I just get continuous popups or browser changes.
Trend houscall just crashed and would cause Firefox to close.
Here are my ewido and Hijack logs.
Thanks in advance
Rwilson881
BTW – We believe my son caused it by clicking on an AIM file from a friend.
---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 11:23:30 PM, 12/10/2005
+ Report-Checksum: BB19D92E
+ Scan result:
[2364] C:\WINDOWS\system32\moxml4r.dll -> Spyware.Look2Me : Error during cleaning
[2652] C:\WINDOWS\system32\moxml4r.dll -> Spyware.Look2Me : Error during cleaning
:mozilla.11:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.12:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.13:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.16:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.17:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.18:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.19:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.20:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.21:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.22:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.23:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.24:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.61:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.66:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.75:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.76:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.77:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.79:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.80:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.81:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.82:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.84:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.98:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.99:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.100:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.101:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.102:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.103:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.104:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.105:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.106:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.107:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.108:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.109:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.110:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.115:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.116:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.117:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.118:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.119:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.120:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.121:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.122:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.123:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup
:mozilla.126:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.127:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.128:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.129:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.130:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.142:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.143:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.144:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.145:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.146:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.147:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.148:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.162:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.163:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.164:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.165:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.166:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.167:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Addynamix : Cleaned with backup
:mozilla.168:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Addynamix : Cleaned with backup
:mozilla.169:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.170:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.171:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.172:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.173:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.174:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.185:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.189:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.190:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.191:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.192:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.193:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.194:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.212:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.213:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.214:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.215:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.216:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.219:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.220:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.221:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.222:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.223:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.224:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.227:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.229:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.230:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.245:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.246:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.247:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.249:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.251:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.252:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.253:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.262:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.263:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.284:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.299:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.300:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.301:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.303:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.304:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.321:C:\Documents and Settings\Ron\Application Data\Mozilla\Firefox\Profiles\default.ymf\cookies.txt -> Spyware.Cookie.Masterstats : Cleaned with backup
C:\WINDOWS\system32\DGDProX2.dll -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\system32\fp0803due.dll -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\system32\ktr8l79u1.dll -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\system32\rugwizc.dll -> Spyware.Look2Me : Cleaned with backup
C:\WINDOWS\system32\t4r8le9u1h.dll -> Spyware.Look2Me : Cleaned with backup
::Report End
Logfile of HijackThis v1.99.1
Scan saved at 11:25:27 PM, on 12/10/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\drivers\CDAC11BA.EXE
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
C:\WINDOWS\system32\CTHELPER.EXE
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\webshots.scr
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\hijac\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://sacredbrethre.../news_index.php
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [EM_EXEC] C:\PROGRA~1\Logitech\MOUSEW~1\SYSTEM\EM_EXEC.EXE
O4 - HKLM\..\Run: [nForce Tray Options] sstray.exe /r
O4 - HKLM\..\Run: [WINDVDPatch] CTHELPER.EXE
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: Webshots.lnk = C:\Program Files\Webshots\Launcher.exe
O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O20 - Winlogon Notify: Fonts - C:\WINDOWS\system32\hr4205hoe.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\System32\drivers\CDAC11BA.EXE
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs Inc. - C:\WINDOWS\system32\ZoneLabs\vsmon.exe