I usually don't have problems with ads or popups on my computer and noticed a bunch of them starting a couple weeks ago. Also, while playing a game I usually play, I was extremely laggy.
About two days ago I was chatting via ICQ with a gaming friend. Another gaming "friend" popped on and pasted in the conversation from the other window - he had been eavesdropping somehow.
He told me that he had sent a port sniffer and installed a keylogger on my computer, and that he had "everything he needed."
He said he didn't have it turned on all the time to avoid detection, just when he needed it.
He claimed to have removed it - but said if I gave him grief, he would do much worse and I would be sorry.
I asked if he was able to see the other computers around me, and he said he hadn't dug that far. That he was just looking at the computer with ICQ on it.
That morning I had just run my spybot and spyware blaster and they had not detected anything. After this incident, I ran my Avast Anti-Virus program and it told me I had a trojan called "Hupigon" and that it was high risk and a possible keylogger. I'm not sure if this is "the" keylogger or at least the means he had recorded my conversation.
I had Avast "fix" it by moving it to a chest. Then I searched around and found the instructions on DeepAurelia.com for trying to remove and it recommended doing the prework and posting the logs here. So here I am.
We happen to have a network of computers, but haven't caught anything on the other computers. And some of them have different operating systems, not Windows, so not sure if I should be concerned about them.
This individual appears to have a reputation for hacking people's computers and game accounts - even going so far as to fly to visit people to get their home addresses and user id's. I do not know him personally, he is simply an in-game aquaintance and I had him on my ICQ list. Because it seems like he goes to such trouble to do what he does, I'm not sure what the intentions are, or how long he's been doing this to me. I don't know what info he already has or how big of an attack on me he intends to do.
SO, any info on how to clean up my computer and prevent this from happening again or further will be GREATLY GREATLY appreciated. Is there any way to be 100% sure he's no longer watching me?
LOGS:
I followed the instructions. HOWEVER, I did download the AVG Anti-Spyware, but it wouldn't generate reports for me at first. Not sure why, the report buttons wouldn't highlight for me to click. It did remove a number of items, but no log. When it was clean, it did generate the log below.
AVG LOG:
---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------
+ Created at: 2:09:06 PM 4/25/2008
+ Scan result:
D:\temp\removalfile.bat -> Not-A-Virus.Adware.Virtumonde : Cleaned with backup (quarantined).
::Report end
SUPERAntiSpyware Scan
SUPERAntiSpyware Scan Log
SUPERAntiSpyware.com - AntiAdware, AntiSpyware, AntiMalware!
Generated 04/25/2008 at 05:19 PM
Application Version : 4.0.1154
Core Rules Database Version : 3447
Trace Rules Database Version: 1439
Scan type : Complete Scan
Total Scan Time : 03:06:51
Memory items scanned : 187
Memory threats detected : 0
Registry items scanned : 5810
Registry threats detected : 0
File items scanned : 44513
File threats detected : 331
Adware.Tracking Cookie
C:\Documents and Settings\Administrator\Cookies\administrator@findm ysoft[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@eb.ad bureau[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@super stats[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@azjmp[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@adser ver.adtechus[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@click aider[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@brave net[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@www.g odtracker[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@revsc i[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@yadro[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@thesp acetracker[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@atlas .fixionmedia[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@thund erbolt.adjuggler[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@www.b urstbeacon[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@www.t hespacetracker[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@paren tingteens.about[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@atwol a[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@richm edia.yahoo[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@konte ra[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@adser ver.filefront[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@ads.e delmantech[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@rotat or.adjuggler[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@fortu necity[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@partn er2profit[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@serve r.iad.liveperson[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@a.fin darticles[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@tremo