Hey all. My pc is acting retarted. Half of my desktop icon wont show up. If I click on my computer it freezes and goes to not responding. I have System Mechanic 6 Pro running and it hasnt fixed anything. Anyone have a clue as to whats going on? I have also done Ewido, hijackthis, adaware, uniblue registry booster. Nothing seems to be working at all for me. Any help would be awesome.
Here is a HijackThis report for you to check out: Logfile of HijackThis v1.99.1 Scan saved at 5:16:32 PM, on 8/26/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\system32\csrss.exe C:\WINDOWS\system32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\spoolsv.exe C:\Program Files\iolo\System Mechanic Professional 6\SystemGuardAlerter.exe C:\Program Files\Kaspersky Lab\Kaspersky Anti-Hacker\KAVPF.exe C:\Program Files\compaq\Compaq Advisor\bin\compaq-rba.exe C:\WINDOWS\system32\crypserv.exe C:\Program Files\iolo\System Mechanic Professional 6\IoloSGCtrl.exe C:\Program Files\Spyware Doctor\sdhelp.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\system32\wdfmgr.exe C:\WINDOWS\System32\alg.exe C:\Program Files\Netscape\Netscape 6\Netscp.exe C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32.exe C:\Program Files\ewido anti-spyware 4.0\guard.exe C:\Program Files\ewido anti-spyware 4.0\ewido.exe C:\WINDOWS\explorer.exe C:\Documents and Settings\DaleJrFan#8\Desktop\hijackthis\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer,SearchURL = http://sharempeg.com/find/ R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/ R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.comcast.net R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://red.clientapps.yahoo.com/customize/ie/defaults/stp/ymsgr*http://my.yahoo.com R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll N3 - Netscape 7: user_pref("browser.startup.homepage", "www.comcast.net"); (C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\prefs.js) N3 - Netscape 7: user_pref("browser.search.defaultengine", "engine://C%3A%5CProgram%20Files%5CNetscape%5CNetscape%206%5Csearchplugins%5CSBWeb_01.src"); (C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\prefs.js) O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: (no name) - {1808648B-3102-4293-8AD3-06AF71D3321B} - (no file) O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll O2 - BHO: PCTools Site Guard - {5C8B2A36-3DB1-42A4-A3CB-D426709BBFEB} - C:\PROGRA~1\SPYWAR~1\tools\iesdsg.dll O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O2 - BHO: PCTools Browser Monitor - {B56A7D7D-6927-48C8-A975-17DF180C71AC} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - c:\Program Files\Microsoft Money\System\mnyviewer.dll O2 - BHO: (no name) - {FFCBEECE-FB0C-11D2-AB16-00104B9BBBD2} - (no file) O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn1\yt.dll O4 - HKLM\..\Run: [KAVPersonal50] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize O4 - HKLM\..\Run: [SystemGuardAlerter] SystemGuardAlerter.exe O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized O4 - HKLM\..\RunOnce: [Compaq_RBA] C:\Program Files\compaq\Compaq Advisor\bin\compaq-rba.exe -z O4 - HKLM\..\RunServicesOnce: [washindex] C:\Program Files\Washer\washidx.exe "DaleJrFan#8" O4 - HKCU\..\Run: [Uniblue Registry Booster] C:\Program Files\Uniblue\Registry Booster\RegistryBooster.exe /S O4 - Global Startup: Kaspersky Anti-Hacker.lnk = C:\Program Files\Kaspersky Lab\Kaspersky Anti-Hacker\KAVPF.exe O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll O9 - Extra button: Spyware Doctor - {2D663D1A-8670-49D9-A1A5-4C56B4E14E84} - C:\PROGRA~1\SPYWAR~1\tools\iesdpb.dll O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - c:\Program Files\Microsoft Money\System\mnyviewer.dll O9 - Extra button: PartyPoker.net - {F4430FE8-2638-42e5-B849-800749B94EED} - C:\Program Files\PartyPoker.net\partypokernet.exe (file missing) O9 - Extra 'Tools' menuitem: PartyPoker.net - {F4430FE8-2638-42e5-B849-800749B94EED} - C:\Program Files\PartyPoker.net\partypokernet.exe (file missing) O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe O9 - Extra button: Support - {2971C974-B6AC-4041-877F-7E164543C8C2} - http://www.comcastsupport.com (file missing) (HKCU) O9 - Extra button: Help - {80FE9901-5ED5-49C3-81DC-9090334F57A2} - http://www.comcast.net/memberservices/ (file missing) (HKCU) O9 - Extra button: ComcastHSI - {D1E49BEC-80D1-4697-A107-0C095EF73F45} - http://www.comcast.net (file missing) (HKCU) O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll O14 - IERESET.INF: START_PAGE_URL=http://www.comcast.net O16 - DPF: Yahoo! Bingo - http://download.games.yahoo.com/games/clients/y/xt0_x.cab O16 - DPF: Yahoo! Blackjack - http://download.games.yahoo.com/games/clients/y/jt0_x.cab O16 - DPF: Yahoo! Chat - http://us.chat1.yimg.com/us.yimg.com/i/chat/applet/c381/chat.cab O16 - DPF: Yahoo! Checkers - http://download.games.yahoo.com/games/clients/y/kt4_x.cab O16 - DPF: Yahoo! Chess - http://download.games.yahoo.com/games/clients/y/ct2_x.cab O16 - DPF: Yahoo! Dice - http://download.games.yahoo.com/games/clients/y/dct2_x.cab O16 - DPF: Yahoo! Dominoes - http://download.games.yahoo.com/games/clients/y/dot8_x.cab O16 - DPF: Yahoo! Go Fish - http://download.games.yahoo.com/games/clients/y/zt3_x.cab O16 - DPF: Yahoo! Poker - http://download.games.yahoo.com/games/clients/y/pt3_x.cab O16 - DPF: Yahoo! Pool 2 - http://download.games.yahoo.com/games/clients/y/pote_x.cab O16 - DPF: Yahoo! Word Racer - http://download.games.yahoo.com/games/clients/y/wt0_x.cab O16 - DPF: YExplorer1_8US.CAB - http://photos.yahoo.com/ocx/us/yexplorer1_8us.cab O16 - DPF: {11260943-421B-11D0-8EAC-0000C07D88CF} - http://www.ipix.com/viewers/ipixx.cab O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll O16 - DPF: {330110A5-F627-4DD7-B0F1-24D09C4DA870} (CouponsIncIECtl1 Class) - http://a19.g.akamai.net/7/19/7125/1404/ftp.coupons.com/v7/cpnsie1.cab O16 - DPF: {412F2472-59BC-4CCB-A3D4-C16A7D57CDCF} - http://a19.g.akamai.net/7/19/7125/1290/ftp.coupons.com/v7/brix7ie.cab O16 - DPF: {416792D8-F532-493A-BECC-1C99A1501FF9} (vmLaunch Class) - http://media2.comcast.net/anon.comcastonline2/onleng/downloads/VideoMail/vmLauncher2.cab O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-18.cab O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by118fd.bay118.hotmail.msn.com/resources/MsnPUpld.cab O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} - http://207.188.7.150/249bd8f44f8b760b3904/netzip/RdxIE601.cab O16 - DPF: {6B4788E2-BAE8-11D2-A1B4-00400512739B} - http://216.249.24.143/code/PWActiveXImgCtl.CAB O16 - DPF: {8714912E-380D-11D5-B8AA-00D0B78F3D48} - http://chat.yahoo.com/cab/yuplapp.cab O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} - http://64.27.100.83/activex/AxisCamControl.ocx O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab O16 - DPF: {9CCE3B43-4DE0-4236-A84E-108CA848EE6A} - http://www.webcamnow.com/broadcast/ActiveXWebCam.cab O16 - DPF: {A17E30C4-A9BA-11D4-8673-60DB54C10000} (YahooYMailTo Class) - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/yse/ymmapi_416.dll O16 - DPF: {A8683C98-5341-421B-B23C-8514C05354F1} - http://photo.walmart.com/photo/uploads/FujifilmUploadClient.cab O16 - DPF: {AF087E66-838E-4A97-8A0B-0DDDA5DEA239} - https://streaming.endeavors.com/microsoft/streets/clientdownloads/OTAI.CAB O16 - DPF: {B942A249-D1E7-4C11-98AE-FCB76B08747F} - http://games-dl.real.com/gameconsole/Bundler/CAB/RealArcadeRdxIE.cab O16 - DPF: {C6B086D2-146B-47A4-A218-B82DCAF2D872} (cpbrxpie Control) - http://ftp.coupons.com/r3120/cpbrxpie.cab O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} - https://www-secure.symantec.com/techsupp/activedata/SymAData.dll O16 - DPF: {D18F962A-3722-4B59-B08D-28BB9EB2281E} - http://photos.yahoo.com/ocx/us/yexplorer1_9us.cab O16 - DPF: {D719897A-B07A-4C0C-AEA9-9B663A28DFCB} (iTunesDetector Class) - http://ax.phobos.apple.com.edgesuite.net/detection/ITDetector.cab O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} - http://download.games.yahoo.com/games/popcap/zuma/popcaploader_v5.cab O16 - DPF: {E504EE6E-47C6-11D5-B8AB-00D0B78F3D48} - http://chat.yahoo.com/cab/yvwrctl.cab O16 - DPF: {E77C0D62-882A-456F-AD8F-7C6C9569B8C7} - https://www-secure.symantec.com/techsupp/activedata/ActiveData.cab O16 - DPF: {E855A2D4-987E-4F3B-A51C-64D10A7E2479} - http://tools.ebayimg.com/eps/activex/EPSControl_v1-0-3-0.cab O16 - DPF: {F229AB32-7BF9-4225-B78F-B4680AE6FC23} - http://www.snapfish.com/SnapfishUpload.cab O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} - http://chat.msn.com/bin/msnchat45.cab O16 - DPF: {F7DC2A2E-FC34-11D3-B1D9-00A0C99B41BB} - http://www.zoomify.com/download/zoomify204.cab O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL O18 - Filter: text/html - (no CLSID) - (no file) O19 - User stylesheet: C:\Program Files\Internet Explorer\readme.txt (file missing) O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll O21 - SSODL: Works2002Setup - {E8F0671B-167D-E4BA-5703-0B24D51D1B38} - (no file) O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Compaq Advisor (Compaq_RBA) - NeoPlanet - C:\Program Files\compaq\Compaq Advisor\bin\compaq-rba.exe O23 - Service: Crypkey License - Kenonic Controls Ltd. - C:\WINDOWS\SYSTEM32\crypserv.exe O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: iolo System Guard (IOLO_SRV) - Unknown owner - C:\Program Files\iolo\System Mechanic Professional 6\IoloSGCtrl.exe O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe O23 - Service: kavsvc - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools Research Pty Ltd - C:\Program Files\Spyware Doctor\sdhelp.exe O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
Did you run Ewdio in safe mode? If not, please do so. Save the Ewdio log. Then, go here http://www.pandasoftware.com/products/activescan Scan and save the log. Post back with the Ewdio log and Active Scan log.
Niobis - thanx for the reply!!!!! Here is my scan with Ewidos in safemode: --------------------------------------------------------- ewido anti-spyware - Scan Report --------------------------------------------------------- + Created at: 12:14:27 PM 8/27/2006 + Scan result: C:\Documents and Settings\DaleJrFan#8\Cookies\dalejrfan#8@dalejrfan[13].txt -> TrackingCookie.2o7 : No action taken. :mozilla.71:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Adbrite : No action taken. :mozilla.72:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Adbrite : No action taken. :mozilla.73:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Adbrite : No action taken. :mozilla.74:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Adbrite : No action taken. :mozilla.41:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Advertising : No action taken. :mozilla.42:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Advertising : No action taken. :mozilla.44:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Advertising : No action taken. :mozilla.45:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Advertising : No action taken. C:\Documents and Settings\DaleJrFan#8\Cookies\dalejrfan#8@dalejrfan[14].txt -> TrackingCookie.Advertising : No action taken. :mozilla.62:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Atdmt : No action taken. C:\Documents and Settings\DaleJrFan#8\Cookies\dalejrfan#8@dalejrfan[8].txt -> TrackingCookie.Atdmt : No action taken. :mozilla.12:C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt -> TrackingCookie.Casalemedia : No action taken. :mozilla.13:C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt -> TrackingCookie.Casalemedia : No action taken. :mozilla.15:C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt -> TrackingCookie.Casalemedia : No action taken. :mozilla.33:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Casalemedia : No action taken. :mozilla.36:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Casalemedia : No action taken. :mozilla.37:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Casalemedia : No action taken. :mozilla.14:C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Firefox\Profiles\n0uytnpj.default\cookies.txt -> TrackingCookie.Doubleclick : No action taken. :mozilla.14:C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt -> TrackingCookie.Doubleclick : No action taken. :mozilla.40:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Doubleclick : No action taken. C:\Documents and Settings\DaleJrFan#8\Cookies\dalejrfan#8@dalejrfan[7].txt -> TrackingCookie.Doubleclick : No action taken. :mozilla.46:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Fastclick : No action taken. :mozilla.52:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Fastclick : No action taken. :mozilla.53:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Fastclick : No action taken. :mozilla.54:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Fastclick : No action taken. :mozilla.116:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Hitbox : No action taken. :mozilla.117:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Hitbox : No action taken. :mozilla.118:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Hitbox : No action taken. :mozilla.24:C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt -> TrackingCookie.Hitbox : No action taken. :mozilla.25:C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt -> TrackingCookie.Hitbox : No action taken. :mozilla.26:C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt -> TrackingCookie.Hitbox : No action taken. :mozilla.11:C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt -> TrackingCookie.Mediaplex : No action taken. C:\Documents and Settings\DaleJrFan#8\Cookies\dalejrfan#8@dalejrfan[4].txt -> TrackingCookie.Mediaplex : No action taken. :mozilla.50:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Questionmarket : No action taken. :mozilla.51:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Questionmarket : No action taken. :mozilla.10:C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Firefox\Profiles\n0uytnpj.default\cookies.txt -> TrackingCookie.Ru4 : No action taken. :mozilla.12:C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Firefox\Profiles\n0uytnpj.default\cookies.txt -> TrackingCookie.Ru4 : No action taken. :mozilla.93:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Tacoda : No action taken. :mozilla.94:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Tacoda : No action taken. :mozilla.95:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Tacoda : No action taken. :mozilla.96:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Tacoda : No action taken. :mozilla.99:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Tacoda : No action taken. :mozilla.26:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Trafficmp : No action taken. :mozilla.27:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Trafficmp : No action taken. :mozilla.28:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Trafficmp : No action taken. :mozilla.29:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Trafficmp : No action taken. :mozilla.30:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Trafficmp : No action taken. :mozilla.31:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Trafficmp : No action taken. :mozilla.32:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Trafficmp : No action taken. :mozilla.16:C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt -> TrackingCookie.Tribalfusion : No action taken. :mozilla.34:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Tribalfusion : No action taken. :mozilla.35:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Tribalfusion : No action taken. :mozilla.10:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Yieldmanager : No action taken. :mozilla.11:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Yieldmanager : No action taken. :mozilla.15:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Yieldmanager : No action taken. :mozilla.6:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Yieldmanager : No action taken. :mozilla.8:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Yieldmanager : No action taken. :mozilla.9:C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt/{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt -> TrackingCookie.Yieldmanager : No action taken. C:\WINDOWS\system32\1024 -> Trojan.Small : No action taken. ::Report end
Ok heres the Panda results : Incident Status Location Potentially unwanted tool:application/zango Not disinfected HKEY_LOCAL_MACHINE\Software\Microsoft\Internet Explorer\ActiveX Compatibility\{99410cde-6f16-42ce-9d49-3807f78f0287} Spyware:Cookie/QuestionMarket Not disinfected C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt[.questionmarket.com/] Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt[.advertising.com/] Spyware:Cookie/Doubleclick Not disinfected C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt[.doubleclick.net/] Spyware:Cookie/Advertising Not disinfected C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt[.advertising.com/] Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt[.casalemedia.com/] Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt[ad.yieldmanager.com/] Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt[.casalemedia.com/] Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt[ad.yieldmanager.com/] Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt[.casalemedia.com/] Spyware:Cookie/Traffic Marketplace Not disinfected C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt[.trafficmp.com/] Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt[.atdmt.com/] Spyware:Cookie/AdDynamix Not disinfected C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt[.ads.addynamix.com/] Spyware:Cookie/cs.sexcounter Not disinfected C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt[.cs.sexcounter.com/] Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt[.realmedia.com/] Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt[.tribalfusion.com/] Spyware:Cookie/FastClick Not disinfected C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt[.fastclick.net/] Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\DaleJrFan#8\Application Data\Mozilla\Profiles\default\jf3av6i7.slt\cookies.txt[.adrevolver.com/] Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\DaleJrFan#8\Cookies\dalejrfan#8@dalejrfan[7].txt Potentially unwanted tool:Application/iWon Not disinfected C:\Program Files\Excite\PrvtMsgr\bin\x8Idle0.dll Spyware:Cookie/YieldManager Not disinfected C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt[{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt][ad.yieldmanager.com/] Spyware:Cookie/RealMedia Not disinfected C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt[{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt][.realmedia.com/] Spyware:Cookie/YieldManager Not disinfected C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt[{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt][ad.yieldmanager.com/] Spyware:Cookie/RealMedia Not disinfected C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt[{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt][.realmedia.com/] Spyware:Cookie/Traffic Marketplace Not disinfected C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt[{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt][.trafficmp.com/] Spyware:Cookie/Casalemedia Not disinfected C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt[{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt][.casalemedia.com/] Spyware:Cookie/Tribalfusion Not disinfected C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt[{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt][.tribalfusion.com/] Spyware:Cookie/Casalemedia Not disinfected C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt[{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt][.casalemedia.com/] Spyware:Cookie/Doubleclick Not disinfected C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt[{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt][.doubleclick.net/] Spyware:Cookie/Advertising Not disinfected C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt[{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt][.advertising.com/] Spyware:Cookie/FastClick Not disinfected C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt[{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt][.fastclick.net/] Spyware:Cookie/QuestionMarket Not disinfected C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt[{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt][.questionmarket.com/] Spyware:Cookie/FastClick Not disinfected C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt[{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt][.fastclick.net/] Spyware:Cookie/Atlas DMT Not disinfected C:\Program Files\iolo\System Mechanic Professional 6\Undo\Manual\{15E1C347-698A-478F-82A2-6164DD7F88ED}\{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt[{A1E583BC-999C-4E5F-ACBD-D8CD22CD7A65}.txt][.atdmt.com/] Potentially unwanted tool:Application/Zango Not disinfected C:\Program Files\Mozilla Firefox\plugins\npclntax.dll Potentially unwanted tool:Application/Zango Not disinfected C:\Program Files\Netscape\Netscape 6\Plugins\npclntax.dll Potentially unwanted tool:Application/Seekmo Not disinfected C:\Program Files\Seekmo Programs\Seekmo Toolbar\SeekmoTB.dll Potentially unwanted tool:Application/Seekmo Not disinfected C:\Program Files\Seekmo Programs\Seekmo Toolbar\SeekmoTBUninstaller.exe
Sorry for the late reply, I've been away for a few days. Ok, even though Ewdio only found tracking cookies, I'd like for you to run another sacn in safe mode. When it finishes, set all items to delete then click "Apply All Actions". Save the report. Then do you use Zango or Seekmo? If not, go to Add/Remove programs and look for them. If/when found, remove them. Post a new HijackThis log along with the Ewido log. I'll try to get back to you faster this time.