View Single Post
Old 10-07-2007, 01:13 PM   #1 (permalink)
idlehands
Registered User
 
idlehands's Avatar
 
Join Date: Oct 2007
Posts: 8
OS: windows xp, service pack number 2


constant pop ups - winantivirus

hi, i think i have a virus, not sure what to do. i keep getting pop ups from winantivirus, and some other random sites whenever i use internet explorer. i'm using firefox until it's fixed. i've done steps 1 to 5. i'd appreciate any help in getting it sorted ....

I have windows xp service pack 2 and i stupidly i didn't replace my virus protection stuff when it expired. i've added avg and firewall and all now though so i don't get anything else ...

Deckard's System Scanner v20070905.67
Run by Mine on 2007-10-07 19:48:07
Computer is in Normal Mode.
--------------------------------------------------------------------------------

-- System Restore --------------------------------------------------------------

Successfully created a Deckard's System Scanner Restore Point.


-- Last 5 Restore Point(s) --
60: 2007-10-07 18:48:28 UTC - RP270 - Deckard's System Scanner Restore Point
59: 2007-10-07 13:14:24 UTC - RP269 - Configured PCguard
58: 2007-10-07 11:23:38 UTC - RP268 - Removed Google Desktop Plugin - gdSkype
57: 2007-10-07 11:23:03 UTC - RP267 - Removed Google Desktop Plugin - FareCompare
56: 2007-10-07 11:08:15 UTC - RP266 - Removed Java 2 Runtime Environment, SE v1.4.2_03


-- First Restore Point --
1: 2007-07-12 16:34:54 UTC - RP211 - System Checkpoint


Backed up registry hives.
Performed disk cleanup.

Total Physical Memory: 511 MiB (512 MiB recommended).


-- HijackThis Clone ------------------------------------------------------------

Emulating logfile of HijackThis v1.99.1
Scan saved at 2007-10-07 19:50:22
Platform: Windows XP Service Pack 2 (5.01.2600)
MSIE: Internet Explorer (7.00.6000.16512)

Running processes:
C:\WINDOWS\SYSTEM32\SMSS.EXE
C:\WINDOWS\SYSTEM32\WINLOGON.EXE
C:\WINDOWS\SYSTEM32\SERVICES.EXE
C:\WINDOWS\SYSTEM32\LSASS.EXE
C:\WINDOWS\SYSTEM32\SVCHOST.EXE
C:\WINDOWS\SYSTEM32\SVCHOST.EXE
C:\WINDOWS\SYSTEM32\S24EvMon.exe
C:\WINDOWS\SYSTEM32\spoolsv.exe
C:\Program Files\Grisoft\AVG7\avgamsvr.exe
C:\Program Files\Grisoft\AVG7\avgupsvc.exe
C:\Program Files\Grisoft\AVG7\avgemc.exe
C:\WINDOWS\SYSTEM32\ZCfgSvc.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\SYSTEM32\1XConfig.exe
C:\Program Files\Comodo\Firewall\cmdagent.exe
C:\WINDOWS\SYSTEM32\RegSrvc.exe
C:\WINDOWS\SYSTEM32\SVCHOST.EXE
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\WINDOWS\SYSTEM32\dla\tfswctrl.exe
C:\Program Files\Dell\Media Experience\DMXLauncher.exe
C:\Program Files\BroadJump\Client Foundation\CFD.exe
C:\Program Files\ntl\broadband medic\SmartBridge\MotiveSB.exe
C:\Program Files\LG USB Drive2.9\LG USB.exe
C:\Program Files\Dell Photo AIO Printer 922\dlbtbmgr.exe
C:\Program Files\Dell Photo AIO Printer 922\dlbtbmon.exe
C:\WINDOWS\SYSTEM32\hkcmd.exe
C:\WINDOWS\SYSTEM32\igfxpers.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Virgin Broadband\advisor\Broadbandadvisor.exe
C:\WINDOWS\SYSTEM32\igfxsrvc.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Grisoft\AVG7\avgcc.exe
C:\Program Files\Comodo\Firewall\cpf.exe
C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\WINDOWS\SYSTEM32\CTFMON.EXE
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe
C:\Program Files\ntl\broadband medic\bin\mpbtn.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Mine\Desktop\dss.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.co.uk/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?linkid=677
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.google.com/ie
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.google.com/keyword/%s
R1 - HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search,Default_Search_URL = http://www.google.com/ie
R1 - HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\SYSTEM32\dla\tfswshx.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_01\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: (no name) - {9B83AB4C-784A-4582-A80D-7AD69912EE52} - C:\WINDOWS\SYSTEM32\ljjjk.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\GoogleToolbar3.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O2 - BHO: (no name) - {B7672BAF-E9A3-49B6-86B2-C81719A18A4C} - C:\WINDOWS\SYSTEM32\ypwgeroq.dll
O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\GoogleToolbar3.dll
O4 - HKEY_LOCAL_MACHINE\..\Run: [PRONoMgr.exe] C:\Program Files\Intel\NCS\PROSet\PRONoMgr.exe
O4 - HKEY_LOCAL_MACHINE\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKEY_LOCAL_MACHINE\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKEY_LOCAL_MACHINE\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKEY_LOCAL_MACHINE\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKEY_LOCAL_MACHINE\..\Run: [DMXLauncher] C:\Program Files\Dell\Media Experience\DMXLauncher.exe
O4 - HKEY_LOCAL_MACHINE\..\Run: [BJCFD] C:\Program Files\BroadJump\Client Foundation\CFD.exe
O4 - HKEY_LOCAL_MACHINE\..\Run: [Motive SmartBridge] C:\PROGRA~1\ntl\BROADB~1\SMARTB~1\MotiveSB.exe
O4 - HKEY_LOCAL_MACHINE\..\Run: [RecoverFromReboot] C:\WINDOWS\Temp\RecoverFromReboot.exe
O4 - HKEY_LOCAL_MACHINE\..\Run: [LG US] c:\program files\lg usb drive2.9\lg usb.exe sys_auto_run C:\Program Files\LG USB Drive2.9
O4 - HKEY_LOCAL_MACHINE\..\Run: [Dell Photo AIO Printer 922] "C:\Program Files\Dell Photo AIO Printer 922\dlbtbmgr.exe"
O4 - HKEY_LOCAL_MACHINE\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKEY_LOCAL_MACHINE\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKEY_LOCAL_MACHINE\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKEY_LOCAL_MACHINE\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKEY_LOCAL_MACHINE\..\Run: [Broadbandadvisor.exe] "C:\Program Files\Virgin Broadband\advisor\Broadbandadvisor.exe" /AUTORUN
O4 - HKEY_LOCAL_MACHINE\..\Run: [workflow] D:\installs\workflow.exe
O4 - HKEY_LOCAL_MACHINE\..\Run: [Google Desktop Search] "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" /startup
O4 - HKEY_LOCAL_MACHINE\..\Run: [FolderView] rundll32.exe "C:\WINDOWS\system32\ibvjcggm.dll",sitypnow
O4 - HKEY_LOCAL_MACHINE\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKEY_LOCAL_MACHINE\..\Run: [COMODO Firewall Pro] "C:\Program Files\Comodo\Firewall\CPF.exe" /background
O4 - HKEY_LOCAL_MACHINE\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_0_9
O4 - HKCU\..\Run: [BitTorrent] "C:\Program Files\BitTorrent\bittorrent.exe" --force_start_minimized
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: AOL 9.0 Tray Icon.lnk = C:\Program Files\AOL 9.0\aoltray.exe
O4 - Global Startup: broadband medic.lnk = C:\Program Files\ntl\broadband medic\bin\matcli.exe
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\SYSTEM32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\SYSTEM32\msjava.dll
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (file missing)
O9 - Extra 'Tools' menuitem: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\network diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/par...an_unicode.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://download.microsoft.com/downlo...eckControl.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://darktwistd.spaces.live.com//P...d/MsnPUpld.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/...toUploader.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/micr...?1189376696000
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/actives...ree/asinst.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary...t.cab56907.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\Program Files\MSN Messenger\msgrapp.8.1.0178.00.dll
O18 - Filter: application/x-internet-signup - {A173B69A-1F9B-4823-9FDA-412F641E65D6} - C:\Program Files\Tiscali\Tiscali Internet\dlls\tiscalifilter.dll
O20 - AppInit_DLLs: C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O20 - Winlogon Notify: iifghfe - C:\WINDOWS\system32\iifghfe.dll (file missing)
O20 - Winlogon Notify: ljjjk - C:\WINDOWS\SYSTEM32\ljjjk.dll
O20 - Winlogon Notify: rqrstsq - C:\WINDOWS\system32\rqrstsq.dll (file missing)
O20 - Winlogon Notify: Sebring - C:\WINDOWS\SYSTEM32\LgNotify.dll
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\Program Files\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\Program Files\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\Program Files\Grisoft\AVG7\avgemc.exe
O23 - Service: GoogleDesktopManager - Google - "C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe"
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: RegSrvc - Intel Corporation - C:\WINDOWS\SYSTEM32\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\WINDOWS\SYSTEM32\S24EvMon.exe


-- File Associations -----------------------------------------------------------

All associations okay.


-- Drivers: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled ---------------------

R1 APPDRV - c:\windows\system32\drivers\appdrv.sys <Not Verified; Dell Inc; Application Driver>
R1 omci (OMCI WDM Device Driver) - c:\windows\system32\drivers\omci.sys <Not Verified; Dell Inc; OMCI Driver>
R2 MDC8021X (AEGIS Protocol (IEEE 802.1x) v2.2.1.0) - c:\windows\system32\drivers\mdc8021x.sys <Not Verified; Meetinghouse Data Communications; AEGIS Client 2.2>
R2 s24trans (WLAN Transport) - c:\windows\system32\drivers\s24trans.sys <Not Verified; Intel Corporation; Intel Wireless LAN Packet Driver>
R3 DSproct - c:\program files\dellsupport\gtaction\triggers\dsproct.sys <Not Verified; Gteko Ltd.; processt>

S2 CSS DVP - c:\windows\system32\drivers\css-dvp.sys (file missing)
S3 ApfiltrService (Alps Touch Pad Filter Driver for Windows 2000/XP) - c:\windows\system32\drivers\apfiltr.sys (file missing)
S3 bvrp_pci - c:\windows\system32\drivers\bvrp_pci.sys
S3 NAL (Nal Service ) - c:\windows\system32\drivers\iqvw32.sys <Not Verified; Intel Corporation; Intel(R) iQVW32.SYS>
S3 usbsermpt (Motorola USB Modem Driver for MPT) - c:\windows\system32\drivers\usbsermpt.sys <Not Verified; Microsoft Corporation; Microsoft(R) Windows (R) 2000 Operating System>
S3 USTOR (LG USB Drive) - c:\windows\system32\drivers\ustork.sys <Not Verified; USB Mass Storage.; USB Mass Storage Device>
S3 wanatw (WAN Miniport (ATW)) - c:\windows\system32\drivers\wanatw4.sys (file missing)


-- Services: 0-Boot, 1-System, 2-Auto, 3-Demand, 4-Disabled --------------------

R2 RegSrvc - c:\windows\system32\regsrvc.exe <Not Verified; Intel Corporation; RegSrvc Module>


-- Device Manager: Disabled ----------------------------------------------------

No disabled devices found.


-- Scheduled Tasks -------------------------------------------------------------

2007-10-06 21:27:10 420 --ah----- C:\WINDOWS\Tasks\User_Feed_Synchronization-{B3AA0273-5D46-428A-BFE4-364028EBE978}.job


-- Files created between 2007-09-07 and 2007-10-07 -----------------------------

2007-10-07 14:59:06 0 d-------- C:\WINDOWS\system32\ActiveScan
2007-10-07 14:59:00 0 d-------- C:\WINDOWS\LastGood
2007-10-07 14:33:04 118784 --a------ C:\WINDOWS\system32\MSSTDFMT.DLL <Not Verified; Microsoft Corporation; MSSTDFMT Object Library>
2007-10-07 14:33:04 0 d-------- C:\Program Files\SpywareBlaster
2007-10-07 14:16:23 0 d-------- C:\Program Files\ZonedOut
2007-10-07 12:17:09 0 d-------- C:\Documents and Settings\Mine\Application Data\Comodo
2007-10-07 12:16:59 0 d-------- C:\Documents and Settings\All Users\Application Data\Comodo
2007-10-07 11:26:39 0 d-------- C:\Program Files\Comodo
2007-10-07 11:20:37 0 d-------- C:\Documents and Settings\All Users\Application Data\Kaspersky Lab
2007-10-07 11:20:28 0 d-------- C:\WINDOWS\system32\Kaspersky Lab
2007-10-06 19:25:15 0 d-------- C:\Program Files\TrojanHunter 4.0
2007-10-06 18:26:32 11840 --a------ C:\WINDOWS\system32\ypwgeroq.dll
2007-10-06 05:46:51 0 d-------- C:\Program Files\MSN Messenger
2007-10-06 02:04:28 0 d-------- C:\WINDOWS\ERUNT
2007-10-06 01:13:50 0 d-------- C:\Documents and Settings\All Users\Application Data\Windows Live Toolbar
2007-10-06 01:13:10 0 d-------- C:\Program Files\Windows Live Toolbar
2007-10-05 21:10:14 0 dr-h----- C:\$VAULT$.AVG
2007-10-05 20:31:33 0 d-------- C:\Documents and Settings\Mine\Application Data\AVG7
2007-10-05 20:29:53 0 d-------- C:\Documents and Settings\LocalService\Application Data\AVG7
2007-10-05 20:29:12 0 d-------- C:\Documents and Settings\All Users\Application Data\Grisoft
2007-10-05 20:09:15 0 d-------- C:\Documents and Settings\Faheema\Application Data\Google
2007-10-05 20:08:46 0 d-------- C:\Documents and Settings\Faheema\Application Data\Mozilla
2007-10-05 19:40:41 0 d-------- C:\WINDOWS\SxsCaPendDel
2007-10-05 16:48:59 11840 --a------ C:\WINDOWS\system32\ynlyanfm.dll
2007-10-05 00:16:47 1083319 ---hs---- C:\WINDOWS\system32\kjjjl.bak2
2007-10-04 22:37:59 297568 --a------ C:\WINDOWS\system32\ljjjk.dll
2007-10-01 20:24:15 0 d--h----- C:\WINDOWS\PIF
2007-09-07 00:43:39 0 d--h----- C:\Documents and Settings\All Users\Application Data\{690BA9C4-0FA7-4F20-801E-27BEDAEA6543}
2007-09-07 00:40:59 0 d-------- C:\iTutorial_Structure


-- Find3M Report ---------------------------------------------------------------

2007-10-07 19:24:25 0 d-------- C:\Program Files\LG USB Drive2.9
2007-10-07 19:22:31 0 d-------- C:\Program Files\Google
2007-10-07 19:22:07 0 d-------- C:\Program Files\Digital Line Detect
2007-10-07 19:22:07 0 d-------- C:\Program Files\DellSupport
2007-10-07 19:21:55 0 d-------- C:\Program Files\Dell Photo AIO Printer 922
2007-10-07 14:20:02 0 d-------- C:\Documents and Settings\Mine\Application Data\Virgin Broadband
2007-10-07 14:20:00 0 d-------- C:\Program Files\Virgin Broadband
2007-10-07 14:19:33 0 d-------- C:\Program Files\Common Files
2007-10-07 13:50:53 0 d-------- C:\Program Files\Java
2007-10-07 11:11:28 0 d-------- C:\Program Files\Quicknation
2007-09-17 0728 0 d-------- C:\Program Files\LimeWire


-- Registry Dump ---------------------------------------------------------------

*Note* empty entries & legit default entries are not shown


[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{9B83AB4C-784A-4582-A80D-7AD69912EE52}]
04/10/2007 22:38 297568 --a------ C:\WINDOWS\system32\ljjjk.dll

[HKEY_LOCAL_MACHINE\~\Browser Helper Objects\{B7672BAF-E9A3-49B6-86B2-C81719A18A4C}]
06/10/2007 18:26 11840 --a------ C:\WINDOWS\system32\ypwgeroq.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"PRONoMgr.exe"="C:\Program Files\Intel\NCS\PROSet\PRONoMgr.exe" [28/05/2003 17:32]
"DVDLauncher"="C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe" [12/10/2004 16:54]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [20/04/2005 18:24]
"UpdateManager"="C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" [07/01/2004 01:01]
"dla"="C:\WINDOWS\system32\dla\tfswctrl.exe" [06/12/2004 01:05]
"DMXLauncher"="C:\Program Files\Dell\Media Experience\DMXLauncher.exe" [27/01/2005 01:02]
"BJCFD"="C:\Program Files\BroadJump\Client Foundation\CFD.exe" [27/01/2003 17:16]
"Motive SmartBridge"="C:\PROGRA~1\ntl\BROADB~1\SMARTB~1\MotiveSB.exe" [30/12/2003 10:40]
"RecoverFromReboot"="C:\WINDOWS\Temp\RecoverFromReboot.exe" []
"LG US"="c:\program files\lg usb drive2.9\lg usb.exe" [21/02/2005 03:53]
"Dell Photo AIO Printer 922"="C:\Program Files\Dell Photo AIO Printer 922\dlbtbmgr.exe" [10/11/2004 19:36]
"igfxtray"="C:\WINDOWS\system32\igfxtray.exe" [20/09/2005 09:35]
"igfxhkcmd"="C:\WINDOWS\system32\hkcmd.exe" [20/09/2005 09:32]
"igfxpers"="C:\WINDOWS\system32\igfxpers.exe" [20/09/2005 09:36]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [01/06/2006 21:46]
"Broadbandadvisor.exe"="C:\Program Files\Virgin Broadband\advisor\Broadbandadvisor.exe" [24/01/2007 14:12]
"workflow"="D:\installs\workflow.exe" []
"Google Desktop Search"="C:\Program Files\Google\Google Desktop Search\GoogleDesktop.exe" [13/08/2007 21:46]
"FolderView"="C:\WINDOWS\system32\ibvjcggm.dll" []
"AVG7_CC"="C:\PROGRA~1\Grisoft\AVG7\avgcc.exe" [05/10/2007 20:29]
"COMODO Firewall Pro"="C:\Program Files\Comodo\Firewall\CPF.exe" [07/10/2007 11:26]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_01\bin\jusched.exe" [14/03/2007 03:43]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"DellSupport"="C:\Program Files\DellSupport\DSAgnt.exe" [15/03/2007 11:09]
"swg"="C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [30/07/2007 07:43]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [04/08/2004 05:00]
"updateMgr"="C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" [30/03/2006 16:45]
"BitTorrent"="C:\Program Files\BitTorrent\bittorrent.exe" []

[HKEY_USERS\.default\software\microsoft\windows\currentversion\run]
"swg"=C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

C:\Documents and Settings\Mine\Start Menu\Programs\Startup\
DESKTOP.INI [10/08/2004 13:04:12]

C:\Documents and Settings\All Users\Start Menu\Programs\Startup\
Adobe Reader Speed Launch.lnk - C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe [23/09/2005 22:05:26]
AOL 9.0 Tray Icon.lnk - C:\Program Files\AOL 9.0\aoltray.exe [20/04/2005 18:23:42]
broadband medic.lnk - C:\Program Files\ntl\broadband medic\bin\matcli.exe [21/07/2005 20:26:23]
DESKTOP.INI [10/08/2004 13:04:12]
Digital Line Detect.lnk - C:\Program Files\Digital Line Detect\DLG.exe [20/04/2005 18:18:05]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks]
"{8CEFE835-8EBF-420F-AFA2-807008E32917}"= C:\WINDOWS\system32\iifghfe.dll [ ]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\iifghfe]
iifghfe.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\ljjjk]
C:\WINDOWS\system32\ljjjk.dll 04/10/2007 22:38 297568 C:\WINDOWS\SYSTEM32\ljjjk.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\rqrstsq]
rqrstsq.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\Sebring]
C:\WINDOWS\system32\LgNotify.dll 12/01/2004 06:55 110592 C:\WINDOWS\SYSTEM32\LgNotify.dll

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"appinit_dlls"=C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL




-- Hosts -----------------------------------------------------------------------

127.0.0.1 ad.a8.net
127.0.0.1 asy.a8ww.net
127.0.0.1 www.aaa-livedoor.net #[Trojan-PSW.Win32.Maran.ei]
127.0.0.1 www.abcsearcher.com #[Spamdexing][Microsoft.Strider]
127.0.0.1 abc-search.info
127.0.0.1 abloga.info #[Spamdexing]
127.0.0.1 www.abx4.com #[Adware.ABXToolbar]
127.0.0.1 acezip.net #[SiteAdvisor.acezip.net]
127.0.0.1 www.acezip.net #[Win32/Adware.180Solutions]
127.0.0.1 phpadsnew.abac.com

16862 more entries in hosts file.


-- End of Deckard's System Scanner: finished at 2007-10-07 19:53:31 ------------



Incident Status Location

Potentially unwanted tool:application/funweb Not disinfected HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB}
Spyware:Cookie/PointRoll Not disinfected C:\Documents and Settings\Ajnabee\Cookies\ajnabee@ads.pointroll[2].txt
Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Ajnabee\Cookies\ajnabee@advertising[2].txt
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Ajnabee\Cookies\ajnabee@atdmt[2].txt
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Ajnabee\Cookies\ajnabee@doubleclick[2].txt
Spyware:Cookie/Maxserving Not disinfected C:\Documents and Settings\Ajnabee\Cookies\ajnabee@maxserving[2].txt
Spyware:Cookie/QuestionMarket Not disinfected C:\Documents and Settings\Ajnabee\Cookies\ajnabee@questionmarket[2].txt
Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Ajnabee\Cookies\ajnabee@tribalfusion[1].txt
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Faheema\Cookies\faheema@ad.yieldmanager[2].txt
Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Faheema\Cookies\faheema@adrevolver[2].txt
Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Faheema\Cookies\faheema@adrevolver[3].txt
Spyware:Cookie/Adtech Not disinfected C:\Documents and Settings\Faheema\Cookies\faheema@adtech[2].txt
Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Faheema\Cookies\faheema@advertising[1].txt
Spyware:Cookie/Adviva Not disinfected C:\Documents and Settings\Faheema\Cookies\faheema@adviva[2].txt
Spyware:Cookie/Falkag Not disinfected C:\Documents and Settings\Faheema\Cookies\faheema@as-us.falkag[2].txt
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Faheema\Cookies\faheema@atdmt[2].txt
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Faheema\Cookies\faheema@doubleclick[1].txt
Spyware:Cookie/FastClick Not disinfected C:\Documents and Settings\Faheema\Cookies\faheema@fastclick[2].txt
Spyware:Cookie/Mediaplex Not disinfected C:\Documents and Settings\Faheema\Cookies\faheema@mediaplex[1].txt
Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Faheema\Cookies\faheema@serving-sys[2].txt
Spyware:Cookie/Xmts Not disinfected C:\Documents and Settings\Faheema\Cookies\faheema@xmts[1].txt
Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Faheema\Cookies\faheema@zedo[2].txt
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Guest\Cookies\guest@atdmt[2].txt
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Guest\Cookies\guest@doubleclick[1].txt
Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Guest\Cookies\guest@serving-sys[1].txt
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[ad.yieldmanager.com/]
Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.2o7.net/]
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.doubleclick.net/]
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.atdmt.com/]
Spyware:Cookie/Tradedoubler Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.tradedoubler.com/]
Spyware:Cookie/Com.com Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.com.com/]
Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[www.winantiviruspro.com/]
Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.adrevolver.com/]
Spyware:Cookie/Statcounter Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.statcounter.com/]
Spyware:Cookie/onestat.com Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[stat.onestat.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.casalemedia.com/]
Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.zedo.com/]
Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.tribalfusion.com/]
Spyware:Cookie/FastClick Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.fastclick.net/]
Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.advertising.com/]
Spyware:Cookie/BurstNet Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.burstnet.com/]
Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.realmedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.burstnet.com/]
Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.realmedia.com/]
Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.advertising.com/]
Spyware:Cookie/Xiti Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.xiti.com/]
Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.247realmedia.com/]
Spyware:Cookie/Mediaplex Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.mediaplex.com/]
Spyware:Cookie/Reliablestats Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[stats1.reliablestats.com/]
Spyware:Cookie/QuestionMarket Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.questionmarket.com/]
Spyware:Cookie/WebtrendsLive Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[statse.webtrendslive.com/]
Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.serving-sys.com/]
Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.bs.serving-sys.com/]
Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.serving-sys.com/]
Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.go.com/]
Spyware:Cookie/Adtech Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.adtech.de/]
Spyware:Cookie/Yadro Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.yadro.ru/]
Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.atwola.com/]
Spyware:Cookie/Adserver Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.adserver.easyad.info/]
Spyware:Cookie/PointRoll Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.ads.pointroll.com/]
Spyware:Cookie/Hitslink Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[counter.hitslink.com/]
Spyware:Cookie/Overture Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.perf.overture.com/]
Spyware:Cookie/Overture Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.overture.com/]
Spyware:Cookie/Adviva Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.adviva.net/]
Spyware:Cookie/Bluestreak Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.bluestreak.com/]
Spyware:Cookie/bravenetA Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.bravenet.com/]
Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.drivecleaner.com/]
Spyware:Cookie/ErrorSafe Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.errorsafe.com/]
Spyware:Cookie/888 Not disinfected C:\Documents and Settings\Mine\Application Data\Mozilla\Firefox\Profiles\seufnt0s.default\cookies.txt[.888.com/]
Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@112.2o7[1].txt
Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@247realmedia[2].txt
Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@2o7[2].txt
Spyware:Cookie/7search Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@7search[2].txt
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@ad.yieldmanager[1].txt
Spyware:Cookie/Hbmediapro Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@adopt.hbmediapro[2].txt
Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@adrevolver[1].txt
Spyware:Cookie/PointRoll Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@ads.pointroll[2].txt
Spyware:Cookie/Adserver Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@adserver.filefront[1].txt
Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@advertising[1].txt
Spyware:Cookie/Adviva Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@adviva[2].txt
Spyware:Cookie/Falkag Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@as1.falkag[1].txt
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@atdmt[2].txt
Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@ath.belnk[1].txt
Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@atwola[1].txt
Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@belnk[2].txt
Spyware:Cookie/Bfast Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@bfast[2].txt
Spyware:Cookie/Bluestreak Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@bluestreak[2].txt
Spyware:Cookie/bravenetA Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@bravenet[1].txt
Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@bs.serving-sys[1].txt
Spyware:Cookie/BurstNet Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@burstnet[1].txt
Spyware:Cookie/GoClick Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@c.goclick[2].txt
Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@casalemedia[1].txt
Spyware:Cookie/CentrPort Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@centrport[1].txt
Spyware:Cookie/Cgi-bin Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@cgi-bin[2].txt
Spyware:Cookie/Clickbank Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@clickbank[1].txt
Spyware:Cookie/Hitslink Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@counter.hitslink[2].txt
Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@dist.belnk[1].txt
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@doubleclick[2].txt
Spyware:Cookie/FastClick Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@fastclick[1].txt
Spyware:Cookie/Findwhat Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@findwhat[1].txt
Spyware:Cookie/Kmpads Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@kmpads[1].txt
Spyware:Cookie/Maxserving Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@maxserving[1].txt
Spyware:Cookie/Mediaplex Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@mediaplex[2].txt
Spyware:Cookie/Overture Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@overture[2].txt
Spyware:Cookie/Overture Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@perf.overture[1].txt
Spyware:Cookie/Hitbox Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@phg.hitbox[2].txt
Spyware:Cookie/QuestionMarket Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@questionmarket[2].txt
Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@realmedia[1].txt
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@server.iad.liveperson[1].txt
Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@serving-sys[2].txt
Spyware:Cookie/Smartadserver Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@smartadserver[2].txt
Spyware:Cookie/Statcounter Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@statcounter[1].txt
Spyware:Cookie/WebtrendsLive Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@statse.webtrendslive[2].txt
Spyware:Cookie/Tickle Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@tickle[2].txt
Spyware:Cookie/Tradedoubler Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@tradedoubler[1].txt
Spyware:Cookie/Traffic Marketplace Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@trafficmp[1].txt
Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@tribalfusion[2].txt
Spyware:Cookie/Valueclick Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@valueclick[1].txt
Spyware:Cookie/Weborama Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@weborama[1].txt
Spyware:Cookie/BurstBeacon Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@www.burstbeacon[2].txt
Spyware:Cookie/Cgi-bin Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@www5.addfreestats[1].txt
Spyware:Cookie/Yadro Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@yadro[1].txt
Spyware:Cookie/Adserver Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@z1.adserver[1].txt
Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Waheeda\Cookies\waheeda@zedo[1].txt
Virus:Generic Trojan Disinfected C:\Program Files\Internet Explorer\BTOW Shared Files\btwebcontrol.dll
Potentially unwanted tool:Application/Processor Not disinfected C:\RECYCLER\S-1-5-21-3211123470-71134558-3376146041-1006\Dc824\apps\Process.exe
Potentially unwanted tool:Application/Processor Not disinfected C:\RECYCLER\S-1-5-21-3211123470-71134558-3376146041-1006\Dc825.exe[SDFix\apps\Process.exe]
Potentially unwanted tool:Application/Processor Not disinfected C:\RECYCLER\S-1-5-21-3211123470-71134558-3376146041-1006\Dc832\apps\Process.exe
Virus:Trj/WmaDownloader.F Disinfected C:\RECYCLER\S-1-5-21-3211123470-71134558-3376146041-1006\Dc940.wma
Attached Files
File Type: txt extra.txt (14.9 KB, 0 views)
idlehands is offline  
Important Information
Join the #1 Tech Support Forum Today - It's Totally Free!

TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free.

Join TechSupportforum.com Today - Click Here