Jump to content

Welcome to Geeks to Go - Register now for FREE

Geeks To Go is a helpful hub, where thousands of volunteer geeks quickly serve friendly answers and support. Check out the forums and get free advice from the experts. Register now to gain access to all of our features, it's FREE and only takes one minute. Once registered and logged in, you will be able to create topics, post replies to existing threads, give reputation to your fellow members, get your own private messenger, post status updates, manage your profile and so much more.

Create Account How it Works
Photo

Please help me with aurora/abi virus! [CLOSED]


  • This topic is locked This topic is locked

#1
BrosCallMeDP

BrosCallMeDP

    New Member

  • Member
  • Pip
  • 4 posts
Hi I noticed this virus yesterday and tried to get rid of it myself to no avail. I've scanned with Ad-aware, ewido, AVG, spybot, and Microsoft Antispyware. Here is my HJT log.

Logfile of HijackThis v1.99.1
Scan saved at 10:20:15 AM, on 8/29/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\ctfdzux.exe
C:\Program Files\Common Files\Stardock\SDMCP.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Java\j2re1.4.2_02\bin\jusched.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\PhilipsRemote.exe
C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
C:\WINDOWS\fdaisvq.exe
C:\PROGRA~1\MUSICM~1\MUSICM~1\MMDiag.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_director.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\ThePort\XML Player\XMLplayer.exe
C:\WINDOWS\system32\ntvdm.exe
C:\PROGRA~1\COMMON~1\AOL\110773~1\EE\AOLHOS~1.EXE
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mim.exe
C:\PROGRA~1\COMMON~1\AOL\110773~1\EE\AOLServiceHost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://qus8l.hpwis.com
O1 - Hosts: 66.159.20.51 astalavista.box.sk
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - c:\Program Files\Microsoft Money\System\mnyside.dll
O2 - BHO: PicShow Class - {4487598C-2EC7-43A2-870E-6D8D720FDD9F} - C:\WINDOWS\system32\pkshronc.dll
O2 - BHO: dlexpertclick Class - {A6927151-F5B4-11D4-AE7A-00D00925CF52} - C:\PROGRA~1\DLExpert\dll\iehelper.dll
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [PreloadApp] c:\hp\drivers\printers\photosmart\hphprld.exe c:\hp\drivers\printers\photosmart\setup.exe -d
O4 - HKLM\..\Run: [srmclean] C:\Cpqs\Scom\srmclean.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_02\bin\jusched.exe
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1107734787\EE\AOLHostManager.exe
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [MimBoot] C:\PROGRA~1\MUSICM~1\MUSICM~1\mimboot.exe
O4 - HKLM\..\Run: [PhilipsRemote] "C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\PhilipsRemote.exe"
O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
O4 - HKLM\..\Run: [fdaisvq] C:\WINDOWS\fdaisvq.EXE
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\RunOnce: [DeleteTempM3Log] cmd.exe /c del /Q C:\DOCUME~1\dantmp\LOCALS~1\Temp\m3log.txt
O4 - HKLM\..\RunOnce: [SpybotSnD] "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe" /autocheck
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [pshower] C:\WINDOWS\system32\pshwr.exe
O4 - Startup: Drempels Desktop.lnk = C:\WINDOWS\drempels.exe
O4 - Startup: Mopy Points Collector.lnk = C:\MOPYFISH\GETPOINT.EXE
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: WarpathDirect.lnk = C:\Program Files\ThePort\XML Player\XMLplayer.exe
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: &Download by DLExpert (Faster) - C:\Program Files\DLExpert\get.htm
O8 - Extra context menu item: Add to filterlist (WebWasher) - http://-Web.Washer-/ie_add
O8 - Extra context menu item: Download &All by DLExpert (Faster) - C:\Program Files\DLExpert\getall.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra button: DLExpert - {4AB89EA8-E2B8-11d4-AE71-00D00925CF52} - C:\Program Files\DLExpert\DLExpert.exe
O9 - Extra 'Tools' menuitem: &DLExpert - {4AB89EA8-E2B8-11d4-AE71-00D00925CF52} - C:\Program Files\DLExpert\DLExpert.exe
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - c:\Program Files\Microsoft Money\System\mnyside.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://qus8l.hpwis.com
O16 - DPF: {01111F00-3E00-11D2-8470-0060089874ED} (Support.com Installer) - http://supportsoft.a...ad/tgctlins.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O20 - Winlogon Notify: MCPClient - C:\Program Files\Common Files\Stardock\mcpstub.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
O23 - Service: Windows Overlay Components - Unknown owner - C:\WINDOWS\ctfdzux.exe

Thanks for your help in advance!
  • 0

Advertisements


#2
Buckeye_Sam

Buckeye_Sam

    Malware Expert

  • Member
  • PipPipPipPipPipPipPipPip
  • 10,019 posts
Hi and welcome to GeeksToGo! My name is Sam and I will be helping you. :tazz:

I apologize for the delay getting to your log, the helpers here are very busy.
If you still need help, please post a fresh Hijack log, in this thread, so I can help you with your Malware Problems.

If you have resolved this issue please let us know.
  • 0

#3
BrosCallMeDP

BrosCallMeDP

    New Member

  • Topic Starter
  • Member
  • Pip
  • 4 posts
No Problem, thanks for helping! Here is a new one.

Logfile of HijackThis v1.99.1
Scan saved at 7:25:26 PM, on 8/30/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\wanmpsvc.exe
C:\Program Files\Common Files\Stardock\SDMCP.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Java\j2re1.4.2_02\bin\jusched.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
C:\PROGRA~1\MUSICM~1\MUSICM~1\MMDiag.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\PhilipsRemote.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mim.exe
C:\PROGRA~1\COMMON~1\AOL\110773~1\EE\AOLHOS~1.EXE
C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_director.exe
C:\PROGRA~1\COMMON~1\AOL\110773~1\EE\AOLServiceHost.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\AIM\aim.exe
C:\PROGRA~1\AMERIC~1.0\waol.exe
C:\Program Files\ThePort\XML Player\XMLplayer.exe
C:\WINDOWS\system32\ntvdm.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\PROGRA~1\AMERIC~1.0\shellmon.exe
C:\Program Files\hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://qus8l.hpwis.com
O1 - Hosts: 66.159.20.51 astalavista.box.sk
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - c:\Program Files\Microsoft Money\System\mnyside.dll
O2 - BHO: PicShow Class - {4487598C-2EC7-43A2-870E-6D8D720FDD9F} - C:\WINDOWS\system32\pkshronc.dll (file missing)
O2 - BHO: dlexpertclick Class - {A6927151-F5B4-11D4-AE7A-00D00925CF52} - C:\PROGRA~1\DLExpert\dll\iehelper.dll
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [PreloadApp] c:\hp\drivers\printers\photosmart\hphprld.exe c:\hp\drivers\printers\photosmart\setup.exe -d
O4 - HKLM\..\Run: [srmclean] C:\Cpqs\Scom\srmclean.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_02\bin\jusched.exe
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1107734787\EE\AOLHostManager.exe
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [MimBoot] C:\PROGRA~1\MUSICM~1\MUSICM~1\mimboot.exe
O4 - HKLM\..\Run: [PhilipsRemote] "C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\PhilipsRemote.exe"
O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
O4 - HKLM\..\Run: [fdaisvq] C:\WINDOWS\fdaisvq.EXE
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [pshower] C:\WINDOWS\system32\pshwr.exe
O4 - HKCU\..\Run: [AOL Fast Start] "C:\PROGRA~1\AMERIC~1.0\AOL.EXE" -b
O4 - Startup: Drempels Desktop.lnk = C:\WINDOWS\drempels.exe
O4 - Startup: Mopy Points Collector.lnk = C:\MOPYFISH\GETPOINT.EXE
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: WarpathDirect.lnk = C:\Program Files\ThePort\XML Player\XMLplayer.exe
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: &Download by DLExpert (Faster) - C:\Program Files\DLExpert\get.htm
O8 - Extra context menu item: Add to filterlist (WebWasher) - http://-Web.Washer-/ie_add
O8 - Extra context menu item: Download &All by DLExpert (Faster) - C:\Program Files\DLExpert\getall.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra button: DLExpert - {4AB89EA8-E2B8-11d4-AE71-00D00925CF52} - C:\Program Files\DLExpert\DLExpert.exe
O9 - Extra 'Tools' menuitem: &DLExpert - {4AB89EA8-E2B8-11d4-AE71-00D00925CF52} - C:\Program Files\DLExpert\DLExpert.exe
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - c:\Program Files\Microsoft Money\System\mnyside.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://qus8l.hpwis.com
O16 - DPF: {01111F00-3E00-11D2-8470-0060089874ED} (Support.com Installer) - http://supportsoft.a...ad/tgctlins.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O20 - Winlogon Notify: MCPClient - C:\Program Files\Common Files\Stardock\mcpstub.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
O23 - Service: Windows Overlay Components - Unknown owner - C:\WINDOWS\ctfdzux.exe
  • 0

#4
Buckeye_Sam

Buckeye_Sam

    Malware Expert

  • Member
  • PipPipPipPipPipPipPipPip
  • 10,019 posts
Please make sure that you have the most recent updates for Ewido and AVG.

Please make sure that you can VIEW ALL HIDDEN FILES.

Run Hijackthis again, click scan, and Put a checkmark next to each of these. Then close all other windows--you should only see HijackThis on your Desktop--and click the Fix Checked button.

O1 - Hosts: 66.159.20.51 astalavista.box.sk
O2 - BHO: PicShow Class - {4487598C-2EC7-43A2-870E-6D8D720FDD9F} - C:\WINDOWS\system32\pkshronc.dll (file missing)
O4 - HKLM\..\Run: [fdaisvq] C:\WINDOWS\fdaisvq.EXE
O4 - HKCU\..\Run: [pshower] C:\WINDOWS\system32\pshwr.exe
O23 - Service: Windows Overlay Components - Unknown owner - C:\WINDOWS\ctfdzux.exe



Please reboot your computer in SafeMode by doing the following:
  • Restart your computer
  • After hearing your computer beep once during startup, but before the Windows icon appears, press F8.
  • Instead of Windows loading as normal, a menu should appear
  • Select the first option, to run Windows in Safe Mode.
* if you have trouble getting into Safe mode go here for more info.




Once in Safe mode, delete these files or directories (Do not be concerned if they do not exist):

C:\WINDOWS\fdaisvq.EXE
C:\WINDOWS\system32\pshwr.exe
C:\WINDOWS\ctfdzux.exe



Delete your temp files
  • Navigate to the C:\Windows\Temp folder.
    • Open the Temp folder
    • Select Edit -> Select All
    • Select Edit -> Delete(or press the delete button on your keyboard) to delete the entire contents of the Temp folder.
  • Navigate to the C:\Windows\Prefetch folder.
    • Open the Prefetch folder
    • Select Edit -> Select All
    • Select Edit -> Delete(or press the delete button on your keyboard) to delete the entire contents of the Temp folder.
  • Click Start -> Run and type %temp% in the Run box.
    • Select Edit -> Select All
    • Select Edit -> Delete(or press the delete button on your keyboard) to delete the entire contents of the Temp folder.
  • Click Start -> Control Panel -> Internet Options.
    • Select the General tab
    • Under "Temporary Internet Files" Click "Delete Files".
    • Put a check by "Delete Offline Content" and click OK.
    • Click on the Programs tab then click the "Reset Web Settings" button.
    • Click Apply then OK.
  • Empty the Recycle Bin.


Run a full scan with AVG. Save the log when it completes and post it in your next reply.



Run Ewido.
  • Click on scanner
  • Click on Complete System Scan and the scan will begin.
  • While the scan is in progress you will be prompted to clean files, click OK
  • When it asks if you want to clean the first file, put a check in the lower left corner of the box that says "Perform action on all infections" then choose clean and click OK.
  • Once the scan has completed, there will be a button located on the bottom of the screen named Save report
  • Click Save report.
  • Save the report .txt file to your desktop.
Now close ewido security suite.




Reboot back to normal mode and post:
  • Hijackthis log
  • Ewido log
  • Log or info from AVG scan

  • 0

#5
BrosCallMeDP

BrosCallMeDP

    New Member

  • Topic Starter
  • Member
  • Pip
  • 4 posts
followed your instructions, here are the new logs:

HJT:

Logfile of HijackThis v1.99.1
Scan saved at 1:42:47 PM, on 8/31/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\wanmpsvc.exe
C:\Program Files\Common Files\Stardock\SDMCP.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Java\j2re1.4.2_02\bin\jusched.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\PhilipsRemote.exe
C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
C:\PROGRA~1\MUSICM~1\MUSICM~1\MMDiag.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mm_director.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mim.exe
C:\PROGRA~1\COMMON~1\AOL\110773~1\EE\AOLHOS~1.EXE
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\PROGRA~1\COMMON~1\AOL\110773~1\EE\AOLServiceHost.exe
C:\PROGRA~1\AMERIC~1.0\waol.exe
C:\Program Files\ThePort\XML Player\XMLplayer.exe
C:\WINDOWS\system32\ntvdm.exe
C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
C:\PROGRA~1\AMERIC~1.0\shellmon.exe
C:\Program Files\hijackthis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://qus8l.hpwis.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://qus8l.hpwis.com
O1 - Hosts: 66.159.20.51 astalavista.box.sk
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {243B17DE-77C7-46BF-B94B-0B5F309A0E64} - c:\Program Files\Microsoft Money\System\mnyside.dll
O2 - BHO: PicShow Class - {4487598C-2EC7-43A2-870E-6D8D720FDD9F} - C:\WINDOWS\system32\pkshronc.dll (file missing)
O2 - BHO: dlexpertclick Class - {A6927151-F5B4-11D4-AE7A-00D00925CF52} - C:\PROGRA~1\DLExpert\dll\iehelper.dll
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [Cpqset] C:\Program Files\HPQ\Default Settings\cpqset.exe
O4 - HKLM\..\Run: [PreloadApp] c:\hp\drivers\printers\photosmart\hphprld.exe c:\hp\drivers\printers\photosmart\setup.exe -d
O4 - HKLM\..\Run: [srmclean] C:\Cpqs\Scom\srmclean.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_02\bin\jusched.exe
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1107734787\EE\AOLHostManager.exe
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [MimBoot] C:\PROGRA~1\MUSICM~1\MUSICM~1\mimboot.exe
O4 - HKLM\..\Run: [PhilipsRemote] "C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\PhilipsRemote.exe"
O4 - HKLM\..\Run: [AOL Spyware Protection] "C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe"
O4 - HKLM\..\Run: [fdaisvq] C:\WINDOWS\fdaisvq.EXE
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [pshower] C:\WINDOWS\system32\pshwr.exe
O4 - HKCU\..\Run: [AOL Fast Start] "C:\PROGRA~1\AMERIC~1.0\AOL.EXE" -b
O4 - Startup: Drempels Desktop.lnk = C:\WINDOWS\drempels.exe
O4 - Startup: Mopy Points Collector.lnk = C:\MOPYFISH\GETPOINT.EXE
O4 - Startup: Stardock ObjectDock.lnk = C:\Program Files\Stardock\ObjectDock\ObjectDock.exe
O4 - Global Startup: Adobe Gamma Loader.exe.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: WarpathDirect.lnk = C:\Program Files\ThePort\XML Player\XMLplayer.exe
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: &Download by DLExpert (Faster) - C:\Program Files\DLExpert\get.htm
O8 - Extra context menu item: Add to filterlist (WebWasher) - http://-Web.Washer-/ie_add
O8 - Extra context menu item: Download &All by DLExpert (Faster) - C:\Program Files\DLExpert\getall.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra button: DLExpert - {4AB89EA8-E2B8-11d4-AE71-00D00925CF52} - C:\Program Files\DLExpert\DLExpert.exe
O9 - Extra 'Tools' menuitem: &DLExpert - {4AB89EA8-E2B8-11d4-AE71-00D00925CF52} - C:\Program Files\DLExpert\DLExpert.exe
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: MoneySide - {E023F504-0C5A-4750-A1E7-A9046DEA8A21} - c:\Program Files\Microsoft Money\System\mnyside.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://qus8l.hpwis.com
O16 - DPF: {01111F00-3E00-11D2-8470-0060089874ED} (Support.com Installer) - http://supportsoft.a...ad/tgctlins.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O20 - Winlogon Notify: MCPClient - C:\Program Files\Common Files\Stardock\mcpstub.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
O23 - Service: Windows Overlay Components - Unknown owner - C:\WINDOWS\ctfdzux.exe (file missing)


ewido:

---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------

+ Created on: 1:35:50 PM, 8/31/2005
+ Report-Checksum: 57202E7

+ Scan result:

:mozilla.7:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.8:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.9:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.10:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.14:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.15:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.16:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.17:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.18:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.19:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.20:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.21:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.22:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.23:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.24:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.25:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.26:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.27:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.28:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.29:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.30:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.31:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.32:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.33:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.34:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.36:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.37:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.38:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.39:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.40:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.41:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.42:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.43:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.44:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.45:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.46:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.47:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.48:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.49:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.50:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.51:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.52:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.53:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.54:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.55:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.56:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.58:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.59:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.60:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.61:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.64:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.68:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.69:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.70:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.71:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.72:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.73:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.74:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.82:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.93:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.95:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.96:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.97:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.98:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.99:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.100:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.101:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.102:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.103:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.104:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.105:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.108:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.109:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.110:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.117:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.118:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.119:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.120:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.121:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.122:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.123:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.124:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.125:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.126:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.161:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.162:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.163:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.164:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.165:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.166:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.167:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.168:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.169:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.181:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.193:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.194:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.195:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.197:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.198:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.199:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.200:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.201:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.202:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.203:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.204:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.205:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.206:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.207:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.208:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.209:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.210:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.211:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.212:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.213:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.214:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.215:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.216:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.217:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.218:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.219:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.220:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.221:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.222:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.223:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.224:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.225:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.226:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.227:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.228:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.229:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.230:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.231:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.232:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.233:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.234:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.235:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.236:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.237:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.238:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.239:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.240:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.241:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.242:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.243:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.263:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.264:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.283:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.284:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.285:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.286:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.287:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.288:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.289:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.290:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.298:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.299:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.300:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.302:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.338:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.380:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.383:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.384:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.385:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.386:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.388:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.389:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.390:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.416:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
:mozilla.417:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
:mozilla.418:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Paycounter : Cleaned with backup
:mozilla.425:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.450:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.451:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.452:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.453:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.454:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.460:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.461:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.462:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.463:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.464:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.465:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.466:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.467:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.468:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.469:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.470:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.471:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.472:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.473:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.474:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.475:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.476:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.477:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.489:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.498:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.499:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.500:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.501:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.502:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.503:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.504:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.505:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.506:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.507:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.508:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.509:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.510:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.516:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.517:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.518:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.519:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.520:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.523:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.524:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.525:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.526:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adjuggler : Cleaned with backup
:mozilla.529:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.530:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.531:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.532:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.533:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.534:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.535:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.537:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.538:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.539:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.540:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.541:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.577:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.578:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.579:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.617:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.620:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.621:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.636:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
:mozilla.686:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.705:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
:mozilla.718:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.719:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.720:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.725:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hypertracker : Cleaned with backup
:mozilla.743:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Linksynergy : Cleaned with backup
:mozilla.744:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Linksynergy : Cleaned with backup
:mozilla.749:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Ivwbox : Cleaned with backup
:mozilla.758:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Addynamix : Cleaned with backup
:mozilla.762:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adengage : Cleaned with backup
:mozilla.763:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adengage : Cleaned with backup
:mozilla.764:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adengage : Cleaned with backup
:mozilla.772:C:�
  • 0

#6
BrosCallMeDP

BrosCallMeDP

    New Member

  • Topic Starter
  • Member
  • Pip
  • 4 posts
Spyware.Cookie.Adengage : Cleaned with backup
:mozilla.763:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adengage : Cleaned with backup
:mozilla.764:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adengage : Cleaned with backup
:mozilla.772:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.773:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.806:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adorigin : Cleaned with backup
:mozilla.807:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adorigin : Cleaned with backup
:mozilla.808:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adorigin : Cleaned with backup
:mozilla.809:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adorigin : Cleaned with backup
:mozilla.810:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adorigin : Cleaned with backup
:mozilla.811:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adorigin : Cleaned with backup
:mozilla.813:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Realtracker : Cleaned with backup
:mozilla.814:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.818:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Bfast : Cleaned with backup
:mozilla.819:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Bfast : Cleaned with backup
:mozilla.870:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Trafic : Cleaned with backup
:mozilla.875:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.876:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.879:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
:mozilla.880:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
:mozilla.891:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.892:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.893:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.894:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.895:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.902:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.903:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.909:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.247realmedia : Cleaned with backup
:mozilla.910:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.247realmedia : Cleaned with backup
:mozilla.911:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.247realmedia : Cleaned with backup
:mozilla.921:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.922:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.923:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.924:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.925:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.926:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.927:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.928:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.929:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.930:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.931:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.932:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.934:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.935:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.936:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.939:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.940:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.941:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.959:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.976:C:\Documents and Settings\dantmp\Application Data\Mozilla\Firefox\Profiles\j5czbmld.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
C:\Documents and Settings\dantmp\Cookies\dantmp@2o7[2].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Documents and Settings\dantmp\Cookies\dantmp@abetterinternet[2].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
C:\Documents and Settings\dantmp\Cookies\dantmp@centrport[1].txt -> Spyware.Cookie.Centrport : Cleaned with backup
C:\Documents and Settings\dantmp\Cookies\dantmp@perf.overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup


::Report End


avg:

Partition table (MBR) ok Quick checked
Boot sector of disk C: ok Quick checked
System registry Software\Microsoft\Windows NT\CurrentVersion\Windows\Load Scanned
System registry Software\Microsoft\Windows NT\CurrentVersion\Windows\Run Scanned
System registry Software\Microsoft\Windows\CurrentVersion\Run Scanned
System registry Software\Microsoft\Windows\CurrentVersion\RunOnce Scanned
System registry Software\Microsoft\Windows\CurrentVersion\RunOnceEx Scanned
System registry Software\Microsoft\Windows\CurrentVersion\RunServices Scanned
System registry Software\Microsoft\Windows\CurrentVersion\RunServicesOnce Scanned
System registry Software\Microsoft\Windows\CurrentVersion\Run Scanned
System registry Software\Microsoft\Windows\CurrentVersion\RunOnce Scanned
System registry Software\Microsoft\Windows\CurrentVersion\RunOnceEx Scanned
System registry Software\Microsoft\Windows\CurrentVersion\RunServices Scanned
System registry Software\Microsoft\Windows\CurrentVersion\RunServicesOnce Scanned
System registry Software\Microsoft\Windows\CurrentVersion\Winlogon\Userinit Scanned
System registry SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Shell Scanned
System registry exefile\shell\open\command Scanned
System registry scrfile\shell\open\command Scanned
System registry scrfile\shell\config\command Scanned
System registry batfile\shell\open\command Scanned
System registry cmdfile\shell\open\command Scanned
System registry comfile\shell\open\command Scanned
System registry piffile\shell\open\command Scanned
System registry giffile\shell\open\command Scanned
System registry htmlfile\shell\open\command Scanned
System registry htafile\shell\open\command Scanned
System registry jpegfile\shell\open\command Scanned
System registry txtfile\shell\open\command Scanned
System registry regfile\shell\open\command Scanned
System registry cplfile\shell\cplopen\command Scanned
System registry Word.Document.8\shell\open\command Scanned
System registry WordPad.Document.1\shell\open\command Scanned
C:\1.exe ok Quick checked
C:\Cpqs\Scom\srmclean.exe ok Quick checked
C:\PROGRA~1\AMERIC~1.0\aol.exe ok Quick checked
C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe ok Quick checked
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe ok Quick checked
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe ok Quick checked
C:\PROGRA~1\MUSICM~1\MUSICM~1\mimboot.exe ok Quick checked
C:\Program Files\AIM\aim.exe ok Quick checked
C:\Program Files\Common Files\AOL\1107734787\EE\AOLHostManager.exe ok Quick checked
C:\Program Files\Common Files\AOL\ACS\AOLDial.exe ok Quick checked
C:\Program Files\HPQ\Default Settings\Cpqset.exe ok Quick checked
C:\Program Files\Internet Explorer\iexplore.exe ok Quick checked
C:\Program Files\Java\j2re1.4.2_02\bin\jusched.exe ok Quick checked
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\PhilipsRemote.exe ok Quick checked
C:\Program Files\Messenger\msmsgs.exe ok Quick checked
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe ok Quick checked
C:\Program Files\Microsoft IntelliPoint\point32.exe ok Quick checked
C:\Program Files\Microsoft Office\Office\WINWORD.EXE ok Quick checked
C:\Program Files\QuickTime\qttask.exe ok Quick checked
C:\Program Files\TGTSoft\StyleXP\StyleXP.exe ok Quick checked
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe ok Quick checked
C:\WINDOWS\AGRSMMSG.exe ok Quick checked
C:\WINDOWS\System32\mshta.exe ok Quick checked
C:\WINDOWS\System32\shimgvw.dll ok Quick checked
C:\WINDOWS\regedit.exe ok Quick checked
C:\WINDOWS\system32\control.exe ok Quick checked
C:\WINDOWS\system32\ctfmon.exe ok Quick checked
C:\WINDOWS\system32\rundll32.exe ok Quick checked
C:\WINDOWS\system32\shell32.dll ok Quick checked
c:\hp\drivers\printers\photosmart\HPHprld.exe ok Quick checked
c:\hp\drivers\printers\photosmart\setup.exe ok Quick checked
C:\WINDOWS\system32\kernel32.dll ok Quick checked
C:\WINDOWS\system32\wsock32.dll ok Quick checked
C:\WINDOWS\system32\user32.dll Change Changed
C:\WINDOWS\system32\shell32.dll Change Changed
C:\WINDOWS\system32\ntoskrnl.exe Change Changed
  • 0

#7
Buckeye_Sam

Buckeye_Sam

    Malware Expert

  • Member
  • PipPipPipPipPipPipPipPip
  • 10,019 posts
Please download WebRoot SpySweeper from HERE (It's a 2 week trial):
  • Click the Free Trial link under to "SpySweeper" to download the program.
  • Install it.
  • Once the program is installed, it will open.
  • It will prompt you to update to the latest definitions, click Yes.
  • Once the definitions are installed, click Sweep Now on the left side.
  • Click the Start button.
  • When it's done scanning, click the Next button.
  • Make sure everything has a check next to it, then click the Next button.
  • It will remove all of the items found.
  • Click Session Log in the upper right corner, copy everything in that window.
  • Click the Summary tab and click Finish.
  • Paste the contents of the session log you copied into your next reply.

  • 0

#8
Buckeye_Sam

Buckeye_Sam

    Malware Expert

  • Member
  • PipPipPipPipPipPipPipPip
  • 10,019 posts
Due to lack of feedback, this topic has been closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP