[quote name=\'guestolo\' post=\'351972\' date=\'Jul 7 2007, 08:59 AM\']Which Adware scanner is showing you these results?
Whichever it is, after a scan you can usually view a report of what was found
Can you post the contents of that report
Also, since you are running Vista
Can you download Hijackthis 2.0.2 and post a fresh log
You can get it from
HERE[/quote]
Guestolo-
I used Ad-aware and have attached the scan.
I will post hijackthis next. Thanks for your help!
Carol

http://images.thetechguide.com/forum/public/style_emoticons/<#EMO_DIR#>/biggrin.gif\' class=\'bbc_emoticon\' alt=\'

\' />
Ad-Aware SE Build 1.06r1
Logfile Created on:Saturday, July 07, 2007 11:25:59 AM
Created with Ad-Aware SE Personal, free for private use.
Using definitions file:SE1R179 04.07.2007
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
»»»»»»»»»»»
References detected during the scan:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Win32.P2P-Worm.Alcan.a(TAC index:

:2 total references
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Ad-Aware SE Settings
===========================
Set : Safe mode (always request confirmation)
Set : Scan active processes
Set : Scan registry
Set : Deep-scan registry
Set : Scan my IE Favorites for banned URLs
Set : Scan my Hosts file
Extended Ad-Aware SE Settings
===========================
Set : Unload recognized processes & modules during scan
Set : Scan registry for all users instead of current user only
Set : Always try to unload modules before deletion
Set : During removal, unload Explorer and IE if necessary
Set : Let Windows remove files in use at next reboot
Set : Delete quarantined objects after restoring
Set : Include basic Ad-Aware settings in log file
Set : Include additional Ad-Aware settings in log file
Set : Include reference summary in log file
Set : Include alternate data stream details in log file
Set : Play sound at scan completion if scan locates critical objects
7-7-2007 11:25:59 AM - Scan started. (Smart mode)
Listing running processes
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
#:1 [taskeng.exe]
FilePath : C:\Windows\system32\
ProcessID : 3980
ThreadCreationTime : 7-7-2007 12:34:02 PM
BasePriority : Normal
FileVersion : 6.0.6000.16386 (vista_rtm.061101-2205)
ProductVersion : 6.0.6000.16386
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Task Scheduler Engine
InternalName : TaskEng
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : taskeng.exe.mui
#:2 [dwm.exe]
FilePath : C:\Windows\system32\
ProcessID : 3044
ThreadCreationTime : 7-7-2007 12:34:04 PM
BasePriority : High
FileVersion : 6.0.6000.16386 (vista_rtm.061101-2205)
ProductVersion : 6.0.6000.16386
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Desktop Window Manager
InternalName : dwm.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : dwm.exe.mui
#:3 [msascui.exe]
FilePath : C:\Program Files\Windows Defender\
ProcessID : 476
ThreadCreationTime : 7-7-2007 12:34:07 PM
BasePriority : Normal
FileVersion : 1.1.1505.0
ProductVersion : 1.1.1505.0
ProductName : Windows Defender
CompanyName : Microsoft Corporation
FileDescription : Windows Defender User Interface
InternalName : MSASCUI
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : MSASCUI.exe
#:4 [rthdvcpl.exe]
FilePath : C:\Windows\
ProcessID : 1912
ThreadCreationTime : 7-7-2007 12:34:08 PM
BasePriority : Normal
FileVersion : 1, 0, 0, 11
ProductVersion : 1, 0, 0, 11
ProductName : HD Audio Control Panel
CompanyName : Realtek Semiconductor
FileDescription : HD Audio Control Panel
InternalName : RtHDVCpl.exe
LegalCopyright : 2006 © Realtek Semiconductor. All rights reserved.
OriginalFilename : RtHDVCpl.exe
#:5 [syntpenh.exe]
FilePath : C:\Program Files\Synaptics\SynTP\
ProcessID : 3512
ThreadCreationTime : 7-7-2007 12:34:09 PM
BasePriority : Normal
FileVersion : 9.0.3 20Oct06
ProductVersion : 9.0.3 20Oct06
ProductName : Synaptics Pointing Device Driver
CompanyName : Synaptics, Inc.
FileDescription : Synaptics TouchPad Enhancements
InternalName : Synaptics Enhancements Application
LegalCopyright : Copyright © Synaptics, Inc. 1996-2006
OriginalFilename : SynTPEnh.exe
#:6 [igfxtray.exe]
FilePath : C:\Windows\System32\
ProcessID : 3588
ThreadCreationTime : 7-7-2007 12:34:09 PM
BasePriority : Normal
FileVersion : 7.14.10.1114
ProductVersion : 7.14.10.1114
ProductName : Intel® Common User Interface
CompanyName : Intel Corporation
FileDescription : igfxTray Module
InternalName : IGFXTRAY
LegalCopyright : Copyright 1999-2006, Intel Corporation
OriginalFilename : IGFXTRAY.EXE
#:7 [hkcmd.exe]
FilePath : C:\Windows\System32\
ProcessID : 3820
ThreadCreationTime : 7-7-2007 12:34:09 PM
BasePriority : Normal
FileVersion : 6.14.10.1114
ProductVersion : 6.14.10.1114
ProductName : Intel® Common User Interface
CompanyName : Intel Corporation
FileDescription : hkcmd Module
InternalName : HKCMD
LegalCopyright : Copyright 1999-2006, Intel Corporation
OriginalFilename : HKCMD.EXE
#:8 [igfxpers.exe]
FilePath : C:\Windows\System32\
ProcessID : 3940
ThreadCreationTime : 7-7-2007 12:34:09 PM
BasePriority : Normal
FileVersion : 7.14.10.1114
ProductVersion : 7.14.10.1114
ProductName : Intel® Common User Interface
CompanyName : Intel Corporation
FileDescription : persistence Module
InternalName : PERSISTENCE
LegalCopyright : Copyright 1999-2006, Intel Corporation
OriginalFilename : IGFXPERS.EXE
#:9 [rundll32.exe]
FilePath : C:\Windows\System32\
ProcessID : 3832
ThreadCreationTime : 7-7-2007 12:34:10 PM
BasePriority : Normal
FileVersion : 6.0.6000.16386 (vista_rtm.061101-2205)
ProductVersion : 6.0.6000.16386
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Windows host process (Rundll32)
InternalName : rundll
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : RUNDLL32.EXE.MUI
#:10 [lmanager.exe]
FilePath : C:\Program Files\Launch Manager\
ProcessID : 3460
ThreadCreationTime : 7-7-2007 12:34:14 PM
BasePriority : Normal
FileVersion : 1, 0, 0, 1118
ProductVersion : 1, 0, 0, 1118
ProductName : Acer Launch Manager
CompanyName : Dritek System Inc.
FileDescription : Acer Launch Manager Keyboard Application
InternalName : Launch Manager
LegalCopyright : Copyright © 2001-2005 Dritek System Inc.
OriginalFilename : LManager.exe
#:11 [communications_helper.exe]
FilePath : C:\Program Files\Common Files\Logitech\LComMgr\
ProcessID : 1344
ThreadCreationTime : 7-7-2007 12:34:14 PM
BasePriority : Normal
FileVersion : 1.4.0.1063
ProductVersion : 1.4.0.1063
ProductName : Acer
CompanyName : Acer Inc.
FileDescription : Communications Manager
InternalName : Communications_Helper.exe
LegalCopyright : © 1996-2007 Acer. All rights reserved.
OriginalFilename : Communications_Helper.exe
#:12 [lvcomsx.exe]
FilePath : C:\Program Files\Common Files\Logitech\LComMgr\
ProcessID : 3760
ThreadCreationTime : 7-7-2007 12:34:15 PM
BasePriority : Normal
FileVersion : 10.4.0.1315
ProductVersion : 10.4.0.1315
ProductName : Logitech
CompanyName : Logitech Inc.
FileDescription : LVCom Server
InternalName : LVComS.exe
LegalCopyright : © 1996-2007 Logitech. All rights reserved.
OriginalFilename : LVComS.exe
#:13 [orbicam.exe]
FilePath : C:\Program Files\Acer\OrbiCam10\
ProcessID : 536
ThreadCreationTime : 7-7-2007 12:34:15 PM
BasePriority : Normal
#:14 [jusched.exe]
FilePath : C:\Program Files\Java\jre1.6.0_01\bin\
ProcessID : 3352
ThreadCreationTime : 7-7-2007 12:34:15 PM
BasePriority : Normal
#:15 [sdtrayapp.exe]
FilePath : C:\Program Files\Spyware Doctor\
ProcessID : 3964
ThreadCreationTime : 7-7-2007 12:34:16 PM
BasePriority : Normal
FileVersion : 5.0.1.42
ProductVersion : 5.0
CompanyName : PC Tools
FileDescription : Spyware Doctor Tray
LegalCopyright : Copyright © 2007 PC Tools. All rights reserved.
#:16 [isuspm.exe]
FilePath : C:\Program Files\Common Files\InstallShield\UpdateService\
ProcessID : 3768
ThreadCreationTime : 7-7-2007 12:34:17 PM
BasePriority : Normal
FileVersion : 6, 0, 100, 54472
ProductVersion : 6, 0
ProductName : Software Manager
CompanyName : Macrovision Corporation
FileDescription : Macrovision Software Manager
InternalName : ProgramManager
LegalCopyright : Copyright © 2005 Macrovision Corporation
OriginalFilename : ISUSPM.exe
#:17 [ehtray.exe]
FilePath : C:\Windows\ehome\
ProcessID : 2812
ThreadCreationTime : 7-7-2007 12:34:17 PM
BasePriority : Normal
FileVersion : 6.0.6000.16386 (vista_rtm.061101-2205)
ProductVersion : 6.0.6000.16386
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Media Center Tray Applet
InternalName : ehtray.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : ehtray.exe
#:18 [sidebar.exe]
FilePath : C:\Program Files\Windows Sidebar\
ProcessID : 1124
ThreadCreationTime : 7-7-2007 12:34:17 PM
BasePriority : Normal
FileVersion : 6.0.6000.16386 (vista_rtm.061101-2205)
ProductVersion : 1.0.6000.16386
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Windows Sidebar
InternalName : Windows Sidebar
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : sidebar.EXE.MUI
#:19 [msnmsgr.exe]
FilePath : C:\Program Files\MSN Messenger\
ProcessID : 3896
ThreadCreationTime : 7-7-2007 12:34:18 PM
BasePriority : Normal
FileVersion : 8.1.0178.00
ProductVersion : 8.1.0178
ProductName : Messenger
CompanyName : Microsoft Corporation
FileDescription : Messenger
InternalName : msnmsgr.exe
LegalCopyright : Copyright © Microsoft Corporation. All rights reserved.
OriginalFilename : msnmsgr.exe
#:20 [enmtray.exe]
FilePath : C:\Acer\Empowering Technology\ENET\
ProcessID : 4120
ThreadCreationTime : 7-7-2007 12:34:22 PM
BasePriority : Normal
FileVersion : 2, 6, 3, 1
ProductVersion : 2, 6, 3, 1
ProductName : Acer eNet Management
CompanyName : Acer Inc.
FileDescription : eNMTray
InternalName : eNMTray
LegalCopyright : Copyright © Acer Incorporated 2004 - 2006
OriginalFilename : eNMTray.exe
#:21 [epower_dmc.exe]
FilePath : C:\Acer\Empowering Technology\EPOWER\
ProcessID : 4228
ThreadCreationTime : 7-7-2007 12:34:26 PM
BasePriority : Normal
FileVersion : 2, 5, 3005, 0
ProductVersion : 2, 5, 3005, 0
ProductName : Acer ePower Management
CompanyName : Acer Inc.
FileDescription : Acer ePower Management DMC
InternalName : ePower_DMC
LegalCopyright : Copyright © 2004 Acer Incorporated
OriginalFilename : ePower_DMC.exe
#:22 [acer.empowering.framework.supervisor.exe]
FilePath : C:\Acer\Empowering Technology\
ProcessID : 4260
ThreadCreationTime : 7-7-2007 12:34:28 PM
BasePriority : Normal
#:23 [ehmsas.exe]
FilePath : C:\Windows\ehome\
ProcessID : 4292
ThreadCreationTime : 7-7-2007 12:34:31 PM
BasePriority : Normal
FileVersion : 6.0.6000.16386 (vista_rtm.061101-2205)
ProductVersion : 6.0.6000.16386
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Media Center Media Status Aggregator Service
InternalName : eHMSAS.exe
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : ehMSAS.exe.mui
#:24 [eragent.exe]
FilePath : C:\Acer\Empowering Technology\eRecovery\
ProcessID : 4312
ThreadCreationTime : 7-7-2007 12:34:31 PM
BasePriority : Normal
FileVersion : 2.5.4.0
ProductVersion : 2.5.4.0
ProductName : Acer eRecovery Management
CompanyName : Acer Inc.
FileDescription : eRecovery agent
InternalName : eRAgent.exe
LegalCopyright : Acer Inc 2006. All rights reserved.
OriginalFilename : eRAgent.exe
#:25 [igfxext.exe]
FilePath : C:\Windows\system32\
ProcessID : 5156
ThreadCreationTime : 7-7-2007 12:35:31 PM
BasePriority : Normal
FileVersion : 7.14.10.1114
ProductVersion : 7.14.10.1114
ProductName : Intel® Common User Interface
CompanyName : Intel Corporation
FileDescription : igfxext Module
InternalName : IGFXEXT
LegalCopyright : Copyright 1999-2006, Intel Corporation
OriginalFilename : IGFXEXT.EXE
#:26 [rtkbtmnt.exe]
FilePath : C:\Users\Carol\AppData\Local\Temp\
ProcessID : 5176
ThreadCreationTime : 7-7-2007 12:35:31 PM
BasePriority : Normal
FileVersion : 1.0.0.8
ProductVersion : 1.0.0.8
ProductName : Realtek HD Audio Data Rerouter
CompanyName : Realtek Semiconductor Corp.
FileDescription : Realtek HD Audio Data Rerouter
InternalName : RtkBtMnt
LegalCopyright : 2006 © Realtek Semiconductor. All rights reserved.
OriginalFilename : RtkBtMnt.exe
#:27 [igfxsrvc.exe]
FilePath : C:\Windows\system32\
ProcessID : 5212
ThreadCreationTime : 7-7-2007 12:35:32 PM
BasePriority : Normal
FileVersion : 7.14.10.1114
ProductVersion : 7.14.10.1114
ProductName : Intel® Common User Interface
CompanyName : Intel Corporation
FileDescription : igfxsrvc Module
InternalName : IGFXSRVC
LegalCopyright : Copyright 1999-2006, Intel Corporation
OriginalFilename : IGFXSRVC.EXE
#:28 [msn.exe]
FilePath : C:\Program Files\MSN\MSNCoreFiles\
ProcessID : 3772
ThreadCreationTime : 7-7-2007 12:36:28 PM
BasePriority : Normal
FileVersion : 9.50.0034.2000
ProductVersion : 9.50.0034.2000
ProductName : Microsoft® MSN ® Communications System
CompanyName : Microsoft Corporation
FileDescription : msn
InternalName : msn
LegalCopyright : Copyright © Microsoft Corp. 1981-2007
OriginalFilename : msn.exe
#:29 [explorer.exe]
FilePath : C:\Windows\
ProcessID : 5920
ThreadCreationTime : 7-7-2007 3:24:35 PM
BasePriority : Normal
FileVersion : 6.0.6000.16386 (vista_rtm.061101-2205)
ProductVersion : 6.0.6000.16386
ProductName : Microsoft® Windows® Operating System
CompanyName : Microsoft Corporation
FileDescription : Windows Explorer
InternalName : explorer
LegalCopyright : © Microsoft Corporation. All rights reserved.
OriginalFilename : EXPLORER.EXE.MUI
#:30 [ad-aware.exe]
FilePath : C:\Program Files\Lavasoft\Ad-Aware SE Personal\
ProcessID : 988
ThreadCreationTime : 7-7-2007 3:25:33 PM
BasePriority : Normal
FileVersion : 6.2.0.236
ProductVersion : SE 106
ProductName : Lavasoft Ad-Aware SE
CompanyName : Lavasoft Sweden
FileDescription : Ad-Aware SE Core application
InternalName : Ad-Aware.exe
LegalCopyright : Copyright © Lavasoft AB Sweden
OriginalFilename : Ad-Aware.exe
Comments : All Rights Reserved
Memory scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0
Started registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Registry Scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0
Started deep registry scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Deep registry scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0
Started Tracking Cookie scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Tracking cookie scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0
Deep scanning and examining files...
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Disk Scan Result for C:\Windows
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 0
Win32.P2P-Worm.Alcan.a Object Recognized!
Type : File
Data : bszip.dll
TAC Rating : 8
Category : Worm
Comment :
Object : C:\Windows\system32\
FileVersion : 3.0.2.0
ProductVersion : 3.02
ProductName : BigSpeed Zip DLL
CompanyName : BigSpeedSoft
InternalName : bszip.dll
LegalCopyright : © BigSpeedSoft
LegalTrademarks : BigSpeed is a trademark of BigSpeedSoft
OriginalFilename : bszip.dll
Disk Scan Result for C:\Windows\system32
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 1
Disk Scan Result for C:\Users\Carol\AppData\Local\Temp\
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 0
Objects found so far: 1
Performing conditional scans...
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Win32.P2P-Worm.Alcan.a Object Recognized!
Type : Regkey
Data :
TAC Rating : 8
Category : Worm
Comment :
Rootkey : HKEY_LOCAL_MACHINE
Object : software\microsoft\downloadmanager
Conditional scan result:
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
New critical objects: 1
Objects found so far: 2
11:27:41 AM Scan Complete
Summary Of This Scan
»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»»
Total scanning time:00:01:41.310
Objects scanned:101859
Objects identified:2
Objects ignored:0
New critical objects:2