Hi Rambro,
Thank You for the maintence info. Below is the Ewido Log and the new Hjk Log. A pop up came up duing the scan for one of the last infections it was embedded in a temporary file and asked me if I wanted to delete the whole archive. Have no idea if I should of but I did.
As soon as I restarted in normal mode I was hit with alot of popups. Also I've seem to have lost a way to get into IE. Its not on my desktop or listed under start programs. The only way I was able to access it was to click on Windows update, stop the load, then clean the cookies and cache. I saw mazilla in the scan but I havent downloaded it yet unloess it was preinstalled and also dont see where to access it. Also my windows update alert is coming up should I be downloading any more updates yet?
Thank You
Bubbles
---------------------------------------------------------
ewido anti-malware - Scan report
---------------------------------------------------------
+ Created on: 4:39:58 PM, 6/1/2006
+ Report-Checksum: 12274D66
+ Scan result:
HKLM\SOFTWARE\Classes\IeBHOs.Control -> Adware.E2G : Cleaned with backup
HKLM\SOFTWARE\Classes\IeBHOs.Control\CLSID -> Adware.E2G : Cleaned with backup
HKLM\SOFTWARE\Classes\IeBHOs.Control\CurVer -> Adware.E2G : Cleaned with backup
HKLM\SOFTWARE\Classes\IeBHOs.Control.1 -> Adware.E2G : Cleaned with backup
:mozilla.13:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.16:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.17:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.18:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.19:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.20:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.21:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.22:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.23:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.24:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.28:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
:mozilla.29:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Mediaplex : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Com : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.61:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.62:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.64:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.65:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.67:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.68:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.69:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.70:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.71:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.73:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup
:mozilla.74:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.75:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.76:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.80:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.81:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.82:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.83:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.97:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
:mozilla.98:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
:mozilla.100:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
:mozilla.101:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
:mozilla.104:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.105:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.106:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.108:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.109:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.110:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.111:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.112:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.113:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.114:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.115:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.116:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.117:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.118:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.119:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.127:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
:mozilla.128:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
:mozilla.129:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
:mozilla.130:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
:mozilla.131:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
:mozilla.144:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Adjuggler : Cleaned with backup
:mozilla.145:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Adjuggler : Cleaned with backup
:mozilla.146:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Adjuggler : Cleaned with backup
:mozilla.147:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Adjuggler : Cleaned with backup
:mozilla.152:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Myaffiliateprogram : Cleaned with backup
:mozilla.159:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned with backup
:mozilla.160:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned with backup
:mozilla.162:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Tracking101 : Cleaned with backup
:mozilla.163:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.164:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.165:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.166:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup
:mozilla.167:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup
:mozilla.169:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup
:mozilla.170:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup
:mozilla.176:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Revenue : Cleaned with backup
:mozilla.177:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Revenue : Cleaned with backup
:mozilla.178:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Revenue : Cleaned with backup
:mozilla.179:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Revenue : Cleaned with backup
:mozilla.186:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.193:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup
:mozilla.204:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.205:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.206:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.216:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Overture : Cleaned with backup
:mozilla.217:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup
:mozilla.220:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup
:mozilla.222:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Clickbank : Cleaned with backup
:mozilla.223:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup
:mozilla.251:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned with backup
:mozilla.252:C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][2].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@247realmedia[1].txt -> TrackingCookie.247realmedia : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@2o7[2].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][2].txt -> TrackingCookie.Specificclick : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@adrevolver[1].txt -> TrackingCookie.Adrevolver : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Addynamix : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Pointroll : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Revenue : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@adtech[2].txt -> TrackingCookie.Adtech : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@advertising[1].txt -> TrackingCookie.Advertising : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][2].txt -> TrackingCookie.Tacoda : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Falkag : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Falkag : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][2].txt -> TrackingCookie.Falkag : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@atdmt[1].txt -> TrackingCookie.Atdmt : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Searchingbooth : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@bfast[2].txt -> TrackingCookie.Bfast : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@bluestreak[2].txt -> TrackingCookie.Bluestreak : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@burstnet[2].txt -> TrackingCookie.Burstnet : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Enhance : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][2].txt -> TrackingCookie.Goclick : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Zedo : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@casalemedia[1].txt -> TrackingCookie.Casalemedia : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][2].txt -> TrackingCookie.Gamingpromo : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Hitslink : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@cpvfeed[2].txt -> TrackingCookie.Cpvfeed : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Overture : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Overture : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][2].txt -> TrackingCookie.Overture : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Ru4 : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Hitbox : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][2].txt -> TrackingCookie.Hitbox : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][2].txt -> TrackingCookie.Hitbox : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][2].txt -> TrackingCookie.Hitbox : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][2].txt -> TrackingCookie.Hitbox : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][2].txt -> TrackingCookie.Hitbox : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Hitbox : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@fastclick[1].txt -> TrackingCookie.Fastclick : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@findwhat[1].txt -> TrackingCookie.Findwhat : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@gamingpromo[1].txt -> TrackingCookie.Gamingpromo : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][2].txt -> TrackingCookie.Starware : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][2].txt -> TrackingCookie.Tracking101 : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][2].txt -> TrackingCookie.Fastclick : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Top-banners : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@mediaplex[2].txt -> TrackingCookie.Mediaplex : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@overture[1].txt -> TrackingCookie.Overture : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Overture : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@popuptraffic[1].txt -> TrackingCookie.Popuptraffic : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@qksrv[1].txt -> TrackingCookie.Qksrv : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@questionmarket[1].txt -> TrackingCookie.Questionmarket : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][2].txt -> TrackingCookie.Valuead : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@revenue[1].txt -> TrackingCookie.Revenue : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][2].txt -> TrackingCookie.Adjuggler : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@searchingbooth[1].txt -> TrackingCookie.Searchingbooth : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Liveperson : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@statcounter[2].txt -> TrackingCookie.Statcounter : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][2].txt -> TrackingCookie.Reliablestats : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Webtrendslive : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@tacoda[2].txt -> TrackingCookie.Tacoda : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@targetnet[2].txt -> TrackingCookie.Targetnet : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@trafficmp[1].txt -> TrackingCookie.Trafficmp : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@trafic[1].txt -> TrackingCookie.Trafic : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][2].txt -> TrackingCookie.Starware : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Adtrak : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Burstbeacon : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Myaffiliateprogram : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\
[email protected][1].txt -> TrackingCookie.Adserver : Cleaned with backup
C:\Documents and Settings\Ed\Cookies\ed@zedo[2].txt -> TrackingCookie.Zedo : Cleaned with backup
C:\Documents and Settings\Ed\Local Settings\Temp\temp.frA170\IeBHOs.dll -> Adware.E2Give : Cleaned with backup
C:\Documents and Settings\Ed\Local Settings\Temporary Internet Files\Content.IE5\0DEFC1UN\webplugin[1].cab/wupdt.exe -> Downloader.OneClickNetSearch.f : Cleaned with backup
C:\System Volume Information\_restore{AA4E835D-3F85-4E33-9C96-239BC514A036}\RP76\A0043749.dll -> Adware.WebRebates : Cleaned with backup
C:\System Volume Information\_restore{AA4E835D-3F85-4E33-9C96-239BC514A036}\RP76\A0043810.dll -> Adware.E2Give : Cleaned with backup
::Report End
Logfile of HijackThis v1.99.1
Scan saved at 4:58:38 PM, on 6/1/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\System32\ibmpmsvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\WINDOWS\System32\tp4serv.exe
C:\Program Files\ThinkPad\ConnectUtilities\QCWLICON.EXE
C:\WINDOWS\System32\RunDll32.exe
C:\WINDOWS\System32\QCONSVC.EXE
C:\PROGRA~1\ThinkPad\UTILIT~1\TP98TRAY.EXE
C:\PROGRA~1\ThinkPad\PkgMgr\HOTKEY\TPHKMGR.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\TrojanHunter 4.5\THGuard.exe
C:\Program Files\Java\jre1.5.0_07\bin\jusched.exe
C:\Program Files\Messenger\msmsgs.exe
C:\PROGRA~1\MUSICM~1\MUSICM~2\MMDiag.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mim.exe
C:\Program Files\ThinkPad\PkgMgr\HOTKEY\TPONSCR.exe
C:\Program Files\ThinkPad\PkgMgr\HOTKEY_1\TpScrex.exe
C:\Program Files\Netscape\Netscape\Netscp.exe
C:\WINDOWS\System32\wuauclt.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Documents and Settings\Ed\My Documents\Highjackthis.exe\HijackThis.exe
N3 - Netscape 7: user_pref("browser.startup.homepage", "
http://home.netscape.../7_2/home.html"); (C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\prefs.js)
N3 - Netscape 7: user_pref("browser.search.defaultengine", "engine://C%3A%5CProgram%20Files%5CNetscape%5CNetscape%5Csearchplugins%5CSBWeb_01.src"); (C:\Documents and Settings\Ed\Application Data\Mozilla\Profiles\default\825n7aha.slt\prefs.js)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_07\bin\ssv.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [TrackPointSrv] tp4serv.exe
O4 - HKLM\..\Run: [QCWLICON] C:\Program Files\ThinkPad\ConnectUtilities\QCWLICON.EXE
O4 - HKLM\..\Run: [BMMGAG] RunDll32 C:\PROGRA~1\ThinkPad\UTILIT~1\pwrmonit.dll,StartPwrMonitor
O4 - HKLM\..\Run: [TPTRAY] C:\PROGRA~1\ThinkPad\UTILIT~1\TP98TRAY.EXE
O4 - HKLM\..\Run: [TP4EX] tp4ex.exe
O4 - HKLM\..\Run: [TPHOTKEY] C:\PROGRA~1\ThinkPad\PkgMgr\HOTKEY\TPHKMGR.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [MimBoot] C:\PROGRA~1\MUSICM~1\MUSICM~2\mimboot.exe
O4 - HKLM\..\Run: [MMTray] "C:\Program Files\Musicmatch\Musicmatch Jukebox\mm_tray.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 4.5\THGuard.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_07\bin\jusched.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_07\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft....k/?linkid=39204O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://update.micros...b?1148887527406O16 - DPF: {B495C654-5860-45D4-8EAA-5663B9393F33} (OVA Class) -
http://go.microsoft....k/?linkid=49480O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: IBM PM Service (IBMPMSVC) - Unknown owner - C:\WINDOWS\System32\ibmpmsvc.exe
O23 - Service: QCONSVC - Unknown owner - C:\WINDOWS\System32\QCONSVC.EXE