Jump to content

Welcome to Geeks to Go - Register now for FREE

Need help with your computer or device? Want to learn new tech skills? You're in the right place!
Geeks to Go is a friendly community of tech experts who can solve any problem you have. Just create a free account and post your question. Our volunteers will reply quickly and guide you through the steps. Don't let tech troubles stop you. Join Geeks to Go now and get the support you need!

How it Works Create Account
Photo

mssearchnet and maybe others [CLOSED]


  • This topic is locked This topic is locked

#1
Colt450011

Colt450011

    Member

  • Member
  • PipPip
  • 23 posts
Here's the hijackthis log

Logfile of HijackThis v1.99.1
Scan saved at 12:30:32 PM, on 2/20/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\mssearchnet.exe
C:\WINDOWS\system32\nvctrl.exe
C:\WINDOWS\LTSMMSG.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb05.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
D:\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\system32\ezSP_Px.exe
C:\Program Files\Google\Gmail Notifier\gnotify.exe
D:\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Hewlett-Packard\hpis\bin\mad.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\PROGRA~1\HEWLET~1\hpis\common\MOTIVE~1.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Documents and Settings\Kids\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://panoramicit.c...rch_the_web.htm
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://safesearch.panoramicit.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
O2 - BHO: HomepageBHO - {4da4616d-7e6e-4fd9-a2d5-b6c535733e22} - C:\WINDOWS\system32\hp3EAA.tmp
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\en-us\msntb.dll (file missing)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
O4 - HKLM\..\Run: [LTSMMSG] LTSMMSG.exe
O4 - HKLM\..\Run: [hpinstantsupport] "C:\Program Files\Hewlett-Packard\hpis\bin\matcliwrapper.exe" "C:\Program Files\Hewlett-Packard\hpis\" -boot
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb05.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
O4 - HKLM\..\Run: [HP Software Update] "D:\HP\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\system32\ezSP_Px.exe
O4 - HKLM\..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] C:\Program Files\Google\Gmail Notifier\gnotify.exe
O4 - HKLM\..\Run: [SpyFalcon] C:\Program Files\SpyFalcon\SpyFalcon.exe /h
O4 - Global Startup: HP Digital Imaging Monitor.lnk = D:\HP\Digital Imaging\bin\hpqtra08.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll (file missing)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll (file missing)
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - D:\AIM Instant Messenger\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O14 - IERESET.INF: START_PAGE_URL=http://safesearch.panoramicit.com
O16 - DPF: RaptisoftGameLoader - http://www.miniclip....tgameloader.cab
O16 - DPF: {1DF36010-E276-11D4-A7C0-00C04F0453DD} (Stamps.com Secure Postal Account Registration) - https://secure.stamp...04/sdcregie.cab
O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (FilePlanet Download Control Class) - http://www.fileplane...DC_1_0_0_44.cab
O16 - DPF: {41F31718-2B9D-4F76-85E2-DD11BBA99F8D} - http://install.spywa...r2501031120.EXE
O16 - DPF: {70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} (GSDACtl Class) - https://www.gamespyid.com/alaunch.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn...pDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/...ro.cab32846.cab
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} - http://fdl.msn.com/z...s/heartbeat.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WBSrv - C:\PROGRA~1\Stardock\OBJECT~1\WINDOW~1\wbsrv.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\PROGRA~1\COMMON~1\SONYSH~1\AVLib\Sptisrv.exe
O23 - Service: X10 Device Network Service (x10nets) - Unknown owner - C:\PROGRA~1\ATIMUL~1\RemCtrl\x10nets.exe (file missing)

i have microsoft antispyware, adaware, AVG they dont seem to find it, please help
  • 0

Advertisements


#2
greyknight17

greyknight17

    Malware Expert

  • Visiting Consultant
  • 16,560 posts
Welcome to GTG.

Please print out or copy this page to Notepad. Make sure to work through the fixes in the exact order it is mentioned below. If there's anything that you don't understand, ask your question(s) before proceeding with the fixes. You should 'not' have any open browsers when you are following the procedures below.

Download smitRem at http://noahdfear.gee.../click.php?id=1 and save the file to your desktop.

Please download Ewido Security Suite at http://www.ewido.net/en/download/ and read the Ewido setup instructions at http://rstones12.gee.../ewidosetup.htm. Install it, and update the definitions to the newest files. Do NOT run a scan yet. NOTE: If you have Windows 9x/ME, you don't need to run Ewido (skip this step).

If you have not already installed Ad-Aware SE 1.06, follow the download and setup instructions at http://rstones12.gee...areSE_setup.htm. Otherwise, check for updates. Don't run it yet!

Download CleanUp! http://cleanup.stevengould.org/ (Alternate Link if main link don't work - http://www.greyknigh...spy/CleanUp.exe ) and install it. Don't run it yet.

Restart your computer and boot into Safe Mode by hitting the F8 key repeatedly until a menu shows up (and choose Safe Mode from the list). In some systems, this may be the F5 key, so try that if F8 doesn't work.

CleanUp! deletes EVERYTHING out of your temp/temporary folders, it does not make backups. If you have any documents or programs that are saved in any Temporary Folders, please make a backup of these before running CleanUp!. Run CleanUp! and click on the Options button. Uncheck 'Scan local drives for temporary files'. Also uncheck those two Newsgroup entries if you don't want to delete them. Click OK and then click on the CleanUp! button. Let it run. After it's done, choose Yes to logoff.

Run a scan in HijackThis. Check each of the following and hit 'Fix checked' (after checking them) if they still exist (make sure not to miss any):

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://panoramicit.c...rch_the_web.htm
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://safesearch.panoramicit.com
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
O2 - BHO: HomepageBHO - {4da4616d-7e6e-4fd9-a2d5-b6c535733e22} - C:\WINDOWS\system32\hp3EAA.tmp
O4 - HKLM\..\Run: [SpyFalcon] C:\Program Files\SpyFalcon\SpyFalcon.exe /h
O14 - IERESET.INF: START_PAGE_URL=http://safesearch.panoramicit.com
O16 - DPF: {41F31718-2B9D-4F76-85E2-DD11BBA99F8D} - http://install.spywa...r2501031120.EXE


Run the smitRem.exe tool you downloaded earlier. There should be a folder called smitrem created on your desktop. Open it and double click on the RunThis file. Follow the prompts on the screen. Wait for the tool to complete and disk cleanup to finish.

The tool will create a log named smitfiles.txt in the root of your drive, eg: Local Disk C: or partition where your operating system is installed. Please post that log along with all others requested in your next reply.

Delete these if found:

C:\WINDOWS\system32\mssearchnet.exe
C:\WINDOWS\system32\nvctrl.exe
C:\WINDOWS\system32\hp3EAA.tmp


Open Ad-aware and do a full scan. Remove all it finds.

Run Ewido:

* Click on scanner.
* Click on Complete System Scan and the scan will begin.
* NOTE: During some scans with ewido it is finding cases of false positives.
* You will need to step through the process of cleaning files one-by-one.
* If Ewido detects a file you KNOW to be legitimate, select none as the action.
* Do NOT select 'Perform action on all infections'.
* If you are unsure of any entry found, select none for now.
* When the scan is finished, click the Save report button at the bottom of the screen.
* Save the report to your desktop.

Close Ewido.

Next go to Control Panel->Display->Desktop (or Appearance)->Customize Desktop->Web-> Uncheck 'Security Info' if present. Also delete it.

Restart your computer to get back to Normal Mode..

Perform an online scan with Internet Explorer at Panda ActiveScan http://www.pandasoft.../activescan.htm

* Click on 'Scan your PC' button. There should be a popup - if you have a pop-up blocker, make sure it's not blocking it.
* Click 'Check Now' & a pop-up window will appear.
* Enter your Country, State and E-mail Address & click 'Scan Now' - begin downloading Panda's ActiveX controls (8 MB size).
* Begin the scan by selecting My Computer.
* If it finds any malware, it will offer you a report. Ignore any entry it finds (since it wants you to buy the program for removal) as we will address this later.
* Click on see report. Then click Save report.
* Please post that log in your next reply.

Then post the Panda log here along with the logs for smitfiles.txt, Ewido and a new HijackThis log.
  • 0

#3
Colt450011

Colt450011

    Member

  • Topic Starter
  • Member
  • PipPip
  • 23 posts
Panda Log:


Incident Status Location

Adware:adware/ezula Not disinfected C:\WINDOWS\SYSTEM32\ezStub3.dll
Spyware:spyware/whazit Not disinfected C:\WINDOWS\SYSTEM32\fiz1
Adware:adware/sahagent Not disinfected C:\WINDOWS\DOWNLOADED PROGRAM FILES\sporder_.dll
Adware:adware/searchaid Not disinfected C:\Documents and Settings\Kids\Favorites\Search the web.url
Spyware:spyware/betterinet Not disinfected C:\WINDOWS\INF\biini.inf
Adware:adware/ieplugin Not disinfected C:\WINDOWS\kwv2.dat
Spyware:spyware/harnig Not disinfected C:\WINDOWS\LOAD.EXE
Adware:adware/ncase Not disinfected C:\WINDOWS\msbb.exe.temp
Adware:adware/powerstrip Not disinfected C:\WINDOWS\preprocess.data
Adware:adware/savenow Not disinfected Windows Registry
Potentially unwanted tool:application/mywebsearch Not disinfected HKEY_CLASSES_ROOT\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239}
Spyware:spyware/altnet Not disinfected Windows Registry
Potentially unwanted tool:application/myway Not disinfected HKEY_CLASSES_ROOT\CLSID\{66FC8717-EFA7-4546-8C4A-E224F3A80C76}
Adware:adware/sqwire Not disinfected Windows Registry
Spyware:Cookie/go Not disinfected C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt[.go.com/]
Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt[.realmedia.com/]
Spyware:Cookie/go Not disinfected C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt[]
Spyware:Cookie/go Not disinfected C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt[]
Adware:Adware/IST.ISTBar Not disinfected C:\Documents and Settings\Kids\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\javainstaller.jar-5aa0b436-5d8bdf28.zip[InstallerApplet.class]
Potentially unwanted tool:Application/Processor Not disinfected C:\Documents and Settings\Kids\Desktop\cmr\smitRem\Process.exe
Potentially unwanted tool:Application/Processor Not disinfected C:\Documents and Settings\Kids\Desktop\cmr\smitRem.exe[Process.exe]
Potentially unwanted tool:Application/Processor Not disinfected C:\Documents and Settings\Kids\Local Settings\Application Data\Mozilla\Firefox\Profiles\gwtqlscm.default\Cache\3EFBEAA3d01[Process.exe]
Adware:Adware/SAHAgent Not disinfected C:\WINDOWS\inf\biB.inf
Spyware:Spyware/BetterInet Not disinfected C:\WINDOWS\inf\biini.inf
Adware:Adware/nCase Not disinfected C:\WINDOWS\system32\ezStub3.dll

smitfiles log:


smitRem © log file
version 2.8

by noahdfear


Microsoft Windows XP [Version 5.1.2600]
The current date is: Mon 02/20/2006
The current time is: 21:30:28.90

Running from
C:\Documents and Settings\Kids\Desktop\cmr\smitRem

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Pre-run SharedTask Export

(GetSTS.exe) SharedTaskScheduler exporter by Lawrence Abrams (Grinler)
Copyright© 2006 BleepingComputer.com

Registry Pseudo-Format Mode (Not a valid reg file):

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon"
"{D1A2E7CD-F5C1-21A8-CA2C-13D0AC72D19D}"="Wheel Mouse Optical Driver"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{438755C2-A8BA-11D1-B96B-00A0C90312E1}\InProcServer32]
@="%SystemRoot%\System32\browseui.dll"


[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8C7461EF-2B13-11d2-BE35-3078302C2030}\InProcServer32]
@="%SystemRoot%\System32\browseui.dll"


[HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{D1A2E7CD-F5C1-21A8-CA2C-13D0AC72D19D}\InProcServer32]
@="C:\WINDOWS\system32\dxmpp.dll"


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

checking for ShudderLTD key

ShudderLTD key not present!

checking for PSGuard.com key


PSGuard.com key not present!


checking for WinHound.com key


WinHound.com key not present!

spyaxe uninstaller NOT present
Winhound uninstaller NOT present
SpywareStrike uninstaller NOT present

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Existing Pre-run Files


~~~ Program Files ~~~

Security Toolbar


~~~ Shortcuts ~~~

Online Security Guide.url
Online Security Guide.url
Security Troubleshooting.url


~~~ Favorites ~~~

Antivirus Test Online.url


~~~ system32 folder ~~~

1024 dir
msvol.tlb
ld****.tmp
mssearchnet.exe
ncompat.tlb
nvctrl.exe
hp***.tmp


~~~ Icons in System32 ~~~

ts.ico
ot.ico


~~~ Windows directory ~~~



~~~ Drive root ~~~


~~~ Miscellaneous Files/folders ~~~




~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Command Line Process Viewer/Killer/Suspender for Windows NT/2000/XP V2.03
Copyright© 2002-2003 [email protected]
Killing PID 1556 'explorer.exe'
Killing PID 1556 'explorer.exe'

Starting registry repairs

Registry repairs complete

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

SharedTask Export after registry fix

(GetSTS.exe) SharedTaskScheduler exporter by Lawrence Abrams (Grinler)
Copyright© 2006 BleepingComputer.com

Registry Pseudo-Format Mode (Not a valid reg file):

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon"
"{D1A2E7CD-F5C1-21A8-CA2C-13D0AC72D19D}"="Wheel Mouse Optical Driver"

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{438755C2-A8BA-11D1-B96B-00A0C90312E1}\InProcServer32]
@="%SystemRoot%\System32\browseui.dll"


[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\CLSID\{8C7461EF-2B13-11d2-BE35-3078302C2030}\InProcServer32]
@="%SystemRoot%\System32\browseui.dll"


[HKEY_CURRENT_USER\SOFTWARE\Classes\CLSID\{D1A2E7CD-F5C1-21A8-CA2C-13D0AC72D19D}\InProcServer32]
@="C:\WINDOWS\system32\dxmpp.dll"


~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Deleting files

~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~~

Remaining Post-run Files


~~~ Program Files ~~~



~~~ Shortcuts ~~~



~~~ Favorites ~~~



~~~ system32 folder ~~~



~~~ Icons in System32 ~~~



~~~ Windows directory ~~~



~~~ Drive root ~~~


~~~ Miscellaneous Files/folders ~~~


~~~ Wininet.dll ~~~

CLEAN! :tazz:

Ewido

---------------------------------------------------------
ewido anti-malware - Scan report
---------------------------------------------------------

+ Created on: 12:36:15 AM, 2/21/2006
+ Report-Checksum: 8F385EB8

+ Scan result:

HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\ins -> Adware.WebRebates : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg\WhenUSave -> Adware.SaveNow : Cleaned with backup
HKU\S-1-5-21-239712180-2382750585-1605616401-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4DA4616D-7E6E-4FD9-A2D5-B6C535733E22} -> Adware.Generic : Cleaned with backup
HKU\S-1-5-21-239712180-2382750585-1605616401-1008\Software\Classes\CLSID\{D1A2E7CD-F5C1-21A8-CA2C-13D0AC72D19D} -> Adware.SpyFalcon : Cleaned with backup
HKU\S-1-5-21-239712180-2382750585-1605616401-1008_Classes\CLSID\{D1A2E7CD-F5C1-21A8-CA2C-13D0AC72D19D} -> Adware.SpyFalcon : Cleaned with backup
[1412] C:\WINDOWS\system32\dxmpp.dll -> Not-A-Virus.Hoax.Win32.Renos.v : Cleaned with backup
:mozilla.8:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
:mozilla.9:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned with backup
:mozilla.14:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Centrport : Cleaned with backup
:mozilla.15:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Centrport : Cleaned with backup
:mozilla.16:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup
:mozilla.19:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.20:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.21:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.22:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.23:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.30:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned with backup
:mozilla.31:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.32:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.33:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.34:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.35:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.36:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.37:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.38:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.39:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.40:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.41:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.42:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.43:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.44:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.45:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.46:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.47:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.48:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.49:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.50:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.51:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.52:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.53:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.54:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.62:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.63:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.64:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.70:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup
:mozilla.71:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup
:mozilla.76:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.77:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.83:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
:mozilla.84:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
:mozilla.101:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned with backup
:mozilla.104:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
:mozilla.118:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Targetnet : Cleaned with backup
:mozilla.124:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned with backup
:mozilla.125:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned with backup
:mozilla.131:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.132:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.133:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.136:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Revenue : Cleaned with backup
:mozilla.144:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
:mozilla.145:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
:mozilla.146:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
:mozilla.148:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Realcastmedia : Cleaned with backup
:mozilla.149:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Clickagents : Cleaned with backup
:mozilla.150:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Clickagents : Cleaned with backup
:mozilla.151:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Clickagents : Cleaned with backup
:mozilla.152:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Clickagents : Cleaned with backup
:mozilla.153:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Clickagents : Cleaned with backup
:mozilla.154:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Clickagents : Cleaned with backup
:mozilla.156:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
:mozilla.157:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
:mozilla.158:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
:mozilla.166:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Paycounter : Cleaned with backup
:mozilla.168:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.169:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.170:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.171:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.172:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.173:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.174:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.177:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.178:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.179:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.180:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.187:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup
:mozilla.188:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Masterstats : Cleaned with backup
:mozilla.190:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Euniverseads : Cleaned with backup
:mozilla.191:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Euniverseads : Cleaned with backup
:mozilla.192:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Euniverseads : Cleaned with backup
:mozilla.200:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.201:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.202:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.222:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.223:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.250:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
:mozilla.251:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
:mozilla.252:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
:mozilla.253:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
:mozilla.260:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup
:mozilla.262:C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.9:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
:mozilla.10:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.11:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.12:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.13:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.14:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.15:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.16:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.18:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.19:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.20:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.21:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.22:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.23:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.24:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.25:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.39:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.40:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.41:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.42:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.43:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.44:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.48:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Reliablestats : Cleaned with backup
:mozilla.49:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Reliablestats : Cleaned with backup
:mozilla.50:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Reliablestats : Cleaned with backup
:mozilla.51:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Reliablestats : Cleaned with backup
:mozilla.52:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Reliablestats : Cleaned with backup
:mozilla.71:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup
:mozilla.73:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.74:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.75:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.76:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.78:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.80:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Com : Cleaned with backup
:mozilla.81:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Com : Cleaned with backup
:mozilla.82:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.83:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.84:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.86:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Mediaplex : Cleaned with backup
:mozilla.90:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.91:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.92:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.93:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.94:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup
:mozilla.95:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup
:mozilla.96:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
:mozilla.97:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
:mozilla.99:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.100:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.101:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.102:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup
:mozilla.103:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.104:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.105:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned with backup
:mozilla.106:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.107:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
:mozilla.108:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.109:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.110:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.111:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.112:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.113:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.114:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.115:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.116:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.124:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.134:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Paycounter : Cleaned with backup
:mozilla.140:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.141:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.142:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.143:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.144:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.145:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.146:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
:mozilla.147:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.170:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.171:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.173:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.174:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.175:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.176:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.180:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Valueclick : Cleaned with backup
:mozilla.181:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Valueclick : Cleaned with backup
:mozilla.201:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.216:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.220:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.221:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.244:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.245:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.251:C:\Documents and Settings\All Users\Documents\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup
:mozilla.9:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Spylog : Cleaned with backup
:mozilla.13:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Yadro : Cleaned with backup
:mozilla.22:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.23:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.29:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
:mozilla.32:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup
:mozilla.33:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup
:mozilla.35:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.36:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.37:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.38:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.45:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup
:mozilla.46:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.47:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
:mozilla.48:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
:mozilla.49:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.58:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Adorigin : Cleaned with backup
:mozilla.74:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned with backup
:mozilla.76:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned with backup
:mozilla.77:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.80:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Dbbsrv : Cleaned with backup
:mozilla.89:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.90:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.91:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.99:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.100:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Realtracker : Cleaned with backup
:mozilla.104:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned with backup
:mozilla.108:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.109:C:\Documents and Settings\DEVIN\Application Data\Mozilla\Firefox\Profiles\g6hctry2.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.8:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
:mozilla.9:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Centrport : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Centrport : Cleaned with backup
:mozilla.16:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup
:mozilla.19:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.20:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.21:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.22:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.23:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.33:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.34:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.62:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.63:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.64:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.70:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup
:mozilla.71:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup
:mozilla.76:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.77:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.83:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
:mozilla.84:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
:mozilla.101:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned with backup
:mozilla.104:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
:mozilla.118:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Targetnet : Cleaned with backup
:mozilla.124:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned with backup
:mozilla.125:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned with backup
:mozilla.131:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.133:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.136:C:\Documents and Settings\Kids\Application Data\Mozilla\F
  • 0

#4
Colt450011

Colt450011

    Member

  • Topic Starter
  • Member
  • PipPip
  • 23 posts
Didn't fit all in the last one... i think some of the stuff i put is unnecessary... o well

:mozilla.144:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
:mozilla.145:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
:mozilla.146:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
:mozilla.148:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Realcastmedia : Cleaned with backup
:mozilla.149:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Clickagents : Cleaned with backup
:mozilla.150:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Clickagents : Cleaned with backup
:mozilla.151:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Clickagents : Cleaned with backup
:mozilla.152:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Clickagents : Cleaned with backup
:mozilla.153:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Clickagents : Cleaned with backup
:mozilla.154:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Clickagents : Cleaned with backup
:mozilla.156:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
:mozilla.157:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
:mozilla.158:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
:mozilla.166:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Paycounter : Cleaned with backup
:mozilla.168:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.169:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.170:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.171:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.172:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.173:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.174:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.177:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.178:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.179:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.180:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.187:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup
:mozilla.188:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Masterstats : Cleaned with backup
:mozilla.190:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Euniverseads : Cleaned with backup
:mozilla.191:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Euniverseads : Cleaned with backup
:mozilla.192:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Euniverseads : Cleaned with backup
:mozilla.200:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.201:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.202:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.222:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.223:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.250:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
:mozilla.251:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
:mozilla.252:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
:mozilla.253:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
:mozilla.260:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup
:mozilla.262:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.9:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
:mozilla.10:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.11:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.12:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.13:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.16:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.18:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.19:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.20:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.21:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.22:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.23:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.24:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Reliablestats : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Reliablestats : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Reliablestats : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Reliablestats : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Reliablestats : Cleaned with backup
:mozilla.71:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup
:mozilla.73:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.74:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.75:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.76:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.78:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.80:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Com : Cleaned with backup
:mozilla.81:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Com : Cleaned with backup
:mozilla.82:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.83:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.84:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.86:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Mediaplex : Cleaned with backup
:mozilla.90:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.91:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.92:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.93:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.94:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup
:mozilla.95:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup
:mozilla.96:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
:mozilla.97:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
:mozilla.99:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.100:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.101:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.102:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup
:mozilla.103:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.104:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.105:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned with backup
:mozilla.106:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.107:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
:mozilla.108:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.109:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.110:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.111:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.112:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.113:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.114:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.115:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.116:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.124:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.134:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Paycounter : Cleaned with backup
:mozilla.140:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.141:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.142:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.143:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.144:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.145:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.146:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
:mozilla.147:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.170:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.171:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.173:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.174:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.175:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.176:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.180:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Valueclick : Cleaned with backup
:mozilla.181:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Valueclick : Cleaned with backup
:mozilla.201:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.216:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.220:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.221:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.244:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.245:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.251:C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\d9cyf3ud.Colton\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup
C:\Program Files\Microsoft AntiSpyware\Quarantine\4E763311-E55E-4609-95DF-122BD9\114FC0E2-5E1B-472D-A2C1-43D1D3 -> Adware.VirtualBouncer : Cleaned with backup
C:\Program Files\SpyFalcon -> Adware.SpyFalcon : Cleaned with backup
C:\Program Files\SpyFalcon\blacklist.txt -> Adware.SpyFalcon : Cleaned with backup
C:\Program Files\SpyFalcon\ignored.lst -> Adware.SpyFalcon : Cleaned with backup
C:\Program Files\SpyFalcon\Lang -> Adware.SpyFalcon : Cleaned with backup
C:\Program Files\SpyFalcon\Lang\English.ini -> Adware.SpyFalcon : Cleaned with backup
C:\Program Files\SpyFalcon\Logs -> Adware.SpyFalcon : Cleaned with backup
C:\Program Files\SpyFalcon\msvcp71.dll -> Adware.SpyFalcon : Cleaned with backup
C:\Program Files\SpyFalcon\msvcr71.dll -> Adware.SpyFalcon : Cleaned with backup
C:\Program Files\SpyFalcon\Quarantine -> Adware.SpyFalcon : Cleaned with backup
C:\Program Files\SpyFalcon\sf.ini -> Adware.SpyFalcon : Cleaned with backup
C:\Program Files\SpyFalcon\SpyFalcon.exe -> Adware.SpyFalcon : Cleaned with backup
C:\Program Files\SpyFalcon\SpyFalcon.url -> Adware.SpyFalcon : Cleaned with backup
C:\Program Files\SpyFalcon\syg.db -> Adware.SpyFalcon : Cleaned with backup
C:\Program Files\SpyFalcon\uninst.exe -> Adware.SpyFalcon : Cleaned with backup
C:\WINDOWS\bar.exe -> Adware.IeSearchBar : Cleaned with backup
C:\WINDOWS\Downloaded Program Files\gsda.dll -> Not-A-Virus.Downloader.Win32.SpyGame : Cleaned with backup
C:\WINDOWS\system32\dxmpp.dll -> Not-A-Virus.Hoax.Win32.Renos.v : Cleaned with backup
C:\WINDOWS\system32\R0tw1r3.dll -> Adware.F1Organizer : Cleaned with backup


::Report End


New Hijack This log:

Logfile of HijackThis v1.99.1
Scan saved at 2:34:06 AM, on 2/21/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\LTSMMSG.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb05.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
D:\HP\HP Software Update\HPWuSchd2.exe
C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\system32\ezSP_Px.exe
C:\Program Files\Google\Gmail Notifier\gnotify.exe
D:\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\Hewlett-Packard\hpis\bin\mad.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\PROGRA~1\HEWLET~1\hpis\common\MOTIVE~1.EXE
C:\Program Files\Internet Explorer\iexplore.exe
D:\MOZILL~1\FIREFOX.EXE
D:\AIM Instant Messenger\aim.exe
C:\Program Files\Google\Google Desktop Search\GoogleDesktopIndex.exe
C:\Documents and Settings\Kids\Desktop\cmr\HijackThis.exe

O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\en-us\msntb.dll (file missing)
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE NvQTwk,NvCplDaemon initialize
O4 - HKLM\..\Run: [LTSMMSG] LTSMMSG.exe
O4 - HKLM\..\Run: [hpinstantsupport] "C:\Program Files\Hewlett-Packard\hpis\bin\matcliwrapper.exe" "C:\Program Files\Hewlett-Packard\hpis\" -boot
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb05.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
O4 - HKLM\..\Run: [HP Software Update] "D:\HP\HP Software Update\HPWuSchd2.exe"
O4 - HKLM\..\Run: [Microsoft Works Update Detection] C:\Program Files\Common Files\Microsoft Shared\Works Shared\WkUFind.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\system32\ezSP_Px.exe
O4 - HKLM\..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] C:\Program Files\Google\Gmail Notifier\gnotify.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = D:\HP\Digital Imaging\bin\hpqtra08.exe
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll (file missing)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll (file missing)
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - D:\AIM Instant Messenger\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O16 - DPF: RaptisoftGameLoader - http://www.miniclip....tgameloader.cab
O16 - DPF: {1DF36010-E276-11D4-A7C0-00C04F0453DD} (Stamps.com Secure Postal Account Registration) - https://secure.stamp...04/sdcregie.cab
O16 - DPF: {39B0684F-D7BF-4743-B050-FDC3F48F7E3B} (FilePlanet Download Control Class) - http://www.fileplane...DC_1_0_0_44.cab
O16 - DPF: {70BA88C8-DAE8-4CE9-92BB-979C4A75F53B} (GSDACtl Class) - https://www.gamespyid.com/alaunch.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoft...free/asinst.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn...pDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/...ro.cab32846.cab
O16 - DPF: {E5D419D6-A846-4514-9FAD-97E826C84822} - http://fdl.msn.com/z...s/heartbeat.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - AppInit_DLLs: wbsys.dll C:\PROGRA~1\Google\GOOGLE~1\GOEC62~1.DLL
O20 - Winlogon Notify: WBSrv - C:\PROGRA~1\Stardock\OBJECT~1\WINDOW~1\wbsrv.dll
O23 - Service: Adobe LM Service - Unknown owner - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\PROGRA~1\COMMON~1\SONYSH~1\AVLib\Sptisrv.exe
O23 - Service: X10 Device Network Service (x10nets) - Unknown owner - C:\PROGRA~1\ATIMUL~1\RemCtrl\x10nets.exe (file missing)


I think its all gone, im not getting any more windows security alert pop ups any more at least...
  • 0

#5
greyknight17

greyknight17

    Malware Expert

  • Visiting Consultant
  • 16,560 posts
Go to Start->Run and type in regsvr32 /u occache.dll and hit OK.

Delete these if found:

C:\Documents and Settings\Kids\Favorites\Search the web.url
C:\WINDOWS\DOWNLOADED PROGRAM FILES\sporder_.dll
C:\WINDOWS\inf\biB.inf
C:\WINDOWS\inf\biini.inf
C:\WINDOWS\kwv2.dat
C:\WINDOWS\LOAD.EXE
C:\WINDOWS\msbb.exe.temp
C:\WINDOWS\preprocess.data
C:\WINDOWS\system32\ezStub3.dll
C:\WINDOWS\SYSTEM32\fiz1


Go to Start->Run and type in regsvr32 occache.dll and hit OK.

Go to Start->Run and type in regedit and hit OK. Go to File->Export and save the registry somewhere as a backup. Close the Registry Editor now. Go to Start->Run and type in notepad and hit OK. Then copy and paste the following into Notepad:

REGEDIT4
[-HKEY_CLASSES_ROOT\CLSID\{147A976F-EEE1-4377-8EA7-4716E4CDD239}]
[-HKEY_CLASSES_ROOT\CLSID\{66FC8717-EFA7-4546-8C4A-E224F3A80C76}]


Save the file as "delete.reg". Make sure to save it with the quotes. Close Notepad. Double click on the delete.reg file and choose Yes to merge/add it to the registry. You may delete the file afterwards.


Click on Start->Settings->Control Panel->Java Plug-in and click on the Cache tab. Then click on the Clear button and hit OK.
If you have Java 1.5, do this instead. Start->Control Panel->Java->Settings->Delete Files and click OK and OK.

Run CleanUp program again and restart your computer. Run a new Panda scan and see if anything else is found. If not, then:

Your log is clean.

To help prevent future spyware installations/infections, please read the Anti-Spyware Tutorial and use the tools provided.

Are there any problems now? If not, you should be set to go.
  • 0

#6
Colt450011

Colt450011

    Member

  • Topic Starter
  • Member
  • PipPip
  • 23 posts
I did what you said and now I'm running a Panda Scan... its not even half way done and so far its found 34 spyware and 3 hacking tools... ill post the log when its done
  • 0

#7
Colt450011

Colt450011

    Member

  • Topic Starter
  • Member
  • PipPip
  • 23 posts
Incident Status Location

Adware:adware/ezula Not disinfected C:\WINDOWS\SYSTEM32\ezStub3.dll
Spyware:spyware/whazit Not disinfected C:\WINDOWS\SYSTEM32\fiz1
Adware:adware/sahagent Not disinfected C:\WINDOWS\DOWNLOADED PROGRAM FILES\sporder_.dll
Adware:adware/searchaid Not disinfected C:\Documents and Settings\Kids\Favorites\Search the web.url
Spyware:spyware/betterinet Not disinfected C:\WINDOWS\INF\biini.inf
Adware:adware/ieplugin Not disinfected C:\WINDOWS\kwv2.dat
Spyware:spyware/harnig Not disinfected C:\WINDOWS\LOAD.EXE
Adware:adware/ncase Not disinfected C:\WINDOWS\msbb.exe.temp
Adware:adware/powerstrip Not disinfected C:\WINDOWS\preprocess.data
Adware:adware/savenow Not disinfected Windows Registry
Potentially unwanted tool:application/mywebsearch Not disinfected HKEY_CLASSES_ROOT\Interface\{bbabdc90-f3d5-4801-863a-ee6ae529862d}
Adware:adware/virtualbouncer Not disinfected Windows Registry
Spyware:Cookie/go Not disinfected C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt[.go.com/]
Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt[.realmedia.com/]
Spyware:Cookie/go Not disinfected C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt[]
Spyware:Cookie/go Not disinfected C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt[]
Adware:Adware/IST.ISTBar Not disinfected C:\Documents and Settings\Kids\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\javainstaller.jar-5aa0b436-5d8bdf28.zip[InstallerApplet.class]
Potentially unwanted tool:Application/Processor Not disinfected C:\Documents and Settings\Kids\Desktop\cmr\smitRem\Process.exe
Potentially unwanted tool:Application/Processor Not disinfected C:\Documents and Settings\Kids\Desktop\cmr\smitRem.exe[Process.exe]
Adware:Adware/SAHAgent Not disinfected C:\WINDOWS\inf\biB.inf
Spyware:Spyware/BetterInet Not disinfected C:\WINDOWS\inf\biini.inf
Adware:Adware/nCase Not disinfected C:\WINDOWS\system32\ezStub3.dll


Here's the panda log... there are no more windows security messages or more pops up, so i think its gone, but panda found some stuff...
  • 0

#8
greyknight17

greyknight17

    Malware Expert

  • Visiting Consultant
  • 16,560 posts
Click on Start->Settings->Control Panel->Java Plug-in and click on the Cache tab. Then click on the Clear button and hit OK.
If you have Java 1.5, do this instead. Start->Control Panel->Java->Settings->Delete Files and click OK and OK.

Go to Start->Run and type in regedit and hit OK. Go to File->Export and save the registry somewhere as a backup. Close the Registry Editor now. Go to Start->Run and type in notepad and hit OK. Then copy and paste the following into Notepad:

REGEDIT4
[-HKEY_CLASSES_ROOT\Interface\{bbabdc90-f3d5-4801-863a-ee6ae529862d}]


Save the file as "delete.reg". Make sure to save it with the quotes. Close Notepad. Double click on the delete.reg file and choose Yes to merge/add it to the registry. You may delete the file afterwards.


Download KillBox http://www.greyknigh...spy/KillBox.exe. Run KillBox and check the box that says 'End Explorer Shell While Killing File'. Next click on 'Delete on Reboot'. Right click and copy the below lines. Go back to KillBox. Go to File->Paste from Clipboard and then hit the button with a red circle and white X. Confirm to delete and when asked if you want to reboot, say Yes:

C:\Documents and Settings\Kids\Favorites\Search the web.url
C:\WINDOWS\DOWNLOADED PROGRAM FILES\sporder_.dll
C:\WINDOWS\inf\biB.inf
C:\WINDOWS\inf\biini.inf
C:\WINDOWS\kwv2.dat
C:\WINDOWS\LOAD.EXE
C:\WINDOWS\msbb.exe.temp
C:\WINDOWS\preprocess.data
C:\WINDOWS\system32\ezStub3.dll
C:\WINDOWS\SYSTEM32\fiz1


If you get a PendingOperations message, just close it and restart your computer manually.

Restart...

Run CleanUp and then run another Panda scan. Post that log here.
  • 0

#9
Colt450011

Colt450011

    Member

  • Topic Starter
  • Member
  • PipPip
  • 23 posts
Panda Scan


Incident Status Location

Spyware:spyware/whazit Not disinfected C:\WINDOWS\SYSTEM32\kyf.dat
Adware:adware/ncase Not disinfected C:\WINDOWS\msbbau.dat
Adware:adware/savenow Not disinfected Windows Registry
Potentially unwanted tool:application/mywebsearch Not disinfected HKEY_CLASSES_ROOT\Interface\{bbabdc90-f3d5-4801-863a-ee6ae529862d}
Adware:adware/virtualbouncer Not disinfected Windows Registry
Spyware:Cookie/go Not disinfected C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt[.go.com/]
Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt[.realmedia.com/]
Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\gwtqlscm.default\cookies.txt[.zedo.com/]
Spyware:Cookie/FastClick Not disinfected C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\gwtqlscm.default\cookies.txt[.fastclick.net/]
Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\gwtqlscm.default\cookies.txt[.zedo.com/]
Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\gwtqlscm.default\cookies.txt[.atdmt.com/]
Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\gwtqlscm.default\cookies.txt[.zedo.com/]
Spyware:Cookie/Tribalfusion Not disinfected C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\gwtqlscm.default\cookies.txt[.tribalfusion.com/]
Spyware:Cookie/go Not disinfected C:\Documents and Settings\All Users\Documents\cffdptzz.default\cookies.txt[]
Spyware:Cookie/go Not disinfected C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\cffdptzz.default\cookies.txt[]
Spyware:Cookie/QuestionMarket Not disinfected C:\Documents and Settings\Kids\Application Data\Mozilla\Firefox\Profiles\gwtqlscm.default\cookies.txt[]
Adware:Adware/IST.ISTBar Not disinfected C:\Documents and Settings\Kids\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\javainstaller.jar-5aa0b436-5d8bdf28.zip[InstallerApplet.class]
Potentially unwanted tool:Application/Processor Not disinfected C:\Documents and Settings\Kids\Desktop\cmr\smitRem\Process.exe
Potentially unwanted tool:Application/Processor Not disinfected C:\Documents and Settings\Kids\Desktop\cmr\smitRem.exe[Process.exe]

When I clicked yes when it asks you if you want to add it to the registry, it was fine, then after a couple seconds it said something about running processes... hopefully that didnt hurt anything
  • 0

#10
greyknight17

greyknight17

    Malware Expert

  • Visiting Consultant
  • 16,560 posts
Download KillBox http://www.greyknigh...spy/KillBox.exe. Run KillBox and check the box that says 'End Explorer Shell While Killing File'. Next click on 'Delete on Reboot'. Right click and copy the below lines. Go back to KillBox. Go to File->Paste from Clipboard and then hit the button with a red circle and white X. Confirm to delete and when asked if you want to reboot, say Yes:

C:\WINDOWS\SYSTEM32\kyf.dat
C:\WINDOWS\msbbau.dat


If you get a PendingOperations message, just close it and restart your computer manually.

Go to Start->Run and type in regedit and hit OK. Go to File->Export and save the registry somewhere as a backup. Close the Registry Editor now. Go to Start->Run and type in notepad and hit OK. Then copy and paste the following into Notepad:

REGEDIT4
[-HKEY_CLASSES_ROOT\Interface\{bbabdc90-f3d5-4801-863a-ee6ae529862d}]


Save the file as "delete.reg". Make sure to save it with the quotes. Close Notepad. Double click on the delete.reg file and choose Yes to merge/add it to the registry. You may delete the file afterwards.

Please download and install the trial version of Webroot SpySweeper (8.3mg) http://www.webroot.c...4011&vcode=DT02

When SpySweeper starts, please accept any prompts to update definitions.
Configure it as follows:
*From the left pane, click Options
*Select the Sweep Options tab & ensure the following are ticked:
-Sweep Memory
-Sweep Registry
-Sweep Cookies
-Sweep All Users accounts
*Do Not Sweep System Restore Folder
*Enable Direct Disk Sweeping
*Sweep For Rootkits
After that's done, select Sweep from the left pane & click on the Start button

Allow Spysweeper to reboot your machine to remove the infected files.
*After rebooting, launch SpySweeper & select Results from the left pane
*Click the 'Session Log' tab & choose Save to File to create a log.

Run a new Panda scan and post that log here along with the SpySweeper log and a new HijackThis log.
  • 0

#11
greyknight17

greyknight17

    Malware Expert

  • Visiting Consultant
  • 16,560 posts
Due to lack of feedback, this topic has been closed.

If you need this topic reopened, please contact a staff member. This applies only to the original topic starter. Everyone else please begin a New Topic.
  • 0






Similar Topics

0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users

As Featured On:

Microsoft Yahoo BBC MSN PC Magazine Washington Post HP