This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

Freezing Screen ...and Web pages

16 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

Help please. My computer is Dell Dimension 8300, P4 120 Gb Hrad Drive and 512 RAM. I use both Mozilla Firefox and Internet Explorer. It is now about SIX months with this problem and it appears it gets worse day by day. It used ot be fast but now if I click ANYTHING it will freeze for a moment before opening the page. When the page opens it will freeze for yet another long time before I can click ANYTHING. SOMETIMES, when typing I can type up to half a sentence without seeing the characters appearing on the screen …then they will stream on at a later time. I have McAfeee Suite and Firewall Plus, Run them frequently and windows defender (Beta2) that I run to remove viruses and spyware. I have never been shwon any virus, but I am confused and bogged down. Any assistance please mates. Yours faithfully M
Download hijackthis to its own folder C:/HJT for example. Extrat the zip file to that folder. Then close all browser windows, open hijackthis and click on scan. Once the scan has completed click on Save Log, this will produce a text file log. Highlight all of the information from in that text box then right click and copy. Come back to this post you made and click on "add reply" at the bottom right and a new window will open. Paste the hijackthis log into the new window hit add reply in that new window.

HJT download >>> http://www.softpedia.com/public/cat/10/17/10-17-69.shtml
Thanks mate. I have done it the log appears hereunder. Please help, it's now too slow to open anything so much that it does not help to sit at this computer anymore. I will await your usual help.


Logfile of HijackThis v1.99.1
Scan saved at 22:09:42, on 16/08/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\dslagent.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
c:\program files\mcafee.com\agent\mcdetect.exe
C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
c:\PROGRA~1\mcafee.com\vso\OasClnt.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\McAfee.com\VSO\mcvsshld.exe
C:\Program Files\Common Files\AOL\1133037534\ee\AOLHostManager.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\PROGRA~1\mcafee.com\vso\mcvsescn.exe
C:\PROGRA~1\mcafee.com\mps\mscifapp.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MSKAgent.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\PROGRA~1\COMMON~1\PCSuite\Services\SERVIC~1.EXE
C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
C:\Program Files\Common Files\AOL\1133037534\ee\AOLServiceHost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
C:\Program Files\SpeedTouch\Dr SpeedTouch\drst.exe
C:\Program Files\Common Files\AOL\1133037534\ee\AOLServiceHost.exe
C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe
C:\Program Files\ATI Multimedia\RemCtrl\ATIRW.exe
C:\PROGRA~1\COMMON~1\Nokia\MPAPI\MPAPI3s.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\WINDOWS\system32\rundll32.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\vssvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intuwave Ltd\Shared\mRouterRunTime\mRouterConfig.exe
C:\WINDOWS\system32\fxssvc.exe
C:\Program Files\Motorola\Motorola Desktop Suite\DesktopSuite.exe
C:\PROGRA~1\INTUWA~1\Shared\MROUTE~1\mRouterRuntime.exe
C:\PROGRA~1\symbian\shared\SYMBIA~1\SYMBIA~1.EXE
C:\PROGRA~1\symbian\shared\SYMBIA~1\SCBal.exe
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\WINDOWS\msagent\AgentSvr.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\DOCUME~1\FERRARI\LOCALS~1\Temp\Temporary Directory 3 for hijackthis.zip\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.zvakapressa.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.euro.dell.com/countries/uk/enu/gen/default.htm
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.euro.dell.com/countries/uk/enu/gen/default.htm
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Messenger\ycomp.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: McBrwHelper Class - {227B8AA8-DAF2-4892-BD1D-73F568BCB24E} - c:\PROGRA~1\mcafee.com\mps\mcbrhlpr.dll
O2 - BHO: McAfee PopupKiller - {3EC8255F-E043-4cae-8B3B-B191550C2A22} - c:\program files\mcafee.com\mps\popupkiller.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Viewpoint Toolbar BHO - {A7327C09-B521-4EDB-8509-7D2660C9EC98} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBarBHO.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Messenger\ycomp.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: Viewpoint Toolbar - {F8AD5AA5-D966-4667-9DAF-2561D68B2012} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1133037534\ee\AOLHostManager.exe
O4 - HKLM\..\Run: [DSLAGENTEXE] dslagent.exe USB
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE -onlytray
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [SpywareBot] C:\PROGRA~1\SPYWAR~1\SpywareBot.exe -boot
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [MPSExe] c:\PROGRA~1\mcafee.com\mps\mscifapp.exe /embedding
O4 - HKLM\..\Run: [MSKAGENTEXE] C:\PROGRA~1\McAfee\SPAMKI~1\MSKAgent.exe
O4 - HKLM\..\Run: [MSKDetectorExe] C:\PROGRA~1\McAfee\SPAMKI~1\MskDetct.exe /startup
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MSKAGENTEXE] C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
O4 - HKCU\..\Run: [STManager] "C:\Program Files\SpeedTouch\Dr SpeedTouch\drst.exe" -b
O4 - HKCU\..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
O4 - HKCU\..\Run: [ATI Remote Control] "C:\Program Files\ATI Multimedia\RemCtrl\ATIRW.exe"
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O4 - Global Startup: Microsoft Office OneNote 2003 Quick Launch.lnk = C:\Program Files\Microsoft Office\OFFICE11\ONENOTEM.EXE
O4 - Global Startup: Motorola Desktop Suite mRouter Config.lnk = C:\Program Files\Intuwave Ltd\Shared\mRouterRunTime\mRouterConfig.exe
O4 - Global Startup: Motorola Desktop Suite.lnk = C:\Program Files\Motorola\Motorola Desktop Suite\DesktopSuite.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Companion\Modules\messmod2\v4\yhexbmes.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Companion\Modules\messmod2\v4\yhexbmes.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {01A88BB1-1174-41EC-ACCB-963509EAE56B} (SysProWmi Class) - https://support.euro.dell.com/systemprofiler/SysPro.CAB
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedC…bin/AvSniff.cab
O16 - DPF: {31E68DE2-5548-4B23-88F0-C51E6A0F695E} (Microsoft PID Sniffer) - https://support.microsoft.com/OAS/ActiveX/odc.cab
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - http://aolcc.aolsvc.aol.co.uk/computercheckup/qdiagcc.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.mcafee.com/molbin/shared/m…01/mcinsctl.cab
O16 - DPF: {5F0C30E4-1E72-4DCC-85E5-57810F1CA97B} (McUpdatePortalFactory Class) - http://amiuptodate.mcafee.com/vsc/bin/1,0,…pdatePortal.cab
O16 - DPF: {61A7208D-F61E-4A04-BB36-E10EFF6DDD76} (SndRec Control) - http://www.thedatehub.com/member/webmaster/websndrec.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/…b?1120304017203
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat…b?1126835439734
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.mcafee.com/molbin/shared/m…,26/mcgdmgr.cab
O16 - DPF: {C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE} (Symantec RuFSI Registry Information Class) - http://security.symantec.com/sscv6/SharedC…n/bin/cabsa.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} (ActiveDataInfo Class) - https://www-secure.symantec.com/techsupp/ac…ta/SymAData.cab
O16 - DPF: {DEDA29CA-3653-456E-B4C9-63A5D85D35D6} (AXVidCap Control) - http://www.thedatehub.com/member/webmaster/AXVidCap.cab
O16 - DPF: {E77C0D62-882A-456F-AD8F-7C6C9569B8C7} (ActiveDataObj Class) - https://www-secure.symantec.com/techsupp/ac…/ActiveData.cab
O16 - DPF: {E856B973-45FD-4559-8F82-EAB539144667} (Dell PC Checkup Installer Control) - http://pccheckup.dellfix.com/rel/35/install/gtdownde.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/…645/mcfscan.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{13966355-6C91-42D8-B3CE-3B07BD3EF227}: NameServer = 83.146.21.6 212.158.248.5
O17 - HKLM\System\CS1\Services\Tcpip\..\{13966355-6C91-42D8-B3CE-3B07BD3EF227}: NameServer = 83.146.21.6 212.158.248.5
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: System - {C0986415-FEE2-43EE-84F2-908AB4C400C3} - C:\WINDOWS\system32\system32.dll (file missing)
O23 - Service: AOL Spyware Protection Service (AOLService) - Unknown owner - C:\Program Files\Common Files\AOL\AOL Spyware Protection\\aolserv.exe (file missing)
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
O23 - Service: McAfee SpamKiller Server (MskService) - McAfee Inc. - C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
O23 - Service: Intel® NMS (NMSSvc) - Intel Corporation - C:\WINDOWS\System32\NMSSvc.exe
First download ewido anti-spyware from HERE and save that file to your
desktop.
This is a 30 day trial of the program
  • Once you have downloaded ewido anti-spyware, locate the icon on the desktop
    and double-click it to launch the set up program.
  • Once the setup is complete you will need run ewido and update the definition
    files.
  • On the main screen select the icon "Update" then select the "
    Update now
    " link.
    • Next select the "Start Update" button, the update will start and a
      progress bar will show the updates being installed.
  • Once the update has completed select the "Scanner" icon at the top of
    the screen, then select the "Settings" tab.
  • Once in the Settings screen click on "Recommended actions" and then
    select "Quarantine".
  • Under "Reports"
    • Select "Automatically generate report after every scan"
    • Un-Select "Only if threats were found"
Close ewido anti-spyware, Do Not run a scan just yet, we will shortly.
  • Reboot your computer into SafeMode. You can do this by restarting
    your computer and continually tapping the F8 key until a menu appears.

    Use your up arrow key to highlight SafeMode then hit enter.
    IMPORTANT: Do not open any other windows or
    programs while ewido is scanning, it may interfere with the scanning proccess:
  • Lauch ewido-anti-spyware by double-clicking the icon on your desktop.
  • Select the "Scanner" icon at the top and then the "Scan" tab
    then click on "Complete System Scan".
  • ewido will now begin the scanning process, be patient this may take a little
    time.
    Once the scan is complete do the following:
  • If you have any infections you will prompted, then select "Apply all
    actions
    "
  • Next select the "Reports" icon at the top.
  • Select the "Save report as" button in the lower left hand of the
    screen and save it to a text file on your system (make sure to remember where
    you saved that file, this is important).
  • Close ewido and reboot your system back into Normal Mode and post the
    results of the ewido report scan and a new hijackthis log please.
Hi God Father

Here is the EWIDO saved reports. Thanks for your help. (It took 1hours 15 minutes to finish). The frst run froze after the screen had gone to a "windows xp screen saver". and I had to switch it off and start again). Thank you again.

Oooops! Cant find it but I thought I saved it on desktop. Well I will scan the HJT first…and see what I can do. Sorry about that.

Logfile of HijackThis v1.99.1
Scan saved at 05:17:22, on 17/08/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ewido anti-spyware 4.0\guard.exe
c:\program files\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
C:\WINDOWS\system32\dslagent.exe
c:\PROGRA~1\mcafee.com\vso\OasClnt.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE
C:\Program Files\Windows Defender\MSASCui.exe
c:\program files\mcafee.com\vso\mcvsshld.exe
C:\Program Files\Common Files\AOL\1133037534\ee\AOLHostManager.exe
C:\PROGRA~1\mcafee.com\vso\mcvsescn.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\PROGRA~1\mcafee.com\mps\mscifapp.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MSKAgent.exe
C:\PROGRA~1\COMMON~1\PCSuite\Services\SERVIC~1.EXE
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
C:\Program Files\Common Files\AOL\1133037534\ee\AOLServiceHost.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Program Files\Common Files\AOL\1133037534\ee\AOLServiceHost.exe
C:\WINDOWS\System32\NMSSvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\vssvc.exe
C:\Program Files\SpeedTouch\Dr SpeedTouch\drst.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\fxssvc.exe
C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe
C:\Program Files\ATI Multimedia\RemCtrl\ATIRW.exe
C:\PROGRA~1\COMMON~1\Nokia\MPAPI\MPAPI3s.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Intuwave Ltd\Shared\mRouterRunTime\mRouterConfig.exe
C:\Program Files\Motorola\Motorola Desktop Suite\DesktopSuite.exe
C:\PROGRA~1\INTUWA~1\Shared\MROUTE~1\mRouterRuntime.exe
C:\PROGRA~1\symbian\shared\SYMBIA~1\SYMBIA~1.EXE
C:\PROGRA~1\symbian\shared\SYMBIA~1\SCBal.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\DOCUME~1\FERRARI\LOCALS~1\Temp\Temporary Directory 4 for hijackthis.zip\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.zvakapressa.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.euro.dell.com/countries/uk/enu/gen/default.htm
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.euro.dell.com/countries/uk/enu/gen/default.htm
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Messenger\ycomp.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: McBrwHelper Class - {227B8AA8-DAF2-4892-BD1D-73F568BCB24E} - c:\PROGRA~1\mcafee.com\mps\mcbrhlpr.dll
O2 - BHO: McAfee PopupKiller - {3EC8255F-E043-4cae-8B3B-B191550C2A22} - c:\program files\mcafee.com\mps\popupkiller.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Viewpoint Toolbar BHO - {A7327C09-B521-4EDB-8509-7D2660C9EC98} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBarBHO.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Messenger\ycomp.dll (file missing)
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: Viewpoint Toolbar - {F8AD5AA5-D966-4667-9DAF-2561D68B2012} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1133037534\ee\AOLHostManager.exe
O4 - HKLM\..\Run: [DSLAGENTEXE] dslagent.exe USB
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE -onlytray
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [SpywareBot] C:\PROGRA~1\SPYWAR~1\SpywareBot.exe -boot
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [MPSExe] c:\PROGRA~1\mcafee.com\mps\mscifapp.exe /embedding
O4 - HKLM\..\Run: [MSKAGENTEXE] C:\PROGRA~1\McAfee\SPAMKI~1\MSKAgent.exe
O4 - HKLM\..\Run: [MSKDetectorExe] C:\PROGRA~1\McAfee\SPAMKI~1\MskDetct.exe /startup
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MSKAGENTEXE] C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
O4 - HKCU\..\Run: [STManager] "C:\Program Files\SpeedTouch\Dr SpeedTouch\drst.exe" -b
O4 - HKCU\..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
O4 - HKCU\..\Run: [ATI Remote Control] "C:\Program Files\ATI Multimedia\RemCtrl\ATIRW.exe"
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O4 - Global Startup: Microsoft Office OneNote 2003 Quick Launch.lnk = C:\Program Files\Microsoft Office\OFFICE11\ONENOTEM.EXE
O4 - Global Startup: Motorola Desktop Suite mRouter Config.lnk = C:\Program Files\Intuwave Ltd\Shared\mRouterRunTime\mRouterConfig.exe
O4 - Global Startup: Motorola Desktop Suite.lnk = C:\Program Files\Motorola\Motorola Desktop Suite\DesktopSuite.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Companion\Modules\messmod2\v4\yhexbmes.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Companion\Modules\messmod2\v4\yhexbmes.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {01A88BB1-1174-41EC-ACCB-963509EAE56B} (SysProWmi Class) - https://support.euro.dell.com/systemprofiler/SysPro.CAB
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedC…bin/AvSniff.cab
O16 - DPF: {31E68DE2-5548-4B23-88F0-C51E6A0F695E} (Microsoft PID Sniffer) - https://support.microsoft.com/OAS/ActiveX/odc.cab
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - http://aolcc.aolsvc.aol.co.uk/computercheckup/qdiagcc.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.mcafee.com/molbin/shared/m…01/mcinsctl.cab
O16 - DPF: {5F0C30E4-1E72-4DCC-85E5-57810F1CA97B} (McUpdatePortalFactory Class) - http://amiuptodate.mcafee.com/vsc/bin/1,0,…pdatePortal.cab
O16 - DPF: {61A7208D-F61E-4A04-BB36-E10EFF6DDD76} (SndRec Control) - http://www.thedatehub.com/member/webmaster/websndrec.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/…b?1120304017203
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat…b?1126835439734
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.mcafee.com/molbin/shared/m…,26/mcgdmgr.cab
O16 - DPF: {C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE} (Symantec RuFSI Registry Information Class) - http://security.symantec.com/sscv6/SharedC…n/bin/cabsa.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} (ActiveDataInfo Class) - https://www-secure.symantec.com/techsupp/ac…ta/SymAData.cab
O16 - DPF: {DEDA29CA-3653-456E-B4C9-63A5D85D35D6} (AXVidCap Control) - http://www.thedatehub.com/member/webmaster/AXVidCap.cab
O16 - DPF: {E77C0D62-882A-456F-AD8F-7C6C9569B8C7} (ActiveDataObj Class) - https://www-secure.symantec.com/techsupp/ac…/ActiveData.cab
O16 - DPF: {E856B973-45FD-4559-8F82-EAB539144667} (Dell PC Checkup Installer Control) - http://pccheckup.dellfix.com/rel/35/install/gtdownde.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/…645/mcfscan.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{13966355-6C91-42D8-B3CE-3B07BD3EF227}: NameServer = 83.146.21.6 212.158.248.5
O17 - HKLM\System\CS1\Services\Tcpip\..\{13966355-6C91-42D8-B3CE-3B07BD3EF227}: NameServer = 83.146.21.6 212.158.248.5
O17 - HKLM\System\CS2\Services\Tcpip\..\{13966355-6C91-42D8-B3CE-3B07BD3EF227}: NameServer = 83.146.21.6 212.158.248.5
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: System - {C0986415-FEE2-43EE-84F2-908AB4C400C3} - C:\WINDOWS\system32\system32.dll (file missing)
O23 - Service: AOL Spyware Protection Service (AOLService) - Unknown owner - C:\Program Files\Common Files\AOL\AOL Spyware Protection\\aolserv.exe (file missing)
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
O23 - Service: McAfee SpamKiller Server (MskService) - McAfee Inc. - C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
O23 - Service: Intel® NMS (NMSSvc) - Intel Corporation - C:\WINDOWS\System32\NMSSvc.exe
Sir Report Scan from EWIDO ——————————————————— ewido anti-spyware - Scan Report ——————————————————— + Created at: 04:43:12 17/08/2006 + Scan result: HKU\.DEFAULT\Software\New.net -> Adware.NewDotNet : Cleaned with backup (quarantined). HKU\S-1-5-18\Software\New.net -> Adware.NewDotNet : Cleaned with backup (quarantined). C:\Program Files\Yahoo!\Messenger\ycomp.dll -> Adware.Yahoo : Cleaned with backup (quarantined). C:\RECYCLER\S-1-5-21-3030180144-3398136571-916999707-1006\Dc5.exe -> Downloader.Small : Cleaned with backup (quarantined). :mozilla.101:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.140:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.142:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.143:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.144:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.512:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.528:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.65:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.66:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.67:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.68:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.69:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.70:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.71:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.72:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.73:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.74:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.75:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.76:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.77:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.78:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.79:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.80:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.81:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.82:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.83:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.84:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.85:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.86:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.87:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.88:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.89:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.90:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.91:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.92:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.93:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.94:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.95:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). C:\Documents and Settings\FERRARI\Cookies\ferrari@112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). C:\Documents and Settings\FERRARI\Cookies\ferrari@eurostar.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). C:\Documents and Settings\FERRARI\Cookies\ferrari@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). C:\Documents and Settings\FERRARI\Cookies\ferrari@sento.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). C:\Documents and Settings\FERRARI\Local Settings\Temp\Cookies\ferrari@122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). :mozilla.416:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup (quarantined). :mozilla.417:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup (quarantined). :mozilla.106:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup (quarantined). :mozilla.107:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup (quarantined). :mozilla.44:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.45:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.46:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.47:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.375:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Adviva : Cleaned with backup (quarantined). :mozilla.39:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup (quarantined). C:\Documents and Settings\FERRARI\Local Settings\Temp\Cookies\ferrari@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned with backup (quarantined). :mozilla.154:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned with backup (quarantined). :mozilla.174:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned with backup (quarantined). :mozilla.175:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned with backup (quarantined). :mozilla.176:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned with backup (quarantined). :mozilla.177:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned with backup (quarantined). :mozilla.62:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined). :mozilla.63:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined). :mozilla.64:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined). :mozilla.117:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). :mozilla.118:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). :mozilla.34:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup (quarantined). C:\Documents and Settings\FERRARI\Cookies\ferrari@doubleclick[2].txt -> TrackingCookie.Doubleclick : Cleaned with backup (quarantined). C:\Documents and Settings\FERRARI\Local Settings\Temp\Cookies\ferrari@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned with backup (quarantined). :mozilla.48:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned with backup (quarantined). :mozilla.49:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned with backup (quarantined). :mozilla.50:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned with backup (quarantined). :mozilla.51:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned with backup (quarantined). :mozilla.52:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned with backup (quarantined). :mozilla.196:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.197:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.198:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.199:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.572:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). C:\Documents and Settings\FERRARI\Cookies\[removed][1].txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). C:\Documents and Settings\LocalService\Cookies\[removed][2].txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.114:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup (quarantined). :mozilla.115:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup (quarantined). :mozilla.116:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup (quarantined). :mozilla.534:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Findwhat : Cleaned with backup (quarantined). :mozilla.155:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup (quarantined). :mozilla.156:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup (quarantined). :mozilla.180:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined). :mozilla.181:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined). :mozilla.183:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined). :mozilla.296:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined). :mozilla.53:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined). :mozilla.549:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined). :mozilla.54:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined). :mozilla.554:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined). :mozilla.563:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined). :mozilla.566:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined). :mozilla.569:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined). :mozilla.573:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined). :mozilla.583:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined). :mozilla.489:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup (quarantined). :mozilla.602:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup (quarantined). :mozilla.157:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned with backup (quarantined). C:\Documents and Settings\FERRARI\Local Settings\Temp\Cookies\ferrari@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned with backup (quarantined). :mozilla.436:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Myaffiliateprogram : Cleaned with backup (quarantined). :mozilla.148:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Overture : Cleaned with backup (quarantined). :mozilla.149:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Overture : Cleaned with backup (quarantined). :mozilla.376:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined). :mozilla.377:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined). :mozilla.378:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined). :mozilla.379:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined). :mozilla.307:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned with backup (quarantined). :mozilla.308:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned with backup (quarantined). :mozilla.348:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined). :mozilla.261:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined). :mozilla.262:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined). :mozilla.263:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined). :mozilla.264:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined). :mozilla.265:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined). :mozilla.372:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined). :mozilla.233:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned with backup (quarantined). :mozilla.234:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned with backup (quarantined). :mozilla.391:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned with backup (quarantined). :mozilla.422:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned with backup (quarantined). :mozilla.519:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned with backup (quarantined). :mozilla.520:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned with backup (quarantined). :mozilla.521:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned with backup (quarantined). :mozilla.235:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined). :mozilla.236:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined). :mozilla.237:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined). :mozilla.432:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Targetnet : Cleaned with backup (quarantined). :mozilla.292:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup (quarantined). :mozilla.293:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup (quarantined). :mozilla.294:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup (quarantined). :mozilla.295:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup (quarantined). :mozilla.451:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined). :mozilla.460:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined). :mozilla.61:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup (quarantined). :mozilla.369:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned with backup (quarantined). :mozilla.108:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned with backup (quarantined). :mozilla.109:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned with backup (quarantined). :mozilla.497:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned with backup (quarantined). C:\Documents and Settings\FERRARI\Local Settings\Temp\Cookies\[removed][2].txt -> TrackingCookie.Webtrendslive : Cleaned with backup (quarantined). :mozilla.359:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). :mozilla.360:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). :mozilla.361:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). :mozilla.362:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). :mozilla.363:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). :mozilla.364:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). :mozilla.367:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup (quarantined). :mozilla.368:C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup (quarantined). ::Report end
Download ATF Cleaner:
http://www.atribune.org/content/view/19/2/
Double-click ATF-Cleaner.exe to run the program.
Under Main choose: Select All
Click the Empty Selected button.

When done a prompt appears informing of such.

(If you use FireFox or the Opera browser
To keep saved passwords, click No at the prompt.)

NEXT

Please do an online scan with Kaspersky Online Scanner

You will be promted to install an ActiveX component from Kaspersky, Click Yes.
  • The program will launch and then start to download the latest definition files.
  • Once the scanner is installed and the definitions downloaded, click Next.
  • Now click on Scan Settings
  • In the scan settings make that the following are selected:
    • Scan using the following Anti-Virus database:
      • Extended (If available otherwise Standard)
    • Scan Options:
      • Scan Archives
      • Scan Mail Bases
  • Click OK
  • Now under select a target to scan select My Computer
  • The scan will take a while so be patient and let it run. Once the scan is complete it will display if your system has been infected.
  • Now click on the Save as Text button:
  • Save the file to your desktop.
  • Copy and paste that information in your next post as well as a bew hijackthis log please.
My Lord, here we go again

HJT Log

Logfile of HijackThis v1.99.1
Scan saved at 00:27:59, on 18/08/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
c:\program files\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
c:\PROGRA~1\mcafee.com\vso\OasClnt.exe
C:\WINDOWS\system32\dslagent.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
c:\program files\mcafee.com\vso\mcvsshld.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
c:\program files\mcafee.com\agent\mcagent.exe
C:\PROGRA~1\mcafee.com\vso\mcvsescn.exe
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
C:\Program Files\Common Files\AOL\1133037534\ee\AOLHostManager.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
C:\PROGRA~1\COMMON~1\PCSuite\Services\SERVIC~1.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Common Files\AOL\1133037534\ee\AOLServiceHost.exe
C:\PROGRA~1\mcafee.com\mps\mscifapp.exe
C:\Program Files\Common Files\AOL\1133037534\ee\AOLServiceHost.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MSKAgent.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\vssvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\fxssvc.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\Program Files\SpeedTouch\Dr SpeedTouch\drst.exe
C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe
C:\Program Files\ATI Multimedia\RemCtrl\ATIRW.exe
C:\PROGRA~1\COMMON~1\Nokia\MPAPI\MPAPI3s.exe
C:\Program Files\Intuwave Ltd\Shared\mRouterRunTime\mRouterConfig.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Motorola\Motorola Desktop Suite\DesktopSuite.exe
C:\PROGRA~1\INTUWA~1\Shared\MROUTE~1\mRouterRuntime.exe
C:\PROGRA~1\symbian\shared\SYMBIA~1\SYMBIA~1.EXE
C:\PROGRA~1\symbian\shared\SYMBIA~1\SCBal.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\DOCUME~1\FERRARI\LOCALS~1\Temp\Temporary Directory 5 for hijackthis.zip\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.zvakapressa.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.euro.dell.com/countries/uk/enu/gen/default.htm
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.euro.dell.com/countries/uk/enu/gen/default.htm
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Messenger\ycomp.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: McBrwHelper Class - {227B8AA8-DAF2-4892-BD1D-73F568BCB24E} - c:\PROGRA~1\mcafee.com\mps\mcbrhlpr.dll
O2 - BHO: McAfee PopupKiller - {3EC8255F-E043-4cae-8B3B-B191550C2A22} - c:\program files\mcafee.com\mps\popupkiller.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Viewpoint Toolbar BHO - {A7327C09-B521-4EDB-8509-7D2660C9EC98} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBarBHO.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Messenger\ycomp.dll (file missing)
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: Viewpoint Toolbar - {F8AD5AA5-D966-4667-9DAF-2561D68B2012} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1133037534\ee\AOLHostManager.exe
O4 - HKLM\..\Run: [DSLAGENTEXE] dslagent.exe USB
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE -onlytray
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [SpywareBot] C:\PROGRA~1\SPYWAR~1\SpywareBot.exe -boot
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [MPSExe] c:\PROGRA~1\mcafee.com\mps\mscifapp.exe /embedding
O4 - HKLM\..\Run: [MSKAGENTEXE] C:\PROGRA~1\McAfee\SPAMKI~1\MSKAgent.exe
O4 - HKLM\..\Run: [MSKDetectorExe] C:\PROGRA~1\McAfee\SPAMKI~1\MskDetct.exe /startup
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MSKAGENTEXE] C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
O4 - HKCU\..\Run: [STManager] "C:\Program Files\SpeedTouch\Dr SpeedTouch\drst.exe" -b
O4 - HKCU\..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
O4 - HKCU\..\Run: [ATI Remote Control] "C:\Program Files\ATI Multimedia\RemCtrl\ATIRW.exe"
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O4 - Global Startup: Microsoft Office OneNote 2003 Quick Launch.lnk = C:\Program Files\Microsoft Office\OFFICE11\ONENOTEM.EXE
O4 - Global Startup: Motorola Desktop Suite mRouter Config.lnk = C:\Program Files\Intuwave Ltd\Shared\mRouterRunTime\mRouterConfig.exe
O4 - Global Startup: Motorola Desktop Suite.lnk = C:\Program Files\Motorola\Motorola Desktop Suite\DesktopSuite.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Companion\Modules\messmod2\v4\yhexbmes.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Companion\Modules\messmod2\v4\yhexbmes.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {01A88BB1-1174-41EC-ACCB-963509EAE56B} (SysProWmi Class) - https://support.euro.dell.com/systemprofiler/SysPro.CAB
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/d…can_unicode.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedC…bin/AvSniff.cab
O16 - DPF: {31E68DE2-5548-4B23-88F0-C51E6A0F695E} (Microsoft PID Sniffer) - https://support.microsoft.com/OAS/ActiveX/odc.cab
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - http://aolcc.aolsvc.aol.co.uk/computercheckup/qdiagcc.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.mcafee.com/molbin/shared/m…01/mcinsctl.cab
O16 - DPF: {5F0C30E4-1E72-4DCC-85E5-57810F1CA97B} (McUpdatePortalFactory Class) - http://amiuptodate.mcafee.com/vsc/bin/1,0,…pdatePortal.cab
O16 - DPF: {61A7208D-F61E-4A04-BB36-E10EFF6DDD76} (SndRec Control) - http://www.thedatehub.com/member/webmaster/websndrec.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/…b?1120304017203
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat…b?1126835439734
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.mcafee.com/molbin/shared/m…,26/mcgdmgr.cab
O16 - DPF: {C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE} (Symantec RuFSI Registry Information Class) - http://security.symantec.com/sscv6/SharedC…n/bin/cabsa.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} (ActiveDataInfo Class) - https://www-secure.symantec.com/techsupp/ac…ta/SymAData.cab
O16 - DPF: {DEDA29CA-3653-456E-B4C9-63A5D85D35D6} (AXVidCap Control) - http://www.thedatehub.com/member/webmaster/AXVidCap.cab
O16 - DPF: {E77C0D62-882A-456F-AD8F-7C6C9569B8C7} (ActiveDataObj Class) - https://www-secure.symantec.com/techsupp/ac…/ActiveData.cab
O16 - DPF: {E856B973-45FD-4559-8F82-EAB539144667} (Dell PC Checkup Installer Control) - http://pccheckup.dellfix.com/rel/35/install/gtdownde.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/…645/mcfscan.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{13966355-6C91-42D8-B3CE-3B07BD3EF227}: NameServer = 83.146.21.6 212.158.248.5
O17 - HKLM\System\CS1\Services\Tcpip\..\{13966355-6C91-42D8-B3CE-3B07BD3EF227}: NameServer = 83.146.21.6 212.158.248.5
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: System - {C0986415-FEE2-43EE-84F2-908AB4C400C3} - C:\WINDOWS\system32\system32.dll (file missing)
O23 - Service: AOL Spyware Protection Service (AOLService) - Unknown owner - C:\Program Files\Common Files\AOL\AOL Spyware Protection\\aolserv.exe (file missing)
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
O23 - Service: McAfee SpamKiller Server (MskService) - McAfee Inc. - C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
O23 - Service: Intel® NMS (NMSSvc) - Intel Corporation - C:\WINDOWS\System32\NMSSvc.exe




