lovinglizard
2007-11-14, 10:37
got smitfraud c and cant get rid of it. having problems downloading files, and internet slow. i barly downloaded Kaspersky Online Scanner but had problems during install.
i rebooted in safe mode ran avg spyware and smitfraud fix as advised for someone else. and this seemed to work until i rebooted into normal mode now smitfraud is back.
please help, iam at the end of my rope and would like to avoid reformating... thanks
her are the reports i have :
SmitFraudFix v2.252
Scan done at 21:35:28.32, Mon 11/13/2006
Run from C:\Documents and Settings\Aaron Cromer\Desktop\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
The filesystem type is NTFS
Fix run in safe mode
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Before SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
»»»»»»»»»»»»»»»»»»»»»»»» Killing process
»»»»»»»»»»»»»»»»»»»»»»»» hosts
127.0.0.1 localhost
»»»»»»»»»»»»»»»»»»»»»»»» Winsock2 Fix
S!Ri's WS2Fix: LSP not Found.
»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix
GenericRenosFix by S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Deleting infected files
»»»»»»»»»»»»»»»»»»»»»»»» DNS
HKLM\SYSTEM\CCS\Services\Tcpip\..\{75A5378C-A945-4582-B362-53286A58CFA3}: DhcpNameServer=68.105.28.12 68.105.29.12 68.105.28.11
HKLM\SYSTEM\CS1\Services\Tcpip\..\{75A5378C-A945-4582-B362-53286A58CFA3}: DhcpNameServer=68.105.28.12 68.105.29.12 68.105.28.11
HKLM\SYSTEM\CS2\Services\Tcpip\..\{75A5378C-A945-4582-B362-53286A58CFA3}: DhcpNameServer=68.105.28.12 68.105.29.12 68.105.28.11
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=68.105.28.12 68.105.29.12 68.105.28.11
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=68.105.28.12 68.105.29.12 68.105.28.11
HKLM\SYSTEM\CS2\Services\Tcpip\Parameters: DhcpNameServer=68.105.28.12 68.105.29.12 68.105.28.11
»»»»»»»»»»»»»»»»»»»»»»»» Deleting Temp Files
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, following keys are not inevitably infected!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""
»»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning
Registry Cleaning done.
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler After SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
»»»»»»»»»»»»»»»»»»»»»»»» End
---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------
+ Created at: 10:42:39 PM 11/13/2006
+ Scan result:
C:\System Volume Information\_restore{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP339\A0085177.exe -> Adware.Agent : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\WR -> Adware.Generic : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP337\A0078083.exe -> Downloader.Agent.emo : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP337\A0080086.exe -> Downloader.Agent.emo : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP339\A0084135.exe -> Downloader.Agent.emo : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP339\A0085137.exe -> Downloader.Agent.emo : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP342\A0086756.exe -> Downloader.Agent.emo : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP342\A0086757.exe -> Downloader.Agent.emo : Cleaned with backup (quarantined).
C:\WINDOWS\system32\Mz18r\Mz18r2328.exe -> Downloader.VB.bkw : Cleaned with backup (quarantined).
C:\Program Files\music_now\inetchk.exe -> Hijacker.Small : Cleaned with backup (quarantined).
C:\Program Files\DIGStream\digstream.exe -> Not-A-Virus.Downloader.Win32.DigStream : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP340\A0086577.sys -> Rootkit.Agent.eq : Cleaned with backup (quarantined).
:mozilla.75:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.76:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.77:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.618:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Adengage : Cleaned.
:mozilla.619:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Adengage : Cleaned.
:mozilla.617:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Clickhype : Cleaned.
:mozilla.181:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Dealtime : Cleaned.
:mozilla.182:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Dealtime : Cleaned.
:mozilla.183:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Dealtime : Cleaned.
:mozilla.184:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Dealtime : Cleaned.
:mozilla.208:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.209:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.210:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.211:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.212:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.213:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.214:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.215:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.216:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.217:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.218:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.219:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.220:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.221:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.222:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.252:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Fortunecity : Cleaned.
:mozilla.253:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Fortunecity : Cleaned.
:mozilla.729:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.730:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.731:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.732:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.733:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.734:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.735:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.736:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.737:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.738:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.739:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.740:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.741:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.742:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.298:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
:mozilla.299:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
:mozilla.677:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.678:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.679:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.653:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Masterstats : Cleaned.
:mozilla.7:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Netflame : Cleaned.
:mozilla.8:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Netflame : Cleaned.
:mozilla.456:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.457:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.458:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.459:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.460:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.461:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.462:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.463:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.28:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.29:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.30:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.31:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.32:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.33:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.34:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.35:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.36:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.37:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.38:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.277:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Starware : Cleaned.
:mozilla.278:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Starware : Cleaned.
:mozilla.687:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Starware : Cleaned.
:mozilla.530:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.531:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.532:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.533:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.627:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.628:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.656:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Webtrends : Cleaned.
:mozilla.612:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.613:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.614:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.615:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.616:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
::Report end
i rebooted in safe mode ran avg spyware and smitfraud fix as advised for someone else. and this seemed to work until i rebooted into normal mode now smitfraud is back.
please help, iam at the end of my rope and would like to avoid reformating... thanks
her are the reports i have :
SmitFraudFix v2.252
Scan done at 21:35:28.32, Mon 11/13/2006
Run from C:\Documents and Settings\Aaron Cromer\Desktop\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
The filesystem type is NTFS
Fix run in safe mode
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Before SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
»»»»»»»»»»»»»»»»»»»»»»»» Killing process
»»»»»»»»»»»»»»»»»»»»»»»» hosts
127.0.0.1 localhost
»»»»»»»»»»»»»»»»»»»»»»»» Winsock2 Fix
S!Ri's WS2Fix: LSP not Found.
»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix
GenericRenosFix by S!Ri
»»»»»»»»»»»»»»»»»»»»»»»» Deleting infected files
»»»»»»»»»»»»»»»»»»»»»»»» DNS
HKLM\SYSTEM\CCS\Services\Tcpip\..\{75A5378C-A945-4582-B362-53286A58CFA3}: DhcpNameServer=68.105.28.12 68.105.29.12 68.105.28.11
HKLM\SYSTEM\CS1\Services\Tcpip\..\{75A5378C-A945-4582-B362-53286A58CFA3}: DhcpNameServer=68.105.28.12 68.105.29.12 68.105.28.11
HKLM\SYSTEM\CS2\Services\Tcpip\..\{75A5378C-A945-4582-B362-53286A58CFA3}: DhcpNameServer=68.105.28.12 68.105.29.12 68.105.28.11
HKLM\SYSTEM\CCS\Services\Tcpip\Parameters: DhcpNameServer=68.105.28.12 68.105.29.12 68.105.28.11
HKLM\SYSTEM\CS1\Services\Tcpip\Parameters: DhcpNameServer=68.105.28.12 68.105.29.12 68.105.28.11
HKLM\SYSTEM\CS2\Services\Tcpip\Parameters: DhcpNameServer=68.105.28.12 68.105.29.12 68.105.28.11
»»»»»»»»»»»»»»»»»»»»»»»» Deleting Temp Files
»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, following keys are not inevitably infected!!!
[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""
»»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning
Registry Cleaning done.
»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler After SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!
SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll
»»»»»»»»»»»»»»»»»»»»»»»» End
---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------
+ Created at: 10:42:39 PM 11/13/2006
+ Scan result:
C:\System Volume Information\_restore{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP339\A0085177.exe -> Adware.Agent : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\WR -> Adware.Generic : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP337\A0078083.exe -> Downloader.Agent.emo : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP337\A0080086.exe -> Downloader.Agent.emo : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP339\A0084135.exe -> Downloader.Agent.emo : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP339\A0085137.exe -> Downloader.Agent.emo : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP342\A0086756.exe -> Downloader.Agent.emo : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP342\A0086757.exe -> Downloader.Agent.emo : Cleaned with backup (quarantined).
C:\WINDOWS\system32\Mz18r\Mz18r2328.exe -> Downloader.VB.bkw : Cleaned with backup (quarantined).
C:\Program Files\music_now\inetchk.exe -> Hijacker.Small : Cleaned with backup (quarantined).
C:\Program Files\DIGStream\digstream.exe -> Not-A-Virus.Downloader.Win32.DigStream : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{3A579F61-82CF-4117-919A-DB7B394CD5BC}\RP340\A0086577.sys -> Rootkit.Agent.eq : Cleaned with backup (quarantined).
:mozilla.75:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.76:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.77:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.618:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Adengage : Cleaned.
:mozilla.619:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Adengage : Cleaned.
:mozilla.617:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Clickhype : Cleaned.
:mozilla.181:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Dealtime : Cleaned.
:mozilla.182:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Dealtime : Cleaned.
:mozilla.183:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Dealtime : Cleaned.
:mozilla.184:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Dealtime : Cleaned.
:mozilla.208:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.209:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.210:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.211:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.212:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.213:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.214:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.215:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.216:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.217:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.218:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.219:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.220:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.221:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.222:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.252:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Fortunecity : Cleaned.
:mozilla.253:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Fortunecity : Cleaned.
:mozilla.729:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.730:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.731:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.732:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.733:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.734:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.735:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.736:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.737:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.738:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.739:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.740:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.741:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.742:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.298:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
:mozilla.299:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
:mozilla.677:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.678:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.679:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.653:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Masterstats : Cleaned.
:mozilla.7:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Netflame : Cleaned.
:mozilla.8:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Netflame : Cleaned.
:mozilla.456:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.457:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.458:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.459:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.460:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.461:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.462:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.463:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.28:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.29:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.30:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.31:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.32:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.33:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.34:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.35:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.36:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.37:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.38:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.277:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Starware : Cleaned.
:mozilla.278:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Starware : Cleaned.
:mozilla.687:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Starware : Cleaned.
:mozilla.530:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.531:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.532:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.533:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.627:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.628:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.656:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Webtrends : Cleaned.
:mozilla.612:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.613:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.614:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.615:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.616:C:\Documents and Settings\Aaron Cromer\Application Data\Mozilla\Firefox\Profiles\9hvo65ry.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
::Report end