Problem with Firefox

Status
This thread has been Locked and is not open to further replies. Please start a New Thread if you're having a similar issue. View our Welcome Guide to learn how to use this site.

ACCER

Thread Starter
Joined
Jun 25, 2005
Messages
15
Hi,
Can anyone help with a problem I'm having with firefox opening new browser pages randomly? Even if no pages are open when I quit, I'll come back to find dozens. Rather like pop-up windows...only full screen! I'm on a DSL connection

There is also a problem with an occasional rebooting of the system...it just suddenly does it.

I've run trend micro virus scan and it came back clean. I also ran their spyware cleaner and it was clean. I even ran spybot, just to be sure.

Does anyone have a clue as to what is going on?

Thanks for any help.
 

GoJoAGoGo

Joe
Joined
Dec 26, 2002
Messages
42,057
It might be a good idea to post a HijackThis log.

Please do the following:
Go to http://www.tomcoyote.org/hjt/ , and download 'HijackThis!'.
Unzip, doubleclick HijackThis.exe, and hit "Scan".

When the scan is finished, the "Scan" button will change into a "Save Log" button.
Press that, save the log somewhere, and paste it in your next post.

Most of what it lists will be harmless or even required, so do NOT fix anything yet.
Someone here will be happy to help you analyze the results.
 

ACCER

Thread Starter
Joined
Jun 25, 2005
Messages
15
Logfile of HijackThis v1.99.1
Scan saved at 5:05:52 PM, on 6/25/2005
Platform: Windows ME (Win9x 4.90.3000)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\WINDOWS\SYSTEM\SSDPSRV.EXE
C:\WINDOWS\SYSTEM\ATI2EVXX.EXE
C:\PROGRAM FILES\TREND MICRO\INTERNET SECURITY 2005\PCCTLCOM.EXE
C:\WINDOWS\SYSTEM\LEXBCES.EXE
C:\WINDOWS\SYSTEM\RPCSS.EXE
C:\PROGRAM FILES\TREND MICRO\INTERNET SECURITY 2005\PCCIOMON.EXE
C:\WINDOWS\SYSTEM\RESTORE\STMGR.EXE
C:\PROGRAM FILES\TREND MICRO\INTERNET SECURITY 2005\TMPFW.EXE
C:\WINDOWS\SYSTEM\LEXPPS.EXE
C:\WINDOWS\SYSTEM\WBEM\WINMGMT.EXE
C:\PROGRAM FILES\TREND MICRO\INTERNET SECURITY 2005\TMPROXY.EXE
C:\PROGRAM FILES\TREND MICRO\INTERNET SECURITY 2005\PCCGUIDE.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\EXPLORER.EXE
C:\WINDOWS\RUNDLL32.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\PROGRAM FILES\NETROPA\ONE-TOUCH MULTIMEDIA KEYBOARD\MMKEYBD.EXE
C:\PROGRAM FILES\ADAPTEC\DIRECTCD\DIRECTCD.EXE
C:\PROGRAM FILES\ATI TECHNOLOGIES\ATI CONTROL PANEL\ATIPTAXX.EXE
C:\WINDOWS\OPTIONS\CABS\LOGITECH\HP_FINDER.EXE
C:\WINDOWS\SYSTEM\WMIEXE.EXE
C:\WINDOWS\RunDLL.exe
C:\PROGRAM FILES\THE WEATHER CHANNEL\THE WEATHER CHANNEL.EXE
C:\PROGRAM FILES\NETROPA\ONE-TOUCH MULTIMEDIA KEYBOARD\KEYBDMGR.EXE
C:\PROGRAM FILES\NETROPA\ONSCREEN DISPLAY\OSD.EXE
C:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE\OSA.EXE
C:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE\FINDFAST.EXE
C:\PROGRAM FILES\NETROPA\ONE-TOUCH MULTIMEDIA KEYBOARD\MMUSBKB2.EXE
C:\PROGRAM FILES\VERIZON ONLINE\BIN\MPBTN.EXE
C:\WINDOWS\SYSTEM\DDHELP.EXE
C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE
C:\MY DOCUMENTS\DOWNLOADS\HIJACK\HIJACKTHIS.EXE

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = HTTP://WWW.MY.YAHOO.COM/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.hpwis.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://websearch.drsnsrch.com/sidesearch.cgi?id=
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.my.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://websearch.drsnsrch.com/sidesearch.cgi?id=
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Verizon Online
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1;;localhost;<local>
R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [ScanRegistry] C:\WINDOWS\scanregw.exe /autorun
O4 - HKLM\..\Run: [TaskMonitor] C:\WINDOWS\taskmon.exe
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [Keyboard Manager] C:\Program Files\Netropa\One-touch Multimedia Keyboard\MMKeybd.exe
O4 - HKLM\..\Run: [LexStart] lexstart.exe
O4 - HKLM\..\Run: [Adaptec DirectCD] C:\Program Files\ADAPTEC\DIRECTCD\DIRECTCD.EXE
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [HPLogiFinder] \WINDOWS\OPTIONS\CABS\LOGITECH\HP_FINDER.EXE
O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security 2005\pccguide.exe"
O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
O4 - HKLM\..\RunServices: [SSDPSRV] C:\WINDOWS\SYSTEM\ssdpsrv.exe
O4 - HKLM\..\RunServices: [ATIPOLL] ati2evxx.exe
O4 - HKLM\..\RunServices: [ATISmart] C:\WINDOWS\SYSTEM\ati2s9ag.exe
O4 - HKLM\..\RunServices: [*StateMgr] C:\WINDOWS\System\Restore\StateMgr.exe
O4 - HKLM\..\RunServices: [PcCtlCom] C:\PROGRAM FILES\TREND MICRO\INTERNET SECURITY 2005\PCCTLCOM.EXE
O4 - HKCU\..\Run: [Taskbar Display Controls] RunDLL deskcp16.dll,QUICKRES_RUNDLLENTRY
O4 - HKCU\..\Run: [Desktop Weather 3] C:\PROGRAM FILES\THE WEATHER CHANNEL\THE WEATHER CHANNEL.EXE
O4 - Startup: Office Startup.lnk.disabled
O4 - Startup: Office Startup.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE
O4 - Startup: Microsoft Find Fast.lnk.disabled
O4 - Startup: Internet Answering Machine.lnk.disabled
O4 - Startup: Verizon Online Support Center.lnk = C:\Program Files\Verizon Online\bin\matcli.exe
O4 - Startup: Microsoft Find Fast.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
O4 - Startup: AdDestroyer.lnk.disabled
O4 - Startup: Verizon Online Support Center.lnk.disabled
O4 - Startup: Resume Windows Update Installation.lnk.disabled
O4 - Global Startup: updater.lnk.disabled
O8 - Extra context menu item: &Google Search - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR2.DLL/cmsearch.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR2.DLL/cmcache.html
O8 - Extra context menu item: Similar Pages - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR2.DLL/cmsimilar.html
O8 - Extra context menu item: Backward Links - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR2.DLL/cmbacklinks.html
O8 - Extra context menu item: Translate into English - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR2.DLL/cmtrans.html
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSEN~1\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: MSN Messenger Service - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSEN~1\MSMSGS.EXE
O9 - Extra button: (no name) - {A80F2DB2-80A9-4834-8F5A-4AB70F4EF4C3} - C:\WINDOWS\SYSTEM\SHDOCVW.DLL
O9 - Extra 'Tools' menuitem: IMI - {A80F2DB2-80A9-4834-8F5A-4AB70F4EF4C3} - C:\WINDOWS\SYSTEM\SHDOCVW.DLL
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll
O14 - IERESET.INF: START_PAGE_URL=http://cgi.verizon.net/bookmarks/bmredir.asp?region=west&bw=dsl&cd=4.0&bm=ho_home
O16 - DPF: NDWCab - http://www.neededware.com/ndw3.cab
O16 - DPF: {CE69F98F-2AF3-4306-BAC6-A79070EDA1B4} (Zylom Loader Object) - http://eu.download.games.yahoo.com/zylom/activex/zylomloader.cab
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://128.197.197.250/activex/AxisCamControl.cab
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.real.com/0157cbab88dc9530c902/netzip/RdxIE601.cab
O16 - DPF: {DDFFA75A-E81D-4454-89FC-B9FD0631E726} - http://www.bundleware.com/activeX/DS3/DS3.cab
O16 - DPF: {7149E79C-DC19-4C5E-A53C-A54DDF75EEE9} (IObjSafety.DemoCtl) - http://cabs.media-motor.net/cabs/joysaver.cab
O16 - DPF: {11260943-421B-11D0-8EAC-0000C07D88CF} (iPIX ActiveX Control) - http://www.ipix.com/viewers/ipixx.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061001/housecall.trendmicro.com/housecall/xscan53.cab
O16 - DPF: {15AD6789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://static.windupdates.com/cab/MediaAccessVerisign/ie/Bridge-c139.cab
 
Joined
Sep 7, 2004
Messages
49,014
Get these tools or verify their versions

SpyBot V1.4 http://www.majorgeeks.com/download2471.html * NEW *
AdAware SE 1.06 http://www.majorgeeks.com/download506.html - * NEW *

Fix these with HJT – Mark them, close IE, click fix checked

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://websearch.drsnsrch.com/sidesearch.cgi?id=

R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = http://websearch.drsnsrch.com/sidesearch.cgi?id=

R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)

O16 - DPF: NDWCab - http://www.neededware.com/ndw3.cab

O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://software-dl.real.com/0157cba...ip/RdxIE601.cab

O16 - DPF: {DDFFA75A-E81D-4454-89FC-B9FD0631E726} - http://www.bundleware.com/activeX/DS3/DS3.cab

O16 - DPF: {7149E79C-DC19-4C5E-A53C-A54DDF75EEE9} (IObjSafety.DemoCtl) - http://cabs.media-motor.net/cabs/joysaver.cab

O16 - DPF: {15AD6789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://static.windupdates.com/cab/M...Bridge-c139.cab

Run ActiveScan online virus scan

http://www.pandasoftware.com/activescan/

When the scan is finished, anything that it cannot clean have it delete it. Make a note of the file location of anything that cannot be deleted so you can delete it yourself.
- Save the results from the scan!

Post a new HiJackThis log along with the results from ActiveScan


Please give feedback on what worked/didn’t work and the current status of your system
 

ACCER

Thread Starter
Joined
Jun 25, 2005
Messages
15
Here are the results of the hijack Scan:
And the hijack scan:

