Jump to content

Build Theme!
  •  
  • Infected?

WE'RE SURE THAT YOU'LL LOVE US!

Hey there! :wub: Looks like you're enjoying the discussion, but you're not signed up for an account. When you create an account, we remember exactly what you've read, so you always come right back where you left off. You also get notifications, here and via email, whenever new posts are made. You can like posts to share the love. :D Join 93099 other members! Anybody can ask, anybody can answer. Consistently helpful members may be invited to become staff. Here's how it works. Virus cleanup? Start here -> Malware Removal Forum.

Try What the Tech -- It's free!


Photo

Using IE, google is taken over by spyware


  • This topic is locked This topic is locked
9 replies to this topic

#1 styx

styx

    New Member

  • New Member
  • Pip
  • 5 posts

Posted 09 May 2006 - 02:17 PM

Hello,

I removed a lot of spyware using spybot (and yes, i rebooted before scanning with Hijack This), but one problem still remains...

when i use internet explorer, and go to google to do a search, when i click on the search results, i am taken not to the page in the results, but to some spam page, either selling a product or one of those cheesy search pages. for example, when i googled, 'hijack this' i got a search result for the tomcoyote forums, and i looked at the web address for the search result and yes it was tomcoyote.org but when i actually clicked on it, it didn't take me to tomcoyote, it took me to:

http://www.stopzilla...=&dre=&cid=1004

and all the other search results took me to suspicious looking pages too, never to the actual address listed on google.

no matter what i search for, when i click on the results i'm taken somewhere else.

so i tested it out by using firefox, going to google and searching for the exact same phrases and i didn't have this problem, clicking in google would take me to the actual search result so i know for sure something's wrong.

please help me because i always use google for my work and it's going crazy. i can't rely on firefox because it's been crashing all the time recently... perhaps that's caused by spyware too, i don't know.

THANK YOU SO MUCH

here is my log file:

Logfile of HijackThis v1.99.0
Scan saved at 1:05:59 PM, on 5/9/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\System32\WLANSTA.EXE
C:\Program Files\Players\Quicktime\iTunesHelper.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\System32\Atievxx.exe
C:\WINDOWS\System32\wdfmgr.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\Hijack This\hijackthis\HijackThis.exe

F2 - REG:system.ini: Shell=explorer.exe
O1 - Hosts: localhost 127.0.0.1
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: (no name) - {08BEC6AA-49FC-4379-3587-4B21E286C19E} - (no file)
O4 - HKLM\..\Run: [WLANSTA.EXE] WLANSTA.EXE START
O4 - HKLM\..\Run: [TCASUTIEXE] TCAUDIAG -off
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\Players\Quicktime\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [shell] "C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00001.exe"
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O12 - Plugin for .pdf: C:\Program Files\Internet Explorer\PLUGINS\nppdf32.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{3636568E-A812-422E-B008-6D4F22E510B8}: NameServer = 85.255.115.85,85.255.112.236
O17 - HKLM\System\CCS\Services\Tcpip\..\{5CE7EF2B-0314-454B-8ACF-53E07695979D}: NameServer = 85.255.115.85,85.255.112.236
O17 - HKLM\System\CCS\Services\Tcpip\..\{87B2DB7B-C4B6-46DA-86EB-3408E99AF6E0}: NameServer = 85.255.115.85,85.255.112.236
O17 - HKLM\System\CS1\Services\Tcpip\..\{3636568E-A812-422E-B008-6D4F22E510B8}: NameServer = 85.255.115.85,85.255.112.236
O17 - HKLM\System\CS2\Services\Tcpip\..\{3636568E-A812-422E-B008-6D4F22E510B8}: NameServer = 85.255.115.85,85.255.112.236
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: InstallDriver Table Manager - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe

    Advertisements

Register to Remove


#2 Siggyx

Siggyx

    SuperHelper

  • Authentic Member
  • PipPipPipPipPipPip
  • 6,776 posts

Posted 09 May 2006 - 04:03 PM

You need an updated version of Hijackthis which you can get from HERE.

#3 styx

styx

    New Member

  • New Member
  • Pip
  • 5 posts

Posted 09 May 2006 - 04:10 PM

thanks for letting me know. i downloaded that right now and run another scan, here it is: Logfile of HijackThis v1.99.1 Scan saved at 3:06:41 PM, on 5/9/2006 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\explorer.exe C:\WINDOWS\System32\WLANSTA.EXE C:\Program Files\Players\Quicktime\iTunesHelper.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\WINDOWS\System32\alg.exe C:\WINDOWS\System32\Atievxx.exe C:\WINDOWS\System32\wdfmgr.exe C:\Program Files\iPod\bin\iPodService.exe C:\WINDOWS\System32\wuauclt.exe C:\Program Files\Internet Explorer\iexplore.exe C:\Program Files\Hijack This\hijackthis\hijackthis\HijackThis.exe F2 - REG:system.ini: Shell=explorer.exe O1 - Hosts: localhost 127.0.0.1 O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O3 - Toolbar: (no name) - {08BEC6AA-49FC-4379-3587-4B21E286C19E} - (no file) O4 - HKLM\..\Run: [WLANSTA.EXE] WLANSTA.EXE START O4 - HKLM\..\Run: [TCASUTIEXE] TCAUDIAG -off O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\Players\Quicktime\iTunesHelper.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [shell] "C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00001.exe" O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm O12 - Plugin for .pdf: C:\Program Files\Internet Explorer\PLUGINS\nppdf32.dll O17 - HKLM\System\CCS\Services\Tcpip\..\{3636568E-A812-422E-B008-6D4F22E510B8}: NameServer = 85.255.115.85,85.255.112.236 O17 - HKLM\System\CCS\Services\Tcpip\..\{5CE7EF2B-0314-454B-8ACF-53E07695979D}: NameServer = 85.255.115.85,85.255.112.236 O17 - HKLM\System\CCS\Services\Tcpip\..\{87B2DB7B-C4B6-46DA-86EB-3408E99AF6E0}: NameServer = 85.255.115.85,85.255.112.236 O17 - HKLM\System\CS1\Services\Tcpip\..\{3636568E-A812-422E-B008-6D4F22E510B8}: NameServer = 85.255.115.85,85.255.112.236 O17 - HKLM\System\CS2\Services\Tcpip\..\{3636568E-A812-422E-B008-6D4F22E510B8}: NameServer = 85.255.115.85,85.255.112.236 O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe

#4 Siggyx

Siggyx

    SuperHelper

  • Authentic Member
  • PipPipPipPipPipPip
  • 6,776 posts

Posted 09 May 2006 - 04:13 PM

You may want to print out these instructions for reference, since you will have to restart your computer during the fix.

Please download FixWareout from one of these sites:
http://downloads.sub.../Fixwareout.exe
http://swandog46.gee.../Fixwareout.exe

Save it to your desktop and run it. Click Next, then Install, then make sure "Run fixit" is checked and click Finish. The fix will begin; follow the prompts. You will be asked to reboot your computer; please do so. Your system may take longer than usual to load; this is normal.

NEXT

Please download the trial version of Ewido Security Suite here:

http://www.ewido.net/en/

Install it, and update the definitions to the newest files.

Next, please reboot your computer in Safe Mode by doing the following:
1) Restart your computer
2) After hearing your computer beep once during startup, but before the Windows icon appears, press F8.
3) Instead of Windows loading as normal, a menu should appear
4) Select the first option, to run Windows in Safe Mode.

Then please run Ewido, and run a full scan. Save the logfile from the scan.

Restart your computer in normal mode and please post a new HijackThis log, as well as the log from the Ewido scan.

#5 styx

styx

    New Member

  • New Member
  • Pip
  • 5 posts

Posted 09 May 2006 - 06:58 PM

thanks so much for the help, i followed all your steps, here is the new Hijack This log, and the ewido log is posted right after it:



Logfile of HijackThis v1.99.1
Scan saved at 5:51:04 PM, on 5/9/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\explorer.exe
C:\WINDOWS\System32\WLANSTA.EXE
C:\Program Files\Players\Quicktime\iTunesHelper.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\WINDOWS\System32\Atievxx.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\wuauclt.exe
C:\Program Files\Hijack This\hijackthis\hijackthis\HijackThis.exe
C:\WINDOWS\System32\wuauclt.exe

F2 - REG:system.ini: Shell=explorer.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O4 - HKLM\..\Run: [WLANSTA.EXE] WLANSTA.EXE START
O4 - HKLM\..\Run: [TCASUTIEXE] TCAUDIAG -off
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\Players\Quicktime\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [shell] "C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00001.exe"
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O12 - Plugin for .pdf: C:\Program Files\Internet Explorer\PLUGINS\nppdf32.dll
O17 - HKLM\System\CCS\Services\Tcpip\..\{3636568E-A812-422E-B008-6D4F22E510B8}: NameServer = 85.255.115.85,85.255.112.236
O17 - HKLM\System\CCS\Services\Tcpip\..\{5CE7EF2B-0314-454B-8ACF-53E07695979D}: NameServer = 85.255.115.85,85.255.112.236
O17 - HKLM\System\CCS\Services\Tcpip\..\{87B2DB7B-C4B6-46DA-86EB-3408E99AF6E0}: NameServer = 85.255.115.85,85.255.112.236
O17 - HKLM\System\CS1\Services\Tcpip\..\{3636568E-A812-422E-B008-6D4F22E510B8}: NameServer = 85.255.115.85,85.255.112.236
O17 - HKLM\System\CS2\Services\Tcpip\..\{3636568E-A812-422E-B008-6D4F22E510B8}: NameServer = 85.255.115.85,85.255.112.236
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe





ewido:





---------------------------------------------------------
ewido anti-malware - Scan report
---------------------------------------------------------

+ Created on: 5:47:29 PM, 5/9/2006
+ Report-Checksum: D1123BAA

+ Scan result:

:mozilla.13:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.34:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.67:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup
:mozilla.68:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.69:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.70:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.71:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.72:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.73:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.77:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup
:mozilla.78:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.79:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.80:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.81:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.82:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.83:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.84:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.85:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.86:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.87:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.88:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.89:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.90:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.91:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.92:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.93:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.94:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.95:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.96:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.97:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.98:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.99:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.100:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.101:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.102:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.103:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.104:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup
:mozilla.105:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup
:mozilla.106:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup
:mozilla.107:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup
:mozilla.108:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup
:mozilla.109:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup
:mozilla.110:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup
:mozilla.111:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup
:mozilla.119:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned with backup
:mozilla.129:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.130:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.131:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.152:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Hotlog : Cleaned with backup
:mozilla.153:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Hypertracker : Cleaned with backup
:mozilla.203:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Paycounter : Cleaned with backup
:mozilla.207:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Overture : Cleaned with backup
:mozilla.211:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned with backup
:mozilla.212:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned with backup
:mozilla.235:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.236:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.243:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.244:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.245:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.249:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.250:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.251:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.261:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Yadro : Cleaned with backup
:mozilla.266:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Cqcounter : Cleaned with backup
:mozilla.271:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.272:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.277:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned with backup
:mozilla.289:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Masterstats : Cleaned with backup
:mozilla.297:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup
:mozilla.298:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup
:mozilla.299:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup
:mozilla.300:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup
:mozilla.312:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned with backup
:mozilla.329:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup
:mozilla.330:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup
:mozilla.331:C:\Documents and Settings\Omid\Application Data\Mozilla\Firefox\Profiles\ac663lgj.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@2o7[2].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@bluestreak[1].txt -> TrackingCookie.Bluestreak : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@burstnet[1].txt -> TrackingCookie.Burstnet : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@casalemedia[1].txt -> TrackingCookie.Casalemedia : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@com[2].txt -> TrackingCookie.Com : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@cs.sexcounter[1].txt -> TrackingCookie.Sexcounter : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@cz3.clickzs[2].txt -> TrackingCookie.Clickzs : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@findwhat[1].txt -> TrackingCookie.Findwhat : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@perf.overture[1].txt -> TrackingCookie.Overture : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@qksrv[2].txt -> TrackingCookie.Qksrv : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@questionmarket[1].txt -> TrackingCookie.Questionmarket : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@server.iad.liveperson[2].txt -> TrackingCookie.Liveperson : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@stat.onestat[2].txt -> TrackingCookie.Onestat : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@trafic[1].txt -> TrackingCookie.Trafic : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Cleaned with backup
C:\Documents and Settings\Omid\Cookies\omid@www.burstbeacon[1].txt -> TrackingCookie.Burstbeacon : Cleaned with backup
C:\Documents and Settings\Omid\Local Settings\Temp\kvn.exe -> Trojan.Sinowal.n : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@2o7[2].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@ads.addynamix[2].txt -> TrackingCookie.Addynamix : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@ads.pointroll[1].txt -> TrackingCookie.Pointroll : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@advertising[1].txt -> TrackingCookie.Advertising : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@bfast[1].txt -> TrackingCookie.Bfast : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@clickbank[2].txt -> TrackingCookie.Clickbank : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@counter.hitslink[2].txt -> TrackingCookie.Hitslink : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@data.coremetrics[1].txt -> TrackingCookie.Coremetrics : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@doubleclick[2].txt -> TrackingCookie.Doubleclick : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@edge.ru4[2].txt -> TrackingCookie.Ru4 : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@ehg-bestbuy.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@ehg-mybc.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@ehg-superpages.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@fastclick[1].txt -> TrackingCookie.Fastclick : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@gateway.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@media.fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@microsofteup.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@overture[2].txt -> TrackingCookie.Overture : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@questionmarket[1].txt -> TrackingCookie.Questionmarket : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@statcounter[2].txt -> TrackingCookie.Statcounter : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@trafficmp[2].txt -> TrackingCookie.Trafficmp : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@w128.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned with backup
C:\Documents and Settings\Pari\Cookies\pari@zedo[1].txt -> TrackingCookie.Zedo : Cleaned with backup
C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00001.dll -> Trojan.Sinowal.m : Cleaned with backup
C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00002.dll -> Trojan.Sinowal.m : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\59032770-2960-4649-86B3-D07F2A\E132B7D7-62D4-4C37-A91D-0DF616 -> Adware.BargainBuddy : Cleaned with backup
C:\win1.exe -> Heuristic.Win32.AVKiller : Cleaned with backup
C:\WINDOWS\system32\csrcw.exe -> Downloader.Agent.uj : Cleaned with backup
C:\WINDOWS\system32\dmtwi.exe -> Trojan.Pakes : Cleaned with backup
C:\WINDOWS\system32\wprrd.dll -> Adware.SBSoft : Cleaned with backup