KASPERSKY ONLINE SCANNER Saved file-text


KASPERSKY ONLINE SCANNER REPORT
Friday, August 18, 2006 12:15:17 AM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.83.0
Kaspersky Anti-Virus database last update: 17/08/2006
Kaspersky Anti-Virus database records: 215917
——————————————————————————-

Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true

Scan Target - My Computer:
A:\
C:\
D:\
E:\
F:\

Scan Statistics:
Total number of scanned objects: 74254
Number of viruses found: 2
Number of infected objects: 8 / 0
Number of suspicious objects: 0
Duration of the scan process: 02:07:28

Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\All Users\Application Data\AOL\UserProfiles\All Users\cls\common.cls Object is locked skipped
C:\Documents and Settings\All Users\Application Data\ATI MMC\RemoteWonder.txt Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee\SpamKiller\Logs\Filtering.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee.com\Agent\Logs\TaskScheduler\McTskshd002.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\McAfee.com\VSO\OASLogs\OAS.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Windows Defender\Support\WDLog-06052006-112225.log Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Windows NT\MSFax\ActivityLog\InboxLOG.txt Object is locked skipped
C:\Documents and Settings\All Users\Application Data\Microsoft\Windows NT\MSFax\ActivityLog\OutboxLOG.txt Object is locked skipped
C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\cert8.db Object is locked skipped
C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\flashgot.log Object is locked skipped
C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\formhistory.dat Object is locked skipped
C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\history.dat Object is locked skipped
C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\key3.db Object is locked skipped
C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\parent.lock Object is locked skipped
C:\Documents and Settings\FERRARI\Cookies\INDEX.DAT Object is locked skipped
C:\Documents and Settings\FERRARI\Desktop\Unused Desktop Shortcuts\warz\warz.exe/stream/data0038 Infected: not-a-virus:AdWare.Win32.NewDotNet skipped
C:\Documents and Settings\FERRARI\Desktop\Unused Desktop Shortcuts\warz\warz.exe/stream Infected: not-a-virus:AdWare.Win32.NewDotNet skipped
C:\Documents and Settings\FERRARI\Desktop\Unused Desktop Shortcuts\warz\warz.exe NSIS: infected - 2 skipped
C:\Documents and Settings\FERRARI\Desktop\Unused Desktop Shortcuts\warz.zip/warz.exe/stream/data0038 Infected: not-a-virus:AdWare.Win32.NewDotNet skipped
C:\Documents and Settings\FERRARI\Desktop\Unused Desktop Shortcuts\warz.zip/warz.exe/stream Infected: not-a-virus:AdWare.Win32.NewDotNet skipped
C:\Documents and Settings\FERRARI\Desktop\Unused Desktop Shortcuts\warz.zip/warz.exe Infected: not-a-virus:AdWare.Win32.NewDotNet skipped
C:\Documents and Settings\FERRARI\Desktop\Unused Desktop Shortcuts\warz.zip ZIP: infected - 3 skipped
C:\Documents and Settings\FERRARI\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\FERRARI\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\FERRARI\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{D9A46E9A-F0C2-41C8-B7DA-7ACA8BD7C5AC} Object is locked skipped
C:\Documents and Settings\FERRARI\Local Settings\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\Cache\_CACHE_001_ Object is locked skipped
C:\Documents and Settings\FERRARI\Local Settings\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\Cache\_CACHE_002_ Object is locked skipped
C:\Documents and Settings\FERRARI\Local Settings\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\Cache\_CACHE_003_ Object is locked skipped
C:\Documents and Settings\FERRARI\Local Settings\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\Cache\_CACHE_MAP_ Object is locked skipped
C:\Documents and Settings\FERRARI\Local Settings\History\History.IE5\INDEX.DAT Object is locked skipped
C:\Documents and Settings\FERRARI\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped
C:\Documents and Settings\FERRARI\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\FERRARI\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped
C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped
C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped
C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP409\A0043012.exe Infected: not-a-virus:Downloader.Win32.Agent.h skipped
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP414\change.log Object is locked skipped
C:\WINDOWS\AdvPack.log Object is locked skipped
C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped
C:\WINDOWS\Java\javalog.txt Object is locked skipped
C:\WINDOWS\SchedLgU.Txt Object is locked skipped
C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped
C:\WINDOWS\Sti_Trace.log Object is locked skipped
C:\WINDOWS\SYSTEM32\CatRoot2\edb.log Object is locked skipped
C:\WINDOWS\SYSTEM32\CatRoot2\tmp.edb Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\AppEvent.Evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\Internet.evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SAM Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SAM.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SecEvent.Evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SECURITY Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SECURITY.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SysEvent.Evt Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM Object is locked skipped
C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM.LOG Object is locked skipped
C:\WINDOWS\SYSTEM32\H323LOG.TXT Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\INDEX.BTR Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\INDEX.MAP Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING.VER Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING1.MAP Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING2.MAP Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\OBJECTS.DATA Object is locked skipped
C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\OBJECTS.MAP Object is locked skipped
C:\WINDOWS\WIADEBUG.LOG Object is locked skipped
C:\WINDOWS\WIASERVC.LOG Object is locked skipped
C:\WINDOWS\WindowsUpdate.log Object is locked skipped

Scan process completed.


PS :rofl:

I have noted that some files were sikipped so I am redoing the scan staright away but I thought I should still post this to you since, who knows, the same problem might be repeated and I still end up at the same point.

Thank you again for all this.

Yours faithfully

Mutoro :wavey:
Sir,
No change in the second scan….just like the first.

Friday, August 18, 2006 2:43:20 AM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky Online Scanner version: 5.0.83.0
Kaspersky Anti-Virus database last update: 17/08/2006
Kaspersky Anti-Virus database records: 215917


Scan Settings
Scan using the following antivirus database extended
Scan Archives true
Scan Mail Bases true

Scan Target My Computer
A:\
C:\
D:\
E:\
F:\

Scan Statistics
Total number of scanned objects 74351
Number of viruses found 2
Number of infected objects 8 / 0
Number of suspicious objects 0
Duration of the scan process 01:08:01

Infected Object Name Virus Name Last Action
C:\Documents and Settings\All Users\Application Data\AOL\UserProfiles\All Users\cls\common.cls Object is locked skipped

C:\Documents and Settings\All Users\Application Data\ATI MMC\RemoteWonder.txt Object is locked skipped

C:\Documents and Settings\All Users\Application Data\McAfee\SpamKiller\Logs\Filtering.log Object is locked skipped

C:\Documents and Settings\All Users\Application Data\McAfee.com\Agent\Logs\TaskScheduler\McTskshd002.log Object is locked skipped

C:\Documents and Settings\All Users\Application Data\McAfee.com\VSO\OASLogs\OAS.log Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr0.dat Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Network\Downloader\qmgr1.dat Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Windows Defender\Support\WDLog-06052006-112225.log Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Windows NT\MSFax\ActivityLog\InboxLOG.txt Object is locked skipped

C:\Documents and Settings\All Users\Application Data\Microsoft\Windows NT\MSFax\ActivityLog\OutboxLOG.txt Object is locked skipped

C:\Documents and Settings\FERRARI\Application Data\Mozilla\Firefox\Profiles\fwqrp1cy.default\formhistory.dat Object is locked skipped

C:\Documents and Settings\FERRARI\Cookies\INDEX.DAT Object is locked skipped

C:\Documents and Settings\FERRARI\Desktop\Unused Desktop Shortcuts\warz\warz.exe/stream/data0038 Infected: not-a-virus:AdWare.Win32.NewDotNet skipped

C:\Documents and Settings\FERRARI\Desktop\Unused Desktop Shortcuts\warz\warz.exe/stream Infected: not-a-virus:AdWare.Win32.NewDotNet skipped

C:\Documents and Settings\FERRARI\Desktop\Unused Desktop Shortcuts\warz\warz.exe NSIS: infected - 2 skipped

C:\Documents and Settings\FERRARI\Desktop\Unused Desktop Shortcuts\warz.zip/warz.exe/stream/data0038 Infected: not-a-virus:AdWare.Win32.NewDotNet skipped

C:\Documents and Settings\FERRARI\Desktop\Unused Desktop Shortcuts\warz.zip/warz.exe/stream Infected: not-a-virus:AdWare.Win32.NewDotNet skipped

C:\Documents and Settings\FERRARI\Desktop\Unused Desktop Shortcuts\warz.zip/warz.exe Infected: not-a-virus:AdWare.Win32.NewDotNet skipped

C:\Documents and Settings\FERRARI\Desktop\Unused Desktop Shortcuts\warz.zip ZIP: infected - 3 skipped

C:\Documents and Settings\FERRARI\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\FERRARI\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\FERRARI\Local Settings\Application Data\Microsoft\Windows Defender\FileTracker\{D9A46E9A-F0C2-41C8-B7DA-7ACA8BD7C5AC} Object is locked skipped

C:\Documents and Settings\FERRARI\Local Settings\History\History.IE5\INDEX.DAT Object is locked skipped

C:\Documents and Settings\FERRARI\Local Settings\History\History.IE5\MSHist012006081820060819\index.dat Object is locked skipped

C:\Documents and Settings\FERRARI\Local Settings\Temporary Internet Files\Content.IE5\index.dat Object is locked skipped

C:\Documents and Settings\FERRARI\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\FERRARI\ntuser.dat.LOG Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\LocalService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\LocalService\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\LocalService\ntuser.dat.LOG Object is locked skipped

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat Object is locked skipped

C:\Documents and Settings\NetworkService\Local Settings\Application Data\Microsoft\Windows\UsrClass.dat.LOG Object is locked skipped

C:\Documents and Settings\NetworkService\NTUSER.DAT Object is locked skipped

C:\Documents and Settings\NetworkService\ntuser.dat.LOG Object is locked skipped

C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP409\A0043012.exe Infected: not-a-virus:Downloader.Win32.Agent.h skipped

C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP414\change.log Object is locked skipped

C:\WINDOWS\AdvPack.log Object is locked skipped

C:\WINDOWS\Debug\PASSWD.LOG Object is locked skipped

C:\WINDOWS\Java\javalog.txt Object is locked skipped

C:\WINDOWS\SchedLgU.Txt Object is locked skipped

C:\WINDOWS\SoftwareDistribution\ReportingEvents.log Object is locked skipped

C:\WINDOWS\Sti_Trace.log Object is locked skipped

C:\WINDOWS\SYSTEM32\CatRoot2\edb.log Object is locked skipped

C:\WINDOWS\SYSTEM32\CatRoot2\tmp.edb Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\AppEvent.Evt Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT.LOG Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\Internet.evt Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\SAM Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\SAM.LOG Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\SecEvent.Evt Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\SECURITY Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\SECURITY.LOG Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\SOFTWARE.LOG Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\SysEvent.Evt Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM Object is locked skipped

C:\WINDOWS\SYSTEM32\CONFIG\SYSTEM.LOG Object is locked skipped

C:\WINDOWS\SYSTEM32\H323LOG.TXT Object is locked skipped

C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\INDEX.BTR Object is locked skipped

C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\INDEX.MAP Object is locked skipped

C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING.VER Object is locked skipped

C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING1.MAP Object is locked skipped

C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\MAPPING2.MAP Object is locked skipped

C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\OBJECTS.DATA Object is locked skipped

C:\WINDOWS\SYSTEM32\WBEM\Repository\FS\OBJECTS.MAP Object is locked skipped

C:\WINDOWS\WIADEBUG.LOG Object is locked skipped

C:\WINDOWS\WIASERVC.LOG Object is locked skipped

C:\WINDOWS\WindowsUpdate.log Object is locked skipped

Scan process completed.



