Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

Can't get rid of pop-ups and fade-ups


  • Please log in to reply

#1
divens222

divens222

    Member

  • Member
  • PipPip
  • 16 posts
I'm getting popups or fade-ups any time I have an internet browser open (firefox mostly, but IE too). They occur anywhere from once every minute to 3-4 a minute.

I have no clue where these are coming from. Any help is appreciated.


Here's what I've run so far:
AFT Cleaner
Cleaned out the system restore
AVG Anti-Spyware full scan in safe mode
SUPERAntiSpyware full scan in normal and safe mode
panda active scan - full system scan
SpyCatcher - full system scan
Adaware - full system scan
Spybot - full system scan

Thanks for the help!
Matt

---------------
HIJACK THIS LOG
---------------
Logfile of HijackThis v1.99.1
Scan saved at 5:54:54 PM, on 4/6/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\system32\basfipm.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\Program Files\Executive Software\Diskeeper\DkService.exe
C:\Program Files\McAfee\Common Framework\FrameworkService.exe
C:\Program Files\Network Associates\VirusScan\Mcshield.exe
C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\UPHClean\uphclean.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Apoint\Apoint.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Apoint\Apntex.exe
C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\CE\nmSvc.exe
C:\Program Files\McAfee\Common Framework\UdaterUI.exe
C:\Program Files\McAfee\Common Framework\McTray.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Research In Motion\RIMDeviceManager\RIMDeviceManager.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\KeePass Password Safe\KeePass.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\X1\X1FileMonitor.exe
C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Common Files\Research In Motion\USB Drivers\BbDevMgr.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\X1\X1Systray.exe
C:\Program Files\X1\X1.exe
C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE
C:\Program Files\X1\X1Service.exe
C:\Program Files\Nortel Networks\Extranet_serv.exe
C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE
C:\Program Files\X1\textExtractor.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\FranklinCovey\PlanPlus for Microsoft Outlook\PowerNotes.exe
C:\Program Files\Common Files\InstallShield\UpdateService\agent.exe
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://smbusiness.dellnet.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://news.google.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://smbusiness.dellnet.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://smbusiness.dellnet.com/
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: SpywareBlock Class - {0A87E45F-537A-40B4-B812-E2544C21A09F} - C:\Program Files\SpyCatcher 2006\SCActiveBlock.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll (file missing)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll (file missing)
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [bascstray] BascsTray.exe
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe"
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [NMSVC] C:\Program Files\CE\nmSvc.exe
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] "C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE"
O4 - HKLM\..\Run: [DiskeeperSystray] "C:\Program Files\Executive Software\Diskeeper\DkIcon.exe"
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\McAfee\Common Framework\UdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [SpyCatcher Reminder] "C:\Program Files\SpyCatcher 2006\SpyCatcher.exe" reminder
O4 - HKLM\..\Run: [Vonage] C:\Program Files\Vonage\Vonage Click-2-Call\click2call.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [CloneCDTray] "C:\Program Files\SlySoft\CloneCD\CloneCDTray.exe" /s
O4 - HKLM\..\Run: [CARPService] carpserv.exe
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [RIMDeviceManager] "C:\Program Files\Common Files\Research In Motion\RIMDeviceManager\RIMDeviceManager.exe" -RunServer
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [KeePass Password Safe] C:\Program Files\KeePass Password Safe\KeePass.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [X1FileMonitor.exe] C:\Program Files\X1\X1FileMonitor.exe
O4 - HKCU\..\Run: [CTSyncU.exe] "C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - Startup: Scheduler.lnk = C:\Program Files\SpyCatcher 2006\Scheduler daemon.exe
O4 - Startup: X1 System Tray.lnk = C:\Program Files\X1\X1Systray.exe
O4 - Startup: X1.lnk = C:\Program Files\X1\X1.exe
O4 - Global Startup: Logitech SetPoint.lnk = ?
O4 - Global Startup: SpyCatcher Protector.lnk = C:\Program Files\SpyCatcher 2006\Protector.exe
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to EverNote - res://C:\Program Files\EverNote\EverNote\enbar.dll/2000
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nmnsp.dll
O10 - Broken Internet access because of LSP provider 'cespy.dll' missing
O15 - Trusted Zone: *.quantum.com
O15 - Trusted Zone: http://*.quantum.com
O15 - Trusted Zone: *.quantum.com (HKLM)
O15 - Trusted Zone: http://*.quantum.com (HKLM)
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative....026/CTSUEng.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://downloads.ewi...oOnlineScan.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.micros...b?1124308775436
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoft...free/asinst.cab
O16 - DPF: {B1826A9F-4AA0-4510-BA77-9013E74E4B9B} - http://www.trendmicr...scan/as4web.cab
O16 - DPF: {D6376DD2-C2BD-49B2-A1B1-138F869633F3} (ASPRO Installer Class) - http://acs.pandasoft...5/asproinst.cab
O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} (GpcContainer Class) - https://adic.webex.c...bex/ieatgpc.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative....15028/CTPID.cab
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = QUANTUM.COM
O17 - HKLM\Software\..\Telephony: DomainName = QUANTUM.COM
O17 - HKLM\System\CCS\Services\Tcpip\..\{C5DAA7B2-4A86-427F-A8C7-52C18A3039F7}: NameServer = 192.168.3.125,10.50.2.234
O17 - HKLM\System\CCS\Services\Tcpip\..\{D4630237-21C8-4E87-8B8C-1A4A94BC0E59}: NameServer = 192.168.3.125,192.168.3.12,192.168.3.11
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = QUANTUM.COM
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: SearchList = atlp-ca.quantum.com,quantum.com,qntm-nam.quantum.com,atlp.com
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = QUANTUM.COM
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: SearchList = atlp-ca.quantum.com,quantum.com,qntm-nam.quantum.com,atlp.com
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: SearchList = atlp-ca.quantum.com,quantum.com,qntm-nam.quantum.com,atlp.com
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - AppInit_DLLs: interceptor.dll
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Broadcom ASF IP monitoring service v3.0.1 (BAsfIpM) - Broadcom Corp. - C:\WINDOWS\system32\basfipm.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\Diskeeper\DkService.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Contivity VPN Service (ExtranetAccess) - Nortel Networks NA, Inc. - C:\Program Files\Nortel Networks\Extranet_serv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - Unknown owner - C:\Program Files\McAfee\Common Framework\FrameworkService.exe" /ServiceStart (file missing)
O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\Mcshield.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel® PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Intel® PROSet/Wireless SSO Service (WLANKEEPER) - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe

---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------

+ Created at: 4:04:32 PM 4/6/2007

+ Scan result:



:mozilla.785:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.786:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.862:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.863:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.100:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.101:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.102:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.103:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.104:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.260:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.261:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.262:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.263:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.264:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.265:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.266:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.267:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.268:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.269:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.270:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.271:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.272:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.273:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.274:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.275:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.276:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.277:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.278:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.279:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.280:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.281:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.282:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.283:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.284:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.285:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.286:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.287:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.288:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.289:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.290:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.291:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.292:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.293:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.294:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.295:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.296:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.297:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.298:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.299:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.300:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.301:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.302:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.303:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.304:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.305:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.306:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.307:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.308:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.309:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.324:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.426:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.438:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.452:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.528:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.540:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.55:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.56:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.57:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.582:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.58:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.59:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.60:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.61:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.62:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.63:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.64:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.65:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.66:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.672:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.67:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.68:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.697:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.698:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.69:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.70:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.71:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.72:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.73:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.74:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.75:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.76:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.77:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.781:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.782:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.78:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.79:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.80:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.81:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.82:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.83:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.84:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.85:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.86:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.873:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.87:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.88:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.89:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.90:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.91:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.92:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.93:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.94:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.95:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.96:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.97:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.98:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.99:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
F:\MyDoc Backup\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.185:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.186:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.187:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.190:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.191:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.221:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.222:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.223:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.224:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.480:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.481:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.482:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.483:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.484:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.572:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.573:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.574:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.575:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.576:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.816:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.817:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.892:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.893:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.237:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.238:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.239:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.247:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.248:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.30:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.31:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.32:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.39:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.40:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.216:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Adviva : Cleaned.
:mozilla.151:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.49:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.173:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.535:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned.
:mozilla.625:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned.
:mozilla.533:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.534:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.623:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.624:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.311:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.312:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.313:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.314:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.442:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.443:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.444:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.445:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.109:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.110:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.111:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.112:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.113:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.114:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.115:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.116:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.117:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.118:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.166:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.167:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.168:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.217:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Coremetrics : Cleaned.
:mozilla.361:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Coremetrics : Cleaned.
C:\Documents and Settings\mdivens\Cookies\mdivens@cpvfeed[2].txt -> TrackingCookie.Cpvfeed : Cleaned.
:mozilla.663:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Dealtime : Cleaned.
:mozilla.664:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Dealtime : Cleaned.
:mozilla.665:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Dealtime : Cleaned.
:mozilla.666:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Dealtime : Cleaned.
:mozilla.747:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Dealtime : Cleaned.
:mozilla.748:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Dealtime : Cleaned.
:mozilla.749:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Dealtime : Cleaned.
:mozilla.750:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Dealtime : Cleaned.
:mozilla.145:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.29:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.248:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.259:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.273:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.276:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.332:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.333:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.334:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.340:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.383:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.390:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.404:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.407:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.460:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.461:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.462:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.468:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.689:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.695:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.700:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.701:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.773:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.779:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.784:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.785:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.677:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.678:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.761:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.762:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.167:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.168:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.169:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.170:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.212:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.213:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.214:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.781:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.858:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.296:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.297:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.427:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.428:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.435:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.436:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.537:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.538:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.601:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Hitbo

Edited by divens222, 06 April 2007 - 05:57 PM.

  • 0

Advertisements


#2
divens222

divens222

    Member

  • Topic Starter
  • Member
  • PipPip
  • 16 posts
here are the rest of the logs

:mozilla.601:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.660:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.661:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.691:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.744:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.745:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.747:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.784:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.831:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.861:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.496:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.588:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.303:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
:mozilla.304:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
:mozilla.434:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
:mozilla.435:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
:mozilla.763:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Information : Cleaned.
:mozilla.841:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Information : Cleaned.
:mozilla.502:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.503:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.504:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.594:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.595:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.596:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.522:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.523:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.612:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.613:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.101:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Netflame : Cleaned.
:mozilla.102:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Netflame : Cleaned.
:mozilla.103:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Netflame : Cleaned.
:mozilla.104:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Netflame : Cleaned.
:mozilla.386:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Netflame : Cleaned.
:mozilla.387:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Netflame : Cleaned.
:mozilla.388:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Netflame : Cleaned.
:mozilla.389:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Netflame : Cleaned.
:mozilla.161:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.162:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.163:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.316:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.322:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.323:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.393:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Paypal : Cleaned.
:mozilla.496:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Paypal : Cleaned.
:mozilla.679:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.680:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.681:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.682:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.763:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.764:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.765:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.766:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.536:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.537:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.538:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.626:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.627:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.628:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.583:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Real : Cleaned.
:mozilla.584:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Real : Cleaned.
:mozilla.585:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Real : Cleaned.
:mozilla.586:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Real : Cleaned.
:mozilla.587:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Real : Cleaned.
:mozilla.673:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Real : Cleaned.
:mozilla.674:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Real : Cleaned.
:mozilla.675:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Real : Cleaned.
:mozilla.676:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Real : Cleaned.
:mozilla.677:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Real : Cleaned.
F:\MyDoc Backup\Cookies\mdivens@real[1].txt -> TrackingCookie.Real : Cleaned.
F:\MyDoc Backup\Cookies\mdivens@real[2].txt -> TrackingCookie.Real : Cleaned.
:mozilla.517:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.518:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.609:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.610:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.121:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.122:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.123:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.124:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.125:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.125:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.126:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.126:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.127:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.128:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.129:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.130:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.131:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.132:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.132:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.133:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.133:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.134:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.134:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.135:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.135:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.136:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.137:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.138:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.139:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.140:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.141:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.142:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.143:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.144:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.263:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.264:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.265:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.266:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.267:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.268:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.269:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.270:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.271:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.272:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.394:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.395:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.396:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.397:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.398:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.399:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.400:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.401:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.402:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.403:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.403:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.404:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.405:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.406:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.407:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.408:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.505:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.506:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.507:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.508:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.509:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.510:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.669:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Skype : Cleaned.
:mozilla.670:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Skype : Cleaned.
:mozilla.753:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Skype : Cleaned.
:mozilla.754:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Skype : Cleaned.
:mozilla.137:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.138:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.139:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.140:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.141:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.17:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.18:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.19:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.20:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.23:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.317:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.318:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.319:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.320:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.321:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.447:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.448:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.449:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.450:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.451:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.99:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Spylog : Cleaned.
:mozilla.174:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.175:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.176:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.177:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.179:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.180:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.181:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.181:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.182:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.182:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.183:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.184:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.511:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.512:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.513:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.514:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.603:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.604:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.605:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.606:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.200:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.201:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.202:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.203:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.204:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.205:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.206:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.207:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.208:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.72:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.73:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.74:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.75:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.76:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.77:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.78:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.79:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.80:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.599:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Trafic : Cleaned.
:mozilla.689:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Trafic : Cleaned.
:mozilla.315:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.446:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.48:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Webtrends : Cleaned.
F:\MyDoc Backup\Cookies\[email protected][2].txt -> TrackingCookie.Webtrends : Cleaned.
:mozilla.209:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
:mozilla.451:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
:mozilla.209:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.210:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.211:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.215:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.81:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.82:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.83:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.84:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.413:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.416:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.417:F:\MyDoc Backup\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.515:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.518:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.519:C:\Documents and Settings\mdivens\Application Data\Mozilla\Firefox\Profiles\jlfepjun.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.


::Report end


--------------------------------
SUPERAntiSpyware Scan Log
Generated 04/06/2007 at 05:18 PM

Application Version : 3.6.1000

Core Rules Database Version : 3190
Trace Rules Database Version: 1200

Scan type : Complete Scan
Total Scan Time : 01:11:34

Memory items scanned : 179
Memory threats detected : 0
Registry items scanned : 5954
Registry threats detected : 0
File items scanned : 48352
File threats detected : 0

-------------------------------------------------------

Uninstall List

Ad-Aware SE Personal
Adobe Flash Player 9 ActiveX
Adobe Reader 6.0
Agile Product Collaboration
ALPS Touch Pad Driver
AnyDVD
Apple Software Update
ATI - Software Uninstall Utility
ATI Control Panel
ATI Display Driver
AVG Anti-Spyware 7.5
BlackBerry Desktop Software 4.2
BlackBerry Desktop Software 4.2
Broadcom Advanced Control Suite
Broadcom ASF Management Applications
Broadcom Gigabit Integrated Controller
Canon CanoScan Toolbox 4.5
Cisco MeetingPlace for Outlook
Citrix ICA Web Client
Clarify ClearConfigurator 10.1.1
Clarify ClearConfigurator Rule Wizard (Remove Only)
Clarify eFrontOffice10.1 SR1 Client for Microsoft SQL
Clarify eFrontOffice10.1 SR1 eBusiness Client
CloneCD
CloneDVD2
CloneDVDmobile
Conexant D480 MDC V.92 Modem
Covenant Eyes
Creative MediaSource 5
Dell Modem-On-Hold
Dell Solution Center
Digital Line Detect
Diskeeper Professional Edition
DivX Codec
DivX Content Uploader
DivX Converter
DivX Player
DivX Web Player
Easy CD Creator 5 Basic
ExtractNow
Foxit Reader
FranklinCovey PlanPlus for Microsoft Outlook
Free Registry Defrag
Google Toolbar for Internet Explorer
GTK+ 2.10.6-1 runtime environment
HighMAT Extension to Microsoft Windows XP CD Writing Wizard
Hijackthis 1.99.1
HijackThis 1.99.1
Hotfix for Windows XP (KB926239)
Image Resizer Powertoy for Windows XP
Intel® PROSet/Wireless Software
InterVideo WinDVD
J2SE Runtime Environment 5.0 Update 10
J2SE Runtime Environment 5.0 Update 9
KeePass Password Safe 1.06
KhalSetup
Logitech SetPoint
McAfee Anti-Spyware Enterprise Module
McAfee VirusScan Enterprise
mCore
mDriver
mDrWiFi
mHlpDell
Microsoft Compression Client Pack 1.0 for Windows XP
Microsoft Office Live Meeting 2005
Microsoft Office Professional Edition 2003
Microsoft Office Visio Professional 2003
Microsoft Office XP Media Content
Microsoft Outlook Personal Folders Backup
Microsoft SQL Server 7.0
Microsoft User-Mode Driver Framework Feature Pack 1.0
Microsoft Visual C++ 2005 Redistributable
mIWA
mLogView
mMHouse
Modem Helper
Mozilla Firefox (2.0.0.3)
mPfMgr
mPfWiz
mProSafe
mSSO
MSXML 4.0 SP2 (KB927978)
mWlsSafe
mWMI
mXML
mZConfig
Nero Fast CD-Burning Plug-in
Nokia Connectivity Adapter Cable DKU-5
NOMAD MuVo
Panda ActiveScan
Panda ActiveScan Pro
PuTTY version 0.59
Quantum VPN Client
QuickSet
QuickTime
RealPlayer
Rhapsody
Rhapsody Player Engine
Rhapsody Player Engine
Security Update for Step By Step Interactive Training (KB898458)
Security Update for Step By Step Interactive Training (KB923723)
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player 6.4 (KB925398)
Security Update for Windows Media Player 9 (KB917734)
Security Update for Windows XP (KB890046)
Security Update for Windows XP (KB893066)
Security Update for Windows XP (KB893756)
Security Update for Windows XP (KB896358)
Security Update for Windows XP (KB896422)
Security Update for Windows XP (KB896423)
Security Update for Windows XP (KB896424)
Security Update for Windows XP (KB896428)
Security Update for Windows XP (KB899587)
Security Update for Windows XP (KB899588)
Security Update for Windows XP (KB899589)
Security Update for Windows XP (KB899591)
Security Update for Windows XP (KB900725)
Security Update for Windows XP (KB901017)
Security Update for Windows XP (KB901214)
Security Update for Windows XP (KB902400)
Security Update for Windows XP (KB904706)
Security Update for Windows XP (KB905414)
Security Update for Windows XP (KB905749)
Security Update for Windows XP (KB908519)
Security Update for Windows XP (KB911562)
Security Update for Windows XP (KB911567)
Security Update for Windows XP (KB911927)
Security Update for Windows XP (KB912919)
Security Update for Windows XP (KB913580)
Security Update for Windows XP (KB914388)
Security Update for Windows XP (KB914389)
Security Update for Windows XP (KB917344)
Security Update for Windows XP (KB917422)
Security Update for Windows XP (KB917953)
Security Update for Windows XP (KB918118)
Security Update for Windows XP (KB918439)
Security Update for Windows XP (KB918899)
Security Update for Windows XP (KB919007)
Security Update for Windows XP (KB920213)
Security Update for Windows XP (KB920214)
Security Update for Windows XP (KB920670)
Security Update for Windows XP (KB920683)
Security Update for Windows XP (KB920685)
Security Update for Windows XP (KB921398)
Security Update for Windows XP (KB921883)
Security Update for Windows XP (KB922616)
Security Update for Windows XP (KB922760)
Security Update for Windows XP (KB922819)
Security Update for Windows XP (KB923191)
Security Update for Windows XP (KB923414)
Security Update for Windows XP (KB923689)
Security Update for Windows XP (KB923694)
Security Update for Windows XP (KB923789)
Security Update for Windows XP (KB923980)
Security Update for Windows XP (KB924191)
Security Update for Windows XP (KB924270)
Security Update for Windows XP (KB924496)
Security Update for Windows XP (KB924667)
Security Update for Windows XP (KB925454)
Security Update for Windows XP (KB925486)
Security Update for Windows XP (KB925902)
Security Update for Windows XP (KB926255)
Security Update for Windows XP (KB926436)
Security Update for Windows XP (KB927779)
Security Update for Windows XP (KB927802)
Security Update for Windows XP (KB928090)
Security Update for Windows XP (KB928255)
Security Update for Windows XP (KB928843)
Security Update for Windows XP (KB929969)
Spybot - Search & Destroy 1.4
SpyCatcher Express 2006
SUPERAntiSpyware Free Edition
SyncBackSE
TightVNC 1.2.9
Time Zone Data Update Tool for Microsoft Office Outlook
Tweak UI
Update for Windows XP (KB894391)
Update for Windows XP (KB896727)
Update for Windows XP (KB898461)
Update for Windows XP (KB900485)
Update for Windows XP (KB908521)
Update for Windows XP (KB908531)
Update for Windows XP (KB910437)
Update for Windows XP (KB911280)
Update for Windows XP (KB916595)
Update for Windows XP (KB916846)
Update for Windows XP (KB920872)
Update for Windows XP (KB922582)
Update for Windows XP (KB929338)
Update for Windows XP (KB931836)
User Profile Hive Cleanup Service
Vantive Client v8.2.2 SP1
Vonage Click-2-Call
WebEx
Winamp (remove only)
Windows Genuine Advantage v1.3.0254.0
Windows Installer 3.1 (KB893803)
Windows Live Messenger
Windows Live Sign-in Assistant
Windows Live Toolbar
Windows Live Toolbar
Windows Media Format 11 runtime
Windows Media Format 11 runtime
Windows Media Player 11
Windows Media Player 11
Windows XP Hotfix - KB873333
Windows XP Hotfix - KB873339
Windows XP Hotfix - KB885250
Windows XP Hotfix - KB885835
Windows XP Hotfix - KB885836
Windows XP Hotfix - KB885884
Windows XP Hotfix - KB886185
Windows XP Hotfix - KB887472
Windows XP Hotfix - KB887742
Windows XP Hotfix - KB888113
Windows XP Hotfix - KB888302
Windows XP Hotfix - KB890859
Windows XP Hotfix - KB891781
Windows XP Hotfix - KB893086
Windows XP Service Pack 2
WinZip
X1
Xvid 1.1.2 final uninstall
ZENcast Organizer
  • 0

#3
coachwife6

coachwife6

    SuperStar

  • Retired Staff
  • 11,413 posts
Hi divens: I am sorry it has taken so long to get back with you. ARe you still having troubles? If so, can you post a new hijack this log. Thanks. :whistling:
  • 0

#4
divens222

divens222

    Member

  • Topic Starter
  • Member
  • PipPip
  • 16 posts
No problem about the delays. I know you guys are really busy. I've even signed up to help. :-)

Anyway, yes, the problem still abounds. Here is a current HJT log

Logfile of HijackThis v1.99.1
Scan saved at 8:43:20 AM, on 4/13/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\basfipm.exe
C:\Program Files\Executive Software\Diskeeper\DkService.exe
C:\Program Files\McAfee\Common Framework\FrameworkService.exe
C:\Program Files\Network Associates\VirusScan\Mcshield.exe
C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\UPHClean\uphclean.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Apoint\Apoint.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe
C:\Program Files\Apoint\Apntex.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\McAfee\Common Framework\UdaterUI.exe
C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\McAfee\Common Framework\McTray.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\KeePass Password Safe\KeePass.exe
C:\Program Files\X1\X1FileMonitor.exe
C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\X1\X1Systray.exe
C:\Program Files\X1\X1.exe
C:\Program Files\X1\X1Service.exe
C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\EverNote\EverNote\EverNote.exe
C:\Program Files\Rhapsody\rhaphlpr.exe
C:\WINDOWS\System32\dllhost.exe
C:\Program Files\Webroot\Spy Sweeper\SSU.EXE
C:\Program Files\CE\nmSvc.exe
C:\Program Files\Winamp\winamp.exe
C:\WINDOWS\system32\wisptis.exe
C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE
C:\Program Files\FranklinCovey\PlanPlus for Microsoft Outlook\PowerNotes.exe
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Program Files\Common Files\InstallShield\UpdateService\agent.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Nortel Networks\Extranet_serv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Program Files\X1\textExtractor.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\msiexec.exe
C:\Program Files\Hijackthis\HijackThis.exe
C:\WINDOWS\system32\MsiExec.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://smbusiness.dellnet.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://news.google.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://smbusiness.dellnet.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://smbusiness.dellnet.com/
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: SpywareBlock Class - {0A87E45F-537A-40B4-B812-E2544C21A09F} - C:\Program Files\SpyCatcher 2006\SCActiveBlock.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll (file missing)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll (file missing)
O4 - HKLM\..\Run: [Apoint] "C:\Program Files\Apoint\Apoint.exe"
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [bascstray] BascsTray.exe
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe"
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [NMSVC] "C:\Program Files\CE\nmSvc.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] "C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE"
O4 - HKLM\..\Run: [DiskeeperSystray] "C:\Program Files\Executive Software\Diskeeper\DkIcon.exe"
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\McAfee\Common Framework\UdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SpySweeper] C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe /startintray
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [KeePass Password Safe] "C:\Program Files\KeePass Password Safe\KeePass.exe"
O4 - HKCU\..\Run: [X1FileMonitor.exe] "C:\Program Files\X1\X1FileMonitor.exe"
O4 - HKCU\..\Run: [CTSyncU.exe] "C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - Startup: X1 System Tray.lnk = C:\Program Files\X1\X1Systray.exe
O4 - Startup: X1.lnk = C:\Program Files\X1\X1.exe
O4 - Global Startup: Logitech SetPoint.lnk = ?
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: Add to EverNote - res://C:\Program Files\EverNote\EverNote\enbar.dll/2000
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O10 - Unknown file in Winsock LSP: c:\windows\system32\nmnsp.dll
O10 - Broken Internet access because of LSP provider 'cespy.dll' missing
O15 - Trusted Zone: *.quantum.com
O15 - Trusted Zone: http://*.quantum.com
O15 - Trusted Zone: *.quantum.com (HKLM)
O15 - Trusted Zone: http://*.quantum.com (HKLM)
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative....026/CTSUEng.cab
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky...can_unicode.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://downloads.ewi...oOnlineScan.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitd...can8/oscan8.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.micros...b?1124308775436
O16 - DPF: {B1826A9F-4AA0-4510-BA77-9013E74E4B9B} - http://www.trendmicr...scan/as4web.cab
O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} (GpcContainer Class) - https://adic.webex.c...bex/ieatgpc.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative....15028/CTPID.cab
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = QUANTUM.COM
O17 - HKLM\Software\..\Telephony: DomainName = QUANTUM.COM
O17 - HKLM\System\CCS\Services\Tcpip\..\{C5DAA7B2-4A86-427F-A8C7-52C18A3039F7}: NameServer = 192.168.3.125,10.50.2.234
O17 - HKLM\System\CCS\Services\Tcpip\..\{D4630237-21C8-4E87-8B8C-1A4A94BC0E59}: NameServer = 192.168.3.125,192.168.3.12,192.168.3.11
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = QUANTUM.COM
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: SearchList = atlp-ca.quantum.com,quantum.com,qntm-nam.quantum.com,atlp.com
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = QUANTUM.COM
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: SearchList = atlp-ca.quantum.com,quantum.com,qntm-nam.quantum.com,atlp.com
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: Domain = QUANTUM.COM
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: SearchList = atlp-ca.quantum.com,quantum.com,qntm-nam.quantum.com,atlp.com
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: SearchList = atlp-ca.quantum.com,quantum.com,qntm-nam.quantum.com,atlp.com
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Broadcom ASF IP monitoring service v3.0.1 (BAsfIpM) - Broadcom Corp. - C:\WINDOWS\system32\basfipm.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\Diskeeper\DkService.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Contivity VPN Service (ExtranetAccess) - Nortel Networks NA, Inc. - C:\Program Files\Nortel Networks\Extranet_serv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - Unknown owner - C:\Program Files\McAfee\Common Framework\FrameworkService.exe" /ServiceStart (file missing)
O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\Mcshield.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel® PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
O23 - Service: Intel® PROSet/Wireless SSO Service (WLANKEEPER) - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
  • 0

#5
coachwife6

coachwife6

    SuperStar

  • Retired Staff
  • 11,413 posts
A malicious .DLL file is disrupting the LSP chain on your computer. We need to get rid of it.
  • Please download LSPFix from here.
  • Run the LSPFix.exe that you have just finished downloading.
  • Check the I know what I'm doing box.
  • In the Keep box you should see one or more instances of cespy.dll.
  • Select every instance of cespy.dll and move each one to the Remove box by clicking the >> button.
  • When you are done click Finish>>.
do you know you have covenant eyes? its' a keylogger. Do the LSP fix above and replace it with this DLL as well.

nmnsp.dll


You may wish to print out a copy of these instructions to follow while you complete this procedure.

Please save Hijack This in a permanent folder (i.e. C:\HJT). This ensures backups are saved and accessible.

Please go offline, close all browsers and any open Windows, making sure that only HijackThis is open. Scan and when it finishes, put an X in the boxes, only next to these following items, then click fix checked.

O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll (file missing)

I don't keep anything in my trusted zone. You are giving them free reign to do what they want. It's up to you, but I would put an X next to them.

O15 - Trusted Zone: *.quantum.com
O15 - Trusted Zone: http://*.quantum.com
O15 - Trusted Zone: *.quantum.com (HKLM)
O15 - Trusted Zone: http://*.quantum.com (HKLM)

reboot and post a new hijack this log.
  • 0

#6
divens222

divens222

    Member

  • Topic Starter
  • Member
  • PipPip
  • 16 posts
CoachWife6,
Thanks for the start! I ran LSPfix and removed the single instance of cespy.dll that was there. There was/is also a bmnet.dll in the "remove" box, but I left that one alone. I am familiar with covenant eyes. I would prefer to leave it on the system long term (long story), but I have uninstalled it for now. I ran LSPfix after the uninstall and the nmnsp.dll no longer shows up in either of the boxes. I did remove all the trusted sites, but since I work for Quantum I would hope they wouldn't do anything nasty to me. :-) I also fixed both BHO's in HJT.

Here is the most recent HJT log:

Logfile of HijackThis v1.99.1
Scan saved at 8:55:17 AM, on 4/18/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\basfipm.exe
C:\WINDOWS\system32\bmwebcfg.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\Program Files\Executive Software\Diskeeper\DkService.exe
C:\Program Files\McAfee\Common Framework\FrameworkService.exe
C:\Program Files\Network Associates\VirusScan\Mcshield.exe
C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Apoint\Apoint.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Apoint\Apntex.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\McAfee\Common Framework\UdaterUI.exe
C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\McAfee\Common Framework\McTray.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\KeePass Password Safe\KeePass.exe
C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Windows Desktop Search\WindowsSearch.exe
C:\Program Files\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE
C:\Program Files\Webroot\Spy Sweeper\SSU.EXE
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe
C:\Program Files\Lavasoft\Ad-Aware SE Personal\Ad-Aware.exe
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =

http://smbusiness.dellnet.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =

http://news.google.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =

http://smbusiness.dellnet.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =

http://smbusiness.dellnet.com/
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program

Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: SpywareBlock Class - {0A87E45F-537A-40B4-B812-E2544C21A09F} - C:\Program

Files\SpyCatcher 2006\SCActiveBlock.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} -

C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program

Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} -

C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program

files\google\googletoolbar2.dll (file missing)
O4 - HKLM\..\Run: [Apoint] "C:\Program Files\Apoint\Apoint.exe"
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control

Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [bascstray] BascsTray.exe
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network

Associates\VirusScan\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Program Files\Common

Files\Network Associates\TalkBack\TBMon.exe"
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe"

/tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] "C:\Program Files\Common

Files\Logitech\khalshared\KHALMNPR.EXE"
O4 - HKLM\..\Run: [DiskeeperSystray] "C:\Program Files\Executive

Software\Diskeeper\DkIcon.exe"
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\McAfee\Common

Framework\UdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator

5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common

Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [Cingular Communication Manager] "C:\Program

Files\Cingular\Communication Manager\CingularCCM.exe" -a
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe"

/startintray
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [KeePass Password Safe] "C:\Program Files\KeePass Password

Safe\KeePass.exe"
O4 - HKCU\..\Run: [CTSyncU.exe] "C:\Program Files\Creative\Sync Manager

Unicode\CTSyncU.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - Global Startup: Logitech SetPoint.lnk = ?
O4 - Global Startup: Windows Desktop Search.lnk = C:\Program Files\Windows Desktop

Search\WindowsSearch.exe
O8 - Extra context menu item: Add to EverNote - res://C:\Program

Files\EverNote\EverNote\enbar.dll/2000
O8 - Extra context menu item: E&xport to Microsoft Excel -

res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O10 - Broken Internet access because of LSP provider 'bmnet.dll' missing
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) -

http://www.creative....026/CTSUEng.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation

Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) -

http://downloads.ewi...oOnlineScan.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) -

http://download.bitd...can8/oscan8.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) -

http://update.micros...web_site.cab?11

24308775436
O16 - DPF: {B1826A9F-4AA0-4510-BA77-9013E74E4B9B} -

http://www.trendmicr...scan/as4web.cab
O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} (GpcContainer Class) -

https://adic.webex.c...bex/ieatgpc.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support

Package) - http://www.creative....15028/CTPID.cab
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = QUANTUM.COM
O17 - HKLM\Software\..\Telephony: DomainName = QUANTUM.COM
O17 - HKLM\System\CCS\Services\Tcpip\..\{D4630237-21C8-4E87-8B8C-1A4A94BC0E59}:

NameServer = 192.168.3.125,192.168.3.12,192.168.3.11
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = QUANTUM.COM
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: SearchList =

atlp-ca.quantum.com,quantum.com,qntm-nam.quantum.com,atlp.com
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = QUANTUM.COM
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: SearchList =

atlp-ca.quantum.com,quantum.com,qntm-nam.quantum.com,atlp.com
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: Domain = QUANTUM.COM
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: SearchList =

atlp-ca.quantum.com,quantum.com,qntm-nam.quantum.com,atlp.com
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: SearchList =

atlp-ca.quantum.com,quantum.com,qntm-nam.quantum.com,atlp.com
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} -

C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} -

C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} -

C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Broadcom ASF IP monitoring service v3.0.1 (BAsfIpM) - Broadcom Corp. -

C:\WINDOWS\system32\basfipm.exe
O23 - Service: Bytemobile Web Configurator (bmwebcfg) - Bytemobile, Inc. -

C:\WINDOWS\system32\bmwebcfg.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd -

C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program

Files\Executive Software\Diskeeper\DkService.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel Corporation -

C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Contivity VPN Service (ExtranetAccess) - Nortel Networks NA, Inc. -

C:\Program Files\Nortel Networks\Extranet_serv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation -

C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - Unknown owner - C:\Program

Files\McAfee\Common Framework\FrameworkService.exe" /ServiceStart (file missing)
O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. -

C:\Program Files\Network Associates\VirusScan\Mcshield.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates,

Inc. - C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation

- C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel® PROSet/Wireless Service (S24EventMonitor) - Intel Corporation

- C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: User Profile Hive Cleanup (UPHClean) - Unknown owner - C:\Program

Files\UPHClean\uphclean.exe (file missing)
O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot

Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
O23 - Service: Intel® PROSet/Wireless SSO Service (WLANKEEPER) - Intel® Corporation

- C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
  • 0

#7
coachwife6

coachwife6

    SuperStar

  • Retired Staff
  • 11,413 posts
How is it running?

Keyloggers can cause problems. I have worked on a friend's ocmputer and doing research on it, I just know it can cause problems by keeping pages a long time, etc. It's up to you.

LMK how it's working.
  • 0

#8
divens222

divens222

    Member

  • Topic Starter
  • Member
  • PipPip
  • 16 posts
Sweet! It "looks" like it's running smooth now. I've been browsing for about 2 hours without a pop-up/fade-up. I'm going to reboot and see if it still stays solid. I'll consider this closed and can reopen if necessary.

Thanks for all your help! I've signed up to become a geektogo staff and have started reading the piles of info. :-)

Matt
  • 0

#9
divens222

divens222

    Member

  • Topic Starter
  • Member
  • PipPip
  • 16 posts
bummer, they're back :-(

Here's my HJT log....

