---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 8:05:47 PM, 5/28/2005
+ Report-Checksum: 766CAF70
+ Date of database: 5/28/2005
+ Version of scan engine: v3.0
+ Duration: 154 min
+ Scanned Files: 134915
+ Speed: 14.57 Files/Second
+ Infected files: 13
+ Removed files: 13
+ Files put in quarantine: 13
+ Files that could not be opened: 0
+ Files that could not be cleaned: 0
+ Binder: Yes
+ Crypter: Yes
+ Archives: Yes
+ Scanned items:
C:\
D:\
+ Scan result:
C:\Program Files\AWS\WeatherBug\MiniBugTransporter.dll -> Spyware.Wheaterbug.a -> Cleaned with backup
C:\Program Files\NewDotNet\newdotnet6_30.dll -> Spyware.NewDotNet -> Cleaned with backup
C:\Program Files\NewDotNet\uninstall6_30.exe -> Spyware.NewDotNet -> Cleaned with backup
C:\temporary\aun_0001.exe -> TrojanDownloader.Small.akz -> Cleaned with backup
C:\WINDOWS\crox.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\Downloaded Program Files\YSBactivex.dll -> TrojanDownloader.IstBar -> Cleaned with backup
C:\WINDOWS\javazu32.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\n_dpgkys.dat -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\n_jkqiep.log -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\n_spktyy.dat -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\system32\appre32.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\system32\netxs32.dll -> Trojan.Feat -> Cleaned with backup
C:\WINDOWS\XMLLIBUI.exe -> Spyware.Hijacker.Generic -> Cleaned with backup
Hijack this report:Logfile of HijackThis v1.99.1
Scan saved at 8:07:01 PM, on 5/28/2005
Platform: Windows XP (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 (6.00.2600.0000)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\ewido\security suite\SecuritySuite.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\WINDOWS\System32\taskmgr.exe
C:\Documents and Settings\Lopez Family\Desktop\HijackThis.exe
C:\Program Files\MSN\MSNCoreFiles\msn.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title =
Microsoft Internet Explorer provided by Verizon Online
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet
Settings,ProxyOverride = 127.0.0.1
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} -
C:\PROGRA~1\SPYBOT~1\SDHelper.dll (file missing)
O4 - Global Startup: New application.lnk = C:\WINDOWS\explorer.exe
O12 - Plugin for .pdf: C:\Program Files\Internet
Explorer\PLUGINS\nppdf32.dll
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating
System Class) -
http://download.mcaf...4,0,0,90/mcinsctl.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload
Tool) -
http://by103fd.bay10...es/MsnPUpld.cabO16 - DPF: {596AF4AC-40A0-474A-9F86-33F0A90F0FD6} (PictureItLauncher
Class) -
http://photos.msn.co...ls/DigWebX2.cabO16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class)
-
http://v5.windowsupd...ols/en/x86/client/wuweb_site.cab?1113884440421
O16 - DPF: {6F750200-1362-4815-A476-88533DE61D0C} (Ofoto Upload Manager
Class) -
http://www.amazon.ko...N_IE_1/axofupld.
cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) -
http://a840.g.akamai...trendmicro.com/housecall/xscan53.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer
Class) -
http://www.pandasoft.../as5/asinst.cabO16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF}
(MsnMessengerSetupDownloadControl Class) -
http://messenger.msn...pDownloader.cabO16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class)
-
http://download.mcaf...,0,0,23/mcgdmgr.cab
O16 - DPF: {D06A22B4-6087-4D3D-B7AF-82B113E9ABD4} (CPostLaunch Object)
-
http://www2.verizon....es/vzWebIns.CABO23 - Service: TuneUp WinStyler Theme Service (TUWinStylerThemeSvc) -
TuneUp Software GmbH - C:\Program Files\TuneUp Utilities
2004\WinStylerThemeSvc.exe
i still don't have any desktop icons :0(