PDA

View Full Version : Multi-Problem



Stormcougar
2006-09-22, 09:09
I'm not sure what I have, which is why I'm here asking for help. It happened pretty suddenly and then slowly keeps getting worse. I have windows crashing, slow performance...just all around strangeness.

Here is my HiJackThis log:

Logfile of HijackThis v1.99.1
Scan saved at 2:07:10 AM, on 9/22/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\MySQL\MySQL Server 5.0\bin\mysqld-nt.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\SYSTEM32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wfxsnt40.exe
C:\PROGRA~1\NORTON~1\WinFax\WFXSWTCH.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe
C:\PROGRA~1\LEXMAR~1\ACMonitor_X83.exe
C:\PROGRA~1\LEXMAR~1\AcBtnMgr_X83.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\HiJackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaults/sb/msgr7/*http://www.yahoo.com/ext/search/search.html
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr7/*http://www.yahoo.com
F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,ycdiiiy.exe
O1 - Hosts: 153.91.179.153 L2authd.lineage2.com
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [WinFaxAppPortStarter] wfxsnt40.exe
O4 - HKLM\..\Run: [WFXSwtch] C:\PROGRA~1\NORTON~1\WinFax\WFXSWTCH.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [PrinTray] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
O4 - HKLM\..\Run: [NAV Agent] C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe
O4 - HKLM\..\Run: [Lexmark X83 Button Monitor] C:\PROGRA~1\LEXMAR~1\ACMonitor_X83.exe
O4 - HKLM\..\Run: [Lexmark X83 Button Manager] C:\PROGRA~1\LEXMAR~1\AcBtnMgr_X83.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [MSConfig] C:\WINDOWS\PCHealth\HelpCtr\Binaries\MSConfig.exe /auto
O4 - HKLM\..\RunOnce: [SpybotSnD] "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe" /autocheck
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [tlqty] C:\WINDOWS\system32\xwfaxd.exe reg_run
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\User\Start Menu\Programs\IMVU\Run IMVU.lnk
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {2D2BEE6E-3C9A-4D58-B9EC-458EDB28D0F6} - http://www.drivecleaner.com/.freeware/installdrivecleanerstart.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {5526B4C6-63D6-41A1-9783-0FABF529859A} - http://cabs.elitemediagroup.net/cabs/mediaview.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1141088438437
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1155926045156
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {A7ECD556-D6F6-4F41-8C6B-14AB246801A0} (Secure Delivery) - http://cdn.digitalcity.com/video/kdx.cab
O18 - Filter: text/html - {0F9A5F09-3BFD-40D3-85FE-36227430A374} - (no file)
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: MySQL - Unknown owner - C:\Program.exe (file missing)
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe

Thanks for your time in advance.

pskelley
2006-09-24, 11:24
Welcome to the forum. If you still need help and are not receiving it elsewhere, please do this.

1) Tell me this was put there by you and is safe: O1 - Hosts: 153.91.179.153 L2authd.lineage2.com
Looks like it directs you to here: http://whois.domaintools.com/153.91.179.153

2) You are running MSConfig in Selective Startup mode. I need to see all logs in Normal mode unless I request otherwise.
http://netsquirrel.com/msconfig/

3) Check Java, I think it needs an update: C:\Program Files\Java\jre1.5.0_06\ see this:
http://forums.spybot.info/showpost.php?p=12880&postcount=2

4) How to make files and folders visible:
Click Start > Open My Computer.
Select the Tools menu and click Folder Options.
Select the View Tab. Under the Hidden files and folders heading, select Show hidden files and folders.
Uncheck: Hide file extensions for known file types
Uncheck the Hide protected operating system files (recommended) option.
Click Yes to confirm.
Click OK.

5) Please download ATF Cleaner by Atribune
http://www.atribune.org/content/view/25/2/
Save it to your Desktop. We will use this later.

6) Open HijackThis and choose "Do a system scan only" then check the box in front of these line items:

F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,ycdiiiy.exe
O4 - HKCU\..\Run: [tlqty] C:\WINDOWS\system32\xwfaxd.exe reg_run
O16 - DPF: {5526B4C6-63D6-41A1-9783-0FABF529859A} - http://cabs.elitemediagroup.net/cabs/mediaview.cab
O18 - Filter: text/html - {0F9A5F09-3BFD-40D3-85FE-36227430A374} - (no file)

Close all programs but HJT and all browser windows, then click on "Fix Checked"

7) RIGHT Click on Start then click on Explore. Locate and delete these items:

(may be gone, just do not miss them)

C:\WINDOWS\system32\xwfaxd.exe <<< file

C:\WINDOWS\system32\ycdiiiy.exe <<< file

8) Run ATF Cleaner
Double-click ATF-Cleaner.exe to run the program.
Click Select All found at the bottom of the list.
Click the Empty Selected button.
Click Exit on the Main menu to close the program.

9) Update ewido and run a complete system scan in Safe Mode. Remove anything ewido locates unless you know it is not bad.

Once the update has completed select the "Scanner" icon at the top of the screen, then select the "Settings" tab.
Once in the Settings screen click on "Recommended actions" and then select "Quarantine".
Under "Reports"
Select "Automatically generate report after every scan"
Un-Select "Only if threats were found"

[/list]Close ewido anti-spyware, Do Not run a scan just yet, we will shortly.
Reboot your computer into SafeMode. You can do this by restarting your computer and continually tapping the F8 key until a menu appears. Use your up arrow key to highlight SafeMode then hit enter.
IMPORTANT: Do not open any other windows or programs while ewido is scanning, it may interfere with the scanning proccess:
Lauch ewido-anti-spyware by double-clicking the icon on your desktop.
Select the "Scanner" icon at the top and then the "Scan" tab then click on "Complete System Scan".
ewido will now begin the scanning process, be patient this may take a little time.
Once the scan is complete do the following:
If you have any infections you will prompted, then select "Apply all actions"
Next select the "Reports" icon at the top.
Select the "Save report as" button in the lower left hand of the screen and save it to a text file on your system (make sure to remember where you saved that file, this is important).
Close ewido and reboot your system back into Normal Mode and post the results of the ewido report scan.


Post the ewido scan results, a new HJT log and let us know if that takes care of your problems.

Thanks

Stormcougar
2006-09-28, 23:00
That a lot to do.

I'll break it up and post my results as I do them.

1) Tell me this was put there by you and is safe: O1 - Hosts: 153.91.179.153 L2authd.lineage2.com
Looks like it directs you to here: http://whois.domaintools.com/153.91.179.153

Yes, I put that there on purpose and it is safe.

2) You are running MSConfig in Selective Startup mode. I need to see all logs in Normal mode unless I request otherwise.
http://netsquirrel.com/msconfig/

Done...I only did select start-up becuase I can't figure out how to keep certain things from loading at start-up.

3) Check Java, I think it needs an update: C:\Program Files\Java\jre1.5.0_06\ see this:
http://forums.spybot.info/showpost.p...80&postcount=2

Wow, nice catch...and it is corrected and upgraded to jre1.5.0_08.

Stormcougar
2006-09-28, 23:16
Everything froze on me as I was going down the check list.

4) How to make files and folders visible:
Click Start > Open My Computer.
Select the Tools menu and click Folder Options.
Select the View Tab. Under the Hidden files and folders heading, select Show hidden files and folders.
Uncheck: Hide file extensions for known file types
Uncheck the Hide protected operating system files (recommended) option.
Click Yes to confirm.
Click OK.

*done*

I already had hidden visible and extentions being shown. The operating system files was a new one for me, it is now unchecked.

5) Please download ATF Cleaner by Atribune
http://www.atribune.org/content/view/25/2/
Save it to your Desktop. We will use this later.

*done*

Stormcougar
2006-09-28, 23:49
6) Open HijackThis and choose "Do a system scan only" then check the box in front of these line items:

F2 - REG:system.ini: UserInit=C:\WINDOWS\system32\userinit.exe,ycdiiiy.exe
O4 - HKCU\..\Run: [tlqty] C:\WINDOWS\system32\xwfaxd.exe reg_run
O16 - DPF: {5526B4C6-63D6-41A1-9783-0FABF529859A} - http://cabs.elitemediagroup.net/cabs/mediaview.cab
O18 - Filter: text/html - {0F9A5F09-3BFD-40D3-85FE-36227430A374} - (no file)

Close all programs but HJT and all browser windows, then click on "Fix Checked"

*done*

7) RIGHT Click on Start then click on Explore. Locate and delete these items:

(may be gone, just do not miss them)

C:\WINDOWS\system32\xwfaxd.exe <<< file

C:\WINDOWS\system32\ycdiiiy.exe <<< file

*done* They didn't exist.

8) Run ATF Cleaner
Double-click ATF-Cleaner.exe to run the program.
Click Select All found at the bottom of the list.
Click the Empty Selected button.
Click Exit on the Main menu to close the program.

*done*

pskelley
2006-09-29, 00:02
There is really no reason for you to copy all of my instructions, it is just waste of space. If you feel the need to tell me what you did, just indicate the number: 8) Done This just makes the post longer and harder to work with, it has taken you three posts and you still have not posted the information I am waiting for and need.

Post the ewido scan results, a new HJT log and let us know if that takes care of your problems.
Thanks

Stormcougar
2006-09-29, 01:29
Sorry, I used it to keep track of it. :oops:

Here is ewido:

---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------

+ Created at: 6:09:52 PM 9/28/2006

+ Scan result:



