Ad-aware and Hijackthis log files submission

Discussion in 'adware, spyware & hijack cleaning' started by talonsgrip, Jul 13, 2004.

Thread Status:
Not open for further replies.
  1. talonsgrip

    talonsgrip Registered Member

    Joined:
    Jul 13, 2004
    Posts:
    5
    Hi all!

    I'm having a few problems with my computer. I'm using Windows Xp and just updaete Earthlink Total Access to 2005. My start page got hijacked, but I seem to have fixed it. However, once I connect to Total access and attempt to bring up the web, my yahoo start page partially loadds and then locks up. If I do a restart and DO NOT sign into Total access 2005, I can bring up my yahoo start page with no problem.

    I also downloaded Yahoo Messenger and started having pop up problems. I deleted it, but I'm not sure if I missed something.

    The other problem is that Adobe Acrobat has a lot of lag time. I use it a lot for college classes. I ran Ad-aware, but did not delete anything. I also ran Hijack this. Here's the logs:

    Ad-aware Log:

    Lavasoft Ad-aware Personal Build 6.181
    Logfile created on :Tuesday, July 13, 2004 12:32:10 PM
    Created with Ad-aware Personal, free for private use.
    Using reference-file :01R332 12.07.2004
    ______________________________________________________

    Reffile status:
    =========================
    Reference file loaded:
    Reference Number : 01R331 08.07.2004
    Internal build : 263
    File location : C:\PROGRA~1\LAVASOFT\AD-AWA~1\reflist.ref
    Total size : 1300142 Bytes
    Signature data size : 1279388 Bytes
    Reference data size : 20690 Bytes
    Signatures total : 28395
    Target categories : 10
    Target families : 519
    7-13-2004 12:27:28 PM Performing Webupdate...

    Installing Update...
    Reference file loaded:
    Reference Number : 01R332 12.07.2004
    Internal build : 264
    File location : C:\PROGRA~1\LAVASOFT\AD-AWA~1\reflist.ref
    Total size : 1304680 Bytes
    Signature data size : 1283888 Bytes
    Reference data size : 20728 Bytes
    Signatures total : 28484
    Target categories : 10
    Target families : 520

    7-13-2004 12:29:37 PM Success.
    Update successfully downlodaded and installed.


    Memory + processor status:
    ==========================
    Number of processors : 1
    Processor architecture : Intel Pentium III
    Memory available:36 %
    Total physical memory:261424 kb
    Available physical memory:93456 kb
    Total page file size:632656 kb
    Available on page file:428216 kb
    Total virtual memory:2097024 kb
    Available virtual memory:2047716 kb
    OS:

    Ad-aware Settings
    =========================
    Set : Activate in-depth scan (Recommended)
    Set : Safe mode (always request confirmation)
    Set : Scan active processes
    Set : Scan registry
    Set : Deep scan registry
    Set : Scan my IE Favorites for banned URLs
    Set : Scan within archives
    Set : Scan my Hosts file

    Extended Ad-aware Settings
    =========================
    Set : Unload recognized processes during scanning
    Set : Include basic Ad-aware settings in logfile
    Set : Include additional Ad-aware settings in logfile
    Set : Automatically try to unregister objects prior to deletion
    Set : Let windows remove files in use at next reboot
    Set : Always back up reference file, before updating
    Set : Play sound if scan produced a result


    7-13-2004 12:32:10 PM - Scan started. (Custom mode)

    Listing running processes
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    #:1 [smss.exe]
    FilePath : \SystemRoot\System32\
    ThreadCreationTime : 7-13-2004 4:05:22 PM
    BasePriority : Normal


    #:2 [winlogon.exe]
    FilePath : \??\C:\WINNT\system32\
    ThreadCreationTime : 7-13-2004 4:05:31 PM
    BasePriority : High


