Here are my logs:
Malwarebytes' Anti-Malware 1.38
Database version: 2379
Windows 6.0.6002 Service Pack 2
6/07/2009 15:57:04
mbam-log-2009-07-06 (15-57-04).txt
Scan type: Quick Scan
Objects scanned: 81512
Time elapsed: 4 minute(s), 37 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 3
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\dslcnnct (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\MS Track System (Trojan.Vundo) -> Quarantined and deleted successfully.
Registry Values Infected:
(No malicious items detected)
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
(No malicious items detected)
Files Infected:
(No malicious items detected)
---------------------------------------------------------------------------------------------------------------------------------------------------------------
SUPERAntiSpyware Scan Log
http://www.superantispyware.com
Generated 07/06/2009 at 05:38 PM
Application Version : 4.26.1006
Core Rules Database Version : 3973
Trace Rules Database Version: 1913
Scan type : Complete Scan
Total Scan Time : 01:18:01
Memory items scanned : 309
Memory threats detected : 0
Registry items scanned : 7704
Registry threats detected : 0
File items scanned : 146315
File threats detected : 16
Adware.Tracking Cookie
C:\Users\Jacobs\AppData\Roaming\Microsoft\Windows\Cookies\Low\jacobs@ad.doubleclick[2].txt
C:\Users\Jacobs\AppData\Roaming\Microsoft\Windows\Cookies\Low\jacobs@ad.yieldmanager[1].txt
C:\Users\Jacobs\AppData\Roaming\Microsoft\Windows\Cookies\Low\jacobs@advertising[1].txt
C:\Users\Jacobs\AppData\Roaming\Microsoft\Windows\Cookies\Low\jacobs@at.atwola[2].txt
C:\Users\Jacobs\AppData\Roaming\Microsoft\Windows\Cookies\Low\jacobs@atdmt[1].txt
C:\Users\Jacobs\AppData\Roaming\Microsoft\Windows\Cookies\Low\jacobs@bluestreak[2].txt
C:\Users\Jacobs\AppData\Roaming\Microsoft\Windows\Cookies\Low\jacobs@doubleclick[1].txt
C:\Users\Jacobs\AppData\Roaming\Microsoft\Windows\Cookies\Low\jacobs@ehg-sandiskcorp.hitbox[1].txt
C:\Users\Jacobs\AppData\Roaming\Microsoft\Windows\Cookies\Low\jacobs@hitbox[2].txt
C:\Users\Jacobs\AppData\Roaming\Microsoft\Windows\Cookies\Low\jacobs@revsci[1].txt
C:\Users\Jacobs\AppData\Roaming\Microsoft\Windows\Cookies\Low\jacobs@smartadserver[1].txt
C:\Users\Jacobs\AppData\Roaming\Microsoft\Windows\Cookies\Low\jacobs@specificclick[1].txt
C:\Users\Jacobs\AppData\Roaming\Microsoft\Windows\Cookies\Low\jacobs@tacoda[2].txt
C:\Users\Jacobs\AppData\Roaming\Microsoft\Windows\Cookies\Low\jacobs@tradedoubler[1].txt
C:\Users\Jacobs\AppData\Roaming\Microsoft\Windows\Cookies\Low\jacobs@tradedoubler[3].txt
C:\Users\Jacobs\AppData\Roaming\Microsoft\Windows\Cookies\Low\jacobs@xiti[1].txt
-----------------------------------------------------------------------------------------------------------------------------------------------------------------
The blue balloon pop up is still there. but's more likely a windows popup ? saying some process is blocked : nod32update.exe
Is this harmfull ?
Thx in advance!