PDA

View Full Version : cmd.exe in system32



aliensexist200
2006-06-23, 04:07
Dear anyone who can help,
Popups have been invading my desktop for the past 24 hours as i struggle to get them off. After running an anti-spy program, spybot s&d, symantec antivirus, and X-cleaner, i found that i had multiple cmdservice files. After trying to delete these and doing many other things, a popup informed me i had Command as a program. I went to add/remove programs and did the proper things to get rid of it and it keeps coming back. Using symantec, i found i had corrupt system32 files. after exploring, I found cmd.exe. After deleting, it will automatically appear in the folder within 7 or so seconds. I have run abou 50 scans of anything today and desperatly need help. My father (a software engineer) is conveniently away on business and my 15year old self has been home all day trying to fix this. Please help me.

tashi
2006-06-23, 05:45
Hello.

Please follow the instructions in this sticky topic:
BEFORE you post and who will advise you. Preliminary Steps (http://forums.spybot.info/showthread.php?t=288)

If you are having too much difficulty to run a Spybot-S&D scan, just run one of the on-line anti virus scanners; & download and run HJT as per the instructions.

Copy paste the two logs requested into this topic and a helper will assist you as soon as available. :)

aliensexist200
2006-06-24, 02:35
heres my HJT log after doing everything in "before you post".

Logfile of HijackThis v1.99.1
Scan saved at 8:32:21 PM, on 6/23/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5346.0005)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\V2ViZXI\command.exe
C:\Program Files\Network Monitor\netmon.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\rcss.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AlienGUIse\wbload.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\system32\devldr32.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Internet Explorer\wiexplore.exe
c:\dfndra_1.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\HJT\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/?.home=ytie
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=54729
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://searchbar.findthewebsiteyouneed.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=55245&clcid={SUB_CLCID}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://searchbar.findthewebsiteyouneed.com
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: ToolBar888 - {0E1230F8-EA50-42A9-983C-D22ABC2EED3B} - C:\Program Files\ToolBar888\MyToolBar.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [newname] c:\\nwnm_1.exe
O4 - HKLM\..\Run: [defender] c:\\dfndra_1.exe
O4 - HKLM\..\Run: [keyboard] c:\\kybrd_1.exe
O4 - HKLM\..\RunServices: [Microsoft Service] explorer.exe
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {288C5F13-7E52-4ADA-A32E-F5BF9D125F99} (CR64Loader Object) - http://www.miniclip.com/supergerball/miniclipGameLoader.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1124754066522
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www3.ca.com/securityadvisor/virusinfo/webscan.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {B49C4597-8721-4789-9250-315DFBD9F525} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/radio/ampx/ampx2.6.1.11_en_dl.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{0CBA8AB9-F679-4853-906D-693A5EF14067}: NameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{0FB8D926-171A-466B-AD80-BF8772DBCD0B}: NameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{7EF40E9A-EAEA-4448-8187-2155EB76FBBB}: NameServer = 192.168.0.1
O20 - AppInit_DLLs: wbsys.dll C:\WINDOWS\system32\rundll32.dll
O20 - Winlogon Notify: Controls Folder - C:\WINDOWS\system32\i8nmli5118.dll (file missing)
O20 - Winlogon Notify: IPConfTSP - C:\WINDOWS\system32\fse.dll
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\system32\NavLogon.dll
O20 - Winlogon Notify: WB - C:\Program Files\AlienGUIse\fastload.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\V2ViZXI\command.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: Network Monitor - Unknown owner - C:\Program Files\Network Monitor\netmon.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Remote Procedure Call Service (RPCS) - Unknown owner - C:\WINDOWS\rcss.exe
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe

I hope this is enough. The online scanners that were recommended in the "before you post" wouldnt work. I dont think it was user error but if i can get one to work ill post the result. After using S&D in safe modfe, it said all problems had been fixed, but those same problems keep showing up, it it keeps telling me they are fixed. I will post them as well. Please help!

aliensexist200
2006-06-24, 03:35
i saved the spybot s&d report, but it is insanely long. I fi should post that please tell me.

aliensexist200
2006-06-24, 16:42
I posted on here about 5 days ago and was told the proper things to do before i posted. I got no response after replying in that thread so here is everything that it said.:)

Popups have been invading my desktop for the past 24 hours as i struggle to get them off. After running an anti-spy program, spybot s&d, symantec antivirus, and X-cleaner, i found that i had multiple cmdservice files. After trying to delete these and doing many other things, a popup informed me i had Command as a program. I went to add/remove programs and did the proper things to get rid of it and it keeps coming back. Using symantec, i found i had corrupt system32 files. after exploring, I found cmd.exe. After deleting, it will automatically appear in the folder within 7 or so seconds. I have run abou 50 scans of anything today and desperatly need help.

heres my HJT log after doing everything in "before you post".

Logfile of HijackThis v1.99.1
Scan saved at 8:32:21 PM, on 6/23/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5346.0005)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\V2ViZXI\command.exe
C:\Program Files\Network Monitor\netmon.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\rcss.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\AlienGUIse\wbload.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\WINDOWS\system32\devldr32.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Internet Explorer\wiexplore.exe
c:\dfndra_1.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\HJT\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/?.home=ytie
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=54729
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://searchbar.findthewebsiteyouneed.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=55245&clcid={SUB_CLCID}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://searchbar.findthewebsiteyouneed.com
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: ToolBar888 - {0E1230F8-EA50-42A9-983C-D22ABC2EED3B} - C:\Program Files\ToolBar888\MyToolBar.dll
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [newname] c:\\nwnm_1.exe
O4 - HKLM\..\Run: [defender] c:\\dfndra_1.exe
O4 - HKLM\..\Run: [keyboard] c:\\kybrd_1.exe
O4 - HKLM\..\RunServices: [Microsoft Service] explorer.exe
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {288C5F13-7E52-4ADA-A32E-F5BF9D125F99} (CR64Loader Object) - http://www.miniclip.com/supergerball...GameLoader.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsu...?1124754066522
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www3.ca.com/securityadvisor/v...fo/webscan.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/actives...ree/asinst.cab
O16 - DPF: {B49C4597-8721-4789-9250-315DFBD9F525} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/radio/amp...1.11_en_dl.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{0CBA8AB9-F679-4853-906D-693A5EF14067}: NameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{0FB8D926-171A-466B-AD80-BF8772DBCD0B}: NameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{7EF40E9A-EAEA-4448-8187-2155EB76FBBB}: NameServer = 192.168.0.1
O20 - AppInit_DLLs: wbsys.dll C:\WINDOWS\system32\rundll32.dll
O20 - Winlogon Notify: Controls Folder - C:\WINDOWS\system32\i8nmli5118.dll (file missing)
O20 - Winlogon Notify: IPConfTSP - C:\WINDOWS\system32\fse.dll
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\system32\NavLogon.dll
O20 - Winlogon Notify: WB - C:\Program Files\AlienGUIse\fastload.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\V2ViZXI\command.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: Network Monitor - Unknown owner - C:\Program Files\Network Monitor\netmon.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Remote Procedure Call Service (RPCS) - Unknown owner - C:\WINDOWS\rcss.exe
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe

I hope this is enough. The online scanners that were recommended in the "before you post" wouldnt work. I dont think it was user error but if i can get one to work ill post the result. After using S&D in safe modfe, it said all problems had been fixed, but those same problems keep showing up, it it keeps telling me they are fixed. I will post them as well. Please help!

p.s. I saved the Spybot s&d report as well, but its insanely long. Please let me know if I should include this in a later post. Thanks!:)

tashi
2006-06-24, 17:11
I posted on here about 5 days ago

First post:2006-06-22 20:07

I merged your two topics, sorry for the wait but the forum is very busy with many requesting assistance.

Please see:
If you have waited FOUR days for advice post here. (http://forums.spybot.info/showthread.php?p=4836#post4836) :)

little eagle
2006-06-26, 05:50
Download Ewido Security Suite (http://www.ewido.net/en/download/) it is a trial version of the program.
Install ewido security suite
Launch ewido, there should be an icon on your desktop double-click it.
The program will now go to the main screen
You will need to update ewido to the latest definition files.
On the left hand side of the main screen click update
Then click on Start Update
The update will start and a progress bar will show the updates being installed.
If you are having problems with the updater, you can use this link to manually update Ewido.
Ewido manual updates (http://www.ewido.net/en/download/updates/)

Once the updates are installed do the following:
Click on scanner
Click on Complete System Scan and the scan will begin.
During some scans with ewido it is finding cases of false positives.
You will need to step through the process of cleaning files one-by-one.
If ewido detects a file you KNOW to be legitimate, select none as the action.
DO NOT select "Perform action on all infections"
If you are unsure of any entry found select none for now.

Once the scan has completed, there will be a button located on the bottom of the screen named Save report
Click Save report.
Save the report .txt file to your desktop.
Now close ewido security suite and post the results here.
With a new hijackthis log.

aliensexist200
2006-06-26, 07:41
Logfile of HijackThis v1.99.1
Scan saved at 1:38:58 AM, on 6/26/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5346.0005)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\V2ViZXI\command.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\Program Files\Network Monitor\netmon.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\rcss.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\AlienGUIse\wbload.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\devldr32.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\ipwins\ipwins.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\ewido\guard.exe
C:\Program Files\ewido\ewido.exe
C:\HJT\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://searchbar.findthewebsiteyouneed.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://searchbar.findthewebsiteyouneed.com
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://searchbar.findthewebsiteyouneed.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.findthewebsiteyouneed.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=54729
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://searchbar.findthewebsiteyouneed.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=55245&clcid={SUB_CLCID}
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://searchbar.findthewebsiteyouneed.com
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O3 - Toolbar: (no name) - {0E1230F8-EA50-42A9-983C-D22ABC2EED3B} - (no file)
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [keyboard] C:\\kybrd_1.exe
O4 - HKLM\..\Run: [IpWins] C:\Program Files\ipwins\ipwins.exe
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido\ewido.exe" /minimized
O4 - HKLM\..\RunServices: [Microsoft Service] explorer.exe
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {288C5F13-7E52-4ADA-A32E-F5BF9D125F99} (CR64Loader Object) - http://www.miniclip.com/supergerball/miniclipGameLoader.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1124754066522
O16 - DPF: {7B297BFD-85E4-4092-B2AF-16A91B2EA103} (WScanCtl Class) - http://www3.ca.com/securityadvisor/virusinfo/webscan.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {B49C4597-8721-4789-9250-315DFBD9F525} (IWinAmpActiveX Class) - http://cdn.digitalcity.com/radio/ampx/ampx2.6.1.11_en_dl.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{0CBA8AB9-F679-4853-906D-693A5EF14067}: NameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{0FB8D926-171A-466B-AD80-BF8772DBCD0B}: NameServer = 192.168.0.1
O17 - HKLM\System\CCS\Services\Tcpip\..\{7EF40E9A-EAEA-4448-8187-2155EB76FBBB}: NameServer = 192.168.0.1
O20 - AppInit_DLLs: wbsys.dll C:\WINDOWS\system32\rundll32.dll
O20 - Winlogon Notify: Controls Folder - C:\WINDOWS\system32\i8nmli5118.dll (file missing)
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\system32\NavLogon.dll
O20 - Winlogon Notify: Run - C:\WINDOWS\system32\fse.dll
O20 - Winlogon Notify: WB - C:\Program Files\AlienGUIse\fastload.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Command Service (cmdService) - Unknown owner - C:\WINDOWS\V2ViZXI\command.exe (file missing)
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Remote Procedure Call Service (RPCS) - Unknown owner - C:\WINDOWS\rcss.exe (file missing)
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe

aliensexist200
2006-06-26, 07:43
Sorry but the report was too long to include in one post...

C:\Documents and Settings\Ian\Local Settings\Temp\Del112.tmp -> Adware.180Solutions : Cleaned with backup (quarantined).
C:\Documents and Settings\Ian\Local Settings\Temp\Del419.tmp -> Adware.180Solutions : Cleaned with backup (quarantined).
C:\Documents and Settings\Ian\Local Settings\Temp\Del6C4.tmp -> Adware.180Solutions : Cleaned with backup (quarantined).
C:\Documents and Settings\Ian\Local Settings\Temp\res151.tmp -> Adware.180Solutions : Cleaned with backup (quarantined).
C:\Documents and Settings\Ian\Local Settings\Temp\res3AB.tmp -> Adware.180Solutions : Cleaned with backup (quarantined).
C:\Documents and Settings\Ian\Local Settings\Temp\resB2.tmp -> Adware.180Solutions : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\RCX3AC.tmp -> Adware.180Solutions : Cleaned with backup (quarantined).
C:\Documents and Settings\Ian\Local Settings\Temporary Internet Files\Content.IE5\J1WWF4MG\AppWrap[1].exe -> Adware.AdURL : Cleaned with backup (quarantined).
C:\Documents and Settings\Ian\Local Settings\Temporary Internet Files\Content.IE5\V55C043E\AppWrap[1].exe -> Adware.AdURL : Cleaned with backup (quarantined).
C:\Program Files\Yahoo!\YPSR\Quarantine\ppqDE.tmp -> Adware.AdURL : Cleaned with backup (quarantined).
C:\WINDOWS\icont.exe -> Adware.AdURL : Cleaned with backup (quarantined).
C:\Program Files\Windows Media Player\wwmlaunch.exe -> Adware.Agent : Cleaned with backup (quarantined).
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\XKHPAIGF\!update-3920[1].0000 -> Adware.ClickSpring : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\!update.exe -> Adware.ClickSpring : Cleaned with backup (quarantined).
C:\WINDOWS\V2ViZXI\__delete_on_reboot__a_s_a_p_p_s_r_v_._d_l_l_ -> Adware.CommAd : Cleaned with backup (quarantined).
C:\WINDOWS\V2ViZXI\__delete_on_reboot__c_o_m_m_a_n_d_._e_x_e_ -> Adware.CommAd : Cleaned with backup (quarantined).
[1028] C:\WINDOWS\V2ViZXI\asappsrv.dll -> Adware.CommAd : Error during cleaning.
[1264] C:\WINDOWS\V2ViZXI\asappsrv.dll -> Adware.CommAd : Error during cleaning.
[1308] C:\WINDOWS\V2ViZXI\asappsrv.dll -> Adware.CommAd : Error during cleaning.
[1556] C:\WINDOWS\V2ViZXI\asappsrv.dll -> Adware.CommAd : Error during cleaning.
[1892] C:\WINDOWS\V2ViZXI\asappsrv.dll -> Adware.CommAd : Error during cleaning.
[356] C:\WINDOWS\V2ViZXI\asappsrv.dll -> Adware.CommAd : Error during cleaning.
[3788] C:\WINDOWS\V2ViZXI\asappsrv.dll -> Adware.CommAd : Error during cleaning.
[472] C:\WINDOWS\V2ViZXI\asappsrv.dll -> Adware.CommAd : Error during cleaning.
[500] C:\WINDOWS\V2ViZXI\asappsrv.dll -> Adware.CommAd : Error during cleaning.
HKLM\SYSTEM\ControlSet001\Services\Tcpip\Parameters\Interfaces\{106CC461-1B79-49CE-9E44-B97599382DA2}\\IPAddress -> Adware.KeenValue : Cleaned with backup (quarantined).
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\9Z34ZWUO\Installer[1].exe -> Adware.Look2Me : Cleaned with backup (quarantined).
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\9Z34ZWUO\Installer[2].exe -> Adware.Look2Me : Cleaned with backup (quarantined).
C:\WINDOWS\system32\attxprxy.dll -> Adware.Look2Me : Cleaned with backup (quarantined).
C:\WINDOWS\system32\dn2001fme.dll -> Adware.Look2Me : Cleaned with backup (quarantined).
C:\WINDOWS\system32\dn4o01h3e.dll -> Adware.Look2Me : Cleaned with backup (quarantined).
C:\WINDOWS\system32\en8ml1l11.dll -> Adware.Look2Me : Cleaned with backup (quarantined).
C:\WINDOWS\system32\h4n00e5meh.dll -> Adware.Look2Me : Cleaned with backup (quarantined).
C:\WINDOWS\system32\m2nqlc551f.dll -> Adware.Look2Me : Cleaned with backup (quarantined).
C:\WINDOWS\warebundle.exe -> Adware.Look2Me : Cleaned with backup (quarantined).
C:\warebundle.exe -> Adware.Look2Me : Cleaned with backup (quarantined).
C:\WINDOWS\system32\__delete_on_reboot__r_u_n_d_l_l_3_2_._d_l_l_ -> Adware.PurityScan : Cleaned with backup (quarantined).
C:\WINDOWS\system32\xsk.dll -> Adware.PurityScan : Cleaned with backup (quarantined).
[204] C:\WINDOWS\system32\rundll32.dll -> Adware.PurityScan : Error during cleaning.
[2696] C:\WINDOWS\system32\rundll32.dll -> Adware.PurityScan : Error during cleaning.
C:\Documents and Settings\Ian\Local Settings\Temporary Internet Files\Content.IE5\9IT28KT2\AppWrap[1].exe -> Adware.Zestyfind : Cleaned with backup (quarantined).
C:\WINDOWS\Temp\bw2.com -> Adware.Zestyfind : Cleaned with backup (quarantined).
C:\WINDOWS\__delete_on_reboot__r_c_s_s_._e_x_e_ -> Backdoor.SdBot.aad : Cleaned with backup (quarantined).
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\M63S6EOX\booterror[1].zip -> Downloader.Adload.bo : Cleaned with backup (quarantined).
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\M63S6EOX\booterror[2].zip -> Downloader.Adload.bo : Cleaned with backup (quarantined).
C:\bootinit.exe -> Downloader.Adload.bo : Cleaned with backup (quarantined).
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\M63S6EOX\dfndr[1].exe -> Downloader.Adload.ce : Cleaned with backup (quarantined).
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\M63S6EOX\dfndra[1].exe -> Downloader.Adload.ce : Cleaned with backup (quarantined).
C:\dfndr.exe -> Downloader.Adload.ce : Cleaned with backup (quarantined).
C:\dfndra.exe -> Downloader.Adload.ce : Cleaned with backup (quarantined).
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\JLC47GYQ\kybrd[1].exe -> Downloader.Adload.cf : Cleaned with backup (quarantined).
C:\kybrd.exe -> Downloader.Adload.cf : Cleaned with backup (quarantined).
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\JLC47GYQ\drsmartload46a[1].exe -> Downloader.Adload.ch : Cleaned with backup (quarantined).
C:\WINDOWS\comserv.exe -> Downloader.Adload.ch : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\miniclipGameLoader.dll -> Downloader.Small : Cleaned with backup (quarantined).
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\JLC47GYQ\MTE3NDI6ODoxNg[1].exe -> Downloader.Small.buy : Cleaned with backup (quarantined).
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\XKHPAIGF\MTE3NDI6ODoxNg[1].exe -> Downloader.Small.buy : Cleaned with backup (quarantined).
C:\Program Files\Outlook Express\pofepeko.dll -> Downloader.Small.ctp : Cleaned with backup (quarantined).
C:\Documents and Settings\Ian\Local Settings\Temp\CS4P079.exe -> Downloader.Small.go : Cleaned with backup (quarantined).
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\M63S6EOX\bootsector[1].zip -> Downloader.VB.afe : Cleaned with backup (quarantined).
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\XKHPAIGF\bootsector[1].zip -> Downloader.VB.afe : Cleaned with backup (quarantined).
C:\bootconect.exe -> Downloader.VB.afe : Cleaned with backup (quarantined).
C:\bootsec.exe -> Downloader.VB.afe : Cleaned with backup (quarantined).
C:\bootsector.exe -> Downloader.VB.afe : Cleaned with backup (quarantined).
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\JLC47GYQ\drsmartload[1].exe -> Downloader.VB.afl : Cleaned with backup (quarantined).
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\9Z34ZWUO\drsmartload45a[1].exe -> Downloader.VB.afn : Cleaned with backup (quarantined).
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\JLC47GYQ\drsmartload849a[1].exe -> Downloader.VB.afn : Cleaned with backup (quarantined).
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\JLC47GYQ\drsmartload849a[2].exe -> Downloader.VB.afn : Cleaned with backup (quarantined).
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\XKHPAIGF\nwnm[1].exe -> Hijacker.VB.fb : Cleaned with backup (quarantined).
C:\nwnm.exe -> Hijacker.VB.fb : Cleaned with backup (quarantined).
C:\Documents and Settings\Ian\Local Settings\Temp\Temporary Internet Files\Content.IE5\2QCC47H1\nwnm_1[1].exe -> Hijacker.VB.fc : Cleaned with backup (quarantined).
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\M63S6EOX\nwnm_1[1].exe -> Hijacker.VB.fc : Cleaned with backup (quarantined).
C:\nwnm_1.exe -> Hijacker.VB.fc : Cleaned with backup (quarantined).
C:\Documents and Settings\LocalService\Local Settings\Temporary Internet Files\Content.IE5\XKHPAIGF\dfndra_1[1].exe -> Hijacker.VB.nh : Cleaned with backup (quarantined).
C:\dfndra_1.exe -> Hijacker.VB.nh : Cleaned with backup (quarantined).
[1000] C:\dfndra_1.exe -> Hijacker.VB.nh : Error during cleaning.
C:\Program Files\Network Monitor\__delete_on_reboot__n_e_t_m_o_n_._e_x_e_ -> Not-A-Virus.Monitor.Win32.NetMon.a : Ignored.
C:\Documents and Settings\Jeff\Cookies\jeff@247realmedia[1].txt -> TrackingCookie.247realmedia : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq165.tmp -> TrackingCookie.247realmedia : Cleaned.
:mozilla.10:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.33:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.34:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.6:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.7:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.8:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.9:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Ian\Local Settings\Temp\Cookies\ian@2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Ian\Local Settings\Temp\Cookies\ian@partygaming.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@entrepreneur.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq142.tmp -> TrackingCookie.2o7 : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq166.tmp -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Ian\Local Settings\Temp\Cookies\ian@ads.addynamix[1].txt -> TrackingCookie.Addynamix : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@ads.addynamix[2].txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.18:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.19:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq16A.tmp -> TrackingCookie.Adtech : Cleaned.
:mozilla.69:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.70:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.71:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@advertising[2].txt -> TrackingCookie.Advertising : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@servedby.advertising[2].txt -> TrackingCookie.Advertising : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq16B.tmp -> TrackingCookie.Advertising : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppqE2.tmp -> TrackingCookie.Advertising : Cleaned.
:mozilla.22:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq16C.tmp -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@bfast[1].txt -> TrackingCookie.Bfast : Cleaned.
:mozilla.130:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Documents and Settings\Ian\Local Settings\Temp\Cookies\ian@bluestreak[1].txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@bluestreak[1].txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq16D.tmp -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.127:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@citi.bridgetrack[2].txt -> TrackingCookie.Bridgetrack : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq173.tmp -> TrackingCookie.Bridgetrack : Cleaned.
:mozilla.160:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned.
:mozilla.28:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq16F.tmp -> TrackingCookie.Burstnet : Cleaned.
:mozilla.90:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@as.casalemedia[1].txt -> TrackingCookie.Casalemedia : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@casalemedia[2].txt -> TrackingCookie.Casalemedia : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq170.tmp -> TrackingCookie.Casalemedia : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppqE3.tmp -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.121:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Centrport : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@centrport[1].txt -> TrackingCookie.Centrport : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq172.tmp -> TrackingCookie.Centrport : Cleaned.
:mozilla.17:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.18:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.29:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.30:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Com : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq174.tmp -> TrackingCookie.Com : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq175.tmp -> TrackingCookie.Coremetrics : Cleaned.
C:\Documents and Settings\Ian\Cookies\ian@cpvfeed[1].txt -> TrackingCookie.Cpvfeed : Cleaned.
C:\Documents and Settings\Ian\Local Settings\Temp\Cookies\ian@cpvfeed[1].txt -> TrackingCookie.Cpvfeed : Cleaned.
:mozilla.23:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq146.tmp -> TrackingCookie.Doubleclick : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq177.tmp -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.25:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
C:\Documents and Settings\Ian\Cookies\ian@as-us.falkag[2].txt -> TrackingCookie.Falkag : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq145.tmp -> TrackingCookie.Falkag : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppqE7.tmp -> TrackingCookie.Falkag : Cleaned.
:mozilla.96:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.

aliensexist200
2006-06-26, 07:44
C:\Documents and Settings\Jeff\Cookies\jeff@fastclick[1].txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@media.fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq147.tmp -> TrackingCookie.Fastclick : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq17A.tmp -> TrackingCookie.Fastclick : Cleaned.
:mozilla.163:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.164:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.165:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.56:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.57:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.58:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.91:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.94:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@ehg-ati.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@ehg-newegg.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq179.tmp -> TrackingCookie.Hitbox : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq17C.tmp -> TrackingCookie.Hitbox : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppqE5.tmp -> TrackingCookie.Hitbox : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppqE8.tmp -> TrackingCookie.Hitbox : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq17D.tmp -> TrackingCookie.Linksynergy : Cleaned.
C:\Documents and Settings\Ian\Cookies\ian@sales.liveperson[1].txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.107:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq148.tmp -> TrackingCookie.Mediaplex : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq17F.tmp -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.35:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.36:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.75:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.76:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.77:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.78:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.
:mozilla.13:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.14:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.15:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.16:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.38:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.39:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.40:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.41:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@ads.pointroll[1].txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.84:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned.
:mozilla.85:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq180.tmp -> TrackingCookie.Qksrv : Cleaned.
:mozilla.72:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.86:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@questionmarket[1].txt -> TrackingCookie.Questionmarket : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq149.tmp -> TrackingCookie.Questionmarket : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq181.tmp -> TrackingCookie.Questionmarket : Cleaned.
C:\Documents and Settings\Ian\Local Settings\Temp\Cookies\ian@revenue[1].txt -> TrackingCookie.Revenue : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq183.tmp -> TrackingCookie.Revenue : Cleaned.
:mozilla.118:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@edge.ru4[2].txt -> TrackingCookie.Ru4 : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq178.tmp -> TrackingCookie.Ru4 : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppqE4.tmp -> TrackingCookie.Ru4 : Cleaned.
:mozilla.45:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.46:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.47:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.48:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@serving-sys[1].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq16E.tmp -> TrackingCookie.Serving-sys : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq184.tmp -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\Ian\Cookies\ian@adopt.specificclick[2].txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.89:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.97:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@statcounter[2].txt -> TrackingCookie.Statcounter : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq185.tmp -> TrackingCookie.Statcounter : Cleaned.
:mozilla.100:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.98:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.99:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\Ian\Local Settings\Temp\Cookies\ian@anad.tacoda[2].txt -> TrackingCookie.Tacoda : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq186.tmp -> TrackingCookie.Tacoda : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq187.tmp -> TrackingCookie.Targetnet : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppqE9.tmp -> TrackingCookie.Targetnet : Cleaned.
C:\Documents and Settings\LocalService\Cookies\system@media.top-banners[1].txt -> TrackingCookie.Top-banners : Cleaned.
:mozilla.108:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@tradedoubler[1].txt -> TrackingCookie.Tradedoubler : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq14A.tmp -> TrackingCookie.Tradedoubler : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq188.tmp -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.109:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.110:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.111:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.112:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.113:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.114:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.115:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.123:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.124:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
C:\Documents and Settings\Ian\Local Settings\Temp\Cookies\ian@trafficmp[1].txt -> TrackingCookie.Trafficmp : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@trafficmp[1].txt -> TrackingCookie.Trafficmp : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq14B.tmp -> TrackingCookie.Trafficmp : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq189.tmp -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.112:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.116:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.117:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.118:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
C:\Documents and Settings\Ian\Local Settings\Temp\Cookies\ian@a.tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Cleaned.
C:\Documents and Settings\Ian\Local Settings\Temp\Cookies\ian@tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@a.tribalfusion[1].txt -> TrackingCookie.Tribalfusion : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@tribalfusion[2].txt -> TrackingCookie.Tribalfusion : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq18A.tmp -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.119:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned.
:mozilla.51:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq18B.tmp -> TrackingCookie.Valueclick : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@statse.webtrendslive[1].txt -> TrackingCookie.Webtrendslive : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq18C.tmp -> TrackingCookie.Webtrendslive : Cleaned.
:mozilla.137:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.138:C:\Documents and Settings\Ian\Application Data\Mozilla\Firefox\Profiles\47gj5q4n.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.64:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.65:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.66:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.67:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.68:C:\Documents and Settings\Jeff\Application Data\Mozilla\Firefox\Profiles\akjp8h6c.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Ian\Cookies\ian@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Ian\Local Settings\Temp\Cookies\ian@ad.yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Documents and Settings\Jeff\Cookies\jeff@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq143.tmp -> TrackingCookie.Yieldmanager : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq167.tmp -> TrackingCookie.Yieldmanager : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppq18D.tmp -> TrackingCookie.Zedo : Cleaned.
C:\Program Files\Yahoo!\YPSR\Quarantine\ppqEA.tmp -> TrackingCookie.Zedo : Cleaned.


::Report end

little eagle
2006-06-26, 15:42
Can you run ewido security suite again and post the log.

tashi
2006-07-03, 22:55
aliensexist200?

tashi
2006-07-05, 01:58
This topic is closed.

If you need it re-opened please send me a pm and provide a link to the thread.
Applies only to the original topic starter.