r.adbureau[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@rotat or.dex.adjuggler[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@ads.s oft32[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@tripo d[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@ad1.e mediate[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@colle ctive-media[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@adopt .euroclick[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@bizra te[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@tacod a[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@anad. tacoda[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@ads.m ediamayhemcorp[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@ad101 com.adbureau[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@finda rticles[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@insig htexpressai[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@media .cardomain[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@rambl er[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@realm edia[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@bear-tracker[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@ads.u s.e-planning[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@ads.r evsci[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@serve r.cpmstar[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@ads.c nn[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@media 6degrees[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@rm.yi eldmanager[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@spafi nder[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@www.b ookfinder4u[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@www.c alorie-count[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@www2. addfreestats[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@ads.a ssociatedcontent[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@click tracks.aristotle[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@iad.l iveperson[3].txt
C:\Documents and Settings\Administrator\Cookies\administrator@stat. onestat[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@iad.l iveperson[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@dmtra cker[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@iacas .adbureau[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@media bistro[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@calor ie-count[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@optim ize.indieclick[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@inter click[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@sites tat.mayoclinic[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@a.tot al-media[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@v7.st ats.load[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@preci sionclick[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@adleg end[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@mycou nter.tinycounter[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@track ing.foxnews[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@web-stat[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@stat. dealtime[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@www.s pafinder[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@topli st[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@ecnex t.advertserve[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@anat. tacoda[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@ads.m onster[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@www.g oogleadservices[3].txt
C:\Documents and Settings\Administrator\Cookies\administrator@ads.v erkata[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@elite-keylogger[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@oas.d irectaclick[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@reuni on.adbureau[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@dealt ime[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@media 7.sitebrand[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@ads.b elointeractive[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@ad.as sociatedcontent[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@qnsr[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@gosta ts[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@nexta g[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@webor ama[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@adser verus[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@adsys tem.soupermarketing[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@ads.d ietsinreview[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@ads.t echguy[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@www.v aginapowertv[1].txt
C:\Documents and Settings\Administrator\Cookies\administrator@ads.m obygames[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@sixap art.adbureau[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@ads.f oodbuzz[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@media .
