Ad-aware and Hijackthis log files submission

Discussion in 'adware, spyware & hijack cleaning' started by talonsgrip, Jul 13, 2004.

Thread Status:
Not open for further replies.
  1. talonsgrip

    talonsgrip Registered Member

    Joined:
    Jul 13, 2004
    Posts:
    5
    Hi all!

    I'm having a few problems with my computer. I'm using Windows Xp and just updaete Earthlink Total Access to 2005. My start page got hijacked, but I seem to have fixed it. However, once I connect to Total access and attempt to bring up the web, my yahoo start page partially loadds and then locks up. If I do a restart and DO NOT sign into Total access 2005, I can bring up my yahoo start page with no problem.

    I also downloaded Yahoo Messenger and started having pop up problems. I deleted it, but I'm not sure if I missed something.

    The other problem is that Adobe Acrobat has a lot of lag time. I use it a lot for college classes. I ran Ad-aware, but did not delete anything. I also ran Hijack this. Here's the logs:

    Ad-aware Log:

    Lavasoft Ad-aware Personal Build 6.181
    Logfile created on :Tuesday, July 13, 2004 12:32:10 PM
    Created with Ad-aware Personal, free for private use.
    Using reference-file :01R332 12.07.2004
    ______________________________________________________

    Reffile status:
    =========================
    Reference file loaded:
    Reference Number : 01R331 08.07.2004
    Internal build : 263
    File location : C:\PROGRA~1\LAVASOFT\AD-AWA~1\reflist.ref
    Total size : 1300142 Bytes
    Signature data size : 1279388 Bytes
    Reference data size : 20690 Bytes
    Signatures total : 28395
    Target categories : 10
    Target families : 519
    7-13-2004 12:27:28 PM Performing Webupdate...

    Installing Update...
    Reference file loaded:
    Reference Number : 01R332 12.07.2004
    Internal build : 264
    File location : C:\PROGRA~1\LAVASOFT\AD-AWA~1\reflist.ref
    Total size : 1304680 Bytes
    Signature data size : 1283888 Bytes
    Reference data size : 20728 Bytes
    Signatures total : 28484
    Target categories : 10
    Target families : 520

    7-13-2004 12:29:37 PM Success.
    Update successfully downlodaded and installed.


    Memory + processor status:
    ==========================
    Number of processors : 1
    Processor architecture : Intel Pentium III
    Memory available:36 %
    Total physical memory:261424 kb
    Available physical memory:93456 kb
    Total page file size:632656 kb
    Available on page file:428216 kb
    Total virtual memory:2097024 kb
    Available virtual memory:2047716 kb
    OS:

    Ad-aware Settings
    =========================
    Set : Activate in-depth scan (Recommended)
    Set : Safe mode (always request confirmation)
    Set : Scan active processes
    Set : Scan registry
    Set : Deep scan registry
    Set : Scan my IE Favorites for banned URLs
    Set : Scan within archives
    Set : Scan my Hosts file

    Extended Ad-aware Settings
    =========================
    Set : Unload recognized processes during scanning
    Set : Include basic Ad-aware settings in logfile
    Set : Include additional Ad-aware settings in logfile
    Set : Automatically try to unregister objects prior to deletion
    Set : Let windows remove files in use at next reboot
    Set : Always back up reference file, before updating
    Set : Play sound if scan produced a result


    7-13-2004 12:32:10 PM - Scan started. (Custom mode)

    Listing running processes
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    #:1 [smss.exe]
    FilePath : \SystemRoot\System32\
    ThreadCreationTime : 7-13-2004 4:05:22 PM
    BasePriority : Normal


    #:2 [winlogon.exe]
    FilePath : \??\C:\WINNT\system32\
    ThreadCreationTime : 7-13-2004 4:05:31 PM
    BasePriority : High


    #:3 [services.exe]
    FilePath : C:\WINNT\system32\
    ThreadCreationTime : 7-13-2004 4:05:32 PM
    BasePriority : Normal
    FileSize : 99 KB
    FileVersion : 5.1.2600.0 (xpclient.010817-114:cool:
    ProductVersion : 5.1.2600.0
    CompanyName : Microsoft Corporation
    FileDescription : Services and Controller app
    InternalName : services.exe
    OriginalFilename : services.exe
    ProductName : Microsoft
    Created on : 8/23/2001 10:00:00 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/23/2001 10:00:00 PM

