Jump to content

wkUFind.exe - Unable to locate component...what does that mean...???


Recommended Posts

Geez, I wish I knew what I was doing. All I know is that my kids have used this pc a lot, it's chugging very slowly, and my wife needs to use it. She is getting the "wkUFind.exe unable to locate component" error message and I don't know what it means. I've spent some time this morning researching this and have stumbled across the worlds of malware and HJT.

I'm not sure what to do to clean things up. So here I am, and I hope you can help. Below is my HJT log. What do I need to do next?

Thx...

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 11:16:22 AM, on 11/4/2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16544)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\LEXBCES.EXE

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\system32\LEXPPS.EXE

C:\WINDOWS\system32\cisvc.exe

C:\WINDOWS\System32\nvsvc32.exe

C:\PROGRA~1\TRENDM~1\INTERN~4\PcCtlCom.exe

C:\WINDOWS\System32\svchost.exe

C:\PROGRA~1\TRENDM~1\INTERN~4\Tmntsrv.exe

C:\PROGRA~1\TRENDM~1\INTERN~4\TmPfw.exe

C:\WINDOWS\System32\MsPMSPSv.exe

C:\PROGRA~1\TRENDM~1\INTERN~4\PcScnSrv.exe

C:\WINDOWS\system32\cidaemon.exe

C:\PROGRA~1\TRENDM~1\INTERN~4\tmproxy.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\Explorer.EXE

C:\Program Files\Trend Micro\Internet Security 2007\pccguide.exe

C:\WINDOWS\System32\LXSUPMON.EXE

C:\WINDOWS\System32\DSentry.exe

C:\Program Files\DIGStream\digstream.exe

C:\Program Files\DELL\Dell Laser MFP 1815\NetworkScan\DNSCST.exe

C:\Program Files\QuickTime\qttask.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Internet Explorer\IEXPLORE.EXE

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dellnet.com/

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://mail.yahoo.com/?.intl=us

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr8/*http://www.yahoo.com' rel="external nofollow">http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com' rel="external nofollow">http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://rd.yahoo.com/mail_us/mailto/ymsgr/D...?.redir=ymmapi9

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: (no name) - {53B5F2B1-94DD-43E5-8187-EB4E31F00701} - C:\WINDOWS\system32\l3acdb2.dll

O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll

O2 - BHO: BndShell3 BHO Class - {8ABA9A9C-8791-4d61-8D5B-BCC9448EA573} - C:\Program Files\ISM\BndDrive7.dll

O4 - HKLM\..\Run: [zcdmpiv] C:\WINDOWS\zcdmpiv.exe

O4 - HKLM\..\Run: [updReg] C:\WINDOWS\UpdReg.EXE

O4 - HKLM\..\Run: [userFaultCheck] %systemroot%\system32\dumprep 0 -u

O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security 2007\pccguide.exe"

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe

O4 - HKLM\..\Run: [LXSUPMON] C:\WINDOWS\System32\LXSUPMON.EXE RUN

O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe

O4 - HKLM\..\Run: [DIGStream] C:\Program Files\DIGStream\digstream.exe

O4 - HKLM\..\Run: [DellNSCST_GRNCH] "C:\Program Files\DELL\Dell Laser MFP 1815\NetworkScan\DNSCST.exe" /HIDEUI

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O4 - HKUS\S-1-5-21-2837655137-2897814780-3817769392-1009\..\Run: [bMUpdate] C:\WINDOWS\System32\BMUpdate.exe (User 'Laura')

O4 - HKUS\S-1-5-21-2837655137-2897814780-3817769392-1009\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe (User 'Laura')

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MIFF2D~1\OFFICE11\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll

O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MIFF2D~1\OFFICE11\REFIEBAR.DLL

O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll

O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyside.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O12 - Plugin for .bcf: C:\Program Files\Internet Explorer\Plugins\NPBelv32.dll

O16 - DPF: Yahoo! Euchre - http://download.games.yahoo.com/games/clients/y/et1_x.cab

O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204

O16 - DPF: {1EF9F042-C2EB-4293-8213-474CAEEF531D} (TmHcmsX Control) - http://www.trendsecure.com/framework/contr...vex/TmHcmsX.CAB

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll

O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://bin.mcafee.com/molbin/shared/mcinsc...72/mcinsctl.cab

O16 - DPF: {5CB1506E-1DEA-4E63-89A7-E40E52AEA1FD} (OnagerCtrl Class) - http://usfulfillment.puretracks.com/onager.cab

O16 - DPF: {6B4788E2-BAE8-11D2-A1B4-00400512739B} - http://216.249.24.142/code/PWActiveXImgCtl.CAB

O16 - DPF: {A17E30C4-A9BA-11D4-8673-60DB54C10000} (YahooYMailTo Class) - http://us.dl1.yimg.com/download.yahoo.com/.../ymmapi_416.dll

O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} - http://bin.mcafee.com/molbin/shared/mcgdmg...,19/mcgdmgr.cab

O16 - DPF: {CC7D9C40-1DF5-4C7C-95F7-A0E34982CBA2} - http://downloads.taxslayer.com/olf2002/net...011/install.cab

O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe

O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE

O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe

O23 - Service: Intel® NMS (NMSSvc) - Intel Corporation - C:\WINDOWS\System32\NMSSvc.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

O23 - Service: PACSPTISVR - Unknown owner - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe

O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~4\PcCtlCom.exe

O23 - Service: Trend Micro Protection Against Spyware (PcScnSrv) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~4\PcScnSrv.exe

O23 - Service: SonicStage Back-End Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SsBeSvc.exe

O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe

O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe

O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~4\Tmntsrv.exe

O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~4\TmPfw.exe

O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~4\tmproxy.exe

--

End of file - 8963 bytes

Link to post
Share on other sites

Hi there, and welcome to Malwarebytes and unfortunately the world of malware.

If you haven't already, please get these programs, update and run a complete scan removing all items found.

Spybot Search & Destroy Be sure to use the immunize feature, but do not enable TeaTimer at this time.

AVG AntiSpyware Be sure to "take action"

Then go here and run a scan PandaActive Scan There is a full tutorial on how to to this at the top of this forum.

Post the logs from the Panda and AVG scans please, along with a log from this program HiJack This!

You will post three logs. 1. AVG scan. 2. Panda Active Scan. 3. HiJack This scan. You will finish the AVG first so go ahead and post that log, then move on to Panda and so forth.

I will analyze the logs and give you further instructions. Be patient and persistent. These things can take time and many procedures.

Link to post
Share on other sites

Here is my AVG scan report (Panda and HJT to follow later):

---------------------------------------------------------

AVG Anti-Spyware - Scan Report

---------------------------------------------------------

+ Created at: 7:19:50 PM 11/4/2007

+ Scan result:

C:\WINDOWS\Downloaded Program Files\RCX32.tmp -> Adware.180Solutions : Cleaned.

C:\Program Files\AWS\WeatherBug\MiniBugTransporter.dll -> Adware.Aws : Cleaned.

HKLM\SOFTWARE\Clickspring -> Adware.PurityScan : Cleaned.

HKU\S-1-5-21-2837655137-2897814780-3817769392-1007\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\\{A8FB8EB3-183B-4598-924D-86F0E5E37085} -> Adware.WhyPPC : Cleaned.

C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP18\A0004575.exe -> Not-A-Virus.Downloader.Win32.Agent.q : Cleaned.

C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP7\A0003357.exe -> Not-A-Virus.Downloader.Win32.Agent.q : Cleaned.

C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP82\A0007299.exe -> Not-A-Virus.Downloader.Win32.DigStream.a : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@247realmedia[2].txt -> TrackingCookie.247realmedia : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@247realmedia[1].txt -> TrackingCookie.247realmedia : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@2o7[2].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@microsofteup.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@northwestairlines.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@partygaming.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@sonycorporate.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Guest\Local Settings\Temp\Cookies\guest@2o7[2].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@2o7[2].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@advertisingcom.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@appellationamerica.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@cbs.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@cnn.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@entrepreneur.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@ford.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@hearstmagazines.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@homestore.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@interland.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@journalregistercompany.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@marketlive.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@marthastewart.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@meijer.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@microsofteup.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@northwestairlines.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@partygaming.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@shopping.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@sonycorporate.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@usatoday1.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Kay\Local Settings\Temp\Cookies\kay@2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@7search[2].txt -> TrackingCookie.7search : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@www.abcsearch[1].txt -> TrackingCookie.Abcsearch : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@stats.adbrite[1].txt -> TrackingCookie.Adbrite : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@4.adbrite[2].txt -> TrackingCookie.Adbrite : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@adbrite[2].txt -> TrackingCookie.Adbrite : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@ads.adbrite[2].txt -> TrackingCookie.Adbrite : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@stats.adbrite[1].txt -> TrackingCookie.Adbrite : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@ads.addynamix[2].txt -> TrackingCookie.Addynamix : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@ads.addynamix[2].txt -> TrackingCookie.Addynamix : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@rotator.adjuggler[1].txt -> TrackingCookie.Adjuggler : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@admarketplace[1].txt -> TrackingCookie.Admarketplace : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@bridge.admarketplace[1].txt -> TrackingCookie.Admarketplace : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@roi.admarketplace[2].txt -> TrackingCookie.Admarketplace : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@www.adobe[2].txt -> TrackingCookie.Adobe : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@www.adobe[2].txt -> TrackingCookie.Adobe : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@adrevolver[1].txt -> TrackingCookie.Adrevolver : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@z1.adserver[1].txt -> TrackingCookie.Adserver : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@adtech[2].txt -> TrackingCookie.Adtech : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@advertising[1].txt -> TrackingCookie.Advertising : Cleaned.

C:\Documents and Settings\Guest\Local Settings\Temp\Cookies\guest@advertising[1].txt -> TrackingCookie.Advertising : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@advertising[1].txt -> TrackingCookie.Advertising : Cleaned.

C:\Documents and Settings\Kay\Local Settings\Temp\Cookies\kay@advertising[1].txt -> TrackingCookie.Advertising : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.

C:\Documents and Settings\Guest\Local Settings\Temp\Cookies\guest@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.

C:\Documents and Settings\Kay\Local Settings\Temp\Cookies\kay@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@bfast[1].txt -> TrackingCookie.Bfast : Cleaned.

C:\Documents and Settings\Kay\Local Settings\Temp\Cookies\kay@bfast[1].txt -> TrackingCookie.Bfast : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@bluestreak[1].txt -> TrackingCookie.Bluestreak : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@citi.bridgetrack[1].txt -> TrackingCookie.Bridgetrack : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@citi.bridgetrack[1].txt -> TrackingCookie.Bridgetrack : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@www.burstbeacon[1].txt -> TrackingCookie.Burstbeacon : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@www.burstbeacon[2].txt -> TrackingCookie.Burstbeacon : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@burstnet[1].txt -> TrackingCookie.Burstnet : Cleaned.

C:\Documents and Settings\Kay\Local Settings\Temp\Cookies\kay@www.burstnet[2].txt -> TrackingCookie.Burstnet : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@casalemedia[2].txt -> TrackingCookie.Casalemedia : Cleaned.

C:\Documents and Settings\Kay\Local Settings\Temp\Cookies\kay@casalemedia[2].txt -> TrackingCookie.Casalemedia : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@centrport[2].txt -> TrackingCookie.Centrport : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@centrport[2].txt -> TrackingCookie.Centrport : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@data.coremetrics[1].txt -> TrackingCookie.Coremetrics : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@twci.coremetrics[1].txt -> TrackingCookie.Coremetrics : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@www.michiganlottery.com.19780.fb.dbbsrv[2].txt -> TrackingCookie.Dbbsrv : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@dealtime[1].txt -> TrackingCookie.Dealtime : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@stat.dealtime[1].txt -> TrackingCookie.Dealtime : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.

C:\Documents and Settings\Guest\Local Settings\Temp\Cookies\guest@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.

C:\Documents and Settings\Kay\Local Settings\Temp\Cookies\kay@doubleclick[2].txt -> TrackingCookie.Doubleclick : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@enhance[2].txt -> TrackingCookie.Enhance : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@e-2dj6wfkiqhd5glp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@e-2dj6wfkosidpkeq.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@e-2dj6wfligmcjcdp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@e-2dj6wfloeld5mfp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@e-2dj6wgkyqjczabo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@e-2dj6wjkosnczcep.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@e-2dj6wjkywgczgao.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@e-2dj6wjl4gncjcbp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@e-2dj6wjlyspc5ifq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@e-2dj6wjny-1pc5if.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@e-2dj6wjnyalcziap.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@y-1shz2prbmdj6wvny-1sez2pra2dj6wjk4ehczogqa6dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@y-1shz2prbmdj6wvny-1sez2pra2dj6wjl4skdjwbpgudj6x9ny-1seq-2-2.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@a-1shz2prbmdj6wvny-1sez2pra2dj6wjl4onazmaog-1dj6x9ny-1seq-2-2.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wfkiglc5wfo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wfkiqkczcgo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wfkiwmcjmlq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wfkoqnczeeo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wfl4upd5ifq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wfliwgajkhp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wfloaicjmgo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wfmyagajeep.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wgk4ugc5ofp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wgkiwldpwep.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wgkoqkczgeo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wgkosicpwhp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wgl4ojcpikp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjk4khdzghq.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjk4slc5afp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjkoaocjskp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjkocndzcbo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjkoendjglo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjkoghc5klq.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjkowjajcbo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjkowmczsep.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjkyegdpgap.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjkyghdzsfo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjl4gkazeaq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjl4omc5shp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjl4qjc5sbp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjl4skc5mkq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjliaiajedo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjliehdzico.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjlioidpcko.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjloupcjgbo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjlyajcpoho.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjmicmczigo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjmieldzgfq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjmikkdzsgo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjmykidpoep.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjmyuicjogp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjny-1ndpwa.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjnycldpieo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjnyekdpcho.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjnyopcpchp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjnyqhazalp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjnyqpcpmko.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjnysgcjcdp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@e-2dj6wjnyuodzckp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@y-1shz2prbmdj6wvny-1sez2pra2dj6wfkikoazagogsdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@y-1shz2prbmdj6wvny-1sez2pra2dj6wfligjazkloqsdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@y-1shz2prbmdj6wvny-1sez2pra2dj6wjk4qkdzwcoa6dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@y-1shz2prbmdj6wvny-1sez2pra2dj6wjk4skcpmcowudj6x9ny-1seq-2-2.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkycjazgeoqidj6x9ny-1seq-2-2.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkyojczidpwmdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@y-1shz2prbmdj6wvny-1sez2pra2dj6wjl4gmd5mhpaudj6x9ny-1seq-2-2.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@y-1shz2prbmdj6wvny-1sez2pra2dj6wjliqhd5ebpgwdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@y-1shz2prbmdj6wvny-1sez2pra2dj6wjlyolcpkcqq2dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@y-1shz2prbmdj6wvny-1sez2pra2dj6wjlyqnd5wfoawdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnyekdpchoasdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnygkd5acoqmdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnyogazidoqwdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnyohcpieogqdj6x9ny-1seq-2-2.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnyqkcjiaqasdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnyuic5wkpwydj6x9ny-1seq-2-2.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@estat[1].txt -> TrackingCookie.Estat : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@adopt.euroclick[1].txt -> TrackingCookie.Euroclick : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@as-us.falkag[1].txt -> TrackingCookie.Falkag : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@sel.as-us.falkag[1].txt -> TrackingCookie.Falkag : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@fastclick[1].txt -> TrackingCookie.Fastclick : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@media.fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned.

C:\Documents and Settings\Kay\Local Settings\Temp\Cookies\kay@fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@findwhat[2].txt -> TrackingCookie.Findwhat : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@fortunecity[2].txt -> TrackingCookie.Fortunecity : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@ehg-cisco.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@ehg-dig.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@ehg-knightridder.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@ehg-theviptour.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@ehg-tigerdirect2.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.

C:\Documents and Settings\Kay\Local Settings\Temp\Cookies\kay@ehg-kodak.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@hotlog[1].txt -> TrackingCookie.Hotlog : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@hypertracker[1].txt -> TrackingCookie.Hypertracker : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@hypertracker[1].txt -> TrackingCookie.Hypertracker : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@info[1].txt -> TrackingCookie.Info : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@web.info[1].txt -> TrackingCookie.Info : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@searchportal.information[1].txt -> TrackingCookie.Information : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@searchportal.information[1].txt -> TrackingCookie.Information : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@intelli-direct[1].txt -> TrackingCookie.Intelli-direct : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@internetfuel[1].txt -> TrackingCookie.Internetfuel : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@ivwbox[1].txt -> TrackingCookie.Ivwbox : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@ivwbox[2].txt -> TrackingCookie.Ivwbox : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@kmpads[1].txt -> TrackingCookie.Kmpads : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@sales.liveperson[1].txt -> TrackingCookie.Liveperson : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@server.iad.liveperson[2].txt -> TrackingCookie.Liveperson : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@sales.liveperson[2].txt -> TrackingCookie.Liveperson : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@server.iad.liveperson[2].txt -> TrackingCookie.Liveperson : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@mediaplex[2].txt -> TrackingCookie.Mediaplex : Cleaned.

C:\Documents and Settings\Kay\Local Settings\Temp\Cookies\kay@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@search.msn[1].txt -> TrackingCookie.Msn : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@auto.search.msn[2].txt -> TrackingCookie.Msn : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@ie.search.msn[1].txt -> TrackingCookie.Msn : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@search.msn[1].txt -> TrackingCookie.Msn : Cleaned.

C:\Documents and Settings\Kay\Local Settings\Temp\Cookies\kay@auto.search.msn[2].txt -> TrackingCookie.Msn : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@www.myaffiliateprogram[1].txt -> TrackingCookie.Myaffiliateprogram : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@ssl-hints.netflame[1].txt -> TrackingCookie.Netflame : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@stat.onestat[2].txt -> TrackingCookie.Onestat : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@stat.onestat[2].txt -> TrackingCookie.Onestat : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@data1.perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@data2.perf.overture[2].txt -> TrackingCookie.Overture : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@data3.perf.overture[2].txt -> TrackingCookie.Overture : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@data4.perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@overture[2].txt -> TrackingCookie.Overture : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@data1.perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@data2.perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@data3.perf.overture[2].txt -> TrackingCookie.Overture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@data4.perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@overture[2].txt -> TrackingCookie.Overture : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.

C:\Documents and Settings\Kay\Local Settings\Temp\Cookies\kay@overture[2].txt -> TrackingCookie.Overture : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@www222.paypopup[1].txt -> TrackingCookie.Paypopup : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@ads.pointroll[2].txt -> TrackingCookie.Pointroll : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@ads.pointroll[1].txt -> TrackingCookie.Pointroll : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@pro-market[2].txt -> TrackingCookie.Pro-market : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@pro-market[1].txt -> TrackingCookie.Pro-market : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@qksrv[1].txt -> TrackingCookie.Qksrv : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@qksrv[2].txt -> TrackingCookie.Qksrv : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@questionmarket[1].txt -> TrackingCookie.Questionmarket : Cleaned.

C:\Documents and Settings\Guest\Local Settings\Temp\Cookies\guest@questionmarket[1].txt -> TrackingCookie.Questionmarket : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@questionmarket[1].txt -> TrackingCookie.Questionmarket : Cleaned.

C:\Documents and Settings\Kay\Local Settings\Temp\Cookies\kay@questionmarket[2].txt -> TrackingCookie.Questionmarket : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@guide.real[1].txt -> TrackingCookie.Real : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@real[2].txt -> TrackingCookie.Real : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@realguide.real[1].txt -> TrackingCookie.Real : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@ads.realcastmedia[1].txt -> TrackingCookie.Realcastmedia : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@realmedia[2].txt -> TrackingCookie.Realmedia : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@realmedia[1].txt -> TrackingCookie.Realmedia : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@revenue[1].txt -> TrackingCookie.Revenue : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@revenue[2].txt -> TrackingCookie.Revenue : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@revsci[2].txt -> TrackingCookie.Revsci : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@revsci[1].txt -> TrackingCookie.Revsci : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@edge.ru4[1].txt -> TrackingCookie.Ru4 : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@edge.ru4[1].txt -> TrackingCookie.Ru4 : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@bs.serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@serving-sys[1].txt -> TrackingCookie.Serving-sys : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@bs.serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@h.starware[1].txt -> TrackingCookie.Starware : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@try.starware[2].txt -> TrackingCookie.Starware : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@statcounter[1].txt -> TrackingCookie.Statcounter : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@tacoda[2].txt -> TrackingCookie.Tacoda : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@anad.tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@anat.tacoda[2].txt -> TrackingCookie.Tacoda : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@tacoda[2].txt -> TrackingCookie.Tacoda : Cleaned.

C:\Documents and Settings\Kay\Local Settings\Temp\Cookies\kay@anad.tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned.

C:\Documents and Settings\Kay\Local Settings\Temp\Cookies\kay@tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@targetnet[2].txt -> TrackingCookie.Targetnet : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@login.tracking101[1].txt -> TrackingCookie.Tracking101 : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@trafficmp[2].txt -> TrackingCookie.Trafficmp : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@trafficmp[1].txt -> TrackingCookie.Trafficmp : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Cleaned.

C:\Documents and Settings\Kay\Local Settings\Temp\Cookies\kay@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@reduxads.valuead[2].txt -> TrackingCookie.Valuead : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@valuead[2].txt -> TrackingCookie.Valuead : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@reduxads.valuead[1].txt -> TrackingCookie.Valuead : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@valuead[2].txt -> TrackingCookie.Valuead : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@vdn.valuead[2].txt -> TrackingCookie.Valuead : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@valueclick[2].txt -> TrackingCookie.Valueclick : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@trls.valueclick[1].txt -> TrackingCookie.Valueclick : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@valueclick[3].txt -> TrackingCookie.Valueclick : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@web-stat[2].txt -> TrackingCookie.Web-stat : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@webstat[1].txt -> TrackingCookie.Web-stat : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@m.webtrends[1].txt -> TrackingCookie.Webtrends : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@statse.webtrendslive[2].txt -> TrackingCookie.Webtrendslive : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@yadro[2].txt -> TrackingCookie.Yadro : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@yadro[2].txt -> TrackingCookie.Yadro : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned.

C:\Documents and Settings\Guest\Local Settings\Temp\Cookies\guest@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned.

C:\Documents and Settings\Guest\Local Settings\Temp\Cookies\guest@yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned.

C:\Documents and Settings\Kay\Cookies\kay@yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned.

C:\Documents and Settings\Kay\Local Settings\Temp\Cookies\kay@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@c5.zedo[1].txt -> TrackingCookie.Zedo : Cleaned.

C:\Documents and Settings\Guest\Cookies\guest@zedo[2].txt -> TrackingCookie.Zedo : Cleaned.

C:\Documents and Settings\Kay\Local Settings\Temp\Cookies\kay@zedo[1].txt -> TrackingCookie.Zedo : Cleaned.

C:\WINDOWS\SYSTEM32\wintsvtr32.exe -> Trojan.Small : Cleaned.

::Report end

Thx...

Link to post
Share on other sites

Here is my Panda Active Scan report (HJT to follow later):

Incident Status Location

Adware:Adware/WebSearch Not disinfected C:\WINDOWS\system32\l3acdb2.dll

Adware:adware/24-7-search Not disinfected c:\windows\system32\unPPC.exe

Spyware:spyware/bridge Not disinfected c:\windows\downloaded program files\bridge.inf

Adware:adware/sidesearch Not disinfected c:\program files\Lycos

Virus:Trj/Downloader.MDW Not disinfected C:\11.tmp[bndDrive.dll]

Virus:W32/Tenga.A Disinfected C:\Documents and Settings\All Users\Documents\AOL Downloads\aolsetup90\comps\rp\rp9codec.exe

Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Brian\Cookies\brian@advertising[2].txt

Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Brian\Cookies\brian@doubleclick[1].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Brian\Cookies\brian@go[1].txt

Spyware:Cookie/Hbmediapro Not disinfected C:\Documents and Settings\Guest\Cookies\guest@adopt.hbmediapro[2].txt

Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Guest\Cookies\guest@adrevolver[2].txt

Spyware:Cookie/Apmebf Not disinfected C:\Documents and Settings\Guest\Cookies\guest@apmebf[1].txt

Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Guest\Cookies\guest@ath.belnk[1].txt

Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Guest\Cookies\guest@atwola[2].txt

Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Guest\Cookies\guest@belnk[2].txt

Spyware:Cookie/bravenetA Not disinfected C:\Documents and Settings\Guest\Cookies\guest@bravenet[1].txt

Spyware:Cookie/Cgi-bin Not disinfected C:\Documents and Settings\Guest\Cookies\guest@cgi-bin[1].txt

Spyware:Cookie/Cgi-bin Not disinfected C:\Documents and Settings\Guest\Cookies\guest@cgi-bin[2].txt

Spyware:Cookie/Com.com Not disinfected C:\Documents and Settings\Guest\Cookies\guest@com[1].txt

Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Guest\Cookies\guest@dist.belnk[2].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Guest\Cookies\guest@go[10].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Guest\Cookies\guest@go[11].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Guest\Cookies\guest@go[12].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Guest\Cookies\guest@go[13].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Guest\Cookies\guest@go[1].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Guest\Cookies\guest@go[2].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Guest\Cookies\guest@go[3].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Guest\Cookies\guest@go[4].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Guest\Cookies\guest@go[5].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Guest\Cookies\guest@go[6].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Guest\Cookies\guest@go[7].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Guest\Cookies\guest@go[8].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Guest\Cookies\guest@go[9].txt

Spyware:Cookie/DomainSponsor Not disinfected C:\Documents and Settings\Guest\Cookies\guest@landing.domainsponsor[1].txt

Spyware:Cookie/Maxserving Not disinfected C:\Documents and Settings\Guest\Cookies\guest@maxserving[1].txt

Spyware:Cookie/Qsrch Not disinfected C:\Documents and Settings\Guest\Cookies\guest@qsrch[1].txt

Spyware:Cookie/Target Not disinfected C:\Documents and Settings\Guest\Cookies\guest@target[1].txt

Spyware:Cookie/Affiliate fuel Not disinfected C:\Documents and Settings\Guest\Cookies\guest@www.affiliatefuel[1].txt

Spyware:Cookie/Xiti Not disinfected C:\Documents and Settings\Guest\Cookies\guest@xiti[1].txt

Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Guest\Local Settings\Temp\Cookies\guest@atwola[1].txt

Virus:Trj/ClassLoader.E Disinfected C:\Documents and Settings\Hillary\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\ms0311.jar-64e3c464-62ad6723.zip[superMSClassLoader.class]

Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@247realmedia[2].txt

Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@2o7[2].txt

Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@adrevolver[1].txt

Spyware:Cookie/AdDynamix Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@ads.addynamix[2].txt

Spyware:Cookie/PointRoll Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@ads.pointroll[1].txt

Spyware:Cookie/Apmebf Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@apmebf[2].txt

Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@atdmt[2].txt

Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@atwola[1].txt

Spyware:Cookie/Azjmp Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@azjmp[1].txt

Spyware:Cookie/Bfast Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@bfast[2].txt

Spyware:Cookie/Bluestreak Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@bluestreak[2].txt

Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@bs.serving-sys[2].txt

Spyware:Cookie/BurstNet Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@burstnet[1].txt

Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@casalemedia[2].txt

Spyware:Cookie/CentrPort Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@centrport[1].txt

Spyware:Cookie/Bridgetrack Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@citi.bridgetrack[2].txt

Spyware:Cookie/Hitslink Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@counter.hitslink[1].txt

Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@doubleclick[1].txt

Spyware:Cookie/Hitbox Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@ehg-dig.hitbox[1].txt

Spyware:Cookie/Enhance Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@enhance[2].txt

Spyware:Cookie/FastClick Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@fastclick[1].txt

Spyware:Cookie/Findwhat Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@findwhat[2].txt

Spyware:Cookie/FortuneCity Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@fortunecity[2].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@go[10].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@go[1].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@go[2].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@go[3].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@go[4].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@go[5].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@go[6].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@go[7].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@go[9].txt

Spyware:Cookie/HotLog Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@hotlog[1].txt

Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@klik.klikadvertising[1].txt

Spyware:Cookie/DomainSponsor Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@landing.domainsponsor[1].txt

Spyware:Cookie/Linksynergy Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@linksynergy[2].txt

Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@media.adrevolver[1].txt

Spyware:Cookie/Mediaplex Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@mediaplex[1].txt

Spyware:Cookie/Overture Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@overture[1].txt

Spyware:Cookie/Overture Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@perf.overture[1].txt

Spyware:Cookie/Hitbox Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@phg.hitbox[1].txt

Spyware:Cookie/Pollstar Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@pollstar[1].txt

Spyware:Cookie/QuestionMarket Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@questionmarket[2].txt

Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@realmedia[1].txt

Spyware:Cookie/WUpd Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@revenue[2].txt

Spyware:Cookie/Searchportal Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@searchportal.information[2].txt

Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@server.iad.liveperson[2].txt

Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@serving-sys[1].txt

Spyware:Cookie/Statcounter Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@statcounter[1].txt

Spyware:Cookie/WebtrendsLive Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@statse.webtrendslive[2].txt

Spyware:Cookie/Tradedoubler Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@tradedoubler[2].txt

Spyware:Cookie/Traffic Marketplace Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@trafficmp[2].txt

Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@tribalfusion[1].txt

Spyware:Cookie/BurstBeacon Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@www.burstbeacon[2].txt

Spyware:Cookie/myaffiliateprogram Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@www.myaffiliateprogram[2].txt

Spyware:Cookie/Xiti Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@xiti[1].txt

Spyware:Cookie/Yadro Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@yadro[2].txt

Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Hillary\Cookies\hillary@zedo[2].txt

Adware:Adware/Adband Not disinfected C:\Documents and Settings\Hillary\Local Settings\Temp\bndupd4.exe[bndDrive3.dll]

Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Hillary\Local Settings\Temp\Cookies\hillary@ad.yieldmanager[1].txt

Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Hillary\Local Settings\Temp\Cookies\hillary@adrevolver[1].txt

Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Hillary\Local Settings\Temp\Cookies\hillary@adrevolver[3].txt

Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Hillary\Local Settings\Temp\Cookies\hillary@advertising[1].txt

Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Hillary\Local Settings\Temp\Cookies\hillary@atdmt[2].txt

Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\Hillary\Local Settings\Temp\Cookies\hillary@casalemedia[2].txt

Spyware:Cookie/Bridgetrack Not disinfected C:\Documents and Settings\Hillary\Local Settings\Temp\Cookies\hillary@citi.bridgetrack[1].txt

Spyware:Cookie/FastClick Not disinfected C:\Documents and Settings\Hillary\Local Settings\Temp\Cookies\hillary@fastclick[1].txt

Spyware:Cookie/Mediaplex Not disinfected C:\Documents and Settings\Hillary\Local Settings\Temp\Cookies\hillary@mediaplex[1].txt

Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Hillary\Local Settings\Temp\Cookies\hillary@realmedia[1].txt

Spyware:Cookie/Traffic Marketplace Not disinfected C:\Documents and Settings\Hillary\Local Settings\Temp\Cookies\hillary@trafficmp[2].txt

Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Hillary\Local Settings\Temp\Cookies\hillary@tribalfusion[2].txt

Virus:Trj/Downloader.MDW Not disinfected C:\Documents and Settings\Hillary\Local Settings\Temp\ismtpa2.exe[iSMPack7.exe]

Adware:Adware/nCase Not disinfected C:\Documents and Settings\Hillary\Local Settings\Temp\ZangoAX.cab

Spyware:Cookie/Hbmediapro Not disinfected C:\Documents and Settings\Kay\Cookies\kay@adopt.hbmediapro[1].txt

Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Kay\Cookies\kay@ath.belnk[1].txt

Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Kay\Cookies\kay@atwola[2].txt

Spyware:Cookie/Azjmp Not disinfected C:\Documents and Settings\Kay\Cookies\kay@azjmp[1].txt

Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Kay\Cookies\kay@belnk[2].txt

Spyware:Cookie/bravenetA Not disinfected C:\Documents and Settings\Kay\Cookies\kay@bravenet[2].txt

Spyware:Cookie/GoStats Not disinfected C:\Documents and Settings\Kay\Cookies\kay@c3.gostats[1].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Kay\Cookies\kay@CABZIC5I.txt

Spyware:Cookie/Cgi-bin Not disinfected C:\Documents and Settings\Kay\Cookies\kay@cgi-bin[2].txt

Spyware:Cookie/Cgi-bin Not disinfected C:\Documents and Settings\Kay\Cookies\kay@cgi-bin[6].txt

Spyware:Cookie/Com.com Not disinfected C:\Documents and Settings\Kay\Cookies\kay@com[1].txt

Spyware:Cookie/360i Not disinfected C:\Documents and Settings\Kay\Cookies\kay@ct.360i[1].txt

Spyware:Cookie/Date Not disinfected C:\Documents and Settings\Kay\Cookies\kay@date[1].txt

Spyware:Cookie/did-it Not disinfected C:\Documents and Settings\Kay\Cookies\kay@did-it[1].txt

Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Kay\Cookies\kay@dist.belnk[2].txt

Spyware:Cookie/fe.lea.lycos Not disinfected C:\Documents and Settings\Kay\Cookies\kay@fe.lea.lycos[1].txt

Spyware:Cookie/GoStats Not disinfected C:\Documents and Settings\Kay\Cookies\kay@gostats[2].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Kay\Cookies\kay@go[10].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Kay\Cookies\kay@go[11].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Kay\Cookies\kay@go[12].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Kay\Cookies\kay@go[13].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Kay\Cookies\kay@go[14].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Kay\Cookies\kay@go[15].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Kay\Cookies\kay@go[16].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Kay\Cookies\kay@go[17].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Kay\Cookies\kay@go[18].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Kay\Cookies\kay@go[1].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Kay\Cookies\kay@go[2].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Kay\Cookies\kay@go[3].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Kay\Cookies\kay@go[4].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Kay\Cookies\kay@go[5].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Kay\Cookies\kay@go[6].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Kay\Cookies\kay@go[7].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Kay\Cookies\kay@go[8].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Kay\Cookies\kay@go[9].txt

Spyware:Cookie/Screensavers Not disinfected C:\Documents and Settings\Kay\Cookies\kay@i.screensavers[2].txt

Spyware:Cookie/DomainSponsor Not disinfected C:\Documents and Settings\Kay\Cookies\kay@landing.domainsponsor[1].txt

Spyware:Cookie/Maxserving Not disinfected C:\Documents and Settings\Kay\Cookies\kay@maxserving[2].txt

Spyware:Cookie/Lop Not disinfected C:\Documents and Settings\Kay\Cookies\kay@mp3search[1].txt

Spyware:Cookie/Rightmedia Not disinfected C:\Documents and Settings\Kay\Cookies\kay@rightmedia[2].txt

Spyware:Cookie/Rn11 Not disinfected C:\Documents and Settings\Kay\Cookies\kay@rn11[1].txt

Spyware:Cookie/Clicktracks Not disinfected C:\Documents and Settings\Kay\Cookies\kay@stats1.clicktracks[1].txt

Spyware:Cookie/Target Not disinfected C:\Documents and Settings\Kay\Cookies\kay@target[2].txt

Spyware:Cookie/Tickle Not disinfected C:\Documents and Settings\Kay\Cookies\kay@tickle[2].txt

Spyware:Cookie/WebPower Not disinfected C:\Documents and Settings\Kay\Cookies\kay@webpower[2].txt

Spyware:Cookie/Xiti Not disinfected C:\Documents and Settings\Kay\Cookies\kay@xiti[1].txt

Virus:Trj/Downloader.PME Disinfected C:\Documents and Settings\Kay\Local Settings\Application Data\Wildtangent\Cdacache\00\00\0D.dat

Spyware:Cookie/Apmebf Not disinfected C:\Documents and Settings\Kay\Local Settings\Temp\Cookies\kay@apmebf[1].txt

Spyware:Cookie/Screensavers Not disinfected C:\Documents and Settings\Kay\Local Settings\Temp\Cookies\kay@i.screensavers[2].txt

Spyware:Cookie/DomainSponsor Not disinfected C:\Documents and Settings\Kay\Local Settings\Temp\Cookies\kay@landing.domainsponsor[1].txt

Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Laura\Cookies\laura@247realmedia[2].txt

Spyware:Cookie/2o7 Not disinfected C:\Documents and Settings\Laura\Cookies\laura@2o7[1].txt

Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Laura\Cookies\laura@ad.yieldmanager[2].txt

Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Laura\Cookies\laura@adrevolver[1].txt

Spyware:Cookie/PointRoll Not disinfected C:\Documents and Settings\Laura\Cookies\laura@ads.pointroll[1].txt

Spyware:Cookie/Adtech Not disinfected C:\Documents and Settings\Laura\Cookies\laura@adtech[2].txt

Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\Laura\Cookies\laura@advertising[1].txt

Spyware:Cookie/Apmebf Not disinfected C:\Documents and Settings\Laura\Cookies\laura@apmebf[1].txt

Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Laura\Cookies\laura@atdmt[2].txt

Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Laura\Cookies\laura@ath.belnk[1].txt

Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Laura\Cookies\laura@atwola[2].txt

Spyware:Cookie/Azjmp Not disinfected C:\Documents and Settings\Laura\Cookies\laura@azjmp[1].txt

Spyware:Cookie/Banner Not disinfected C:\Documents and Settings\Laura\Cookies\laura@banner[1].txt

Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Laura\Cookies\laura@belnk[1].txt

Spyware:Cookie/Bluestreak Not disinfected C:\Documents and Settings\Laura\Cookies\laura@bluestreak[1].txt

Spyware:Cookie/bravenetA Not disinfected C:\Documents and Settings\Laura\Cookies\laura@bravenet[1].txt

Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Laura\Cookies\laura@bs.serving-sys[2].txt

Spyware:Cookie/BurstNet Not disinfected C:\Documents and Settings\Laura\Cookies\laura@burstnet[1].txt

Spyware:Cookie/Enhance Not disinfected C:\Documents and Settings\Laura\Cookies\laura@c.enhance[1].txt

Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Laura\Cookies\laura@c5.zedo[1].txt

Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\Laura\Cookies\laura@casalemedia[1].txt

Spyware:Cookie/CentrPort Not disinfected C:\Documents and Settings\Laura\Cookies\laura@centrport[1].txt

Spyware:Cookie/Cgi-bin Not disinfected C:\Documents and Settings\Laura\Cookies\laura@cgi-bin[1].txt

Spyware:Cookie/Bridgetrack Not disinfected C:\Documents and Settings\Laura\Cookies\laura@citi.bridgetrack[2].txt

Spyware:Cookie/Com.com Not disinfected C:\Documents and Settings\Laura\Cookies\laura@com[1].txt

Spyware:Cookie/Hitslink Not disinfected C:\Documents and Settings\Laura\Cookies\laura@counter.hitslink[1].txt

Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Laura\Cookies\laura@dist.belnk[2].txt

Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\Laura\Cookies\laura@doubleclick[1].txt

Spyware:Cookie/Hitbox Not disinfected C:\Documents and Settings\Laura\Cookies\laura@ehg-dig.hitbox[2].txt

Spyware:Cookie/Hitbox Not disinfected C:\Documents and Settings\Laura\Cookies\laura@ehg.hitbox[2].txt

Spyware:Cookie/Entrepreneur Not disinfected C:\Documents and Settings\Laura\Cookies\laura@entrepreneur[1].txt

Spyware:Cookie/FastClick Not disinfected C:\Documents and Settings\Laura\Cookies\laura@fastclick[1].txt

Spyware:Cookie/fe.lea.lycos Not disinfected C:\Documents and Settings\Laura\Cookies\laura@fe.lea.lycos[1].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Laura\Cookies\laura@go[1].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Laura\Cookies\laura@go[2].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Laura\Cookies\laura@go[3].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Laura\Cookies\laura@go[4].txt

Spyware:Cookie/Go Not disinfected C:\Documents and Settings\Laura\Cookies\laura@go[6].txt

Spyware:Cookie/HotLog Not disinfected C:\Documents and Settings\Laura\Cookies\laura@hotlog[1].txt

Spyware:Cookie/Kmpads Not disinfected C:\Documents and Settings\Laura\Cookies\laura@kmpads[1].txt

Spyware:Cookie/Maxserving Not disinfected C:\Documents and Settings\Laura\Cookies\laura@maxserving[1].txt

Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Laura\Cookies\laura@media.adrevolver[3].txt

Spyware:Cookie/Mediaplex Not disinfected C:\Documents and Settings\Laura\Cookies\laura@mediaplex[2].txt

Spyware:Cookie/Overture Not disinfected C:\Documents and Settings\Laura\Cookies\laura@overture[2].txt

Spyware:Cookie/Overture Not disinfected C:\Documents and Settings\Laura\Cookies\laura@perf.overture[1].txt

Spyware:Cookie/QuestionMarket Not disinfected C:\Documents and Settings\Laura\Cookies\laura@questionmarket[1].txt

Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Laura\Cookies\laura@realmedia[1].txt

Spyware:Cookie/WUpd Not disinfected C:\Documents and Settings\Laura\Cookies\laura@revenue[1].txt

Spyware:Cookie/Rightmedia Not disinfected C:\Documents and Settings\Laura\Cookies\laura@rightmedia[1].txt

Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\Documents and Settings\Laura\Cookies\laura@server.iad.liveperson[2].txt

Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Laura\Cookies\laura@serving-sys[2].txt

Spyware:Cookie/onestat.com Not disinfected C:\Documents and Settings\Laura\Cookies\laura@stat.onestat[2].txt

Spyware:Cookie/Statcounter Not disinfected C:\Documents and Settings\Laura\Cookies\laura@statcounter[1].txt

Spyware:Cookie/WebtrendsLive Not disinfected C:\Documents and Settings\Laura\Cookies\laura@statse.webtrendslive[2].txt

Spyware:Cookie/Tickle Not disinfected C:\Documents and Settings\Laura\Cookies\laura@tickle[1].txt

Spyware:Cookie/Tradedoubler Not disinfected C:\Documents and Settings\Laura\Cookies\laura@tradedoubler[1].txt

Spyware:Cookie/Traffic Marketplace Not disinfected C:\Documents and Settings\Laura\Cookies\laura@trafficmp[2].txt

Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Laura\Cookies\laura@tribalfusion[2].txt

Spyware:Cookie/BurstBeacon Not disinfected C:\Documents and Settings\Laura\Cookies\laura@www.burstbeacon[2].txt

Spyware:Cookie/MyWay Not disinfected C:\Documents and Settings\Laura\Cookies\laura@www.xzoomy[1].txt

Spyware:Cookie/Xiti Not disinfected C:\Documents and Settings\Laura\Cookies\laura@xiti[1].txt

Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Laura\Cookies\laura@zedo[2].txt

Hacktool:HackTool/KillProcWin.A Not disinfected C:\Documents and Settings\Laura\Local Settings\Application Data\Wildtangent\Cdacache\00\00\0C.dat[simple_killw.exe]

Adware:Adware/BlazeFind Not disinfected C:\Documents and Settings\Laura\Local Settings\Temp\bar.exe

Hacktool:HackTool/KillProcWin.A Not disinfected C:\Documents and Settings\Laura\Local Settings\Temp\CDASilentInstall0501.exe[simple_killw.exe]

Virus:Trj/Downloader.MDW Disinfected C:\Program Files\ISM2\ISMPack7.exe

Thx...

Edited by JeanInMontana
To remove quotes.
Link to post
Share on other sites

Here is the latest HJT report:

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 7:54:16 AM, on 11/5/2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16544)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\LEXBCES.EXE

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\system32\LEXPPS.EXE

C:\WINDOWS\system32\cisvc.exe

C:\WINDOWS\System32\nvsvc32.exe

C:\PROGRA~1\TRENDM~1\INTERN~4\PcCtlCom.exe

C:\WINDOWS\System32\svchost.exe

C:\PROGRA~1\TRENDM~1\INTERN~4\Tmntsrv.exe

C:\PROGRA~1\TRENDM~1\INTERN~4\TmPfw.exe

C:\WINDOWS\System32\MsPMSPSv.exe

C:\WINDOWS\Explorer.EXE

C:\PROGRA~1\TRENDM~1\INTERN~4\PcScnSrv.exe

C:\PROGRA~1\TRENDM~1\INTERN~4\PccGuide.exe

C:\WINDOWS\system32\cidaemon.exe

C:\WINDOWS\System32\LXSUPMON.EXE

C:\WINDOWS\System32\DSentry.exe

C:\Program Files\DELL\Dell Laser MFP 1815\NetworkScan\DNSCST.exe

C:\WINDOWS\system32\ctfmon.exe

C:\Program Files\Internet Explorer\IEXPLORE.EXE

C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32.exe

C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe

C:\PROGRA~1\TRENDM~1\INTERN~4\tmproxy.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

C:\WINDOWS\system32\NOTEPAD.EXE

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dellnet.com/

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://mail.yahoo.com/?.intl=us

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://rd.yahoo.com/mail_us/mailto/ymsgr/D...?.redir=ymmapi9

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O2 - BHO: (no name) - {53B5F2B1-94DD-43E5-8187-EB4E31F00701} - C:\WINDOWS\system32\l3acdb2.dll

O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll

O2 - BHO: BndShell3 BHO Class - {8ABA9A9C-8791-4d61-8D5B-BCC9448EA573} - C:\Program Files\ISM\BndDrive7.dll

O4 - HKLM\..\Run: [zcdmpiv] C:\WINDOWS\zcdmpiv.exe

O4 - HKLM\..\Run: [updReg] C:\WINDOWS\UpdReg.EXE

O4 - HKLM\..\Run: [userFaultCheck] %systemroot%\system32\dumprep 0 -u

O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security 2007\pccguide.exe"

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe

O4 - HKLM\..\Run: [LXSUPMON] C:\WINDOWS\System32\LXSUPMON.EXE RUN

O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe

O4 - HKLM\..\Run: [DIGStream] C:\Program Files\DIGStream\digstream.exe

O4 - HKLM\..\Run: [DellNSCST_GRNCH] "C:\Program Files\DELL\Dell Laser MFP 1815\NetworkScan\DNSCST.exe" /HIDEUI

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MIFF2D~1\OFFICE11\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll

O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MIFF2D~1\OFFICE11\REFIEBAR.DLL

O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll

O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyside.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O12 - Plugin for .bcf: C:\Program Files\Internet Explorer\Plugins\NPBelv32.dll

O16 - DPF: Yahoo! Euchre - http://download.games.yahoo.com/games/clients/y/et1_x.cab

O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204

O16 - DPF: {1EF9F042-C2EB-4293-8213-474CAEEF531D} (TmHcmsX Control) - http://www.trendsecure.com/framework/contr...vex/TmHcmsX.CAB

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll

O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://bin.mcafee.com/molbin/shared/mcinsc...72/mcinsctl.cab

O16 - DPF: {5CB1506E-1DEA-4E63-89A7-E40E52AEA1FD} (OnagerCtrl Class) - http://usfulfillment.puretracks.com/onager.cab

O16 - DPF: {6B4788E2-BAE8-11D2-A1B4-00400512739B} - http://216.249.24.142/code/PWActiveXImgCtl.CAB

O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab

O16 - DPF: {A17E30C4-A9BA-11D4-8673-60DB54C10000} (YahooYMailTo Class) - http://us.dl1.yimg.com/download.yahoo.com/.../ymmapi_416.dll

O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} - http://bin.mcafee.com/molbin/shared/mcgdmg...,19/mcgdmgr.cab

O16 - DPF: {CC7D9C40-1DF5-4C7C-95F7-A0E34982CBA2} - http://downloads.taxslayer.com/olf2002/net...011/install.cab

O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe

O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe

O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE

O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe

O23 - Service: Intel® NMS (NMSSvc) - Intel Corporation - C:\WINDOWS\System32\NMSSvc.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

O23 - Service: PACSPTISVR - Unknown owner - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe

O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~4\PcCtlCom.exe

O23 - Service: Trend Micro Protection Against Spyware (PcScnSrv) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~4\PcScnSrv.exe

O23 - Service: SonicStage Back-End Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SsBeSvc.exe

O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe

O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe

O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~4\Tmntsrv.exe

O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~4\TmPfw.exe

O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~4\tmproxy.exe

--

End of file - 9238 bytes

Thx...

michigangator

Link to post
Share on other sites

Hi still work to do.

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)

O2 - BHO: (no name) - {53B5F2B1-94DD-43E5-8187-EB4E31F00701} - C:\WINDOWS\system32\l3acdb2.dll

O2 - BHO: BndShell3 BHO Class - {8ABA9A9C-8791-4d61-8D5B-BCC9448EA573} - C:\Program Files\ISM\BndDrive7.dll

O4 - HKLM\..\Run: [zcdmpiv] C:\WINDOWS\zcdmpiv.exe

O4 - HKLM\..\Run: [updReg] C:\WINDOWS\UpdReg.EXE

Also uninstall the program WildTangent.

Get this program and run it http://www.malwarebytes.org/forums/index.p...ic=2868&hl= Let it remove everything. Reboot and post a new HJT log. Let me know how things are running too.

Link to post
Share on other sites

OK, JeanInMontana...thx for your help so far...much appreciated.

I do now have a couple of questions...

Are you saying to delete R3, O2, O2, O4, and O4 as well as Wildtangent? Wildtangent does not show up when I populate the list at "Add/Remove programs" under my "Control Panel." How do I do that? Do I do that before I run CCleaner? When I run CCleaner, do I click "Analyze" or "Run Cleaner"?

Thx again. Computer is very slow right now...VERY slow. Sorry to ask these questions, but I don't want to make a mistake.

michigangator :angry:

Link to post
Share on other sites

Ok... :angry: ...here's what I have from the most recent HJT scan report:

Logfile of Trend Micro HijackThis v2.0.2

Scan saved at 10:50:36 PM, on 11/7/2007

Platform: Windows XP SP2 (WinNT 5.01.2600)

MSIE: Internet Explorer v7.00 (7.00.6000.16544)

Boot mode: Normal

Running processes:

C:\WINDOWS\System32\smss.exe

C:\WINDOWS\system32\winlogon.exe

C:\WINDOWS\system32\services.exe

C:\WINDOWS\system32\lsass.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\System32\svchost.exe

C:\WINDOWS\system32\svchost.exe

C:\WINDOWS\system32\LEXBCES.EXE

C:\WINDOWS\system32\spoolsv.exe

C:\WINDOWS\system32\LEXPPS.EXE

C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe

C:\WINDOWS\system32\cisvc.exe

C:\WINDOWS\System32\nvsvc32.exe

C:\PROGRA~1\TRENDM~1\INTERN~4\PcCtlCom.exe

C:\WINDOWS\System32\svchost.exe

C:\PROGRA~1\TRENDM~1\INTERN~4\Tmntsrv.exe

C:\PROGRA~1\TRENDM~1\INTERN~4\TmPfw.exe

C:\PROGRA~1\TRENDM~1\INTERN~4\tmproxy.exe

C:\WINDOWS\System32\MsPMSPSv.exe

C:\WINDOWS\Explorer.EXE

C:\WINDOWS\system32\wuauclt.exe

C:\PROGRA~1\TRENDM~1\INTERN~4\PcScnSrv.exe

C:\Program Files\Trend Micro\Internet Security 2007\pccguide.exe

C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

C:\WINDOWS\System32\LXSUPMON.EXE

C:\WINDOWS\System32\DSentry.exe

C:\Program Files\DELL\Dell Laser MFP 1815\NetworkScan\DNSCST.exe

C:\Program Files\QuickTime\qttask.exe

C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe

C:\WINDOWS\system32\ctfmon.exe

C:\PROGRA~1\TRENDM~1\INTERN~4\tsc.exe

C:\WINDOWS\system32\cidaemon.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dellnet.com/

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://mail.yahoo.com/?.intl=us

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul...rch/search.html

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157

R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaul...//www.yahoo.com

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://rd.yahoo.com/mail_us/mailto/ymsgr/D...?.redir=ymmapi9

O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll

O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll

O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll

O4 - HKLM\..\Run: [userFaultCheck] %systemroot%\system32\dumprep 0 -u

O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security 2007\pccguide.exe"

O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup

O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe

O4 - HKLM\..\Run: [LXSUPMON] C:\WINDOWS\System32\LXSUPMON.EXE RUN

O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe

O4 - HKLM\..\Run: [DIGStream] C:\Program Files\DIGStream\digstream.exe

O4 - HKLM\..\Run: [DellNSCST_GRNCH] "C:\Program Files\DELL\Dell Laser MFP 1815\NetworkScan\DNSCST.exe" /HIDEUI

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime

O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized

O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe

O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MIFF2D~1\OFFICE11\EXCEL.EXE/3000

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll

O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll

O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MIFF2D~1\OFFICE11\REFIEBAR.DLL

O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll

O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - C:\Program Files\Microsoft Money\System\mnyside.dll

O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe

O12 - Plugin for .bcf: C:\Program Files\Internet Explorer\Plugins\NPBelv32.dll

O16 - DPF: Yahoo! Euchre - http://download.games.yahoo.com/games/clients/y/et1_x.cab

O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204

O16 - DPF: {1EF9F042-C2EB-4293-8213-474CAEEF531D} (TmHcmsX Control) - http://www.trendsecure.com/framework/contr...vex/TmHcmsX.CAB

O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll

O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://bin.mcafee.com/molbin/shared/mcinsc...72/mcinsctl.cab

O16 - DPF: {5CB1506E-1DEA-4E63-89A7-E40E52AEA1FD} (OnagerCtrl Class) - http://usfulfillment.puretracks.com/onager.cab

O16 - DPF: {6B4788E2-BAE8-11D2-A1B4-00400512739B} - http://216.249.24.142/code/PWActiveXImgCtl.CAB

O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab

O16 - DPF: {A17E30C4-A9BA-11D4-8673-60DB54C10000} (YahooYMailTo Class) - http://us.dl1.yimg.com/download.yahoo.com/.../ymmapi_416.dll

O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} - http://bin.mcafee.com/molbin/shared/mcgdmg...,19/mcgdmgr.cab

O16 - DPF: {CC7D9C40-1DF5-4C7C-95F7-A0E34982CBA2} - http://downloads.taxslayer.com/olf2002/net...011/install.cab

O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe

O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe

O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE

O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe

O23 - Service: Intel® NMS (NMSSvc) - Intel Corporation - C:\WINDOWS\System32\NMSSvc.exe

O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe

O23 - Service: PACSPTISVR - Unknown owner - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe

O23 - Service: Trend Micro Central Control Component (PcCtlCom) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~4\PcCtlCom.exe

O23 - Service: Trend Micro Protection Against Spyware (PcScnSrv) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~4\PcScnSrv.exe

O23 - Service: SonicStage Back-End Service - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SsBeSvc.exe

O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe

O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe

O23 - Service: Trend Micro Real-time Service (Tmntsrv) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~4\Tmntsrv.exe

O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~4\TmPfw.exe

O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~4\tmproxy.exe

--

End of file - 8872 bytes

Link to post
Share on other sites

How is the PC running? Your log looks clean. We need to now reset a clean System Restore point. If you don't and you need to use System Restore you will reinfect yourself. Go to Start>Control Panel>System. Click on the System Restore tab and put a check in Turn off System Restore. Then click OK.

Now go to Start>Help and Support > Undo Changes to Your System or System Restore depending on the make of your PC. Click on what ever will open the System Restore box. You will see two options, Choose Create a System Restore Point. Give it a name like Clean Restore Point and today's date. Now if you need to use it you have it.

Many of these infections can be avoided with an added layer of prevention. All recommended programs are free and easy on system resources. You should install them as part of your protection arsenol. Keep Spybot Search & Destroy and always immunize when you update. You will also need at least one other scanning program AVG is good and there are several other excellent programs with free and paid versions. Read the overviews of what each program below does so you have an understanding of their importance and how to use.

A firewall and antivirus are also essential. The Windows firewall in XP is not sufficient.

Preform Windows Updates monthly on the second Tuesday or use automatic updates, and use your scanners weekly at the least. Always update before you scan.

SpywareBlaster from Javacool Software

WinPatrol by BillPStudios

SiteHound by FireTrust

RogueRemover

hpHosts

For an excellent list of reliable free firewalls and antivirus programs see here .

Link to post
Share on other sites

It's running fine, but it is very slow...taking 10 minutes to boot up. I realized through all of this that this is an older pc that has only 256MB RAM, with only 36MB currently available. The trend Micro PC-cillin Internet Security software takes up 282+ MB on my hard drive and Office Professional 2003 takes up about 400MB. Next is Adobe Reader at 131MB, Java 2 Runtime Environment, SE v1.4.2_06 at 130MB, and then several more at less than 100MB. What are your thoughts on options I have to improve operating performance? Should I consider this just a basic internet pc and eliminate Office and other applications? Should I ditch the Trend Micro?

I sincerley appreciate your support with reviewing my pc and assisting me through the cleanup process!!!

Thx MUCH...!!!

Brian :angry:

Link to post
Share on other sites

Your confusing disk space and memory. They are not the same. The memory is at a minimum but has nothing to do with how much space is on your hard drive. The missing file message is for MS Works Update. I personally would not use Trend Micro nor Office. ; ) I use Open Office a free program that uses a fraction of the disk space and doesn't try to start with every boot. You can eliminate much of the boot time by not allowing some of that crap to start. Get the free program we have here Called Start Up Lite and let it eliminate any items it finds. The programs won't be uninstalled, only stopped from starting with boot. Then run a disk error check, followed by a registry cleaner like EasyCleaner (don't use the duplicate file finder feature). Then run disk defragment. Those things should help performance.

Link to post
Share on other sites

Guest
This topic is now closed to further replies.
  • Recently Browsing   0 members

    • No registered users viewing this page.
Back to top
×
×
  • Create New...

Important Information

This site uses cookies - We have placed cookies on your device to help make this website better. You can adjust your cookie settings, otherwise we'll assume you're okay to continue.