::Report End

#6 Siggyx

Siggyx

    SuperHelper

  • Authentic Member
  • PipPipPipPipPipPip
  • 6,776 posts

Posted 09 May 2006 - 07:21 PM

Scan with hijackthis and put a chck beside these lines and choose FIX O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm O17 - HKLM\System\CCS\Services\Tcpip\..\{3636568E-A812-422E-B008-6D4F22E510B8}: NameServer = 85.255.115.85,85.255.112.236 O17 - HKLM\System\CCS\Services\Tcpip\..\{5CE7EF2B-0314-454B-8ACF-53E07695979D}: NameServer = 85.255.115.85,85.255.112.236 O17 - HKLM\System\CCS\Services\Tcpip\..\{87B2DB7B-C4B6-46DA-86EB-3408E99AF6E0}: NameServer = 85.255.115.85,85.255.112.236 O17 - HKLM\System\CS1\Services\Tcpip\..\{3636568E-A812-422E-B008-6D4F22E510B8}: NameServer = 85.255.115.85,85.255.112.236 O17 - HKLM\System\CS2\Services\Tcpip\..\{3636568E-A812-422E-B008-6D4F22E510B8}: NameServer = 85.255.115.85,85.255.112.236 Then reboot and post a new log please.

#7 styx

styx

    New Member

  • New Member
  • Pip
  • 5 posts

Posted 09 May 2006 - 07:49 PM

thank you so much, here is the most recent log: Logfile of HijackThis v1.99.1 Scan saved at 6:45:23 PM, on 5/9/2006 Platform: Windows XP SP1 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\explorer.exe C:\WINDOWS\System32\WLANSTA.EXE C:\Program Files\Players\Quicktime\iTunesHelper.exe C:\Program Files\MSN Messenger\msnmsgr.exe C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe C:\WINDOWS\System32\Atievxx.exe C:\Program Files\ewido anti-malware\ewidoctrl.exe C:\Program Files\iPod\bin\iPodService.exe C:\WINDOWS\System32\wuauclt.exe C:\Program Files\Hijack This\hijackthis\hijackthis\HijackThis.exe C:\WINDOWS\System32\wuauclt.exe F2 - REG:system.ini: Shell=explorer.exe O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx O4 - HKLM\..\Run: [WLANSTA.EXE] WLANSTA.EXE START O4 - HKLM\..\Run: [TCASUTIEXE] TCAUDIAG -off O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\Players\Quicktime\iTunesHelper.exe" O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [shell] "C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00001.exe" O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O12 - Plugin for .pdf: C:\Program Files\Internet Explorer\PLUGINS\nppdf32.dll O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe

#8 Siggyx

Siggyx

    SuperHelper

  • Authentic Member
  • PipPipPipPipPipPip
  • 6,776 posts

Posted 09 May 2006 - 09:09 PM

Looks good, how is it running?

#9 styx

styx

    New Member

  • New Member
  • Pip
  • 5 posts

Posted 09 May 2006 - 09:15 PM

i just tested it right now and it's working awesome! thank you SOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOOO MUCH you are awesome, thank you, thank you, thank you. have an awesome day, an awesome week, and an awesome year. THANK YOU!

#10 Siggyx

Siggyx

    SuperHelper

  • Authentic Member
  • PipPipPipPipPipPip
  • 6,776 posts

Posted 09 May 2006 - 09:19 PM

Glad we could be of assistance. This topic is now closed. If you wish it reopened, please send us an email (Click for address) with a link to your thread.

Do not bother contacting us if you are not the topic starter. A valid, working link to the closed topic is required along with the user name used. If the user name does not match the one in the thread linked, the email will be deleted.
Make sure you use proper prevention to keep from having problems occur to your computer in the future.

Coyote's Installed programs for prevention:

http://forums.tomcoy...showtopic=31418

The help you receive here is free. If you wish to show your appreciation, then you may donate to help keep us online.

Visit the CoyoteStore http://TomCoyote.org/coyotestore.php

Related Topics



0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users