Computing.Net > Forums > Security and Virus > you have a security problem

Computer Problems? Computing.Net has over 1,000,000 posts about all things technology related! Over 90% answered within 24 hours! Click here to start participating now! Also, be sure to check out the New User Guide.

you have a security problem

Reply to Message Icon

Name: mrcohs
Date: October 27, 2008 at 12:31:10 Pacific
OS: ??
CPU/Ram: ??
Product: dell
Comment:

help.............i keep getting this message of "you have a security problem" over and over and over........

it also seems that pages and links i click on are redirected to other sites......

HELP

novice user here that needs help



Sponsored Link
Ads by Google

Response Number 1
Name: jabuck
Date: October 27, 2008 at 18:20:32 Pacific
Reply:

Download SDFix.exe and save it to your Desktop.
Very Important! Temporarily disable your anti-virus, script blocking and any anti-malware real-time protection before performing a scan. They can interfere with SDFix or remove some of its embedded files which may cause "unpredictable results".
Click on This Link to see a list of programs that should be disabled. The list is not all inclusive. If yours is not listed and you don't know how to disable it, please ask.
Remember to re-enable the protection again afterwards before connecting to the Internet.

1.Double click SDFix.exe and choose Install to extract it to its own folder on the Desktop. Please then reboot your computer in Safe Mode by doing the following :
Restart your computer
After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually;
Instead of Windows loading as normal, a menu with options should appear;
Select the first option, to run Windows in Safe Mode, then press "Enter".
Choose your usual account.
2. Open the c:\SDFix folder and double click RunThis.cmd to start the script.
Type Y to begin the script.
It will remove the Trojan Services then make some repairs to the registry and prompt you to press any key to Reboot.
Press any Key and it will restart the PC.
3. Your system will take longer that normal to restart as the fixtool will be running and removing files.
When the desktop loads the Fixtool will complete the removal and display Finished, then press any key to end the script and load your desktop icons.
4. Finally open the SDFix folder on your desktop and copy and paste the contents of the results file Report.txt


0

Response Number 2
Name: mrcohs
Date: October 27, 2008 at 19:16:11 Pacific
Reply:

I HOPE I DID THIS CORRECT....HERE ARE THE RESULTS

SDFix has been extracted to %systemdrive%\SDFix\
(Drive that contains the Windows directory - typically C:\SDFix)

Open the SDFix folder in Safe Mode and double click the RunThis.bat file to start the fixtool
If RunThis.bat is started in Normal Mode, options to download and run Anti-Virus command line scanners are displayed

Catchme.exe Stealth Malware Detector by GMER is also included in the SDFix folder

Additional SDFix Instructions & screen shots can be found here - http://www.bleepingcomputer.com/for...


SDFix a été extrait dans %systemdrive%\SDFix\
(Le disque qui contient le répertoire Windows - typiquement C:\SDFix)

Ouvrez le dossier SDFix en mode sans échec et double cliquez sur le fichier RunThis.bat pour démarrer l'outil.
Si RunThis.bat est lancé en mode normal, les options pour télécharger et lancer les scanners Antivirus en ligne de commande seront affichées

Catchme.exe Stealth Malware Detector de GMER est également inclus dans le dossier SDFix

Instructions supplémentaires pour SDFix & captures d'écran peuvent être trouvées ici - http://www.bleepingcomputer.com/for...

novice user here that needs help


0

Response Number 3
Name: jabuck
Date: October 27, 2008 at 19:31:09 Pacific
Reply:

I don't know what you did but that is not the expected results, i don't think it run at all. Lets try something else.

Please download Malwarebytes' Anti-Malware from one of these sites:

MalwareBytes1

MalwareBytes2

1. Double Click mbam-setup.exe to install the application.
2. Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
3. If an update is found, it will download and install the latest version.
4. Once the program has loaded, select "Perform Quick Scan", then click Scan. The scan may take some time to finish,so please be patient.
5. When the scan is complete, click OK, then Show Results to view the results.
6. Make sure that everything found is checked, and click Remove Selected.
7. When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process,if asked to restart the computer,please do so immediately.
8. The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
9. Copy&Paste the entire report in your next reply.


Please download and install the latest version of HijackThis v2.0.2:


Download the "HijackThis" Installer from this link:
Hijack This


1. Save " HJTInstall.exe" to your desktop.
2. Double click on HJTInstall.exe to run the program.
3. By default it will install to C:\Program Files\Trend Micro\HijackThis.
4. Accept the license agreement by clicking the "I Accept" button.
5.Click on the "Do a system scan and save a log file" button. It will scan and then ask you to save the log.
6. Click "Save log" to save the log file and then the log will open in Notepad.
7. Click on "Edit > Select All" then click on "Edit > Copy" to copy the entire contents of the log.
8. Paste the log in your next reply.
9. Do NOT have HijackThis fix anything yet! Most of what it finds will be harmless or even required.


0

Response Number 4
Name: mrcohs
Date: October 27, 2008 at 19:50:05 Pacific
Reply:


[b]SDFix: Version 1.238 [/b]
Run by Serj on Mon 10/27/2008 at 09:28 PM

Microsoft Windows XP [Version 5.1.2600]
Running From: C:\SDFix

[b]Checking Services [/b]:


Restoring Default Security Values
Restoring Default Hosts File

Rebooting


[b]Checking Files [/b]:

Trojan Files Found:

C:\DOCUME~1\Serj\LOCALS~1\Temp\xxx470.exe - Deleted
C:\DOCUME~1\Serj\LOCALS~1\Temp\xxx7301.exe - Deleted
C:\DOCUME~1\Serj\LOCALS~1\Temp\xxx7717.exe - Deleted

Removing Temp Files

[b]ADS Check [/b]:


[b]Final Check [/b]:

catchme 0.3.1361.2 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-10-27 21:42:25
Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden services & system hive ...

scanning hidden registry entries ...

scanning hidden files ...

scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0


[b]Remaining Services [/b]:


Authorized Application Key Export:

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\standardprofile\authorizedapplications\list]
"C:\\Program Files\\Windows Media Player\\wmplayer.exe"="C:\\Program Files\\Windows Media Player\\wmplayer.exe:*:Enabled:Windows Media Player"
"C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"="C:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe:*:Enabled:Yahoo! Messenger"
"C:\\Program Files\\Yahoo!\\Messenger\\YServer.exe"="C:\\Program Files\\Yahoo!\\Messenger\\YServer.exe:*:Enabled:Yahoo! FT Server"
"C:\\WINDOWS\\system32\\LEXPPS.exe"="C:\\WINDOWS\\system32\\LEXPPS.EXE:*:Disabled:LEXPPS.EXE"
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\services\sharedaccess\parameters\firewallpolicy\domainprofile\authorizedapplications\list]
"%windir%\\Network Diagnostic\\xpnetdiag.exe"="%windir%\\Network Diagnostic\\xpnetdiag.exe:*:Enabled:@xpsp3res.dll,-20000"
"%windir%\\system32\\sessmgr.exe"="%windir%\\system32\\sessmgr.exe:*:enabled:@xpsp2res.dll,-22019"

[b]Remaining Files [/b]:


File Backups: - C:\SDFix\backups\backups.zip

[b]Files with Hidden Attributes [/b]:

Tue 22 Nov 2005 211 A.SH. --- "C:\BOOT.BAK"
Tue 7 Mar 2006 4,348 ..SH. --- "C:\Documents and Settings\All Users\DRM\DRMv1.bak"
Fri 27 Jun 2008 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv01.tmp"
Sat 28 Jun 2008 0 A.SH. --- "C:\Documents and Settings\All Users\DRM\Cache\Indiv02.tmp"

[b]Finished![/b]

novice user here that needs help


0

Response Number 5
Name: mrcohs
Date: October 27, 2008 at 20:17:11 Pacific
Reply:

Malwarebytes' Anti-Malware 1.30
Database version: 1331
Windows 5.1.2600 Service Pack 3

10/27/2008 10:15:19 PM
mbam-log-2008-10-27 (22-15-19).txt

Scan type: Quick Scan
Objects scanned: 52339
Time elapsed: 9 minute(s), 33 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)

novice user here that needs help


0

Related Posts

See More



Response Number 6
Name: mrcohs
Date: October 27, 2008 at 20:19:50 Pacific
Reply:

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:19:12 PM, on 10/27/2008
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16735)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.exe
C:\WINDOWS\system32\LEXPPS.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Southwest Airlines\Ding\Ding.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\NOTEPAD.exe
C:\Documents and Settings\Serj\Desktop\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie...
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie...
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?Lin...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie...
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie...
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?Lin...
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie...
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe"
O4 - HKLM\..\RunOnce: [Malwarebytes' Anti-Malware] C:\Program Files\Malwarebytes' Anti-Malware\mbamgui.exe /install /silent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: DING!.lnk = C:\Program Files\Southwest Airlines\Ding\Ding.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_07\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyGaming\PartyPoker\RunApp.exe (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binar...
O16 - DPF: {0742B9EF-8C83-41CA-BFBA-830A59E23533} (Microsoft Data Collection Control) - https://support.microsoft.com/OAS/ActiveX/MSDcode.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binar...
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {54BE6B6F-3056-470B-97E1-BB92E051B6C4} (DeviceEnum Class) - http://h20264.www2.hp.com/ediags/dd...
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.onecare.live.com/re...
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls...
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://www.update.microsoft.com/mic...
O16 - DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} - http://download.shockwave.com/pub/o...
O16 - DPF: {7E980B9B-8AE5-466A-B6D6-DA8CF814E78A} (MJLauncherCtrl Class) - http://messenger.zone.msn.com/EN-US...
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binar...
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binar...
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/g...
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.exe

--
End of file - 7388 bytes

novice user here that needs help


0

Response Number 7
Name: jabuck
Date: October 28, 2008 at 03:38:40 Pacific
Reply:

You need an antivirus. I use the free version of AVG antivirus, you can download it at this link:
AVG Free Antivirus

Update it once you get it installed.

Please download ComboFix to the desktop from one of the following links:

Link1

Link 2

Link 3

Combofix is a powerful tool so follow the instructions exactly or you could damage your computer.

Very Important! Temporarily disable your anti-virus, script blocking and any anti-malware real-time protection before performing a scan. They can interfere with Combofix and remove some of its embedded files which may cause "unpredictable results".
Click on This Link to see a list of programs that should be disabled. The list is not all inclusive. If yours is not listed and you don't know how to disable it, please ask.

In your case to run Combofix do the following:
1. Go offline turn off your AVG antivirus, and any antispyware that you may have.
2. Run Combofix and save its log.
3. Restart the computer to get the antivirus running again but leave the antispyware programs off until we get the computer cleaned.
4. Post the Combofix log.


Remember to re-enable the protection again afterwards before connecting to the Internet.

Double-click combofix.exe
Follow the prompts.
(Don't click on the window while the program is running or move the mouse, it will cause your system to hang.)
Please post the log it produces.


0

Response Number 8
Name: mrcohs
Date: October 29, 2008 at 17:31:54 Pacific
Reply:

ComboFix 08-10-30.04 - Serj 2008-10-29 18:54:10.2 - NTFSx86
Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.53 [GMT -5:00]
Running from: C:\Documents and Settings\Serj\Desktop\ComboFix.exe
* Created a new restore point

[COLOR=RED][B]WARNING -THIS MACHINE DOES NOT HAVE THE RECOVERY CONSOLE INSTALLED !![/B][/COLOR]
.

((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))
.

C:\WINDOWS\Downloaded Program Files\setup.inf
C:\WINDOWS\IE4 Error Log.txt

.
((((((((((((((((((((((((( Files Created from 2008-09-28 to 2008-10-30 )))))))))))))))))))))))))))))))
.

2008-10-29 18:20 . 2008-10-29 18:24 <DIR> d-------- C:\WINDOWS\system32\drivers\Avg
2008-10-29 18:20 . 2008-10-29 18:20 <DIR> d-------- C:\Program Files\AVG
2008-10-29 18:20 . 2008-10-29 18:37 <DIR> d-------- C:\Documents and Settings\Serj\Application Data\AVGTOOLBAR
2008-10-29 18:20 . 2008-10-29 18:20 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\avg8
2008-10-29 18:20 . 2008-10-29 18:20 97,928 --a------ C:\WINDOWS\system32\drivers\avgldx86.sys
2008-10-29 18:20 . 2008-10-29 18:20 76,040 --a------ C:\WINDOWS\system32\drivers\avgtdix.sys
2008-10-29 18:20 . 2008-10-29 18:20 10,520 --a------ C:\WINDOWS\system32\avgrsstx.dll
2008-10-27 22:03 . 2008-10-27 22:03 <DIR> d-------- C:\Program Files\Malwarebytes' Anti-Malware
2008-10-27 22:03 . 2008-10-22 16:10 38,496 --a------ C:\WINDOWS\system32\drivers\mbamswissarmy.sys
2008-10-27 22:03 . 2008-10-22 16:10 15,504 --a------ C:\WINDOWS\system32\drivers\mbam.sys
2008-10-27 21:27 . 2008-10-27 21:27 578,560 --a--c--- C:\WINDOWS\system32\dllcache\user32.dll
2008-10-27 21:24 . 2008-10-27 21:24 <DIR> d-------- C:\WINDOWS\ERUNT
2008-10-27 20:51 . 2008-10-27 21:47 <DIR> d-------- C:\SDFix
2008-10-27 16:32 . 2008-10-27 16:32 <DIR> d-------- C:\Documents and Settings\Serj\Application Data\Malwarebytes
2008-10-27 16:31 . 2008-10-27 16:31 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Malwarebytes
2008-10-27 13:27 . 2008-10-27 16:57 <DIR> d-a------ C:\Documents and Settings\All Users\Application Data\TEMP
2008-10-26 12:16 . 2008-10-26 12:21 <DIR> d-------- C:\Program Files\Windows Live Safety Center
2008-10-26 12:04 . 2008-10-26 12:04 <DIR> d-------- C:\WINDOWS\system32\scripting
2008-10-26 12:04 . 2008-10-26 12:04 <DIR> d-------- C:\WINDOWS\system32\en
2008-10-26 12:04 . 2008-10-26 12:04 <DIR> d-------- C:\WINDOWS\system32\bits
2008-10-26 12:04 . 2008-10-26 12:04 <DIR> d-------- C:\WINDOWS\l2schemas
2008-10-26 11:59 . 2008-10-26 12:06 <DIR> d-------- C:\WINDOWS\ServicePackFiles
2008-10-23 12:38 . 2008-10-15 11:34 337,408 -----c--- C:\WINDOWS\system32\dllcache\netapi32.dll
2008-10-15 22:30 . 2008-09-08 05:41 333,824 -----c--- C:\WINDOWS\system32\dllcache\srv.sys
2008-10-15 22:29 . 2008-08-14 05:11 2,189,184 -----c--- C:\WINDOWS\system32\dllcache\ntoskrnl.exe
2008-10-15 22:29 . 2008-08-14 05:09 2,145,280 -----c--- C:\WINDOWS\system32\dllcache\ntkrnlmp.exe
2008-10-15 22:29 . 2008-08-14 04:33 2,066,048 -----c--- C:\WINDOWS\system32\dllcache\ntkrnlpa.exe
2008-10-15 22:29 . 2008-08-14 04:33 2,023,936 -----c--- C:\WINDOWS\system32\dllcache\ntkrpamp.exe
2008-10-15 22:29 . 2008-09-15 07:12 1,846,400 -----c--- C:\WINDOWS\system32\dllcache\win32k.sys
2008-09-28 01:14 . 2008-09-28 01:14 <DIR> d-------- C:\Documents and Settings\All Users\Application Data\Yahoo! Companion

.
(((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))
.
2008-10-28 02:05 --------- d-----w C:\Program Files\Spybot - Search & Destroy
2008-10-28 02:05 --------- d-----w C:\Documents and Settings\All Users\Application Data\Spybot - Search & Destroy
2008-10-28 01:47 --------- d-----w C:\Program Files\Common Files\Wise Installation Wizard
2008-10-28 01:46 --------- d-----w C:\Program Files\Lavasoft
2008-10-27 18:26 --------- d-----w C:\Program Files\Common Files\Download Manager
2008-10-27 18:10 --------- d-----w C:\Program Files\Java
2008-10-25 20:22 --------- d-----w C:\Documents and Settings\All Users\Application Data\Yahoo!
2008-10-22 14:29 --------- d-----w C:\Program Files\Microsoft Silverlight
2008-10-20 05:06 --------- d-----w C:\Documents and Settings\Serj\Application Data\Move Networks
2008-09-30 19:59 --------- d--h--r C:\Documents and Settings\Guest\Application Data\yahoo!
2008-09-28 06:11 --------- d-----w C:\Program Files\Yahoo!
2008-09-15 12:12 1,846,400 ----a-w C:\WINDOWS\system32\win32k.sys
2008-09-08 10:41 333,824 ----a-w C:\WINDOWS\system32\drivers\srv.sys
2008-08-29 22:23 --------- d-----w C:\Documents and Settings\Guest\Application Data\Talkback
2008-08-26 07:24 826,368 ----a-w C:\WINDOWS\system32\wininet.dll
2008-08-14 10:11 2,189,184 ----a-w C:\WINDOWS\system32\ntoskrnl.exe
2008-08-14 09:33 2,066,048 ----a-w C:\WINDOWS\system32\ntkrnlpa.exe
2008-07-19 03:10 94,920 ----a-w C:\WINDOWS\system32\cdm.dll
2008-07-19 03:10 53,448 ----a-w C:\WINDOWS\system32\wuauclt.exe
2008-07-19 03:10 45,768 ----a-w C:\WINDOWS\system32\wups2.dll
2008-07-19 03:10 36,552 ----a-w C:\WINDOWS\system32\wups.dll
2008-07-19 03:09 563,912 ----a-w C:\WINDOWS\system32\wuapi.dll
2008-07-19 03:09 325,832 ----a-w C:\WINDOWS\system32\wucltui.dll
2008-07-19 03:09 205,000 ----a-w C:\WINDOWS\system32\wuweb.dll
2008-07-19 03:09 1,811,656 ----a-w C:\WINDOWS\system32\wuaueng.dll
2008-07-19 03:07 270,880 ----a-w C:\WINDOWS\system32\mucltui.dll
2008-07-19 03:07 210,976 ----a-w C:\WINDOWS\system32\muweb.dll
2008-07-07 20:26 253,952 ----a-w C:\WINDOWS\system32\es.dll
2008-03-04 20:56 60,968 ----a-w C:\Documents and Settings\Serj\GoToAssistDownloadHelper.exe
.

((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))))
.
.
*Note* empty entries & legit default entries are not shown
REGEDIT4

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"ctfmon.exe"="C:\WINDOWS\system32\ctfmon.exe" [2008-04-13 15360]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
"TkBellExe"="C:\Program Files\Common Files\Real\Update_OB\realsched.exe" [2008-01-31 185896]
"QuickTime Task"="C:\Program Files\QuickTime\qttask.exe" [2007-06-29 286720]
"SunJavaUpdateSched"="C:\Program Files\Java\jre1.6.0_07\bin\jusched.exe" [2008-06-10 144784]
"AVG8_TRAY"="C:\PROGRA~1\AVG\AVG8\avgtray.exe" [2008-10-29 1234712]

C:\Documents and Settings\Serj\Start Menu\Programs\Startup\
DING!.lnk - C:\Program Files\Southwest Airlines\Ding\Ding.exe [2006-06-22 462848]

[HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\windows]
"AppInit_DLLs"=avgrsstx.dll

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TCASUTIEXE]
TCAUDIAG -off [X]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Photo Downloader]
--a------ 2007-03-09 11:09 63712 C:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Adobe Reader Speed Launcher]
--a------ 2008-01-11 23:16 39792 C:\Program Files\Adobe\Reader 8.0\Reader\reader_sl.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
--a------ 2008-04-13 19:12 15360 C:\WINDOWS\system32\ctfmon.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HotKeysCmds]
--a------ 2005-10-19 08:59 126976 C:\WINDOWS\system32\hkcmd.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\IgfxTray]
--a------ 2005-10-19 08:59 155648 C:\WINDOWS\system32\igfxtray.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
--a------ 2007-06-29 06:24 286720 C:\Program Files\QuickTime\QTTask.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SoundMAXPnP]
--a------ 2004-10-14 15:42 1404928 C:\Program Files\Analog Devices\Core\smax4pnp.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
--a------ 2007-09-25 02:11 132496 C:\Program Files\Java\jre1.6.0_03\bin\jusched.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
--a------ 2008-01-31 17:57 185896 C:\Program Files\Common Files\Real\Update_OB\realsched.exe

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Logitech Utility]
--------- 2003-11-26 10:50 19968 C:\WINDOWS\LOGI_MWX.exe

[HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
"C:\\Program Files\\Windows Media Player\\wmplayer.exe"=
"C:\\WINDOWS\\system32\\LEXPPS.exe"=
"%windir%\\Network Diagnostic\\xpnetdiag.exe"=
"%windir%\\system32\\sessmgr.exe"=
"C:\\Program Files\\AVG\\AVG8\\avgemc.exe"=
"C:\\Program Files\\AVG\\AVG8\\avgupd.exe"=


*Newly Created Service* - AVG8EMC
*Newly Created Service* - AVG8WD
*Newly Created Service* - AVGLDX86
*Newly Created Service* - AVGMFX86
*Newly Created Service* - AVGTDIX
.
Contents of the 'Scheduled Tasks' folder

2008-10-29 C:\WINDOWS\Tasks\User_Feed_Synchronization-{4E25D8C0-7F49-48B2-86A3-68F3F5FC7908}.job
- C:\WINDOWS\system32\msfeedssync.exe [2006-10-17 11:58]
.
- - - - ORPHANS REMOVED - - - -

MSConfigStartUp-MsnMsgr - C:\Program Files\MSN Messenger\MsnMsgr.exe
MSConfigStartUp-SpybotSD TeaTimer - C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
MSConfigStartUp-updateMgr - C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe


.
------- Supplementary Scan -------
.
FireFox -: Profile - C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\
FireFox -: prefs.js - SEARCH.DEFAULTURL - hxxp://search.yahoo.com/search?fr=ffsp1&p=
FireFox -: prefs.js - STARTUP.HOMEPAGE - hxxp://www.yahoo.com/
.

