Hi, thanks for the quick reply
)
Logs as requested:
Ewido:---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 02:10:06, 04/09/2005
+ Report-Checksum: 4EAB5EF2
+ Scan result:
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Loct_0 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Loct_0\Level_0 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Loct_0\Level_0\Seqn_1068 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Loct_0\Level_0\Seqn_1074 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Loct_1 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Loct_1\Level_0 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Loct_1\Level_0\Seqn_4492 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Loct_1\Level_0\Seqn_4496 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Loct_1\Level_0\Seqn_4543 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Loct_2 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Loct_2\Level_0 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Loct_2\Level_0\Seqn_1068 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Loct_3 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Loct_3\Level_0 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Loct_3\Level_0\Seqn_1068 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Loct_4 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Loct_4\Level_0 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Loct_4\Level_0\Seqn_1116 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Loct_4\Level_0\Seqn_1524 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Loct_4\Level_0\Seqn_1553 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Loct_4\Level_0\Seqn_1641 -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Services -> Spyware.Cydoor : Cleaned with backup
HKU\S-1-5-21-1100933587-446484383-221606908-1006\Software\Kazaa\Promotions\Cydoor\Adwr_329\Services\Queue -> Spyware.Cydoor : Cleaned with backup
:mozilla.11:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.12:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.13:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.16:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.17:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.18:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.19:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.20:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.21:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.22:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.23:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.24:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.28:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.247realmedia : Cleaned with backup
:mozilla.29:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Euroclick : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Euroclick : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Euroclick : Cleaned with backup
:mozilla.56:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Euroclick : Cleaned with backup
:mozilla.62:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Adorigin : Cleaned with backup
:mozilla.63:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Adorigin : Cleaned with backup
:mozilla.64:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Adorigin : Cleaned with backup
:mozilla.65:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Adorigin : Cleaned with backup
:mozilla.66:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Adorigin : Cleaned with backup
:mozilla.69:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.70:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.80:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.81:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.82:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.83:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.86:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.87:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.88:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.89:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.123:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.124:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.125:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.126:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.136:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.137:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.142:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.143:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.144:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.145:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.146:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
:mozilla.147:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
:mozilla.155:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.156:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.157:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.158:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.216:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Sitestat : Cleaned with backup
:mozilla.217:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Sitestat : Cleaned with backup
:mozilla.253:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Paycounter : Cleaned with backup
:mozilla.257:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.258:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.259:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.260:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.261:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.262:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.263:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.264:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.265:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.266:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.270:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.276:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.277:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.278:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.279:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.280:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.281:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.324:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
:mozilla.325:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.326:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.327:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.328:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.329:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.330:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.331:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.332:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.333:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.334:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.335:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.336:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.343:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.356:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.357:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.358:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.359:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.360:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.361:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.367:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.368:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.385:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Sitestat : Cleaned with backup
:mozilla.391:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Adjuggler : Cleaned with backup
:mozilla.396:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.397:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.427:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
:mozilla.428:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
:mozilla.429:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
:mozilla.437:C:\Documents and Settings\Tracey Newton\Application Data\Mozilla\Firefox\Profiles\nxe2wa7t.default\cookies.txt -> Spyware.Cookie.Myaffiliateprogram : Cleaned with backup
C:\Documents and Settings\Tracey Newton\Cookies\tracey newton@abetterinternet[1].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
C:\Documents and Settings\Tracey Newton\Cookies\tracey
[email protected][1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Tracey Newton\Cookies\tracey
[email protected][1].txt -> Spyware.Cookie.Clickhype : Cleaned with backup
C:\Documents and Settings\Tracey Newton\Cookies\tracey
[email protected][1].txt -> Spyware.Cookie.Euroclick : Cleaned with backup
C:\WINDOWS\Nail.exe.tcf -> Adware.BetterInternet : Cleaned with backup
C:\WINDOWS\Nail.exe7898.tcf -> Adware.BetterInternet : Cleaned with backup
::Report End
HJT:Logfile of HijackThis v1.99.1
Scan saved at 02:12:08, on 04/09/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\SpywareGuard\sgmain.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\Program Files\AOL\Broadband CheckUp\bin\mpbtn.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\AOL 9.0\waol.exe
C:\Program Files\AOL 9.0\shellmon.exe
C:\Program Files\Common Files\AOL\aoltpspd.exe
C:\Program Files\Messenger\msmsgs.exe
C:\HiJackThis\HijackThis.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.dell.co.uk/mywayR1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://www.btopenworld.com/searchpaneR0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.livejourn...ml?user=tazicalR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://bt.yahoo.comR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =
http://uk.red.client...fo/bt_side.htmlR1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =
http://uk.red.client...arch.yahoo.com/R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://uk.red.client...www.yahoo.co.ukR1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) =
http://uk.red.client...arch.yahoo.com/R1 - HKLM\Software\Microsoft\Internet Explorer\Main,First Home Page = C:\Program Files\AOL Toolbar\welcome.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [AOL Spyware Protection] C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
O4 - HKLM\..\Run: [THGuard] "C:\Program Files\TrojanHunter 4.2\THGuard.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Startup: SpywareGuard.lnk = C:\Program Files\SpywareGuard\sgmain.exe
O4 - Global Startup: AOL Broadband Check-Up.lnk = C:\Program Files\AOL\Broadband CheckUp\bin\matcli.exe
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\system32\msjava.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=http://bt.yahoo.com
O16 - DPF: {01010E00-5E80-11D8-9E86-0007E96C65AE} (SupportSoft SmartIssue) -
http://www.symantec....trl/tgctlsi.cabO16 - DPF: {01012101-5E80-11D8-9E86-0007E96C65AE} (SupportSoft Script Runner Class) -
http://www.symantec....trl/tgctlsr.cabO16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) -
http://www.symantec....rl/LSSupCtl.cabO16 - DPF: {26CBF141-7D0F-46E1-AA06-718958B6E4D2} -
http://download.ebay.../UK/install.cabO16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) -
http://aolcc.aolsvc....kup/qdiagcc.cabO16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) -
http://download.av.a...84/mcinsctl.cabO16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) -
http://security.syma...n/bin/cabsa.cabO16 - DPF: {90051A81-3018-4826-8B38-DD60B6B53F9C} (Snapfish File Upload ActiveX Control) -
http://www.truprint....printUpload.cabO16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) -
http://download.av.a...,21/mcgdmgr.cabO16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} (ActiveDataInfo Class) -
http://www.symantec....rl/SymAData.cabO16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) -
http://download.mcaf...534/mcfscan.cabO17 - HKLM\System\CCS\Services\Tcpip\..\{6B476510-3071-444A-A2BC-73C238965B7C}: NameServer = 205.188.146.145
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
O23 - Service: AOL Spyware Protection Service (AOLService) - Unknown owner - C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\\aolserv.exe
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation Service (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe