We're aware that some users are experiencing technical issues which the team are working to resolve. See the Community Noticeboard for more info. Thank you for your patience.
📨 Have you signed up to the Forum's new Email Digest yet? Get a selection of trending threads sent straight to your inbox daily, weekly or monthly!

Active Desktop Recovery update with malwarebytes now email problem please help

Options
melmar_2
melmar_2 Posts: 209 Forumite
edited 25 May 2010 at 5:52PM in Techie Stuff
Hi,my computer kept freezing but after running super antispyware,ccleaner malewarebytes it started working a lot better (all came back with no threats) then i found that microsoft security essentials had turned itself off.
in the meantime because i had to keep turning off when freezing my screen went white and Active Desktop Recovery came up with a load of writingthat i cant read properly.
their is a box that says restore my active desktop when clicked another box opens with internet explorer script error with some more info and asks if want to keep scripts running on this page? yes no doesnt matter what is pressed still stays the same.
Is it infected please and what can i do,thanks in advance
melmar
«134

Comments

  • Delboy24
    Delboy24 Posts: 132 Forumite
    could be a virus or a corrupt system file.

    Would suggest in first instance, re-run all your a/v software again in safe mode if not already done so then report back any findings.

    Try an on-line scanner too if you can like panda active scan.

    If all comes back clear you could always try a system restore to see if that helps fix the issue.
  • melmar_2
    melmar_2 Posts: 209 Forumite
    thanks dellboy will try that and post back
  • bob_man_uk
    bob_man_uk Posts: 517 Forumite
    what version of windows are you using?

    the last time i EVER saw an active desktop error was with windows ME, shortly before wiping it and installing windows 2000...
  • melmar_2
    melmar_2 Posts: 209 Forumite
    have run panda active scan and it has come up with 73 threats trouble is not sure what to do next on how to clear these,do i need to buy panda and if so any ideas how much,please
    bob-man am using XP havent used anything else
    any more advice would be most welcome
  • The_Grandmaster
    The_Grandmaster Posts: 1,424 Forumite
    Part of the Furniture Combo Breaker
    Download MALWAREBYTES (Make sure you click 'DOWNLOAD LATEST VERSION')
    http://www.filehippo.com/download_ma..._anti_malware/
    Open malwarebytes and goto UPDATE and click 'check for updates'. After its updated goto SCANNER and click PERFORM FULL SCAN then click SCAN
    Remove everything thats found (needs to be ticked)
    Post the COMPLETE log here AFTER youve deleted everything it finds

    reboot
    Download HIJACK THIS (Make sure you click 'DOWNLOAD THIS VERSION')
    http://www.filehippo.com/download_hijackthis/2894/
    Click MAIN MENU then DO A SYSTEM SCAN AND SAVE A LOGFILE(Takes seconds) then post the log so we can see whats running
    (do NOT do anything else with Hijack but scan and post the FULL log)

    Maybe do these too after panda (not sure how panda works)
    (Instructions written by alienRIK)
  • melmar_2
    melmar_2 Posts: 209 Forumite
    malware etc,thanks in advance
    Malwarebytes' Anti-Malware 1.46
    https://www.malwarebytes.org

    Database version: 4141

    Windows 5.1.2600 Service Pack 3
    Internet Explorer 8.0.6001.18702

    25/05/2010 14:30:03
    mbam-log-2010-05-25 (14-30-03).txt

    Scan type: Full scan (C:\|D:\|E:\|F:\|)
    Objects scanned: 233281
    Time elapsed: 1 hour(s), 28 minute(s), 24 second(s)

    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 0
    Registry Values Infected: 0
    Registry Data Items Infected: 0
    Folders Infected: 0
    Files Infected: 0

    Memory Processes Infected:
    (No malicious items detected)

    Memory Modules Infected:
    (No malicious items detected)

    Registry Keys Infected:
    (No malicious items detected)

    Registry Values Infected:
    (No malicious items detected)

    Registry Data Items Infected:
    (No malicious items detected)

    Folders Infected:
    (No malicious items detected)

