Make sure WildTangent has been removed from your add/remove programs.
The Temp folders should be cleaned out periodically as installation programs and hijack programs leave a lot of junk there. Download CleanUp!
http://cleanup.stevengould.org/ (Alternate Link if main link don't work -
http://www.greyknight17.com/spy/Cleanup.exe ) and install it. Run CleanUp! and click on CleanUp! button. When it asks you if you want to logoff, click on Yes.
Download
KillBox
Run
Killbox. Paste the following locations into
Killbox one at a time. Checkmark the box that says
"Delete on Reboot", "Unload Explorer shell" and checkmark the box
"Unregistered DLL" (If available) Click the RED
X; first it will ask you to confirm the file to delete on reboot, click
YES. Next it will ask to reboot now...click
NO...and proceed with the next file. Once you get to the last one click
YES and it will reboot.
C:\WINDOWS\woinstall.exe
C:\WINDOWS\system32\psis80ex.ax
C:\HJT\backups\backup-20050421-100934-494.dll
C:\Program Files\Netscape\Netscape\plugins\npwthost.dll
C:\q123.vbs
C:\WINDOWS\Downloaded Program Files\imloader.exe
C:\WINDOWS\Downloaded Program Files\m4n.dll
C:\WINDOWS\system32\psis80ex.ax
Now run HJT and post a new log. Also run mwav again, and post a new log from that as well.
Please download Ad-aware at
http://www.lavasoftusa.com/ and install it if you don't have it already. Make sure it's the newest version and check for any updates before running it. Also go to
http://www.lavasoftusa.com/software/...2cleaner.shtml to download the plug-in for fixing VX2 variants. To run this tool, go into Ad-aware->Add-ons and select VX2 Cleaner. Then click Run Tool and OK to start it. If it's clean, it will say Status System Clean. Otherwise, you will have to click on the Clean button to remove the VX2 infection. Also make sure to customize the settings in Ad-aware at
http://www.greyknight17.com/spyware.htm#adaware for better scan results. Run the scan and fix everything that it finds.
Download and install Spybot S&D
http://security.kolla.de/. Run Spybot and click on the 'Search for Updates' button. Install any updates that are available.
Now click Mode menu and choose 'Advanced Mode'. Next click on Immunize to your left. Click the Immunize button (green cross) on top to Immunize your computer - you should do this each time there is an update. Now go to Tools->Resident and make sure that TeaTimer is checked. What this will do is monitor any system/registry changes and will ask you for permission to change any of these settings.
Now click on the 'Spybot-S&D' option on the top left to go back to the main screen. Next click on the 'Check for Problems' button. Let it run the scan. If it finds something, check all those in RED and hit the 'Fix Selected Problems' button. Exit Spybot. If you keep getting the DSO Exploit entries, even after you updated Windows and fixed them, then download the Spybot DSO Exploit Fix
http://majorgeeks.com/download4392.html and install it over the current Spybot installation.
If you have a fast internet connection (broadband), run an online virus scan at TrendMicro
http://uk.trendmicro-europe.com/ente...all_launch.php. Just follow the instructions on the site to run the online scan. If any viruses/trojans are detected, try to delete or clean them in that site. You may use Panda ActiveScan also at
http://www.pandasoftware.com/products/activescan. Otherwise, make sure your antivirus program has the latest definitions and run a full system scan.
A good free AV program,
AVG is available. Download, install, update and run a full scan.
Another is
Avast!