Logfile of HijackThis v1.99.1
Scan saved at 8:33:36 PM, on 4/18/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\basfipm.exe
C:\WINDOWS\system32\bmwebcfg.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\Program Files\Executive Software\Diskeeper\DkService.exe
C:\Program Files\McAfee\Common Framework\FrameworkService.exe
C:\Program Files\Network Associates\VirusScan\Mcshield.exe
C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Apoint\Apoint.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe
C:\Program Files\Apoint\Apntex.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\McAfee\Common Framework\UdaterUI.exe
C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\McAfee\Common Framework\McTray.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\KeePass Password Safe\KeePass.exe
C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Intel\Wireless\Bin\Dot1XCfg.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE
C:\Program Files\Webroot\Spy Sweeper\SSU.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Nortel Networks\Extranet_serv.exe
C:\Program Files\FranklinCovey\PlanPlus for Microsoft Outlook\PowerNotes.exe
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Program Files\Common Files\InstallShield\UpdateService\agent.exe
C:\WINDOWS\System32\dllhost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Creative\ZENcast Organizer\CTZenCu.exe
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://smbusiness.dellnet.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://news.google.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://smbusiness.dellnet.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://smbusiness.dellnet.com/
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: SpywareBlock Class - {0A87E45F-537A-40B4-B812-E2544C21A09F} - C:\Program Files\SpyCatcher 2006\SCActiveBlock.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll
O4 - HKLM\..\Run: [Apoint] "C:\Program Files\Apoint\Apoint.exe"
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [bascstray] BascsTray.exe
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe"
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] "C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE"
O4 - HKLM\..\Run: [DiskeeperSystray] "C:\Program Files\Executive Software\Diskeeper\DkIcon.exe"
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\McAfee\Common Framework\UdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [Cingular Communication Manager] "C:\Program Files\Cingular\Communication Manager\CingularCCM.exe" -a
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe" /startintray
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [KeePass Password Safe] "C:\Program Files\KeePass Password Safe\KeePass.exe"
O4 - HKCU\..\Run: [CTSyncU.exe] "C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - Global Startup: Logitech SetPoint.lnk = ?
O8 - Extra context menu item: Add to EverNote - res://C:\Program Files\EverNote\EverNote\enbar.dll/2000
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O10 - Broken Internet access because of LSP provider 'bmnet.dll' missing
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative....026/CTSUEng.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://downloads.ewi...oOnlineScan.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitd...can8/oscan8.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.micros...b?1124308775436
O16 - DPF: {B1826A9F-4AA0-4510-BA77-9013E74E4B9B} - http://www.trendmicr...scan/as4web.cab
O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} (GpcContainer Class) - https://adic.webex.c...bex/ieatgpc.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative....15028/CTPID.cab
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = QUANTUM.COM
O17 - HKLM\Software\..\Telephony: DomainName = QUANTUM.COM
O17 - HKLM\System\CCS\Services\Tcpip\..\{D4630237-21C8-4E87-8B8C-1A4A94BC0E59}: NameServer = 192.168.3.125,192.168.3.12,192.168.3.11
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = QUANTUM.COM
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: SearchList = atlp-ca.quantum.com,quantum.com,qntm-nam.quantum.com,atlp.com
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = QUANTUM.COM
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: SearchList = atlp-ca.quantum.com,quantum.com,qntm-nam.quantum.com,atlp.com
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: Domain = QUANTUM.COM
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: SearchList = atlp-ca.quantum.com,quantum.com,qntm-nam.quantum.com,atlp.com
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: SearchList = atlp-ca.quantum.com,quantum.com,qntm-nam.quantum.com,atlp.com
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Broadcom ASF IP monitoring service v3.0.1 (BAsfIpM) - Broadcom Corp. - C:\WINDOWS\system32\basfipm.exe
O23 - Service: Bytemobile Web Configurator (bmwebcfg) - Bytemobile, Inc. - C:\WINDOWS\system32\bmwebcfg.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\Diskeeper\DkService.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Contivity VPN Service (ExtranetAccess) - Nortel Networks NA, Inc. - C:\Program Files\Nortel Networks\Extranet_serv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - Unknown owner - C:\Program Files\McAfee\Common Framework\FrameworkService.exe" /ServiceStart (file missing)
O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\Mcshield.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel® PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: User Profile Hive Cleanup (UPHClean) - Unknown owner - C:\Program Files\UPHClean\uphclean.exe (file missing)
O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
O23 - Service: Intel® PROSet/Wireless SSO Service (WLANKEEPER) - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
  • 0

#10
coachwife6

coachwife6

    SuperStar

  • Retired Staff
  • 11,413 posts
Bummer. Can you tell me what the pop-ups are?

Looking over your uninstall list, you have a lot of freeware, which is sometimes good and sometimes bad. I also see you have a back-up system. Items that are bad may be getting backed up in there. Do you run this back-up system?

Please RIGHT-CLICK HERE and Save As (in IE it's "Save Target As", in FF it's "Save Link As") to download Silent Runners.
  • Save it to the desktop.
  • Run Silent Runner's by doubleclicking the "Silent Runners" icon on your desktop.
  • You will receive a prompt:
    • Do you want to skip supplementary searches?
      click NO
  • If you receive an error just click OK and double-click it to run it again - sometimes it won't run as it's supposed to the first time but will in subsequent runs.
  • You will see a text file appear on the desktop - it's not done, let it run (it won't appear to be doing anything!)
  • Once you receive the prompt All Done!, open the text file on the desktop, copy that entire log, and paste it here.
*NOTE* If you receive any warning message about scripts, please choose to allow the script to run.
  • 0

Advertisements


#11
divens222

divens222

    Member

  • Topic Starter
  • Member
  • PipPip
  • 16 posts
Yeah, I use syncbackse for backups every day. I've been doing it for them for about 6 months without popups so I don't "think" that is a problem. The backups are also sent to an external disk which has been disconnected for abotu a week while I get this sorted out.

Here i sthe silent runners log:

Thanks again for all the help!

"Silent Runners.vbs", revision R50, http://www.silentrunners.org/
Operating System: Windows XP SP2
Output limited to non-default values, except where indicated by "{++}"


Startup items buried in registry:
---------------------------------

HKCU\Software\Microsoft\Windows\CurrentVersion\Run\ {++}
"ctfmon.exe" = "C:\WINDOWS\system32\ctfmon.exe" [MS]
"KeePass Password Safe" = ""C:\Program Files\KeePass Password Safe\KeePass.exe"" ["Dominik Reichl"]
"CTSyncU.exe" = ""C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe"" [empty string]
"msnmsgr" = ""C:\Program Files\MSN Messenger\msnmsgr.exe" /background" [MS]

HKLM\Software\Microsoft\Windows\CurrentVersion\Run\ {++}
"Apoint" = ""C:\Program Files\Apoint\Apoint.exe"" ["Alps Electric Co., Ltd."]
"ATIPTA" = ""C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"" ["ATI Technologies, Inc."]
"bascstray" = "BascsTray.exe" [file not found]
"ShStatEXE" = ""C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE" ["Network Associates, Inc."]
"Network Associates Error Reporting Service" = ""C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe"" ["Network Associates, Inc."]
"IntelZeroConfig" = ""C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"" ["Intel Corporation"]
"IntelWireless" = ""C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless" ["Intel Corporation"]
"Logitech Hardware Abstraction Layer" = ""C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE"" ["Logitech Inc."]
"DiskeeperSystray" = ""C:\Program Files\Executive Software\Diskeeper\DkIcon.exe"" ["Executive Software International, Inc."]
"McAfeeUpdaterUI" = ""C:\Program Files\McAfee\Common Framework\UdaterUI.exe" /StartedFromRunKey" ["McAfee, Inc."]
"AdaptecDirectCD" = ""C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"" ["Roxio"]
"TkBellExe" = ""C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot" ["RealNetworks, Inc."]
"QuickTime Task" = ""C:\Program Files\QuickTime\qttask.exe" -atboottime" ["Apple Computer, Inc."]
"Kernel and Hardware Abstraction Layer" = "KHALMNPR.EXE" ["Logitech Inc."]
"(Default)" = "(empty string)" [file not found]
"Cingular Communication Manager" = ""C:\Program Files\Cingular\Communication Manager\CingularCCM.exe" -a" ["Cingular Wireless"]
"BootSkin Startup Jobs" = ""C:\Program Files\Stardock\WinCustomize\BootSkin\BootSkin.exe" /StartupJobs" [empty string]
"SpySweeper" = ""C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe" /startintray" ["Webroot Software, Inc."]

HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}\(Default) = (no title provided)
-> {HKLM...CLSID} = "AcroIEHlprObj Class"
\InProcServer32\(Default) = "C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll" ["Adobe Systems Incorporated"]
{0A87E45F-537A-40B4-B812-E2544C21A09F}\(Default) = (no title provided)
-> {HKLM...CLSID} = "SpywareBlock Class"
\InProcServer32\(Default) = "C:\Program Files\SpyCatcher 2006\SCActiveBlock.dll" [file not found]
{53707962-6F74-2D53-2644-206D7942484F}\(Default) = (no title provided)
-> {HKLM...CLSID} = (no title provided)
\InProcServer32\(Default) = "C:\PROGRA~1\SPYBOT~1\SDHelper.dll" ["Safer Networking Limited"]
{761497BB-D6F0-462C-B6EB-D4DAF1D92D43}\(Default) = (no title provided)
-> {HKLM...CLSID} = "SSVHelper Class"
\InProcServer32\(Default) = "C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll" ["Sun Microsystems, Inc."]
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D}\(Default) = (no title provided)
-> {HKLM...CLSID} = "Google Toolbar Notifier BHO"
\InProcServer32\(Default) = "C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll" ["Google Inc."]

HKLM\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved\
"{42071714-76d4-11d1-8b24-00a0c9068ff3}" = "Display Panning CPL Extension"
-> {HKLM...CLSID} = "Display Panning CPL Extension"
\InProcServer32\(Default) = "deskpan.dll" [file not found]
"{88895560-9AA2-1069-930E-00AA0030EBC8}" = "HyperTerminal Icon Ext"
-> {HKLM...CLSID} = "HyperTerminal Icon Ext"
\InProcServer32\(Default) = "C:\WINDOWS\System32\hticons.dll" ["Hilgraeve, Inc."]
"{5E44E225-A408-11CF-B581-008029601108}" = "Adaptec DirectCD Shell Extension"
-> {HKLM...CLSID} = "Adaptec DirectCD Shell Extension"
\InProcServer32\(Default) = "C:\PROGRA~1\Roxio\EASYCD~1\DirectCD\Shellex.dll" ["Roxio"]
"{E0D79304-84BE-11CE-9641-444553540000}" = "WinZip"
-> {HKLM...CLSID} = "WinZip"
\InProcServer32\(Default) = "C:\PROGRA~1\WinZip\WZSHLSTB.DLL" ["WinZip Computing, Inc."]
"{E0D79305-84BE-11CE-9641-444553540000}" = "WinZip"
-> {HKLM...CLSID} = "WinZip"
\InProcServer32\(Default) = "C:\PROGRA~1\WinZip\WZSHLSTB.DLL" ["WinZip Computing, Inc."]
"{E0D79306-84BE-11CE-9641-444553540000}" = "WinZip"
-> {HKLM...CLSID} = "WinZip"
\InProcServer32\(Default) = "C:\PROGRA~1\WinZip\WZSHLSTB.DLL" ["WinZip Computing, Inc."]
"{00020D75-0000-0000-C000-000000000046}" = "Microsoft Office Outlook Desktop Icon Handler"
-> {HKLM...CLSID} = "Microsoft Office Outlook"
\InProcServer32\(Default) = "C:\PROGRA~1\MICROS~2\OFFICE11\MLSHEXT.DLL" [MS]
"{0006F045-0000-0000-C000-000000000046}" = "Microsoft Office Outlook Custom Icon Handler"
-> {HKLM...CLSID} = "Outlook File Icon Extension"
\InProcServer32\(Default) = "C:\PROGRA~1\MICROS~2\OFFICE11\OLKFSTUB.DLL" [MS]
"{42042206-2D85-11D3-8CFF-005004838597}" = "Microsoft Office HTML Icon Handler"
-> {HKLM...CLSID} = (no title provided)
\InProcServer32\(Default) = "C:\Program Files\Microsoft Office\OFFICE11\msohev.dll" [MS]
"{506F4668-F13E-4AA1-BB04-B43203AB3CC0}" = "{506F4668-F13E-4AA1-BB04-B43203AB3CC0}"
-> {HKLM...CLSID} = "ImageExtractorShellExt Class"
\InProcServer32\(Default) = "C:\Program Files\Microsoft Office\Visio11\VISSHE.DLL" [null data]
"{D66DC78C-4F61-447F-942B-3FB6980118CF}" = "{D66DC78C-4F61-447F-942B-3FB6980118CF}"
-> {HKLM...CLSID} = "CInfoTipShellExt Class"
\InProcServer32\(Default) = "C:\Program Files\Microsoft Office\Visio11\VISSHE.DLL" [null data]
"{1530F7EE-5128-43BD-9977-84A4B0FAD7DF}" = "PhotoToys"
-> {HKLM...CLSID} = (no title provided)
\InProcServer32\(Default) = "C:\WINDOWS\system32\phototoys.dll" [MS]
"{FC9FB64A-1EB2-4CCF-AF5E-1A497A9B5C2D}" = "Messenger Sharing Folders"
-> {HKLM...CLSID} = "My Sharing Folders"
\InProcServer32\(Default) = "C:\Program Files\MSN Messenger\fsshext.8.1.0178.00.dll" [MS]
"{80933416-C33F-407E-BCC1-6246E3EE34DF}" = "ExtractNow"
-> {HKLM...CLSID} = "ExtractNow"
\InProcServer32\(Default) = "C:\Program Files\ExtractNow\extractmenu.dll" ["Nathan Moinvaziri"]
"{DC70C4A5-2044-4c59-B806-DEFB9AE0DF7C}" = "Logitech Setpoint Extension"
-> {HKLM...CLSID} = "KbLogiExt Class"
\InProcServer32\(Default) = "C:\Program Files\Logitech\SetPoint\kbcplext.dll" ["Logitech Inc."]
"{B9B9F083-2B04-452A-8691-83694AC1037B}" = "Logitech Setpoint Extension"
-> {HKLM...CLSID} = "LogiExt Class"
\InProcServer32\(Default) = "C:\Program Files\Logitech\SetPoint\mcplext.dll" ["Logitech Inc."]
"{F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4}" = "Shell Extensions for RealOne Player"
-> {HKLM...CLSID} = "RealOne Player Context Menu Class"
\InProcServer32\(Default) = "C:\Program Files\Real\RealPlayer\rpshell.dll" ["RealNetworks, Inc."]
"{7C9D5882-CB4A-4090-96C8-430BFE8B795B}" = "Webroot Spy Sweeper Context Menu Integration"
-> {HKLM...CLSID} = "Webroot Spy Sweeper Context Menu Integration"
\InProcServer32\(Default) = "C:\PROGRA~1\Webroot\SPYSWE~1\SSCtxMnu.dll" ["Webroot Software, Inc."]

HKLM\Software\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad\
"WPDShServiceObj" = "{AAA288BA-9A4C-45B0-95D7-94D524869DB5}"
-> {HKLM...CLSID} = "WPDShServiceObj Class"
\InProcServer32\(Default) = "C:\WINDOWS\system32\WPDShServiceObj.dll" [MS]

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\
<<!>> "GinaDLL" = "C:\WINDOWS\System32\NnGina.Dll" ["Nortel Networks NA, Inc."]

HKLM\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\
<<!>> AtiExtEvent\DLLName = "Ati2evxx.dll" ["ATI Technologies Inc."]
<<!>> WRNotifier\DLLName = "WRLogonNTF.dll" ["Webroot Software, Inc."]

HKCU\Software\Policies\Microsoft\Windows\System\Scripts\Logon\0\
DisplayName = "PPO Users"
0\ -> launches: "\\QUANTUM.COM\sysvol\QUANTUM.COM\scripts\PPOLoginScript.vbs" [** WMI GetObject error **]

HKCU\Software\Policies\Microsoft\Windows\System\Scripts\Logon\1\
DisplayName = "QNTMNAMLoginScript"
0\ -> launches: "\\qntm-nam.QUANTUM.COM\sysvol\qntm-nam.QUANTUM.COM\scripts\QNTMNAMLoginScript.vbs" [** WMI GetObject error **]

HKLM\Software\Policies\Microsoft\Windows\System\Scripts\Shutdown\0\
DisplayName = "Local Group Policy"
0\ -> launches: "C:\ntosboot.bat" [null data]

HKLM\Software\Classes\PROTOCOLS\Filter\
<<!>> text/xml\CLSID = "{807553E5-5146-11D5-A672-00B0D022E945}"
-> {HKLM...CLSID} = (no title provided)
\InProcServer32\(Default) = "C:\Program Files\Common Files\Microsoft Shared\OFFICE11\MSOXMLMF.DLL" [MS]

HKLM\Software\Classes\*\shellex\ContextMenuHandlers\
ExtractNow\(Default) = "{80933416-C33F-407E-BCC1-6246E3EE34DF}"
-> {HKLM...CLSID} = "ExtractNow"
\InProcServer32\(Default) = "C:\Program Files\ExtractNow\extractmenu.dll" ["Nathan Moinvaziri"]
VirusScan\(Default) = "{cda2863e-2497-4c49-9b89-06840e070a87}"
-> {HKLM...CLSID} = (no title provided)
\InProcServer32\(Default) = "C:\Program Files\Network Associates\VirusScan\shext.dll" ["Network Associates, Inc."]
WinZip\(Default) = "{E0D79304-84BE-11CE-9641-444553540000}"
-> {HKLM...CLSID} = "WinZip"
\InProcServer32\(Default) = "C:\PROGRA~1\WinZip\WZSHLSTB.DLL" ["WinZip Computing, Inc."]

HKLM\Software\Classes\Directory\shellex\ContextMenuHandlers\
VirusScan\(Default) = "{cda2863e-2497-4c49-9b89-06840e070a87}"
-> {HKLM...CLSID} = (no title provided)
\InProcServer32\(Default) = "C:\Program Files\Network Associates\VirusScan\shext.dll" ["Network Associates, Inc."]
WinZip\(Default) = "{E0D79304-84BE-11CE-9641-444553540000}"
-> {HKLM...CLSID} = "WinZip"
\InProcServer32\(Default) = "C:\PROGRA~1\WinZip\WZSHLSTB.DLL" ["WinZip Computing, Inc."]

