PC seems to be running/booting a bit faster, and as I mentioned in a post above, I can now access the settings that previously had been blocked (Set Program Access and Defaults, My Computer Properties).
Scan results:
SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 10/24/2007 at 10:03 PM
Application Version : 3.9.1008
Core Rules Database Version : 3330
Trace Rules Database Version: 1331
Scan type : Complete Scan
Total Scan Time : 00:48:30
Memory items scanned : 466
Memory threats detected : 0
Registry items scanned : 6051
Registry threats detected : 115
File items scanned : 50527
File threats detected : 136
Adware.Tracking Cookie
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@paypal.112.2o7[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@adknowledge[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@70062990[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@trafficmp[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@robeez.122.2o7[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@e-2dj6wjlyuhczkko.stats.esomniture[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@ad.iconadserver[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@e-2dj6wfkiojcjmbo.stats.esomniture[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@e-2dj6wfligmazedq.stats.esomniture[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@statse.webtrendslive[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@e-2dj6wjkoqhc5cko.stats.esomniture[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@homedepotca.122.2o7[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@stats.clicktracks[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@www.viruslocker[3].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@canadapost.112.2o7[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@e-2dj6wgmyupd5idq.stats.esomniture[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@e-2dj6wjmiciazmdq.stats.esomniture[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@msnaccountservices.112.2o7[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@e-2dj6wfl4kgdpkkq.stats.esomniture[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@e-2dj6wjkyaldpedp.stats.esomniture[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@www.ez-tracks[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@www.pcantiviruspro[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@e-2dj6wblycid5kgo.stats.esomniture[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@e-2dj6wjlyukdzgbp.stats.esomniture[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@bizrate[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@clickaider[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@adtech[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@calc.avsystemcare[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@ehg-bestbuy.hitbox[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@ez-tracks[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@tremor.adbureau[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@reduxads.valuead[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@pointandshop.112.2o7[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@stat.onestat[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@gomyhit[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@overture[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@avsystemcare[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@ehg-artbeads.hitbox[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@57386690[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@e-2dj6wjloencpsfp.stats.esomniture[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@www.sexstoriespost[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@e-2dj6wckiqjczifp.stats.esomniture[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@ads.tnt[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@www.pornfreaks[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@try.screensavers[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@491[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@adultadworld[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@view-9385[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@provolabs.112.2o7[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@e-2dj6wakoskazsho.stats.esomniture[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@www.freepornsite[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@89901003[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@e-2dj6wblockazcgo.stats.esomniture[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@cgi-bin[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@sixapart.adbureau[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@trinitymirror.112.2o7[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@e-2dj6wjlyeldzseo.stats.esomniture[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@e-2dj6wjnysmazscp.stats.esomniture[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@www.xxxkey[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@charmingshoppes.112.2o7[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@e-2dj6wjl4qhdjebq.stats.esomniture[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@xiti[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@e-2dj6wgmyencpgbp.stats.esomniture[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@dir-porn[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@audit.median[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@partners.webmasterplan[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@e-2dj6wgkikgcpgbq.stats.esomniture[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@cgi-bin[6].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@marketlive.122.2o7[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@humornsex[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@sexmovies[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@kinxxx[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@e-2dj6wfmiwpajifo.stats.esomniture[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@shopping.112.2o7[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@tracking.foxnews[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@e-2dj6wjmiglczogo.stats.esomniture[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@freesexpicsandchat[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@sexstoriespost[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@cgi-bin[3].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@pornotube[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@ads.adgoto[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@view-5592[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@partypoker[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@ad1.clickhype[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@adbrite[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@adinterax[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@ads.ak.facebook[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@ads.cnn[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@dump.pornfreaks[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@freepornsite[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@image.masterstats[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@indextools[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@interclick[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@mormonsexposed[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@richmedia.yahoo[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@sales.liveperson[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@saynotocrack[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@stat.dealtime[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@stats.sellmosoft[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@stats4.clicktracks[2].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@toplist[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@www.analsexvideos[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@www.camelmedia[1].txt
C:\Documents and Settings\Jennifer Hooper\Cookies\jennifer hooper@yadro[1].txt
C:\Documents and Settings\Kevin Langdon\Cookies\kevin langdon@2o7[2].txt
C:\Documents and Settings\Kevin Langdon\Cookies\kevin langdon@adinterax[1].txt
C:\Documents and Settings\Kevin Langdon\Cookies\kevin langdon@ads.cnn[1].txt
C:\Documents and Settings\Kevin Langdon\Cookies\kevin langdon@overture[1].txt
C:\Documents and Settings\Kevin Langdon\Cookies\kevin langdon@primedia.us.intellitxt[1].txt
C:\Documents and Settings\Kevin Langdon\Cookies\kevin langdon@spamblockerutility[2].txt
Trojan.Security Toolbar
C:\Documents and Settings\All Users\Start Menu\Online Security Guide.url
C:\Documents and Settings\All Users\Start Menu\Security Troubleshooting.url
Adware.MyWay
C:\Program Files\MyWay\SrchAstt
C:\Program Files\MyWay
Trojan.SysProtect
HKU\S-1-5-21-3443434921-1572373378-2956556151-1008\Software\SysProtect
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SSCAN
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SSCAN#NextInstance
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SSCAN\0000
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SSCAN\0000#Service
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SSCAN\0000#Legacy
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SSCAN\0000#ConfigFlags
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SSCAN\0000#Class
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SSCAN\0000#ClassGUID
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SSCAN\0000#DeviceDesc
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SSCAN\0000#Capabilities
HKLM\SYSTEM\CurrentControlSet\Enum\Root\LEGACY_SSCAN\0000\LogConf
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1253\A0125417.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1253\A0125418.EXE
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1253\A0125419.EXE
C:\WINDOWS\DOWNLOADED PROGRAM FILES\CONFLICT.1\USYP_0001_N69M1703NETINSTALLER.EXE
C:\WINDOWS\DOWNLOADED PROGRAM FILES\CONFLICT.1\USYP_0001_N76M2004NETINSTALLER.EXE
C:\WINDOWS\DOWNLOADED PROGRAM FILES\CONFLICT.2\USYP_0001_N76M2004NETINSTALLER.EXE
C:\WINDOWS\DOWNLOADED PROGRAM FILES\CONFLICT.3\USYP_0001_N76M2004NETINSTALLER.EXE
C:\WINDOWS\SYSTEM32\DRIVERS\SSCAN.SYS
Malware.AntiVirGear
HKCR\TypeLib\{DE6AE29A-EB7D-4656-9418-26D5FCC9ADF5}
HKCR\TypeLib\{DE6AE29A-EB7D-4656-9418-26D5FCC9ADF5}\1.0
HKCR\TypeLib\{DE6AE29A-EB7D-4656-9418-26D5FCC9ADF5}\1.0\0
HKCR\TypeLib\{DE6AE29A-EB7D-4656-9418-26D5FCC9ADF5}\1.0\0\win32
HKCR\TypeLib\{DE6AE29A-EB7D-4656-9418-26D5FCC9ADF5}\1.0\FLAGS
HKCR\TypeLib\{DE6AE29A-EB7D-4656-9418-26D5FCC9ADF5}\1.0\HELPDIR
HKCR\Interface\{0A0FC1A4-41D4-4793-9AC5-0B55CDC95AE9}
HKCR\Interface\{0A0FC1A4-41D4-4793-9AC5-0B55CDC95AE9}\ProxyStubClsid
HKCR\Interface\{0A0FC1A4-41D4-4793-9AC5-0B55CDC95AE9}\ProxyStubClsid32
HKCR\Interface\{0A0FC1A4-41D4-4793-9AC5-0B55CDC95AE9}\TypeLib
HKCR\Interface\{0A0FC1A4-41D4-4793-9AC5-0B55CDC95AE9}\TypeLib#Version
HKCR\Interface\{14F47CA3-2291-4B3E-9ED4-8C7E6AE80851}
HKCR\Interface\{14F47CA3-2291-4B3E-9ED4-8C7E6AE80851}\ProxyStubClsid
HKCR\Interface\{14F47CA3-2291-4B3E-9ED4-8C7E6AE80851}\ProxyStubClsid32
HKCR\Interface\{14F47CA3-2291-4B3E-9ED4-8C7E6AE80851}\TypeLib
HKCR\Interface\{14F47CA3-2291-4B3E-9ED4-8C7E6AE80851}\TypeLib#Version
HKCR\Interface\{2447284F-3590-4E8C-A869-049BD87CAD07}
HKCR\Interface\{2447284F-3590-4E8C-A869-049BD87CAD07}\ProxyStubClsid
HKCR\Interface\{2447284F-3590-4E8C-A869-049BD87CAD07}\ProxyStubClsid32
HKCR\Interface\{2447284F-3590-4E8C-A869-049BD87CAD07}\TypeLib
HKCR\Interface\{2447284F-3590-4E8C-A869-049BD87CAD07}\TypeLib#Version
HKCR\Interface\{38EEEF46-CA24-4ACA-A90D-540978DF7252}
HKCR\Interface\{38EEEF46-CA24-4ACA-A90D-540978DF7252}\ProxyStubClsid
HKCR\Interface\{38EEEF46-CA24-4ACA-A90D-540978DF7252}\ProxyStubClsid32
HKCR\Interface\{38EEEF46-CA24-4ACA-A90D-540978DF7252}\TypeLib
HKCR\Interface\{38EEEF46-CA24-4ACA-A90D-540978DF7252}\TypeLib#Version
HKCR\Interface\{3D5E5AE1-5DED-4520-BDC2-B9292EA708CA}
HKCR\Interface\{3D5E5AE1-5DED-4520-BDC2-B9292EA708CA}\ProxyStubClsid
HKCR\Interface\{3D5E5AE1-5DED-4520-BDC2-B9292EA708CA}\ProxyStubClsid32
HKCR\Interface\{3D5E5AE1-5DED-4520-BDC2-B9292EA708CA}\TypeLib
HKCR\Interface\{3D5E5AE1-5DED-4520-BDC2-B9292EA708CA}\TypeLib#Version
HKCR\Interface\{409A05EF-1B48-4198-B6BF-993B8B52790C}
HKCR\Interface\{409A05EF-1B48-4198-B6BF-993B8B52790C}\ProxyStubClsid
HKCR\Interface\{409A05EF-1B48-4198-B6BF-993B8B52790C}\ProxyStubClsid32
HKCR\Interface\{409A05EF-1B48-4198-B6BF-993B8B52790C}\TypeLib
HKCR\Interface\{409A05EF-1B48-4198-B6BF-993B8B52790C}\TypeLib#Version
HKCR\Interface\{47A93011-1004-440C-9960-BD3B0348A7C2}
HKCR\Interface\{47A93011-1004-440C-9960-BD3B0348A7C2}\ProxyStubClsid
HKCR\Interface\{47A93011-1004-440C-9960-BD3B0348A7C2}\ProxyStubClsid32
HKCR\Interface\{47A93011-1004-440C-9960-BD3B0348A7C2}\TypeLib
HKCR\Interface\{47A93011-1004-440C-9960-BD3B0348A7C2}\TypeLib#Version
HKCR\Interface\{50B388D5-4A80-4191-8BCC-5DD031D7F3EE}
HKCR\Interface\{50B388D5-4A80-4191-8BCC-5DD031D7F3EE}\ProxyStubClsid
HKCR\Interface\{50B388D5-4A80-4191-8BCC-5DD031D7F3EE}\ProxyStubClsid32
HKCR\Interface\{50B388D5-4A80-4191-8BCC-5DD031D7F3EE}\TypeLib
HKCR\Interface\{50B388D5-4A80-4191-8BCC-5DD031D7F3EE}\TypeLib#Version
HKCR\Interface\{58A1ACE6-0DBA-45D2-8154-E8253A7B87BB}
HKCR\Interface\{58A1ACE6-0DBA-45D2-8154-E8253A7B87BB}\ProxyStubClsid
HKCR\Interface\{58A1ACE6-0DBA-45D2-8154-E8253A7B87BB}\ProxyStubClsid32
HKCR\Interface\{58A1ACE6-0DBA-45D2-8154-E8253A7B87BB}\TypeLib
HKCR\Interface\{58A1ACE6-0DBA-45D2-8154-E8253A7B87BB}\TypeLib#Version
HKCR\Interface\{73D25394-992F-43D1-BF92-48494CC0D1AE}
HKCR\Interface\{73D25394-992F-43D1-BF92-48494CC0D1AE}\ProxyStubClsid
HKCR\Interface\{73D25394-992F-43D1-BF92-48494CC0D1AE}\ProxyStubClsid32
HKCR\Interface\{73D25394-992F-43D1-BF92-48494CC0D1AE}\TypeLib
HKCR\Interface\{73D25394-992F-43D1-BF92-48494CC0D1AE}\TypeLib#Version
HKCR\Interface\{7D2A83A4-0687-4704-937E-A29045826F77}
HKCR\Interface\{7D2A83A4-0687-4704-937E-A29045826F77}\ProxyStubClsid
HKCR\Interface\{7D2A83A4-0687-4704-937E-A29045826F77}\ProxyStubClsid32
HKCR\Interface\{7D2A83A4-0687-4704-937E-A29045826F77}\TypeLib
HKCR\Interface\{7D2A83A4-0687-4704-937E-A29045826F77}\TypeLib#Version
HKCR\Interface\{A7FE54B2-B167-4017-BCCC-CF73B2F678E3}
HKCR\Interface\{A7FE54B2-B167-4017-BCCC-CF73B2F678E3}\ProxyStubClsid
HKCR\Interface\{A7FE54B2-B167-4017-BCCC-CF73B2F678E3}\ProxyStubClsid32
HKCR\Interface\{A7FE54B2-B167-4017-BCCC-CF73B2F678E3}\TypeLib
HKCR\Interface\{A7FE54B2-B167-4017-BCCC-CF73B2F678E3}\TypeLib#Version
HKCR\Interface\{C183B073-2D7F-45BC-8967-80147CECEE45}
HKCR\Interface\{C183B073-2D7F-45BC-8967-80147CECEE45}\ProxyStubClsid
HKCR\Interface\{C183B073-2D7F-45BC-8967-80147CECEE45}\ProxyStubClsid32
HKCR\Interface\{C183B073-2D7F-45BC-8967-80147CECEE45}\TypeLib
HKCR\Interface\{C183B073-2D7F-45BC-8967-80147CECEE45}\TypeLib#Version
HKCR\Interface\{F6FDBF9A-19A7-4F0A-9F46-6F015A067B44}
HKCR\Interface\{F6FDBF9A-19A7-4F0A-9F46-6F015A067B44}\ProxyStubClsid
HKCR\Interface\{F6FDBF9A-19A7-4F0A-9F46-6F015A067B44}\ProxyStubClsid32
HKCR\Interface\{F6FDBF9A-19A7-4F0A-9F46-6F015A067B44}\TypeLib
HKCR\Interface\{F6FDBF9A-19A7-4F0A-9F46-6F015A067B44}\TypeLib#Version
HKCR\Interface\{F90A7969-20A0-4257-B39D-9C73D64CE3B0}
HKCR\Interface\{F90A7969-20A0-4257-B39D-9C73D64CE3B0}\ProxyStubClsid
HKCR\Interface\{F90A7969-20A0-4257-B39D-9C73D64CE3B0}\ProxyStubClsid32
HKCR\Interface\{F90A7969-20A0-4257-B39D-9C73D64CE3B0}\TypeLib
HKCR\Interface\{F90A7969-20A0-4257-B39D-9C73D64CE3B0}\TypeLib#Version
HKCR\Interface\{FA38F299-57F8-4FEB-9096-715460AE943C}
HKCR\Interface\{FA38F299-57F8-4FEB-9096-715460AE943C}\ProxyStubClsid
HKCR\Interface\{FA38F299-57F8-4FEB-9096-715460AE943C}\ProxyStubClsid32
HKCR\Interface\{FA38F299-57F8-4FEB-9096-715460AE943C}\TypeLib
HKCR\Interface\{FA38F299-57F8-4FEB-9096-715460AE943C}\TypeLib#Version
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1247\A0124218.EXE
Trojan.Media-Codec/V4
HKU\S-1-5-21-3443434921-1572373378-2956556151-1008\Software\Online Add-on
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IE Custom Tools
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IE Custom Tools#DisplayName
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IE Custom Tools#UninstallString
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IE Safety Features
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IE Safety Features#DisplayName
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IE Safety Features#UninstallString
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Information Center
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Information Center#DisplayName
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Information Center#UninstallString
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Video Add-on
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Video Add-on#ProductionEnvironment
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Video Add-on#DisplayName
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Video Add-on#UninstallString
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Video Add-on#DisplayIcon
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Video Add-on#DisplayVersion
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Video Add-on#Publisher
C:\QOOBOX\QUARANTINE\C\PROGRAM FILES\VIDEO ADD-ON\ICTMDL.DLL.VIR
C:\QOOBOX\QUARANTINE\C\PROGRAM FILES\VIDEO ADD-ON\ISFMDL.DLL.VIR
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1247\A0124209.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1248\A0124503.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1250\A0124550.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1250\A0124584.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1250\A0125194.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1250\A0125239.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1251\A0125309.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1252\A0125363.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1256\A0125535.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1256\A0125536.DLL
Trojan.Smitfraud Variant
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP1247\A0124230.DLL
Hijack This report:
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:38:06 PM, on 24/10/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Bonjour\mDNSResponder.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Trend Micro\BM\TMBMSRV.exe
C:\Program Files\Canon\CAL\CALMAIN.exe
C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\System32\DSentry.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Rogers\SelfHealing\rogersagent.exe
C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Documents and Settings\Jennifer Hooper\Desktop\Spyware Scanning\HiJackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://rogers.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://ca.red.clientapps.yahoo.com/customi...//www.yahoo.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost;*.local
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [IntelMeM] C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [diagent] "C:\Program Files\Creative\SBLive\Diagnostics\diagent.exe" startup
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [mmtask] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
O4 - HKLM\..\Run: [YOP] C:\PROGRA~1\Yahoo!\YOP\yop.exe /autostart
O4 - HKLM\..\Run: [UfSeAgnt.exe] "C:\Program Files\Trend Micro\Internet Security\UfSeAgnt.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Update Manager] "C:\Program Files\Rogers\Update Manager\UpdateManager.exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\ypager.exe" -quiet
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [RogersAgent] c:\Program Files\Rogers\SelfHealing\rogersagent.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = ?
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: ymetray.lnk = C:\Program Files\Yahoo!\Yahoo! Music Jukebox\ymetray.exe
O8 - Extra context menu item: &Search - ?p=ZUxdm265YYCA
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: Rogers Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\PROGRA~1\Yahoo!\common\yiesrvc.dll
O9 - Extra button: Bonjour - {7F9DB11C-E358-4ca6-A83D-ACC663939424} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: *.musicmatch.com
O15 - Trusted Zone: *.musicmatch.com (HKLM)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {215B8138-A3CF-44C5-803F-8226143CFC0A} (Trend Micro ActiveX Scan Agent 6.6) -
http://housecall65.trendmicro.com/housecal...ivex/hcImpl.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) -
http://upload.facebook.com/controls/Facebo...otoUploader.cab
O16 - DPF: {B7D07999-2ADB-4AEB-997E-F61CB7B2E2CD} (TSEasyInstallX Control) -
http://www.trendsecure.com/easy_install/_a...asyInstallX.CAB
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\SYSTEM32\ati2sgag.exe
O23 - Service: Bonjour Service - Apple Computer, Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: Canon Camera Access Library 8 (CCALib8) - Canon Inc. - C:\Program Files\Canon\CAL\CALMAIN.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Unknown owner - C:\WINDOWS\system32\drivers\KodakCCS.exe (file missing)
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: Trend Micro Central Control Component (SfCtlCom) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\SfCtlCom.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Trend Micro Unauthorized Change Prevention Service (TMBMServer) - Trend Micro Inc. - C:\Program Files\Trend Micro\BM\TMBMSRV.exe
O23 - Service: Trend Micro Personal Firewall (TmPfw) - Trend Micro Inc. - C:\PROGRA~1\TRENDM~1\INTERN~1\TmPfw.exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Inc. - C:\Program Files\Trend Micro\Internet Security\TmProxy.exe
O23 - Service: YPCService - Yahoo! Inc. - C:\WINDOWS\SYSTEM32\YPCSER~1.EXE
--
End of file - 7919 bytes