View Single Post
Old 06-17-2006, 06:22 PM   #4 (permalink)
rockndad
Registered User
 
Join Date: Jun 2006
Posts: 10
OS: xp


Ok. I have followed the instructions and here a re the requested logs.


Incident Status Location

Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@2o7[1].txt
Spyware:Cookie/PointRoll Not disinfected C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@ads.pointroll[2].txt
Spyware:Cookie/Apmebf Not disinfected C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@apmebf[2].txt
Spyware:Cookie/QkSrv Not disinfected C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@qksrv[2].txt
Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Compaq_Owner\Cookies\compaq_owner@tribalfusion[2].txt
Potentially unwanted tool:Application/Processor Not disinfected C:\Documents and Settings\Compaq_Owner\My Documents\VundoFix.exe[process.exe]
Spyware:Cookie/Hbmediapro Not disinfected C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\heartbreaker72@earthlink.net\Cookies\haley@adopt.hbmediapro[2].txt
Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\heartbreaker72@earthlink.net\Cookies\haley@atwola[1].txt
Spyware:Cookie/Azjmp Not disinfected C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\heartbreaker72@earthlink.net\Cookies\haley@azjmp[2].txt
Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\heartbreaker72@earthlink.net\Cookies\haley@belnk[1].txt
Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\heartbreaker72@earthlink.net\Cookies\haley@dist.belnk[2].txt
Spyware:Cookie/Screensavers Not disinfected C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\heartbreaker72@earthlink.net\Cookies\haley@i.screensavers[1].txt
Spyware:Cookie/OfferOptimizer Not disinfected C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\heartbreaker72@earthlink.net\Cookies\haley@offeroptimizer[2].txt
Spyware:Cookie/Rn11 Not disinfected C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\heartbreaker72@earthlink.net\Cookies\haley@rn11[2].txt
Spyware:Cookie/Searchportal Not disinfected C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\heartbreaker72@earthlink.net\Cookies\haley@searchportal.information[1].txt
Spyware:Cookie/WinFixer Not disinfected C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\heartbreaker72@earthlink.net\Cookies\haley@winfixer[2].txt
Spyware:Cookie/Hbmediapro Not disinfected C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@adopt.hbmediapro[2].txt
Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@ath.belnk[2].txt
Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@atwola[1].txt
Spyware:Cookie/Azjmp Not disinfected C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@azjmp[2].txt
Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@belnk[1].txt
Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@dist.belnk[2].txt
Spyware:Cookie/Screensavers Not disinfected C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@i.screensavers[1].txt
Spyware:Cookie/OfferOptimizer Not disinfected C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@offeroptimizer[2].txt
Spyware:Cookie/Rn11 Not disinfected C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@rn11[2].txt
Spyware:Cookie/Searchportal Not disinfected C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@searchportal.information[1].txt
Spyware:Cookie/WinFixer Not disinfected C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@winfixer[2].txt
Potentially unwanted tool:Application/KillApp.B Not disinfected C:\hp\bin\KillIt.exe
Potentially unwanted tool:Application/Processor Not disinfected C:\RECYCLER\S-1-5-21-1418462399-1842849303-1154398096-1009\Dc25\VundoFix\process.exe
Adware:Adware/PurityScan Not disinfected C:\WINDOWS\system32\w?aclt.exe
---------------------------------------------------------
ewido anti-malware - Scan report
---------------------------------------------------------

+ Created on: 5:12:03 AM, 6/17/2006
+ Report-Checksum: 8C61FBE1

+ Scan result:

HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{702EA91C-1ACF-4772-8078-18F2B2EE1031} -> Adware.Generic : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\heartbreaker72@earthlink.net\Cookies\haley@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\heartbreaker72@earthlink.net\Cookies\haley@adopt.specificclick[2].txt -> TrackingCookie.Specificclick : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\heartbreaker72@earthlink.net\Cookies\haley@ads.realcastmedia[2].txt -> TrackingCookie.Realcastmedia : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\heartbreaker72@earthlink.net\Cookies\haley@burstnet[1].txt -> TrackingCookie.Burstnet : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\heartbreaker72@earthlink.net\Cookies\haley@com[2].txt -> TrackingCookie.Com : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\heartbreaker72@earthlink.net\Cookies\haley@kmpads[2].txt -> TrackingCookie.Kmpads : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\heartbreaker72@earthlink.net\Cookies\haley@login.tracking101[2].txt -> TrackingCookie.Tracking101 : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\heartbreaker72@earthlink.net\Cookies\haley@paypopup[1].txt -> TrackingCookie.Paypopup : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\heartbreaker72@earthlink.net\Cookies\haley@starware[2].txt -> TrackingCookie.Starware : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\heartbreaker72@earthlink.net\Cookies\haley@stats1.reliablestats[1].txt -> TrackingCookie.Reliablestats : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\heartbreaker72@earthlink.net\Cookies\haley@yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@adopt.specificclick[2].txt -> TrackingCookie.Specificclick : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@ads.realcastmedia[2].txt -> TrackingCookie.Realcastmedia : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@burstnet[1].txt -> TrackingCookie.Burstnet : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@com[2].txt -> TrackingCookie.Com : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@kmpads[2].txt -> TrackingCookie.Kmpads : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@login.tracking101[1].txt -> TrackingCookie.Tracking101 : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@paypopup[1].txt -> TrackingCookie.Paypopup : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@starware[2].txt -> TrackingCookie.Starware : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@stats1.reliablestats[1].txt -> TrackingCookie.Reliablestats : Cleaned with backup
C:\Documents and Settings\Haley\Application Data\Earthlink\6.0\sportybabigirl@earthlink.net\Cookies\haley@yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned with backup
C:\Program Files\AWS\WeatherBug\MiniBugTransporter.dll -> Adware.Aws : Cleaned with backup
C:\WINDOWS\mtuninst.exe -> Adware.MediaTickets : Cleaned with backup
C:\WINDOWS\system32\oins.exe -> Downloader.PurityScan.au : Cleaned with backup


::Report End
rockndad is offline