AND HERE IS THE HJT LOG Again

Logfile of HijackThis v1.99.1
Scan saved at 02:48:35, on 18/08/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
c:\program files\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
c:\PROGRA~1\mcafee.com\vso\OasClnt.exe
C:\WINDOWS\system32\dslagent.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
c:\program files\mcafee.com\vso\mcvsshld.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe
c:\program files\mcafee.com\agent\mcagent.exe
C:\PROGRA~1\mcafee.com\vso\mcvsescn.exe
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
C:\Program Files\Common Files\AOL\1133037534\ee\AOLHostManager.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
C:\PROGRA~1\COMMON~1\PCSuite\Services\SERVIC~1.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Common Files\AOL\1133037534\ee\AOLServiceHost.exe
C:\PROGRA~1\mcafee.com\mps\mscifapp.exe
C:\Program Files\Common Files\AOL\1133037534\ee\AOLServiceHost.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MSKAgent.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\vssvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\fxssvc.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\Program Files\SpeedTouch\Dr SpeedTouch\drst.exe
C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe
C:\Program Files\ATI Multimedia\RemCtrl\ATIRW.exe
C:\PROGRA~1\COMMON~1\Nokia\MPAPI\MPAPI3s.exe
C:\Program Files\Intuwave Ltd\Shared\mRouterRunTime\mRouterConfig.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Motorola\Motorola Desktop Suite\DesktopSuite.exe
C:\PROGRA~1\INTUWA~1\Shared\MROUTE~1\mRouterRuntime.exe
C:\PROGRA~1\symbian\shared\SYMBIA~1\SYMBIA~1.EXE
C:\PROGRA~1\symbian\shared\SYMBIA~1\SCBal.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\DOCUME~1\FERRARI\LOCALS~1\Temp\Temporary Directory 6 for hijackthis.zip\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.zvakapressa.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.euro.dell.com/countries/uk/enu/gen/default.htm
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.euro.dell.com/countries/uk/enu/gen/default.htm
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Messenger\ycomp.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: McBrwHelper Class - {227B8AA8-DAF2-4892-BD1D-73F568BCB24E} - c:\PROGRA~1\mcafee.com\mps\mcbrhlpr.dll
O2 - BHO: McAfee PopupKiller - {3EC8255F-E043-4cae-8B3B-B191550C2A22} - c:\program files\mcafee.com\mps\popupkiller.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Viewpoint Toolbar BHO - {A7327C09-B521-4EDB-8509-7D2660C9EC98} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBarBHO.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Messenger\ycomp.dll (file missing)
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Program Files\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: Viewpoint Toolbar - {F8AD5AA5-D966-4667-9DAF-2561D68B2012} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1133037534\ee\AOLHostManager.exe
O4 - HKLM\..\Run: [DSLAGENTEXE] dslagent.exe USB
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [SpeedTouch USB Diagnostics] "C:\Program Files\Thomson\SpeedTouch USB\Dragdiag.exe" /icon
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [PCSuiteTrayApplication] C:\PROGRA~1\Nokia\NOKIAP~1\LAUNCH~1.EXE -onlytray
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [SpywareBot] C:\PROGRA~1\SPYWAR~1\SpywareBot.exe -boot
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [MPSExe] c:\PROGRA~1\mcafee.com\mps\mscifapp.exe /embedding
O4 - HKLM\..\Run: [MSKAGENTEXE] C:\PROGRA~1\McAfee\SPAMKI~1\MSKAgent.exe
O4 - HKLM\..\Run: [MSKDetectorExe] C:\PROGRA~1\McAfee\SPAMKI~1\MskDetct.exe /startup
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MSKAGENTEXE] C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
O4 - HKCU\..\Run: [STManager] "C:\Program Files\SpeedTouch\Dr SpeedTouch\drst.exe" -b
O4 - HKCU\..\Run: [PcSync] C:\Program Files\Nokia\Nokia PC Suite 6\PcSync2.exe /NoDialog
O4 - HKCU\..\Run: [ATI Remote Control] "C:\Program Files\ATI Multimedia\RemCtrl\ATIRW.exe"
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O4 - Global Startup: Microsoft Office OneNote 2003 Quick Launch.lnk = C:\Program Files\Microsoft Office\OFFICE11\ONENOTEM.EXE
O4 - Global Startup: Motorola Desktop Suite mRouter Config.lnk = C:\Program Files\Intuwave Ltd\Shared\mRouterRunTime\mRouterConfig.exe
O4 - Global Startup: Motorola Desktop Suite.lnk = C:\Program Files\Motorola\Motorola Desktop Suite\DesktopSuite.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Easy-WebPrint Add To Print List - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_AddToList.html
O8 - Extra context menu item: Easy-WebPrint High Speed Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_HSPrint.html
O8 - Extra context menu item: Easy-WebPrint Preview - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Preview.html
O8 - Extra context menu item: Easy-WebPrint Print - res://C:\Program Files\Canon\Easy-WebPrint\Resource.dll/RC_Print.html
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Companion\Modules\messmod2\v4\yhexbmes.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Companion\Modules\messmod2\v4\yhexbmes.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {01A88BB1-1174-41EC-ACCB-963509EAE56B} (SysProWmi Class) - https://support.euro.dell.com/systemprofiler/SysPro.CAB
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/eng/partner/d…can_unicode.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {2BC66F54-93A8-11D3-BEB6-00105AA9B6AE} (Symantec AntiVirus scanner) - http://security.symantec.com/sscv6/SharedC…bin/AvSniff.cab
O16 - DPF: {31E68DE2-5548-4B23-88F0-C51E6A0F695E} (Microsoft PID Sniffer) - https://support.microsoft.com/OAS/ActiveX/odc.cab
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - http://aolcc.aolsvc.aol.co.uk/computercheckup/qdiagcc.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.mcafee.com/molbin/shared/m…01/mcinsctl.cab
O16 - DPF: {5F0C30E4-1E72-4DCC-85E5-57810F1CA97B} (McUpdatePortalFactory Class) - http://amiuptodate.mcafee.com/vsc/bin/1,0,…pdatePortal.cab
O16 - DPF: {61A7208D-F61E-4A04-BB36-E10EFF6DDD76} (SndRec Control) - http://www.thedatehub.com/member/webmaster/websndrec.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/…b?1120304017203
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat…b?1126835439734
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.mcafee.com/molbin/shared/m…,26/mcgdmgr.cab
O16 - DPF: {C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE} (Symantec RuFSI Registry Information Class) - http://security.symantec.com/sscv6/SharedC…n/bin/cabsa.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} (ActiveDataInfo Class) - https://www-secure.symantec.com/techsupp/ac…ta/SymAData.cab
O16 - DPF: {DEDA29CA-3653-456E-B4C9-63A5D85D35D6} (AXVidCap Control) - http://www.thedatehub.com/member/webmaster/AXVidCap.cab
O16 - DPF: {E77C0D62-882A-456F-AD8F-7C6C9569B8C7} (ActiveDataObj Class) - https://www-secure.symantec.com/techsupp/ac…/ActiveData.cab
O16 - DPF: {E856B973-45FD-4559-8F82-EAB539144667} (Dell PC Checkup Installer Control) - http://pccheckup.dellfix.com/rel/35/install/gtdownde.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/…645/mcfscan.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{13966355-6C91-42D8-B3CE-3B07BD3EF227}: NameServer = 83.146.21.6 212.158.248.5
O17 - HKLM\System\CS1\Services\Tcpip\..\{13966355-6C91-42D8-B3CE-3B07BD3EF227}: NameServer = 83.146.21.6 212.158.248.5
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: System - {C0986415-FEE2-43EE-84F2-908AB4C400C3} - C:\WINDOWS\system32\system32.dll (file missing)
O23 - Service: AOL Spyware Protection Service (AOLService) - Unknown owner - C:\Program Files\Common Files\AOL\AOL Spyware Protection\\aolserv.exe (file missing)
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
O23 - Service: McAfee SpamKiller Server (MskService) - McAfee Inc. - C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
O23 - Service: Intel® NMS (NMSSvc) - Intel Corporation - C:\WINDOWS\System32\NMSSvc.exe

Yours faithfully

Mutoro
Dear Siggyx Thanks for that but I am not sure where to find the files. I guess I have to scan using HJT and then delete the files within the log that comes up? Just guessing, please forgive my ignorance, it's sincere. Thank you again for writing. Kindest Regards Mutoro
Sir, Cant fnd any files associated with WAREZ. I will now try 'regedit' and also generalsearch on desktop…hic! How will that help? I have no idea how to delete them even if I find them. Thanks folk. Mutoro
Go to add/remove programs and lok for New.Net or NewDot.Net and remove is present.

SpySweeper
Please download http://www.webroot.com/consumer/products/s…af1&rc=3597
(It's a 2 week trial):
  • Click the Free Trial link under to "SpySweeper" to download the program.
  • Install it.
  • Once the program is installed, it will open.
  • It will prompt you to update to the latest definitions, click Yes.
  • Once the definitions are installed, click Sweep Now on the left side.
  • Click the Start button.
  • When it's done scanning, click the Next button.
  • Make sure everything has a check next to it, then click the Next button.
  • It will remove all of the items found.
  • Click Session Log in the upper right corner, copy everything in that window.
  • Click the Summary tab and click Finish.
  • Paste the contents of the session log you copied into your next reply.
Sir Here is the Spy Sweeper log of the Trial Version. It says there was a Trojan capable of modifying my registry files ,steal pass words etc. My comp[uter of late has: *The Cursor which continually flicks after avery three-5 seconds as if it is about to 'open' something…even on a 'clear ' desktop screen with nothing at all active. *When I want to execute some function such as installation ( even on this SPY SWEEPER) the computer rejects MOST installations and says "wE HAVE DETECTED THAT YOU ARE RUNNING Windows ME or 98 …this requires a later version of windows"….YET I HAVE WIN XP, Home Edition. Spysweeper said that but I continued trying until it worked after 5-8 FAULSE reports like this. MAYBE THIS MAY NOT be a question for you GOD FATHER, But, if I have McAfee latest bundle of software (all in one) why does this happen? Why and how did the Trojan get in? I run a FULL scan yesterday, why did it pick it? SO, AT THE END OF THE DAY WHAT IS THE POINT WITH THESE 'ACCLAIMED VIRUS DETECTORS/REMOVERS??? Thank you again for writing. Your log appears hereunder. 13:20: Removal process completed. Elapsed time 00:00:56 13:20: Quarantining All Traces: 2o7.net cookie 13:20: Quarantining All Traces: webtrendslive cookie 13:20: Quarantining All Traces: nextag cookie 13:20: Quarantining All Traces: webtrends cookie 13:20: Quarantining All Traces: excite cookie 13:20: Quarantining All Traces: atlas dmt cookie 13:20: Quarantining All Traces: tacoda cookie 13:20: Quarantining All Traces: advertising cookie 13:20: Quarantining All Traces: xpehbam dialer 13:20: Quarantining All Traces: secure.html 13:20: Quarantining All Traces: trojan-backdoor-securemulti 13:19: Removal process initiated 13:18: Traces Found: 13 13:18: Full Sweep has completed. Elapsed time 00:26:08 13:18: File Sweep Complete, Elapsed Time: 00:18:54 13:18: Warning: Failed to access drive E: 13:17: C:\WINDOWS\seksdialer.exe (ID = 90847) 13:17: Found Adware: xpehbam dialer 13:16: Warning: Failed to open file "c:\windows\temp\sqlite_kfau6p40fw30roz". The operation completed successfully 13:16: Warning: Failed to open file "c:\windows\temp\sqlite_r8sdtq1c4p9cgfi". The operation completed successfully 13:16: Warning: Failed to open file "c:\windows\temp\sqlite_chajkec9iq2ja8z". The operation completed successfully 13:16: Warning: Failed to open file "c:\windows\temp\sqlite_afn9rimhb7wiwg4". The operation completed successfully 13:16: Warning: Failed to open file "c:\windows\temp\sqlite_o0mwm8rmxifrqbl". The operation completed successfully 13:16: Warning: Failed to open file "c:\windows\temp\sqlite_gy7g5i5pleu9roe". The operation completed successfully 13:16: Warning: Failed to open file "c:\windows\temp\sqlite_b4dwabn6ythab50". The operation completed successfully 13:16: Warning: Failed to open file "c:\windows\temp\sqlite_aflzqj2sing9vwt". The operation completed successfully 13:16: Warning: Failed to open file "c:\windows\temp\sqlite_931aydtonxmelht". The operation completed successfully 13:16: Warning: Failed to open file "c:\windows\temp\sqlite_gkviexeq6jn1jjf". The operation completed successfully 13:16: Warning: Failed to open file "c:\documents and settings\localservice\cookies\system@mcafee[1].txt". The operation completed successfully 12:59: Starting File Sweep 12:59: Warning: Failed to access drive A: 12:59: Cookie Sweep Complete, Elapsed Time: 00:00:01 12:59: c:\documents and settings\localservice\cookies\ferrari@excite[2].txt (ID = 2631) 12:59: c:\documents and settings\ferrari\cookies\ferrari@tacoda[1].txt (ID = 6444) 12:59: c:\documents and settings\ferrari\cookies\ferrari@sento.122.2o7[1].txt (ID = 1958) 12:59: Found Spy Cookie: 2o7.net cookie 12:59: c:\documents and settings\ferrari\cookies\ferrari@S005-01-9-28-233860-106434[2].txt (ID = 3679) 12:59: Found Spy Cookie: webtrendslive cookie 12:59: c:\documents and settings\ferrari\cookies\ferrari@nextag[2].txt (ID = 5014) 12:59: Found Spy Cookie: nextag cookie 12:59: c:\documents and settings\ferrari\cookies\[removed][1].txt (ID = 3669) 12:59: Found Spy Cookie: webtrends cookie 12:59: c:\documents and settings\ferrari\cookies\ferrari@excite[1].txt (ID = 2631) 12:59: Found Spy Cookie: excite cookie 12:59: c:\documents and settings\ferrari\cookies\ferrari@atdmt[2].txt (ID = 2253) 12:59: Found Spy Cookie: atlas dmt cookie 12:59: c:\documents and settings\ferrari\cookies\[removed][1].txt (ID = 6445) 12:59: Found Spy Cookie: tacoda cookie 12:59: c:\documents and settings\ferrari\cookies\ferrari@advertising[1].txt (ID = 2175) 12:59: Found Spy Cookie: advertising cookie 12:59: Starting Cookie Sweep 12:59: Registry Sweep Complete, Elapsed Time:00:01:34 12:58: HKLM\software\microsoft\windows\currentversion\shellserviceobjectdelayload\ || system (ID = 766569) 12:58: Found Trojan Horse: trojan-backdoor-securemulti 12:58: HKLM\software\microsoft\windows\currentversion\shellserviceobjectdelayload\ || system (ID = 141364) 12:58: Found Adware: secure.html 12:57: Starting Registry Sweep 12:57: Memory Sweep Complete, Elapsed Time: 00:05:27 12:52: Starting Memory Sweep 12:52: Warning: TVolume.Read: read past end of volume size: 0 reading cluster: 0 12:52: Sweep initiated using definitions version 744 12:52: Spy Sweeper 5.0.5.1286 started 12:52: | Start of Session, 21 August 2006 | ******** 12:52: | End of Session, 21 August 2006 | 12:50: Your definitions are up to date. 12:49: Your spyware definitions have been updated. Operation: File Access Target: Source: C:\PROGRA~1\MCAFEE\VIRUSS~1\MCSHIELD.EXE 12:49: Tamper Detection Keylogger Shield: On BHO Shield: On IE Security Shield: On Alternate Data Stream (ADS) Execution Shield: On Startup Shield: On Common Ad Sites Shield: Off Hosts File Shield: On Spy Communication Shield: On ActiveX Shield: On Windows Messenger Service Shield: On IE Favorites Shield: On Spy Installation Shield: On Memory Shield: On IE Hijack Shield: On IE Tracking Cookies Shield: Off 12:48: Shield States 12:47: Spyware Definitions: 691 12:43: Spy Sweeper 5.0.5.1286 started 12:43: Spy Sweeper 5.0.5.1286 started 12:43: | Start of Session, 21 August 2006 | ********
Hi Siggyx I am here again. The problems seem to be increasing geometrically Sir. I installed the sweeper but it later reported that 'some sghield are missing…please reinstall. I tried a 30day free trial and it asked me to put SERVER NAME…..I have no idea what that is and where to get it…that installation failed again. My ciomputer screen (desktop) has now turned black…2/3 of it and have no clue what is happening. Frequently I see messages that some programs/files cannot be located. To my horror, just now it said it could not locate MS WORD. If I go to Start…programs…I get a STRANGE ms LOOK which I dont recognise. I have ms word 2003. I think I am now doomed forever. Thanks for your usual help and tireless writing. Yours faithfully Mutoro

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI