Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

boncpar.exe / abetterinternet / aurora / etc... [RESOLVED]


  • This topic is locked This topic is locked

#1
gutterglam

gutterglam

    New Member

  • Member
  • Pip
  • 5 posts
Hi, like everyone else I'm having spyware issues.
I went through the beginner section and downloaded & ran the lot, but no luck.
I also used the forum search to see if anybody had a similar problem, and I started repeating the actions of another post, but got nervous that I might delete the wrong Hijack This file and disable my system.
(also I know the geekstogo tutorial said it was bad to have more than one antiviral program running simultaneously - I now have an ewido trial, spysweeper, kapersky, and everything else mentioned in the beginner section - is this a problem?)

I installed and ran Hijack This and got the first log. I then followed the advice of another geekstogo post and uninstalled it then redownloaded it and reinstalled it from elsewhere and saved a second log. I'll post the both if that's cool, THANKSSOMUCH!

_____

LOG #1:

Logfile of HijackThis v1.99.1
Scan saved at 1:36:46 PM, on 10/2/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\Explorer.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\WINDOWS\system32\nneodgm.exe
C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\system32\kmw_run.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\support.com\bin\tgcmd.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\WINDOWS\system32\KMW_SHOW.EXE
C:\Program Files\HP\HP Software Update\HPWuSchd.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\palmOne\Hotsync.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Sky J W\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://bfc.myway.com...de_srchlft.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell4me.com/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Comcast
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\1.bin\deSrcAs.dll (file missing)
F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Nail.exe
O2 - BHO: Band Class - {00F1D395-4744-40f0-A611-980F61AE2C59} - C:\WINDOWS\dsr.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {4D25F921-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\1.bin\deSrcAs.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [mmtask] C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [kmw_run.exe] kmw_run.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [tgcmd] "C:\Program Files\support.com\bin\tgcmd.exe" /server
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
O4 - HKLM\..\Run: [HP Software Update] "c:\Program Files\HP\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [DXDllRegExe] dxdllreg.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [KAVPersonal50] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize
O4 - HKLM\..\Run: [oizbzt] C:\WINDOWS\system32\nneodgm.exe r
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: palmOne Registration.lnk = C:\Program Files\palmOne\register.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: HotSync Manager.lnk = C:\Program Files\palmOne\Hotsync.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: QuickBooks Update Agent.lnk = C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: ComcastHSI - {669B269B-0D4E-41FB-A3D8-FD67CA94F646} - http://www.comcast.net/ (file missing)
O9 - Extra button: Support - {8828075D-D097-4055-AA02-2DBFA9D85E8A} - http://www.comcastsupport.com/ (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Help - {97809617-3937-4F84-B335-9BB05EF1A8D4} - http://online.comcast.net/help/ (file missing)
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmat...enWebRadio.html (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky...can_unicode.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://download.ewid...oOnlineScan.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.micros...b?1128283346453
O16 - DPF: {E87F6C8E-16C0-11D3-BEF7-009027438003} (Persits Software XUpload) - http://www.mypacific...oad/XUpload.ocx
O18 - Protocol: widimg - {EE7C2AFF-5742-44FF-BD0E-E521B0D3C3BA} - C:\WINDOWS\system32\btxppanel.dll
O20 - Winlogon Notify: IntelWireless - C:\Program Files\Intel\Wireless\Bin\LgNotify.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: kavsvc - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: System Startup Service (SvcProc) - Unknown owner - C:\WINDOWS\svcproc.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe

_____

LOG #2:

Logfile of HijackThis v1.99.1
Scan saved at 1:44:09 PM, on 10/2/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\Explorer.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\WINDOWS\system32\nneodgm.exe
C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\system32\kmw_run.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\support.com\bin\tgcmd.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\WINDOWS\system32\KMW_SHOW.EXE
C:\Program Files\HP\HP Software Update\HPWuSchd.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\palmOne\Hotsync.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://bfc.myway.com...de_srchlft.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell4me.com/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Comcast
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\1.bin\deSrcAs.dll (file missing)
F2 - REG:system.ini: Shell=Explorer.exe C:\WINDOWS\Nail.exe
O2 - BHO: Band Class - {00F1D395-4744-40f0-A611-980F61AE2C59} - C:\WINDOWS\dsr.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {4D25F921-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\1.bin\deSrcAs.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [mmtask] C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [kmw_run.exe] kmw_run.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [tgcmd] "C:\Program Files\support.com\bin\tgcmd.exe" /server
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
O4 - HKLM\..\Run: [HP Software Update] "c:\Program Files\HP\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [DXDllRegExe] dxdllreg.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [KAVPersonal50] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize
O4 - HKLM\..\Run: [oizbzt] C:\WINDOWS\system32\nneodgm.exe r
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: palmOne Registration.lnk = C:\Program Files\palmOne\register.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: HotSync Manager.lnk = C:\Program Files\palmOne\Hotsync.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: QuickBooks Update Agent.lnk = C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: ComcastHSI - {669B269B-0D4E-41FB-A3D8-FD67CA94F646} - http://www.comcast.net/ (file missing)
O9 - Extra button: Support - {8828075D-D097-4055-AA02-2DBFA9D85E8A} - http://www.comcastsupport.com/ (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Help - {97809617-3937-4F84-B335-9BB05EF1A8D4} - http://online.comcast.net/help/ (file missing)
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmat...enWebRadio.html (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky...can_unicode.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://download.ewid...oOnlineScan.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.micros...b?1128283346453
O16 - DPF: {E87F6C8E-16C0-11D3-BEF7-009027438003} (Persits Software XUpload) - http://www.mypacific...oad/XUpload.ocx
O18 - Protocol: widimg - {EE7C2AFF-5742-44FF-BD0E-E521B0D3C3BA} - C:\WINDOWS\system32\btxppanel.dll
O20 - Winlogon Notify: IntelWireless - C:\Program Files\Intel\Wireless\Bin\LgNotify.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: kavsvc - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: System Startup Service (SvcProc) - Unknown owner - C:\WINDOWS\svcproc.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
  • 0

Advertisements


#2
Trevuren

Trevuren

    Old Dog

  • Retired Staff
  • 18,699 posts
Hi gutterglam and welcome to the Geeks to Go Forums.

My name is Trevuren and I will be helping you with your log.

A. Go to Geeks to Go
. Click on My Controls at the top right hand corner of the window. (make sure you have signed in first)
. In the left hand column, click "View Topics"
. If you click on the title of your post, you will be taken there

B. Also, while at the My Controls page, check the box to the right of your post and then scroll down.
.Where it says "unsubscribe" click the pull-down menu and select "immediate email notification"



C. BEFORE BEGINNING, Please read completely through the instructions below and download the files from the links provided. You may want to save or print out these instructions for easier reference.

1. Download Ewido Security Suite.

2. Download Lavasoft's Ad-Aware and the VX2 Cleaner Plug-in.
  • Install Ad-Aware using the default options.
  • Then install vx2cleaner_inst.exe, using all the defaults there as well.
3. Run Ad-Aware
  • Update to the latest definitions
  • Then click on Add-ons in the lefthand column.
  • Select VX2 Cleaner V2.0 and click Run Tool. Click "OK".
  • If something is found, click "Clean" as in the directions given.
  • Click "Close", and EXIT Ad-Aware.
4. Reboot your PC and run Ad-Aware again.
  • This time, click on the Start button in Ad-Aware
  • Select "Perform smart system scan" and click Next.
  • Once the scan finishes, click "Next" again.
  • Select all objects found ("right click anywhere in the list of found objects and click "Select All Objects").
  • Click "Next" one more time, then "OK" to confirm the removal.
  • You will be prompted to set Ad-Aware to run on reboot, click "OK".
  • Exit Ad-Aware
  • REBOOT your PC
  • When Ad-Aware starts up, click on "Start", then "Next".
  • Follow the steps above if anything is found, or click "Finish", then EXIT Ad-Aware.
5. For a final cleanup, please install and run Ewido.
  • When installing, under "Additional Options" uncheck "Install background guard" and "Install scan via context menu".
  • When you run ewido for the first time, you may get a warning "Database could not be found!". Click OK. We will fix this in a moment.
  • From the main ewido screen, click on update in the left menu, then click the Start update button.
  • After the update finishes (the status bar at the bottom will display "Update successful")
  • Click on the Scanner button in the left menu, then click on Complete System Scan. This scan can take quite a while to run.
  • If ewido finds anything, it will pop up a notification. We have been finding some cases of false positives with the new version of Ewido, so we need to step through the fixes one-by-one. If Ewido finds something that you KNOW is legitimate (for example, parts of AVG Antivirus, pcAnywhere and the game "Risk" have been flagged), select "none" as the action. DO NOT check "Perform action with all infections". If you are unsure of an entry, select "none" for the time being. I'll see that in the log you will post later and let you know if ewido needs to be run again.
  • When the scan finishes, click on "Save Report". This will create a text file. Make sure you know where to find this file again.
6. Please finish up by rebooting your system once more, and posting a new HijackThis log and the log from the Ewido scan.

Regards,

Trevuren

  • 0

#3
gutterglam

gutterglam

    New Member

  • Topic Starter
  • Member
  • Pip
  • 5 posts
Alright, Thanks again for your help. I'll hit up your paypal request for sure.


_______


First here is the hijack log:

Logfile of HijackThis v1.99.1
Scan saved at 5:03:29 PM, on 10/2/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\system32\kmw_run.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\support.com\bin\tgcmd.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\HP\HP Software Update\HPWuSchd.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\WINDOWS\system32\KMW_SHOW.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\palmOne\Hotsync.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://bfc.myway.com...de_srchlft.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell4me.com/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Comcast
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\1.bin\deSrcAs.dll (file missing)
O2 - BHO: Band Class - {00F1D395-4744-40f0-A611-980F61AE2C59} - C:\WINDOWS\dsr.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {4D25F921-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\1.bin\deSrcAs.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [mmtask] C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [kmw_run.exe] kmw_run.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [tgcmd] "C:\Program Files\support.com\bin\tgcmd.exe" /server
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
O4 - HKLM\..\Run: [HP Software Update] "c:\Program Files\HP\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [DXDllRegExe] dxdllreg.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [KAVPersonal50] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: palmOne Registration.lnk = C:\Program Files\palmOne\register.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: HotSync Manager.lnk = C:\Program Files\palmOne\Hotsync.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: QuickBooks Update Agent.lnk = C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: ComcastHSI - {669B269B-0D4E-41FB-A3D8-FD67CA94F646} - http://www.comcast.net/ (file missing)
O9 - Extra button: Support - {8828075D-D097-4055-AA02-2DBFA9D85E8A} - http://www.comcastsupport.com/ (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Help - {97809617-3937-4F84-B335-9BB05EF1A8D4} - http://online.comcast.net/help/ (file missing)
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmat...enWebRadio.html (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky...can_unicode.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://download.ewid...oOnlineScan.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.micros...b?1128283346453
O16 - DPF: {E87F6C8E-16C0-11D3-BEF7-009027438003} (Persits Software XUpload) - http://www.mypacific...oad/XUpload.ocx
O18 - Protocol: widimg - {EE7C2AFF-5742-44FF-BD0E-E521B0D3C3BA} - C:\WINDOWS\system32\btxppanel.dll
O20 - Winlogon Notify: IntelWireless - C:\Program Files\Intel\Wireless\Bin\LgNotify.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: kavsvc - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe


___________________


Second, here is the ewido log:


---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------

+ Created on: 4:57:54 PM, 10/2/2005
+ Report-Checksum: 21FAA564

+ Scan result:

:mozilla.8:C:\Documents and Settings\Sky J W\Application Data\Mozilla\Firefox\Profiles\cc6epodp.default\cookies.txt -> Spyware.Cookie.2o7 : Ignored
:mozilla.10:C:\Documents and Settings\Sky J W\Application Data\Mozilla\Firefox\Profiles\cc6epodp.default\cookies.txt -> Spyware.Cookie.Doubleclick : Ignored
:mozilla.11:C:\Documents and Settings\Sky J W\Application Data\Mozilla\Firefox\Profiles\cc6epodp.default\cookies.txt -> Spyware.Cookie.2o7 : Ignored
:mozilla.12:C:\Documents and Settings\Sky J W\Application Data\Mozilla\Firefox\Profiles\cc6epodp.default\cookies.txt -> Spyware.Cookie.2o7 : Ignored
:mozilla.13:C:\Documents and Settings\Sky J W\Application Data\Mozilla\Firefox\Profiles\cc6epodp.default\cookies.txt -> Spyware.Cookie.Advertising : Ignored
:mozilla.14:C:\Documents and Settings\Sky J W\Application Data\Mozilla\Firefox\Profiles\cc6epodp.default\cookies.txt -> Spyware.Cookie.Advertising : Ignored
:mozilla.30:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.Overture : Ignored
:mozilla.34:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.Googleadservices : Ignored
:mozilla.36:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.Googleadservices : Ignored
:mozilla.41:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.Hitbox : Ignored
:mozilla.7:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.Atdmt : Error during cleaning
:mozilla.17:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.Doubleclick : Error during cleaning
:mozilla.43:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.45:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.46:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.47:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.50:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.51:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.52:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.53:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.54:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.55:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.80:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.83:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.88:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.89:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.90:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.101:C:\Program Files\support.com\backup\co\cookies.txt\10423_51814bf60_/cookies.txt -> Spyware.Cookie.Statcounter : Error during cleaning
:mozilla.9:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.Overture : Error during cleaning
:mozilla.35:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.36:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.37:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.38:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.40:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.Atdmt : Error during cleaning
:mozilla.44:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.Doubleclick : Error during cleaning
:mozilla.60:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.62:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.66:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.68:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.70:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.71:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.72:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.75:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.76:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.94:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.97:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.102:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.103:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.104:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.115:C:\Program Files\support.com\backup\co\cookies.txt\11839_54cf0eb0f_/cookies.txt -> Spyware.Cookie.Statcounter : Error during cleaning
:mozilla.10:C:\Program Files\support.com\backup\co\cookies.txt\12157_54c055ca5_/cookies.txt -> Spyware.Cookie.Coremetrics : Error during cleaning
:mozilla.27:C:\Program Files\support.com\backup\co\cookies.txt\12157_54c055ca5_/cookies.txt -> Spyware.Cookie.Questionmarket : Error during cleaning
:mozilla.36:C:\Program Files\support.com\backup\co\cookies.txt\12157_54c055ca5_/cookies.txt -> Spyware.Cookie.Atdmt : Error during cleaning
:mozilla.44:C:\Program Files\support.com\backup\co\cookies.txt\12157_54c055ca5_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.45:C:\Program Files\support.com\backup\co\cookies.txt\12157_54c055ca5_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.46:C:\Program Files\support.com\backup\co\cookies.txt\12157_54c055ca5_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.50:C:\Program Files\support.com\backup\co\cookies.txt\12157_54c055ca5_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.51:C:\Program Files\support.com\backup\co\cookies.txt\12157_54c055ca5_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.59:C:\Program Files\support.com\backup\co\cookies.txt\12157_54c055ca5_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.61:C:\Program Files\support.com\backup\co\cookies.txt\12157_54c055ca5_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.62:C:\Program Files\support.com\backup\co\cookies.txt\12157_54c055ca5_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.65:C:\Program Files\support.com\backup\co\cookies.txt\12157_54c055ca5_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.66:C:\Program Files\support.com\backup\co\cookies.txt\12157_54c055ca5_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.67:C:\Program Files\support.com\backup\co\cookies.txt\12157_54c055ca5_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.73:C:\Program Files\support.com\backup\co\cookies.txt\12157_54c055ca5_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.74:C:\Program Files\support.com\backup\co\cookies.txt\12157_54c055ca5_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.75:C:\Program Files\support.com\backup\co\cookies.txt\12157_54c055ca5_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.76:C:\Program Files\support.com\backup\co\cookies.txt\12157_54c055ca5_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.83:C:\Program Files\support.com\backup\co\cookies.txt\12157_54c055ca5_/cookies.txt -> Spyware.Cookie.Overture : Error during cleaning
:mozilla.87:C:\Program Files\support.com\backup\co\cookies.txt\12157_54c055ca5_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.92:C:\Program Files\support.com\backup\co\cookies.txt\12157_54c055ca5_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.13:C:\Program Files\support.com\backup\co\cookies.txt\1221_5fd2361c2_/cookies.txt -> Spyware.Cookie.Com : Error during cleaning
:mozilla.14:C:\Program Files\support.com\backup\co\cookies.txt\1221_5fd2361c2_/cookies.txt -> Spyware.Cookie.Com : Error during cleaning
:mozilla.15:C:\Program Files\support.com\backup\co\cookies.txt\1221_5fd2361c2_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.16:C:\Program Files\support.com\backup\co\cookies.txt\1221_5fd2361c2_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.6:C:\Program Files\support.com\backup\co\cookies.txt\12559_5f96345b1_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.10:C:\Program Files\support.com\backup\co\cookies.txt\12559_5f96345b1_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.13:C:\Program Files\support.com\backup\co\cookies.txt\12559_5f96345b1_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.14:C:\Program Files\support.com\backup\co\cookies.txt\12559_5f96345b1_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.15:C:\Program Files\support.com\backup\co\cookies.txt\12559_5f96345b1_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.16:C:\Program Files\support.com\backup\co\cookies.txt\12559_5f96345b1_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.43:C:\Program Files\support.com\backup\co\cookies.txt\12559_5f96345b1_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.50:C:\Program Files\support.com\backup\co\cookies.txt\12559_5f96345b1_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.51:C:\Program Files\support.com\backup\co\cookies.txt\12559_5f96345b1_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.52:C:\Program Files\support.com\backup\co\cookies.txt\12559_5f96345b1_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.53:C:\Program Files\support.com\backup\co\cookies.txt\12559_5f96345b1_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.61:C:\Program Files\support.com\backup\co\cookies.txt\12559_5f96345b1_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.62:C:\Program Files\support.com\backup\co\cookies.txt\12559_5f96345b1_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.65:C:\Program Files\support.com\backup\co\cookies.txt\12559_5f96345b1_/cookies.txt -> Spyware.Cookie.Atdmt : Error during cleaning
:mozilla.10:C:\Program Files\support.com\backup\co\cookies.txt\1309_5e540f7cb_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.11:C:\Program Files\support.com\backup\co\cookies.txt\1309_5e540f7cb_/cookies.txt -> Spyware.Cookie.Atdmt : Error during cleaning
:mozilla.13:C:\Program Files\support.com\backup\co\cookies.txt\1309_5e540f7cb_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.14:C:\Program Files\support.com\backup\co\cookies.txt\1309_5e540f7cb_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.16:C:\Program Files\support.com\backup\co\cookies.txt\1309_5e540f7cb_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.7:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.Coremetrics : Error during cleaning
:mozilla.21:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.26:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.Atdmt : Error during cleaning
:mozilla.34:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.Com : Error during cleaning
:mozilla.35:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.Com : Error during cleaning
:mozilla.50:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.51:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.52:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.53:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.58:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.Questionmarket : Error during cleaning
:mozilla.59:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.66:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.67:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.80:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.83:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.Overture : Error during cleaning
:mozilla.87:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.88:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.89:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.90:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.99:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.Bridgetrack : Error during cleaning
:mozilla.105:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.Webtrendslive : Error during cleaning
:mozilla.106:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.111:C:\Program Files\support.com\backup\co\cookies.txt\13311_58978d5c6_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.6:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Onestat : Error during cleaning
:mozilla.7:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Onestat : Error during cleaning
:mozilla.8:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Onestat : Error during cleaning
:mozilla.13:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.14:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.15:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.16:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.19:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.20:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.21:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.22:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.27:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.28:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.49:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Atdmt : Error during cleaning
:mozilla.61:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.62:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.70:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Webtrendslive : Error during cleaning
:mozilla.71:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Webtrendslive : Error during cleaning
:mozilla.72:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Overture : Error during cleaning
:mozilla.92:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.94:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.95:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.96:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.97:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.103:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.120:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.123:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Coremetrics : Error during cleaning
:mozilla.142:C:\Program Files\support.com\backup\co\cookies.txt\13374_5d590d26b_/cookies.txt -> Spyware.Cookie.Tradedoubler : Error during cleaning
:mozilla.15:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.16:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.17:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.18:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.19:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.24:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.26:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.27:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.28:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.30:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.Com : Error during cleaning
:mozilla.31:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.Com : Error during cleaning
:mozilla.32:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.Atdmt : Error during cleaning
:mozilla.39:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.Overture : Error during cleaning
:mozilla.58:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.Doubleclick : Error during cleaning
:mozilla.73:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.75:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.79:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.82:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.83:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.86:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.87:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.105:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.108:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.113:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.114:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.115:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.126:C:\Program Files\support.com\backup\co\cookies.txt\13522_55be12b49_/cookies.txt -> Spyware.Cookie.Statcounter : Error during cleaning
:mozilla.21:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Atdmt : Error during cleaning
:mozilla.32:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.33:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.34:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.35:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Overture : Error during cleaning
:mozilla.37:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Doubleclick : Error during cleaning
:mozilla.38:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Advertising : Error during cleaning
:mozilla.39:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Advertising : Error during cleaning
:mozilla.40:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Advertising : Error during cleaning
:mozilla.41:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Onestat : Error during cleaning
:mozilla.42:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Onestat : Error during cleaning
:mozilla.43:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Onestat : Error during cleaning
:mozilla.48:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.49:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.51:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.52:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.53:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.54:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.55:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.56:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.79:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.80:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.87:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Webtrendslive : Error during cleaning
:mozilla.88:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Webtrendslive : Error during cleaning
:mozilla.105:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.107:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.108:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.109:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.110:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.116:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.131:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.134:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Coremetrics : Error during cleaning
:mozilla.152:C:\Program Files\support.com\backup\co\cookies.txt\14190_5b00e9743_/cookies.txt -> Spyware.Cookie.Tradedoubler : Error during cleaning
:mozilla.22:C:\Program Files\support.com\backup\co\cookies.txt\15243_5e59be1af_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.23:C:\Program Files\support.com\backup\co\cookies.txt\15243_5e59be1af_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.25:C:\Program Files\support.com\backup\co\cookies.txt\15243_5e59be1af_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.35:C:\Program Files\support.com\backup\co\cookies.txt\15243_5e59be1af_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.36:C:\Program Files\support.com\backup\co\cookies.txt\15243_5e59be1af_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.37:C:\Program Files\support.com\backup\co\cookies.txt\15243_5e59be1af_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.38:C:\Program Files\support.com\backup\co\cookies.txt\15243_5e59be1af_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.39:C:\Program Files\support.com\backup\co\cookies.txt\15243_5e59be1af_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.45:C:\Program Files\support.com\backup\co\cookies.txt\15243_5e59be1af_/cookies.txt -> Spyware.Cookie.Atdmt : Error during cleaning
:mozilla.54:C:\Program Files\support.com\backup\co\cookies.txt\15243_5e59be1af_/cookies.txt -> Spyware.Cookie.Com : Error during cleaning
:mozilla.55:C:\Program Files\support.com\backup\co\cookies.txt\15243_5e59be1af_/cookies.txt -> Spyware.Cookie.Com : Error during cleaning
:mozilla.75:C:\Program Files\support.com\backup\co\cookies.txt\15243_5e59be1af_/cookies.txt -> Spyware.Cookie.Coremetrics : Error during cleaning
:mozilla.76:C:\Program Files\support.com\backup\co\cookies.txt\15243_5e59be1af_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.92:C:\Program Files\support.com\backup\co\cookies.txt\15243_5e59be1af_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.111:C:\Program Files\support.com\backup\co\cookies.txt\15243_5e59be1af_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.112:C:\Program Files\support.com\backup\co\cookies.txt\15243_5e59be1af_/cookies.txt -> Spyware.Cookie.247realmedia : Error during cleaning
:mozilla.118:C:\Program Files\support.com\backup\co\cookies.txt\15243_5e59be1af_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.125:C:\Program Files\support.com\backup\co\cookies.txt\15243_5e59be1af_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.126:C:\Program Files\support.com\backup\co\cookies.txt\15243_5e59be1af_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.15:C:\Program Files\support.com\backup\co\cookies.txt\1605_54a6ed8ba_/cookies.txt -> Spyware.Cookie.Atdmt : Error during cleaning
:mozilla.22:C:\Program Files\support.com\backup\co\cookies.txt\1605_54a6ed8ba_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.8:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.9:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.10:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.11:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.12:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.13:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.16:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Webtrendslive : Error during cleaning
:mozilla.17:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Webtrendslive : Error during cleaning
:mozilla.18:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Webtrendslive : Error during cleaning
:mozilla.19:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Webtrendslive : Error during cleaning
:mozilla.20:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Webtrendslive : Error during cleaning
:mozilla.21:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Atdmt : Error during cleaning
:mozilla.30:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.33:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.34:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.35:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.36:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.37:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.38:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.39:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.40:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.79:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Coremetrics : Error during cleaning
:mozilla.112:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.121:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.124:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Com : Error during cleaning
:mozilla.125:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Com : Error during cleaning
:mozilla.142:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.147:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Webtrendslive : Error during cleaning
:mozilla.148:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Webtrendslive : Error during cleaning
:mozilla.149:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.151:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.155:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.156:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.157:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.158:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Liveperson : Error during cleaning
:mozilla.160:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.162:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Googleadservices : Error during cleaning
:mozilla.166:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.167:C:\Program Files\support.com\backup\co\cookies.txt\19478_504cd88d0_/cookies.txt -> Spyware.Cookie.Hitbox : Error during cleaning
:mozilla.17:C:\Program Files\support.com\backup\co\cookies.txt\19683_5d24e7647_/cookies.txt -> Spyware.Cookie.Atdmt : Error during cleaning
:mozilla.38:C:\Program Files\support.com\backup\co\cookies.txt\19683_5d24e7647_/cookies.txt -> Spyware.Cookie.Webtrendslive : Error during cleaning
:mozilla.39:C:\Program Files\support.com\backup\co\cookies.txt\19683_5d24e7647_/cookies.txt -> Spyware.Cookie.Webtrendslive : Error during cleaning
:mozilla.40:C:\Program Files\support.com\backup\co\cookies.txt\19683_5d24e7647_/cookies.txt -> Spyware.Cookie.Webtrendslive : Error during cleaning
:mozilla.41:C:\Program Files\support.com\backup\co\cookies.txt\19683_5d24e7647_/cookies.txt -> Spyware.Cookie.Webtrendslive : Error during cleaning
:mozilla.42:C:\Program Files\support.com\backup\co\cookies.txt\19683_5d24e7647_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.48:C:\Program Files\support.com\backup\co\cookies.txt\19683_5d24e7647_/cookies.txt -> Spyware.Cookie.2o7 : Error during cleaning
:mozilla.49:C:\Program Files\support.com\backup\c
  • 0

#4
Trevuren

Trevuren

    Old Dog

  • Retired Staff
  • 18,699 posts
Please print out or copy this page to Notepad. Make sure to work through the fixes in the exact order in which they are mentioned below. If there's anything that you don't understand, ask your question(s) before proceeding with the fixes.
  • First we need to make all files and folders VISIBLE:
    • Go to start>control panel>folder options>view (tab)
    • Choose to "show hidden files and folders,"
    • Uncheck the "hide protected operating system files" and the "hide extensions for know file types" boxes.
    • Close the window with ok
  • Please RUN HijackThis.
    . Click the SCAN button to produce a log.

  • Place a check mark beside each one of the following items:

    R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://bfc.myway.com...de_srchlft.html
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
    R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\1.bin\deSrcAs.dll (file missing)
    O2 - BHO: Band Class - {00F1D395-4744-40f0-A611-980F61AE2C59} - C:\WINDOWS\dsr.dll (file missing)
    O2 - BHO: (no name) - {4D25F921-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\1.bin\deSrcAs.dll (file missing)
    O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)


  • Now with all the items selected, and all windows closed except for HJT, delete them by clicking the FIX checked button. Close the HijackThis window.

  • Reboot Your System in Safe Mode

    How to use the F8 method to Start Your Computer in Safe Mode

    • Restart the computer.
    • As soon as BIOS is loaded begin tapping the F8 key until the Advanced Options menu appears.
    • Use the arrow keys to select the Safe mode menu item
    • Press Enter.
  • Using Windows Explorer, locate the following files/folders, and DELETE them (if they are present):

    C:\Program Files\MyWaySA<==Folder

  • Exit Explorer, and REBOOT BACK INTO NORMAL MODE

  • Finally, RUN Hijackthis again and produce a new HJT log. Post it in the forum so we can check how everything looks now.
Regards,

Trevuren

  • 0

#5
gutterglam

gutterglam

    New Member

  • Topic Starter
  • Member
  • Pip
  • 5 posts
I could not find the MyWaySA folder in safe mode,
but here is the latest Hijack log:


Logfile of HijackThis v1.99.1
Scan saved at 5:49:02 PM, on 10/2/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\WINDOWS\system32\wdfmgr.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe
C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
C:\WINDOWS\System32\alg.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\system32\kmw_run.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\support.com\bin\tgcmd.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\HP\HP Software Update\HPWuSchd.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\WINDOWS\system32\KMW_SHOW.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\palmOne\Hotsync.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\PROGRA~1\WIDCOMM\BLUETO~1\BTSTAC~1.EXE
C:\Program Files\WinZip\WZQKPICK.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell4me.com/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by Comcast
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [mmtask] C:\Program Files\Musicmatch\Musicmatch Jukebox\mmtask.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [kmw_run.exe] kmw_run.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [tgcmd] "C:\Program Files\support.com\bin\tgcmd.exe" /server
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
O4 - HKLM\..\Run: [HP Software Update] "c:\Program Files\HP\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [DXDllRegExe] dxdllreg.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [KAVPersonal50] "C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: palmOne Registration.lnk = C:\Program Files\palmOne\register.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: BTTray.lnk = ?
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: HotSync Manager.lnk = C:\Program Files\palmOne\Hotsync.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: QuickBooks Update Agent.lnk = C:\Program Files\Common Files\Intuit\QuickBooks\QBUpdate\qbupdate.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Send To &Bluetooth - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: ComcastHSI - {669B269B-0D4E-41FB-A3D8-FD67CA94F646} - http://www.comcast.net/ (file missing)
O9 - Extra button: Support - {8828075D-D097-4055-AA02-2DBFA9D85E8A} - http://www.comcastsupport.com/ (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Help - {97809617-3937-4F84-B335-9BB05EF1A8D4} - http://online.comcast.net/help/ (file missing)
O9 - Extra button: @btrez.dll,-4015 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra 'Tools' menuitem: @btrez.dll,-4017 - {CCA281CA-C863-46ef-9331-5C8D4460577F} - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie.htm
O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmat...enWebRadio.html (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky...can_unicode.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {193C772A-87BE-4B19-A7BB-445B226FE9A1} (ewidoOnlineScan Control) - http://download.ewid...oOnlineScan.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.micros...b?1128283346453
O16 - DPF: {E87F6C8E-16C0-11D3-BEF7-009027438003} (Persits Software XUpload) - http://www.mypacific...oad/XUpload.ocx
O18 - Protocol: widimg - {EE7C2AFF-5742-44FF-BD0E-E521B0D3C3BA} - C:\WINDOWS\system32\btxppanel.dll
O20 - Winlogon Notify: IntelWireless - C:\Program Files\Intel\Wireless\Bin\LgNotify.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: kavsvc - Kaspersky Lab - C:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
  • 0

#6
Trevuren

Trevuren

    Old Dog

  • Retired Staff
  • 18,699 posts
Your log looks good. If you have no more malware-related problems that you are aware of, just give me the OK and we can start the final but essential cleanup procedures.

Trevuren
  • 0

#7
gutterglam

gutterglam

    New Member

  • Topic Starter
  • Member
  • Pip
  • 5 posts
I think so.
Spy sweeper isn't presenting me with a list of issues on startup
Karpesky doesn't keep comming up with the boncpar.exe alert.
There have been no pop-ups since the last start up (its only been 5 or 10 minutes, but I think we are good to continue)
  • 0

#8
Trevuren

Trevuren

    Old Dog

  • Retired Staff
  • 18,699 posts
Congratulations, your log shows that your SYSTEM IS CLEAN

There are a few things you must do once you are completely clean:

1. Re-hide your System Files and Folders to prevent any future accidents.

Reconfigure Windows XP to hide hidden files:
  • Click Start. Open My Computer.
  • Select the Tools menu and click Folder Options. Select the View Tab.
  • Under the Hidden files and folders heading deselect "Show hidden files and folders".
  • Check the "Hide protected operating system files (recommended)" option.
  • Click Yes to confirm. Click OK.
2. Reset and Re-enable your System Restore to remove bad files from the backup that Windows makes as no program is able to clean those files:

TO DISABLE SYSTEM RESTORE
  • Right-click "My Computer", and then left click "Properties".
  • Left click on "System Restore Tab"
  • Check box beside "Turn Off System Restore"
  • Left click on "Apply"
TO ENABLE SYSTEM RESTORE
  • Remove check mark from "Turn Off System Restore"
  • Click on "Apply"
Here are some tips to reduce the potential for spyware infection in the future:

Make sure you keep your Windows OS current by visiting Windows update
regularly to download and install any critical updates and service packs. With out these you are leaving the backdoor open.

I strongly recommend installing the following applications:
  • Spywareblaster <= SpywareBlaster will prevent spyware from being installed.
  • Spywareguard <= SpywareGuard offers realtime protection from spyware installation attempts.
  • How to use Ad-Aware to remove Spyware <= If you suspect that you have spyware installed on your computer, here are instructions on how to download, install and then use Ad-Aware.
  • How to use Spybot to remove Spyware <= If you suspect that you have spyware installed on your computer, here are instructions on how to download, install and then use Spybot. Similar to Ad-Aware, I strongly recommend both to catch most spyware.
To protect yourself further:
  • Spyad <= IE/Spyad places over 4000 websites and domains in the IE Restricted list which will severely impair attempts to infect your system. It basically prevents any downloads (Cookies etc) from the sites listed, although you will still be able to connect to the sites.
  • MVPS Hosts file <= The MVPS Hosts file replaces your current HOSTS file with one containing well know ad sites etc. Basically, this prevents your coputer from connecting to those sites by redirecting them to 127.0.0.1 which is your local computer
  • Google Toolbar <= Get the free google toolbar to help stop pop up windows.
And also see TonyKlein's good advice
So how did I get infected in the first place? (My Favorite)

Regards,

Trevuren

  • 0

#9
gutterglam

gutterglam

    New Member

  • Topic Starter
  • Member
  • Pip
  • 5 posts
I'm adding the additional security and everything seems cool.
Thanks again so much for all your help.
  • 0

#10
Trevuren

Trevuren

    Old Dog

  • Retired Staff
  • 18,699 posts
My Pleasure,

Trevuren

  • 0

#11
Trevuren

Trevuren

    Old Dog

  • Retired Staff
  • 18,699 posts
Since this issue appears to be resolved ... this Topic has been closed. Glad we could help. :tazz:

If you're the topic starter, and need this topic reopened, please contact a staff member with the address of the thread.

Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP