I am infected with the Smitfraud-C Toolbar 888. Here is the on line log file.The Hijackthis log is in a following post. Two many lines.
Incident Status Location Potentially unwanted tool:Application/Restart Not disinfected C:\WINDOWS\SYSTEM\Tools\Restart.exe Potentially unwanted tool:Application/VSToolbar Not disinfected C:\WINDOWS\SYSTEM32\NIBRFOPF.DLL Potentially unwanted tool:Application/Winantivirus2006 Not disinfected C:\WINDOWS\Downloaded Program Files\UWA7P_0001_N91M0809NetInstaller.exe Potentially unwanted tool:Application/Winantivirus2006 Not disinfected C:\WINDOWS\Downloaded Program Files\CONFLICT.1\UWA7P_0001_N91M0809NetInstaller.exe Potentially unwanted tool:Application/SystemDoctor2006 Not disinfected C:\WINDOWS\Downloaded Program Files\USDR6_7777_BHLP0611NetInstaller.exe Potentially unwanted tool:application/winfixer2005 Not disinfected C:\WINDOWS\Downloaded Program Files\UERT_0001_D19M2109NetInstaller.exe Potentially unwanted tool:Application/Winantivirus2006 Not disinfected C:\WINDOWS\Downloaded Program Files\CONFLICT.2\UWA7P_0001_N91M0809NetInstaller.exe Potentially unwanted tool:Application/VSToolbar Not disinfected C:\Documents and Settings\William Williamson\Local Settings\Temp\VOLQFMCH.EXE Potentially unwanted tool:Application/VSToolbar Not disinfected C:\Documents and Settings\William Williamson\Local Settings\Temp\TEHGFIFO.EXE Potentially unwanted tool:Application/SystemDoctor2006 Not disinfected C:\Documents and Settings\William Williamson\Local Settings\Temp\ICD3.TMP\USDR6_7777_BHLP0611NetInstaller.exe Potentially unwanted tool:Application/Winantivirus2006 Not disinfected C:\Documents and Settings\William Williamson\Local Settings\Temp\ICD2.TMP\UWA7P_0001_N91M0809NetInstaller.exe Potentially unwanted tool:Application/Winantivirus2006 Not disinfected C:\Documents and Settings\William Williamson\Local Settings\Temporary Internet Files\Content.IE5\VRLD5DLM\ErrorSafeFreeInstall[1].cab[UERS_0001_N91M2007NetInstaller.exe] Potentially unwanted tool:Application/DriveCleaner Not disinfected C:\Documents and Settings\William Williamson\Local Settings\Temporary Internet Files\Content.IE5\P44UOJZO\installdrivecleanerstart[1].cab[UDC6_0001_D19M1908NetInstaller.exe] Potentially unwanted tool:Application/Winantivirus2006 Not disinfected C:\Documents and Settings\William Williamson\Local Settings\Temporary Internet Files\Content.IE5\AF4RXUBI\WinAntiVirusPro2006FreeInstall[1].cab Potentially unwanted tool:Application/Winantivirus2006 Not disinfected C:\Documents and Settings\William Williamson\Local Settings\Temporary Internet Files\Content.IE5\AF4RXUBI\WinAntiVirusPro2007FreeInstall[1].cab[UWA7P_0001_N91M0809NetInstaller.exe]
Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@drivecleaner[1].txt Spyware:Cookie/DomainSponsor Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@landing.domainsponsor[1].txt Spyware:Cookie/Peel Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@peel[1].txt Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@stats.drivecleaner[2].txt Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@drivecleaner[3].txt Spyware:Cookie/DomainSponsor Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@domainsponsor[1].txt Spyware:Cookie/Xiti Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@xiti[1].txt Spyware:Cookie/ErrorSafe Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@www.errorsafe[1].txt Spyware:Cookie/ErrorSafe Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@errorsafe[2].txt Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@www.drivecleaner[2].txt Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@dist.belnk[2].txt Spyware:Cookie/Tickle Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@tickle[2].txt Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@adrevolver[1].txt Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@winantivirus[1].txt Spyware:Cookie/DomainSponsor Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@domainsponsor[2].txt Spyware:Cookie/Toplist Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@toplist[2].txt Spyware:Cookie/DomainSponsor Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@landing.domainsponsor[2].txt Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@atwola[1].txt Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@belnk[1].txt Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@dist.belnk[3].txt Spyware:Cookie/Cgi-bin Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@cgi-bin[1].txt Spyware:Cookie/Versiontracker Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@versiontracker[1].txt Spyware:Cookie/Xiti Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@xiti[2].txt Spyware:Cookie/FortuneCity Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@fortunecity[1].txt Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@adrevolver[3].txt Spyware:Cookie/Apmebf Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@apmebf[1].txt Spyware:Cookie/Maxserving Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@maxserving[2].txt Spyware:Cookie/Seeq Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@seeq[1].txt Spyware:Cookie/Seeq Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@www48.seeq[1].txt Spyware:Cookie/Tucows Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@tucows[1].txt Spyware:Cookie/Go Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@go[2].txt Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@belnk[2].txt Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@dist.belnk[4].txt Spyware:Cookie/Humanclick Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@hc2.humanclick[2].txt Spyware:Cookie/Clicktracks Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@stats1.clicktracks[2].txt Spyware:Cookie/Apmebf Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@apmebf[2].txt Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@atwola[2].txt Spyware:Cookie/bravenetA Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@bravenet[2].txt Spyware:Cookie/Toplist Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@toplist[3].txt Potentially unwanted tool:Application/Restart Not disinfected D:\WINDOWS\SYSTEM\Tools\Restart.exe Virus:Bck/Wingate Disinfected D:\WINDOWS\SYSTEM\res32.reg Spyware:Cookie/WebPower Not disinfected D:\WINDOWS\Profiles\bill Williamson\Cookies\bill williamson@webpower[1].txt Spyware:Cookie/LinkExchange Not disinfected D:\WINDOWS\Profiles\bill Williamson\Cookies\bill williamson@linkexchange[1].txt Spyware:Cookie/Com.com Not disinfected D:\WINDOWS\Profiles\bill Williamson\Cookies\bill williamson@uol.com[1].txt
Incident Status Location Potentially unwanted tool:Application/Restart Not disinfected C:\WINDOWS\SYSTEM\Tools\Restart.exe Potentially unwanted tool:Application/VSToolbar Not disinfected C:\WINDOWS\SYSTEM32\NIBRFOPF.DLL Potentially unwanted tool:Application/Winantivirus2006 Not disinfected C:\WINDOWS\Downloaded Program Files\UWA7P_0001_N91M0809NetInstaller.exe Potentially unwanted tool:Application/Winantivirus2006 Not disinfected C:\WINDOWS\Downloaded Program Files\CONFLICT.1\UWA7P_0001_N91M0809NetInstaller.exe Potentially unwanted tool:Application/SystemDoctor2006 Not disinfected C:\WINDOWS\Downloaded Program Files\USDR6_7777_BHLP0611NetInstaller.exe Potentially unwanted tool:application/winfixer2005 Not disinfected C:\WINDOWS\Downloaded Program Files\UERT_0001_D19M2109NetInstaller.exe Potentially unwanted tool:Application/Winantivirus2006 Not disinfected C:\WINDOWS\Downloaded Program Files\CONFLICT.2\UWA7P_0001_N91M0809NetInstaller.exe Potentially unwanted tool:Application/VSToolbar Not disinfected C:\Documents and Settings\William Williamson\Local Settings\Temp\VOLQFMCH.EXE Potentially unwanted tool:Application/VSToolbar Not disinfected C:\Documents and Settings\William Williamson\Local Settings\Temp\TEHGFIFO.EXE Potentially unwanted tool:Application/SystemDoctor2006 Not disinfected C:\Documents and Settings\William Williamson\Local Settings\Temp\ICD3.TMP\USDR6_7777_BHLP0611NetInstaller.exe Potentially unwanted tool:Application/Winantivirus2006 Not disinfected C:\Documents and Settings\William Williamson\Local Settings\Temp\ICD2.TMP\UWA7P_0001_N91M0809NetInstaller.exe Potentially unwanted tool:Application/Winantivirus2006 Not disinfected C:\Documents and Settings\William Williamson\Local Settings\Temporary Internet Files\Content.IE5\VRLD5DLM\ErrorSafeFreeInstall[1].cab[UERS_0001_N91M2007NetInstaller.exe] Potentially unwanted tool:Application/DriveCleaner Not disinfected C:\Documents and Settings\William Williamson\Local Settings\Temporary Internet Files\Content.IE5\P44UOJZO\installdrivecleanerstart[1].cab[UDC6_0001_D19M1908NetInstaller.exe] Potentially unwanted tool:Application/Winantivirus2006 Not disinfected C:\Documents and Settings\William Williamson\Local Settings\Temporary Internet Files\Content.IE5\AF4RXUBI\WinAntiVirusPro2006FreeInstall[1].cab Potentially unwanted tool:Application/Winantivirus2006 Not disinfected C:\Documents and Settings\William Williamson\Local Settings\Temporary Internet Files\Content.IE5\AF4RXUBI\WinAntiVirusPro2007FreeInstall[1].cab[UWA7P_0001_N91M0809NetInstaller.exe]
Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@drivecleaner[1].txt Spyware:Cookie/DomainSponsor Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@landing.domainsponsor[1].txt Spyware:Cookie/Peel Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@peel[1].txt Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@stats.drivecleaner[2].txt Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@drivecleaner[3].txt Spyware:Cookie/DomainSponsor Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@domainsponsor[1].txt Spyware:Cookie/Xiti Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@xiti[1].txt Spyware:Cookie/ErrorSafe Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@www.errorsafe[1].txt Spyware:Cookie/ErrorSafe Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@errorsafe[2].txt Spyware:Cookie/DriveCleaner Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@www.drivecleaner[2].txt Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@dist.belnk[2].txt Spyware:Cookie/Tickle Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@tickle[2].txt Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@adrevolver[1].txt Spyware:Cookie/Winantivirus Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@winantivirus[1].txt Spyware:Cookie/DomainSponsor Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@domainsponsor[2].txt Spyware:Cookie/Toplist Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@toplist[2].txt Spyware:Cookie/DomainSponsor Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@landing.domainsponsor[2].txt Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@atwola[1].txt Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@belnk[1].txt Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@dist.belnk[3].txt Spyware:Cookie/Cgi-bin Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@cgi-bin[1].txt Spyware:Cookie/Versiontracker Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@versiontracker[1].txt Spyware:Cookie/Xiti Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@xiti[2].txt Spyware:Cookie/FortuneCity Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@fortunecity[1].txt Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@adrevolver[3].txt Spyware:Cookie/Apmebf Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@apmebf[1].txt Spyware:Cookie/Maxserving Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@maxserving[2].txt Spyware:Cookie/Seeq Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@seeq[1].txt Spyware:Cookie/Seeq Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@www48.seeq[1].txt Spyware:Cookie/Tucows Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@tucows[1].txt Spyware:Cookie/Go Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@go[2].txt Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@belnk[2].txt Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@dist.belnk[4].txt Spyware:Cookie/Humanclick Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@hc2.humanclick[2].txt Spyware:Cookie/Clicktracks Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@stats1.clicktracks[2].txt Spyware:Cookie/Apmebf Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@apmebf[2].txt Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@atwola[2].txt Spyware:Cookie/bravenetA Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@bravenet[2].txt Spyware:Cookie/Toplist Not disinfected C:\Documents and Settings\William Williamson\Cookies\william williamson@toplist[3].txt Potentially unwanted tool:Application/Restart Not disinfected D:\WINDOWS\SYSTEM\Tools\Restart.exe Virus:Bck/Wingate Disinfected D:\WINDOWS\SYSTEM\res32.reg Spyware:Cookie/WebPower Not disinfected D:\WINDOWS\Profiles\bill Williamson\Cookies\bill williamson@webpower[1].txt Spyware:Cookie/LinkExchange Not disinfected D:\WINDOWS\Profiles\bill Williamson\Cookies\bill williamson@linkexchange[1].txt Spyware:Cookie/Com.com Not disinfected D:\WINDOWS\Profiles\bill Williamson\Cookies\bill williamson@uol.com[1].txt