Computing.Net > Forums > Security and Virus > Spyaxe popups

Computer Problems? Computing.Net has over 1,000,000 posts about all things technology related! Over 90% answered within 24 hours! Click here to start participating now! Also, be sure to check out the New User Guide.

Spyaxe popups

Reply to Message Icon

Name: rp19583
Date: November 10, 2005 at 12:35:01 Pacific
OS: Win XP SP2
CPU/Ram: AMD Athlon 900 MHz, 256 M
Comment:

I am repeatedly getting this popup that says, "Your computer is infected! etc..." I've tried Norton Anti-Virus, Spybot - Search & Destroy, and Ewido Security Suite. Also, for some reason the popup only comes up on my username, and not on other ones.

I was going to post my HiJackThis log here so someone could tell me what the problem is, but the site said only to do that is an expert asks. So I have one ready.

Any help is greatly appreciated!



Sponsored Link
Ads by Google

Response Number 1
Name: jabuck
Date: November 10, 2005 at 13:59:49 Pacific
Reply:

rp19583,Download Ewido Security Suite then set it up this way Ewido Setup Instructions reboot into Safe Mode and run Ewido

When the scan has completed, Ewido will create a report.txt file. Click the "Save Report" button on the bottom of the screen and save the log to your desktop in case you need it later.

Please reboot into normal mode and post the ewido log.

Go to start>control panel>display>desktop>customize desktop>web>put check beside all items(looking for "security info" but the others to if found} except "my current home page" and delete them.

Download smitRem.exe and save the file to your desktop.

Double click on the file to extract it to it's own folder on the desktop.Then download ccleaner to clean out all your temp files. Make sure there is not anything in the recycle bin that you need as ccleaner will delete recycle bin items unless checked not to do so.<

Reboot into safe mode Open the smitRem folder, then double click the RunThis.bat file to start the tool. Follow the prompts on screen. Your desktop and icons will disappear and then reappear again this is normal.

Wait for the tool to complete and Disk Cleanup to finish this may take a while; be patient.

Next run ewido again then run ccleaner.

Post this new ewido log too.


0

Response Number 2
Name: rp19583
Date: November 11, 2005 at 12:18:59 Pacific
Reply:

jabuck, here are my two logs from ewido.

ewido security suite - Scan report


+ Created on: 9:24:55 PM, 11/10/2005
+ Report-Checksum: E92118A2

+ Scan result:

:mozilla.18:C:\Documents and Settings\Andy & Judy\Application Data\Mozilla\Firefox\Profiles\uimosxka.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Andy & Judy\Application Data\Mozilla\Firefox\Profiles\uimosxka.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Andy & Judy\Application Data\Mozilla\Firefox\Profiles\uimosxka.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Documents and Settings\Ryan\Local Settings\Temp\Cookies\ryan@msnportal.112.2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Documents and Settings\Ryan\Local Settings\Temporary Internet Files\Content.IE5\OSNUMKCJ\gdnUS2218[1].exe -> TrojanDownloader.Small.ayl : Cleaned with backup
C:\HJT\backups\backup-20051110-161144-853.dll -> Spyware.Hijacker.Generic : Cleaned with backup
C:\HJT\backups\backup-20051110-161622-208.dll -> Spyware.Hijacker.Generic : Cleaned with backup
C:\RECYCLER\NPROTECT\00082823.exe -> TrojanDownloader.Small.ayl : Cleaned with backup
:mozilla.17:C:\RECYCLER\NPROTECT\00082925.MOZ -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.24:C:\RECYCLER\NPROTECT\00082926.MOZ -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.21:C:\RECYCLER\NPROTECT\00082927.MOZ -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.22:C:\RECYCLER\NPROTECT\00082927.MOZ -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.35:C:\RECYCLER\NPROTECT\00082927.MOZ -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.21:C:\RECYCLER\NPROTECT\00082964.MOZ -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.22:C:\RECYCLER\NPROTECT\00082964.MOZ -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.35:C:\RECYCLER\NPROTECT\00082964.MOZ -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.34:C:\RECYCLER\NPROTECT\00082982.MOZ -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.35:C:\RECYCLER\NPROTECT\00082982.MOZ -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.36:C:\RECYCLER\NPROTECT\00082982.MOZ -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.18:C:\RECYCLER\NPROTECT\00082984.MOZ -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.35:C:\RECYCLER\NPROTECT\00082984.MOZ -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.36:C:\RECYCLER\NPROTECT\00082984.MOZ -> Spyware.Cookie.Advertising : Cleaned with backup
C:\WINDOWS\system32\hpCF22.tmp -> Spyware.Hijacker.Generic : Cleaned with backup
C:\WINDOWS\system32\ld9597.tmp -> TrojanDownloader.Zlob.az : Cleaned with backup
:mozilla.9:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.10:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.11:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.13:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.14:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.15:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.16:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Dbbsrv : Cleaned with backup
:mozilla.18:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Bfast : Cleaned with backup
:mozilla.19:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Bfast : Cleaned with backup
:mozilla.26:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Commission-junction : Cleaned with backup
:mozilla.30:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.32:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.33:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.43:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.52:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.69:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.70:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.71:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.78:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
:mozilla.79:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.81:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.84:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Pro-market : Cleaned with backup
:mozilla.87:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.88:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.90:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Adorigin : Cleaned with backup
:mozilla.91:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.98:T:\Documents and Settings\Brandon\Application Data\Mozilla\Profiles\rp19583\2rsye5k8.slt\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@a.as-us.falkag[2].txt -> Spyware.Cookie.Falkag : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@ad-logics[2].txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@ad.yieldmanager[2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@ads.addynamix[2].txt -> Spyware.Cookie.Addynamix : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@advertising[1].txt -> Spyware.Cookie.Advertising : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@as-us.falkag[2].txt -> Spyware.Cookie.Falkag : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@burstnet[2].txt -> Spyware.Cookie.Burstnet : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@casalemedia[1].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@clickagents[2].txt -> Spyware.Cookie.Clickagents : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@com[2].txt -> Spyware.Cookie.Com : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@cs.valuead[1].txt -> Spyware.Cookie.Valuead : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@doubleclick[1].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@edge.ru4[1].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@fastclick[2].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@gator[1].txt -> Spyware.Cookie.Gator : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@images.trafficmp[1].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@internetfuel[1].txt -> Spyware.Cookie.Internetfuel : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@revenue[2].txt -> Spyware.Cookie.Revenue : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@servedby.advertising[2].txt -> Spyware.Cookie.Advertising : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@trafficmp[1].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@tribalfusion[1].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@valuead[2].txt -> Spyware.Cookie.Valuead : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@www.burstbeacon[1].txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@www.shopathomeselect[1].txt -> Spyware.Cookie.Shopathomeselect : Cleaned with backup
T:\Documents and Settings\Brandon\Cookies\brandon@z1.adserver[1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temp\asmfiles.cab/asm.exe -> Spyware.Altnet : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temp\cd_clint.dll -> Spyware.Cydoor : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temp\Cookies\brandon@adserv.internetfuel[2].txt -> Spyware.Cookie.Internetfuel : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temp\Cookies\brandon@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temp\Cookies\brandon@doubleclick[1].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temp\Cookies\brandon@hg1.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temp\Cookies\brandon@hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temp\Cookies\brandon@spylog[1].txt -> Spyware.Cookie.Spylog : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temp\Cookies\brandon@valueclick[1].txt -> Spyware.Cookie.Valueclick : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temp\Cookies\brandon@w128.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temp\jkill.exe -> Spyware.VX2 : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temp\mxTarget.cab/mxTarget.dll -> Spyware.BiSpy : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temp\mxTarget.cab/preInsMt.exe -> Spyware.BiSpy : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temp\temp.cab/IExploreSkins.exe -> Spyware.WebSearch : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temp\TvmUpdater.exe/InpB -> Spyware.TotalVelocity.k : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temp\TvmUpdater.exe/InpB -> Spyware.TotalVelocity.k : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temp\upd14.tmp/ME.dll -> Spyware.MediaPops : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temp\upd3.tmp/ME.dll -> Spyware.MediaPops : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temp\__unin__.exe -> Spyware.Altnet : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temporary Internet Files\Content.IE5\2T7GL8NY\exitpoplight1[1].htm -> Trojan.NoClose.i : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temporary Internet Files\Content.IE5\2T7GL8NY\Toolbar[1].cab/IExploreSkins.exe -> Spyware.WebSearch : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temporary Internet Files\Content.IE5\2T7GL8NY\Toolbar[1].cab/toolbar.dll -> Spyware.WebSearch : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temporary Internet Files\Content.IE5\CHIJGLIJ\exitpoplight1[1].htm -> Trojan.NoClose.i : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temporary Internet Files\Content.IE5\CHIJGLIJ\exitpoplight1[2].htm -> Trojan.NoClose.i : Cleaned with backup
T:\Documents and Settings\Brandon\Local Settings\Temporary Internet Files\Content.IE5\GPMJSPMV\WinTS[1].cab/WToolsS.exe -> TrojanDownloader.Wintool.a : Cleaned with backup
:mozilla.8:T:\Documents and Settings\Brandon_2\Application Data\Mozilla\Profiles\default\4p0sy154.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.9:T:\Documents and Settings\Brandon_2\Application Data\Mozilla\Profiles\default\4p0sy154.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@247realmedia[1].txt -> Spyware.Cookie.247realmedia : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@a-1shz2prbmdj6wvny-1sez2pra2dj6wjny-1lcjgbpgidj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@ad-flow[2].txt -> Spyware.Cookie.Ad-flow : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@ad-logics[2].txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@ad.yieldmanager[2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@addynamix[1].txt -> Spyware.Cookie.Addynamix : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@adnetintads.valuead[1].txt -> Spyware.Cookie.Valuead : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@adopt.specificclick[1].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@ads.addynamix[1].txt -> Spyware.Cookie.Addynamix : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@ads.pointroll[1].txt -> Spyware.Cookie.Pointroll : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@ads.specificpop[2].txt -> Spyware.Cookie.Specificpop : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@ads.x10[2].txt -> Spyware.Cookie.X10 : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@ads18.bpath[2].txt -> Spyware.Cookie.Bpath : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@ads49.bpath[1].txt -> Spyware.Cookie.Bpath : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@adtech[1].txt -> Spyware.Cookie.Adtech : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@advertising[2].txt -> Spyware.Cookie.Advertising : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@as-us.falkag[2].txt -> Spyware.Cookie.Falkag : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@as1.falkag[1].txt -> Spyware.Cookie.Falkag : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@bilbo.counted[1].txt -> Spyware.Cookie.Counted : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@bis.180solutions[1].txt -> Spyware.Cookie.180solutions : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@bluestreak[1].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@bs.serving-sys[1].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@c.as-us.falkag[2].txt -> Spyware.Cookie.Falkag : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@c.porngraph[2].txt -> Spyware.Cookie.Porngraph : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@casalemedia[1].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@centrport[1].txt -> Spyware.Cookie.Centrport : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@citi.bridgetrack[1].txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@clickagents[2].txt -> Spyware.Cookie.Clickagents : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@com[1].txt -> Spyware.Cookie.Com : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@cs.valuead[2].txt -> Spyware.Cookie.Valuead : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@cz3.clickzs[2].txt -> Spyware.Cookie.Clickzs : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@cz6.clickzs[2].txt -> Spyware.Cookie.Clickzs : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@doubleclick[2].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@download.com[1].txt -> Spyware.Cookie.Com : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@edge.ru4[1].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@euniverseads[1].txt -> Spyware.Cookie.Euniverseads : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@fastclick[2].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@findwhat[1].txt -> Spyware.Cookie.Findwhat : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@gator[1].txt -> Spyware.Cookie.Gator : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@hotlog[2].txt -> Spyware.Cookie.Hotlog : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@hypertracker[2].txt -> Spyware.Cookie.Hypertracker : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@imgserv.adbutler[1].txt -> Spyware.Cookie.Adbutler : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@installs.180solutions[1].txt -> Spyware.Cookie.180solutions : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@internetfuel[2].txt -> Spyware.Cookie.Internetfuel : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@ivwbox[1].txt -> Spyware.Cookie.Ivwbox : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@mediaplex[2].txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@paycounter[2].txt -> Spyware.Cookie.Paycounter : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@perf.overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@qksrv[2].txt -> Spyware.Cookie.Qksrv : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@realmedia[2].txt -> Spyware.Cookie.Realmedia : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@revenue[1].txt -> Spyware.Cookie.Revenue : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@servedby.advertising[1].txt -> Spyware.Cookie.Advertising : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@server.iad.liveperson[1].txt -> Spyware.Cookie.Liveperson : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@serving-sys[1].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@specificpop[2].txt -> Spyware.Cookie.Specificpop : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@spylog[2].txt -> Spyware.Cookie.Spylog : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@targetnet[1].txt -> Spyware.Cookie.Targetnet : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@tradedoubler[2].txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@trafficmp[1].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@tribalfusion[2].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@ugl.adtrak[2].txt -> Spyware.Cookie.Adtrak : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@valuead[1].txt -> Spyware.Cookie.Valuead : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@web4.realtracker[2].txt -> Spyware.Cookie.Realtracker : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@weborama[1].txt -> Spyware.Cookie.Weborama : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@www.burstbeacon[2].txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@www.epilot[1].txt -> Spyware.Cookie.Epilot : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@www.myaffiliateprogram[1].txt -> Spyware.Cookie.Myaffiliateprogram : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@www.shopathomeselect[2].txt -> Spyware.Cookie.Shopathomeselect : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@www1.paypopup[1].txt -> Spyware.Cookie.Paypopup : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@www2.enigmasoftwaregroup[1].txt -> Spyware.Cookie.Enigmasoftwaregroup : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@www2.paypopup[1].txt -> Spyware.Cookie.Paypopup : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@www5.paypopup[1].txt -> Spyware.Cookie.Paypopup : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@www7.paypopup[2].txt -> Spyware.Cookie.Paypopup : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@xxxtoolbar[2].txt -> Spyware.Cookie.Xxxtoolbar : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@y-1shz2prbmdj6wvny-1sez2pra2dj6wjk4wkczwbpgsdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkoukc5igoqidj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@y-1shz2prbmdj6wvny-1sez2pra2dj6wjmiakajehqq2dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnyaiajweqa6dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnyunc5adqaqdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@yieldmanager[2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
T:\Documents and Settings\Brandon_2\Cookies\brandon_2@z1.adserver[1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
T:\Documents and Settings\Brandon_2\Local Settings\Application Data\Wildtangent\Cdacache\00\00\0E.dat/files\wtvh.dll -> Spyware.WildTangent : Cleaned with backup
T:\Documents and Settings\Brandon_2\mc-67-525-0000166.exe -> Adware.Maxifiles : Cleaned with backup
T:\Documents and Settings\Guest\Local Settings\Temp\ez.exe -> Adware.eZula : Cleaned with backup
T:\Documents and Settings\Guest\Local Settings\Temp\whCC-NETSHAGG.exe/wbhshare.dll -> Spyware.WebHancer : Cleaned with backup
T:\Documents and Settings\Guest\Local Settings\Temp\whCC-NETSHAGG.exe/whieshm.dll -> Spyware.WebHancer : Cleaned with backup
T:\Program Files\AWS\WeatherBug\MiniBugTransporter.dll -> Spyware.Wheaterbug : Cleaned with backup
T:\Program Files\Srng\SrngHelper.exe -> Spyware.ShopNav : Cleaned with backup
T:\Program Files\Srng\SrngUtil.exe -> Spyware.ShopNav : Cleaned with backup
T:\Program Files\STC\whcc.exe/WhAgent.exe -> Spyware.WebHancer : Cleaned with backup
T:\Program Files\TV Media\u10.tmp -> Spyware.TotalVelocity : Cleaned with backup
T:\Program Files\TV Media\u13.tmp -> Spyware.TotalVelocity : Cleaned with backup
T:\Program Files\TV Media\u16.tmp -> Spyware.TotalVelocity : Cleaned with backup
T:\Program Files\TV Media\u3E.tmp -> Spyware.TotalVelocity : Cleaned with backup
T:\Program Files\TV Media\u4E.tmp -> Spyware.TotalVelocity : Cleaned with backup
T:\Program Files\TV Media\u53.tmp -> Spyware.TotalVelocity : Cleaned with backup
T:\Program Files\TV Media\u5F.tmp -> Spyware.TotalVelocity : Cleaned with backup
T:\Program Files\TV Media\u63.tmp -> Spyware.TotalVelocity : Cleaned with backup
T:\Program Files\TV Media\u77.tmp -> Spyware.TotalVelocity : Cleaned with backup
T:\Program Files\TV Media\u83.tmp -> Spyware.TotalVelocity : Cleaned with backup
T:\Program Files\TV Media\uA.tmp -> Spyware.TotalVelocity : Cleaned with backup
T:\Program Files\TV Media\uAA.tmp -> Spyware.TotalVelocity : Cleaned with backup
T:\Program Files\TV Media\uB.tmp -> Spyware.TotalVelocity : Cleaned with backup
T:\Program Files\whInstall\Webhdll.dll -> Spyware.WebHancer : Cleaned with backup
T:\Program Files\whInstall\WhAgent.exe -> Spyware.WebHancer : Cleaned with backup
T:\Program Files\whInstall\whiehlpr.dll -> Spyware.WebHancer : Cleaned with backup
T:\Program Files\whInstall\whInstaller.exe -> Spyware.WebHancer : Cleaned with backup
T:\Program Files\whInstall\WhSurvey.exe -> Spyware.WebHancer : Cleaned with backup
T:\RECYCLER\S-1-5-21-1417001333-1935655697-1060284298-1005\Dc332.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
T:\RECYCLER\S-1-5-21-1417001333-1935655697-1060284298-1005\Dc334.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
T:\RECYCLER\S-1-5-21-1417001333-1935655697-1060284298-1005\Dc335.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
T:\RECYCLER\S-1-5-21-1417001333-1935655697-1060284298-1005\Dc346.txt -> Spyware.Cookie.Shopathomeselect : Cleaned with backup
T:\RECYCLER\S-1-5-21-1454471165-688789844-854245398-1004\Dt30\bdedownloader.dll -> Spyware.Altnet : Cleaned with backup
T:\RECYCLER\S-1-5-21-1454471165-688789844-854245398-1004\Dt30\dman25.dll -> Adware.BrilliantDigital : Cleaned with backup
T:\RECYCLER\S-1-5-21-1454471165-688789844-854245398-1004\Dt30\dmfiles.cab/AltnetUninstall.exe -> Spyware.Altnet : Cleaned with backup
T:\RECYCLER\S-1-5-21-1454471165-688789844-854245398-1004\Dt30\dmfiles.cab/asmend.exe -> Spyware.Altnet : Cleaned with backup
T:\RECYCLER\S-1-5-21-1454471165-688789844-854245398-1004\Dt30\pmfiles.cab/sysdetect.dll -> Adware.BrilliantDigital : Cleaned with backup
T:\RECYCLER\S-1-5-21-1454471165-688789844-854245398-1004\Dt30\Setup.exe -> Spyware.Altnet : Cleaned with backup
T:\Temp\180SAInstaller.exe/clientax.dll -> Spyware.180Solutions : Cleaned with backup
T:\Temp\180SAInstaller.exe/clientax.dll -> Spyware.180Solutions : Cleaned with backup
T:\WINDOWS\bbchk.exe -> Spyware.BargainBuddy : Cleaned with backup
T:\WINDOWS\bsx32\ADTMI1.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ADVC5.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ADVCTX2.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASIB9894.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASIC29667.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASID12180.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASIE17070.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASIF29819.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASIF4502.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASIFWH29233.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASIG21943.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASIGT10102.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASIH7853.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASII21469.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASIL18549.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASIOG19375.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASIOT25456.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASIPF1965.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASIR21184.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASIRE20082.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASIS24110.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASIS31590.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASIT17011.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASIT26116.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASIW11211.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\ASIWS3.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\AUTOS1.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\BID1.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\BingoRoom1.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\CARD2.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\CARS3.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\DATE3.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\DATE4.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\EECH1.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\EML1.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\FAST1.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\FINC1.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\FINC2.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\FINC3.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\FINC4.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\FINC5.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\FLWR1.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\HERBS1.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\INK1.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\JOBS2.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\JOBS3.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\JOBS4.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\MOVS1.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\MOVS2.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\NEWS1.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\NEWS2.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\SHOP1.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\SHOP2.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\SPEC1.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\SPZ3.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\TECH1.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\TECH2.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\TMP1.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\TVEN2.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\UTONE2.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\WOMEN1.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\WOMEN2.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\WWW3.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\bsx32\XTFL2.bsx -> Spyware.BookedSpace : Cleaned with backup
T:\WINDOWS\Downloaded Program Files\lsp_.dll -> Adware.SAHA : Cleaned with backup
T:\WINDOWS\Downloaded Program Files\MediaTicketsInstaller.ocx -> Spyware.MediaTickets : Cleaned with backup
T:\WINDOWS\Downloaded Program Files\SAHAgent_.exe -> Adware.SAHA : Cleaned with backup
T:\WINDOWS\Downloaded Program Files\SahHtml_.exe -> Adware.SAHA : Cleaned with backup
T:\WINDOWS\Downloaded Program Files\WEBInstaller.dll -> Adware.SAHA : Cleaned with backup
T:\WINDOWS\emsw.exe -> Spyware.HelpExpress : Cleaned with backup
T:\WINDOWS\fash.exe -> Backdoor.Agent.bg : Cleaned with backup
T:\WINDOWS\prelimhanse.exe -> Spyware.WebHancer : Cleaned with backup
T:\WINDOWS\SET140.tmp -> Spyware.WebHancer : Cleaned with backup
T:\WINDOWS\system32\BO2802040113.dll -> Spyware.BargainBuddy : Cleaned with backup
T:\WINDOWS\system32\in9bjs.dll -> Adware.eZula : Cleaned with backup
T:\WINDOWS\system32\instsrv.exe -> Spyware.BargainBuddy : Cleaned with backup
T:\WINDOWS\system32\lsp.dll -> Adware.SAHA : Cleaned with backup
T:\WINDOWS\system32\Lycos.dll -> Spyware.BargainBuddy : Cleaned with backup
T:\WINDOWS\system32\msbb321.dll -> Spyware.BargainBuddy : Cleaned with backup
T:\WINDOWS\system32\mt-uninstaller.exe -> Spyware.PurityScan.u : Cleaned with backup
T:\WINDOWS\system32\SahAgent.exe -> Adware.SAHA : Cleaned with backup
T:\WINDOWS\system32\sahagent1019.exe -> Adware.SAHA : Cleaned with backup
T:\WINDOWS\system32\SahHtml.exe -> Adware.SAHA : Cleaned with backup
T:\WINDOWS\system32\SWRT01.dll -> Spyware.VirtualBouncer : Cleaned with backup
T:\WINDOWS\whCC-MOTOR.exe/WhAgent.exe -> Spyware.WebHancer : Cleaned with backup
T:\WINDOWS\wt\wtvh.dll -> Spyware.WildTangent : Cleaned with backup


::Report End


...and my second one:


ewido security suite - Scan report


+ Created on: 2:57:45 PM, 11/11/2005
+ Report-Checksum: 5CF4310

+ Scan result:

No infected objects found.


::Report End


0

Response Number 3
Name: jabuck
Date: November 11, 2005 at 13:32:24 Pacific
Reply:

rp19583, I am assuming that you ran the smitrem.exe tool and ccleaner....Reboot into safe mode.

Set up the cumputer to view hihhen files. Go to start>control panel>folder options>view tab,then:

Tick the circle beside "show hidden files and folders".

Untick the box beside "hide extensions of known file types".

Untick the box beside "hide protected operating system files".

then click apply>ok.

Then navigate to and delete these files if found:

C:\WINDOWS\System32\spyaxe.exe

C:\WINDOW\System32\svchosts.dll

Post the smitrem log that you have that should be located at C:\smitfiles.txt and let me know if you found svchosts.dll.


0

Response Number 4
Name: rp19583
Date: November 11, 2005 at 15:07:14 Pacific
Reply:

jabuck, While in safe mode, I could not find a spyaxe.exe, but I did find a svchosts.dll. However, when I tried to delete it, it said something like, "Cannot delete...disk is full/write-protected or file is in use." I believe the file was in use because it was on the running proccesses list three times.

Here is my smitfiles.txt log from earlier:


smitRem © log file
version 2.7

by noahdfear


Microsoft Windows XP [Version 5.1.2600]
The current date is: Fri 11/11/2005
The current time is: 6:37:37.07

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

checking for ShudderLTD key

ShudderLTD key not present!

checking for PSGuard.com key


PSGuard.com key not present!

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Existing Pre-run Files


~~~ Program Files ~~~

~~~ Shortcuts ~~~

~~~ Favorites ~~~

~~~ system32 folder ~~~

~~~ Icons in System32 ~~~

~~~ Windows directory ~~~

~~~ Drive root ~~~


~~~ Miscellaneous Files/folders ~~~


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Remaining Post-run Files


~~~ Program Files ~~~

~~~ Shortcuts ~~~

~~~ Favorites ~~~

~~~ system32 folder ~~~

~~~ Icons in System32 ~~~

~~~ Windows directory ~~~

~~~ Drive root ~~~

~~~ Miscellaneous Files/folders ~~~


~~~ Wininet.dll ~~~

CLEAN! :)


0

Response Number 5
Name: rp19583
Date: November 11, 2005 at 15:22:50 Pacific
Reply:

I just used a program called KillBox to remove svchosts.dll and it was succesful. The pop-up is not on my taskbar anymore, so I think I'm all done.

Is there anything else I need to do?


0

Related Posts

See More



Response Number 6
Name: jabuck
Date: November 11, 2005 at 19:10:01 Pacific
Reply:

Thank you for that needed info, you did a great job.Good to hear that you are clean.You might run ccleaner again.


0

Response Number 7
Name: jabuck
Date: November 11, 2005 at 20:58:09 Pacific
Reply:

One other thing dows come to mind,Purge System Restore by shutting it down and restarting it.

Then create a new restore point go Start>Run>type "msconfig" without the quotes>ok>Launch System Restore>Tick the circle beside "create a restore point">next>name it anything you wish>Create>home>restart the computer.


0

Response Number 8
Name: Kakirot
Date: November 12, 2005 at 02:32:22 Pacific
Reply:

There is a solution, from Spyaxe itself, if you chose to trust them. They came out saying they apoligize, that it was a bad decision by a farm out marketing firm and their programmers came up with a fix: www.spyaxe.com/uninstall/uninstallers.zip
download the two files, scan for virus (of course, I ran McAffee VirusScan, they came up clean) unzip them and then run the first file, wait and run the second file. reboot and you will be very happy to not see that windows globe anylonger!


0

Response Number 9
Name: rp19583
Date: November 12, 2005 at 05:33:50 Pacific
Reply:

jabuck, Thanks a lot for all your help. I appreciate it greatly!

It is nice to know there is help available when I need it.


0

Response Number 10
Name: ugnius
Date: November 14, 2005 at 05:12:06 Pacific
Reply:

Spyaxe used to be good remover and authors still claim that they did nothing bad. It spread with Worm which makes remover look bad. But anyway the result is the same: try to avoid this program for now.
more about spyaxe on Spyware removal blog.


0

Response Number 11
Name: loki91
Date: November 19, 2005 at 06:32:34 Pacific
Reply:

jabuck is right. my computer lagged abnormally when i got spyaxe, and i was forced to restart multiple times out of frustration, only to make it worse. however i decided to give the neglected system restore a try and worked perfectly! even the internet homepage was reset to my previous one!
lesson learnt: when all else fails dont forget system restore


0

Sponsored Link
Ads by Google
Reply to Message Icon






Post Locked

This post is quite old and has been locked from receiving new replies. Please create a new posting instead.


Go to Security and Virus Forum Home


Sponsored links

Ads by Google


Results for: Spyaxe popups

spyaxe problems..... www.computing.net/answers/security/spyaxe-problems/16942.html

Post-Spyaxe problems www.computing.net/answers/security/postspyaxe-problems/17458.html

Spyaxe problem www.computing.net/answers/security/spyaxe-problem/17028.html