WOW very fast reply. um what am i infected by? (doesnt matter as long as i get rid of it). Here you go:
(spysweeper said couldnt cleen smthing and had to restart to clean, this happened twice but second time i pressed restart b4 i could save log, so i did scanned again it didnt find anything. it also asked me to send report twice about something trying to "possibilly" download spyware i pressed send report on both, but they failed).
********
3:39 PM: | Start of Session, Friday, October 21, 2005 |
3:39 PM: Spy Sweeper started
3:39 PM: Sweep initiated using definitions version 559
3:39 PM: Starting Memory Sweep
3:40 PM: Found Adware: icannnews
3:40 PM: Detected running threat: C:\WINDOWS\system32\lvl4093qe.dll (ID = 83)
3:41 PM: Memory Sweep Complete, Elapsed Time: 00:01:07
3:41 PM: Starting Registry Sweep
3:41 PM: Found Adware: sp2ms
3:41 PM: HKLM\software\microsoft\windows\currentversion\run\ || sp2update (ID = 787992)
3:41 PM: Found Adware: cws-aboutblank
3:41 PM: HKU\S-1-5-21-484763869-1004336348-725345543-1003\software\microsoft\internet explorer\main\ || start page (ID = 911091)
3:41 PM: Registry Sweep Complete, Elapsed Time:00:00:04
3:41 PM: Starting Cookie Sweep
3:41 PM: Found Spy Cookie: 64.62.232 cookie
3:41 PM:
[email protected][2].txt (ID = 1987)
3:41 PM:
[email protected][3].txt (ID = 1987)
3:41 PM: Found Spy Cookie: go.com cookie
3:41 PM:
[email protected][2].txt (ID = 2729)
3:41 PM: Found Spy Cookie: hbmediapro cookie
3:41 PM:
[email protected][2].txt (ID = 2768)
3:41 PM: finito@go[2].txt (ID = 2728)
3:41 PM: Found Spy Cookie: metareward.com cookie
3:41 PM: finito@metareward[2].txt (ID = 2990)
3:41 PM: Found Spy Cookie: nextag cookie
3:41 PM: finito@nextag[1].txt (ID = 5014)
3:41 PM:
[email protected][1].txt (ID = 2729)
3:41 PM: Cookie Sweep Complete, Elapsed Time: 00:00:00
3:41 PM: Starting File Sweep
3:41 PM: Found Adware: ist yoursitebar
3:41 PM: ysbinstall_1003585[1].exe.tcf (ID = 166206)
3:41 PM: ysbinstall_1003585.exe.tcf (ID = 166206)
3:41 PM: Found Adware: ist istbar
3:41 PM: istbar_mainstream[1].dll (ID = 158576)
3:42 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:42 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:42 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:42 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:42 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:42 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:43 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:43 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:44 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:44 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:44 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:44 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:45 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:45 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:45 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:45 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:46 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:46 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:46 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:46 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:47 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:47 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:47 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:47 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:48 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:48 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:48 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:48 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:49 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:49 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:49 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:49 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:50 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:50 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:50 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:50 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:50 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:50 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:50 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:50 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:51 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:51 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:51 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:51 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:51 PM: File Sweep Complete, Elapsed Time: 00:10:30
3:51 PM: Full Sweep has completed. Elapsed time 00:11:45
3:51 PM: Traces Found: 14
3:51 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:51 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:51 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:51 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:52 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:52 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:52 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:52 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:52 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:52 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:52 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:52 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:54 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:54 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:54 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:54 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:54 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:54 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:54 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:54 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:54 PM: Removal process initiated
3:54 PM: Quarantining All Traces: cws-aboutblank
3:54 PM: Quarantining All Traces: icannnews
3:54 PM: icannnews is in use. It will be removed on reboot.
3:54 PM: C:\WINDOWS\system32\lvl4093qe.dll is in use. It will be removed on reboot.
3:54 PM: Quarantining All Traces: ist istbar
3:54 PM: Quarantining All Traces: ist yoursitebar
3:54 PM: Quarantining All Traces: sp2ms
3:54 PM: Quarantining All Traces: 64.62.232 cookie
3:54 PM: Quarantining All Traces: go.com cookie
3:54 PM: Quarantining All Traces: hbmediapro cookie
3:54 PM: Quarantining All Traces: metareward.com cookie
3:54 PM: Quarantining All Traces: nextag cookie
3:54 PM: Removal process completed. Elapsed time 00:00:26
********
3:13 PM: | Start of Session, Friday, October 21, 2005 |
3:13 PM: Spy Sweeper started
3:14 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:14 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:14 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:14 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:14 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:14 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:15 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:15 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:15 PM: Your spyware definitions have been updated.
3:15 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:15 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:15 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:15 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:15 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:15 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:15 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:15 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:16 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:16 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:16 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:16 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:16 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:16 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:16 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:16 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:17 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:17 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:17 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:17 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:17 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:17 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:17 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:17 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:18 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:18 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:18 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:18 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:18 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:18 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:18 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:18 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:19 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:19 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:19 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:19 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:19 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:19 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:19 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:19 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:20 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:20 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:20 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:20 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:20 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:20 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:20 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:20 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:20 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:20 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:20 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:20 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:20 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:20 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:21 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:21 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:21 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:21 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:21 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:21 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:21 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:21 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:21 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:21 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:22 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:22 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:22 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:22 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:22 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:22 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:22 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:22 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:23 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:23 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:23 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:23 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:24 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:24 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:24 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:24 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:24 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:24 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:24 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:24 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:25 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:25 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:25 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:25 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:25 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:25 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:25 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:25 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:25 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:25 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:26 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:26 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:26 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:26 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:26 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:26 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:26 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:26 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:26 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:26 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:27 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:27 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:27 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:27 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:27 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:27 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:27 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:27 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:29 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:29 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:29 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:29 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:29 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:29 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:29 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:29 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:30 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:30 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:30 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:30 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:30 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:30 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:30 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:30 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:31 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:31 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:31 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:31 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:31 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:31 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:32 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:32 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:32 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:32 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:32 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:32 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:32 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:32 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:33 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:33 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:33 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:33 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:33 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:33 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:33 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:33 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:33 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:33 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:33 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:33 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:33 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:33 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:33 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:33 PM: The Spy Communication shield has blocked access to: www.ad-w-a-r-e.com
3:33 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
3:33 PM: The Spy Communication shield has blocked access to: www.a-d-w-a-r-e.com
**************************************************************************
Logfile of HijackThis v1.99.1
Scan saved at 4:32:08 PM, on 10/21/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Trend Micro\Internet Security 2005\pccguide.exe
C:\WINDOWS\system32\dslagent.exe
C:\Program Files\Java\j2re1.4.2_04\bin\jusched.exe
C:\PROGRA~1\Nokia\NOKIAP~1\TRAYAP~1.EXE
C:\PROGRA~1\COMMON~1\PCSuite\DATALA~1\DATALA~1.EXE
C:\Program Files\Creative\SB Live! 24-bit\Surround Mixer\CTSysVol.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Ares Lite Edition\AresLite.exe
C:\PROGRA~1\COMMON~1\PCSuite\Services\SERVIC~1.EXE
C:\WINDOWS\system32\cisvc.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
C:\Program Files\ActiveState Perl Dev Kit 6.0\bin\pdkdebug.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\WINDOWS\system32\cidaemon.exe
C:\WINDOWS\system32\taskmgr.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\HJT\HijackThis.exe
C:\WINDOWS\system32\NOTEPAD.EXE
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security 2005\pccguide.exe"
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: Download using LeechGet - file://C:\Program Files\LeechGet 2004\\AddUrl.html
O8 - Extra context menu item: Download using LeechGet Wizard - file://C:\Program Files\LeechGet 2004\\Wizard.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Parse with LeechGet - file://C:\Program Files\LeechGet 2004\\Parser.html
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) -
http://a840.g.akamai...all/xscan53.cabO20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\PcCtlCom.exe
O23 - Service: PDK Debug Listener (pdkdebug) - ActiveState - C:\Program Files\ActiveState Perl Dev Kit 6.0\bin\pdkdebug.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Incorporated. - C:\PROGRA~1\TRENDM~1\INTERN~1\Tmntsrv.exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\tmproxy.exe
I think it worked no more popups and the processes list is smaller
but if you see smthing that may prove to be a problem please tell me