**************************************************************************

catchme 0.3.1367 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
Rootkit scan 2008-10-30 19:09:08
Windows 5.1.2600 Service Pack 3 NTFS

scanning hidden processes ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden files: 0

**************************************************************************
.
Completion time: 2008-10-30 19:20:09
ComboFix-quarantined-files.txt 2008-10-31 00:20:01
ComboFix2.txt 2007-09-05 02:44:38

Pre-Run: 30,198,665,216 bytes free
Post-Run: 30,306,349,056 bytes free

158 --- E O F --- 2008-10-28 03:34:13

novice user here that needs help


0

Response Number 9
Name: jabuck
Date: October 29, 2008 at 18:52:26 Pacific
Reply:

Your java is out of date and may have been exploited.
Download the latest version of java from this link Java
Click on the JRE 6 Update 10 download button.
Check the box that says: "Accept License Agreement". The page will refresh.
Click on the link to download Windows Offline Installation with or without Multi-language and save to your desktop.
Close any programs you may have running - especially your web browser.
Go to Start > Control Panel double-click on Add/Remove programs and remove all older versions of Java. Check any item with Java Runtime Environment (JRE or J2SE) in the name. It should have the "coffee cup" icon next to it.
Click the Remove or Change/Remove button. Repeat as many times as necessary to remove each Java versions.
Reboot your computer once all Java components are removed
Then from your desktop double-click on jre-6u10-windows-i586-p.exe to install the newest version.

Empty the restore folder. Go to start>control panel>system>system restore tab>check the box beside "turn off system restore>apply (takes a minute)>ok. Go back and uncheck the box to turn system restore back on>apply>ok.


Download ATF Cleaner from this link:
http://www.majorgeeks.com/ATF_Cleaner_d4949.html
Run ATF-Cleaner
Double-click ATF-Cleaner.exe to run the program.
Under Main choose: Select All
Click the Empty Selected button.

Please run Esets online scanner from this link:

ESET

1. Note: You will need to use Internet explorer for this scan
2. Tick the box next to YES, I accept the Terms of Use.
3. Click Start
4. When asked, allow the activex control to install
5. Click Start
6. Make sure that the option Remove found threats is unticked ( Iwant to see what is found first), and the option Scan unwanted applications is checked
7. Click Scan
8. Wait for the scan to finish
9. Use notepad to open the logfile located at C:\Program Files\EsetOnlineScanner\log.txt
10. Copy and paste that log in your next reply.


0

Response Number 10
Name: mrcohs
Date: October 30, 2008 at 12:59:25 Pacific
Reply:

# version=4
# OnlineScanner.ocx=1.0.0.56
# OnlineScannerDLLA.dll=1, 0, 0, 51
# OnlineScannerDLLW.dll=1, 0, 0, 51
# OnlineScannerUninstaller.exe=1, 0, 0, 49
# vers_standard_module=3568 (20081030)
# vers_arch_module=1.064 (20080214)
# vers_adv_heur_module=1.064 (20070717)
# EOSSerial=c4829e4ed21f7c4f87399a22994eb77c
# end=finished
# remove_checked=false
# unwanted_checked=false
# utc_time=2008-10-31 04:13:17
# local_time=2008-10-30 11:13:17 (-0600, Central Daylight Time)
# country="United States"
# osver=5.1.2600 NT Service Pack 3
# scanned=249704
# found=19
# scan_time=5336
C:\!KillBox\kqqo\kqqod\vocabulary Win32/TrojanDownloader.TSUpdate.J trojan 7901AE90CA5D7979D4FCA52D83D420FB
C:\Documents and Settings\Serj\Application Data\Sun\Java\Deployment\cache\6.0\0\5e461a00-259df713 Java/ClassLoader.AA trojan 5485110E4489670F324DC2A8D131981D
C:\Documents and Settings\Serj\Application Data\Sun\Java\Deployment\cache\6.0\0\5e461a00-259df713 »ZIP »BlackBox.class Java/ClassLoader.AA trojan 00000000000000000000000000000000
C:\Documents and Settings\Serj\Application Data\Sun\Java\Deployment\cache\6.0\0\5e461a00-259df713 »ZIP »VerifierBug.class Java/ClassLoader.AA trojan 00000000000000000000000000000000
C:\Documents and Settings\Serj\Application Data\Sun\Java\Deployment\cache\6.0\0\5e461a00-259df713 »ZIP »Dummy.class Java/ClassLoader.AA trojan 00000000000000000000000000000000
C:\Documents and Settings\Serj\Application Data\Sun\Java\Deployment\cache\6.0\0\5e461a00-259df713 »ZIP »Beyond.class Java/ClassLoader.AA trojan 00000000000000000000000000000000
C:\Documents and Settings\Serj\Application Data\Sun\Java\Deployment\cache\6.0\12\4ef9724c-6a862db2 multiple infiltrations 123E7A716769E4110A0D85D09F5F9640
C:\Documents and Settings\Serj\Application Data\Sun\Java\Deployment\cache\6.0\12\4ef9724c-6a862db2 »ZIP »MagicApplet.class Java/TrojanDownloader.OpenConnection trojan 00000000000000000000000000000000
C:\Documents and Settings\Serj\Application Data\Sun\Java\Deployment\cache\6.0\12\4ef9724c-6a862db2 »ZIP »OwnClassLoader.class Java/Exploit.Bytverify trojan 00000000000000000000000000000000
C:\Documents and Settings\Serj\Application Data\Sun\Java\Deployment\cache\6.0\12\4ef9724c-6a862db2 »ZIP »ProxyClassLoader.class Java/Exploit.Bytverify trojan 00000000000000000000000000000000
C:\Documents and Settings\Serj\Application Data\Sun\Java\Deployment\cache\6.0\12\4ef9724c-6a862db2 »ZIP »Installer.class Java/TrojanDownloader.Agent.A trojan 00000000000000000000000000000000
C:\Documents and Settings\Serj\Application Data\Sun\Java\Deployment\cache\6.0\52\309a49b4-6f223ee8 Java/TrojanDownloader.OpenStream.NAB trojan CEC0DD504B18CCC2D97A22CECE9C96E7
C:\Documents and Settings\Serj\Application Data\Sun\Java\Deployment\cache\6.0\52\309a49b4-6f223ee8 »ZIP »OP.class Java/TrojanDownloader.OpenStream.NAB trojan 00000000000000000000000000000000
C:\SDFix\backups\backups.zip multiple infiltrations FE3BE1BB110B170ECBB97054E25B065C
C:\SDFix\backups\backups.zip »ZIP »backups/xxx470.exe Win32/TrojanDownloader.FakeAlert.NT trojan 00000000000000000000000000000000
C:\SDFix\backups\backups.zip »ZIP »backups/xxx7301.exe Win32/TrojanDownloader.FakeAlert.NT trojan 00000000000000000000000000000000
C:\SDFix\backups\backups.zip »ZIP »backups/xxx7717.exe probably a variant of Win32/Adware.AdzgaloreBiz application 00000000000000000000000000000000
C:\SDFix\backups\backups.zip »ZIP »backups/xxx7717.exe »NSIS »f2 probably a variant of Win32/Adware.AdzgaloreBiz application 00000000000000000000000000000000
C:\SDFix\backups\backups.zip »ZIP »backups/xxx7717.exe »NSIS »f2 »NSIS »ý¥€ probably a variant of Win32/Adware.AdzgaloreBiz application 00000000000000000000000000000000

novice user here that needs help


0

Response Number 11
Name: jabuck
Date: October 30, 2008 at 15:03:31 Pacific
Reply:

Navigate to and delete these two folders :


C:\!KillBox
C:\SDFix


Purge the java cache by going to start> control panel> java> settings> delete files> ok.

Go to start> run> combofix /u (mote the space after combofix) then press enter> run. This will uninstall combofix so give the uninstaller a minute to run.

Go to start> control panel> add/remove programs and uninstall these programs:

Hijack This

Malwarebytes

Eset

You should keep AFT Cleaner and run it weekly.


You should consider adding "Spywareblaster" to your arsenol of antispyware tools, you can download it from this link Spywareblaster

Just download it,install it, and update it. Its free and runs in the background, so you don't actually run it, and re-writes malicious script before it can install on your computer. Look for updates weekly as there is no auto-update on the free version.

How is the computer operating?


0

Response Number 12
Name: mrcohs
Date: October 30, 2008 at 17:23:07 Pacific
Reply:

Running muchmore smoothly...........but VERY, VERY SLOW.........MORE SLOW THAN BEFORE.

Also, for some reason, I can't seem to download any Windows updates....it starts to download but always comes back with a message of "Unable to download"

Help if you can and thanks so far for it.........

novice user here that needs help


0

Response Number 13
Name: jabuck
Date: October 30, 2008 at 18:38:00 Pacific
Reply:

Go to start> control panel> systems. There should be a long number between Registered to: and Computer: which is your product ID. Is that number present? Let me know but do not post the number.


0

Response Number 14
Name: mrcohs
Date: October 30, 2008 at 19:22:33 Pacific
Reply:

yes, there is a number present

novice user here that needs help


0

Response Number 15
Name: mrcohs
Date: October 31, 2008 at 11:50:31 Pacific
Reply:

Should i do something with this number you asked about????

novice user here that needs help


0

Response Number 16
Name: jabuck
Date: October 31, 2008 at 17:23:34 Pacific
Reply:

Launch Notepad, and copy/paste all the instructions between the X’s below to it.
Save in: Desktop
File Name: fixme.reg
Save as Type: All files
Click: Save
XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX
REGEDIT4
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains]
[-HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges]
[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges]
[-HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains]
[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\EscDomains]
XXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXXX
Then, disconnect from the Internet!
Next,
Back on the Desktop, double-click on the fixme.reg file you just saved and click on Yes when asked to merge the information.

Restart the computer and see if windows will update.


0

Response Number 17
Name: mrcohs
Date: November 1, 2008 at 13:32:46 Pacific
Reply:

Below is the message i get when trying to download updates. It says the following were unable to download.

Also.....Everything is running SOOOO....slowly.....it honestly took over two minutes to open IE.....then another minute to open the computing.net page.....

HELP


Security Update for Microsoft Office PowerPoint 2003 (KB948988)
Update for Microsoft Office Outlook 2003 Junk Email Filter (KB957257)
Security Update for Office 2003 (KB945185)
Security Update for Microsoft Works Suite 2005 (KB943973)
Security Update for Microsoft Office Outlook 2003 (KB945432)
Security Update for Microsoft Office 2003 (KB953404)
Security Update for Microsoft Office Publisher 2003 (KB950213)
Security Update for Office 2003 (KB954478)
Update for Office 2003 (KB907417)
Update for Microsoft Office Outlook 2003 (KB953432)

novice user here that needs help


0

Response Number 18
Name: jabuck
Date: November 1, 2008 at 14:57:58 Pacific
Reply:

Lets see if we can find anything with SuperAntiSpyware.

Please download SuperAntiSpyware from the following link to your desktop:

SuperAntiSpyware


1. Open SuperAntiSpware from its icon and install and Update it
2. Under Scanner Options make sure the following are checked (leave all others unchecked):
3. Close browsers before scanning.
4. Scan for tracking cookies.
5. Terminate memory threats before quarantining.
6. Click the "Close" button to leave the control center screen and exit the program.
DO NOT run yet.

Now reboot into Safe Mode: How to enter safe mode(XP)
Using the F8 Method
Restart your computer.
When the machine first starts again it will generally list some equipment that is installed in your machine, amount of memory, hard drives installed etc. At this point you should gently tap the F8 key repeatedly until you are presented with a Windows XP Advanced Options menu.
Select the option for Safe Mode using the arrow keys.
Then press enter on your keyboard to boot into Safe Mode.

Now Scan with SuperAntiSpyware
1. Open from the desktop icon or the program Files list
On the left, make sure you check C:\Fixed Drive.
2. Perform a Complete scan. After scan,Verify they are all checked.
3. Click OK on the summary screen to quarantine all found items.
4. If asked if you want to reboot, click "Yes" and reboot normally.

To retrieve the removal information after reboot, launch SUPERAntispyware again.
1. Click Preferences, then click the Statistics/Logs tab.
2. Under Scanner Logs, double-click SuperAntiSpyware Scan Log.
3. If there are several logs, click the current dated log and press View log.
4. A text file will open in your default text editor.
5. Please copy and paste the Scan Log results in your next reply.
6. Click Close to exit the program.


0

Response Number 19
Name: mrcohs
Date: November 1, 2008 at 16:28:17 Pacific
Reply:

superspyware will not allow me to run it in safe mode.......i tried it several times and the message keeps coming back, "not able to run in safe mode........

novice user here that needs help


0

Response Number 20
Name: jabuck
Date: November 1, 2008 at 18:44:56 Pacific
Reply:

Run it in normal mode first then run it in safe mode.


0

Response Number 21
Name: mrcohs
Date: November 1, 2008 at 19:45:15 Pacific
Reply:

here are the results in normal mode:


SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 11/02/2008 at 08:37 PM

Application Version : 4.21.1004

Core Rules Database Version : 3618
Trace Rules Database Version: 1603

Scan type : Quick Scan
Total Scan Time : 00:29:02

Memory items scanned : 327
Memory threats detected : 0
Registry items scanned : 350
Registry threats detected : 0
File items scanned : 11195
File threats detected : 59

Adware.Tracking Cookie
C:\Documents and Settings\Serj\Cookies\serj@tacoda[3].txt
C:\Documents and Settings\Serj\Cookies\serj@adopt.specificclick[1].txt
C:\Documents and Settings\Serj\Cookies\serj@adinterax[1].txt
C:\Documents and Settings\Serj\Cookies\serj@tribalfusion[3].txt
C:\Documents and Settings\Serj\Cookies\serj@adopt.euroclick[2].txt
C:\Documents and Settings\Serj\Cookies\serj@kontera[2].txt
C:\Documents and Settings\Serj\Cookies\serj@revsci[2].txt
C:\Documents and Settings\Serj\Cookies\serj@edge.ru4[1].txt
C:\Documents and Settings\Serj\Cookies\serj@adcentriconline[1].txt
C:\Documents and Settings\Serj\Cookies\serj@stat-counter.tass-online[1].txt
C:\Documents and Settings\Serj\Cookies\serj@realmedia[1].txt
C:\Documents and Settings\Serj\Cookies\serj@nextag[1].txt
C:\Documents and Settings\Serj\Cookies\serj@anad.tacoda[2].txt
C:\Documents and Settings\Serj\Cookies\serj@media6degrees[1].txt
C:\Documents and Settings\Serj\Cookies\serj@insightexpressai[2].txt
C:\Documents and Settings\Serj\Cookies\serj@count.rbc[1].txt
C:\Documents and Settings\Serj\Cookies\serj@specificmedia[1].txt
C:\Documents and Settings\Serj\Cookies\serj@www.burstbeacon[2].txt
C:\Documents and Settings\Serj\Cookies\serj@richmedia.yahoo[2].txt
C:\Documents and Settings\Serj\Cookies\serj@interclick[1].txt
C:\Documents and Settings\Serj\Cookies\serj@ads.pointroll[1].txt
C:\Documents and Settings\Serj\Cookies\serj@xiti[2].txt
C:\Documents and Settings\Serj\Cookies\serj@specificclick[2].txt
flagcounter.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
ad1.clickhype.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
pview.findlaw.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.findlaw.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.lstat.youku.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.lstat.youku.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.stat.youku.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.atwola.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.mmstat.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.mmstat.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.imrworldwide.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.imrworldwide.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.interclick.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.collective-media.net [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.collective-media.net [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.collective-media.net [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.collective-media.net [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.cracked.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.dmtracker.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.cracked.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.adcentriconline.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.adinterax.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.adinterax.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.count.rbc.ru [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.count.rbc.ru [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.espnmediazone.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.hairymax.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.vortexmediagroup.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.yadro.ru [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
hairy-cat.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
hairy-cat.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
hairymiss.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
tour.sexsearchcom.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
wt.sexsearch.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
www.hairymax.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]

novice user here that needs help


0

Response Number 22
Name: mrcohs
Date: November 1, 2008 at 21:49:10 Pacific
Reply:

SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 11/02/2008 at 10:32 PM

Application Version : 4.21.1004

Core Rules Database Version : 3618
Trace Rules Database Version: 1603

Scan type : Complete Scan
Total Scan Time : 01:40:45

Memory items scanned : 169
Memory threats detected : 0
Registry items scanned : 4558
Registry threats detected : 0
File items scanned : 38622
File threats detected : 62

Adware.Tracking Cookie
C:\Documents and Settings\Serj\Cookies\serj@tacoda[3].txt
C:\Documents and Settings\Serj\Cookies\serj@adopt.specificclick[1].txt
C:\Documents and Settings\Serj\Cookies\serj@adinterax[1].txt
C:\Documents and Settings\Serj\Cookies\serj@tribalfusion[3].txt
C:\Documents and Settings\Serj\Cookies\serj@adopt.euroclick[2].txt
C:\Documents and Settings\Serj\Cookies\serj@kontera[2].txt
C:\Documents and Settings\Serj\Cookies\serj@revsci[2].txt
C:\Documents and Settings\Serj\Cookies\serj@edge.ru4[1].txt
C:\Documents and Settings\Serj\Cookies\serj@adcentriconline[1].txt
C:\Documents and Settings\Serj\Cookies\serj@stat-counter.tass-online[1].txt
C:\Documents and Settings\Serj\Cookies\serj@realmedia[1].txt
C:\Documents and Settings\Serj\Cookies\serj@nextag[1].txt
C:\Documents and Settings\Serj\Cookies\serj@anad.tacoda[2].txt
C:\Documents and Settings\Serj\Cookies\serj@media6degrees[1].txt
C:\Documents and Settings\Serj\Cookies\serj@insightexpressai[2].txt
C:\Documents and Settings\Serj\Cookies\serj@count.rbc[1].txt
C:\Documents and Settings\Serj\Cookies\serj@specificmedia[1].txt
C:\Documents and Settings\Serj\Cookies\serj@www.burstbeacon[2].txt
C:\Documents and Settings\Serj\Cookies\serj@richmedia.yahoo[2].txt
C:\Documents and Settings\Serj\Cookies\serj@interclick[1].txt
C:\Documents and Settings\Serj\Cookies\serj@ads.pointroll[1].txt
C:\Documents and Settings\Serj\Cookies\serj@xiti[2].txt
C:\Documents and Settings\Serj\Cookies\serj@specificclick[2].txt
flagcounter.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
ad1.clickhype.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
pview.findlaw.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.findlaw.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.lstat.youku.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.lstat.youku.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.stat.youku.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.atwola.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.mmstat.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.mmstat.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.imrworldwide.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.imrworldwide.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.interclick.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.collective-media.net [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.collective-media.net [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.collective-media.net [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.collective-media.net [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.cracked.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.dmtracker.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.cracked.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.adcentriconline.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.adinterax.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.adinterax.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.count.rbc.ru [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.count.rbc.ru [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.espnmediazone.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.hairymax.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.vortexmediagroup.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.yadro.ru [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
hairy-cat.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
hairy-cat.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
hairymiss.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
tour.sexsearchcom.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
wt.sexsearch.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
www.hairymax.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
C:\Documents and Settings\Serj\Cookies\serj@tacoda[1].txt
C:\Documents and Settings\Serj\Cookies\serj@tribalfusion[1].txt
C:\Documents and Settings\Serj\Cookies\serj@xiti[1].txt

novice user here that needs help


0

Response Number 23
Name: mrcohs
Date: November 15, 2008 at 09:44:03 Pacific
Reply:

here is the latest log you asked for......please help me

SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 11/02/2008 at 10:32 PM

Application Version : 4.21.1004

Core Rules Database Version : 3618
Trace Rules Database Version: 1603

Scan type : Complete Scan
Total Scan Time : 01:40:45

Memory items scanned : 169
Memory threats detected : 0
Registry items scanned : 4558
Registry threats detected : 0
File items scanned : 38622
File threats detected : 62

Adware.Tracking Cookie
C:\Documents and Settings\Serj\Cookies\serj@tacoda[3].txt
C:\Documents and Settings\Serj\Cookies\serj@adopt.specificclick[1].txt
C:\Documents and Settings\Serj\Cookies\serj@adinterax[1].txt
C:\Documents and Settings\Serj\Cookies\serj@tribalfusion[3].txt
C:\Documents and Settings\Serj\Cookies\serj@adopt.euroclick[2].txt
C:\Documents and Settings\Serj\Cookies\serj@kontera[2].txt
C:\Documents and Settings\Serj\Cookies\serj@revsci[2].txt
C:\Documents and Settings\Serj\Cookies\serj@edge.ru4[1].txt
C:\Documents and Settings\Serj\Cookies\serj@adcentriconline[1].txt
C:\Documents and Settings\Serj\Cookies\serj@stat-counter.tass-online[1].txt
C:\Documents and Settings\Serj\Cookies\serj@realmedia[1].txt
C:\Documents and Settings\Serj\Cookies\serj@nextag[1].txt
C:\Documents and Settings\Serj\Cookies\serj@anad.tacoda[2].txt
C:\Documents and Settings\Serj\Cookies\serj@media6degrees[1].txt
C:\Documents and Settings\Serj\Cookies\serj@insightexpressai[2].txt
C:\Documents and Settings\Serj\Cookies\serj@count.rbc[1].txt
C:\Documents and Settings\Serj\Cookies\serj@specificmedia[1].txt
C:\Documents and Settings\Serj\Cookies\serj@www.burstbeacon[2].txt
C:\Documents and Settings\Serj\Cookies\serj@richmedia.yahoo[2].txt
C:\Documents and Settings\Serj\Cookies\serj@interclick[1].txt
C:\Documents and Settings\Serj\Cookies\serj@ads.pointroll[1].txt
C:\Documents and Settings\Serj\Cookies\serj@xiti[2].txt
C:\Documents and Settings\Serj\Cookies\serj@specificclick[2].txt
flagcounter.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
ad1.clickhype.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
pview.findlaw.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.findlaw.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.lstat.youku.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.lstat.youku.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.stat.youku.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.atwola.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.mmstat.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.mmstat.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.imrworldwide.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.imrworldwide.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.interclick.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.collective-media.net [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.collective-media.net [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.collective-media.net [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.collective-media.net [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.cracked.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.dmtracker.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.cracked.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.adcentriconline.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.adinterax.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.adinterax.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.count.rbc.ru [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.count.rbc.ru [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.espnmediazone.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.hairymax.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.vortexmediagroup.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
.yadro.ru [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
hairy-cat.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
hairy-cat.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
hairymiss.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
tour.sexsearchcom.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
wt.sexsearch.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
www.hairymax.com [ C:\Documents and Settings\Serj\Application Data\Mozilla\Firefox\Profiles\po0pw98m.default\cookies.txt ]
C:\Documents and Settings\Serj\Cookies\serj@tacoda[1].txt
C:\Documents and Settings\Serj\Cookies\serj@tribalfusion[1].txt
C:\Documents and Settings\Serj\Cookies\serj@xiti[1].txt

novice user here that needs help


0

Sponsored Link
Ads by Google
Reply to Message Icon






Post Locked

This post is quite old and has been locked from receiving new replies. Please create a new posting instead.


Go to Security and Virus Forum Home


Sponsored links

Ads by Google


Results for: you have a security problem

You have a security problem! www.computing.net/answers/security/you-have-a-security-problem/23420.html

You Have a security problem www.computing.net/answers/security/you-have-a-security-problem/23946.html

You have a security problem www.computing.net/answers/security/you-have-a-security-problem-/24039.html