HKLM\Software\Classes\Folder\shellex\ContextMenuHandlers\
ExtractNow\(Default) = "{80933416-C33F-407E-BCC1-6246E3EE34DF}"
-> {HKLM...CLSID} = "ExtractNow"
\InProcServer32\(Default) = "C:\Program Files\ExtractNow\extractmenu.dll" ["Nathan Moinvaziri"]
SpySweeper\(Default) = "{7C9D5882-CB4A-4090-96C8-430BFE8B795B}"
-> {HKLM...CLSID} = "Webroot Spy Sweeper Context Menu Integration"
\InProcServer32\(Default) = "C:\PROGRA~1\Webroot\SPYSWE~1\SSCtxMnu.dll" ["Webroot Software, Inc."]
VirusScan\(Default) = "{cda2863e-2497-4c49-9b89-06840e070a87}"
-> {HKLM...CLSID} = (no title provided)
\InProcServer32\(Default) = "C:\Program Files\Network Associates\VirusScan\shext.dll" ["Network Associates, Inc."]
WinZip\(Default) = "{E0D79304-84BE-11CE-9641-444553540000}"
-> {HKLM...CLSID} = "WinZip"
\InProcServer32\(Default) = "C:\PROGRA~1\WinZip\WZSHLSTB.DLL" ["WinZip Computing, Inc."]

HKLM\Software\Classes\AllFilesystemObjects\shellex\ContextMenuHandlers\
SpySweeper\(Default) = "{7C9D5882-CB4A-4090-96C8-430BFE8B795B}"
-> {HKLM...CLSID} = "Webroot Spy Sweeper Context Menu Integration"
\InProcServer32\(Default) = "C:\PROGRA~1\Webroot\SPYSWE~1\SSCtxMnu.dll" ["Webroot Software, Inc."]


Default executables:
--------------------

HKCU\Software\Classes\.bat\(Default) = (value not set)

HKCU\Software\Classes\.cmd\(Default) = (value not set)

HKCU\Software\Classes\.com\(Default) = (value not set)

HKCU\Software\Classes\.exe\(Default) = (value not set)

HKCU\Software\Classes\.hta\(Default) = (value not set)


Group Policies {GPedit.msc branch and setting}:
-----------------------------------------------

Note: detected settings may not have any effect.

HKCU\Software\Microsoft\Windows\CurrentVersion\Policies\System\

"DisableRegistryTools" = (REG_DWORD) hex:0x00000000
{User Configuration|Administrative Templates|System|
Prevent access to registry editing tools}

HKLM\Software\Microsoft\Windows\CurrentVersion\Policies\System\

"shutdownwithoutlogon" = (REG_DWORD) hex:0x00000001
{Computer Configuration|Windows Settings|Security Settings|Local Policies|Security Options|
Shutdown: Allow system to be shut down without having to log on}

"undockwithoutlogon" = (REG_DWORD) hex:0x00000001
{Computer Configuration|Windows Settings|Security Settings|Local Policies|Security Options|
Devices: Allow undock without having to log on}

"MaxGPOScriptWait" = (REG_DWORD) hex:0x00000A8C
{unrecognized setting}


Active Desktop and Wallpaper:
-----------------------------

Active Desktop may be disabled at this entry:
HKCU\Software\Microsoft\Windows\CurrentVersion\Explorer\ShellState

Displayed if Active Desktop enabled and wallpaper not set by Group Policy:
HKCU\Software\Microsoft\Internet Explorer\Desktop\General\
"Wallpaper" = "C:\WINDOWS\system32\config\systemprofile\Local Settings\Application Data\Microsoft\Wallpaper1.bmp"

Displayed if Active Desktop disabled and wallpaper not set by Group Policy:
HKCU\Control Panel\Desktop\
"Wallpaper" = "C:\Documents and Settings\mdivens\Local Settings\Application Data\Microsoft\Wallpaper1.bmp"


Enabled Screen Saver:
---------------------

HKCU\Control Panel\Desktop\
"SCRNSAVE.EXE" = "C:\WINDOWS\System32\SLIDES~1.SCR" (SlideShow.scr) ["None"]


Startup items in "MDivens" & "All Users" startup folders:
---------------------------------------------------------

C:\Documents and Settings\All Users\Start Menu\Programs\Startup
"Logitech SetPoint" -> shortcut to: "C:\Program Files\Logitech\SetPoint\SetPoint.exe" ["Logitech Inc."]


Enabled Scheduled Tasks:
------------------------

"SyncBackSE My Docs Full" -> launches: "C:\Program Files\2BrightSparks\SyncBackSE\SyncBackSE.exe -m "My Docs Full"" ["2BrightSparks Pte Ltd"]
"SyncBackSE My Docs Incr" -> launches: "C:\Program Files\2BrightSparks\SyncBackSE\SyncBackSE.exe -m "My Docs Incr"" ["2BrightSparks Pte Ltd"]
"wrSpySweeper_B81911351CAF48C9B2D51365E23489EC" -> launches: "C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe /ScheduleSweep=wrSpySweeper_B81911351CAF48C9B2D51365E23489EC" ["Webroot Software, Inc."]


Winsock2 Service Provider DLLs:
-------------------------------

Namespace Service Providers

HKLM\System\CurrentControlSet\Services\Winsock2\Parameters\NameSpace_Catalog5\Catalog_Entries\ {++}
000000000001\LibraryPath = "%SystemRoot%\System32\mswsock.dll" [MS]
000000000002\LibraryPath = "%SystemRoot%\System32\winrnr.dll" [MS]
000000000003\LibraryPath = "%SystemRoot%\System32\mswsock.dll" [MS]

Transport Service Providers

HKLM\System\CurrentControlSet\Services\Winsock2\Parameters\Protocol_Catalog9\Catalog_Entries\ {++}
0000000000##\PackedCatalogItem (contains) DLL [Company Name], (at) ## range:
bmnet.dll ["Bytemobile, Inc."], 01 - 03
%SystemRoot%\system32\mswsock.dll [MS], 04 - 06, 09 - 25
%SystemRoot%\system32\rsvpsp.dll [MS], 07 - 08


Toolbars, Explorer Bars, Extensions:
------------------------------------

Toolbars

HKCU\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser\
"{2318C2B1-4965-11D4-9B18-009027A5CD4F}"
-> {HKLM...CLSID} = "&Google"
\InProcServer32\(Default) = "c:\program files\google\googletoolbar1.dll" ["Google Inc."]

HKCU\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser\
"{2318C2B1-4965-11D4-9B18-009027A5CD4F}"
-> {HKLM...CLSID} = "&Google"
\InProcServer32\(Default) = "c:\program files\google\googletoolbar1.dll" ["Google Inc."]

Explorer Bars

HKLM\Software\Microsoft\Internet Explorer\Explorer Bars\

HKLM\Software\Classes\CLSID\{FF059E31-CC5A-4E2E-BF3B-96E929D65503}\(Default) = "&Research"
Implemented Categories\{00021493-0000-0000-C000-000000000046}\ [vertical bar]
InProcServer32\(Default) = "C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL" [MS]


Running Services (Display Name, Service Name, Path {Service DLL}):
------------------------------------------------------------------

Ati HotKey Poller, Ati HotKey Poller, "C:\WINDOWS\system32\Ati2evxx.exe" ["ATI Technologies Inc."]
Broadcom ASF IP monitoring service v3.0.1, BAsfIpM, "C:\WINDOWS\system32\basfipm.exe" ["Broadcom Corp."]
Bytemobile Web Configurator, bmwebcfg, ""C:\WINDOWS\system32\bmwebcfg.exe"" ["Bytemobile, Inc."]
Contivity VPN Service, ExtranetAccess, ""C:\Program Files\Nortel Networks\Extranet_serv.exe"" ["Nortel Networks NA, Inc."]
Creative Service for CDROM Access, Creative Service for CDROM Access, "C:\WINDOWS\system32\CTsvcCDA.exe" ["Creative Technology Ltd"]
Diskeeper, Diskeeper, ""C:\Program Files\Executive Software\Diskeeper\DkService.exe"" ["Executive Software International, Inc."]
Intel® PROSet/Wireless Event Log, EvtEng, "C:\Program Files\Intel\Wireless\Bin\EvtEng.exe" ["Intel Corporation"]
Intel® PROSet/Wireless Registry Service, RegSrvc, "C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe" ["Intel Corporation"]
Intel® PROSet/Wireless Service, S24EventMonitor, "C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe" ["Intel Corporation "]
Intel® PROSet/Wireless SSO Service, WLANKEEPER, "C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe" ["Intel® Corporation"]
Machine Debug Manager, MDM, ""C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe"" [MS]
McAfee Framework Service, McAfeeFramework, ""C:\Program Files\McAfee\Common Framework\FrameworkService.exe" /ServiceStart" ["McAfee, Inc."]
Messenger Sharing Folders USN Journal Reader service, usnjsvc, ""C:\Program Files\MSN Messenger\usnsvc.exe"" [MS]
Network Associates McShield, McShield, ""C:\Program Files\Network Associates\VirusScan\Mcshield.exe"" ["Network Associates, Inc."]
Network Associates Task Manager, McTaskManager, ""C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe"" ["Network Associates, Inc."]
Webroot Spy Sweeper Engine, WebrootSpySweeperService, ""C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe"" ["Webroot Software, Inc."]
Windows Driver Foundation - User-mode Driver Framework, WudfSvc, "C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup" {"C:\WINDOWS\System32\WUDFSvc.dll" [MS]}


Keyboard Driver Filters:
------------------------

HKLM\System\CurrentControlSet\Control\Class\{4D36E96B-E325-11CE-BFC1-08002BE10318}\
"UpperFilters" = <<!>> "SSKBFD" ["Webroot Software Inc (www.webroot.com)"]


Print Monitors:
---------------

HKLM\System\CurrentControlSet\Control\Print\Monitors\
HP Master Monitor\Driver = "HPBMMON.DLL" ["Hewlett-Packard"]
Microsoft Document Imaging Writer Monitor\Driver = "mdimon.dll" [MS]


----------
<<!>>: Suspicious data at a malware launch point.

+ This report excludes default entries except where indicated.
+ To see *everywhere* the script checks and *everything* it finds,
launch it from a command prompt or a shortcut with the -all parameter.
+ The search for DESKTOP.INI DLL launch points on all local fixed drives
took 110 seconds.
---------- (total run time: 197 seconds)
  • 0

#12
divens222

divens222

    Member

  • Topic Starter
  • Member
  • PipPip
  • 16 posts
just some more info. Here are some of the popup URL's

http://arn.aavalue.com/?refer=1170844
http://216.133.243.2...1700 1177014912

lots of cvpurl ones too

Matt
  • 0

#13
coachwife6

coachwife6

    SuperStar

  • Retired Staff
  • 11,413 posts
I don't see anything in your silent runner's log. Even though your back-up system may have been used for the past six months with no problems, you recently were infected and the infection may be backed up in there.

How many pop-ups are you getting each time you surf? Is it only with IE? Have you tried Firefox?

Let's try and see if this helps.

You may want to print out these instructions for reference, since you will have to restart your computer during the fix.

Please download AproposFix from here:
http://swandog46.gee.../aproposfix.exe

Save it to your desktop but do NOT run it yet.

Then please reboot your computer in Safe Mode by doing the following:
1) Restart your computer
2) After hearing your computer beep once during startup, but before the Windows icon appears, press F8.
3) Instead of Windows loading as normal, a menu should appear
4) Select the first option, to run Windows in Safe Mode.


Once in Safe Mode, please double-click aproposfix.exe and unzip it to the desktop. Open the aproposfix folder on your desktop and run RunThis.bat. Follow the prompts.

When the tool is finished, please reboot back into normal mode, and post a new HijackThis log, along with the entire contents of the log.txt file in the aproposfix folder.
  • 0

#14
divens222

divens222

    Member

  • Topic Starter
  • Member
  • PipPip
  • 16 posts
Sorry, it took a while. I was out of the country for about a week. I don't think the aproposfix did anything, but here is the log as well as a new HJT log.

Thanks,
Matt

Log of AproposFix v1.1

************

Running from directory:
C:\aproposfix\aproposfix

************



Registry entries found:


************

No service found!

Removing hidden folder:
No folder found!

Deleting files:


Backing up files:
Done!

Removing registry entries:

REGEDIT4


Done!

Finished!


_______________________________________________________________

Logfile of HijackThis v1.99.1
Scan saved at 12:54:16 PM, on 4/30/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\basfipm.exe
C:\WINDOWS\system32\bmwebcfg.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\Program Files\Executive Software\Diskeeper\DkService.exe
C:\Program Files\McAfee\Common Framework\FrameworkService.exe
C:\Program Files\Network Associates\VirusScan\Mcshield.exe
C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Apoint\Apoint.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe
C:\Program Files\Apoint\Apntex.exe
C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\McAfee\Common Framework\UdaterUI.exe
C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\McAfee\Common Framework\McTray.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\KeePass Password Safe\KeePass.exe
C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE
C:\Program Files\MSN Messenger\usnsvc.exe
C:\Program Files\Webroot\Spy Sweeper\SSU.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Java\jre1.5.0_10\bin\javaw.exe
C:\WINDOWS\system32\taskmgr.exe
C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE
C:\Program Files\FranklinCovey\PlanPlus for Microsoft Outlook\PowerNotes.exe
C:\Program Files\Common Files\InstallShield\UpdateService\agent.exe
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Program Files\Nortel Networks\Extranet_serv.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://smbusiness.dellnet.com/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://news.google.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://smbusiness.dellnet.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://smbusiness.dellnet.com/
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: SpywareBlock Class - {0A87E45F-537A-40B4-B812-E2544C21A09F} - C:\Program Files\SpyCatcher 2006\SCActiveBlock.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll
O4 - HKLM\..\Run: [Apoint] "C:\Program Files\Apoint\Apoint.exe"
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [bascstray] BascsTray.exe
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [Network Associates Error Reporting Service] "C:\Program Files\Common Files\Network Associates\TalkBack\TBMon.exe"
O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] "C:\Program Files\Common Files\Logitech\khalshared\KHALMNPR.EXE"
O4 - HKLM\..\Run: [DiskeeperSystray] "C:\Program Files\Executive Software\Diskeeper\DkIcon.exe"
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\McAfee\Common Framework\UdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [Cingular Communication Manager] "C:\Program Files\Cingular\Communication Manager\CingularCCM.exe" -a
O4 - HKLM\..\Run: [BootSkin Startup Jobs] "C:\Program Files\Stardock\WinCustomize\BootSkin\BootSkin.exe" /StartupJobs
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe" /startintray
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [KeePass Password Safe] "C:\Program Files\KeePass Password Safe\KeePass.exe"
O4 - HKCU\..\Run: [CTSyncU.exe] "C:\Program Files\Creative\Sync Manager Unicode\CTSyncU.exe"
O4 - HKCU\..\Run: [msnmsgr] "C:\Program Files\MSN Messenger\msnmsgr.exe" /background
O4 - Global Startup: Logitech SetPoint.lnk = ?
O8 - Extra context menu item: Add to EverNote - res://C:\Program Files\EverNote\EverNote\enbar.dll/2000
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O10 - Broken Internet access because of LSP provider 'bmnet.dll' missing
O16 - DPF: {0A5FD7C5-A45C-49FC-ADB5-9952547D5715} (Creative Software AutoUpdate) - http://www.creative....026/CTSUEng.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://downloads.ewi...oOnlineScan.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitd...can8/oscan8.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.micros...b?1124308775436
O16 - DPF: {B1826A9F-4AA0-4510-BA77-9013E74E4B9B} - http://www.trendmicr...scan/as4web.cab
O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} (GpcContainer Class) - https://adic.webex.c...bex/ieatgpc.cab
O16 - DPF: {F6ACF75C-C32C-447B-9BEF-46B766368D29} (Creative Software AutoUpdate Support Package) - http://www.creative....15028/CTPID.cab
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: Domain = QUANTUM.COM
O17 - HKLM\Software\..\Telephony: DomainName = QUANTUM.COM
O17 - HKLM\System\CCS\Services\Tcpip\..\{C5DAA7B2-4A86-427F-A8C7-52C18A3039F7}: NameServer = 10.50.2.234,10.240.11.33
O17 - HKLM\System\CCS\Services\Tcpip\..\{D4630237-21C8-4E87-8B8C-1A4A94BC0E59}: NameServer = 192.168.3.125,192.168.3.12,192.168.3.11
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: Domain = QUANTUM.COM
O17 - HKLM\System\CS1\Services\Tcpip\Parameters: SearchList = atlp-ca.quantum.com,quantum.com,qntm-nam.quantum.com,atlp.com
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: Domain = QUANTUM.COM
O17 - HKLM\System\CS2\Services\Tcpip\Parameters: SearchList = atlp-ca.quantum.com,quantum.com,qntm-nam.quantum.com,atlp.com
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: Domain = QUANTUM.COM
O17 - HKLM\System\CS3\Services\Tcpip\Parameters: SearchList = atlp-ca.quantum.com,quantum.com,qntm-nam.quantum.com,atlp.com
O17 - HKLM\System\CS4\Services\Tcpip\Parameters: Domain = QUANTUM.COM
O17 - HKLM\System\CS4\Services\Tcpip\Parameters: SearchList = atlp-ca.quantum.com,quantum.com,qntm-nam.quantum.com,atlp.com
O17 - HKLM\System\CS5\Services\Tcpip\Parameters: Domain = QUANTUM.COM
O17 - HKLM\System\CS5\Services\Tcpip\Parameters: SearchList = atlp-ca.quantum.com,quantum.com,qntm-nam.quantum.com,atlp.com
O17 - HKLM\System\CCS\Services\Tcpip\Parameters: SearchList = atlp-ca.quantum.com,quantum.com,qntm-nam.quantum.com,atlp.com
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Broadcom ASF IP monitoring service v3.0.1 (BAsfIpM) - Broadcom Corp. - C:\WINDOWS\system32\basfipm.exe
O23 - Service: Bytemobile Web Configurator (bmwebcfg) - Bytemobile, Inc. - C:\WINDOWS\system32\bmwebcfg.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\Diskeeper\DkService.exe
O23 - Service: Intel® PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Contivity VPN Service (ExtranetAccess) - Nortel Networks NA, Inc. - C:\Program Files\Nortel Networks\Extranet_serv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - Unknown owner - C:\Program Files\McAfee\Common Framework\FrameworkService.exe" /ServiceStart (file missing)
O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\Mcshield.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\VsTskMgr.exe
O23 - Service: Intel® PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Intel® PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: User Profile Hive Cleanup (UPHClean) - Unknown owner - C:\Program Files\UPHClean\uphclean.exe (file missing)
O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
O23 - Service: Intel® PROSet/Wireless SSO Service (WLANKEEPER) - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
  • 0

#15
coachwife6

coachwife6

    SuperStar

  • Retired Staff
  • 11,413 posts
Do you still have the pop-ups?

Is this computer on a network or is it a compnay computer in which you work on out of the house?
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP