R
We want to be sure none of the pop-ups are related to this program.According to CNET:
The TechTracker app shows you the software that is out of date and provides you with the information to decide which updates you need.]
File::
c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
c:\windows\System32\config\systemprofile\AppData\Local\Microsoft\Windows\Temporary Internet Files\Content.IE5\index.dat
Folder::
c:\users\Public\AppData\Local\temp
c:\users\Default\AppData\Local\temp
RegNull::
[HKEY_USERS\S-1-5-21-692946247-3924552147-1366034368-1001\Software\SecuROM\!CAUTION! NEVER A OR CHANGE ANY KEY*]
[HKEY_USERS\S-1-5-21-692946247-3924552147-1366034368-1001\Software\SecuROM\License information*]
RegLock::
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\Class\{4D36E96D-E325-11CE-BFC1-08002BE10318}\0000\AllUserSettings]
[HKEY_LOCAL_MACHINE\SYSTEM\ControlSet001\Control\PCW\Security]
the NOD32 scanner detected 3 trojans but did not produce a log which i found odd.
A logfile is created and located at C:\Program Files\EsetOnlineScanner\log.txt. Please include this on your post.
You download the program first and save to the desktop. Then you disable the security programs before you double click to run the program.ad aware, zone alarm ,and super anti viris restarted when i logged in but i quickly shut the processes down.
Copy the log and either paste it in the next reply or attach it. It's my job to check the logs and decide what needs to be done- based on what I see.A logfile is created and located at C:\Program Files\EsetOnlineScanner\log.txt. Please include this on your post.
I have deleted part of the log so as not to take up so much space, but your log will resemble this.ESETSmartInstaller@High as CAB hook log:
OnlineScanner.ocx - registred OK
# version=7
# iexplore.exe=7.00.6000.16386 (vista_rtm.061101-2205)
# OnlineScanner.ocx=1.0.0.6211
# api_version=3.0.2
# EOSSerial=..............
# end=stopped
# antistealth_checked=false
# utc_time=2010-03-30 11:06:46
# local_time=2010-03-30 04:06:46 (-0800, Pacific Daylight Time)
# country="United States"
# lang=9
# osver=6.0.6001 NT Service Pack 1
# compatibility_mode=512 16777
# utc_time=2010-03-31 12:38:57
# local_time=2010-03-30 05:38:57 (-0800, Pacific Daylight Time)
# country="United States"
# lang=9
# osver=6.0.6001 NT Service Pack 1
# compatibility_mode=512 16777215 100 0 6127 6127 0 0
# scanned=154769
# found=2
# cleaned=0
# scan_time=5157
C:\Qoobox\Quarantine\C\Windows\System32\drivers\onlldr.sys.vir Win32/Rootkit.Kryptik.BB trojan 80C6AF4F948D4168FC90DA1A6F4B6924 I
C:\Users\Kevin\AppData\Local\VirtualStore\Windows\System32\C2H3 a variant of Win32/Phyiost.AE trojan DFDAA083B07942FEE550FF2C0880B61E I