|
Re: Suspected Malware
Hello again
This is an update from my side. I ran Panda Active Scan on my system and found 6 viruses, 99 spyware, 3 hacker tools and 4 dialers. It says "Disinfected" in front of the list of viruses. Does that mean I am free from those 6, in the least? How may I go about getting rid of the spyware now? Some of it is just cookies, which I guess can stay?
Thanks in advance
Panda Active Scan report follows:
-----------------------------------------------------------------
Incident Status Location
Virus:Trj/Downloader.MDW Disinfected Operating system
Adware:adware/eshopper Not disinfected c:\windows\system32\ESHOPEE.EXE
Adware:adware/popuper Not disinfected c:\windows\system32\MSOLE32.EXE
Adware:adware/gator Not disinfected c:\windows\downloaded program files\HDPlugin1101.dll
Potentially unwanted tool:application/activitymon Not disinfected c:\program files\AMSYS
Adware:adware/activshopper Not disinfected c:\program files\e-zshopper
Dialer:dialer.su Not disinfected hkey_local_machine\software\microsoft\windows\currentversion\uninstall\Switch
Adware:adware/adbars Not disinfected Windows Registry
Dialer:dialer.xd Not disinfected HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{54645654-2225-4455-44A1-9F4543D34546}
Adware:adware/activesearch Not disinfected Windows Registry
Adware:adware/deskwizz Not disinfected Windows Registry
Adware:adware/404search Not disinfected Windows Registry
Adware:adware/adblaster Not disinfected Windows Registry
Adware:adware/adsincontext Not disinfected Windows Registry
Virus:Trj/Downloader.MDW Disinfected C:\WINDOWS\SYSTEM32\Timesvc.dll
Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Tanmoy\Application Data\Mozilla\Firefox\Profiles\i68s2gg8.default\COOKIES.TXT[.tribalfusion.com/]
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Tanmoy\Application Data\Mozilla\Firefox\Profiles\i68s2gg8.default\COOKIES.TXT[ad.yieldmanager.com/]
Spyware:Cookie/WebtrendsLive Not disinfected C:\Documents and Settings\Tanmoy\Application Data\Mozilla\Firefox\Profiles\i68s2gg8.default\COOKIES.TXT[statse.webtrendslive.com/]
Spyware:Cookie/Statcounter Not disinfected C:\Documents and Settings\Tanmoy\Application Data\Mozilla\Firefox\Profiles\i68s2gg8.default\COOKIES.TXT[.statcounter.com/]
Spyware:Cookie/Mediaplex Not disinfected C:\Documents and Settings\Tanmoy\Application Data\Mozilla\Firefox\Profiles\i68s2gg8.default\COOKIES.TXT[.mediaplex.com/]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\Documents and Settings\Tanmoy\Application Data\Mozilla\Firefox\Profiles\i68s2gg8.default\COOKIES.TXT[server.iad.liveperson.net/]
Virus:Trj/Qhost.gen Disinfected C:\Documents and Settings\Ekta\Local Settings\Application Data\ListHost10.txt
Virus:W32/Brontok.H.worm Disinfected C:\Documents and Settings\Ekta\My Documents\My Pictures\about.Brontok.A.html
Virus:W32/Brontok.H.worm Disinfected C:\Documents and Settings\Ekta\Desktop\DASKTOP\My Pictures\about.Brontok.A.html
Potentially unwanted tool:Application/SpywareStormer Not disinfected C:\Documents and Settings\Ekta\Desktop\DASKTOP\New Folder\clsReg.dll
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Ekta\Cookies\ekta@doubleclick[1].txt
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Ekta\Cookies\ekta@ad.yieldmanager[2].txt
Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Ekta\Application Data\Mozilla\Firefox\Profiles\te1xh4ux.default\COOKIES.TXT[.doubleclick.net/]
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Ekta\Application Data\Mozilla\Firefox\Profiles\te1xh4ux.default\COOKIES.TXT[.atdmt.com/]
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Ekta\Application Data\Mozilla\Firefox\Profiles\te1xh4ux.default\COOKIES.TXT[ad.yieldmanager.com/]
Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Ekta\Application Data\Mozilla\Firefox\Profiles\te1xh4ux.default\COOKIES.TXT[.zedo.com/]
Spyware:Cookie/Clickbank Not disinfected C:\Documents and Settings\Ekta\Application Data\Mozilla\Firefox\Profiles\te1xh4ux.default\COOKIES.TXT[.clickbank.net/]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\Documents and Settings\Ekta\Application Data\Mozilla\Firefox\Profiles\te1xh4ux.default\COOKIES.TXT[server.iad.liveperson.net/hc/67227766]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\Documents and Settings\Ekta\Application Data\Mozilla\Firefox\Profiles\te1xh4ux.default\COOKIES.TXT[server.iad.liveperson.net/]
Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Ekta\Application Data\Mozilla\Firefox\Profiles\te1xh4ux.default\COOKIES.TXT[.advertising.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\Ekta\Application Data\Mozilla\Firefox\Profiles\te1xh4ux.default\COOKIES.TXT[.casalemedia.com/]
Spyware:Cookie/PointRoll Not disinfected C:\Documents and Settings\Ekta\Application Data\Mozilla\Firefox\Profiles\te1xh4ux.default\COOKIES.TXT[.ads.pointroll.com/]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\Documents and Settings\Ekta\Application Data\Mozilla\Firefox\Profiles\te1xh4ux.default\COOKIES.TXT[server.iad.liveperson.net/hc/73403369]
Spyware:Cookie/Hitslink Not disinfected C:\Documents and Settings\Ekta\Application Data\Mozilla\Firefox\Profiles\te1xh4ux.default\COOKIES.TXT[counter.hitslink.com/]
Spyware:Cookie/Statcounter Not disinfected C:\Documents and Settings\Ekta\Application Data\Mozilla\Firefox\Profiles\te1xh4ux.default\COOKIES.TXT[.statcounter.com/]
Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Ekta\Application Data\Mozilla\Firefox\Profiles\te1xh4ux.default\COOKIES.TXT[.tribalfusion.com/]
Spyware:Cookie/Bluestreak Not disinfected C:\Documents and Settings\Ekta\Application Data\Mozilla\Firefox\Profiles\te1xh4ux.default\COOKIES.TXT[.bluestreak.com/]
Spyware:Cookie/Apmebf Not disinfected C:\Documents and Settings\Ekta\Application Data\Mozilla\Firefox\Profiles\te1xh4ux.default\COOKIES.TXT[.apmebf.com/]
Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Ekta\Application Data\Mozilla\Firefox\Profiles\te1xh4ux.default\COOKIES.TXT[.realmedia.com/]
Spyware:Cookie/QuestionMarket Not disinfected C:\Documents and Settings\Ekta\Application Data\Mozilla\Firefox\Profiles\te1xh4ux.default\COOKIES.TXT[.questionmarket.com/]
Spyware:Cookie/Valueclick Not disinfected C:\Documents and Settings\Ekta\Application Data\Mozilla\Firefox\Profiles\te1xh4ux.default\COOKIES.TXT[.valueclick.com/]
Spyware:Cookie/FastClick Not disinfected C:\Documents and Settings\Ekta\Application Data\Mozilla\Firefox\Profiles\te1xh4ux.default\COOKIES.TXT[.fastclick.net/]
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Hemant.EKANT\Application Data\Mozilla\Firefox\Profiles\qvcoc4ue.default\COOKIES.TXT[.atdmt.com/]
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Hemant.EKANT\Application Data\Mozilla\Firefox\Profiles\qvcoc4ue.default\COOKIES.TXT[ad.yieldmanager.com/]
Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Hemant.EKANT\Application Data\Mozilla\Firefox\Profiles\qvcoc4ue.default\COOKIES.TXT[.advertising.com/]
Spyware:Cookie/FastClick Not disinfected C:\Documents and Settings\Hemant.EKANT\Application Data\Mozilla\Firefox\Profiles\qvcoc4ue.default\COOKIES.TXT[.fastclick.net/]
Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Hemant.EKANT\Application Data\Mozilla\Firefox\Profiles\qvcoc4ue.default\COOKIES.TXT[.zedo.com/]
Spyware:Cookie/QuestionMarket Not disinfected C:\Documents and Settings\Hemant.EKANT\Application Data\Mozilla\Firefox\Profiles\qvcoc4ue.default\COOKIES.TXT[.questionmarket.com/]
Spyware:Cookie/DomainSponsor Not disinfected C:\Documents and Settings\Hemant.EKANT\Application Data\Mozilla\Firefox\Profiles\qvcoc4ue.default\COOKIES.TXT[landing.domainsponsor.com/]
Spyware:Cookie/WUpd Not disinfected C:\Documents and Settings\Hemant.EKANT\Application Data\Mozilla\Firefox\Profiles\qvcoc4ue.default\COOKIES.TXT[.revenue.net/]
Virus:Bck/Hupigon.AZG Disinfected C:\Program Files\NetMeeting\MSMSGS
Spyware:Cookie/YieldManager Not disinfected C:\FOUND.010\FILE0000.CHK[ad.yieldmanager.com/]
Spyware:Cookie/Atlas DMT Not disinfected C:\FOUND.010\FILE0000.CHK[.atdmt.com/]
Spyware:Cookie/YieldManager Not disinfected C:\FOUND.010\FILE0000.CHK[ad.yieldmanager.com/]
Spyware:Cookie/YieldManager Not disinfected C:\FOUND.010\FILE0000.CHK[.ad.yieldmanager.com/]
Spyware:Cookie/Doubleclick Not disinfected C:\FOUND.010\FILE0000.CHK[.doubleclick.net/]
Spyware:Cookie/Hitbox Not disinfected C:\FOUND.010\FILE0000.CHK[.ehg.hitbox.com/]
Spyware:Cookie/QuestionMarket Not disinfected C:\FOUND.010\FILE0000.CHK[.questionmarket.com/]
Spyware:Cookie/FastClick Not disinfected C:\FOUND.010\FILE0000.CHK[.fastclick.net/]
Spyware:Cookie/Adrevolver Not disinfected C:\FOUND.010\FILE0000.CHK[.adrevolver.com/]
Spyware:Cookie/Zedo Not disinfected C:\FOUND.010\FILE0000.CHK[.zedo.com/]
Spyware:Cookie/Tribalfusion Not disinfected C:\FOUND.010\FILE0000.CHK[.tribalfusion.com/]
Spyware:Cookie/PointRoll Not disinfected C:\FOUND.010\FILE0000.CHK[.ads.pointroll.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\FOUND.010\FILE0000.CHK[.casalemedia.com/]
Spyware:Cookie/Yadro Not disinfected C:\FOUND.010\FILE0000.CHK[.yadro.ru/]
Spyware:Cookie/Advertising Not disinfected C:\FOUND.010\FILE0000.CHK[.advertising.com/]
Spyware:Cookie/BurstNet Not disinfected C:\FOUND.010\FILE0000.CHK[.burstnet.com/]
Spyware:Cookie/Mediaplex Not disinfected C:\FOUND.010\FILE0000.CHK[.mediaplex.com/]
Spyware:Cookie/RealMedia Not disinfected C:\FOUND.010\FILE0000.CHK[.247realmedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\FOUND.010\FILE0000.CHK[.realmedia.com/]
Spyware:Cookie/Statcounter Not disinfected C:\FOUND.010\FILE0000.CHK[.statcounter.com/]
Spyware:Cookie/GoStats Not disinfected C:\FOUND.010\FILE0000.CHK[.gostats.com/]
Spyware:Cookie/WebtrendsLive Not disinfected C:\FOUND.010\FILE0000.CHK[statse.webtrendslive.com/S002-00-7-29-167745-20469]
Spyware:Cookie/WebtrendsLive Not disinfected C:\FOUND.010\FILE0000.CHK[.statse.webtrendslive.com/]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\FOUND.010\FILE0000.CHK[server.iad.liveperson.net/hc/76233861]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\FOUND.010\FILE0000.CHK[.server.iad.liveperson.net/]
Spyware:Cookie/Overture Not disinfected C:\FOUND.010\FILE0000.CHK[.overture.com/]
Spyware:Cookie/Atwola Not disinfected C:\FOUND.010\FILE0000.CHK[.atwola.com/]
Spyware:Cookie/Adtech Not disinfected C:\FOUND.010\FILE0000.CHK[.adtech.de/]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\FOUND.010\FILE0000.CHK[server.iad.liveperson.net/hc/39926684]
Spyware:Cookie/Com.com Not disinfected C:\FOUND.010\FILE0000.CHK[.com.com/]
Spyware:Cookie/Versiontracker Not disinfected C:\FOUND.010\FILE0000.CHK[.versiontracker.com/]
Spyware:Cookie/Hitslink Not disinfected C:\FOUND.010\FILE0000.CHK[.counter.hitslink.com/]
Spyware:Cookie/Hitbox Not disinfected C:\FOUND.010\FILE0000.CHK[.phg.hitbox.com/]
Spyware:Cookie/DomainSponsor Not disinfected C:\FOUND.010\FILE0000.CHK[.landing.domainsponsor.com/]
Spyware:Cookie/Xiti Not disinfected C:\FOUND.010\FILE0000.CHK[.xiti.com/]
Spyware:Cookie/Serving-sys Not disinfected C:\FOUND.010\FILE0000.CHK[.serving-sys.com/]
Spyware:Cookie/Date Not disinfected C:\FOUND.010\FILE0000.CHK[.date.com/]
Spyware:Cookie/Serving-sys Not disinfected C:\FOUND.010\FILE0000.CHK[.bs.serving-sys.com/]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\FOUND.010\FILE0000.CHK[.server.iad.liveperson.net/hc/26231671]
Spyware:Cookie/Hitbox Not disinfected C:\FOUND.010\FILE0000.CHK[.ehg-alt64.hitbox.com/]
Spyware:Cookie/WebPower Not disinfected C:\FOUND.010\FILE0000.CHK[.webpower.com/]
Spyware:Cookie/Apmebf Not disinfected C:\FOUND.010\FILE0000.CHK[.apmebf.com/]
Spyware:Cookie/bravenetA Not disinfected C:\FOUND.010\FILE0000.CHK[.bravenet.com/]
Spyware:Cookie/Advertising Not disinfected C:\FOUND.011\FILE0000.CHK[.advertising.com/]
Spyware:Cookie/Atlas DMT Not disinfected C:\FOUND.011\FILE0000.CHK[.atdmt.com/]
Spyware:Cookie/YieldManager Not disinfected C:\FOUND.011\FILE0000.CHK[ad.yieldmanager.com/]
Spyware:Cookie/Com.com Not disinfected C:\FOUND.011\FILE0000.CHK[.com.com/]
Spyware:Cookie/Doubleclick Not disinfected C:\FOUND.011\FILE0000.CHK[.doubleclick.net/]
Spyware:Cookie/Mediaplex Not disinfected C:\FOUND.011\FILE0000.CHK[.mediaplex.com/]
Spyware:Cookie/BurstNet Not disinfected C:\FOUND.011\FILE0000.CHK[.burstnet.com/]
Spyware:Cookie/QuestionMarket Not disinfected C:\FOUND.011\FILE0000.CHK[.questionmarket.com/]
Dialer:Dialer.YC Not disinfected D:\WINDOWS\INF\NSUPD9X.INF
Spyware:Cookie/Atlas DMT Not disinfected D:\WINDOWS\Cookies\tanmoy laskar@atdmt[1].txt
Dialer:Dialer.YC Not disinfected D:\WINDOWS\Downloaded Program Files\NSupd9x.inf
Adware:Adware/Dyfuca Not disinfected D:\WINDOWS\Downloaded Program Files\UniDist.inf
Potentially unwanted tool:Application/SpywareStormer Not disinfected F:\New Folder\New Folder\clsReg.dll
|