PDA

View Full Version : Help computer runs slow



yokatta
2007-03-23, 08:28
My computer has been running slower than normal and will often run out of memory. I installed an additional 512Meg and that didn't help. The last couple days my computer boots up in safe mode and won't let me restore my active desktop--it says "Internet explorer script error". Ask if I want to continue running scripts and whether I click yes or no it won't go to my active desktop.

Any help would be appreciated. thanks in advance

HijackThis log:

Logfile of HijackThis v1.99.1
Scan saved at 12:15:33 AM, on 3/23/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
c:\program files\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mm_tray.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
C:\Program Files\SysProtect\syp.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Fisher-Price\FP3 Player\sspnotifier.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\QUICKENW\QWDLLS.EXE
C:\Program Files\palmOne\HOTSYNC.EXE
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Java\jre1.5.0_06\bin\jucheck.exe
C:\WINDOWS\system32\wscntfy.exe
C:\malware\hijackthis\kissmybutt.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/mywaybiz
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.comcast.net/toolbar2.0/search/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.comcast.net/toolbar2.0/search/
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.dell4me.com/mywaybiz
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {2EE3AFCA-AEC9-48A8-AF28-DD0F7DF12C84} - C:\WINDOWS\system32\ebevhqtm.dll
O2 - BHO: Comcast Toolbar - {4E7BD74F-2B8D-469E-93BE-BE2DF4D9AE29} - C:\PROGRA~1\COMCAS~1\COMCAS~1.DLL
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {C3755DF7-2CF4-43E6-AEFD-9CD48A02537F} - C:\WINDOWS\atpigva.dll (file missing)
O2 - BHO: (no name) - {E6CFCFC6-2A09-437C-83F5-F5FBE051355d} - C:\WINDOWS\system32\ebevhqtm.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll
O3 - Toolbar: Comcast Toolbar - {4E7BD74F-2B8D-469E-93BE-BE2DF4D9AE29} - C:\PROGRA~1\COMCAS~1\COMCAS~1.DLL
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [VSOCheckTask] "c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [VirusScan Online] c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [mmtask] c:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
O4 - HKLM\..\Run: [SysProtect] C:\Program Files\SysProtect\syp.exe /scan
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SSP Notifier] C:\Program Files\Fisher-Price\FP3 Player\sspnotifier.exe
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: HotSync Manager.lnk = C:\Program Files\palmOne\HOTSYNC.EXE
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Billminder.lnk = C:\Program Files\QUICKENW\BILLMIND.EXE
O4 - Global Startup: Quicken Startup.lnk = C:\Program Files\QUICKENW\QWDLLS.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmatch.com/mmz/openWebRadio.html (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O15 - Trusted Zone: http://locator.cdn.imageservr.com
O15 - Trusted Zone: http://scanner.sysprotect.com
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/EN-US/a-UNO1/GAME_UNO1.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {90051A81-3018-4826-8B38-DD60B6B53F9C} (Snapfish File Upload ActiveX Control) - http://www.costcophotocenter.com/CostcoUpload.cab
O16 - DPF: {9AA73F41-EC64-489E-9A73-9CD52E528BC4} (ZoneAxRcMgr Class) - http://messenger.zone.msn.com/binary/ZAxRcMgr.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab
O16 - DPF: {ED28050F-D713-43BA-A376-DCC5C35407D5} (MsnMusicAx Class) - http://beta.entimg.msn.com/client/msnmusax2729.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/controls/msnchat45.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: IAA Event Monitor (IAANTMon) - Intel Corporation - C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee.com McShield (McShield) - Unknown owner - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee.com VirusScan Online Realtime Engine (MCVSRte) - Networks Associates Technology, Inc - c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe

Mr_JAk3
2007-03-23, 23:24
Hello yokatta :)

Please download VundoFix.exe (http://www.atribune.org/ccount/click.php?id=4) to your desktop.
Double-click VundoFix.exe to run it.
Click the Scan for Vundo button.
Once it's done scanning, click the Remove Vundo button.
You will receive a prompt asking if you want to remove the files, click YES
Once you click yes, your desktop will go blank as it starts removing Vundo.
When completed, it will prompt that it will reboot your computer, click OK.
Please post the contents of C:\vundofix.txt and a new HiJackThis log.

Note: It is possible that VundoFix encountered a file it could not remove.
In this case, VundoFix will run on reboot, simply follow the above instructions starting from "Click the Scan for Vundo button." when VundoFix appears at reboot.

yokatta
2007-03-25, 07:18
Thanks so much for the response.

Here is the results:

VUNDO.TXT


VundoFix V6.2.8

Checking Java version...

Java version is 1.5.0.3

Java version is 1.5.0.6

Scan started at 1:55:52 PM 11/11/2006

Listing files found while scanning....

C:\WINDOWS\SYSTEM32\esfljphg.dll
C:\WINDOWS\SYSTEM32\rmxbgxrb.dll
C:\WINDOWS\SYSTEM32\ulopqpxl.dll
C:\WINDOWS\SYSTEM32\ctntigss.exe
C:\WINDOWS\SYSTEM32\eothsqcx.exe
C:\WINDOWS\SYSTEM32\fcrtphbw.exe
C:\WINDOWS\SYSTEM32\jpwrdlse.exe
C:\WINDOWS\SYSTEM32\mwnrltlx.exe
C:\WINDOWS\SYSTEM32\oosqwqhg.exe
C:\WINDOWS\SYSTEM32\pghnqxon.exe
C:\WINDOWS\atpigva.dll
C:\WINDOWS\avgipta.ini
C:\WINDOWS\avgipta.bak1
C:\WINDOWS\avgipta.bak2
C:\WINDOWS\avgipta.ini2
C:\WINDOWS\avgipta.tmp

Beginning removal...

Attempting to delete C:\WINDOWS\SYSTEM32\esfljphg.dll
C:\WINDOWS\SYSTEM32\esfljphg.dll Has been deleted!

Attempting to delete C:\WINDOWS\SYSTEM32\rmxbgxrb.dll
C:\WINDOWS\SYSTEM32\rmxbgxrb.dll Has been deleted!

Attempting to delete C:\WINDOWS\SYSTEM32\ulopqpxl.dll
C:\WINDOWS\SYSTEM32\ulopqpxl.dll Has been deleted!

Attempting to delete C:\WINDOWS\SYSTEM32\ctntigss.exe
C:\WINDOWS\SYSTEM32\ctntigss.exe Has been deleted!

Attempting to delete C:\WINDOWS\SYSTEM32\eothsqcx.exe
C:\WINDOWS\SYSTEM32\eothsqcx.exe Has been deleted!

Attempting to delete C:\WINDOWS\SYSTEM32\fcrtphbw.exe
C:\WINDOWS\SYSTEM32\fcrtphbw.exe Has been deleted!

Attempting to delete C:\WINDOWS\SYSTEM32\jpwrdlse.exe
C:\WINDOWS\SYSTEM32\jpwrdlse.exe Has been deleted!

Attempting to delete C:\WINDOWS\SYSTEM32\mwnrltlx.exe
C:\WINDOWS\SYSTEM32\mwnrltlx.exe Has been deleted!

Attempting to delete C:\WINDOWS\SYSTEM32\oosqwqhg.exe
C:\WINDOWS\SYSTEM32\oosqwqhg.exe Has been deleted!

Attempting to delete C:\WINDOWS\SYSTEM32\pghnqxon.exe
C:\WINDOWS\SYSTEM32\pghnqxon.exe Has been deleted!

Attempting to delete C:\WINDOWS\atpigva.dll
C:\WINDOWS\atpigva.dll Has been deleted!

Attempting to delete C:\WINDOWS\avgipta.ini
C:\WINDOWS\avgipta.ini Has been deleted!

Attempting to delete C:\WINDOWS\avgipta.bak1
C:\WINDOWS\avgipta.bak1 Has been deleted!

Attempting to delete C:\WINDOWS\avgipta.bak2
C:\WINDOWS\avgipta.bak2 Has been deleted!

Attempting to delete C:\WINDOWS\avgipta.ini2
C:\WINDOWS\avgipta.ini2 Has been deleted!

Attempting to delete C:\WINDOWS\avgipta.tmp
C:\WINDOWS\avgipta.tmp Has been deleted!

Performing Repairs to the registry.
Done!

VundoFix V6.2.8

Checking Java version...

Java version is 1.5.0.3

Java version is 1.5.0.6

Scan started at 12:00:37 AM 3/23/2007

Listing files found while scanning....

No infected files were found.


VundoFix V6.3.17

Checking Java version...

Java version is 1.5.0.3
Old versions of java are exploitable and should be removed.

Java version is 1.5.0.6
Old versions of java are exploitable and should be removed.

Scan started at 4:45:34 PM 3/24/2007

Listing files found while scanning....

C:\WINDOWS\system32\esfljphg.dll
C:\WINDOWS\system32\rmxbgxrb.dll

Beginning removal...

Performing Repairs to the registry.
Done!


HIJACK THIS LOG

Logfile of HijackThis v1.99.1
Scan saved at 10:16:37 PM, on 3/24/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
c:\program files\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mm_tray.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
C:\Program Files\SysProtect\syp.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Fisher-Price\FP3 Player\sspnotifier.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\QUICKENW\QWDLLS.EXE
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\palmOne\HOTSYNC.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\DOCUME~1\Craig\LOCALS~1\Temp\Temporary Directory 2 for hijackthis.zip\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/mywaybiz
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.comcast.net/toolbar2.0/search/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.comcast.net/toolbar2.0/search/
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.dell4me.com/mywaybiz
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {2EE3AFCA-AEC9-48A8-AF28-DD0F7DF12C84} - C:\WINDOWS\system32\ebevhqtm.dll
O2 - BHO: Comcast Toolbar - {4E7BD74F-2B8D-469E-93BE-BE2DF4D9AE29} - C:\PROGRA~1\COMCAS~1\COMCAS~1.DLL
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {C3755DF7-2CF4-43E6-AEFD-9CD48A02537F} - C:\WINDOWS\atpigva.dll (file missing)
O2 - BHO: (no name) - {E6CFCFC6-2A09-437C-83F5-F5FBE051355d} - C:\WINDOWS\system32\ebevhqtm.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll
O3 - Toolbar: Comcast Toolbar - {4E7BD74F-2B8D-469E-93BE-BE2DF4D9AE29} - C:\PROGRA~1\COMCAS~1\COMCAS~1.DLL
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [VSOCheckTask] "c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [VirusScan Online] c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [mmtask] c:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
O4 - HKLM\..\Run: [SysProtect] C:\Program Files\SysProtect\syp.exe /scan
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SSP Notifier] C:\Program Files\Fisher-Price\FP3 Player\sspnotifier.exe
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: HotSync Manager.lnk = C:\Program Files\palmOne\HOTSYNC.EXE
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Billminder.lnk = C:\Program Files\QUICKENW\BILLMIND.EXE
O4 - Global Startup: Quicken Startup.lnk = C:\Program Files\QUICKENW\QWDLLS.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmatch.com/mmz/openWebRadio.html (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O15 - Trusted Zone: http://locator.cdn.imageservr.com
O15 - Trusted Zone: http://scanner.sysprotect.com
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/EN-US/a-UNO1/GAME_UNO1.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {90051A81-3018-4826-8B38-DD60B6B53F9C} (Snapfish File Upload ActiveX Control) - http://www.costcophotocenter.com/CostcoUpload.cab
O16 - DPF: {9AA73F41-EC64-489E-9A73-9CD52E528BC4} (ZoneAxRcMgr Class) - http://messenger.zone.msn.com/binary/ZAxRcMgr.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab
O16 - DPF: {ED28050F-D713-43BA-A376-DCC5C35407D5} (MsnMusicAx Class) - http://beta.entimg.msn.com/client/msnmusax2729.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/controls/msnchat45.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: IAA Event Monitor (IAANTMon) - Intel Corporation - C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee.com McShield (McShield) - Unknown owner - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee.com VirusScan Online Realtime Engine (MCVSRte) - Networks Associates Technology, Inc - c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe

yokatta
2007-03-31, 23:00
The updated Hijackthis log is above. Are there any more repairs I need to do? thanks

Mr_JAk3
2007-04-01, 09:26
Hi again, we'll continue :)

You should print these instructions or save these to a text file. Follow these instructions carefully.