Logfile of HijackThis v1.99.1
Scan saved at 5:05:08 AM, on 6/26/2005
Platform: Windows ME (Win9x 4.90.3000)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\SYSTEM\KERNEL32.DLL
C:\WINDOWS\SYSTEM\MSGSRV32.EXE
C:\WINDOWS\SYSTEM\mmtask.tsk
C:\WINDOWS\SYSTEM\MPREXE.EXE
C:\WINDOWS\SYSTEM\MSTASK.EXE
C:\WINDOWS\SYSTEM\SSDPSRV.EXE
C:\WINDOWS\SYSTEM\ATI2EVXX.EXE
C:\PROGRAM FILES\TREND MICRO\INTERNET SECURITY 2005\PCCTLCOM.EXE
C:\WINDOWS\EXPLORER.EXE
C:\PROGRAM FILES\TREND MICRO\INTERNET SECURITY 2005\PCCIOMON.EXE
C:\PROGRAM FILES\TREND MICRO\INTERNET SECURITY 2005\TMPFW.EXE
C:\WINDOWS\SYSTEM\RESTORE\STMGR.EXE
C:\WINDOWS\RUNDLL32.EXE
C:\WINDOWS\SYSTEM\WBEM\WINMGMT.EXE
C:\PROGRAM FILES\TREND MICRO\INTERNET SECURITY 2005\TMPROXY.EXE
C:\WINDOWS\TASKMON.EXE
C:\WINDOWS\SYSTEM\SYSTRAY.EXE
C:\PROGRAM FILES\TREND MICRO\INTERNET SECURITY 2005\PCCGUIDE.EXE
C:\PROGRAM FILES\NETROPA\ONE-TOUCH MULTIMEDIA KEYBOARD\MMKEYBD.EXE
C:\PROGRAM FILES\ADAPTEC\DIRECTCD\DIRECTCD.EXE
C:\WINDOWS\SYSTEM\LEXBCES.EXE
C:\WINDOWS\SYSTEM\WMIEXE.EXE
C:\PROGRAM FILES\ATI TECHNOLOGIES\ATI CONTROL PANEL\ATIPTAXX.EXE
C:\WINDOWS\OPTIONS\CABS\LOGITECH\HP_FINDER.EXE
C:\WINDOWS\SYSTEM\RPCSS.EXE
C:\WINDOWS\RunDLL.exe
C:\PROGRAM FILES\THE WEATHER CHANNEL\THE WEATHER CHANNEL.EXE
C:\PROGRAM FILES\NETROPA\ONE-TOUCH MULTIMEDIA KEYBOARD\KEYBDMGR.EXE
C:\PROGRAM FILES\NETROPA\ONSCREEN DISPLAY\OSD.EXE
C:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE\OSA.EXE
C:\WINDOWS\SYSTEM\LEXPPS.EXE
C:\PROGRAM FILES\MICROSOFT OFFICE\OFFICE\FINDFAST.EXE
C:\PROGRAM FILES\NETROPA\ONE-TOUCH MULTIMEDIA KEYBOARD\MMUSBKB2.EXE
C:\PROGRAM FILES\VERIZON ONLINE\BIN\MPBTN.EXE
C:\WINDOWS\SYSTEM\DDHELP.EXE
C:\PROGRAM FILES\MOZILLA FIREFOX\FIREFOX.EXE
C:\WINDOWS\SYSTEM\SPOOL32.EXE
C:\MY DOCUMENTS\DOWNLOADS\HIJACK\HIJACKTHIS.EXE

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = HTTP://WWW.MY.YAHOO.COM/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://search.hpwis.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.my.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Verizon Online
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1;;localhost;<local>
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [ScanRegistry] C:\WINDOWS\scanregw.exe /autorun
O4 - HKLM\..\Run: [TaskMonitor] C:\WINDOWS\taskmon.exe
O4 - HKLM\..\Run: [SystemTray] SysTray.Exe
O4 - HKLM\..\Run: [Keyboard Manager] C:\Program Files\Netropa\One-touch Multimedia Keyboard\MMKeybd.exe
O4 - HKLM\..\Run: [LexStart] lexstart.exe
O4 - HKLM\..\Run: [Adaptec DirectCD] C:\Program Files\ADAPTEC\DIRECTCD\DIRECTCD.EXE
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [HPLogiFinder] \WINDOWS\OPTIONS\CABS\LOGITECH\HP_FINDER.EXE
O4 - HKLM\..\Run: [pccguide.exe] "C:\Program Files\Trend Micro\Internet Security 2005\pccguide.exe"
O4 - HKLM\..\RunServices: [SchedulingAgent] mstask.exe
O4 - HKLM\..\RunServices: [SSDPSRV] C:\WINDOWS\SYSTEM\ssdpsrv.exe
O4 - HKLM\..\RunServices: [ATIPOLL] ati2evxx.exe
O4 - HKLM\..\RunServices: [ATISmart] C:\WINDOWS\SYSTEM\ati2s9ag.exe
O4 - HKLM\..\RunServices: [*StateMgr] C:\WINDOWS\System\Restore\StateMgr.exe
O4 - HKLM\..\RunServices: [PcCtlCom] C:\PROGRAM FILES\TREND MICRO\INTERNET SECURITY 2005\PCCTLCOM.EXE
O4 - HKLM\..\RunServices: [panda cleaner] %SystemRoot%\pavdr.exe
O4 - HKCU\..\Run: [Taskbar Display Controls] RunDLL deskcp16.dll,QUICKRES_RUNDLLENTRY
O4 - HKCU\..\Run: [Desktop Weather 3] C:\PROGRAM FILES\THE WEATHER CHANNEL\THE WEATHER CHANNEL.EXE
O4 - Startup: Office Startup.lnk.disabled
O4 - Startup: Office Startup.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE
O4 - Startup: Microsoft Find Fast.lnk.disabled
O4 - Startup: Internet Answering Machine.lnk.disabled
O4 - Startup: Verizon Online Support Center.lnk = C:\Program Files\Verizon Online\bin\matcli.exe
O4 - Startup: Microsoft Find Fast.lnk = C:\Program Files\Microsoft Office\Office\FINDFAST.EXE
O4 - Startup: AdDestroyer.lnk.disabled
O4 - Startup: Verizon Online Support Center.lnk.disabled
O4 - Startup: Resume Windows Update Installation.lnk.disabled
O4 - Global Startup: updater.lnk.disabled
O8 - Extra context menu item: &Google Search - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR2.DLL/cmsearch.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR2.DLL/cmcache.html
O8 - Extra context menu item: Similar Pages - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR2.DLL/cmsimilar.html
O8 - Extra context menu item: Backward Links - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR2.DLL/cmbacklinks.html
O8 - Extra context menu item: Translate into English - res://C:\PROGRAM FILES\GOOGLE\GOOGLETOOLBAR2.DLL/cmtrans.html
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSEN~1\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: MSN Messenger Service - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\PROGRA~1\MESSEN~1\MSMSGS.EXE
O9 - Extra button: (no name) - {A80F2DB2-80A9-4834-8F5A-4AB70F4EF4C3} - C:\WINDOWS\SYSTEM\SHDOCVW.DLL
O9 - Extra 'Tools' menuitem: IMI - {A80F2DB2-80A9-4834-8F5A-4AB70F4EF4C3} - C:\WINDOWS\SYSTEM\SHDOCVW.DLL
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_01\bin\npjpi150_01.dll
O14 - IERESET.INF: START_PAGE_URL=http://cgi.verizon.net/bookmarks/bmredir.asp?region=west&bw=dsl&cd=4.0&bm=ho_home
O16 - DPF: {CE69F98F-2AF3-4306-BAC6-A79070EDA1B4} (Zylom Loader Object) - http://eu.download.games.yahoo.com/zylom/activex/zylomloader.cab
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://128.197.197.250/activex/AxisCamControl.cab
O16 - DPF: {11260943-421B-11D0-8EAC-0000C07D88CF} (iPIX ActiveX Control) - http://www.ipix.com/viewers/ipixx.cab
O16 - DPF: {74D05D43-3236-11D4-BDCD-00C04F9A3B61} (HouseCall Control) - http://a840.g.akamai.net/7/840/537/2004061001/housecall.trendmicro.com/housecall/xscan53.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
 

ACCER

Thread Starter
Joined
Jun 25, 2005
Messages
15
Incident Status Location

Adware:Adware/Transponder No disinfected C:\WINDOWS\INF\POLALL1R.INF
Spyware:Spyware/LocalNRD No disinfected C:\WINDOWS\INF\LOCALNRD.INF
Adware:Adware/IPInsight No disinfected C:\WINDOWS\INF\CONSCORR.INF
Adware:Adware/BTGrab No disinfected C:\WINDOWS\INF\BTGRAB.INF
Spyware:Spyware/BetterInet No disinfected C:\WINDOWS\INF\ZSERV.INF
Adware:Adware/IPInsight No disinfected C:\WINDOWS\INF\FARMMEXT.INF
Adware:Adware/Kz515 No disinfected C:\WINDOWS\INF\KZ515.INF
Adware:Adware/Transponder No disinfected C:\WINDOWS\INF\DLMAX.INF
Spyware:Spyware/BetterInet No disinfected C:\WINDOWS\INF\banner.inf
Adware:Adware/Transponder No disinfected C:\WINDOWS\TEMP\THI355B.TMP\polall1r.inf
 

ACCER

Thread Starter
Joined
Jun 25, 2005
Messages
15
Spyware:Spyware/LocalNRD No disinfected C:\WINDOWS\TEMP\THI32A7.TMP\localNrd.cab
Spyware:Spyware/LocalNRD No disinfected C:\WINDOWS\TEMP\THI32A7.TMP\localNrd.cab[localNrd.inf]
Spyware:Spyware/LocalNRD No disinfected C:\WINDOWS\TEMP\THI32A7.TMP\localNrd.cab[localNRD.dll]
Adware:Adware/Twain-Tech No disinfected C:\WINDOWS\TEMP\THI32A7.TMP\localNrd.cab[preInsln.exe]
Adware:Adware/Transponder No disinfected C:\WINDOWS\TEMP\THI32A7.TMP\localNrd.cab[polall1l.exe]
Spyware:Spyware/LocalNRD No disinfected C:\WINDOWS\TEMP\THI32A7.TMP\localNrd.inf
Spyware:Spyware/TVMedia No disinfected C:\WINDOWS\TEMP\U8383.TMP
Adware:Adware/WinTools No disinfected C:\WINDOWS\TEMP\down.cab
Adware:Adware/WinTools No disinfected C:\WINDOWS\TEMP\down.cab[WToolsB.dll]
Adware:Adware/KeenValue No disinfected C:\WINDOWS\TEMP\IncrediFindBHOLog.tmp
Adware:Adware/IPInsight No disinfected C:\WINDOWS\TEMP\conscorr.cab
Adware:Adware/IPInsight No disinfected C:\WINDOWS\TEMP\conscorr.cab[conscorr.inf]
Adware:Adware/IPInsight No disinfected C:\WINDOWS\TEMP\conscorr.cab[conscorr.exe]
Adware:Adware/IPInsight No disinfected C:\WINDOWS\TEMP\conscorr.cab[conscorr.ini]
Adware:Adware/IPInsight No disinfected C:\WINDOWS\TEMP\conscorr.inf
Adware:Adware/IPInsight No disinfected C:\WINDOWS\TEMP\conscorr.ini
Adware:Adware/TopRebates No disinfected C:\WINDOWS\TEMP\djebmm350.exe
Adware:Adware/ExactSearch No disinfected C:\WINDOWS\TEMP\blank.gif
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\TEMP\bunSetup.cab
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\TEMP\bunSetup.cab[lsp_.dll]
 

ACCER

Thread Starter
Joined
Jun 25, 2005
Messages
15
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\TEMP\bunSetup.cab[xmlparse_.dll]
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\TEMP\bunSetup.cab[xmltok_.dll]
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\TEMP\bunSetup.cab[SAHAgent_.exe]
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\TEMP\bunSetup.cab[SAHUninstall_.exe]
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\TEMP\bunSetup.cab[SahHtml_.exe]
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\TEMP\bunSetup.cab[WEBInstaller.dll]
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\TEMP\bunSetup.cab[setup.inf]
Spyware:Spyware/TVMedia No disinfected C:\WINDOWS\TEMP\U1E6.TMP
Adware:Adware/PortalScan No disinfected C:\WINDOWS\TEMP\adlinstallwin32.exe
Adware:Adware/BTGrab No disinfected C:\WINDOWS\TEMP\THI46E2.TMP\btgrab.inf
Adware:Adware/IPInsight No disinfected C:\WINDOWS\TEMP\DrTemp\farmmext.inf
Adware:Adware/Kz515 No disinfected C:\WINDOWS\TEMP\DrTemp\kz515.cab[kz515.dll]
Adware:Adware/IPInsight No disinfected C:\WINDOWS\TEMP\DrTemp\farmmext.ini
Adware:Adware/Transponder No disinfected C:\WINDOWS\TEMP\DrTemp\ceres.inf
Spyware:Spyware/SurfSideKick No disinfected C:\WINDOWS\TEMP\iC110.TMP
Adware:Adware/Envolo No disinfected C:\WINDOWS\TEMP\AutoUpdate0\setup.inf
Adware:Adware/MultiMPP No disinfected C:\WINDOWS\TEMP\THI5872.TMP\zserv.cab
Spyware:Spyware/BetterInet No disinfected C:\WINDOWS\TEMP\THI5872.TMP\zserv.cab[zserv.inf]
Adware:Adware/MultiMPP No disinfected C:\WINDOWS\TEMP\THI5872.TMP\zserv.cab[ZServ.dll]
Spyware:Spyware/BetterInet No disinfected C:\WINDOWS\TEMP\THI5872.TMP\zserv.inf
Adware:Adware/Gator No disinfected C:\WINDOWS\TEMP\gain.txt
Adware:Adware/StartPage.BR No disinfected C:\WINDOWS\TEMP\STOPzilla\SZProFull.msi[unk_0017][_43AE91230F5D4026A7E9003A590E5DEF]
Adware:Adware/ActiveSearch No disinfected C:\WINDOWS\TEMP\ferretbar.exe
Adware:Adware/BroadcastPC No disinfected C:\WINDOWS\TEMP\73.exe\73.exe
Adware:Adware/Gator No disinfected C:\WINDOWS\TEMP\bundle.inf
Adware:Adware/Pacimedia No disinfected C:\WINDOWS\TEMP\ptf_0002.exe
 

ACCER

Thread Starter
Joined
Jun 25, 2005
Messages
15
Adware:Adware/AlwaysupdatednewsNo disinfected C:\WINDOWS\TEMP\toc_0011.exe
Adware:Adware/Transponder No disinfected C:\WINDOWS\TEMP\THI291A.TMP\dlmax.inf
Adware:Adware/WinTools No disinfected C:\WINDOWS\TEMP\EDow_AS2.exe
Adware:Adware/PurityScan No disinfected C:\WINDOWS\TEMP\!update.exe
Adware:Adware/Transponder No disinfected C:\WINDOWS\TEMP\THI3CA.TMP\dlmax.inf
Adware:Adware/AlwaysupdatednewsNo disinfected C:\WINDOWS\TEMP\toc_0018.exe
Adware:Adware/AlwaysupdatednewsNo disinfected C:\WINDOWS\TEMP\toc_0032.exe
Adware:Adware/AlwaysupdatednewsNo disinfected C:\WINDOWS\TEMP\toc_0029.exe
Adware:Adware/Pacimedia No disinfected C:\WINDOWS\TEMP\ptf_0009.exe
Virus:Trj/Downloader.KW Disinfected C:\WINDOWS\TEMP\ICD2.tmp\bundle_101.inf
Adware:Adware/Pacimedia No disinfected C:\WINDOWS\TEMP\ptf_0006.exe
Adware:Adware/Pacimedia No disinfected C:\WINDOWS\TEMP\ptf_0008.exe
Adware:Adware/Gogotools No disinfected C:\WINDOWS\TEMP\ckz.tmp40698\SilentInstallW32.exe
Virus:Trj/Downloader.CZZ Disinfected C:\WINDOWS\TEMP\rri.sys
Virus:Trj/Downloader.MO Disinfected C:\WINDOWS\TEMP\ICD4.tmp\default.inf
Adware:Adware/nCase No disinfected C:\WINDOWS\TEMP\180sainstaller.exe
Spyware:Spyware/Virtumonde No disinfected C:\WINDOWS\TEMP\bw2.com
Spyware:Spyware/SurfSideKick No disinfected C:\WINDOWS\TEMP\i41E3.TMP
Adware:Adware/Look2Me No disinfected C:\WINDOWS\TEMP\upd204.exe
Possible Virus. No disinfected C:\WINDOWS\TEMP\uptodater.exe
Spyware:Spyware/SurfSideKick No disinfected C:\WINDOWS\TEMP\iB1C4.TMP
Adware:Adware/nCase No disinfected C:\WINDOWS\TEMP\180sainstallernusalm.exe
Adware:Adware/Look2Me No disinfected C:\WINDOWS\TEMP\upd205.exe
Adware:Adware/SearchTheWeb No disinfected C:\WINDOWS\All Users\Application Data\msw\BMan1.exe
Adware:Adware/SearchTheWeb No disinfected C:\WINDOWS\All Users\Application Data\msw\MSW.exe
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\WQERRENU.DLL
 

ACCER

Thread Starter
Joined
Jun 25, 2005
Messages
15
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\WVADSS.DLL
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\CFRAL.DLL
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\MJRATELC.DLL
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\MTRLE32.DLL
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\VX1.NLS
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\MUSIGN32.DLL
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\MDC40.DLL
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\DEDREF.DLL
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\RFRC16.DLL
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\MWRLE32.DLL
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\UJBMON.DLL
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\DUDIAGN.DLL
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\INPEERS.DLL
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\MJUNI11.DLL
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\WYNSSPI.DLL
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\DSD9.DLL
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\CQYPTNET.DLL
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\QRUT.DLL
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\PRWRPROF.DLL
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\DUTIME.DLL
Virus:Trj/Downloader.CZZ Disinfected C:\WINDOWS\SYSTEM\1g7i.dll
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\VX1X.NLS
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\PTTOREC.DLL
Adware:Adware/WUpd No disinfected C:\WINDOWS\SYSTEM\ide21201.vxd
 

ACCER

Thread Starter
Joined
Jun 25, 2005
Messages
15
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\AVI3D1AG.DLL
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\HLD.DLL
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\ORFOX32.DLL
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\CRWMDM.DLL
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\VX3.NLS
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\VX3X.NLS
Virus:Trj/Downloader.CZZ Disinfected C:\WINDOWS\SYSTEM\rri.sys
Adware:Adware/PortalScan No disinfected C:\WINDOWS\SYSTEM\winupdt.008
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\lpcmgr10.dll
Adware:Adware/NSearch No disinfected C:\WINDOWS\SYSTEM\in10b6s.dll
Adware:Adware/FavoriteMan No disinfected C:\WINDOWS\SYSTEM\im64.dll
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\meexcl35.dll
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\bbchk.exe
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\UpdInst.exe
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\lkbzxc.dll
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\meihrnsw.dll
Adware:Adware/Winstat No disinfected C:\WINDOWS\SYSTEM\WinStat12.dll
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\Lbwvc11n.dll
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\netut80ex.vxd
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\netut80ex.vxd[exdl.exe]
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\netut80ex.vxd[mqexdlm.srg]
Adware:Adware/ExactSearch No disinfected C:\WINDOWS\SYSTEM\netut80ex.vxd[exul.exe]
Adware:Adware/ExactSearch No disinfected C:\WINDOWS\SYSTEM\netut80ex.vxd[javexulm.vxd]
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\netut80ex.vxd[msexreg.exe]
Adware:Adware/ExactSearch No disinfected C:\WINDOWS\SYSTEM\netut80ex.vxd[exclean.exe]
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\lebzpswr.dll
 

ACCER

Thread Starter
Joined
Jun 25, 2005
Messages
15
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\mpisip.dll
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\TanLib20.dll
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\rnoc3260.dll
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\arl71.dll
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\VX0.NLS
Adware:Adware/eZula No disinfected C:\WINDOWS\SYSTEM\ezPopStub.exe
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\mac80ex.idf
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\mac80ex.idf[msbe.dll]
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\mac80ex.idf[bargains.exe]
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\mac80ex.idf[adv.exe]
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\mac80ex.idf[adx.exe]
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\amv01w9x.dll
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\mWpistub.dll
Virus:Trj/SCBop.B Disinfected C:\WINDOWS\SYSTEM\Cache\setup.exe
Spyware:Spyware/SurfSideKick No disinfected C:\WINDOWS\SYSTEM\Cache\SSK_B5 WMG Media - Rev Share 3.EXE
Adware:Adware/SearchTheWeb No disinfected C:\WINDOWS\SYSTEM\Cache\mswinstall.exe
Virus:Trj/Multidropper.UO Disinfected C:\WINDOWS\SYSTEM\Cache\Kyongju.exe
Virus:Trj/Downloader.BJG Disinfected C:\WINDOWS\SYSTEM\Cache\EDow_AS2.exe
Virus:Trj/Delf.EB Disinfected C:\WINDOWS\SYSTEM\Cache\HelperInstall.exe
Virus:Trj/Downloader.BJF Disinfected C:\WINDOWS\SYSTEM\Cache\skh2.exe
Virus:Trj/TSUpdate.A Disinfected C:\WINDOWS\SYSTEM\Cache\AMEX_54.exe
Virus:Trj/Downloader.BOD Disinfected C:\WINDOWS\SYSTEM\Cache\AUNIcons.exe
Adware:Adware/PortalScan No disinfected C:\WINDOWS\SYSTEM\winupdt.bin
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\sblsrv32.dll
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\psis80ex.ax
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\psis80ex.ax[mscb.dll]
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\psis80ex.ax[bb_auto_wider.swf]
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\psis80ex.ax[bb_click_wider.swf]
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\psis80ex.ax[bb_welcome1.swf]
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\psis80ex.ax[bb_welcome.html]
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\psis80ex.ax[icon.gif]
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\psis80ex.ax[logo.gif]
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\psis80ex.ax[cashback.exe]
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\psis80ex.ax[cb.exe]
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\SYSTEM\psis80ex.ax[flash.exe]
Adware:Adware/AlwaysupdatednewsNo disinfected C:\WINDOWS\SYSTEM\Free Picture iPod.ico
Adware:Adware/AlwaysupdatednewsNo disinfected C:\WINDOWS\SYSTEM\Free U2 iPod.ico
 

ACCER

Thread Starter
Joined
Jun 25, 2005
Messages
15
Adware:Adware/AlwaysupdatednewsNo disinfected C:\WINDOWS\SYSTEM\Free LapTop Computer.ico
Adware:Adware/AlwaysupdatednewsNo disinfected C:\WINDOWS\SYSTEM\Free Sony Playstation.ico
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\1s7i.dll
Adware:Adware/PurityScan No disinfected C:\WINDOWS\SYSTEM\Shex.exe
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\rcbios32.dll
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\SYSTEM\lehi4044.exe
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\SYSTEM\qhr1drff.dll
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\SYSTEM\amnooq2k.exe
Adware:Adware/Look2Me No disinfected C:\WINDOWS\SYSTEM\mrikbdfr.dll
Adware:Adware/Winstat No disinfected C:\WINDOWS\SYSTEM\WinStat11.dll
Virus:Trj/Downloader.CZZ Disinfected C:\WINDOWS\SYSTEM\mirindaspf.exe
Spyware:Spyware/TVMedia No disinfected C:\WINDOWS\Application Data\tvmknwrd.dll
Spyware:Spyware/TVMedia No disinfected C:\WINDOWS\Application Data\tvmuknwrd.dll
Spyware:Spyware/TVMedia No disinfected C:\WINDOWS\Application Data\tvmcwrd.dll
Adware:Adware/PopCapLoader No disinfected C:\WINDOWS\Downloaded Program Files\CONFLICT.1\popcaploader.dll
Adware:Adware/PopCapLoader No disinfected C:\WINDOWS\Downloaded Program Files\CONFLICT.1\popcaploader.inf
Virus:Trj/Downloader.AEE Disinfected C:\WINDOWS\Downloaded Program Files\counter.inf
Adware:Adware/PopCapLoader No disinfected C:\WINDOWS\Downloaded Program Files\popcaploader.dll
Adware:Adware/PopCapLoader No disinfected C:\WINDOWS\Downloaded Program Files\popcaploader.inf
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\Downloaded Program Files\bunSetup.cab
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\Downloaded Program Files\bunSetup.cab[lsp_.dll]
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\Downloaded Program Files\bunSetup.cab[xmlparse_.dll]
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\Downloaded Program Files\bunSetup.cab[xmltok_.dll]
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\Downloaded Program Files\bunSetup.cab[SAHAgent_.exe]
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\Downloaded Program Files\bunSetup.cab[SAHUninstall_.exe]
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\Downloaded Program Files\bunSetup.cab[SahHtml_.exe]
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\Downloaded Program Files\bunSetup.cab[WEBInstaller.dll]
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\Downloaded Program Files\bunSetup.cab[setup.inf]
Adware:Adware/WinAD No disinfected C:\WINDOWS\Downloaded Program Files\MediaAccX.dll
Spyware:Spyware/Bridge No disinfected C:\WINDOWS\Downloaded Program Files\bridge.inf
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\U95QJU54\bbi8032[1].exe
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\C1QZ4DU3\bbi8032[1].exe
Adware:Adware/PopCapLoader No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\C1QZ4DU3\popcaploader_v6[1].cab
Adware:Adware/PopCapLoader No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\C1QZ4DU3\popcaploader_v6[1].cab[PopCapLoader.dll]
Adware:Adware/PopCapLoader No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\C1QZ4DU3\popcaploader_v6[1].cab[popcaploader.inf]
Virus:Exploit/URLSpoof Disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\ADBGDSVY\index[1].php
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\MCRAMHK1\bunSetup[1].cab
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\MCRAMHK1\bunSetup[1].cab[lsp_.dll]
 

ACCER

Thread Starter
Joined
Jun 25, 2005
Messages
15
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\MCRAMHK1\bunSetup[1].cab[xmlparse_.dll]
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\MCRAMHK1\bunSetup[1].cab[xmltok_.dll]
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\MCRAMHK1\bunSetup[1].cab[SAHAgent_.exe]
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\MCRAMHK1\bunSetup[1].cab[SAHUninstall_.exe]
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\MCRAMHK1\bunSetup[1].cab[SahHtml_.exe]
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\MCRAMHK1\bunSetup[1].cab[WEBInstaller.dll]
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\MCRAMHK1\bunSetup[1].cab[setup.inf]
Adware:Adware/MyWebSearch No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\OPQ34HU7\WinTA[1].cab[WToolsA.exe]
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\OPQ34HU7\mamint[1].html
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\GLUV09QR\CA1C2TXR.HTM
Virus:Trj/Downloader.BJG Disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\GLUV09QR\91[1].bin
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\GLUV09QR\adopt[2].ve
Adware:Adware/Pacimedia No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\GLUV09QR\pcs_0026[1].exe
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\GLARKXAZ\adopt[4].ve
Adware:Adware/WUpd No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\GLARKXAZ\trans-siberian-orchestra.bomb-mp3[1].html
Adware:Adware/WUpd No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\GLARKXAZ\Christmas-Eve-And-Other-Stories[1].html
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\GLARKXAZ\adopt[1].ve
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\8LIJC563\mamus[1].html
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\8LIJC563\adopt[1].ve
Adware:Adware/AlwaysupdatednewsNo disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\8LIJC563\toc_0029[1].exe
Adware:Adware/WinAD No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\8LIJC563\MediaAccC[1].dll
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\8LIJC563\adopt[2].ve
Virus:Trj/Downloader.KW Disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\DSCZDHCP\mmviewer_101[1].cab[bundle_101.inf]
Adware:Adware/Pacimedia No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\DSCZDHCP\trk_0006[1].exe
Adware:Adware/Apropos No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\DSCZDHCP\51[1].bin
Adware:Adware/AlwaysupdatednewsNo disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\DSCZDHCP\toc_0032[1].exe
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\DSCZDHCP\adopt[3].ve
Virus:VBS/Psyme.C No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\AXR090ZY\TRACK6[1].CHM[track6.htm]
Adware:Adware/WUpd No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\AXR090ZY\MediaAccess[1].exe
Adware:Adware/WinAD No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\AXR090ZY\bridge-c5[1].cab
Adware:Adware/WinAD No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\AXR090ZY\bridge-c5[1].cab[MediaAccX.dll]
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\89IZCLYJ\adopt[2].ve
Adware:Adware/Look2Me No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\CHEN81AJ\BM2[1].dll
Spyware:Spyware/BargainBuddy No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\CHEN81AJ\mamus[1].html
Adware:Adware/MyWebSearch No disinfected C:\WINDOWS\Temporary Internet Files\Content.IE5\CHEN81AJ\WinTA[1].cab[WToolsA.exe]
Adware:Adware/Weirdontheweb No disinfected C:\WINDOWS\Favorites\WeirdOnTheWeb.url
Adware:Adware/PowerStrip No disinfected C:\WINDOWS\mmgsvc.bin
Adware:Adware/PortalScan No disinfected C:\WINDOWS\mmgsvc.dat
 

ACCER

Thread Starter
Joined
Jun 25, 2005
Messages
15
Adware:Adware/PowerStrip No disinfected C:\WINDOWS\mmgsvce.bin
Adware:Adware/PowerStrip No disinfected C:\WINDOWS\mmgsvcu.bin
Adware:Adware/PowerStrip No disinfected C:\WINDOWS\mmgsvcv.bin
Adware:Adware/PortalScan No disinfected C:\WINDOWS\mmgsvcva.bin
Adware:Adware/PortalScan No disinfected C:\WINDOWS\id120.exe
Adware:Adware/IPInsight No disinfected C:\WINDOWS\FARMMEXT.INI
Spyware:Spyware/Virtumonde No disinfected C:\WINDOWS\bsx32.ini
Virus:Trj/Downloader.CZZ Disinfected C:\WINDOWS\rri.sys
Adware:Adware/DealHelper No disinfected C:\WINDOWS\AppsInstalled.htm
Adware:Adware/DealHelper No disinfected C:\WINDOWS\dealhlpr.dll
Adware:Adware/DealHelper No disinfected C:\WINDOWS\dhkw1.bin
Adware:Adware/DealHelper No disinfected C:\WINDOWS\dhdom1.bin
Adware:Adware/DealHelper No disinfected C:\WINDOWS\dhdomp1.bin
Adware:Adware/DealHelper No disinfected C:\WINDOWS\dsearch1.bin
Virus:Trj/Qhost.Y Disinfected C:\WINDOWS\hosts
Adware:Adware/IEPlugin No disinfected C:\WINDOWS\extract.exe
Adware:Adware/PortalScan No disinfected C:\WINDOWS\Helper101.dll
Virus:Trj/SCBop.B Disinfected C:\WINDOWS\SysCheckBop32.exe
Adware:Adware/IEPlugin No disinfected C:\WINDOWS\wdskctl.exe
Adware:Adware/IEPlugin No disinfected C:\WINDOWS\rgrt.exe
Spyware:Spyware/Media-motor No disinfected C:\WINDOWS\unstall.exe
Adware:Adware/Twain-Tech No disinfected C:\WINDOWS\smdat32m.sys
Spyware:Spyware/Altnet No disinfected C:\WINDOWS\smdat32a.sys
Adware:Adware/WinTools No disinfected C:\WINDOWS\hisistheurls.exe
Spyware:Spyware/SurfSideKick No disinfected C:\WINDOWS\SSK3_B5_SSK3_B5.exe
Adware:Adware/Gator No disinfected C:\WINDOWS\GatorUninstaller_cme.log
Adware:Adware/Gator No disinfected C:\WINDOWS\GatorUninstaller_cme_u.log
Spyware:Spyware/BetterInet No disinfected C:\WINDOWS\Buddy.exe
Spyware:Spyware/SurfSideKick No disinfected C:\WINDOWS\TDKT2891.exe
Adware:Adware/SAHAgent No disinfected C:\WINDOWS\muc433mn.exe
Virus:Trj/Reboot.F Disinfected C:\HP\bin\Rebooter.exe
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Common Files\updater\data2.dat
Adware:Adware/BroadcastPC No disinfected C:\Program Files\Common Files\Java\tvs_re_inst.exe
Adware:Adware/Naupoint No disinfected C:\Program Files\Common Files\Verizon Online\SFP\vzbb.dll
Adware:Adware/WinAD No disinfected C:\Program Files\Media Access\MediaAccC.dll
Adware:Adware/ClockSync No disinfected C:\Program Files\ClockSync\Uninst.exe
Adware:Adware/Weirdontheweb No disinfected C:\Program Files\WeirdOnTheWeb\weirdontheweb.exe
 
Status
This thread has been Locked and is not open to further replies. Please start a New Thread if you're having a similar issue. View our Welcome Guide to learn how to use this site.

Users Who Are Viewing This Thread (Users: 0, Guests: 1)

As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 807,865 other people just like you!

Latest posts

Members online

Top