Pop ups continuous when i am in a web browser

 
Post new topic   General Reply to Topic (not reply to a specific post)    Forums Home -> General Discussions RSS
Next:  help - help 67  
Author Message
dsh213



Joined: Feb 02, 2009
Posts: 1



PostPosted: Tue Feb 03, 2009 12:42 am    Post subject: Pop ups continuous when i am in a web browser

Can someone help me I have attached my Hijack this log since it doesn't on analyze this.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 6:34:22 PM, on 2/2/2009
Platform: Windows XP SP3 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16762)
Boot mode: Safe mode with network support

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ZCfgSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Alwil Software\Avast4\ashSimpl.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://yahoo.sbc.com/dsl
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
O1 - Hosts: 76.76.101.212 006.free-counter.co.uk
O1 - Hosts: 76.76.101.212 006.freecounters.co.uk
O1 - Hosts: 76.76.101.212 06272002-dbase.hitcountz.net
O1 - Hosts: 76.76.101.212 0stats.com
O1 - Hosts: 76.76.101.212 123counter.mycomputer.com
O1 - Hosts: 76.76.101.212 123counter.superstats.com
O1 - Hosts: 76.76.101.212 1ca.cqcounter.com
O1 - Hosts: 76.76.101.212 1uk.cqcounter.com
O1 - Hosts: 76.76.101.212 1us.cqcounter.com
O1 - Hosts: 76.76.101.212 1xxx.cqcounter.com
O1 - Hosts: 76.76.101.212 2001-007.com
O1 - Hosts: 76.76.101.212 3bc3fd26-91cf-46b2-8ec6-b1559ada0079.statcamp.net
O1 - Hosts: 76.76.101.212 4-counter.com
O1 - Hosts: 76.76.101.212 a796faee-7163-4757-a34f-e5b48cada4cb.statcamp.net
O1 - Hosts: 76.76.101.212 abscbn.spinbox.net
O1 - Hosts: 76.76.101.212 activity.serving-sys.com
O1 - Hosts: 76.76.101.212 ad-logics.com
O1 - Hosts: 76.76.101.212 adclient.rottentomatoes.com
O1 - Hosts: 76.76.101.212 adcodes.aim4media.com
O1 - Hosts: 76.76.101.212 adcounter.globeandmail.com
O1 - Hosts: 76.76.101.212 adcounter.theglobeandmail.com
O1 - Hosts: 76.76.101.212 addfreestats.com
O1 - Hosts: 76.76.101.212 ademails.com
O1 - Hosts: 76.76.101.212 adlog.com.com
O1 - Hosts: 76.76.101.212 admanmail.com
O1 - Hosts: 76.76.101.212 adopt.specificclick.net
O1 - Hosts: 76.76.101.212 ads.tiscali.com
O1 - Hosts: 76.76.101.212 ads.tiscali.it
O1 - Hosts: 76.76.101.212 adult.foxcounter.com
O1 - Hosts: 76.76.101.212 ai062.insightexpress.com
O1 - Hosts: 76.76.101.212 ai078.insightexpressai.com
O1 - Hosts: 76.76.101.212 ai087.insightexpress.com
O1 - Hosts: 76.76.101.212 ai113.insightexpressai.com
O1 - Hosts: 76.76.101.212 ai125.insightexpressai.com
O1 - Hosts: 76.76.101.212 alpha.easy-hit-counters.com
O1 - Hosts: 76.76.101.212 amateur.xxxcounter.com
O1 - Hosts: 76.76.101.212 analytics.prx.org
O1 - Hosts: 76.76.101.212 anm.intelli-direct.com
O1 - Hosts: 76.76.101.212 arbo.hit.gemius.pl
O1 - Hosts: 76.76.101.212 au.track.decideinteractive.com
O1 - Hosts: 76.76.101.212 au052.insightexpress.com
O1 - Hosts: 76.76.101.212 banner.0catch.com
O1 - Hosts: 76.76.101.212 banners.webcounter.com
O1 - Hosts: 76.76.101.212 be.sitestat.com
O1 - Hosts: 76.76.101.212 best-search.cc
O1 - Hosts: 76.76.101.212 beta.easy-hit-counter.com
O1 - Hosts: 76.76.101.212 beta.easy-hit-counters.com
O1 - Hosts: 76.76.101.212 beta.easyhitcounters.com
O1 - Hosts: 76.76.101.212 bilbo.counted.com
O1 - Hosts: 76.76.101.212 birta.stats.is
O1 - Hosts: 76.76.101.212 bluekai.com
O1 - Hosts: 76.76.101.212 bluestreak.com
O1 - Hosts: 76.76.101.212 bookproplus.com
O1 - Hosts: 76.76.101.212 broadcastpc.tv
O1 - Hosts: 76.76.101.212 report.broadcastpc.tv
O1 - Hosts: 76.76.101.212 www.broadcastpc.tv
O1 - Hosts: 76.76.101.212 bserver.blick.com
O1 - Hosts: 76.76.101.212 c.thecounter.de
O1 - Hosts: 76.76.101.212 c1.statcounter.com
O1 - Hosts: 76.76.101.212 c1.thecounter.com
O1 - Hosts: 76.76.101.212 c1.thecounter.de
O1 - Hosts: 76.76.101.212 c1.xxxcounter.com
O1 - Hosts: 76.76.101.212 c10.statcounter.com
O1 - Hosts: 76.76.101.212 c11.statcounter.com
O1 - Hosts: 76.76.101.212 c12.statcounter.com
O1 - Hosts: 76.76.101.212 c13.statcounter.com
O1 - Hosts: 76.76.101.212 c14.statcounter.com
O1 - Hosts: 76.76.101.212 c15.statcounter.com
O1 - Hosts: 76.76.101.212 c16.statcounter.com
O1 - Hosts: 76.76.101.212 c17.statcounter.com
O1 - Hosts: 76.76.101.212 c2.gostats.com
O1 - Hosts: 76.76.101.212 c2.thecounter.com
O1 - Hosts: 76.76.101.212 c2.thecounter.de
O1 - Hosts: 76.76.101.212 c2.xxxcounter.com
O1 - Hosts: 76.76.101.212 c3.gostats.com
O1 - Hosts: 76.76.101.212 c3.statcounter.com
O1 - Hosts: 76.76.101.212 c3.thecounter.com
O1 - Hosts: 76.76.101.212 c3.xxxcounter.com
O1 - Hosts: 76.76.101.212 c4.myway.com
O1 - Hosts: 76.76.101.212 c4.statcounter.com
O1 - Hosts: 76.76.101.212 c5.statcounter.com
O1 - Hosts: 76.76.101.212 c6.statcounter.com
O1 - Hosts: 76.76.101.212 c7.statcounter.com
O1 - Hosts: 76.76.101.212 c8.statcounter.com
O1 - Hosts: 76.76.101.212 c9.statcounter.com
O1 - Hosts: 76.76.101.212 ca.cqcounter.com
O1 - Hosts: 76.76.101.212 cashcounter.com
O1 - Hosts: 76.76.101.212 cb1.counterbot.com
O1 - Hosts: 76.76.101.212 cdxbin.vulnerap.com
O1 - Hosts: 76.76.101.212 cgi.hotstat.nl
O1 - Hosts: 76.76.101.212 cgi.sexlist.com
O1 - Hosts: 76.76.101.212 cgicounter.onlinehome.de
O1 - Hosts: 76.76.101.212 cgicounter.puretec.de
O1 - Hosts: 76.76.101.212 citrix.tradedoubler.com
O1 - Hosts: 76.76.101.212 cjt1.net
O1 - Hosts: 76.76.101.212 click.atdmt.com
O1 - Hosts: 76.76.101.212 click.fivemtn.com
O1 - Hosts: 76.76.101.212 click.investopedia.com
O1 - Hosts: 76.76.101.212 click.payserve.com
O1 - Hosts: 76.76.101.212 click.silvercash.com
O1 - Hosts: 76.76.101.212 clickauditor.net
O3 - Toolbar: StumbleUpon Toolbar - {5093EB4C-3E93-40AB-9266-B607BA87BDC8} - C:\Program Files\StumbleUpon\StumbleUponIEBar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [ZCfgSvc.exe] C:\WINDOWS\system32\ZCfgSvc.exe
O4 - HKLM\..\Run: [VX6000] C:\WINDOWS\vVX6000.exe
O4 - HKLM\..\Run: [PRONoMgr.exe] C:\Program Files\Intel\NCS\PROSet\PRONoMgr.exe
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.2\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre6\bin\jusched.exe"
O4 - HKLM\..\Run: [8432c1e2] rundll32.exe "C:\WINDOWS\system32\smgwdjvs.dll",b
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\1.2.911.3380\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\AIM6\aim6.exe" /d locale=en-US ee://aol/imApp
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: StumbleUpon PhotoBlog It! - res://StumbleUponIEBar.dll/blogimage
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Absolute Poker - {13C1DBF6-7535-495c-91F6-8C13714ED485} - C:\Documents and Settings\Administrator\Start Menu\Programs\Absolute Poker\Absolute Poker.lnk (HKCU)
O9 - Extra 'Tools' menuitem: Absolute Poker - {13C1DBF6-7535-495c-91F6-8C13714ED485} - C:\Documents and Settings\Administrator\Start Menu\Programs\Absolute Poker\Absolute Poker.lnk (HKCU)
O15 - Trusted Zone: http://*.att.net
O16 - DPF: {02BF25D5-8C17-4B23-BC80-D3488ABDDC6B} (QuickTime Object) - http://a1540.g.akamai.net/7/1540/52/20061205/qtinstall.info.apple.com/...ctivex/
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (Installation Support) - C:\Program Files\Yahoo!\Common\Yinsthelper20073151.dll
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shockwave/cabs/flash/swflash.cab
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - AppInit_DLLs: newuio.dll
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: EloSystemService - Elo Touchsystems - C:\WINDOWS\system32\EloSrvce.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: RegSrvc - Intel Corporation - C:\WINDOWS\system32\RegSrvc.exe
O23 - Service: LiveShare P2P Server 9 (RoxLiveShare9) - Unknown owner - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe (file missing)
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\WINDOWS\system32\S24EvMon.exe
O23 - Service: StumbleUponUpdateService - stumbleupon.com - C:\Program Files\StumbleUpon\StumbleUponUpdateService.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe

--
End of file - 11440 bytes
Back to top
Display posts from previous:   
Post new topic   General Reply to Topic (not reply to a specific post)    Forums Home -> General Discussions All times are: Eastern Time (US & Canada)
Page 1 of 1

 
You can post new topics in this forum
You can reply to topics in this forum
You cannot edit your posts in this forum
You cannot delete your posts in this forum
You cannot vote in polls in this forum

Warning: fopen(): open_basedir restriction in effect. File(/home/adsense_reject.txt) is not within the allowed path(s): (/home/helploc:/usr/lib/php:/usr/local/lib/php:/tmp) in /home/helploc/public_html/Giga/GigaFunctions.php on line 1144

Warning: fopen(/home/adsense_reject.txt): failed to open stream: Operation not permitted in /home/helploc/public_html/Giga/GigaFunctions.php on line 1144

Warning: fwrite() expects parameter 1 to be resource, boolean given in /home/helploc/public_html/Giga/GigaFunctions.php on line 1145

Warning: fclose() expects parameter 1 to be resource, boolean given in /home/helploc/public_html/Giga/GigaFunctions.php on line 1146