We'd like to remind Forumites to please avoid political debate on the Forum... Read More »
We're aware that some users are experiencing technical issues which the team are working to resolve. See the Community Noticeboard for more info. Thank you for your patience.
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!
Active Desktop Recovery update with malwarebytes now email problem please help
Options

melmar_2
Posts: 209 Forumite
Hi,my computer kept freezing but after running super antispyware,ccleaner malewarebytes it started working a lot better (all came back with no threats) then i found that microsoft security essentials had turned itself off.
in the meantime because i had to keep turning off when freezing my screen went white and Active Desktop Recovery came up with a load of writingthat i cant read properly.
their is a box that says restore my active desktop when clicked another box opens with internet explorer script error with some more info and asks if want to keep scripts running on this page? yes no doesnt matter what is pressed still stays the same.
Is it infected please and what can i do,thanks in advance
melmar
in the meantime because i had to keep turning off when freezing my screen went white and Active Desktop Recovery came up with a load of writingthat i cant read properly.
their is a box that says restore my active desktop when clicked another box opens with internet explorer script error with some more info and asks if want to keep scripts running on this page? yes no doesnt matter what is pressed still stays the same.
Is it infected please and what can i do,thanks in advance
melmar
0
Comments
-
could be a virus or a corrupt system file.
Would suggest in first instance, re-run all your a/v software again in safe mode if not already done so then report back any findings.
Try an on-line scanner too if you can like panda active scan.
If all comes back clear you could always try a system restore to see if that helps fix the issue.0 -
thanks dellboy will try that and post back0
-
what version of windows are you using?
the last time i EVER saw an active desktop error was with windows ME, shortly before wiping it and installing windows 2000...0 -
have run panda active scan and it has come up with 73 threats trouble is not sure what to do next on how to clear these,do i need to buy panda and if so any ideas how much,please
bob-man am using XP havent used anything else
any more advice would be most welcome0 -
Download MALWAREBYTES (Make sure you click 'DOWNLOAD LATEST VERSION')
http://www.filehippo.com/download_ma..._anti_malware/
Open malwarebytes and goto UPDATE and click 'check for updates'. After its updated goto SCANNER and click PERFORM FULL SCAN then click SCAN
Remove everything thats found (needs to be ticked)
Post the COMPLETE log here AFTER youve deleted everything it finds
reboot
Download HIJACK THIS (Make sure you click 'DOWNLOAD THIS VERSION')
http://www.filehippo.com/download_hijackthis/2894/
Click MAIN MENU then DO A SYSTEM SCAN AND SAVE A LOGFILE(Takes seconds) then post the log so we can see whats running
(do NOT do anything else with Hijack but scan and post the FULL log)
Maybe do these too after panda (not sure how panda works)
(Instructions written by alienRIK)0 -
malware etc,thanks in advance
Malwarebytes' Anti-Malware 1.46
https://www.malwarebytes.org
Database version: 4141
Windows 5.1.2600 Service Pack 3
Internet Explorer 8.0.6001.18702
25/05/2010 14:30:03
mbam-log-2010-05-25 (14-30-03).txt
Scan type: Full scan (C:\|D:\|E:\|F:\|)
Objects scanned: 233281
Time elapsed: 1 hour(s), 28 minute(s), 24 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
(No malicious items detected)
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)0 -
hijack log,
Logfile of Trend Micro HijackThis v2.0.3 (BETA)
Scan saved at 14:46:29, on 25/05/2010
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v8.00 (8.00.6001.18702)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Microsoft Security Essentials\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\system32\drivers\CDAC11BA.EXE
C:\Program Files\sony\giga pocket\shwserv.exe
C:\Program Files\Java\jre6\bin\jqs.exe
C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\ezSP_Px.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\drag'n drop cd+dvd\BinFiles\DragDrop.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb11.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\WINDOWS\system32\hphmon06.exe
C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
C:\PROGRA~1\BTBROA~1\SMARTB~1\BTHelpNotifier.exe
C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
C:\Program Files\Microsoft Security Essentials\msseces.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Common Files\Java\Java Update\jusched.exe
C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe
C:\Program Files\Binatone Internet Phone\BinatoneInternetPhone.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Documents and Settings\martyn burke\Local Settings\Application Data\Google\Update\1.2.183.23\GoogleCrashHandler.exe
C:\Program Files\sony\giga pocket\RM_SV.exe
C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe
C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe
C:\Program Files\sony\usbsircs\usbsircs.exe
C:\Program Files\sony\giga pocket\ReserveModule.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\OpenOffice.org 3\program\soffice.exe
C:\Program Files\OpenOffice.org 3\program\soffice.bin
C:\Program Files\sony\giga pocket\gps.exe
C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\TrendMicro\HiJackThis\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://yahoo.co.uk/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://uk.red.clientapps.yahoo.com/customize/ie/defaults/sb/ymsgr6/uk/*http://uk.docs.yahoo.com/info/bt_side.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:5555
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
O2 - BHO: SidebarAutoLaunch Class - {F2AA9440-6328-4933-B7C9-A6CCDF9CBF6D} - C:\Program Files\Yahoo!\browser\YSidebarIEBHO.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_Px.exe
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [Drag'n Drop CD+DVD] C:\Program Files\drag'n drop cd+dvd\BinFiles\DragDrop.exe /StartUp
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb11.exe
O4 - HKLM\..\Run: [HPHUPD06] C:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HPHmon06] C:\WINDOWS\system32\hphmon06.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\BTBROA~1\SMARTB~1\BTHelpNotifier.exe
O4 - HKLM\..\Run: [YSearchProtection] "C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe"
O4 - HKLM\..\Run: [MSSE] "C:\Program Files\Microsoft Security Essentials\msseces.exe" -hide -runkey
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
O4 - HKCU\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe" /systray /nologon
O4 - HKCU\..\Run: [BinatoneInternetPhone] C:\Program Files\Binatone Internet Phone\BinatoneInternetPhone.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\martyn burke\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
O4 - Startup: OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\digital imaging\bin\hpqtra08.exe
O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\digital imaging\bin\hpqthb08.exe
O4 - Global Startup: Picture Package Menu.lnk = C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe
O4 - Global Startup: Picture Package VCD Maker.lnk = C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe
O4 - Global Startup: QuickBooks Update Agent.lnk = C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe
O4 - Global Startup: Remocon Driver.lnk = ?
O4 - Global Startup: Timer Recording Manager.lnk = C:\Program Files\sony\giga pocket\ReserveModule.exe
O8 - Extra context menu item: &Search - http://bar.mywebsearch.com/menusearch.html?p=ZBzeb032YYGB
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {01010E00-5E80-11D8-9E86-0007E96C65AE} (SupportSoft SmartIssue) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsi.cab
O16 - DPF: {01012101-5E80-11D8-9E86-0007E96C65AE} (SupportSoft Script Runner Class) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsr.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {15B782AF-55D8-11D1-B477-006097098764} (Macromedia Authorware Web Player Control) - file://F:\aw_player52\awswaxf.cab
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} - https://www-secure.symantec.com/techsupp/asa/LSSupCtl.cab
O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-24.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by14fd.bay14.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.safety.live.com/resource/download/scanner/wlscbase8460.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {A7ECD556-D6F6-4F41-8C6B-14AB246801A0} (Secure Delivery) - http://cdn.digitalcity.com/video/kdx.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
O16 - DPF: {C606BA60-AB76-48B6-96A7-2C4D5C386F70} (PreQualifier Class) - http://help.broadbandassist.com/bbdesktop/PreQual/files/MotivePreQual.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} - http://www.symantec.com/techsupp/asa/ctrl/SymAData.cab
O16 - DPF: {F00F4763-7355-4725-82F7-0DA94A256D46} - http://www5.incredimail.com/contents/setup/downloader_sp1/imloader.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
O23 - Service: Giga Pocket Hardware Detector - Sony Corporation - C:\Program Files\sony\giga pocket\shwserv.exe
O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Intuit QuickBooks FCS (QBFCService) - Intuit Inc. - C:\Program Files\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe
O23 - Service: Sony TV Tuner Controller - Sony Corporation - C:\Program Files\sony\giga pocket\halsv.exe
O23 - Service: Sony TV Tuner Manager - Sony Corporation - C:\Program Files\sony\giga pocket\RM_SV.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\PROGRA~1\COMMON~1\SONYSH~1\AVLib\Sptisrv.exe
O23 - Service: VAIO Media Music Server (VAIOMediaPlatform-MusicServer-AppServer) - Sony Corporation - C:\Program Files\sony\vaio media music server\SSSvr.exe
O23 - Service: VAIO Media Music Server (HTTP) (VAIOMediaPlatform-MusicServer-HTTP) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\vaio media platform\sv_httpd.exe
O23 - Service: VAIO Media Music Server (UPnP) (VAIOMediaPlatform-MusicServer-UPnP) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\vaio media platform\UPnPFramework.exe
O23 - Service: VAIO Media Photo Server (VAIOMediaPlatform-PhotoServer-AppServer) - Sony Corporation - C:\Program Files\sony\photo server\appsrv\PhotoAppSrv.exe
O23 - Service: VAIO Media Photo Server (HTTP) (VAIOMediaPlatform-PhotoServer-HTTP) - Sony Corporation - C:\Program Files\Common Files\sony shared\vaio media platform\SV_Httpd.exe
O23 - Service: VAIO Media Photo Server (UPnP) (VAIOMediaPlatform-PhotoServer-UPnP) - Sony Corporation - C:\Program Files\Common Files\sony shared\vaio media platform\UPnPFramework.exe
O23 - Service: VAIO Media Video Server (VAIOMediaPlatform-VideoServer-AppServer) - Sony Corporation - C:\Program Files\sony\giga pocket\GPVSvr.exe
O23 - Service: VAIO Media Video Server (HTTP) (VAIOMediaPlatform-VideoServer-HTTP) - Sony Corporation - C:\Program Files\Common Files\sony shared\vaio media platform\SV_Httpd.exe
O23 - Service: VAIO Media Video Server (UPnP) (VAIOMediaPlatform-VideoServer-UPnP) - Sony Corporation - C:\Program Files\Common Files\sony shared\vaio media platform\UPnPFramework.exe
O24 - Desktop Component 0: (no name) - http://email01.wanadoo.co.uk/webmail/download/Download.html?IDMSG=56&PJRANG=2&NAME=BackGrnd1.jpg&FOLDER=INBOX&STREAM_TYPE=IMAGE&EMBEDDED=true
O24 - Desktop Component 1: (no name) - http://www.spicyauctiontemplates.com/images/1110HB.jpg
O24 - Desktop Component 2: (no name) - http://i.ebayimg.com/08/!BrDeyzw!mk~$(KGrHqIOKiQEu3LsPc+GBLyDQcLibw~~_35.JPG
--
End of file - 16679 bytes0 -
ive also got the panda active scan
;***********************************************************************************************************************************************************************************
ANALYSIS: 2010-05-25 13:00:24
PROTECTIONS: 1
MALWARE: 73
SUSPECTS: 2
;***********************************************************************************************************************************************************************************
PROTECTIONS
Description Version Active Updated
;===================================================================================================================================================================================
Microsoft Security Essentials 2.1.6519.0 Yes Yes
;===================================================================================================================================================================================
MALWARE
Id Description Type Active Severity Disinfectable Disinfected Location
;===================================================================================================================================================================================
00020937 adware/statblaster Adware No 0 Yes No c:\windows\downloaded program files\wildapp.inf
00034463 adware/wupd Adware No 0 Yes No hkey_local_machine\software\microsoft\windows\currentversion\uninstall\70tovmto
00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq125.tmp
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqbb.tmp
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq70.tmp
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq89.tmp
00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq29.tmp
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq54.tmp
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqaf.tmp
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq9f.tmp
00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq8c.tmp
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqb1.tmp
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq9a.tmp
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\documents and settings\martyn burke\cookies\martyn_burke@atdmt[2].txt
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq86.tmp
00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq1f.tmp
00144497 Cookie/Intelli-tracker TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq19.tmp
00145393 Cookie/Tradedoubler TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq92.tmp
00145393 Cookie/Tradedoubler TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqb5.tmp
00145393 Cookie/Tradedoubler TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq82.tmp
00145393 Cookie/Tradedoubler TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq15.tmp
00145405 Cookie/RealMedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqcc.tmp
00145405 Cookie/RealMedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq4.tmp
00145405 Cookie/RealMedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq98.tmp
00145405 Cookie/RealMedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq16.tmp
00145433 Cookie/Mammamediasolutions TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq48.tmp
00145433 Cookie/Mammamediasolutions TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq3a.tmp
00145453 Cookie/Bfast TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqc2.tmp
00145453 Cookie/Bfast TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq87.tmp
00145453 Cookie/Bfast TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqb.tmp
00145453 Cookie/Bfast TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqbd.tmp
00145457 Cookie/FastClick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqa1.tmp
00145457 Cookie/FastClick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq71.tmp
00145457 Cookie/FastClick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq8d.tmp
00145457 Cookie/FastClick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq2c.tmp
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq49.tmp
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq93.tmp
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq83.tmp
00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqb6.tmp
00145738 Cookie/Mediaplex TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqa4.tmp
00145738 Cookie/Mediaplex TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqc7.tmp
00145738 Cookie/Mediaplex TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq59.tmp
00145738 Cookie/Mediaplex TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq8e.tmp
00145807 Cookie/Linksynergy TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq5e.tmp
00145807 Cookie/Linksynergy TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq1a.tmp
00145869 Cookie/SpyLog TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq889.tmp
00145881 Cookie/NewMedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqe8.tmp
00147806 Cookie/7search TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq60.tmp
00147824 Cookie/Clickbank TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq8a.tmp
00147824 Cookie/Clickbank TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq18.tmp
00149064 Cookie/Maxserving TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq1b.tmp
00149064 Cookie/Maxserving TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq6.tmp
00152401 Cookie/Belnk TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq3f.tmp
00159564 Cookie/WUpd TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq64.tmp
00159564 Cookie/WUpd TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqbf.tmp
00159564 Cookie/WUpd TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq39.tmp
00160284 Cookie/Findwhat TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq35.tmp
00162730 Cookie/Belnk TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq40.tmp
00167642 Cookie/Com.com TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqce.tmp
00167642 Cookie/Com.com TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq2a.tmp
00167656 Cookie/Hitbox TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq55.tmp
00167657 Cookie/Hitbox TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq66.tmp
00167672 Cookie/DomainSponsor TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq8b.tmp
00167704 Cookie/Xiti TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq131.tmp
00167724 Cookie/HotLog TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq888.tmp
00167730 Cookie/Hitbox TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq5d.tmp
00167747 Cookie/Azjmp TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqea.tmp
00167749 Cookie/Toplist TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq124.tmp
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq91.tmp
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqb4.tmp
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq13.tmp
00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq80.tmp
00167760 Cookie/Hitslink TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqa3.tmp
00167760 Cookie/Hitslink TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqf.tmp
00167760 Cookie/Hitslink TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq7d.tmp
00167770 Cookie/Sextracker TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq77.tmp
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq44.tmp
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq6b.tmp
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq99.tmp
00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq5.tmp
00168076 Cookie/BurstNet TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq27.tmp
00168076 Cookie/BurstNet TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq45.tmp
00168076 Cookie/BurstNet TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq9d.tmp
00168076 Cookie/BurstNet TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq6f.tmp
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq63.tmp
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq7e.tmp
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq8.tmp
00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqb3.tmp
00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq9c.tmp
00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq26.tmp
00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq21.tmp
00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqc8.tmp
00168095 Cookie/888 TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq67.tmp
00168095 Cookie/888 TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq5f.tmp
00168097 Cookie/BurstBeacon TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqee.tmp
00168101 Cookie/Falkag TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq68.tmp
00168101 Cookie/Falkag TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq226.tmp
00168101 Cookie/Falkag TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqd0.tmp
00168102 Cookie/Falkag TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqc5.tmp
00168102 Cookie/Falkag TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq1e.tmp
00168109 Cookie/Adtech TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq6c.tmp
00168109 Cookie/Adtech TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq224.tmp
00168114 Cookie/onestat.com TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq65.tmp
00168114 Cookie/onestat.com TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq14.tmp
00169190 Cookie/Advertising TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq6d.tmp
00169190 Cookie/Advertising TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq1d.tmp
00169190 Cookie/Advertising TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq52.tmp
00169190 Cookie/Advertising TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqb7.tmp
00169286 Cookie/Sextracker TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq2e.tmp
00169286 Cookie/Sextracker TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq78.tmp
00170087 Cookie/Hbmediapro TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqfb.tmp
00170304 Cookie/WebtrendsLive TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq5a.tmp
00170304 Cookie/WebtrendsLive TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq94.tmp
00170304 Cookie/WebtrendsLive TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqa9.tmp
00170304 Cookie/WebtrendsLive TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqb9.tmp
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq4d.tmp
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqa5.tmp
00170495 Cookie/PointRoll TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq96.tmp
00170549 Cookie/FortuneCity TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq46.tmp