    #:4 [lsass.exe]
    FilePath : C:\WINNT\system32\
    ThreadCreationTime : 7-13-2004 4:05:32 PM
    BasePriority : Normal
    FileSize : 11 KB
    FileVersion : 5.1.2600.1106 (xpsp1.020828-1920)
    ProductVersion : 5.1.2600.1106
    CompanyName : Microsoft Corporation
    FileDescription : LSA Shell (Export Version)
    InternalName : lsass.exe
    OriginalFilename : lsass.exe
    ProductName : Microsoft
    Created on : 8/29/2002 5:41:26 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/29/2002 5:41:26 PM

    #:5 [svchost.exe]
    FilePath : C:\WINNT\system32\
    ThreadCreationTime : 7-13-2004 4:05:34 PM
    BasePriority : Normal
    FileSize : 12 KB
    FileVersion : 5.1.2600.0 (xpclient.010817-114:cool:
    ProductVersion : 5.1.2600.0
    CompanyName : Microsoft Corporation
    FileDescription : Generic Host Process for Win32 Services
    InternalName : svchost.exe
    OriginalFilename : svchost.exe
    ProductName : Microsoft
    Created on : 8/23/2001 10:00:00 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/23/2001 10:00:00 PM

    #:6 [svchost.exe]
    FilePath : C:\WINNT\System32\
    ThreadCreationTime : 7-13-2004 4:05:34 PM
    BasePriority : Normal
    FileSize : 12 KB
    FileVersion : 5.1.2600.0 (xpclient.010817-114:cool:
    ProductVersion : 5.1.2600.0
    CompanyName : Microsoft Corporation
    FileDescription : Generic Host Process for Win32 Services
    InternalName : svchost.exe
    OriginalFilename : svchost.exe
    ProductName : Microsoft
    Created on : 8/23/2001 10:00:00 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/23/2001 10:00:00 PM

    #:7 [ccsetmgr.exe]
    FilePath : C:\Program Files\Common Files\Symantec Shared\
    ThreadCreationTime : 7-13-2004 4:05:38 PM
    BasePriority : Normal
    FileSize : 229 KB
    FileVersion : 2.1.1.700
    ProductVersion : 2.1.1.700
    Copyright : Copyright (c) 2000-2003 Symantec Corporation. All rights reserved.
    CompanyName : Symantec Corporation
    FileDescription : Common Client Settings Manager Service
    InternalName : ccSetMgr
    OriginalFilename : ccSetMgr.exe
    ProductName : Common Client
    Created on : 12/8/2003 4:18:44 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 12/8/2003 4:18:44 PM

    #:8 [explorer.exe]
    FilePath : C:\WINNT\
    ThreadCreationTime : 7-13-2004 4:05:38 PM
    BasePriority : Normal
    FileSize : 973 KB
    FileVersion : 6.00.2800.1221 (xpsp2.030511-1403)
    ProductVersion : 6.00.2800.1221
    CompanyName : Microsoft Corporation
    FileDescription : Windows Explorer
    InternalName : explorer
    OriginalFilename : EXPLORER.EXE
    ProductName : Microsoft
    Created on : 5/12/2003 4:12:10 AM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/12/2003 4:12:10 AM

    #:9 [ccevtmgr.exe]
    FilePath : C:\Program Files\Common Files\Symantec Shared\
    ThreadCreationTime : 7-13-2004 4:05:39 PM
    BasePriority : Normal
    FileSize : 249 KB
    FileVersion : 2.1.1.700
    ProductVersion : 2.1.1.700
    Copyright : Copyright (c) 2000-2003 Symantec Corporation. All rights reserved.
    CompanyName : Symantec Corporation
    FileDescription : Common Client Event Manager Service
    InternalName : ccEvtMgr
    OriginalFilename : ccEvtMgr.exe
    ProductName : Common Client
    Created on : 12/8/2003 4:18:36 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 12/8/2003 4:18:36 PM

    #:10 [ltmsg.exe]
    FilePath : C:\WINNT\System32\
    ThreadCreationTime : 7-13-2004 4:05:42 PM
    BasePriority : Normal
    FileSize : 38 KB
    FileVersion : 3, 0, 0, 2
    ProductVersion : 3, 0, 0, 2
    Copyright : Copyright
    CompanyName : LUCENT TECHNOLOGIES
    FileDescription : ltmsg
    InternalName : ltmsg
    OriginalFilename : ltmsg.exe
    ProductName : LUCENT TECHNOLOGIES ltmsg
    Created on : 4/3/2001 5:38:30 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/3/2001 5:38:30 PM

    #:11 [spoolsv.exe]
    FilePath : C:\WINNT\system32\
    ThreadCreationTime : 7-13-2004 4:05:42 PM
    BasePriority : Normal
    FileSize : 50 KB
    FileVersion : 5.1.2600.0 (XPClient.010817-114:cool:
    ProductVersion : 5.1.2600.0
    CompanyName : Microsoft Corporation
    FileDescription : Spooler SubSystem App
    InternalName : spoolsv.exe
    OriginalFilename : spoolsv.exe
    ProductName : Microsoft
    Created on : 8/23/2001 10:00:00 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/23/2001 10:00:00 PM

    #:12 [ccapp.exe]
    FilePath : C:\Program Files\Common Files\Symantec Shared\
    ThreadCreationTime : 7-13-2004 4:05:42 PM
    BasePriority : Normal
    FileSize : 69 KB
    FileVersion : 2.1.1.700
    ProductVersion : 2.1.1.700
    Copyright : Copyright (c) 2000-2003 Symantec Corporation. All rights reserved.
    CompanyName : Symantec Corporation
    FileDescription : Common Client User Session
    InternalName : ccApp
    OriginalFilename : ccApp.exe
    ProductName : Common Client
    Created on : 12/8/2003 4:18:34 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 12/8/2003 4:18:34 PM

    #:13 [qttask.exe]
    FilePath : C:\Program Files\QuickTime\
    ThreadCreationTime : 7-13-2004 4:05:43 PM
    BasePriority : Normal
    FileSize : 96 KB
    FileVersion : 6.5.1
    ProductVersion : QuickTime 6.5.1
    CompanyName : Apple Computer, Inc.
    InternalName : QuickTime Task
    OriginalFilename : QTTask.exe
    ProductName : QuickTime
    Created on : 6/5/2004 1:18:53 AM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 6/5/2004 1:18:54 AM

    #:14 [msmsgs.exe]
    FilePath : C:\Program Files\Messenger\
    ThreadCreationTime : 7-13-2004 4:05:43 PM
    BasePriority : Normal
    FileSize : 1456 KB
    FileVersion : 4.7.2009
    ProductVersion : Version 4.7
    Copyright : Copyright (c) Microsoft Corporation 1997-2003
    CompanyName : Microsoft Corporation
    FileDescription : Messenger
    InternalName : msmsgs
    OriginalFilename : msmsgs.exe
    ProductName : Messenger
    Created on : 4/15/2003 2:30:14 AM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/15/2003 2:30:14 AM

    #:15 [rundll32.exe]
    FilePath : C:\WINNT\System32\
    ThreadCreationTime : 7-13-2004 4:05:43 PM
    BasePriority : Normal
    FileSize : 31 KB
    FileVersion : 5.1.2600.0 (xpclient.010817-114:cool:
    ProductVersion : 5.1.2600.0
    CompanyName : Microsoft Corporation
    FileDescription : Run a DLL as an App
    InternalName : rundll
    OriginalFilename : RUNDLL.EXE
    ProductName : Microsoft
    Created on : 8/23/2001 10:00:00 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/23/2001 10:00:00 PM

    #:16 [aim.exe]
    FilePath : C:\PROGRA~1\AIM\
    ThreadCreationTime : 7-13-2004 4:05:44 PM
    BasePriority : Normal
    FileSize : 60 KB
    FileVersion : 5.5.3595
    ProductVersion : 5.5.3595
    Copyright : Copyright
    CompanyName : America Online, Inc.
    FileDescription : AOL Instant Messenger
    InternalName : AIM
    OriginalFilename : AIM.EXE
    ProductName : AOL Instant Messenger
    Created on : 4/17/2004 5:34:05 AM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/27/2004 10:18:34 PM

    #:17 [devldr32.exe]
    FilePath : C:\WINNT\System32\
    ThreadCreationTime : 7-13-2004 4:05:47 PM
    BasePriority : Normal
    FileSize : 23 KB
    FileVersion : 1, 0, 0, 17
    ProductVersion : 1, 0, 0, 17
    Copyright : Copyright (C) Creative Technology Ltd. 1998-2001
    CompanyName : Creative Technology Ltd.
    FileDescription : DevLdr32
    InternalName : DevLdr
    OriginalFilename : DevLdr32.exe
    ProductName : Creative Ring3 NT Inteface
    Created on : 4/15/2004 8:52:16 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/18/2001 5:36:42 AM

    #:18 [wkcalrem.exe]
    FilePath : C:\Program Files\Common Files\Microsoft Shared\Works Shared\
    ThreadCreationTime : 7-13-2004 4:05:48 PM
    BasePriority : Normal
    FileSize : 24 KB
    FileVersion : 6.00.1828.1
    ProductVersion : 6.00.1828.1
    Copyright : Copyright
    CompanyName : Microsoft
    FileDescription : Microsoft
    InternalName : WkCalRem
    OriginalFilename : WKCALREM.EXE
    ProductName : Microsoft
    Created on : 8/8/2000 7:00:00 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/8/2000 7:00:00 PM

    #:19 [navapsvc.exe]
    FilePath : C:\Program Files\Norton Internet Security\Norton AntiVirus\
    ThreadCreationTime : 7-13-2004 4:05:49 PM
    BasePriority : Normal
    FileSize : 155 KB
    FileVersion : 10.00.2
    ProductVersion : 10.00.2
    Copyright : Norton AntiVirus 2004 for Windows 98/ME/2000/XP Copyright (c) 2003 Symantec Corporation. All rights reserved.
    CompanyName : Symantec Corporation
    FileDescription : Norton AntiVirus Auto-Protect Service
    InternalName : NAVAPSVC
    OriginalFilename : NAVAPSVC.EXE
    ProductName : Norton AntiVirus
    Created on : 5/15/2004 3:59:16 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/23/2004 6:04:18 PM

    #:20 [nvsvc32.exe]
    FilePath : C:\WINNT\System32\
    ThreadCreationTime : 7-13-2004 4:05:50 PM
    BasePriority : Normal
    FileSize : 76 KB
    FileVersion : 6.14.10.4523
    ProductVersion : 6.14.10.4523
    Copyright : (C) NVIDIA Corporation. All rights reserved.
    CompanyName : NVIDIA Corporation
    FileDescription : NVIDIA Driver Helper Service, Version 45.23
    InternalName : NVSVC
    OriginalFilename : nvsvc32.exe
    ProductName : NVIDIA Driver Helper Service, Version 45.23
    Created on : 7/28/2003 10:19:00 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 7/28/2003 10:19:00 PM

    #:21 [savscan.exe]
    FilePath : C:\Program Files\Norton Internet Security\Norton AntiVirus\
    ThreadCreationTime : 7-13-2004 4:05:50 PM
    BasePriority : Normal
    FileSize : 189 KB
    FileVersion : 9.2.1.14
    ProductVersion : 9.2
    Copyright : Copyright (c) 2003 Symantec Corporation
    CompanyName : Symantec Corporation
    FileDescription : Symantec AntiVirus Scanner
    InternalName : SAVSCAN
    OriginalFilename : SAVSCAN.EXE
    ProductName : Symantec AntiVirus AutoProtect
    Created on : 11/7/2003 5:46:58 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 11/7/2003 5:46:58 PM

    #:22 [sndsrvc.exe]
    FilePath : C:\Program Files\Common Files\Symantec Shared\
    ThreadCreationTime : 7-13-2004 4:05:52 PM
    BasePriority : Normal
    FileSize : 189 KB
    FileVersion : 5.3.2.67
    ProductVersion : 5.3
    Copyright : Copyright 2002, 2003 Symantec Corporation
    CompanyName : Symantec Corporation
    FileDescription : Network Driver Service
    InternalName : SndSrvc
    OriginalFilename : SndSrvc.exe
    ProductName : Symantec Security Drivers
    Created on : 6/29/2004 11:14:38 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 6/29/2004 11:14:38 PM

    #:23 [svchost.exe]
    FilePath : C:\WINNT\System32\
    ThreadCreationTime : 7-13-2004 4:05:53 PM
    BasePriority : Normal
    FileSize : 12 KB
    FileVersion : 5.1.2600.0 (xpclient.010817-114:cool:
    ProductVersion : 5.1.2600.0
    CompanyName : Microsoft Corporation
    FileDescription : Generic Host Process for Win32 Services
    InternalName : svchost.exe
    OriginalFilename : svchost.exe
    ProductName : Microsoft
    Created on : 8/23/2001 10:00:00 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/23/2001 10:00:00 PM

    #:24 [symlcsvc.exe]
    FilePath : C:\Program Files\Common Files\Symantec Shared\CCPD-LC\
    ThreadCreationTime : 7-13-2004 4:05:53 PM
    BasePriority : Normal
    FileSize : 572 KB
    FileVersion : 1, 8, 48, 79
    ProductVersion : 1, 8, 48, 79
    Copyright : Copyright (C) 2003
    CompanyName : Symantec Corporation
    FileDescription : Symantec Core Component
    InternalName : symlcsvc
    OriginalFilename : symlcsvc.exe
    ProductName : Symantec Core Component
    Created on : 4/22/2004 7:47:17 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/22/2004 7:47:18 PM

    #:25 [winword.exe]
    FilePath : C:\Program Files\Microsoft Office\Office\
    ThreadCreationTime : 7-13-2004 4:46:20 PM
    BasePriority : Normal
    FileSize : 8620 KB
    FileVersion : 9.0.8216
    ProductVersion : 9.0.8216
    Copyright : Copyright
    CompanyName : Microsoft Corporation
    FileDescription : Microsoft Word for Windows
    InternalName : WinWord
    OriginalFilename : WinWord.exe
    ProductName : Microsoft Office 2000
    Created on : 10/17/2003 6:02:28 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 10/17/2003 6:02:28 PM

    #:26 [agentsvr.exe]
    FilePath : C:\WINNT\msagent\
    ThreadCreationTime : 7-13-2004 4:47:11 PM
    BasePriority : Normal
    FileSize : 229 KB
    FileVersion : 2.00.0.3422
    ProductVersion : 2.00.0.3422
    Copyright : Copyright (C) Microsoft Corp. 1997-98
    CompanyName : Microsoft Corporation
    FileDescription : Microsoft Agent Server
    InternalName : AgentServer
    OriginalFilename : AgentSvr.exe
    ProductName : Microsoft Agent Server
    Created on : 8/23/2001 10:00:00 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/23/2001 10:00:00 PM

    #:27 [iexplore.exe]
    FilePath : C:\Program Files\Internet Explorer\
    ThreadCreationTime : 7-13-2004 7:04:44 PM
    BasePriority : Normal
    FileSize : 89 KB
    FileVersion : 6.00.2800.1106 (xpsp1.020828-1920)
    ProductVersion : 6.00.2800.1106
    CompanyName : Microsoft Corporation
    FileDescription : Internet Explorer
    InternalName : iexplore
    OriginalFilename : IEXPLORE.EXE
    ProductName : Microsoft
    Created on : 4/15/2004 8:59:52 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/29/2002 10:41:26 AM

    #:28 [ad-aware.exe]
    FilePath : C:\PROGRA~1\LAVASOFT\AD-AWA~1\
    ThreadCreationTime : 7-13-2004 7:25:23 PM
    BasePriority : Normal
    FileSize : 668 KB
    FileVersion : 6.0.1.181
    ProductVersion : 6.0.0.0
    Copyright : Copyright
    CompanyName : Lavasoft Sweden
    FileDescription : Ad-aware 6 core application
    InternalName : Ad-aware.exe
    OriginalFilename : Ad-aware.exe
    ProductName : Lavasoft Ad-aware Plus
    Created on : 7/12/2004 4:18:34 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 7/13/2003 4:00:20 AM

    Memory scan result :
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 0
    Objects found so far: 0


    Started registry scan
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    Registry scan result :
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 0
    Objects found so far: 0


    Started deep registry scan
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    Deep registry scan result :
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 0
    Objects found so far: 0


    Deep scanning and examining files (C:)
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    eUniverse Object recognized!
    Type : File
    Data : in10b6.dll
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\SYSTEM\
    FileSize : 176 KB
    FileVersion : 1, 0, 0, 1
    ProductVersion : 1, 0, 0, 1
    Copyright : Copyright 2001
    FileDescription : exe_in_dll Module
    InternalName : exe_in_dll
    OriginalFilename : exe_in_dll.DLL
    ProductName : exe_in_dll Module
    Created on : 3/9/2004 5:18:04 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 3/9/2004 5:19:30 PM



    eUniverse Object recognized!
    Type : File
    Data : setup_incred_3.exe
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\SYSTEM\
    FileSize : 136 KB
    Created on : 3/9/2004 5:19:30 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 3/9/2004 5:19:32 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : mathew@tripod[2].txt
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 2/26/2004 4:19:37 AM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 2/20/2004 8:01:48 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : mathew@tribalfusion[1].txt
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\Application Data\Earthlink\6.0\talonsgrip@earthlink.net\Cookies\

    Created on : 4/14/2004 7:50:30 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/14/2004 7:50:32 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : mathew@z1.adserver[1].txt
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\Application Data\Earthlink\6.0\talonsgrip@earthlink.net\Cookies\

    Created on : 4/15/2004 4:21:35 AM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/15/2004 4:21:36 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : mathew@0001[1].txt
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\Application Data\Earthlink\6.0\talonsgrip@earthlink.net\Cookies\

    Created on : 4/13/2004 7:11:26 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/13/2004 7:11:28 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : mathew@edge.ru4[1].txt
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\Application Data\Earthlink\6.0\talonsgrip@earthlink.net\Cookies\

    Created on : 4/14/2004 10:01:09 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/14/2004 10:01:10 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : mathew@netshelter.adtrix[1].txt
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\Application Data\Earthlink\6.0\talonsgrip@earthlink.net\Cookies\

    Created on : 4/15/2004 4:21:35 AM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/15/2004 4:21:36 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : mathew@questionmarket[2].txt
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\Application Data\Earthlink\6.0\talonsgrip@earthlink.net\Cookies\

    Created on : 4/15/2004 7:11:48 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/15/2004 7:11:50 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : mathew@adrevolver[1].txt
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\Application Data\Earthlink\6.0\talonsgrip@earthlink.net\Cookies\

    Created on : 4/4/2004 8:41:13 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/4/2004 8:41:14 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : mathew@tripod[2].txt
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\Cookies\

    Created on : 2/20/2004 8:01:46 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 2/20/2004 8:01:48 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@euniverseads[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\talonsgrip@earthlink.net\Cookies\

    Created on : 7/9/2004 7:39:09 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 7/9/2004 7:39:12 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@adrevolver[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\talonsgrip@earthlink.net\Cookies\

    Created on : 7/10/2004 4:45:39 AM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 7/10/2004 4:45:40 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@realmedia[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\talonsgrip@earthlink.net\Cookies\

    Created on : 7/12/2004 8:04:22 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 7/12/2004 8:04:24 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@edge.ru4[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\
    FileSize : 1 KB
    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/9/2004 2:44:12 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@advertising[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/2/2004 1:14:08 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@tripod[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/19/2004 3:01:58 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@realmedia[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/19/2004 3:02:06 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@z1.adserver[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/8/2004 4:22:38 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@trafficmp[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/8/2004 4:21:18 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@tribalfusion[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/8/2004 2:53:48 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@hitbox[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/23/2004 2:03:50 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@ehg-aol.hitbox[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/20/2004 8:11:14 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@clickagents[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/23/2004 7:29:38 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@qksrv[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/2/2004 12:55:36 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@tmpad[2].txt
    Category : Data Miner
    Comment : www.searchtraffic.com
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/15/2004 11:04:26 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@ad-logics[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/15/2004 11:04:50 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@ehg-findlaw.hitbox[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\
    FileSize : 1 KB
    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/23/2004 12:55:18 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@ehg-dig.hitbox[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/23/2004 2:03:50 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@atdmt[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/15/2004 11:10:58 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@questionmarket[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/23/2004 2:03:38 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@zedo[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/23/2004 2:03:24 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@gator[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/8/2004 4:27:14 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@fastclick[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/8/2004 4:23:10 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@cgi-bin[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/8/2004 4:21:18 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@servedby.advertising[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\
    FileSize : 1 KB
    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/8/2004 4:20:00 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@cgi-bin[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/2/2004 3:43:40 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@mediaplex[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/11/2004 5:35:30 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@bravenet[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/2/2004 3:44:00 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@doubleclick[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/16/2004 4:49:22 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@ads.specificpop[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/17/2004 4:54:00 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@ehg-cafepress.hitbox[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/18/2004 4:55:44 AM



    Disk scan result for C:\
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 0
    Objects found so far: 42


    Scanning Hosts file(C:\WINNT\System32\drivers\etc\hosts)
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    Hosts file scan result:
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    1 entries scanned.
    New objects :0
    Objects found so far: 42




    Performing conditional scans..
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    Conditional scan result:
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 0
    Objects found so far: 42


    12:47:26 PM Scan complete

    Summary of this scan
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    Total scanning time :00:15:15:266
    Objects scanned :138758
    Objects identified :42
    Objects ignored :0
    New objects :42

    Hijackthis! Log:

    Logfile of HijackThis v1.98.0
    Scan saved at 12:51:21 PM, on 7/13/2004
    Platform: Windows XP SP1 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    Running processes:
    C:\WINNT\System32\smss.exe
    C:\WINNT\system32\winlogon.exe
    C:\WINNT\system32\services.exe
    C:\WINNT\system32\lsass.exe
    C:\WINNT\system32\svchost.exe
    C:\WINNT\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    C:\WINNT\Explorer.EXE
    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    C:\WINNT\System32\ltmsg.exe
    C:\WINNT\system32\spoolsv.exe
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\WINNT\System32\RUNDLL32.EXE
    C:\PROGRA~1\AIM\aim.exe
    C:\WINNT\System32\devldr32.exe
    C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
    C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
    C:\WINNT\System32\nvsvc32.exe
    C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
    C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    C:\WINNT\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Documents and Settings\Matthew\Desktop\MEDIA\hijackthis1980.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://start.earthlink.net/AL/Search
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://start.earthlink.net/AL/Search
    R3 - URLSearchHook: SrchHook Class - {44F9B173-041C-4825-A9B9-D914BD9DCBB3} - C:\Program Files\EarthLink TotalAccess\ElnIE.dll
    R3 - URLSearchHook: (no name) - ~CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
    O2 - BHO: EarthLink Popup Blocker - {4B5F2E08-6F39-479a-B547-B2026E4C7EDF} - C:\Program Files\EarthLink TotalAccess\PnEL.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
    O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
    O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
    O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: EarthLink Toolbar - {D7F30B62-8269-41AF-9539-B2697FA7D77E} - C:\Program Files\EarthLink TotalAccess\PnEL.dll
    O4 - HKLM\..\Run: [WorksFUD] C:\Program Files\Microsoft Works\wkfud.exe
    O4 - HKLM\..\Run: [Microsoft Works Portfolio] C:\Program Files\Microsoft Works\WksSb.exe /AllUsers
    O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINNT\System32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [LTWinModem1] ltmsg.exe 9
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [URLLSTCK.exe] C:\Program Files\Norton Internet Security\UrlLstCk.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [Propel Accelerator] "C:\Program Files\EarthLink TotalAccess\Accelerator\PropelAC.exe"
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINNT\System32\NVMCTRAY.DLL,NvTaskbarInit
    O4 - HKCU\..\Run: [AIM] C:\PROGRA~1\AIM\aim.exe -cnetwait.odl
    O4 - HKCU\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe
    O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
    O4 - HKCU\..\Run: [E6TaskPanel] "C:\Program Files\EarthLink TotalAccess\TaskPanl.exe" -winstart
    O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
    O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM\aim.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
    O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
    O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/suite/yautocomplete.cab
    O16 - DPF: {C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE} (Symantec RuFSI Registry Information Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{878609C8-7D01-4E37-B7FD-1495F3C20215}: NameServer = 207.69.188.187 207.69.188.186
     
  2. talonsgrip

    talonsgrip Registered Member

    Joined:
    Jul 13, 2004
    Posts:
    5
    Re: Ad-aware and Hijackthis log files submission: more info

    Oh! I forgot to mention that I can't get Spyware Blaster to update. I get a server error. Has something blocked the update feature?
     
  3. talonsgrip

    talonsgrip Registered Member

    Joined:
    Jul 13, 2004
    Posts:
    5
    Any hel yet?
     
Thread Status:
Not open for further replies.
  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.