Please download AVG Anti-Spyware to your Desktop or to your usual Download Folder.
http://www.ewido.net/en/download/
Install AVG Anti-Spyware by double clicking the installer.
Follow the prompts. Make sure that Launch AVG Anti-Spyware is checked.
On the main screen under Your Computer's security.
Click on Change state next to Resident shield. It should now change to inactive.
Click on Change state next to Automatic updates. It should now change to inactive.
Next to Last Update, click on Update now. (You will need an active internet connection to perform this)
Wait until you see the Update succesfull message.
Right-click the AVG Anti-Spyware Tray Icon and uncheck Start with Windows.
Right-click the AVG Anti-Spyware Tray Icon and select Exit. Confirm by clicking Yes.
If you are having problems with the updater, you can use this link to manually update ewido.
AVG Anti-Spyware manual updates (http://www.ewido.net/en/download/updates/).
Download the Full database to your Desktop or to your usual Download Folder and install it by double clicking the file. Make sure that AVG Anti-Spyware is closed before installing the update.

Download ATF Cleaner (http://www.atribune.org/ccount/click.php?id=1) by Atribune to your desktop.
Do NOT run yet.

Download HijackThis to your desktop from here (http://downloads.malwareremoval.com/HijackThis.exe)

Create a new folder for HijackThis and move HijackThis.exe into it.

Make your hidden files visible:
Go to My Computer
Select the Tools menu and click Folder Options
Click the View tab.
Checkmark the "Display the contents of system folders"
Under the Hidden files and folders select "Show hidden files and folders"
Uncheck "Hide protected operating system files"
Click Apply and then the OK and close My Computer.

==================

Open Control Panel -> Add/Remove programs -> Remove all the of the following or similar entries if found:

SysProtect

and any other programs you didn't install or don't recognize - if your not sure please ask first

Stop the following processes using Task Manager (press ctrl+alt+del, select the Processes tab, highlight the first process in the list and click End Process). Continue through the list (one at a time) until all processes have been ended. If something isn't found, please continue with the next process in the list.

syp.exe

Run HijackThis, click Do a system scan only, and check the box next to each of these entries if still present. Close all other windows and press Fix checked. If something isn't there, please continue with the next entry in the list.

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/mywaybiz
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.dell4me.com/mywaybiz
O2 - BHO: (no name) - {2EE3AFCA-AEC9-48A8-AF28-DD0F7DF12C84} - C:\WINDOWS\system32\ebevhqtm.dll
O2 - BHO: (no name) - {C3755DF7-2CF4-43E6-AEFD-9CD48A02537F} - C:\WINDOWS\atpigva.dll (file missing)
O2 - BHO: (no name) - {E6CFCFC6-2A09-437C-83F5-F5FBE051355d} - C:\WINDOWS\system32\ebevhqtm.dll
O4 - HKLM\..\Run: [SysProtect] C:\Program Files\SysProtect\syp.exe /scan
O15 - Trusted Zone: http://locator.cdn.imageservr.com
O15 - Trusted Zone: http://scanner.sysprotect.com

Restart your computer to the safe mode:
Restart your computer
Start tapping the F8 key when the computer restarts.
When the start menu opens, choose Safe mode
Press Enter. The computer then begins to start in Safe mode.

Go to the My Computer and delete the following files (if present):
C:\WINDOWS\system32\ebevhqtm.dll

Go to the My Computer and delete the following folders (if present):
C:\Program Files\SysProtect

Run ATF Cleaner Under Main choose: Select All
Click the Empty Selected button.
If you use Firefox browserClick Firefox at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click No at the prompt.
If you use Opera browserClick Opera at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click No at the prompt.
Click Exit on the Main menu to close the program.

Close ALL open Windows / Programs / Folders. Please start AVG Anti-Spyware and run a full scan.
Click on Scanner on the toolbar.
Click on the Settings tab.
Under How to act?
Click on Recommended Action and choose Quarantine from the popup menu.
Under How to scan?
All checkboxes should be ticked.
Under Possibly unwanted software:
All checkboxes should be ticked.
Under Reports:
Select Automatically generate report after every scan and uncheck Only if threats were found.
Under What to scan?
Select Scan every file.
Click on the Scan tab.
Click on Complete System Scan to start the scan process.
Let the program scan the machine.
When the scan has finished, follow the instructions below.
IMPORTANT : Don't click on the "Save Scan Report" button before you did hit the "Apply all Actions" button.
Make sure that Set all elements to: shows Quarantine (1), if not click on the link and choose Quarantine from the popup menu. (2)
At the bottom of the window click on the Apply all Actions button. (3)
http://img509.imageshack.us/img509/4851/scanavgjk2.jpg
When done, click the Save Scan Report button. (4)
Click the Save Report as button.
Save the report to your Desktop.
Right-click the AVG Anti-Spyware Tray Icon and select Exit. Confirm by clicking Yes.
Reboot in Normal Mode.

================

When you're ready, please post the following logs to here:
- AVG's report
- a fresh HijackThis log

yokatta
2007-04-02, 10:01
Thanks so much for your help.

Here are the reports you requested:

HIJACKTHIS

Logfile of HijackThis v1.99.1
Scan saved at 12:57:30 AM, on 4/2/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
c:\program files\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mm_tray.exe
C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Fisher-Price\FP3 Player\sspnotifier.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Program Files\QUICKENW\QWDLLS.EXE
C:\Program Files\palmOne\HOTSYNC.EXE
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wuauclt.exe
C:\DOCUME~1\Craig\LOCALS~1\Temp\Temporary Directory 1 for hijackthis.zip\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://www.comcast.net/toolbar2.0/search/
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://www.comcast.net/toolbar2.0/search/
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Comcast Toolbar - {4E7BD74F-2B8D-469E-93BE-BE2DF4D9AE29} - C:\PROGRA~1\COMCAS~1\COMCAS~1.DLL
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_5_7_0.dll
O3 - Toolbar: Comcast Toolbar - {4E7BD74F-2B8D-469E-93BE-BE2DF4D9AE29} - C:\PROGRA~1\COMCAS~1\COMCAS~1.DLL
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\SoundMAX\SMax4PNP.exe
O4 - HKLM\..\Run: [IAAnotif] C:\Program Files\Intel\Intel Application Accelerator\iaanotif.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [VSOCheckTask] "c:\PROGRA~1\mcafee.com\vso\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [VirusScan Online] c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [mmtask] c:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [SSP Notifier] C:\Program Files\Fisher-Price\FP3 Player\sspnotifier.exe
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Startup: HotSync Manager.lnk = C:\Program Files\palmOne\HOTSYNC.EXE
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Billminder.lnk = C:\Program Files\QUICKENW\BILLMIND.EXE
O4 - Global Startup: Quicken Startup.lnk = C:\Program Files\QUICKENW\QWDLLS.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmatch.com/mmz/openWebRadio.html (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {5D6F45B3-9043-443D-A792-115447494D24} (UnoCtrl Class) - http://messenger.zone.msn.com/EN-US/a-UNO1/GAME_UNO1.cab
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {90051A81-3018-4826-8B38-DD60B6B53F9C} (Snapfish File Upload ActiveX Control) - http://www.costcophotocenter.com/CostcoUpload.cab
O16 - DPF: {9AA73F41-EC64-489E-9A73-9CD52E528BC4} (ZoneAxRcMgr Class) - http://messenger.zone.msn.com/binary/ZAxRcMgr.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab
O16 - DPF: {ED28050F-D713-43BA-A376-DCC5C35407D5} (MsnMusicAx Class) - http://beta.entimg.msn.com/client/msnmusax2729.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/controls/msnchat45.cab
O16 - DPF: {F6BF0D00-0B2A-4A75-BF7B-F385591623AF} (Solitaire Showdown Class) - http://messenger.zone.msn.com/binary/SolitaireShowdown.cab31267.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: IAA Event Monitor (IAANTMon) - Intel Corporation - C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee.com McShield (McShield) - Unknown owner - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee.com VirusScan Online Realtime Engine (MCVSRte) - Networks Associates Technology, Inc - c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe

yokatta
2007-04-02, 10:03
AVG


---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------

+ Created at: 12:51:53 AM 4/2/2007

+ Scan result:



C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP617\A0249752.dll -> Adware.ErrorSafe : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP591\A0247516.dll -> Adware.HotBar : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP609\A0249067.dll -> Adware.HotBar : Cleaned with backup (quarantined).
C:\VundoFix Backups\ctntigss.exe.bad -> Adware.Searchcolor : Cleaned with backup (quarantined).
C:\VundoFix Backups\eothsqcx.exe.bad -> Adware.Searchcolor : Cleaned with backup (quarantined).
C:\VundoFix Backups\fcrtphbw.exe.bad -> Adware.Searchcolor : Cleaned with backup (quarantined).
C:\VundoFix Backups\oosqwqhg.exe.bad -> Adware.Searchcolor : Cleaned with backup (quarantined).
C:\VundoFix Backups\pghnqxon.exe.bad -> Adware.Searchcolor : Cleaned with backup (quarantined).
C:\WINDOWS\SYSTEM32\cyxbumfk.exe -> Adware.Searchcolor : Cleaned with backup (quarantined).
C:\WINDOWS\SYSTEM32\gnvslpar.exe -> Adware.Searchcolor : Cleaned with backup (quarantined).
C:\WINDOWS\SYSTEM32\lhkvybtm.exe -> Adware.Searchcolor : Cleaned with backup (quarantined).
C:\WINDOWS\SYSTEM32\lrtnqpcv.exe -> Adware.Searchcolor : Cleaned with backup (quarantined).
C:\WINDOWS\SYSTEM32\mrbwiigw.exe -> Adware.Searchcolor : Cleaned with backup (quarantined).
C:\WINDOWS\SYSTEM32\xiwsfxrv.exe -> Adware.Searchcolor : Cleaned with backup (quarantined).
C:\Program Files\Common Files\SysProtect\PCheck.dll -> Adware.SysProtect : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\AppID\{4F5E5D72-C915-4f3b-908B-527D064B0FAA} -> Adware.SysProtect : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\CLSID\{EF130E77-0A34-4365-BFB7-218FD3DDCD5F} -> Adware.SysProtect : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\Interface\{02946FD1-2D99-46E6-A790-3A089714EDD9} -> Adware.SysProtect : Cleaned with backup (quarantined).
HKLM\SOFTWARE\SysProtect -> Adware.SysProtect : Cleaned with backup (quarantined).
HKU\S-1-5-21-2784391817-2888585731-719527861-1006\Software\SysProtect -> Adware.SysProtect : Cleaned with backup (quarantined).
C:\WINDOWS\SYSTEM32\ddayx.dll -> Adware.Virtumonde : Cleaned with backup (quarantined).
C:\WINDOWS\SYSTEM32\jkkjg.dll -> Adware.Virtumonde : Cleaned with backup (quarantined).
C:\WINDOWS\SYSTEM32\mljjk.dll -> Adware.Virtumonde : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP617\A0249737.exe -> Adware.WinAnti : Cleaned with backup (quarantined).
HKU\S-1-5-21-2784391817-2888585731-719527861-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2178F3FB-2560-458F-BDEE-631E2FE0DFE4} -> Adware.WinAntiVirus : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP617\A0249742.exe -> Adware.Winfixer : Cleaned with backup (quarantined).
C:\OLDdrive\Documents and Settings\Craig\Local Settings\Temp\btlink\hblink.cab/btlink.dll -> Adware.Wintol : Cleaned with backup (quarantined).
C:\Documents and Settings\Tay\Desktop\SmileyCentralFFSetup2.0.4.0.exe -> Dropper.Small : Cleaned with backup (quarantined).
C:\RECYCLER\S-1-5-21-2784391817-2888585731-719527861-1007\Dc91.exe -> Dropper.Small : Cleaned with backup (quarantined).
C:\RECYCLER\S-1-5-21-2784391817-2888585731-719527861-1007\Dc92.exe -> Dropper.Small : Cleaned with backup (quarantined).
C:\RECYCLER\S-1-5-21-2784391817-2888585731-719527861-1007\Dc93.exe -> Dropper.Small : Cleaned with backup (quarantined).
C:\RECYCLER\S-1-5-21-2784391817-2888585731-719527861-1007\Dc94.exe -> Dropper.Small : Cleaned with backup (quarantined).
C:\RECYCLER\S-1-5-21-2784391817-2888585731-719527861-1007\Dc95.exe -> Dropper.Small : Cleaned with backup (quarantined).
C:\RECYCLER\S-1-5-21-2784391817-2888585731-719527861-1007\Dc96.exe -> Dropper.Small : Cleaned with backup (quarantined).
:mozilla.238:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.100:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.101:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.102:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.103:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.104:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.105:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.106:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.124:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.442:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.448:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.567:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.57:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.58:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.59:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.60:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.61:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.62:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.63:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.64:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.65:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.66:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.677:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.67:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.686:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.689:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.68:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.69:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.70:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.71:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.72:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.73:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.74:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.75:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.76:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.77:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.78:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.79:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.80:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.818:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.81:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.821:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.82:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.83:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.844:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.84:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.85:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.86:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.87:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.88:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.89:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.90:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.91:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.92:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.93:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.94:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.95:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.96:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

yokatta
2007-04-02, 10:04
AVG cont:


:mozilla.97:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.98:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.99:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
C:\OLDdrive\Documents and Settings\Craig\Cookies\craig@2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\OLDdrive\Documents and Settings\Craig\Local Settings\Temp\Cookies\craig@112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.234:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.235:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.655:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.675:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.
:mozilla.899:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.
:mozilla.900:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.
:mozilla.197:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.198:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.202:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.203:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.204:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.205:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.589:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.669:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.670:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@zero.ads360[2].txt -> TrackingCookie.Ads360 : Cleaned.
:mozilla.632:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.633:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.260:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.261:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.112:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.113:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.114:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.115:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.116:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.14:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.15:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.16:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.18:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.19:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@rd.advertising[1].txt -> TrackingCookie.Advertising : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@servedby.advertising[4].txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.17:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.79:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\anyuser@bankads.txt -> TrackingCookie.Bankads : Cleaned.
:mozilla.283:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Bfast : Cleaned.
:mozilla.284:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Bfast : Cleaned.
:mozilla.384:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.385:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.386:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.387:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.187:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.188:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.189:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.190:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.191:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.192:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@ads.clickagents[2].txt -> TrackingCookie.Clickagents : Cleaned.
:mozilla.323:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.324:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.325:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Com : Cleaned.
C:\OLDdrive\Documents and Settings\Craig\Local Settings\Temp\Cookies\craig@com[2].txt -> TrackingCookie.Com : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@com[1].txt -> TrackingCookie.Com : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@com[2].txt -> TrackingCookie.Com : Cleaned.
:mozilla.112:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Coremetrics : Cleaned.
:mozilla.287:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Coremetrics : Cleaned.
C:\OLDdrive\Documents and Settings\Craig\Cookies\craig@www.articcat.com.19828.fb.dbbsrv[1].txt -> TrackingCookie.Dbbsrv : Cleaned.
C:\OLDdrive\Documents and Settings\Craig\Cookies\craig@stat.dealtime[1].txt -> TrackingCookie.Dealtime : Cleaned.
C:\OLDdrive\Documents and Settings\Craig\Local Settings\Temp\Cookies\craig@dealtime[1].txt -> TrackingCookie.Dealtime : Cleaned.
C:\OLDdrive\Documents and Settings\Craig\Local Settings\Temp\Cookies\craig@stat.dealtime[1].txt -> TrackingCookie.Dealtime : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@dealtime[1].txt -> TrackingCookie.Dealtime : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@dealtime[2].txt -> TrackingCookie.Dealtime : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@epinions.dealtime[1].txt -> TrackingCookie.Dealtime : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@homestore.dealtime[1].txt -> TrackingCookie.Dealtime : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@www.dealtime[2].txt -> TrackingCookie.Dealtime : Cleaned.
:mozilla.11:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.70:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@ads_enliven.txt -> TrackingCookie.Enliven : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@enliven.txt -> TrackingCookie.Enliven : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@epilot[1].txt -> TrackingCookie.Epilot : Cleaned.
:mozilla.706:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.707:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.40:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.41:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.42:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.43:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.241:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.268:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.661:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.200:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.201:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.23:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.24:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.25:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.26:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.27:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@earth.goclick[1].txt -> TrackingCookie.Goclick : Cleaned.
:mozilla.197:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.635:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.233:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.238:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.239:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.338:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.527:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.528:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.529:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.530:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.541:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.542:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.552:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.624:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.642:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
C:\OLDdrive\Documents and Settings\Craig\Cookies\craig@ehg-buyseasons.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@ehg-dig.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@ehg-dig.hitbox[4].txt -> TrackingCookie.Hitbox : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@ehg-sportsline.hitbox[3].txt -> TrackingCookie.Hitbox : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@ehg.hitbox[3].txt -> TrackingCookie.Hitbox : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@ehg.hitbox[4].txt -> TrackingCookie.Hitbox : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@ehg.hitbox[5].txt -> TrackingCookie.Hitbox : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@hg1.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@hg1.hitbox[3].txt -> TrackingCookie.Hitbox : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\anyuser@ads08_hyperbanner.txt -> TrackingCookie.Hyperbanner : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@ads18.hyperbanner[1].txt -> TrackingCookie.Hyperbanner : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@hypertracker[2].txt -> TrackingCookie.Hypertracker : Cleaned.

yokatta
2007-04-02, 10:05
AVG cont:

:mozilla.202:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
:mozilla.203:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
:mozilla.593:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
:mozilla.594:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
:mozilla.680:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Information : Cleaned.
:mozilla.902:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Information : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\anyuser@ads.link4ads[1].txt -> TrackingCookie.Link4ads : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\anyuser@ads.link4ads[2].txt -> TrackingCookie.Link4ads : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\anyuser@ads_link4ads.txt -> TrackingCookie.Link4ads : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@ads.link4ads[1].txt -> TrackingCookie.Link4ads : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@ads.link4ads[3].txt -> TrackingCookie.Link4ads : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@ads.link4ads[4].txt -> TrackingCookie.Link4ads : Cleaned.
:mozilla.301:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.302:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.303:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.306:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.363:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.364:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.365:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.471:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.472:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.683:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.684:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.685:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.686:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.903:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.904:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.125:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.126:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.678:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Msn : Cleaned.
:mozilla.679:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Msn : Cleaned.
C:\OLDdrive\Documents and Settings\Craig\Cookies\craig@www.myaffiliateprogram[1].txt -> TrackingCookie.Myaffiliateprogram : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@www.myaffiliateprogram[1].txt -> TrackingCookie.Myaffiliateprogram : Cleaned.
:mozilla.103:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.104:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.105:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.109:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.110:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.111:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.351:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.478:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.573:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Paypal : Cleaned.
:mozilla.784:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Paypal : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\anyuser@www.paypal[1].txt -> TrackingCookie.Paypal : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@www.paypal[1].txt -> TrackingCookie.Paypal : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@www.paypal[2].txt -> TrackingCookie.Paypal : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@www.paypal[3].txt -> TrackingCookie.Paypal : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@www.paypal[4].txt -> TrackingCookie.Paypal : Cleaned.
:mozilla.241:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.242:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.243:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.244:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.93:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.94:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.95:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.96:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.97:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@www.popuptraffic[1].txt -> TrackingCookie.Popuptraffic : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@www.popuptraffic[3].txt -> TrackingCookie.Popuptraffic : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\anyuser@gm_preferences.txt -> TrackingCookie.Preferences : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\anyuser@preferences[1].txt -> TrackingCookie.Preferences : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@gm_preferences.txt -> TrackingCookie.Preferences : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@preferences[1].txt -> TrackingCookie.Preferences : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@preferences[2].txt -> TrackingCookie.Preferences : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@preferences[3].txt -> TrackingCookie.Preferences : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@preferences[4].txt -> TrackingCookie.Preferences : Cleaned.
:mozilla.794:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Pro-market : Cleaned.
:mozilla.795:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Pro-market : Cleaned.
:mozilla.796:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Pro-market : Cleaned.
:mozilla.496:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned.
:mozilla.497:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned.
:mozilla.198:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.199:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.246:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.247:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.248:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.249:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\anyuser@realguide.real[1].txt -> TrackingCookie.Real : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\anyuser@www.real[1].txt -> TrackingCookie.Real : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\anyuser@www.real[2].txt -> TrackingCookie.Real : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@real[2].txt -> TrackingCookie.Real : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@realguide.real[1].txt -> TrackingCookie.Real : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@realguide.real[2].txt -> TrackingCookie.Real : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@realguide.real[3].txt -> TrackingCookie.Real : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@www.real[1].txt -> TrackingCookie.Real : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@www.real[2].txt -> TrackingCookie.Real : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@www.real[3].txt -> TrackingCookie.Real : Cleaned.
:mozilla.118:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.119:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.120:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.28:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.29:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.30:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.31:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.32:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.33:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.34:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.35:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.36:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.37:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.38:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.39:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\anyuser@realmedia.txt -> TrackingCookie.Realmedia : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@icover.realmedia[1].txt -> TrackingCookie.Realmedia : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@realmedia.txt -> TrackingCookie.Realmedia : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@retaildirect.realmedia[1].txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.513:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Revenue : Cleaned.
:mozilla.77:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.78:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.810:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.811:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.812:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.813:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.814:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.815:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.867:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
:mozilla.125:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.289:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.290:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.291:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.292:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.293:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.294:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.295:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.296:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.297:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.298:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.299:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.300:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.298:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.344:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.345:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.346:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.

yokatta
2007-04-02, 10:05
AVG cont:

:mozilla.347:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.348:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.349:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.526:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.527:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.528:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.529:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.530:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.531:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.642:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.793:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.794:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.795:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.653:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.654:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.836:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
C:\OLDdrive\Documents and Settings\Craig\Cookies\craig@specificpop[1].txt -> TrackingCookie.Specificpop : Cleaned.
:mozilla.454:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.457:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.458:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.194:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.195:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.196:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.199:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.200:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.201:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.558:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.559:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.584:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.560:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Targetnet : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\anyuser@track-star[1].txt -> TrackingCookie.Track-star : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\anyuser@track-star[3].txt -> TrackingCookie.Track-star : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@track-star.txt -> TrackingCookie.Track-star : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@track-star[1].txt -> TrackingCookie.Track-star : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@track-star[2].txt -> TrackingCookie.Track-star : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@track-star[3].txt -> TrackingCookie.Track-star : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@track-star[4].txt -> TrackingCookie.Track-star : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@track-star[5].txt -> TrackingCookie.Track-star : Cleaned.
:mozilla.44:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.45:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.46:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.47:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.48:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.49:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.50:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.51:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.52:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.64:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.65:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.66:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.67:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.68:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.69:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.71:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.72:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.73:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.121:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.22:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@www.web-stat[1].txt -> TrackingCookie.Web-stat : Cleaned.
C:\OLDdrive\old c drive\WINDOWS\Profiles\Craig\Cookies\craig@www.web-stat[3].txt -> TrackingCookie.Web-stat : Cleaned.
:mozilla.182:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
:mozilla.376:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.377:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.378:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.379:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.380:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.381:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.382:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.383:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.74:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.75:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.76:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.102:C:\Documents and Settings\Tay\Application Data\Mozilla\Firefox\Profiles\ou8lny6g.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.255:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.256:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.257:C:\Documents and Settings\Craig\Application Data\Mozilla\Firefox\Profiles\f57fhr4p.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
C:\VundoFix Backups\esfljphg.dll.bad -> Trojan.BHO.g : Cleaned with backup (quarantined).
C:\VundoFix Backups\rmxbgxrb.dll.bad -> Trojan.BHO.g : Cleaned with backup (quarantined).
C:\VundoFix Backups\jpwrdlse.exe.bad -> Trojan.Small.ju : Cleaned with backup (quarantined).
C:\VundoFix Backups\mwnrltlx.exe.bad -> Trojan.Small.ju : Cleaned with backup (quarantined).
C:\Documents and Settings\Tay\Shared\01 Track 1, dick.wma -> Trojan.Wimad.a : Cleaned with backup (quarantined).


::Report end

Mr_JAk3
2007-04-02, 21:10
Looks much better now :)

1. Download this file - combofix.exe (http://download.bleepingcomputer.com/sUBs/ComboFix.exe)
2. Double click combofix.exe & follow the prompts.
3. When finished, it shall produce a log for you. Post that log in your next reply

Note:
Do not mouseclick combofix's window whilst it's running. That may cause it to stall

yokatta
2007-04-08, 07:34
Thanks once again for your time and help. I have done as you asked and here is the log:

"Craig" - 07-04-07 22:29:54 Service Pack 2
ComboFix 07-04-05 - Running from: "C:\Program Files\Mozilla Firefox"


(((((((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))


C:\WINDOWS\system32\vbzip11.dll


((((((((((((((((((((((((((((((( Files Created from 2007-03-07 to 2007-04-07 ))))))))))))))))))))))))))))))))))


2007-04-01 20:13 3,968 --a------ C:\WINDOWS\SYSTEM32\DRIVERS\AvgAsCln.sys
2007-03-23 00:14 <DIR> d-------- C:\malware
2007-03-22 20:43 <DIR> d--hs---- C:\found.002


(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))))))


2007-03-08 09:36 577536 --a------ C:\WINDOWS\SYSTEM32\user32.dll
2007-03-08 09:36 40960 --a------ C:\WINDOWS\SYSTEM32\mf3216.dll
2007-03-08 09:36 281600 --a------ C:\WINDOWS\SYSTEM32\gdi32.dll
2007-03-08 07:47 1843584 --a------ C:\WINDOWS\SYSTEM32\win32k.sys
2007-03-03 00:55 -------- d-------- C:\Program Files\limewire
2007-01-08 20:01 17408 --a------ C:\WINDOWS\SYSTEM32\corpol.dll


(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))

*Note* empty entries & legit default entries are not shown

[HKEY_CURRENT_USER\software\microsoft\windows\currentversion\run]
"DellSupport"="\"C:\\Program Files\\Dell Support\\DSAgnt.exe\" /startup"
"ctfmon.exe"="C:\\WINDOWS\\system32\\ctfmon.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run]
"SoundMAXPnP"="C:\\Program Files\\Analog Devices\\SoundMAX\\SMax4PNP.exe"
"IAAnotif"="C:\\Program Files\\Intel\\Intel Application Accelerator\\iaanotif.exe"
"ATIPTA"="C:\\Program Files\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe"
"PCMService"="\"C:\\Program Files\\Dell\\Media Experience\\PCMService.exe\""
"VSOCheckTask"="\"c:\\PROGRA~1\\mcafee.com\\vso\\mcmnhdlr.exe\" /checktask"
"MCAgentExe"="c:\\PROGRA~1\\mcafee.com\\agent\\mcagent.exe"
"MCUpdateExe"="c:\\PROGRA~1\\mcafee.com\\agent\\mcupdate.exe"
"MMTray"="C:\\Program Files\\MUSICMATCH\\Musicmatch Jukebox\\mm_tray.exe"
"UpdateManager"="\"C:\\Program Files\\Common Files\\Sonic\\Update Manager\\sgtray.exe\" /r"
"dla"="C:\\WINDOWS\\system32\\dla\\tfswctrl.exe"
"VirusScan Online"="c:\\PROGRA~1\\mcafee.com\\vso\\mcvsshld.exe"
"MPFExe"="C:\\PROGRA~1\\McAfee.com\\PERSON~1\\MpfTray.exe"
"TkBellExe"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot"
"mmtask"="c:\\Program Files\\MusicMatch\\MusicMatch Jukebox\\mmtask.exe"
"SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.5.0_06\\bin\\jusched.exe"
"QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"iTunesHelper"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\""
"SSP Notifier"="C:\\Program Files\\Fisher-Price\\FP3 Player\\sspnotifier.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\IMAIL]
"Installed"="1"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\run\OptionalComponents\MSFS]
"Installed"="1"

[HKEY_USERS\.default\software\microsoft\windows\currentversion\runonce]
"RunNarrator"="Narrator.exe"


[HKEY_LOCAL_MACHINE\software\microsoft\windows\currentversion\explorer\shellexecutehooks]
"{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="AVG Anti-Spyware 7.5"

[HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"

HKEY_LOCAL_MACHINE\system\currentcontrolset\control\lsa
Authentication Packages REG_MULTI_SZ msv1_0\0\0
Security Packages REG_MULTI_SZ kerberos\0msv1_0\0schannel\0wdigest\0\0
Notification Packages REG_MULTI_SZ scecli\0\0

[HKEY_LOCAL_MACHINE\software\Microsoft\Windows NT\CurrentVersion\Svchost]
HTTPFilter REG_MULTI_SZ HTTPFilter\0\0
LocalService REG_MULTI_SZ Alerter\0WebClient\0LmHosts\0RemoteRegistry\0upnphost\0SSDPSRV\0\0
NetworkService REG_MULTI_SZ DnsCache\0\0
DcomLaunch REG_MULTI_SZ DcomLaunch\0TermService\0\0
rpcss REG_MULTI_SZ RpcSs\0\0
imgsvc REG_MULTI_SZ StiSvc\0\0
termsvcs REG_MULTI_SZ TermService\0\0



Contents of the 'Scheduled Tasks' folder
C:\WINDOWS\tasks\AppleSoftwareUpdate.job


********************************************************************

catchme 0.2 W2K/XP/Vista - userland rootkit detector by Gmer, 17 October 2006
http://www.gmer.net

scanning hidden processes ...

scanning hidden services ...

scanning hidden autostart entries ...

scanning hidden files ...

scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 0

********************************************************************

Completion time: 07-04-07 22:33:42
C:\ComboFix-quarantined-files.txt ... 07-04-07 22:33

Mr_JAk3
2007-04-08, 22:25
Ok looks good now :)

Do you konw what this folder is?
C:\malware

How is the computer running now? Any issues ?

yokatta
2007-04-10, 05:12
Running much better, Thanks to you! The malware folder is where I have kept some of the downloaded software. What are some good options to prevent further problems?

Thanks again

Mr_JAk3
2007-04-10, 09:45
Hi again, it is looking clean now :)

Now you can clean AVG's Quarantine:
Open AVG Anti-Spyware
Click Infections
Click Quarantine tab
Click Select all
Click Remove finally
Close the program
You can remove the tools we used.

Then you should update your Java to the latest version (6u1) Start
Control Panel
Add/Remove Programs
Delete the old Java, J2SE Runtime Environment 5.0 Update 6
Download the latest version of Java Runtime Environment JRE 6u1 (http://java.sun.com/javase/downloads/index.jsp).
Scroll down to where it says "The J2SE Runtime Environment (JRE) allows end-users to run Java applications."
Click the "Download" button to the right.
Check the box that says: "Accept License Agreement."
The page will refresh.
Click on the link to download Windows Offline Installation with or without Multi-language and save to your desktop.
Install it

Now you can make your hidden files hidden again.
Go to My Computer
Select the Tools menu and click Folder Options
Click the View tab.
Checkmark the "Display the contents of system folders"
Under the Hidden files and folders select "Show hidden files and folders"
Check "Hide protected operating system files"
Click Apply and then the OK and close My Computer.

=============

Now that you seem to be clean, please follow these simple steps in order to keep your computer clean and secure:
Clear your system restore (http://www.microsoft.com/windowsxp/using/helpandsupport/learnmore/tips/mcgill1.mspx)
This will clear the system restore folders from possible malware that was left behind during the cleaning process.

Use ATF Cleaner (http://www.atribune.org/ccount/click.php?id=1)
Download and install ATF Cleaner. Clean your temporary files & folders with it regularly.

Use Ad-Aware (http://www.bleepingcomputer.com/forums/?showtutorial=48)
Download and install Ad-Aware. Update it and scan your computer regularly with it.

Use AVG Anti-Spyware (http://www.ewido.net/en/)
Download and install AVG Anti-Spyware. Update it and scan your computer regularly with it.

Use Spybot S&D (http://www.bleepingcomputer.com/forums/?showtutorial=43)
Download and install Spybot S&D. Update it and scan your computer regularly with it.

Install SpywareBlaster (http://www.bleepingcomputer.com/tutorials/tutorial49.html)
SpywareBlaster will prevent spyware from being installed.

Install MVPS Hosts file (http://mvps.org/winhelp2002/hosts.htm)
This prevents your computer from connecting to harmful sites.

Use Firefox browser (http://www.mozilla.org)
Firefox is faster and more secure browser than Internet Explorer.

Keep your systen up-to-date (http://windowsupdate.microsoft.com)
Visit Windows Update regularly. How to enable Automatic Updates? (http://www.bleepingcomputer.com/tutorials/tutorial35.html)

Keep your antivirus (http://forum.malwareremoval.com/viewtopic.php?p=53#53) and firewall (http://forum.malwareremoval.com/viewtopic.php?p=56#56) up-to-date
Scan your computer regularly with you antivirus software.

Read this article by TonyKlein (http://forums.spybot.info/showthread.php?t=279)
So how did I get infected in the first place?

Stand Up and Be Counted ! (http://www.malwarecomplaints.info/index.php)
The site offers people who have been (or are) victims of malware the opportunity to document their story and, in that way, launch a complaint against the malware and the makers of the malware.


Stay clean and be safe ;)

yokatta
2007-04-15, 18:36
Thank you so much for your help. You've been awesome! I have one last question if that's ok. When I bought the computer I got a 90 day free version of MaAfee. It is probably a descent program, but has been very pesky and even had to be turned off because it wants to delete hijackthis.exe. It constantly inerupts me and asks for update etc. Anyway, my question is what is the best way to get rid of it, or should I? Thanks again for all your help!

Mr_JAk3
2007-04-15, 21:46
Hello :)
Thanks :D:

Well Hijackthis detected as a baddie is a false positive from McAfee. You can use McAfee the 90 days and uninstall it (or buy it) or uninstall the software now via Control Panel -> Add/Remove Programs.

Just download one alternative before the uninstallation, you must have one antivirus.

These are good (free) antiviruses: AVG (http://free.grisoft.com)
Antivir (http://www.free-av.com)
Avast (http://www.avast.com)

Do the installation & uninstallation procedure in offline mode (unplug from the internet) so that you don't get infected when antivirus isn't running.

:bigthumb:

tashi
2007-04-23, 19:08
Glad we could help, as the problem appears to be resolved this topic has been archived.

If you need it re-opened, please send me a private message (pm) and provide a link to the thread. Applies only to the original poster, anyone else with similar problems please start a new topic.