PDA

View Full Version : Different software has different results



Jennzizi
2006-01-04, 17:00
Hi Experts

I really need your assistance desperately. I have downloaded all sorts of spyware but they display different results. 'Spycatcher' & 'Spybot Search & Destroy' tells me that my PC is free from infection.

But when i scanned using 'Spyware Doctor', the results are displayed below. The results for 'Hijack This' are displayed further below.

Sorry to attached such long strings of information but I'm really trying very hard to get rid of any spywares in my PC.

Please advise me. Many thanks for the help in advance.


SCANNED RESULT USING SPYWARE DOCTOR

Infection Name Location Risk
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\KRKBUFE3\adv[2].htm High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\KRKBUFE3\ss-mbg-110x100[1].jpg High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\YPKDG3O1\udb[1].htm High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\ULCDEJ2X\adv[3].htm High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\Y14LKB6J\sslogo_info_page[1].gif High
Known Bad Sites C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\KRKBUFE3\show[1].gif High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\KRKBUFE3\ssupf[1].htm High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\YPKDG3O1\adv[2].htm High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\Y14LKB6J\MaxiFiles[1].htm High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\Y14LKB6J\infostyle[1].css High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\KRKBUFE3\adv[1].htm High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\KRKBUFE3\smartdownloads[1].gif High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\Y14LKB6J\main[1].jpg High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\YPKDG3O1\contactus[1].gif High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\ULCDEJ2X\scriptG[1].js High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\ULCDEJ2X\purchase[1].htm High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\ULCDEJ2X\AdBlaster[1].htm High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\KRKBUFE3\installer[1].gif High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\YPKDG3O1\xml[1].gif High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\ULCDEJ2X\Alexa[1].htm High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\Y14LKB6J\udb[2].htm High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\Y14LKB6J\checkbox[1].gif High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\ULCDEJ2X\sitemap[1].gif High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\KRKBUFE3\placeyourorder[1].gif High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\YPKDG3O1\grd-right-white-180x22[1].jpg High
Affiliated with Browser Hijackers C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\ULCDEJ2X\pixy[1].gif Elevated
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\KRKBUFE3\ss-adv-125x125[1].jpg High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\ULCDEJ2X\download[1].htm High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\YPKDG3O1\dl2[1].gif High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\ULCDEJ2X\grd-right-white-780x22[1].jpg High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\YPKDG3O1\geekfiles_5s[1].gif High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\Y14LKB6J\db[1].gif High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\YPKDG3O1\html[1].gif High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\YPKDG3O1\adv[1].htm High
Affiliated with Browser Hijackers C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\Y14LKB6J\wh_sg_720x300_111904810 1[1].jpg Elevated
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\YPKDG3O1\spyware[1].htm High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\Y14LKB6J\adv[1].htm High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\ULCDEJ2X\dl6[1].gif High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\Y14LKB6J\sstsf[1].htm High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\YPKDG3O1\dl4[1].gif High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\ULCDEJ2X\download2you[1].gif High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\ULCDEJ2X\adv[2].htm High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\YPKDG3O1\chm[1].gif High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\KRKBUFE3\udb[1].htm High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\ULCDEJ2X\adv[1].htm High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\Y14LKB6J\TrackingCookies[1].htm High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\YPKDG3O1\blfs[1].gif High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\Y14LKB6J\udb[1].htm High
Affiliated with Browser Hijackers C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\KRKBUFE3\index[1] Elevated
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\Y14LKB6J\scanspyware[1].htm High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\ULCDEJ2X\ss-cc-110x100[1].jpg High
Rogue Anti-Spyware Products C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\YPKDG3O1\grd-right-white-inverted-780x22[1].jpg High
Known Bad Sites C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\ULCDEJ2X\120x60[1].gif High
Advertising C:\Documents and Settings\Jenn\Cookies\jenn@com[2].txt Low
Tracking Cookie(s) C:\Documents and Settings\Jenn\Cookies\jenn@cgi-bin[2].txt Medium
Maxifiles C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\Y14LKB6J\mc-110-12-0000193[1].exe High
Maxifiles C:\mc-110-12-0000193.exe High

Scan Results:
scan start: 1/4/2006 10:12:02 PM
scan stop: 1/4/2006 10:21:50 PM
scanned items: 66706
found items: 58
found and ignored: 0
tools used: General Scanner, Process Scanner, Hosts scanner, LSP Scanner, Registry Scanner, Browser Defaults, Favorites and ZoneMap Scanner, ActiveX Scanner, Browser Activity Scanner, Disk Scanner


SCANNED RESULT USING HIJACK THIS

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Program Files\Spyware Doctor\sdhelp.exe
C:\PROGRA~1\SPYWAR~1\swdoctor.exe
C:\WINDOWS\system32\cmd.exe
C:\WINDOWS\system32\cmd.exe
C:\WINDOWS\system32\ftp.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Documents and Settings\Jenn\Local Settings\Temporary Internet Files\Content.IE5\YPKDG3O1\HijackThis[1].exe

O4 - HKCU\..\Run: [Spyware Doctor] "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q
O20 - AppInit_DLLs: interceptor.dll
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: ScriptBlocking Service (SBService) - Unknown owner - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe (file missing)
O23 - Service: PC Tools Spyware Doctor (SDhelper) - PC Tools - C:\Program Files\Spyware Doctor\sdhelp.exe
O23 - Service: Sound Sservice Driver (Sound Service) - Unknown owner - C:\WINDOWS\System32\cfmon.exe (file missing)

tashi
2006-01-04, 18:27
Hello.
In order not to delay assistance from one of our helpers and if not being assisted at another forum, please read here.
Before you post a log (http://forums.spybot.info/showthread.php?t=288)

The hjt log is incomplete as the header should show; also do you have items on ignore in hjt so they do not show in a scan?

Please run hjt from it's own folder, instructions in the link above.

Cheers.

tashi
2006-01-09, 01:30
Jennzizi do you still require assistance?

tashi
2006-01-12, 17:40
Due to lack of a response this topic will be archived.
If you need it re-opened please pm me or one of the forum mods.