www.diamondbackonline[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@elite fitness[2].txt
C:\Documents and Settings\Administrator\Cookies\administrator@serve r.iad.liveperson[3].txt
C:\Documents and Settings\Administrator\Cookies\administrator@index tools[2].txt
C:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@golocalnet.sit etracker[2].txt
C:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@thespacetracke r[2].txt
C:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@superstats[1].txt
C:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@toplist[1].txt
C:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@ads.monster[1].txt
C:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@tremor.adburea u[2].txt
C:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@adv.webmd[2].txt
C:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@www.thespacetr acker[1].txt
C:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@videoegg.adbur eau[2].txt
C:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@counter.surfco unters[1].txt
C:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@e1.cdn.qnsr[1].txt
C:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@qnsr[2].txt
C:\Documents and Settings\Administrator\Local Settings\Temp\Cookies\administrator@ad.thewheelof[2].txt
C:\Documents and Settings\User\Cookies\user@publicrecordfinder[2].txt
C:\Documents and Settings\User\Cookies\user@www.ezytrack[2].txt
C:\Documents and Settings\User\Cookies\user@www.calorie-count[1].txt
C:\Documents and Settings\User\Cookies\user@www4.addfreestats[1].txt
C:\Documents and Settings\User\Cookies\user@www3.addfreestats[1].txt
C:\Documents and Settings\User\Cookies\user@adv.medscape[1].txt
C:\Documents and Settings\User\Cookies\user@smartcpc.advertserve[1].txt
C:\Documents and Settings\User\Cookies\user@www.joincontoursexpress[1].txt
C:\Documents and Settings\User\Cookies\user@insightexpressai[2].txt
C:\Documents and Settings\User\Cookies\user@belnk[1].txt
C:\Documents and Settings\User\Cookies\user@webpower[1].txt
C:\Documents and Settings\User\Cookies\user@www.windowsmedia[1].txt
C:\Documents and Settings\User\Cookies\user@winantivirus[1].txt
C:\Documents and Settings\User\Cookies\user@filmloop.adbureau[2].txt
C:\Documents and Settings\User\Cookies\user@adserver.virgin[1].txt
C:\Documents and Settings\User\Cookies\user@adv.webmd[1].txt
C:\Documents and Settings\User\Cookies\user@id.teenblvd[1].txt
C:\Documents and Settings\User\Cookies\user@keywordmax[1].txt
C:\Documents and Settings\User\Cookies\user@stats.manticoretechnolo gy[1].txt
C:\Documents and Settings\User\Cookies\user@ads.as4x.tmcs[1].txt
C:\Documents and Settings\User\Cookies\user@clickability[1].txt
C:\Documents and Settings\User\Cookies\user@onlinerewardcenter[1].txt
C:\Documents and Settings\User\Cookies\user@bravenet[2].txt
C:\Documents and Settings\User\Cookies\user@nextag[2].txt
C:\Documents and Settings\User\Cookies\user@a.websponsors[1].txt
C:\Documents and Settings\User\Cookies\user@adserver1.teracent[1].txt
C:\Documents and Settings\User\Cookies\user@kontera[1].txt
C:\Documents and Settings\User\Cookies\user@tracking.foxnews[2].txt
C:\Documents and Settings\User\Cookies\user@adlegend[1].txt
C:\Documents and Settings\User\Cookies\user@www.3dstats[1].txt
C:\Documents and Settings\User\Cookies\user@exitexchange[2].txt
C:\Documents and Settings\User\Cookies\user@adknowledge[2].txt
C:\Documents and Settings\User\Cookies\user@insightfirst[1].txt
C:\Documents and Settings\User\Cookies\user@gostats[2].txt
C:\Documents and Settings\User\Cookies\user@centralmediaserver[1].txt
C:\Documents and Settings\User\Cookies\user@indexstats[2].txt
C:\Documents and Settings\User\Cookies\user@ads.active[1].txt
C:\Documents and Settings\User\Cookies\user@hc2.humanclick[1].txt
C:\Documents and Settings\User\Cookies\user@ad.uk.tangozebra[1].txt
C:\Documents and Settings\User\Cookies\user@aj.petfinder[1].txt
C:\Documents and Settings\User\Cookies\user@drivecleaner[2].txt
C:\Documents and Settings\User\Cookies\user@s.clickability[2].txt
C:\Documents and Settings\User\Cookies\user@hollywoodteenmovies.fre estats[2].txt
C:\Documents and Settings\User\Cookies\user@artmedia.com[2].txt
C:\Documents and Settings\User\Cookies\user@partner2profit[2].txt
C:\Documents and Settings\User\Cookies\user@acronymfinder[2].txt
C:\Documents and Settings\User\Cookies\user@ads.cnn[1].txt
C:\Documents and Settings\User\Cookies\user@vhost.oddcast[2].txt
C:\Documents and Settings\User\Cookies\user@ads.thestar[1].txt
C:\Documents and Settings\User\Cookies\user@www.indiancountry[2].txt
C:\Documents and Settings\User\Cookies\user@atwola[1].txt
C:\Documents and Settings\User\Cookies\user@www.findgift[1].txt
C:\Documents and Settings\User\Cookies\user@tripod[1].txt
C:\Documents and Settings\User\Cookies\user@bizrate[2].txt
C:\Documents and Settings\User\Cookies\user@petfinder[1].txt
C:\Documents and Settings\User\Cookies\user@audit.median[1].txt
C:\Documents and Settings\User\Cookies\user@countercentral[2].txt
C:\Documents and Settings\User\Cookies\user@find-me-a-gift.co[2].txt
C:\Documents and Settings\User\Cookies\user@indextools[2].txt
C:\Documents and Settings\User\Cookies\user@www.findarticles[2].txt
C:\Documents and Settings\User\Cookies\user@ads.telegraph.co[1].txt
C:\Documents and Settings\User\Cookies\user@info.product-finder[2].txt
C:\Documents and Settings\User\Cookies\user@bannerads.zwire[1].txt
C:\Documents and Settings\User\Cookies\user@ads.realtechnetwork[2].txt
C:\Documents and Settings\User\Cookies\user@katu.adbureau[2].txt
C:\Documents and Settings\User\Cookies\user@publishers.clickbooth[1].txt
C:\Documents and Settings\User\Cookies\user@stats.drivecleaner[2].txt
C:\Documents and Settings\User\Cookies\user@123count[2].txt
C:\Documents and Settings\User\Cookies\user@findlaw[1].txt
C:\Documents and Settings\User\Cookies\user@focalex[2].txt
C:\Documents and Settings\User\Cookies\user@kanoodle[1].txt
C:\Documents and Settings\User\Cookies\user@parentingteens.about[1].txt
C:\Documents and Settings\User\Cookies\user@partypoker[2].txt
C:\Documents and Settings\User\Cookies\user@pview.findlaw[1].txt
C:\Documents and Settings\User\Cookies\user@s.teenblvd[1].txt
C:\Documents and Settings\User\Cookies\user@stats1.clicktracks[2].txt
C:\Documents and Settings\User\Cookies\user@teenhollywood[1].txt
C:\Documents and Settings\User\Cookies\user@v7.stats.load[2].txt
C:\Documents and Settings\User\Cookies\user@www.contoursexpress[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@petfi nder[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@itxt. vibrantmedia[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@ads.j okaroo[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@insig htexpressai[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@partn er2profit[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@count ercentral[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@adser ver1.teracent[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@inter click[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@ads.a s4x.tmcs[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@adv.m edscape[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@filml oop.adbureau[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@index tools[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@smart cpc.advertserve[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@track ing.foxnews[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@renew ingthecountryside[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@pview .findlaw[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@stats .drivecleaner[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@focal ex[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@ads.a ctive[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@click ability[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@find-me-a-gift.co[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@keywo rdmax[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@holly woodteenmovies.freestats[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@adser ver.virgin[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@exite xchange[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@teenh ollywood[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@stats .manticoretechnology[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@ad.tr adingcharts[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@webpo wer[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@adser ver[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@track ing.ezd3[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@id.te enblvd[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@www.c ontoursexpress[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@info. product-finder[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@onlin erewardcenter[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@count er.plugin[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@finda rticles[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@www.w indowsmedia[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@www.f indarticles[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@stats 1.clicktracks[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@acron ymfinder[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@s.tee nblvd[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@brave net[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@banne rads.zwire[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@drive cleaner[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@belnk[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@gosta ts[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@tripo d[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@insig htfirst[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@megas tats[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@www.f indgift[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@ads.f redericksburg[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@s.cli ckability[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@party poker[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@a.web sponsors[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@lynxt rack[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@nexta