    Files Infected:
    (No malicious items detected)
  • melmar_2
    melmar_2 Posts: 209 Forumite
    hijack log,
    Logfile of Trend Micro HijackThis v2.0.3 (BETA)
    Scan saved at 14:46:29, on 25/05/2010
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v8.00 (8.00.6001.18702)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Microsoft Security Essentials\MsMpEng.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\Bonjour\mDNSResponder.exe
    C:\WINDOWS\system32\drivers\CDAC11BA.EXE
    C:\Program Files\sony\giga pocket\shwserv.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\Program Files\Microsoft\Search Enhancement Pack\SeaPort\SeaPort.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\System32\ezSP_Px.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\drag'n drop cd+dvd\BinFiles\DragDrop.exe
    C:\WINDOWS\AGRSMMSG.exe
    C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb11.exe
    C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
    C:\WINDOWS\system32\hphmon06.exe
    C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
    C:\PROGRA~1\BTBROA~1\SMARTB~1\BTHelpNotifier.exe
    C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe
    C:\Program Files\Microsoft Security Essentials\msseces.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\Common Files\Java\Java Update\jusched.exe
    C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe
    C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe
    C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
    C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe
    C:\Program Files\Binatone Internet Phone\BinatoneInternetPhone.exe
    C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    C:\Documents and Settings\martyn burke\Local Settings\Application Data\Google\Update\1.2.183.23\GoogleCrashHandler.exe
    C:\Program Files\sony\giga pocket\RM_SV.exe
    C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe
    C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe
    C:\Program Files\sony\usbsircs\usbsircs.exe
    C:\Program Files\sony\giga pocket\ReserveModule.exe
    C:\WINDOWS\system32\HPZipm12.exe
    C:\Program Files\OpenOffice.org 3\program\soffice.exe
    C:\Program Files\OpenOffice.org 3\program\soffice.bin
    C:\Program Files\sony\giga pocket\gps.exe
    C:\Program Files\HP\Digital Imaging\bin\hpqgalry.exe
    C:\WINDOWS\system32\NOTEPAD.EXE
    C:\Program Files\TrendMicro\HiJackThis\HiJackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://yahoo.co.uk/
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://uk.red.clientapps.yahoo.com/customize/ie/defaults/sb/ymsgr6/uk/*http://uk.docs.yahoo.com/info/bt_side.html
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:5555
    R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: Search Helper - {6EBF7485-159F-4bff-A14F-B9E3AAC4465B} - C:\Program Files\Microsoft\Search Enhancement Pack\Search Helper\SEPsearchhelperie.dll
    O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
    O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.5.4723.1820\swg.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: Windows Live Toolbar Helper - {E15A8DC0-8516-42A1-81EA-DC94EC1ACF10} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
    O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    O2 - BHO: SidebarAutoLaunch Class - {F2AA9440-6328-4933-B7C9-A6CCDF9CBF6D} - C:\Program Files\Yahoo!\browser\YSidebarIEBHO.dll
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
    O3 - Toolbar: &Windows Live Toolbar - {21FA44EF-376D-4D53-9B0F-8A89D3229068} - C:\Program Files\Windows Live\Toolbar\wltcore.dll
    O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
    O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_Px.exe
    O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
    O4 - HKLM\..\Run: [Drag'n Drop CD+DVD] C:\Program Files\drag'n drop cd+dvd\BinFiles\DragDrop.exe /StartUp
    O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
    O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb11.exe
    O4 - HKLM\..\Run: [HPHUPD06] C:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe
    O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
    O4 - HKLM\..\Run: [HPHmon06] C:\WINDOWS\system32\hphmon06.exe
    O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPWuSchd2.exe
    O4 - HKLM\..\Run: [Motive SmartBridge] C:\PROGRA~1\BTBROA~1\SMARTB~1\BTHelpNotifier.exe
    O4 - HKLM\..\Run: [YSearchProtection] "C:\Program Files\Yahoo!\Search Protection\SearchProtection.exe"
    O4 - HKLM\..\Run: [MSSE] "C:\Program Files\Microsoft Security Essentials\msseces.exe" -hide -runkey
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 9.0\Reader\Reader_sl.exe"
    O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\Windows Live\Messenger\MsnMsgr.Exe" /background
    O4 - HKCU\..\Run: [swg] "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe"
    O4 - HKCU\..\Run: [Sony Ericsson PC Suite] "C:\Program Files\Sony Ericsson\Sony Ericsson PC Suite\SEPCSuite.exe" /systray /nologon
    O4 - HKCU\..\Run: [BinatoneInternetPhone] C:\Program Files\Binatone Internet Phone\BinatoneInternetPhone.exe
    O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
    O4 - HKCU\..\Run: [Google Update] "C:\Documents and Settings\martyn burke\Local Settings\Application Data\Google\Update\GoogleUpdate.exe" /c
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'SYSTEM')
    O4 - HKUS\S-1-5-18\..\Run: [DWQueuedReporting] "C:\PROGRA~1\COMMON~1\MICROS~1\DW\dwtrig20.exe" -t (User 'SYSTEM')
    O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\System32\CTFMON.EXE (User 'Default user')
    O4 - Startup: OpenOffice.org 3.0.lnk = C:\Program Files\OpenOffice.org 3\program\quickstart.exe
    O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\digital imaging\bin\hpqtra08.exe
    O4 - Global Startup: HP Image Zone Fast Start.lnk = C:\Program Files\HP\digital imaging\bin\hpqthb08.exe
    O4 - Global Startup: Picture Package Menu.lnk = C:\Program Files\Sony Corporation\Picture Package\Picture Package Menu\SonyTray.exe
    O4 - Global Startup: Picture Package VCD Maker.lnk = C:\Program Files\Sony Corporation\Picture Package\Picture Package Applications\Residence.exe
    O4 - Global Startup: QuickBooks Update Agent.lnk = C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe
    O4 - Global Startup: Remocon Driver.lnk = ?
    O4 - Global Startup: Timer Recording Manager.lnk = C:\Program Files\sony\giga pocket\ReserveModule.exe
    O8 - Extra context menu item: &Search - http://bar.mywebsearch.com/menusearch.html?p=ZBzeb032YYGB
    O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office12\EXCEL.EXE/3000
    O8 - Extra context menu item: eBay Search - res://C:\Program Files\eBay\eBay Toolbar2\eBayTb.dll/RCSearch.html
    O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_96D6FF0C6D236BF8.dll/cmsidewiki.html
    O9 - Extra button: Blog This - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra 'Tools' menuitem: &Blog This in Windows Live Writer - {219C3416-8CB2-491a-A3C7-D9FCDDC9D600} - C:\Program Files\Windows Live\Writer\WriterBrowserExtension.dll
    O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
    O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~4\Office12\ONBttnIE.dll
    O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\Office12\REFIEBAR.DLL
    O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {01010E00-5E80-11D8-9E86-0007E96C65AE} (SupportSoft SmartIssue) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsi.cab
    O16 - DPF: {01012101-5E80-11D8-9E86-0007E96C65AE} (SupportSoft Script Runner Class) - http://www.symantec.com/techsupp/asa/ctrl/tgctlsr.cab
    O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
    O16 - DPF: {15B782AF-55D8-11D1-B477-006097098764} (Macromedia Authorware Web Player Control) - file://F:\aw_player52\awswaxf.cab
    O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} - https://www-secure.symantec.com/techsupp/asa/LSSupCtl.cab
    O16 - DPF: {2250C29C-C5E9-4F55-BE4E-01E45A40FCF1} (CMediaMix Object) - http://musicmix.messenger.msn.com/Medialogic.CAB
    O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EPUWALControl_v1-0-3-24.cab
    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by14fd.bay14.hotmail.msn.com/resources/MsnPUpld.cab
    O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.safety.live.com/resource/download/scanner/wlscbase8460.cab
    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
    O16 - DPF: {A7ECD556-D6F6-4F41-8C6B-14AB246801A0} (Secure Delivery) - http://cdn.digitalcity.com/video/kdx.cab
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
    O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
    O16 - DPF: {C606BA60-AB76-48B6-96A7-2C4D5C386F70} (PreQualifier Class) - http://help.broadbandassist.com/bbdesktop/PreQual/files/MotivePreQual.cab
    O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} - http://www.symantec.com/techsupp/asa/ctrl/SymAData.cab
    O16 - DPF: {F00F4763-7355-4725-82F7-0DA94A256D46} - http://www5.incredimail.com/contents/setup/downloader_sp1/imloader.cab
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
    O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
    O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\System32\browseui.dll
    O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\System32\browseui.dll
    O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
    O23 - Service: C-DillaCdaC11BA - Macrovision - C:\WINDOWS\system32\drivers\CDAC11BA.EXE
    O23 - Service: Giga Pocket Hardware Detector - Sony Corporation - C:\Program Files\sony\giga pocket\shwserv.exe
    O23 - Service: Google Update Service (gupdate) (gupdate) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
    O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
    O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
    O23 - Service: Intuit QuickBooks FCS (QBFCService) - Intuit Inc. - C:\Program Files\Common Files\Intuit\QuickBooks\FCS\Intuit.QuickBooks.FCS.exe
    O23 - Service: Sony TV Tuner Controller - Sony Corporation - C:\Program Files\sony\giga pocket\halsv.exe
    O23 - Service: Sony TV Tuner Manager - Sony Corporation - C:\Program Files\sony\giga pocket\RM_SV.exe
    O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\PROGRA~1\COMMON~1\SONYSH~1\AVLib\Sptisrv.exe
    O23 - Service: VAIO Media Music Server (VAIOMediaPlatform-MusicServer-AppServer) - Sony Corporation - C:\Program Files\sony\vaio media music server\SSSvr.exe
    O23 - Service: VAIO Media Music Server (HTTP) (VAIOMediaPlatform-MusicServer-HTTP) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\vaio media platform\sv_httpd.exe
    O23 - Service: VAIO Media Music Server (UPnP) (VAIOMediaPlatform-MusicServer-UPnP) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\vaio media platform\UPnPFramework.exe
    O23 - Service: VAIO Media Photo Server (VAIOMediaPlatform-PhotoServer-AppServer) - Sony Corporation - C:\Program Files\sony\photo server\appsrv\PhotoAppSrv.exe
    O23 - Service: VAIO Media Photo Server (HTTP) (VAIOMediaPlatform-PhotoServer-HTTP) - Sony Corporation - C:\Program Files\Common Files\sony shared\vaio media platform\SV_Httpd.exe
    O23 - Service: VAIO Media Photo Server (UPnP) (VAIOMediaPlatform-PhotoServer-UPnP) - Sony Corporation - C:\Program Files\Common Files\sony shared\vaio media platform\UPnPFramework.exe
    O23 - Service: VAIO Media Video Server (VAIOMediaPlatform-VideoServer-AppServer) - Sony Corporation - C:\Program Files\sony\giga pocket\GPVSvr.exe
    O23 - Service: VAIO Media Video Server (HTTP) (VAIOMediaPlatform-VideoServer-HTTP) - Sony Corporation - C:\Program Files\Common Files\sony shared\vaio media platform\SV_Httpd.exe
    O23 - Service: VAIO Media Video Server (UPnP) (VAIOMediaPlatform-VideoServer-UPnP) - Sony Corporation - C:\Program Files\Common Files\sony shared\vaio media platform\UPnPFramework.exe
    O24 - Desktop Component 0: (no name) - http://email01.wanadoo.co.uk/webmail/download/Download.html?IDMSG=56&PJRANG=2&NAME=BackGrnd1.jpg&FOLDER=INBOX&STREAM_TYPE=IMAGE&EMBEDDED=true
    O24 - Desktop Component 1: (no name) - http://www.spicyauctiontemplates.com/images/1110HB.jpg
    O24 - Desktop Component 2: (no name) - http://i.ebayimg.com/08/!BrDeyzw!mk~$(KGrHqIOKiQEu3LsPc+GBLyDQcLibw~~_35.JPG

    --
    End of file - 16679 bytes
  • melmar_2
    melmar_2 Posts: 209 Forumite
    ive also got the panda active scan
    ;***********************************************************************************************************************************************************************************
    ANALYSIS: 2010-05-25 13:00:24
    PROTECTIONS: 1
    MALWARE: 73
    SUSPECTS: 2
    ;***********************************************************************************************************************************************************************************
    PROTECTIONS
    Description Version Active Updated
    ;===================================================================================================================================================================================
    Microsoft Security Essentials 2.1.6519.0 Yes Yes
    ;===================================================================================================================================================================================
    MALWARE
    Id Description Type Active Severity Disinfectable Disinfected Location
    ;===================================================================================================================================================================================
    00020937 adware/statblaster Adware No 0 Yes No c:\windows\downloaded program files\wildapp.inf
    00034463 adware/wupd Adware No 0 Yes No hkey_local_machine\software\microsoft\windows\currentversion\uninstall\70tovmto
    00139059 Cookie/Traffic Marketplace TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq125.tmp
    00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqbb.tmp
    00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq70.tmp
    00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq89.tmp
    00139060 Cookie/Casalemedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq29.tmp
    00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq54.tmp
    00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqaf.tmp
    00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq9f.tmp
    00139061 Cookie/Doubleclick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq8c.tmp
    00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqb1.tmp
    00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq9a.tmp
    00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\documents and settings\martyn burke\cookies\martyn_burke@atdmt[2].txt
    00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq86.tmp
    00139064 Cookie/Atlas DMT TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq1f.tmp
    00144497 Cookie/Intelli-tracker TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq19.tmp
    00145393 Cookie/Tradedoubler TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq92.tmp
    00145393 Cookie/Tradedoubler TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqb5.tmp
    00145393 Cookie/Tradedoubler TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq82.tmp
    00145393 Cookie/Tradedoubler TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq15.tmp
    00145405 Cookie/RealMedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqcc.tmp
    00145405 Cookie/RealMedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq4.tmp
    00145405 Cookie/RealMedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq98.tmp
    00145405 Cookie/RealMedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq16.tmp
    00145433 Cookie/Mammamediasolutions TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq48.tmp
    00145433 Cookie/Mammamediasolutions TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq3a.tmp
    00145453 Cookie/Bfast TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqc2.tmp
    00145453 Cookie/Bfast TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq87.tmp
    00145453 Cookie/Bfast TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqb.tmp
    00145453 Cookie/Bfast TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqbd.tmp
    00145457 Cookie/FastClick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqa1.tmp
    00145457 Cookie/FastClick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq71.tmp
    00145457 Cookie/FastClick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq8d.tmp
    00145457 Cookie/FastClick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq2c.tmp
    00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq49.tmp
    00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq93.tmp
    00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq83.tmp
    00145731 Cookie/Tribalfusion TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqb6.tmp
    00145738 Cookie/Mediaplex TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqa4.tmp
    00145738 Cookie/Mediaplex TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqc7.tmp
    00145738 Cookie/Mediaplex TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq59.tmp
    00145738 Cookie/Mediaplex TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq8e.tmp
    00145807 Cookie/Linksynergy TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq5e.tmp
    00145807 Cookie/Linksynergy TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq1a.tmp
    00145869 Cookie/SpyLog TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq889.tmp
    00145881 Cookie/NewMedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqe8.tmp
    00147806 Cookie/7search TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq60.tmp
    00147824 Cookie/Clickbank TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq8a.tmp
    00147824 Cookie/Clickbank TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq18.tmp
    00149064 Cookie/Maxserving TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq1b.tmp
    00149064 Cookie/Maxserving TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq6.tmp
    00152401 Cookie/Belnk TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq3f.tmp
    00159564 Cookie/WUpd TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq64.tmp
    00159564 Cookie/WUpd TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqbf.tmp
    00159564 Cookie/WUpd TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq39.tmp
    00160284 Cookie/Findwhat TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq35.tmp
    00162730 Cookie/Belnk TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq40.tmp
    00167642 Cookie/Com.com TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqce.tmp
    00167642 Cookie/Com.com TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq2a.tmp
    00167656 Cookie/Hitbox TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq55.tmp
    00167657 Cookie/Hitbox TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq66.tmp
    00167672 Cookie/DomainSponsor TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq8b.tmp
    00167704 Cookie/Xiti TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq131.tmp
    00167724 Cookie/HotLog TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq888.tmp
    00167730 Cookie/Hitbox TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq5d.tmp
    00167747 Cookie/Azjmp TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqea.tmp
    00167749 Cookie/Toplist TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq124.tmp
    00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq91.tmp
    00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqb4.tmp
    00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq13.tmp
    00167753 Cookie/Statcounter TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq80.tmp
    00167760 Cookie/Hitslink TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqa3.tmp
    00167760 Cookie/Hitslink TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqf.tmp
    00167760 Cookie/Hitslink TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq7d.tmp
    00167770 Cookie/Sextracker TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq77.tmp
    00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq44.tmp
    00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq6b.tmp
    00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq99.tmp
    00168056 Cookie/YieldManager TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq5.tmp
    00168076 Cookie/BurstNet TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq27.tmp
    00168076 Cookie/BurstNet TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq45.tmp
    00168076 Cookie/BurstNet TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq9d.tmp
    00168076 Cookie/BurstNet TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq6f.tmp
    00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq63.tmp
    00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq7e.tmp
    00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq8.tmp
    00168090 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqb3.tmp
    00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq9c.tmp
    00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq26.tmp
    00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq21.tmp
    00168093 Cookie/Serving-sys TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqc8.tmp
    00168095 Cookie/888 TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq67.tmp
    00168095 Cookie/888 TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq5f.tmp
    00168097 Cookie/BurstBeacon TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqee.tmp
    00168101 Cookie/Falkag TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq68.tmp
    00168101 Cookie/Falkag TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq226.tmp
    00168101 Cookie/Falkag TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqd0.tmp
    00168102 Cookie/Falkag TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqc5.tmp
    00168102 Cookie/Falkag TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq1e.tmp
    00168109 Cookie/Adtech TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq6c.tmp
    00168109 Cookie/Adtech TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq224.tmp
    00168114 Cookie/onestat.com TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq65.tmp
    00168114 Cookie/onestat.com TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq14.tmp
    00169190 Cookie/Advertising TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq6d.tmp
    00169190 Cookie/Advertising TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq1d.tmp
    00169190 Cookie/Advertising TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq52.tmp
    00169190 Cookie/Advertising TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqb7.tmp
    00169286 Cookie/Sextracker TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq2e.tmp
    00169286 Cookie/Sextracker TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq78.tmp
    00170087 Cookie/Hbmediapro TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqfb.tmp
    00170304 Cookie/WebtrendsLive TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq5a.tmp
    00170304 Cookie/WebtrendsLive TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq94.tmp
    00170304 Cookie/WebtrendsLive TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqa9.tmp
    00170304 Cookie/WebtrendsLive TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqb9.tmp
    00170495 Cookie/PointRoll TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq4d.tmp
    00170495 Cookie/PointRoll TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqa5.tmp
    00170495 Cookie/PointRoll TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq96.tmp
    00170549 Cookie/FortuneCity TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq46.tmp
    00170549 Cookie/FortuneCity TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqcb.tmp
    00170550 Cookie/Humanclick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq75.tmp
    00170556 Cookie/RealMedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqa6.tmp
    00170556 Cookie/RealMedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq2d.tmp
    00170556 Cookie/RealMedia TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq7.tmp
    00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq3e.tmp
    00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq73.tmp
    00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq227.tmp
    00171982 Cookie/QuestionMarket TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqb2.tmp
    00172221 Cookie/Zedo TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq97.tmp
    00172221 Cookie/Zedo TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq9.tmp
    00172221 Cookie/Zedo TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq7b.tmp
    00172221 Cookie/Zedo TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqc0.tmp
    00172449 Cookie/MetriWeb TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqd1.tmp
    00173520 Cookie/Bluestreak TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqba.tmp
    00173520 Cookie/Bluestreak TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq225.tmp
    00173520 Cookie/Bluestreak TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq1c.tmp
    00173520 Cookie/Bluestreak TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq13e.tmp
    00180246 Cookie/XXXCounter TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq7a.tmp
    00182104 Cookie/Hitbox TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq36.tmp
    00187950 Cookie/bravenetA TrackingCookie No 0 =====================
  • melmar_2
    melmar_2 Posts: 209 Forumite
    Yes No c:\program files\yahoo!\ypsr\quarantine\ppq88.tmp
    00187950 Cookie/bravenetA TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqcd.tmp
    00199981 Cookie/Seeq TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq11f.tmp
    00199983 Cookie/Valueclick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq33.tmp
    00199983 Cookie/Valueclick TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq88a.tmp
    00199984 Cookie/Searchportal TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq104.tmp
    00206953 Cookie/Sextracker TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq76.tmp
    00207712 Cookie/360i TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqdf.tmp
    00207936 Cookie/Adviva TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq38.tmp
    00207936 Cookie/Adviva TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq6e.tmp
    00207936 Cookie/Adviva TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq17.tmp
    00262020 Cookie/Atwola TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqe9.tmp
    00286738 Cookie/Cgi-bin TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppqe2.tmp
    00325830 Cookie/Bridgetrack TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq4b.tmp
    00325830 Cookie/Bridgetrack TrackingCookie No 0 Yes No c:\program files\yahoo!\ypsr\quarantine\ppq22.tmp
    00966839 Spyware/Virtumonde Spyware No 1 Yes No c:\program files\viewpoint\viewpoint experience technology\newcomponents\swfview.dll
    03009106 W32/Xor-encoded.A Virus No 0 Yes No c:\system volume information\_restore{886087e2-5c06-4302-8005-19f54cbcc366}\rp975\a0397902.exe
    03009106 W32/Xor-encoded.A Virus No 0 Yes No c:\system volume information\_restore{886087e2-5c06-4302-8005-19f54cbcc366}\rp975\a0397901.exe
    03009106 W32/Xor-encoded.A Virus No 0 Yes No c:\system volume information\_restore{886087e2-5c06-4302-8005-19f54cbcc366}\rp980\a0398328.exe
    03074964 Trj/CI.A Virus/Trojan No 0 Yes No c:\documents and settings\martyn burke\desktop\91c69.zip[53guide/spanish.zip][easy spanish for babies & toddlers/bonus items/ez-ebooks.exe]
    03074964 Trj/CI.A Virus/Trojan No 0 Yes No c:\windows\motive\btbb\uninstallhelper.exe
    03074964 Trj/CI.A Virus/Trojan No 0 Yes No c:\documents and settings\martyn burke\desktop\91c69.zip[53guide/spanish.zip][easy spanish for babies & toddlers/easy spanish.exe]
    ;===================================================================================================================================================================================
    SUSPECTS
    Sent Location
    ;===================================================================================================================================================================================
    Yes c:\documents and settings\martyn burke\my documents\downloads\remove fake antivirus(2).exe
    Yes c:\documents and settings\martyn burke\my documents\downloads\remove fake antivirus.exe
    ;===================================================================================================================================================================================
    VULNERABILITIES
    Id Severity Description
    ;===================================================================================================================================================================================
    ;================================================================
  • melmar_2
    melmar_2 Posts: 209 Forumite
    just found another problem found an email in my own spam as if its sent by me,have i been corrupted really worried about if i have affected others and my bank account and ebay account.
    starting to get stressed now any advice please
This discussion has been closed.
Meet your Ambassadors

🚀 Getting Started

Hi new member!

Our Getting Started Guide will help you get the most out of the Forum

Categories

  • All Categories
  • 350.9K Banking & Borrowing
  • 253.1K Reduce Debt & Boost Income
  • 453.5K Spending & Discounts
  • 243.9K Work, Benefits & Business
  • 598.7K Mortgages, Homes & Bills
  • 176.9K Life & Family
  • 257.1K Travel & Transport
  • 1.5M Hobbies & Leisure
  • 16.1K Discuss & Feedback
  • 37.6K Read-Only Boards

Is this how you want to be seen?

We see you are using a default avatar. It takes only a few seconds to pick a picture.