SmitFraudFix v2.206
Scan done at 19:19:33.07, Sun 07/22/2007
Run from C:\Documents and Settings\Michael Tlanda\Desktop\Smitfraud
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
The filesystem type is NTFS
Fix run in safe mode
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Before SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
»»»»»»»»»»»»»»»»»»»»»»»» Killing process
»»»»»»»»»»»»»»»»»»»»»»»» hosts
»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix
GenericRenosFix by S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Deleting infected files
C:\WINDOWS\privacy_danger\ Deleted
C:\WINDOWS\sounddrv.dll Deleted
C:\WINDOWS\soundplugin.dll Deleted
C:\WINDOWS\xvideo.dll Deleted
»»»»»»»»»»»»»»»»»»»»»»»» DNS
HKLM\SYSTEM\CCS\Services\Tcpip\..\{D4E97BDD-08CD-441F-921E-9C4CC3B5BA65}: DhcpNameServer=[removed] [removed]
HKLM\SYSTEM\CS1\Services\Tcpip\..\{D4E97BDD-08CD-441F-921E-9C4CC3B5BA65}: DhcpNameServer=[removed] [removed]
HKLM\SYSTEM\CS2\Services\Tcpip\..\{D4E97BDD-08CD-441F-921E-9C4CC3B5BA65}: DhcpNameServer=[removed] [removed]
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=[removed] [removed]
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=[removed] [removed]
HKLM\SYSTEM\CS2\Services\Tcpip\Parameters: DhcpNameServer=[removed] [removed]
»»»»»»»»»»»»»»»»»»»»»»»» Deleting Temp Files
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, following keys are not inevitably infected!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""
»»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning
Registry Cleaning done.
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler After SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
»»»»»»»»»»»»»»»»»»»»»»»» End
(Last Night's)
———————————————————
AVG Anti-Spyware - Scan Report
———————————————————
+ Created at: 3:32:33 AM 7/23/2007
+ Scan result:
HKU\S-1-5-21-3068204950-2608232105-324828602-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E8EDB60C-951E-4130-93DC-FAF1AD25F8E7} -> Adware.Generic : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\MediaTicketsInstaller.INF -> Adware.MediaTickets : Cleaned with backup (quarantined).
C:\Program Files\AWS\WeatherBug\Weather.exe -> Adware.WeatherBug : Cleaned with backup (quarantined).
[1588] C:\PROGRA~1\AWS\WEATHE~1\Weather.exe -> Adware.WeatherBug : Cleaned with backup (quarantined).
C:\WINDOWS\IFinst25.exe -> Backdoor.Ifinst : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{0768B94C-A9C5-4980-AAC7-F2FA66E33BB8}\RP1457\A0072433.exe -> Downloader.Alphabet.i : Cleaned.
:mozilla.6:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.7:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.2o7 : Cleaned
:mozilla.14:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.10:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.8:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
::Report end
(This morning's)
———————————————————
AVG Anti-Spyware - Scan Report
———————————————————
+ Created at: 3:19:26 PM 7/23/2007
+ Scan result:
C:\System Volume Information\_restore{0768B94C-A9C5-4980-AAC7-F2FA66E33BB8}\RP1460\A0073534.exe -> Adware.WeatherBug : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{0768B94C-A9C5-4980-AAC7-F2FA66E33BB8}\RP1460\A0073532.exe -> Backdoor.Ifinst : Cleaned with backup (quarantined).
:mozilla.251:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.252:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.253:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.12:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.157:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.15:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.16:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.17:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.18:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.19:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.20:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.21:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.223:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.22:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.23:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.24:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.25:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.26:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.27:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.28:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.29:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.30:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.31:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.32:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.33:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.34:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.38:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.39:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.66:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Adengage : Cleaned.
:mozilla.266:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.267:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.268:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.269:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.129:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.170:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.171:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.169:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Clickhype : Cleaned.
:mozilla.244:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned.
:mozilla.245:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned.
:mozilla.246:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned.
:mozilla.247:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned.
:mozilla.130:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.139:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.140:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.141:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.142:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.143:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.144:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.145:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.155:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
:mozilla.156:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
:mozilla.205:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Masterstats : Cleaned.
:mozilla.132:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.207:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.208:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.209:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.210:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.211:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.212:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.224:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.225:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.226:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.227:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.228:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.229:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.234:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.254:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.255:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.163:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.164:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.165:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.166:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.167:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.168:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.202:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned.
:mozilla.203:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned.
:mozilla.204:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned.
:mozilla.206:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned.
:mozilla.133:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.121:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.122:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.123:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.124:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.125:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.126:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.127:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.128:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.198:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.51:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.52:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.53:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.54:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.59:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.61:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.62:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.63:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.232:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.233:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.235:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.236:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.237:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.238:C:\Documents and Settings\Michael Tlanda\Application Data\Mozilla\Firefox\Profiles\5bc97g29.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
::Report end
Logfile of HijackThis v1.99.1
Scan saved at 3:24:01 PM, on 7/23/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16473)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Iomega\System32\AppServices.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\System32\hkcmd.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\System32\ezSP_Px.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sony\VAIO Media Music Server\SSSvr.exe
C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
C:\Program Files\Iomega\AutoDisk\ADUserMon.exe
C:\Program Files\Iomega\DriveIcons\ImgIcon.exe
C:\Program Files\Sony\Photo Server 20\appsrv\PicAppSrv.exe
C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\SV_Httpd.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Iomega\AutoDisk\ADService.exe
C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\sv_httpd.exe
C:\Program Files\Messenger\MSMSGS.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\UPnPFramework.exe
C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\UPnPFramework.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Hijackthis\HijackThis.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
O3 - Toolbar: (no name) - {2CDE1A7D-A478-4291-BF31-E1B4C16F92EB} - (no file)
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\System32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_Px.exe
O4 - HKLM\..\Run: [VAIO Recovery] C:\WINDOWS\Sonysys\VAIO Recovery\PartSeal.exe
O4 - HKLM\..\Run: [QuickFinder Scheduler] "C:\Program Files\Corel\WordPerfect Office 2002\Programs\QFSCHD100.EXE"
O4 - HKLM\..\Run: [StorageGuard] "C:\Program Files\VERITAS Software\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [ADUserMon] C:\Program Files\Iomega\AutoDisk\ADUserMon.exe
O4 - HKLM\..\Run: [Iomega Drive Icons] C:\Program Files\Iomega\DriveIcons\ImgIcon.exe
O4 - HKLM\..\Run: [Deskup] C:\Program Files\Iomega\DriveIcons\deskup.exe /IMGSTART
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\System32\spool\drivers\w32x86\3\hpztsb04.exe
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton AntiVirus\osCheck.exe"
O4 - HKLM\..\Run: [Symantec PIF AlertEng] "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /a /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\AlertEng.dll"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\MSMSGS.EXE" /background
O4 - HKCU\..\Run: [Weather] C:\PROGRA~1\AWS\WEATHE~1\Weather.exe 1
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: Registration-Studio 8.lnk = C:\Program Files\Pinnacle\Studio 8\Register\RegTool.exe
O4 - Global Startup: Billminder.lnk = C:\Program Files\Quicken\billmind.exe
O4 - Global Startup: Quicken Scheduled Updates.lnk = C:\Program Files\Quicken\bagent.exe
O4 - Global Startup: Quicken Startup.lnk = C:\Program Files\Quicken\QWDLLS.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\PROGRA~1\AWS\WEATHE~1\Weather.exe (file missing) (HKCU)
O11 - Options group: [INTERNATIONAL] International*
O14 - IERESET.INF: START_PAGE_URL=http://www.sony.com/vaiopeople
O16 - DPF: {02CF1781-EA91-4FA5-A200-646E8241987C} (VaioInfo.CMClass) -
http://esupport.sony.com/EN/mdldetect/VaioInfo.CAB
O16 - DPF: {040F4385-8DAD-4306-94BF-B8291D841FAE} (USBAPTester Class) -
http://www.nintendowifi.com/troubleshooting/usbaptest.cab
O16 - DPF: {0C568603-D79D-11D2-87A7-00C04FF158BB} (BrowseFolderPopup Class) - http://download.mcafee.com/molbin/Shared/MGBrwFld.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://bin.mcafee.com/molbin/shared/mcinsc…72/mcinsctl.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://update.microsoft.com/microsoftupdat…b?1123543449250
O16 - DPF: {75D1F3B2-2A21-11D7-97B9-0010DC2A6243} (SecureLogin.SecureControl) -
http://secure2.comned.com/signuptemplates/ActiveSecurity.cab
O16 - DPF: {9FC5238F-12C4-454F-B1B5-74599A21DE47} (Webshots Photo Uploader) - http://community.webshots.com/html/WSPhotoUploader.CAB
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} -
http://bin.mcafee.com/molbin/shared/mcgdmg…,16/mcgdmgr.cab
O16 - DPF: {D719897A-B07A-4C0C-AEA9-9B663A28DFCB} (iTunesDetector Class) - http://ax.phobos.apple.com.edgesuite.net/d…/ITDetector.cab
O16 - DPF: {FE1A240F-B247-4E06-A600-30E28F5AF3A0} - file://C:\install.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
O23 - Service: Symantec Settings Manager (ccSetMgr) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
O23 - Service: Iomega App Services - Iomega Corporation - C:\PROGRA~1\Iomega\System32\AppServices.exe
O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\isPwdSvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LiveUpdate Notice Service Ex (LiveUpdate Notice Ex) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
O23 - Service: LiveUpdate Notice Service - Unknown owner - C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PIFSvc.exe" /m "C:\Program Files\Common Files\Symantec Shared\PIF\{B8E1DD85-8582-4c61-B58F-2F227FCA9A08}\PifEng.dll (file missing)
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\PROGRA~1\COMMON~1\SONYSH~1\AVLib\Sptisrv.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe
O23 - Service: VAIO Media Music Server (Application) (VAIOMediaPlatform-MusicServer-AppServer) - Unknown owner - C:\Program Files\Sony\VAIO Media Music Server\SSSvr.exe" /Service=VAIOMediaPlatform-MusicServer-AppServer /DisplayName="VAIO Media Music Server (Application) (file missing)
O23 - Service: VAIO Media Music Server (HTTP) (VAIOMediaPlatform-MusicServer-HTTP) - Unknown owner - C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\sv_httpd.exe" /Service=VAIOMediaPlatform-MusicServer-HTTP /RegRoot="Software\Sony Corporation\VAIO Media Platform\2.0" /RegExt="Applications\MusicServer\HTTP (file missing)
O23 - Service: VAIO Media Music Server (UPnP) (VAIOMediaPlatform-MusicServer-UPnP) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\UPnPFramework.exe
O23 - Service: VAIO Media Photo Server (Application) (VAIOMediaPlatform-PhotoServer-AppServer) - Unknown owner - C:\Program Files\Sony\Photo Server 20\appsrv\PicAppSrv.exe
O23 - Service: VAIO Media Photo Server (HTTP) (VAIOMediaPlatform-PhotoServer-HTTP) - Unknown owner - C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\SV_Httpd.exe" /Service=VAIOMediaPlatform-PhotoServer-HTTP /RegRoot="Software\Sony Corporation\VAIO Media Platform\2.0" /RegExt="\Applications\PhotoServer\HTTP (file missing)
O23 - Service: VAIO Media Photo Server (UPnP) (VAIOMediaPlatform-PhotoServer-UPnP) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\VAIO Media Platform\UPnPFramework.exe
O23 - Service: Iomega Active Disk (_IOMEGA_ACTIVE_DISK_SERVICE_) - Iomega Corporation - C:\Program Files\Iomega\AutoDisk\ADService.exe