g[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@audit .median[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@www.j oincontoursexpress[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@adv.w ebmd[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@www.e zytrack[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@ads.t hestar[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@ads.a ddesktop[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@index stats[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@katu. adbureau[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@ads.m ultimania.lycos[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@vhost .oddcast[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@findl aw[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@publi crecordfinder[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@leadg enetwork[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@aj.pe tfinder[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@m1.we bstats4u[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@www.c alorie-count[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@ads.r ealtechnetwork[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@atwol a[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@bizra te[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@123co unt[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@artme dia.com[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@adsre venue[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@kanoo dle[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@winan tivirus[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@banne rads[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@adsys tem[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@ads.w ebfeat[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@adkno wledge[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@ads.c nn[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@sides how.directtrack[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@v7.st ats.load[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@www.i ndiancountry[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@ads.t elegraph.co[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@centr almediaserver[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@eyewo nder[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@adleg end[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@hc2.h umanclick[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@konte ra[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@paren tingteens.about[1].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@publi shers.clickbooth[2].txt
C:\OLD_C_DRIVE\Documents and Settings\Administrator\Cookies\administrator@www.c lickxchange[2].txt
D:\temp\Cookies\administrator@partner2profit[2].txt
D:\temp\Cookies\administrator@ads1.rodale[1].txt
D:\temp\Cookies\administrator@tracking.foxnews[2].txt
D:\temp\Cookies\administrator@focalex[1].txt
D:\temp\Cookies\administrator@mediamgr.ugo[1].txt
D:\temp\Cookies\administrator@exitexchange[1].txt
D:\temp\Cookies\administrator@stats.drivecleaner[2].txt
D:\temp\Cookies\administrator@ads.active[2].txt
D:\temp\Cookies\administrator@clickability[1].txt
D:\temp\Cookies\administrator@banners.nbcupromotes[1].txt
D:\temp\Cookies\administrator@click2houston[1].txt
D:\temp\Cookies\administrator@drivecleaner[2].txt
D:\temp\Cookies\administrator@regalinteractive[2].txt
D:\temp\Cookies\administrator@nextag[2].txt
D:\temp\Cookies\administrator@adv.webmd[1].txt
D:\temp\Cookies\administrator@indexstats[1].txt
D:\temp\Cookies\administrator@tripod.com[1].txt
D:\temp\Cookies\administrator@kanoodle[1].txt
D:\temp\Cookies\administrator@atwola[2].txt
D:\temp\Cookies\administrator@winantivirus[2].txt
D:\temp\Cookies\administrator@sirsearch[1].txt
D:\temp\Cookies\administrator@ads.cnn[1].txt
D:\temp\Cookies\administrator@adsense[2].txt
BearShare File Sharing Client
D:\APPS\BEARSHARE\BEARSHARE.EXE
C:\OLD_C_DRIVE\DOCUMENTS AND SETTINGS\ALL USERS\START MENU\PROGRAMS\INTERNET-RELATED TOOLS\BROWSERS\EBAY TOOLBAR\BEARSHARE.LNK
Adware.Casino Games (Golden Palace Casino)
D:\APPS\FORTUNEROOM\CASINO.EXE
Trace.Known Threat Sources
D:\temp\Temporary Internet Files\Content.IE5\CT2NSXUJ\ico2[1].gif
D:\temp\Temporary Internet Files\Content.IE5\8LKDM7G5\logo[1].gif
D:\temp\Temporary Internet Files\Content.IE5\O5UZS1UN\ico5[1].gif
D:\temp\Temporary Internet Files\Content.IE5\O5UZS1UN\bar[1].gif
D:\temp\Temporary Internet Files\Content.IE5\W1GR0F0Z\ico3[1].gif
D:\temp\Temporary Internet Files\Content.IE5\CT2NSXUJ\checksoft[1].js
D:\temp\Temporary Internet Files\Content.IE5\CT2NSXUJ\ico1[1].gif
D:\temp\Temporary Internet Files\Content.IE5\O5UZS1UN\index[1].html
D:\temp\Temporary Internet Files\Content.IE5\O5UZS1UN\top_pic2[1].gif
D:\temp\Temporary Internet Files\Content.IE5\8LKDM7G5\wav_banner[1].swf
D:\temp\Temporary Internet Files\Content.IE5\O5UZS1UN\ico4[1].gif
CCleaner...When I first ran CCleaner, I got the following error message:
first time:
Critical Error
A critical error has occured in CCleaner, the application must close.
