whits
Topic Starter
I use AVG Free, AVG Anti-Spyware, Ad-Aware SE, Spybot S&D, Windows Defender (sort of) and Spyware Doctor. I have been away and unfortunately other people use this computer without running scans. Yesterday I updated to AVG 7.5 and ran everything - it was all clean (but for tracking cookies) except that Spyware Doctor found this: HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\1987324.com
and several others very similar. Since I've got the free version, Spyware Doctor won't remove it for me, and I don't know how. If anyone can help I'd appreciate it!
Other things that have been bothering me but are not too important: Windows Defender won't update (error code 0x80072efd, I've tried most of their suggestions), and while IE 6.whatever worked ok, I updated to IE 7, it won't connect to the internet, and now it won't let me reinstall IE 6. I don't mind since I prefer Firefox anyway but there are a few sites that demand IE.
Any suggestions for all this? Here are my AVG Anti-Spyware log and my HijackThis! log. Thank you very much - this is a great forum!
———————————————————
AVG Anti-Spyware - Scan Report
———————————————————
+ Created at: 8:58:34 AM 1/31/2007
+ Scan result:
:mozilla.103:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.104:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.191:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.244:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.339:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.346:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.372:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.45:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.46:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.47:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.48:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.49:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.50:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.51:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.52:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.53:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.542:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.54:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.55:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.56:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.57:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.58:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.62:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.121:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.122:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.126:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.600:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Adengage : Cleaned.
:mozilla.601:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Adengage : Cleaned.
:mozilla.602:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Adengage : Cleaned.
:mozilla.127:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.128:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.89:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.90:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.6:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.83:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.578:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned.
:mozilla.656:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned.
:mozilla.170:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.171:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.568:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Co : Cleaned.
:mozilla.34:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.603:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.604:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.605:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.606:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.607:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.608:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.609:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.610:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.611:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.612:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.613:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.614:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.615:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.616:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.622:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.623:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.420:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.87:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.88:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.92:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.93:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.94:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.95:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.428:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.429:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.443:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.444:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.445:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.229:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.230:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.231:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.232:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.233:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.169:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.457:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.458:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.459:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.460:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.461:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.125:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.16:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.19:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.20:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.32:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.576:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.508:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.509:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.510:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.511:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.512:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.513:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.514:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.515:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.516:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.164:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned.
:mozilla.532:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned.
:mozilla.557:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.558:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.559:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.560:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
::Report end
Logfile of HijackThis v1.99.1
Scan saved at 10:48:39 AM, on 1/31/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\System32\GEARSEC.EXE
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Spyware Doctor\sdhelp.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\zHotkey.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\eMachines Bay Reader\shwiconem.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\LEXMAR~1\ACMonitor_X83.exe
C:\PROGRA~1\LEXMAR~1\AcBtnMgr_X83.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\EarthLink TotalAccess\TaskPanl.exe
C:\Program Files\BigFix\BigFix.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Hijack This\Hijackthis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.earthlink.net
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.earthlink.net/partner/more/msie…ton/search.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://start.earthlink.net/AL/Search
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://start.earthlink.net/AL/Search
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=localhost:8080
R3 - URLSearchHook: SrchHook Class - {44F9B173-041C-4825-A9B9-D914BD9DCBB3} - C:\Program Files\EarthLink TotalAccess\ElnIE.dll
R3 - URLSearchHook: (no name) - ~CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: EarthLink ScamBlocker V2 - {15F4D456-5BAA-4076-8486-EECB38CD3E57} - C:\Program Files\EarthLink TotalAccess\Toolbar\EScamBlk.dll
O2 - BHO: EarthLink PopUp Blocker V2 - {512ACF1B-64D9-4928-B382-A80556F28DB4} - C:\Program Files\EarthLink TotalAccess\Toolbar\ElnkPuB.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~1\tools\iesdsg.dll
O2 - BHO: IE_PopupBlocker Class - {656EC4B7-072B-4698-B504-2A414C1F0037} - C:\Program Files\EarthLink TotalAccess\Accelerator\prpl_IePopupBlocker.dll
O2 - BHO: Earthlink Protection BHO - {9579D574-D4D8-4335-9560-FE8641A013BD} - C:\Program Files\EarthLink TotalAccess\Toolbar\ProtctIE.dll
O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O2 - BHO: Uninstall Legacy Earthlink Toolbar - {E713904C-DF05-4C79-BBAD-02DB923253BE} - C:\Program Files\EarthLink TotalAccess\Toolbar\uninsttb.dll
O3 - Toolbar: EarthLink Toolbar - {C7768536-96F8-4001-B1A2-90EE21279187} - C:\Program Files\EarthLink TotalAccess\Toolbar\Toolbar.dll
O4 - HKLM\..\Run: [CHotkey] zHotkey.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [SunKistEM] C:\Program Files\eMachines Bay Reader\shwiconem.exe
O4 - HKLM\..\Run: [PrinTray] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [Lexmark X83 Button Monitor] C:\PROGRA~1\LEXMAR~1\ACMonitor_X83.exe
O4 - HKLM\..\Run: [Lexmark X83 Button Manager] C:\PROGRA~1\LEXMAR~1\AcBtnMgr_X83.exe
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [E6TaskPanel] "C:\Program Files\EarthLink TotalAccess\TaskPanl.exe" -winstart
O4 - Global Startup: BigFix.lnk = C:\Program Files\BigFix\BigFix.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://www.emachines.com
O16 - DPF: {215B8138-A3CF-44C5-803F-8226143CFC0A} (Trend Micro ActiveX Scan Agent 6.5) - http://housecall65.trendmicro.com/housecal…ivex/hcImpl.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: GEARSecurity - GEAR Software - C:\WINDOWS\System32\GEARSEC.EXE
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - c:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\Program Files\Spyware Doctor\sdhelp.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
and several others very similar. Since I've got the free version, Spyware Doctor won't remove it for me, and I don't know how. If anyone can help I'd appreciate it!
Other things that have been bothering me but are not too important: Windows Defender won't update (error code 0x80072efd, I've tried most of their suggestions), and while IE 6.whatever worked ok, I updated to IE 7, it won't connect to the internet, and now it won't let me reinstall IE 6. I don't mind since I prefer Firefox anyway but there are a few sites that demand IE.
Any suggestions for all this? Here are my AVG Anti-Spyware log and my HijackThis! log. Thank you very much - this is a great forum!
———————————————————
AVG Anti-Spyware - Scan Report
———————————————————
+ Created at: 8:58:34 AM 1/31/2007
+ Scan result:
:mozilla.103:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.104:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.191:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.244:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.339:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.346:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.372:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.45:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.46:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.47:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.48:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.49:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.50:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.51:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.52:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.53:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.542:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.54:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.55:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.56:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.57:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.58:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.62:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.121:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.122:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.126:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.600:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Adengage : Cleaned.
:mozilla.601:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Adengage : Cleaned.
:mozilla.602:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Adengage : Cleaned.
:mozilla.127:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.128:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.89:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.90:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.6:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.83:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.578:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned.
:mozilla.656:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned.
:mozilla.170:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.171:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.568:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Co : Cleaned.
:mozilla.34:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.603:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.604:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.605:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.606:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.607:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.608:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.609:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.610:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.611:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.612:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.613:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.614:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.615:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.616:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.622:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.623:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.420:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.87:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.88:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.92:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.93:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.94:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.95:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.428:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.429:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.443:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.444:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.445:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.229:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.230:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.231:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.232:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.233:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.169:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.457:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.458:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.459:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.460:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.461:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.125:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.16:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.19:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.20:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.32:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.576:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.508:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.509:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.510:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.511:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.512:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.513:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.514:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.515:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.516:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.164:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned.
:mozilla.532:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned.
:mozilla.557:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.558:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.559:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.560:C:\Documents and Settings\Cecilia de Medici\Application Data\Mozilla\Firefox\Profiles\ahn1kek1.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
::Report end
Logfile of HijackThis v1.99.1
Scan saved at 10:48:39 AM, on 1/31/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\System32\GEARSEC.EXE
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Spyware Doctor\sdhelp.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\zHotkey.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\eMachines Bay Reader\shwiconem.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\LEXMAR~1\ACMonitor_X83.exe
C:\PROGRA~1\LEXMAR~1\AcBtnMgr_X83.exe
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\EarthLink TotalAccess\TaskPanl.exe
C:\Program Files\BigFix\BigFix.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Hijack This\Hijackthis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.earthlink.net
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.earthlink.net/partner/more/msie…ton/search.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://start.earthlink.net/AL/Search
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://start.earthlink.net/AL/Search
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=localhost:8080
R3 - URLSearchHook: SrchHook Class - {44F9B173-041C-4825-A9B9-D914BD9DCBB3} - C:\Program Files\EarthLink TotalAccess\ElnIE.dll
R3 - URLSearchHook: (no name) - ~CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: EarthLink ScamBlocker V2 - {15F4D456-5BAA-4076-8486-EECB38CD3E57} - C:\Program Files\EarthLink TotalAccess\Toolbar\EScamBlk.dll
O2 - BHO: EarthLink PopUp Blocker V2 - {512ACF1B-64D9-4928-B382-A80556F28DB4} - C:\Program Files\EarthLink TotalAccess\Toolbar\ElnkPuB.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~1\tools\iesdsg.dll
O2 - BHO: IE_PopupBlocker Class - {656EC4B7-072B-4698-B504-2A414C1F0037} - C:\Program Files\EarthLink TotalAccess\Accelerator\prpl_IePopupBlocker.dll
O2 - BHO: Earthlink Protection BHO - {9579D574-D4D8-4335-9560-FE8641A013BD} - C:\Program Files\EarthLink TotalAccess\Toolbar\ProtctIE.dll
O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll
O2 - BHO: Uninstall Legacy Earthlink Toolbar - {E713904C-DF05-4C79-BBAD-02DB923253BE} - C:\Program Files\EarthLink TotalAccess\Toolbar\uninsttb.dll
O3 - Toolbar: EarthLink Toolbar - {C7768536-96F8-4001-B1A2-90EE21279187} - C:\Program Files\EarthLink TotalAccess\Toolbar\Toolbar.dll
O4 - HKLM\..\Run: [CHotkey] zHotkey.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [SunKistEM] C:\Program Files\eMachines Bay Reader\shwiconem.exe
O4 - HKLM\..\Run: [PrinTray] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
O4 - HKLM\..\Run: [iTunesHelper] C:\Program Files\iTunes\iTunesHelper.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [Lexmark X83 Button Monitor] C:\PROGRA~1\LEXMAR~1\ACMonitor_X83.exe
O4 - HKLM\..\Run: [Lexmark X83 Button Manager] C:\PROGRA~1\LEXMAR~1\AcBtnMgr_X83.exe
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [E6TaskPanel] "C:\Program Files\EarthLink TotalAccess\TaskPanl.exe" -winstart
O4 - Global Startup: BigFix.lnk = C:\Program Files\BigFix\BigFix.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://www.emachines.com
O16 - DPF: {215B8138-A3CF-44C5-803F-8226143CFC0A} (Trend Micro ActiveX Scan Agent 6.5) - http://housecall65.trendmicro.com/housecal…ivex/hcImpl.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: GEARSecurity - GEAR Software - C:\WINDOWS\System32\GEARSEC.EXE
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - c:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\Program Files\Spyware Doctor\sdhelp.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe