HiJackThis
Logfile of HijackThis v1.99.1 Scan saved at 8:01:58 PM, on 12/10/2005 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\spoolsv.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe C:\Program Files\Yahoo!\Antivirus\ISafe.exe C:\Program Files\ewido\security suite\ewidoctrl.exe C:\Program Files\ewido\security suite\ewidoguard.exe C:\WINDOWS\system32\drivers\KodakCCS.exe C:\WINDOWS\system32\nvsvc32.exe C:\Windows\system32\sndserv.exe C:\WINDOWS\system32\wdfmgr.exe C:\Program Files\Yahoo!\Antivirus\VetMsg.exe C:\WINDOWS\System32\alg.exe C:\WINDOWS\system32\mssearchnet.exe C:\WINDOWS\system32\nvctrl.exe C:\Program Files\Java\j2re1.4.2_01\bin\jusched.exe C:\WINDOWS\SOUNDMAN.EXE C:\Program Files\Yahoo!\Antivirus\CAVTray.exe C:\Program Files\Yahoo!\Antivirus\CAVRID.exe C:\PROGRA~1\YAHOO!\YOP\yop.exe C:\Program Files\Microsoft AntiSpyware\gcasServ.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe C:\PROGRA~1\YAHOO!\browser\ycommon.exe C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\hjt\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://wapp.verizon.net/bookmarks/bmredir.asp?region=all&bw=dsl&cd=yahoo_v.1_ie&bm=yh_search R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Verizon Online O1 - Hosts: http://213.159.117.203/dkprogs/hosts.txt O2 - BHO: HomepageBHO - {1ca480cd-c0e5-4548-874e-b85b17905b3a} - C:\WINDOWS\system32\hp379E.tmp O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_01\bin\jusched.exe O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [CaAvTray] "C:\Program Files\Yahoo!\Antivirus\CAVTray.exe" O4 - HKLM\..\Run: [CAVRID] "C:\Program Files\Yahoo!\Antivirus\CAVRID.exe" O4 - HKLM\..\Run: [YOP] C:\PROGRA~1\YAHOO!\YOP\yop.exe /autostart O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe" O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033 O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe O4 - HKLM\..\Run: [Uninstall_TBPS] C:\WINDOWS\Temp\TBuninst.exe /remove O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 4.2\THGuard.exe" O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl O4 - HKCU\..\Run: [Mnffgfkr] C:\WINDOWS\System32\w?aclt.exe O4 - HKCU\..\Run: [ofik] C:\PROGRA~1\COMMON~1\ofik\ofikm.exe O4 - HKCU\..\Run: [Utoc] C:\Program Files\ahad\ubae.exe O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\ypager.exe" -quiet O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe O4 - Global Startup: Kodak software updater.lnk = C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe O8 - Extra context menu item: Open Link Target in Firefox - file://C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\default.j54\extensions\{5D558C43-550F-4b12-84AB-0D8ABDA9F975}\firefoxviewlink.html O8 - Extra context menu item: View This Page in Firefox - file://C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\default.j54\extensions\{5D558C43-550F-4b12-84AB-0D8ABDA9F975}\firefoxviewpage.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\npjpi150_06.dll O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - blank (file missing) O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\YAHOO!\MESSEN~1\YPAGER.EXE O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\PROGRA~1\YAHOO!\MESSEN~1\YPAGER.EXE O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O15 - Trusted Zone: http://*.teeniemovies.com O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204 O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab31267.cab O16 - DPF: {48884C41-EFAC-433D-958A-9FADAC41408E} (EGamesPlugin Class) - https://www.e-games.com.my/com/EGamesPlugin.cab O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1116371525015 O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1128059034656 O16 - DPF: {6E5A37BF-FD42-463A-877C-4EB7002E68AE} (Housecall ActiveX 6.5) - http://us-housecall.trendmicro-europe.com/housecall/applet/html/native/x86/win32/activex/hcImpl.cab O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab O16 - DPF: {D6FCA8ED-4715-43DE-9BD2-2789778A5B09} - http://guard.gunbound.net/nProtect/keyCrypt/npkcx.cab O18 - Protocol: bt2 - {1730B77B-F429-498F-9B15-4514D83C8294} - blank (file missing) O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O18 - Filter: application/x-bt2 - {6E1DDCE8-76BC-4390-9488-806E8FB1AD77} - blank O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe O23 - Service: CAISafe - Computer Associates International, Inc. - C:\Program Files\Yahoo!\Antivirus\ISafe.exe O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe O23 - Service: npkcsvc - INCA Internet Co., Ltd. - C:\WINDOWS\System32\npkcsvc.exe O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe O23 - Service: Windows Sound (Sound Service) - Unknown owner - C:\Windows\system32\sndserv.exe O23 - Service: VET Message Service (VETMSGNT) - Computer Associates International, Inc. - C:\Program Files\Yahoo!\Antivirus\VetMsg.exe
Ewindo:
--------------------------------------------------------- ewido security suite - Scan report --------------------------------------------------------- + Created on: 3:22:55 PM, 12/10/2005 + Report-Checksum: D3FBFF6 + Scan result: HKLM\SOFTWARE\Classes\CLSID\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} -> Spyware.MiniBug : Cleaned with backup HKLM\SOFTWARE\Classes\CLSID\{724510C3-F3C8-4FB7-879A-D99F29008A2F} -> Hijacker.SpyAxe : Cleaned with backup HKLM\SOFTWARE\Classes\TypeLib\{8EA362BD-39CB-40F5-9226-73CD40999095} -> Spyware.BetterInternet : Cleaned with backup HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\ins -> Spyware.WebRebates : Cleaned with backup HKU\S-1-5-21-839522115-362288127-2147053123-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{724510C3-F3C8-4FB7-879A-D99F29008A2F} -> Hijacker.SpyAxe : Cleaned with backup :mozilla.47:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\default.j54\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup :mozilla.48:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\default.j54\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup :mozilla.51:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\default.j54\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup :mozilla.55:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\default.j54\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup :mozilla.59:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\default.j54\cookies.txt -> Spyware.Cookie.[bleep]-access : Cleaned with backup :mozilla.60:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\default.j54\cookies.txt -> Spyware.Cookie.Spylog : Cleaned with backup :mozilla.6:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup :mozilla.7:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup :mozilla.10:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Addynamix : Cleaned with backup :mozilla.11:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup :mozilla.12:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup :mozilla.13:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup :mozilla.14:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup :mozilla.16:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup :mozilla.23:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.24:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.25:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.26:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.27:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.28:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.29:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.30:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.31:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.32:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.33:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.34:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.35:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.36:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.37:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.38:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.39:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.40:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.41:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.42:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.43:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.44:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.45:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.46:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.47:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.48:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.49:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.50:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.51:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.52:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.53:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.54:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.55:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.56:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup :mozilla.61:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup :mozilla.62:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup :mozilla.97:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup :mozilla.102:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup :mozilla.103:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup :mozilla.111:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup :mozilla.112:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup :mozilla.113:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup :mozilla.114:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup :mozilla.115:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup :mozilla.116:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup :mozilla.117:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup :mozilla.118:C:\Documents and Settings\vilas schools\Application Data\Mozilla\Firefox\Profiles\Mom's\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup C:\Documents and Settings\vilas schools\Local Settings\Application Data\Wildtangent\Cdacache\00\00\0E.dat/files\wtvh.dll -> Spyware.WildTangent : Cleaned with backup C:\data -> Downloader.IstBar.nh : Cleaned with backup C:\System Volume Information\_restore{8BE80983-D4BE-4710-9DEF-8D55AE90976A}\RP523\A0092142.tlb -> Downloader.Zlob.br : Cleaned with backup C:\System Volume Information\_restore{8BE80983-D4BE-4710-9DEF-8D55AE90976A}\RP523\A0092157.tlb -> Downloader.Zlob.br : Cleaned with backup C:\System Volume Information\_restore{8BE80983-D4BE-4710-9DEF-8D55AE90976A}\RP523\A0092173.tlb -> Downloader.Zlob.br : Cleaned with backup C:\System Volume Information\_restore{8BE80983-D4BE-4710-9DEF-8D55AE90976A}\RP523\A0092188.tlb -> Downloader.Zlob.br : Cleaned with backup C:\System Volume Information\_restore{8BE80983-D4BE-4710-9DEF-8D55AE90976A}\RP523\A0092202.exe -> Downloader.Zlob.br : Cleaned with backup C:\System Volume Information\_restore{8BE80983-D4BE-4710-9DEF-8D55AE90976A}\RP523\A0092400.exe -> Downloader.Zlob.cl : Cleaned with backup C:\System Volume Information\_restore{8BE80983-D4BE-4710-9DEF-8D55AE90976A}\RP522\A0092069.tlb -> Downloader.Zlob.br : Cleaned with backup C:\WINDOWS\system32\mscornet.exe -> Downloader.Zlob.cj : Cleaned with backup C:\WINDOWS\thin-137-3-x-x.exe -> Adware.BetterInternet : Cleaned with backup ::Report End
I'd like to thank anyone in advance who helps me out.
Edited by Ryukk, 10 December 2005 - 10:05 PM.