Error Description:
The thread attempted to read from or write to a virtual address for which it does not have the appropriate access
CCleaner v2.06.567
MS Windows XP SP2
Intel Pentium D
CPU 2.66GHz
1.0GB
RAM
Application::Run
HIJACK THIS LOG
Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 10:44:00 PM, on 4/25/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16640)
Boot mode: Normal
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
d:\apps\Avast4\aswUpdSv.exe
d:\apps\Avast4\ashServ.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
D:\apps\Avast4\ashDisp.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\SnoopFreeUI.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNo tifier.exe
C:\PROGRA~1\MICROS~3\wcescomm.exe
D:\Apps\Spybot15\Spybot - Search & Destroy\TeaTimer.exe
C:\WINDOWS\system32\ctfmon.exe
D:\Apps\SUPERAntiSpyware\SUPERAntiSpyware.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\MICROS~3\rapimgr.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\SnoopFreeSvc.exe
C:\WINDOWS\system32\svchost.exe
d:\apps\Avast4\ashMaiSv.exe
d:\apps\Avast4\ashWebSv.exe
C:\WINDOWS\system32\wuauclt.exe
D:\Apps\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
Welcome to StarNet
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
MSN.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =
Live Search
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
MSN.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyServer = localhost:12080
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,ProxyOverride = localhost;<local>
O2 - BHO: (no name) - {02478D38-C3F9-4efb-9B51-7695ECA05670} - (no file)
O2 - BHO: (no name) - {055FD26D-3A88-4e15-963D-DC8493744B1D} - (no file)
O2 - BHO: (no name) - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - (no file)
O2 - BHO: Spybot-S&D IE Protection - {53707962-6F74-2D53-2644-206D7942484F} - D:\Apps\Spybot15\SPYBOT~1\SDHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\3.0.1225.9868\s wg.dll
O2 - BHO: ZoneAlarm Spy Blocker BHO - {F0D4B231-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\ZoneAlarmSB\bar\1.bin\SPYBLOCK.DLL
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: ZoneAlarm Spy Blocker - {F0D4B239-DA4B-4daf-81E4-DFEE4931A4AA} - C:\Program Files\ZoneAlarmSB\bar\1.bin\SPYBLOCK.DLL
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll (file missing)
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [avast!] d:\apps\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [SnoopFreeUI] SnoopFreeUI.exe
O4 - HKLM\..\Run: [QuickTime Task] "D:\apps\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNo tifier.exe
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\PROGRA~1\MICROS~3\wcescomm.exe"
O4 - HKCU\..\Run: [SpybotSD TeaTimer] D:\Apps\Spybot15\Spybot - Search & Destroy\TeaTimer.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [SUPERAntiSpyware] D:\Apps\SUPERAntiSpyware\SUPERAntiSpyware.exe
O4 - HKUS\S-1-5-18\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe (User 'Default user')
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MICROS~3\INetRepl.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe (file missing)
O9 - Extra button: (no name) - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\Apps\Spybot15\SPYBOT~1\SDHelper.dll
O9 - Extra 'Tools' menuitem: Spybot - Search & Destroy Configuration - {DFB852A3-47F8-48C4-A200-58CAB36FD2A2} - D:\Apps\Spybot15\SPYBOT~1\SDHelper.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: *.intel.com
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {238F6F83-B8B4-11CF-8771-00A024541EE3} (Citrix ICA Client) -
http://a516.g.akamai.net/f/516/25175...at-no-eula.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper.dll
O16 - DPF: {48DD0448-9209-4F81-9F6D-D83562940134} (MySpace Uploader Control) -
http://lads.myspace.com/upload/MySpaceUploader1006.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -
http://update.microsoft.com/windowsu...?1138914953953
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://update.microsoft.com/microsof...?1156537068984
O16 - DPF: {F2D35D99-63B1-46D3-970C-6E22320D5DCB} (kSoloCntrlIE Class) -
http://www.ksolo.com/playerBase/kSoloIEHDSD.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{087F322D-C717-4501-91C9-36CBE7F06E39}: NameServer = 192.168.1.1
O17 - HKLM\System\CS1\Services\Tcpip\..\{087F322D-C717-4501-91C9-36CBE7F06E39}: NameServer = 192.168.1.1
O17 - HKLM\System\CS2\Services\Tcpip\..\{087F322D-C717-4501-91C9-36CBE7F06E39}: NameServer = 192.168.1.1
O17 - HKLM\System\CS3\Services\Tcpip\..\{087F322D-C717-4501-91C9-36CBE7F06E39}: NameServer = 192.168.1.1
O20 - Winlogon Notify: !SASWinLogon - D:\Apps\SUPERAntiSpyware\SASWINLO.dll
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - ALWIL Software - d:\apps\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - ALWIL Software - d:\apps\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - ALWIL Software - d:\apps\Avast4\ashMaiSv.exe
O23 - Service: avast! Web Scanner - ALWIL Software - d:\apps\Avast4\ashWebSv.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Snoop Free Service (SnoopFreeSvc) - Unknown owner - C:\WINDOWS\System32\SnoopFreeSvc.exe
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
--
End of file - 9819 bytes
THANK YOU SO MUCH