    #:3 [services.exe]
    FilePath : C:\WINNT\system32\
    ThreadCreationTime : 7-13-2004 4:05:32 PM
    BasePriority : Normal
    FileSize : 99 KB
    FileVersion : 5.1.2600.0 (xpclient.010817-114:cool:
    ProductVersion : 5.1.2600.0
    CompanyName : Microsoft Corporation
    FileDescription : Services and Controller app
    InternalName : services.exe
    OriginalFilename : services.exe
    ProductName : Microsoft
    Created on : 8/23/2001 10:00:00 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/23/2001 10:00:00 PM

    #:4 [lsass.exe]
    FilePath : C:\WINNT\system32\
    ThreadCreationTime : 7-13-2004 4:05:32 PM
    BasePriority : Normal
    FileSize : 11 KB
    FileVersion : 5.1.2600.1106 (xpsp1.020828-1920)
    ProductVersion : 5.1.2600.1106
    CompanyName : Microsoft Corporation
    FileDescription : LSA Shell (Export Version)
    InternalName : lsass.exe
    OriginalFilename : lsass.exe
    ProductName : Microsoft
    Created on : 8/29/2002 5:41:26 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/29/2002 5:41:26 PM

    #:5 [svchost.exe]
    FilePath : C:\WINNT\system32\
    ThreadCreationTime : 7-13-2004 4:05:34 PM
    BasePriority : Normal
    FileSize : 12 KB
    FileVersion : 5.1.2600.0 (xpclient.010817-114:cool:
    ProductVersion : 5.1.2600.0
    CompanyName : Microsoft Corporation
    FileDescription : Generic Host Process for Win32 Services
    InternalName : svchost.exe
    OriginalFilename : svchost.exe
    ProductName : Microsoft
    Created on : 8/23/2001 10:00:00 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/23/2001 10:00:00 PM

    #:6 [svchost.exe]
    FilePath : C:\WINNT\System32\
    ThreadCreationTime : 7-13-2004 4:05:34 PM
    BasePriority : Normal
    FileSize : 12 KB
    FileVersion : 5.1.2600.0 (xpclient.010817-114:cool:
    ProductVersion : 5.1.2600.0
    CompanyName : Microsoft Corporation
    FileDescription : Generic Host Process for Win32 Services
    InternalName : svchost.exe
    OriginalFilename : svchost.exe
    ProductName : Microsoft
    Created on : 8/23/2001 10:00:00 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/23/2001 10:00:00 PM

    #:7 [ccsetmgr.exe]
    FilePath : C:\Program Files\Common Files\Symantec Shared\
    ThreadCreationTime : 7-13-2004 4:05:38 PM
    BasePriority : Normal
    FileSize : 229 KB
    FileVersion : 2.1.1.700
    ProductVersion : 2.1.1.700
    Copyright : Copyright (c) 2000-2003 Symantec Corporation. All rights reserved.
    CompanyName : Symantec Corporation
    FileDescription : Common Client Settings Manager Service
    InternalName : ccSetMgr
    OriginalFilename : ccSetMgr.exe
    ProductName : Common Client
    Created on : 12/8/2003 4:18:44 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 12/8/2003 4:18:44 PM

    #:8 [explorer.exe]
    FilePath : C:\WINNT\
    ThreadCreationTime : 7-13-2004 4:05:38 PM
    BasePriority : Normal
    FileSize : 973 KB
    FileVersion : 6.00.2800.1221 (xpsp2.030511-1403)
    ProductVersion : 6.00.2800.1221
    CompanyName : Microsoft Corporation
    FileDescription : Windows Explorer
    InternalName : explorer
    OriginalFilename : EXPLORER.EXE
    ProductName : Microsoft
    Created on : 5/12/2003 4:12:10 AM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/12/2003 4:12:10 AM

    #:9 [ccevtmgr.exe]
    FilePath : C:\Program Files\Common Files\Symantec Shared\
    ThreadCreationTime : 7-13-2004 4:05:39 PM
    BasePriority : Normal
    FileSize : 249 KB
    FileVersion : 2.1.1.700
    ProductVersion : 2.1.1.700
    Copyright : Copyright (c) 2000-2003 Symantec Corporation. All rights reserved.
    CompanyName : Symantec Corporation
    FileDescription : Common Client Event Manager Service
    InternalName : ccEvtMgr
    OriginalFilename : ccEvtMgr.exe
    ProductName : Common Client
    Created on : 12/8/2003 4:18:36 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 12/8/2003 4:18:36 PM

    #:10 [ltmsg.exe]
    FilePath : C:\WINNT\System32\
    ThreadCreationTime : 7-13-2004 4:05:42 PM
    BasePriority : Normal
    FileSize : 38 KB
    FileVersion : 3, 0, 0, 2
    ProductVersion : 3, 0, 0, 2
    Copyright : Copyright
    CompanyName : LUCENT TECHNOLOGIES
    FileDescription : ltmsg
    InternalName : ltmsg
    OriginalFilename : ltmsg.exe
    ProductName : LUCENT TECHNOLOGIES ltmsg
    Created on : 4/3/2001 5:38:30 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/3/2001 5:38:30 PM

    #:11 [spoolsv.exe]
    FilePath : C:\WINNT\system32\
    ThreadCreationTime : 7-13-2004 4:05:42 PM
    BasePriority : Normal
    FileSize : 50 KB
    FileVersion : 5.1.2600.0 (XPClient.010817-114:cool:
    ProductVersion : 5.1.2600.0
    CompanyName : Microsoft Corporation
    FileDescription : Spooler SubSystem App
    InternalName : spoolsv.exe
    OriginalFilename : spoolsv.exe
    ProductName : Microsoft
    Created on : 8/23/2001 10:00:00 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/23/2001 10:00:00 PM

    #:12 [ccapp.exe]
    FilePath : C:\Program Files\Common Files\Symantec Shared\
    ThreadCreationTime : 7-13-2004 4:05:42 PM
    BasePriority : Normal
    FileSize : 69 KB
    FileVersion : 2.1.1.700
    ProductVersion : 2.1.1.700
    Copyright : Copyright (c) 2000-2003 Symantec Corporation. All rights reserved.
    CompanyName : Symantec Corporation
    FileDescription : Common Client User Session
    InternalName : ccApp
    OriginalFilename : ccApp.exe
    ProductName : Common Client
    Created on : 12/8/2003 4:18:34 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 12/8/2003 4:18:34 PM

    #:13 [qttask.exe]
    FilePath : C:\Program Files\QuickTime\
    ThreadCreationTime : 7-13-2004 4:05:43 PM
    BasePriority : Normal
    FileSize : 96 KB
    FileVersion : 6.5.1
    ProductVersion : QuickTime 6.5.1
    CompanyName : Apple Computer, Inc.
    InternalName : QuickTime Task
    OriginalFilename : QTTask.exe
    ProductName : QuickTime
    Created on : 6/5/2004 1:18:53 AM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 6/5/2004 1:18:54 AM

    #:14 [msmsgs.exe]
    FilePath : C:\Program Files\Messenger\
    ThreadCreationTime : 7-13-2004 4:05:43 PM
    BasePriority : Normal
    FileSize : 1456 KB
    FileVersion : 4.7.2009
    ProductVersion : Version 4.7
    Copyright : Copyright (c) Microsoft Corporation 1997-2003
    CompanyName : Microsoft Corporation
    FileDescription : Messenger
    InternalName : msmsgs
    OriginalFilename : msmsgs.exe
    ProductName : Messenger
    Created on : 4/15/2003 2:30:14 AM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/15/2003 2:30:14 AM

    #:15 [rundll32.exe]
    FilePath : C:\WINNT\System32\
    ThreadCreationTime : 7-13-2004 4:05:43 PM
    BasePriority : Normal
    FileSize : 31 KB
    FileVersion : 5.1.2600.0 (xpclient.010817-114:cool:
    ProductVersion : 5.1.2600.0
    CompanyName : Microsoft Corporation
    FileDescription : Run a DLL as an App
    InternalName : rundll
    OriginalFilename : RUNDLL.EXE
    ProductName : Microsoft
    Created on : 8/23/2001 10:00:00 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/23/2001 10:00:00 PM

    #:16 [aim.exe]
    FilePath : C:\PROGRA~1\AIM\
    ThreadCreationTime : 7-13-2004 4:05:44 PM
    BasePriority : Normal
    FileSize : 60 KB
    FileVersion : 5.5.3595
    ProductVersion : 5.5.3595
    Copyright : Copyright
    CompanyName : America Online, Inc.
    FileDescription : AOL Instant Messenger
    InternalName : AIM
    OriginalFilename : AIM.EXE
    ProductName : AOL Instant Messenger
    Created on : 4/17/2004 5:34:05 AM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/27/2004 10:18:34 PM

    #:17 [devldr32.exe]
    FilePath : C:\WINNT\System32\
    ThreadCreationTime : 7-13-2004 4:05:47 PM
    BasePriority : Normal
    FileSize : 23 KB
    FileVersion : 1, 0, 0, 17
    ProductVersion : 1, 0, 0, 17
    Copyright : Copyright (C) Creative Technology Ltd. 1998-2001
    CompanyName : Creative Technology Ltd.
    FileDescription : DevLdr32
    InternalName : DevLdr
    OriginalFilename : DevLdr32.exe
    ProductName : Creative Ring3 NT Inteface
    Created on : 4/15/2004 8:52:16 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/18/2001 5:36:42 AM

    #:18 [wkcalrem.exe]
    FilePath : C:\Program Files\Common Files\Microsoft Shared\Works Shared\
    ThreadCreationTime : 7-13-2004 4:05:48 PM
    BasePriority : Normal
    FileSize : 24 KB
    FileVersion : 6.00.1828.1
    ProductVersion : 6.00.1828.1
    Copyright : Copyright
    CompanyName : Microsoft
    FileDescription : Microsoft
    InternalName : WkCalRem
    OriginalFilename : WKCALREM.EXE
    ProductName : Microsoft
    Created on : 8/8/2000 7:00:00 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/8/2000 7:00:00 PM

    #:19 [navapsvc.exe]
    FilePath : C:\Program Files\Norton Internet Security\Norton AntiVirus\
    ThreadCreationTime : 7-13-2004 4:05:49 PM
    BasePriority : Normal
    FileSize : 155 KB
    FileVersion : 10.00.2
    ProductVersion : 10.00.2
    Copyright : Norton AntiVirus 2004 for Windows 98/ME/2000/XP Copyright (c) 2003 Symantec Corporation. All rights reserved.
    CompanyName : Symantec Corporation
    FileDescription : Norton AntiVirus Auto-Protect Service
    InternalName : NAVAPSVC
    OriginalFilename : NAVAPSVC.EXE
    ProductName : Norton AntiVirus
    Created on : 5/15/2004 3:59:16 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/23/2004 6:04:18 PM

    #:20 [nvsvc32.exe]
    FilePath : C:\WINNT\System32\
    ThreadCreationTime : 7-13-2004 4:05:50 PM
    BasePriority : Normal
    FileSize : 76 KB
    FileVersion : 6.14.10.4523
    ProductVersion : 6.14.10.4523
    Copyright : (C) NVIDIA Corporation. All rights reserved.
    CompanyName : NVIDIA Corporation
    FileDescription : NVIDIA Driver Helper Service, Version 45.23
    InternalName : NVSVC
    OriginalFilename : nvsvc32.exe
    ProductName : NVIDIA Driver Helper Service, Version 45.23
    Created on : 7/28/2003 10:19:00 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 7/28/2003 10:19:00 PM

    #:21 [savscan.exe]
    FilePath : C:\Program Files\Norton Internet Security\Norton AntiVirus\
    ThreadCreationTime : 7-13-2004 4:05:50 PM
    BasePriority : Normal
    FileSize : 189 KB
    FileVersion : 9.2.1.14
    ProductVersion : 9.2
    Copyright : Copyright (c) 2003 Symantec Corporation
    CompanyName : Symantec Corporation
    FileDescription : Symantec AntiVirus Scanner
    InternalName : SAVSCAN
    OriginalFilename : SAVSCAN.EXE
    ProductName : Symantec AntiVirus AutoProtect
    Created on : 11/7/2003 5:46:58 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 11/7/2003 5:46:58 PM

    #:22 [sndsrvc.exe]
    FilePath : C:\Program Files\Common Files\Symantec Shared\
    ThreadCreationTime : 7-13-2004 4:05:52 PM
    BasePriority : Normal
    FileSize : 189 KB
    FileVersion : 5.3.2.67
    ProductVersion : 5.3
    Copyright : Copyright 2002, 2003 Symantec Corporation
    CompanyName : Symantec Corporation
    FileDescription : Network Driver Service
    InternalName : SndSrvc
    OriginalFilename : SndSrvc.exe
    ProductName : Symantec Security Drivers
    Created on : 6/29/2004 11:14:38 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 6/29/2004 11:14:38 PM

    #:23 [svchost.exe]
    FilePath : C:\WINNT\System32\
    ThreadCreationTime : 7-13-2004 4:05:53 PM
    BasePriority : Normal
    FileSize : 12 KB
    FileVersion : 5.1.2600.0 (xpclient.010817-114:cool:
    ProductVersion : 5.1.2600.0
    CompanyName : Microsoft Corporation
    FileDescription : Generic Host Process for Win32 Services
    InternalName : svchost.exe
    OriginalFilename : svchost.exe
    ProductName : Microsoft
    Created on : 8/23/2001 10:00:00 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/23/2001 10:00:00 PM

    #:24 [symlcsvc.exe]
    FilePath : C:\Program Files\Common Files\Symantec Shared\CCPD-LC\
    ThreadCreationTime : 7-13-2004 4:05:53 PM
    BasePriority : Normal
    FileSize : 572 KB
    FileVersion : 1, 8, 48, 79
    ProductVersion : 1, 8, 48, 79
    Copyright : Copyright (C) 2003
    CompanyName : Symantec Corporation
    FileDescription : Symantec Core Component
    InternalName : symlcsvc
    OriginalFilename : symlcsvc.exe
    ProductName : Symantec Core Component
    Created on : 4/22/2004 7:47:17 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/22/2004 7:47:18 PM

    #:25 [winword.exe]
    FilePath : C:\Program Files\Microsoft Office\Office\
    ThreadCreationTime : 7-13-2004 4:46:20 PM
    BasePriority : Normal
    FileSize : 8620 KB
    FileVersion : 9.0.8216
    ProductVersion : 9.0.8216
    Copyright : Copyright
    CompanyName : Microsoft Corporation
    FileDescription : Microsoft Word for Windows
    InternalName : WinWord
    OriginalFilename : WinWord.exe
    ProductName : Microsoft Office 2000
    Created on : 10/17/2003 6:02:28 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 10/17/2003 6:02:28 PM

    #:26 [agentsvr.exe]
    FilePath : C:\WINNT\msagent\
    ThreadCreationTime : 7-13-2004 4:47:11 PM
    BasePriority : Normal
    FileSize : 229 KB
    FileVersion : 2.00.0.3422
    ProductVersion : 2.00.0.3422
    Copyright : Copyright (C) Microsoft Corp. 1997-98
    CompanyName : Microsoft Corporation
    FileDescription : Microsoft Agent Server
    InternalName : AgentServer
    OriginalFilename : AgentSvr.exe
    ProductName : Microsoft Agent Server
    Created on : 8/23/2001 10:00:00 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/23/2001 10:00:00 PM

    #:27 [iexplore.exe]
    FilePath : C:\Program Files\Internet Explorer\
    ThreadCreationTime : 7-13-2004 7:04:44 PM
    BasePriority : Normal
    FileSize : 89 KB
    FileVersion : 6.00.2800.1106 (xpsp1.020828-1920)
    ProductVersion : 6.00.2800.1106
    CompanyName : Microsoft Corporation
    FileDescription : Internet Explorer
    InternalName : iexplore
    OriginalFilename : IEXPLORE.EXE
    ProductName : Microsoft
    Created on : 4/15/2004 8:59:52 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 8/29/2002 10:41:26 AM

    #:28 [ad-aware.exe]
    FilePath : C:\PROGRA~1\LAVASOFT\AD-AWA~1\
    ThreadCreationTime : 7-13-2004 7:25:23 PM
    BasePriority : Normal
    FileSize : 668 KB
    FileVersion : 6.0.1.181
    ProductVersion : 6.0.0.0
    Copyright : Copyright
    CompanyName : Lavasoft Sweden
    FileDescription : Ad-aware 6 core application
    InternalName : Ad-aware.exe
    OriginalFilename : Ad-aware.exe
    ProductName : Lavasoft Ad-aware Plus
    Created on : 7/12/2004 4:18:34 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 7/13/2003 4:00:20 AM

    Memory scan result :
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 0
    Objects found so far: 0


    Started registry scan
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    Registry scan result :
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 0
    Objects found so far: 0


    Started deep registry scan
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    Deep registry scan result :
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 0
    Objects found so far: 0


    Deep scanning and examining files (C:)
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    eUniverse Object recognized!
    Type : File
    Data : in10b6.dll
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\SYSTEM\
    FileSize : 176 KB
    FileVersion : 1, 0, 0, 1
    ProductVersion : 1, 0, 0, 1
    Copyright : Copyright 2001
    FileDescription : exe_in_dll Module
    InternalName : exe_in_dll
    OriginalFilename : exe_in_dll.DLL
    ProductName : exe_in_dll Module
    Created on : 3/9/2004 5:18:04 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 3/9/2004 5:19:30 PM



    eUniverse Object recognized!
    Type : File
    Data : setup_incred_3.exe
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\SYSTEM\
    FileSize : 136 KB
    Created on : 3/9/2004 5:19:30 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 3/9/2004 5:19:32 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : mathew@tripod[2].txt
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 2/26/2004 4:19:37 AM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 2/20/2004 8:01:48 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : mathew@tribalfusion[1].txt
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\Application Data\Earthlink\6.0\talonsgrip@earthlink.net\Cookies\

    Created on : 4/14/2004 7:50:30 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/14/2004 7:50:32 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : mathew@z1.adserver[1].txt
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\Application Data\Earthlink\6.0\talonsgrip@earthlink.net\Cookies\

    Created on : 4/15/2004 4:21:35 AM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/15/2004 4:21:36 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : mathew@0001[1].txt
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\Application Data\Earthlink\6.0\talonsgrip@earthlink.net\Cookies\

    Created on : 4/13/2004 7:11:26 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/13/2004 7:11:28 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : mathew@edge.ru4[1].txt
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\Application Data\Earthlink\6.0\talonsgrip@earthlink.net\Cookies\

    Created on : 4/14/2004 10:01:09 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/14/2004 10:01:10 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : mathew@netshelter.adtrix[1].txt
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\Application Data\Earthlink\6.0\talonsgrip@earthlink.net\Cookies\

    Created on : 4/15/2004 4:21:35 AM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/15/2004 4:21:36 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : mathew@questionmarket[2].txt
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\Application Data\Earthlink\6.0\talonsgrip@earthlink.net\Cookies\

    Created on : 4/15/2004 7:11:48 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/15/2004 7:11:50 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : mathew@adrevolver[1].txt
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\Application Data\Earthlink\6.0\talonsgrip@earthlink.net\Cookies\

    Created on : 4/4/2004 8:41:13 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/4/2004 8:41:14 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : mathew@tripod[2].txt
    Category : Data Miner
    Comment :
    Object : C:\WINDOWS\Cookies\

    Created on : 2/20/2004 8:01:46 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 2/20/2004 8:01:48 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@euniverseads[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\talonsgrip@earthlink.net\Cookies\

    Created on : 7/9/2004 7:39:09 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 7/9/2004 7:39:12 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@adrevolver[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\talonsgrip@earthlink.net\Cookies\

    Created on : 7/10/2004 4:45:39 AM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 7/10/2004 4:45:40 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@realmedia[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\talonsgrip@earthlink.net\Cookies\

    Created on : 7/12/2004 8:04:22 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 7/12/2004 8:04:24 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@edge.ru4[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\
    FileSize : 1 KB
    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/9/2004 2:44:12 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@advertising[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/2/2004 1:14:08 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@tripod[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/19/2004 3:01:58 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@realmedia[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/19/2004 3:02:06 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@z1.adserver[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/8/2004 4:22:38 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@trafficmp[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/8/2004 4:21:18 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@tribalfusion[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/8/2004 2:53:48 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@hitbox[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/23/2004 2:03:50 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@ehg-aol.hitbox[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/20/2004 8:11:14 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@clickagents[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/23/2004 7:29:38 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@qksrv[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/2/2004 12:55:36 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@tmpad[2].txt
    Category : Data Miner
    Comment : www.searchtraffic.com
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/15/2004 11:04:26 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@ad-logics[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/15/2004 11:04:50 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@ehg-findlaw.hitbox[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\
    FileSize : 1 KB
    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/23/2004 12:55:18 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@ehg-dig.hitbox[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/23/2004 2:03:50 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@atdmt[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:32 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/15/2004 11:10:58 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@questionmarket[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/23/2004 2:03:38 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@zedo[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/23/2004 2:03:24 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@gator[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/8/2004 4:27:14 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@fastclick[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/8/2004 4:23:10 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@cgi-bin[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/8/2004 4:21:18 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@servedby.advertising[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\
    FileSize : 1 KB
    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/8/2004 4:20:00 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@cgi-bin[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/2/2004 3:43:40 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@mediaplex[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/11/2004 5:35:30 PM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@bravenet[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 5/2/2004 3:44:00 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@doubleclick[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/16/2004 4:49:22 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@ads.specificpop[1].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/17/2004 4:54:00 AM



    Tracking Cookie Object recognized!
    Type : File
    Data : matthew@ehg-cafepress.hitbox[2].txt
    Category : Data Miner
    Comment :
    Object : C:\Documents and Settings\Matthew\Application Data\Earthlink\6.0\matthew.ransom@earthlink.net\Cookies\

    Created on : 5/12/2004 8:07:33 PM
    Last accessed : 7/13/2004 7:00:00 AM
    Last modified : 4/18/2004 4:55:44 AM



    Disk scan result for C:\
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 0
    Objects found so far: 42


    Scanning Hosts file(C:\WINNT\System32\drivers\etc\hosts)
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    Hosts file scan result:
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    1 entries scanned.
    New objects :0
    Objects found so far: 42




    Performing conditional scans..
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯

    Conditional scan result:
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    New objects : 0
    Objects found so far: 42


    12:47:26 PM Scan complete

    Summary of this scan
    ¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯¯
    Total scanning time :00:15:15:266
    Objects scanned :138758
    Objects identified :42
    Objects ignored :0
    New objects :42

    Hijackthis! Log:

    Logfile of HijackThis v1.98.0
    Scan saved at 12:51:21 PM, on 7/13/2004
    Platform: Windows XP SP1 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    Running processes:
    C:\WINNT\System32\smss.exe
    C:\WINNT\system32\winlogon.exe
    C:\WINNT\system32\services.exe
    C:\WINNT\system32\lsass.exe
    C:\WINNT\system32\svchost.exe
    C:\WINNT\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    C:\WINNT\Explorer.EXE
    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    C:\WINNT\System32\ltmsg.exe
    C:\WINNT\system32\spoolsv.exe
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\WINNT\System32\RUNDLL32.EXE
    C:\PROGRA~1\AIM\aim.exe
    C:\WINNT\System32\devldr32.exe
    C:\Program Files\Common Files\Microsoft Shared\Works Shared\wkcalrem.exe
    C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
    C:\WINNT\System32\nvsvc32.exe
    C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
    C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    C:\WINNT\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
    C:\Program Files\Internet Explorer\iexplore.exe
    C:\Documents and Settings\Matthew\Desktop\MEDIA\hijackthis1980.exe

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://start.earthlink.net/AL/Search
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://start.earthlink.net/AL/Search
    R3 - URLSearchHook: SrchHook Class - {44F9B173-041C-4825-A9B9-D914BD9DCBB3} - C:\Program Files\EarthLink TotalAccess\ElnIE.dll
    R3 - URLSearchHook: (no name) - ~CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
    O2 - BHO: EarthLink Popup Blocker - {4B5F2E08-6F39-479a-B547-B2026E4C7EDF} - C:\Program Files\EarthLink TotalAccess\PnEL.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
    O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINNT\System32\msdxm.ocx
    O3 - Toolbar: Web assistant - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
    O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: EarthLink Toolbar - {D7F30B62-8269-41AF-9539-B2697FA7D77E} - C:\Program Files\EarthLink TotalAccess\PnEL.dll
    O4 - HKLM\..\Run: [WorksFUD] C:\Program Files\Microsoft Works\wkfud.exe
    O4 - HKLM\..\Run: [Microsoft Works Portfolio] C:\Program Files\Microsoft Works\WksSb.exe /AllUsers
    O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Microsoft Works\WkDetect.exe
    O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINNT\System32\NvCpl.dll,NvStartup
    O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
    O4 - HKLM\..\Run: [LTWinModem1] ltmsg.exe 9
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [URLLSTCK.exe] C:\Program Files\Norton Internet Security\UrlLstCk.exe
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [Propel Accelerator] "C:\Program Files\EarthLink TotalAccess\Accelerator\PropelAC.exe"
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - HKCU\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINNT\System32\NVMCTRAY.DLL,NvTaskbarInit
    O4 - HKCU\..\Run: [AIM] C:\PROGRA~1\AIM\aim.exe -cnetwait.odl
    O4 - HKCU\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe
    O4 - HKCU\..\Run: [Yahoo! Pager] C:\Program Files\Yahoo!\Messenger\ypager.exe -quiet
    O4 - HKCU\..\Run: [E6TaskPanel] "C:\Program Files\EarthLink TotalAccess\TaskPanl.exe" -winstart
    O4 - Global Startup: Microsoft Works Calendar Reminders.lnk = ?
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
    O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\PROGRA~1\AIM\aim.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
    O9 - Extra 'Tools' menuitem: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
    O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} - http://us.dl1.yimg.com/download.yahoo.com/dl/installs/suite/yautocomplete.cab
    O16 - DPF: {C2FCEF52-ACE9-11D3-BEBD-00105AA9B6AE} (Symantec RuFSI Registry Information Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
    O17 - HKLM\System\CCS\Services\Tcpip\..\{878609C8-7D01-4E37-B7FD-1495F3C20215}: NameServer = 207.69.188.187 207.69.188.186
     
  2. talonsgrip

    talonsgrip Registered Member

    Joined:
    Jul 13, 2004
    Posts:
    5
    Re: Ad-aware and Hijackthis log files submission: more info

    Oh! I forgot to mention that I can't get Spyware Blaster to update. I get a server error. Has something blocked the update feature?
     
  3. talonsgrip

    talonsgrip Registered Member

    Joined:
    Jul 13, 2004
    Posts:
    5
    Any hel yet?
     
Thread Status:
Not open for further replies.