00170549 Cookie/FortuneCity TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqcb.tmp
00170550 Cookie/Humanclick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq75.tmp
00170556 Cookie/RealMedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqa6.tmp
00170556 Cookie/RealMedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq2d.tmp
00170556 Cookie/RealMedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq7.tmp
00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq3e.tmp
00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq73.tmp
00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq227.tmp
00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqb2.tmp
00172221 Cookie/Zedo TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq97.tmp
00172221 Cookie/Zedo TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq9.tmp
00172221 Cookie/Zedo TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq7b.tmp
00172221 Cookie/Zedo TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqc0.tmp
00172449 Cookie/MetriWeb TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqd1.tmp
00173520 Cookie/Bluestreak TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqba.tmp
00173520 Cookie/Bluestreak TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq225.tmp
00173520 Cookie/Bluestreak TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq1c.tmp
00173520 Cookie/Bluestreak TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq13e.tmp
00180246 Cookie/XXXCounter TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq7a.tmp
00182104 Cookie/Hitbox TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq36.tmp
00187950 Cookie/bravenetA TrackingCookie No 0 =====================0 -
Yes No c:\program files\yahoo!\ypsr\quarantine\ppq88.tmp
00187950 Cookie/bravenetA TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqcd.tmp
00199981 Cookie/Seeq TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq11f.tmp
00199983 Cookie/Valueclick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq33.tmp
00199983 Cookie/Valueclick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq88a.tmp
00199984 Cookie/Searchportal TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq104.tmp
00206953 Cookie/Sextracker TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq76.tmp
00207712 Cookie/360i TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqdf.tmp
00207936 Cookie/Adviva TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq38.tmp
00207936 Cookie/Adviva TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq6e.tmp
00207936 Cookie/Adviva TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq17.tmp
00262020 Cookie/Atwola TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqe9.tmp
00286738 Cookie/Cgi-bin TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqe2.tmp
00325830 Cookie/Bridgetrack TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq4b.tmp
00325830 Cookie/Bridgetrack TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq22.tmp
00966839 Spyware/Virtumonde Spyware No 1 Yes No c:\program files\viewpoint\viewpoint experience technology\newcomponents\swfview.dll
03009106 W32/Xor-encoded.A Virus No 0 Yes No c:\system volume information\_restore{886087e2-5c06-4302-8005-19f54cbcc366}\rp975\a0397902.exe
03009106 W32/Xor-encoded.A Virus No 0 Yes No c:\system volume information\_restore{886087e2-5c06-4302-8005-19f54cbcc366}\rp975\a0397901.exe
03009106 W32/Xor-encoded.A Virus No 0 Yes No c:\system volume information\_restore{886087e2-5c06-4302-8005-19f54cbcc366}\rp980\a0398328.exe
03074964 Trj/CI.A Virus/Trojan No 0 Yes No c:\documents and settings\martyn burke\desktop\91c69.zip[53guide/spanish.zip][easy spanish for babies & toddlers/bonus items/ez-ebooks.exe]
03074964 Trj/CI.A Virus/Trojan No 0 Yes No c:\windows\motive\btbb\uninstallhelper.exe
03074964 Trj/CI.A Virus/Trojan No 0 Yes No c:\documents and settings\martyn burke\desktop\91c69.zip[53guide/spanish.zip][easy spanish for babies & toddlers/easy spanish.exe]
;===================================================================================================================================================================================
SUSPECTS
Sent Location
;===================================================================================================================================================================================
Yes c:\documents and settings\martyn burke\my documents\downloads\remove fake antivirus(2).exe
Yes c:\documents and settings\martyn burke\my documents\downloads\remove fake antivirus.exe
;===================================================================================================================================================================================
VULNERABILITIES
Id Severity Description
;===================================================================================================================================================================================
;================================================================0 -
just found another problem found an email in my own spam as if its sent by me,have i been corrupted really worried about if i have affected others and my bank account and ebay account.
starting to get stressed now any advice please0
This discussion has been closed.
Confirm your email address to Create Threads and Reply

Categories
- All Categories
- 350.9K Banking & Borrowing
- 253.1K Reduce Debt & Boost Income
- 453.5K Spending & Discounts
- 243.9K Work, Benefits & Business
- 598.7K Mortgages, Homes & Bills
- 176.9K Life & Family
- 257.1K Travel & Transport
- 1.5M Hobbies & Leisure
- 16.1K Discuss & Feedback
- 37.6K Read-Only Boards