Toolbar - {92085AD4-F48A-450D-BD93-B28CC7DF67CE} - C:\Program Files\eBay\eBay Toolbar2\eBayTB.dll (file missing)
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb09.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [OSS] C:\WINDOWS\System32\ossproxy.exe -boot
O4 - HKLM\..\Run: [Limeshop0] "C:\Program Files\Lime_Shop\Limeshop0.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [Á³# L"h'þ9Óœð3rÅWC:\Program Files\ISTsvc\istsvc.exe] C:\WINDOWS\rhbogwjt.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [oqcwjtp] c:\windows\system32\umajoy.exe
O4 - HKLM\..\Run: [strtas] lockx.exe
O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 4.2\THGuard.exe"
O4 - HKLM\..\RunServices: [strtas] lockx.exe
O4 - HKCU\..\Run: [BackupNotify] c:\Program Files\Hewlett-Packard\Digital Imaging\bin\backupnotify.exe
O4 - HKCU\..\Run: [Microsoft Windows Update] scvvhost.exe
O4 - HKCU\..\Run: [svphost.exe] C:\WINDOWS\system32\svphost.exe
O4 - HKCU\..\Run: [strtas] lockx.exe
O4 - HKCU\..\Run: [services32] C:\Program Files\Common Files\Windows\mc-99-829-0000156.exe
O4 - HKCU\..\Run: [DNS] C:\Program Files\Common Files\mc-99-829-0000156.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O8 - Extra context menu item: LimeShop Preferences - file://C:\Program Files\Lime_Shop\Sy700\Tp700\scri700a.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyside.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: ComcastHSI - {9DF2D8EF-B05D-4C2F-8C0D-925624146983} -
http://www.comcast.net (file missing) (HKCU)
O9 - Extra button: Help - {D430D251-C811-4CAD-8D4A-7E9DEAF6708D} -
http://www.comcast.net/memberservices/ (file missing) (HKCU)
O9 - Extra button: Support - {E50E869F-5F0D-461A-AC03-2C1B4F78D545} -
http://www.comcastsupport.com (file missing) (HKCU)
O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) -
http://housecall60.t...all/xscan60.cabO16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft....k/?linkid=39204O16 - DPF: {2E28242B-A689-11D4-80F2-0040266CBB8D} (KX-HCM10 Control) -
http://dc2.d127.org/kxhcm10.ocxO16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (FilePlanet Download Control Class) -
http://www.fileplane...DC_1_0_0_42.cabO16 - DPF: {62475759-9E84-458E-A1AB-5D2C442ADFDE} -
http://a1540.g.akama...meInstaller.exeO16 - DPF: {FCF289D4-0AC8-4ED8-BE31-E8AF09606AB5} (download_35mb_com.applet) -
http://static.35mb.c...et/applet_o.cabO20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: OPXPGina - C:\Program Files\Softex\OmniPass\opxpgina.dll
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - c:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: MD Simple Burner Service (NetMDSB) - Sony Corporation - C:\Program Files\Sony\MD Simple Burner\NetMDSB.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Softex OmniPass Service (omniserv) - Unknown owner - C:\Program Files\Softex\OmniPass\Omniserv.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\Pacsptisvr.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\Sptisrv.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
After I rebooted, this is what came up at startup (alert thru TrojanHunter):
Terminated trojan process 3468 (C:\Program Files\Common Files\mc-99-829-0000156.exe)
Trying filename C:\Program Files\Common Files\mc-99-829-0000156.exe4256.tcf
Unable to rename file C:\Program Files\Common Files\mc-99-829-0000156.exe (The process cannot access the file because it is being used by another process). Scheduling file to be renamed on reboot
Trojan cleaning finished.
Thanks again for your time, it is greatly appreciated.
singer1993