C:\WINDOWS\Downloaded Program Files\CONFLICT.1\UERS_9999_N91S2507NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Cleaned.
C:\WINDOWS\Downloaded Program Files\UERS_9999_N91S2507NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Cleaned.
C:\WINDOWS\system32\atbyagao.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\cxexqmyp.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\ekdgvqbi.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\eldodxvh.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\eoitlyde.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\feurfdpi.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\hdyhxnvn.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\ibgmgxie.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\ifldbmuf.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\jpsdumec.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\mmpqklge.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\ofpupfxd.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\oleijjqn.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\pbbpksyh.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\pqvpqibl.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\qawyobfl.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\qmirnssi.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\rmtejigr.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\sevxwlhi.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\sqcmapgp.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\tewqspiy.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\trwxbhjh.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\uaafmjhl.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\viqqipow.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\vqrahdrh.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\vqurfciy.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\wfdnrnjw.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\xtcujuhg.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\xuqbdsye.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\WINDOWS\system32\ysnhtsul.exe -> Not-A-Virus.Downloader.Win32.WinFixer.r : Cleaned.
C:\Documents and Settings\User\My Documents\WoW\UWC_SpeedSoloMiniEMU.rar/miniemu\extra\Tools\ItemCreator1.2.5.exe -> Not-A-Virus.Monitor.Win32.JazoKeylogger.3110 : Error during cleaning.
C:\Program Files\Akutski's 1.9.2 Repack\Tools\Item Creator.rar/ItemCreator1.2.5.exe -> Not-A-Virus.Monitor.Win32.JazoKeylogger.3110 : Error during cleaning.
C:\Program Files\Akutski's 1.9.2 Repack\Tools\ItemCreator1-2-5.rar/ItemCreator1.2.5.exe -> Not-A-Virus.Monitor.Win32.JazoKeylogger.3110 : Error during cleaning.
C:\Program Files\Akutski's 1.9.2 Repack\Tools\game restarter tool.rar/daijwrestarter.exe -> Not-A-Virus.Monitor.Win32.JazoKeylogger.3110 : Error during cleaning.
:mozilla.17:C:\RECYCLER\NPROTECT\01807406.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.22:C:\RECYCLER\NPROTECT\01807407.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.22:C:\RECYCLER\NPROTECT\01807410.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.23:C:\RECYCLER\NPROTECT\01807411.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.23:C:\RECYCLER\NPROTECT\01807435.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.26:C:\RECYCLER\NPROTECT\01807439.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.26:C:\RECYCLER\NPROTECT\01807443.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.26:C:\RECYCLER\NPROTECT\01807709.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.26:C:\RECYCLER\NPROTECT\01807713.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.26:C:\RECYCLER\NPROTECT\01807717.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.26:C:\RECYCLER\NPROTECT\01807722.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.28:C:\RECYCLER\NPROTECT\01808078.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.9:C:\RECYCLER\NPROTECT\01807402.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.11:C:\RECYCLER\NPROTECT\01808078.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.16:C:\RECYCLER\NPROTECT\01807410.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.17:C:\RECYCLER\NPROTECT\01807411.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.18:C:\RECYCLER\NPROTECT\01807407.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.6:C:\RECYCLER\NPROTECT\01807435.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.9:C:\RECYCLER\NPROTECT\01807439.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.9:C:\RECYCLER\NPROTECT\01807443.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.9:C:\RECYCLER\NPROTECT\01807709.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.9:C:\RECYCLER\NPROTECT\01807713.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.9:C:\RECYCLER\NPROTECT\01807717.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.9:C:\RECYCLER\NPROTECT\01807722.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.21:C:\RECYCLER\NPROTECT\01807407.MOZ -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.21:C:\RECYCLER\NPROTECT\01807410.MOZ -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.22:C:\RECYCLER\NPROTECT\01807411.MOZ -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.22:C:\RECYCLER\NPROTECT\01807435.MOZ -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.25:C:\RECYCLER\NPROTECT\01807439.MOZ -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.25:C:\RECYCLER\NPROTECT\01807443.MOZ -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.25:C:\RECYCLER\NPROTECT\01807709.MOZ -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.25:C:\RECYCLER\NPROTECT\01807713.MOZ -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.25:C:\RECYCLER\NPROTECT\01807717.MOZ -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.25:C:\RECYCLER\NPROTECT\01807722.MOZ -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.27:C:\RECYCLER\NPROTECT\01808078.MOZ -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.100:C:\RECYCLER\NPROTECT\01807406.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.101:C:\RECYCLER\NPROTECT\01807406.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.102:C:\RECYCLER\NPROTECT\01807406.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.102:C:\RECYCLER\NPROTECT\01807407.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.102:C:\RECYCLER\NPROTECT\01807410.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.103:C:\RECYCLER\NPROTECT\01807407.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.103:C:\RECYCLER\NPROTECT\01807410.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.103:C:\RECYCLER\NPROTECT\01807411.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.103:C:\RECYCLER\NPROTECT\01807435.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.104:C:\RECYCLER\NPROTECT\01807407.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.104:C:\RECYCLER\NPROTECT\01807410.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.104:C:\RECYCLER\NPROTECT\01807411.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.104:C:\RECYCLER\NPROTECT\01807435.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.105:C:\RECYCLER\NPROTECT\01807411.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.105:C:\RECYCLER\NPROTECT\01807435.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.105:C:\RECYCLER\NPROTECT\01807439.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.105:C:\RECYCLER\NPROTECT\01807443.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.105:C:\RECYCLER\NPROTECT\01807709.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.105:C:\RECYCLER\NPROTECT\01807713.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.105:C:\RECYCLER\NPROTECT\01807717.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.105:C:\RECYCLER\NPROTECT\01807722.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.106:C:\RECYCLER\NPROTECT\01807439.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.106:C:\RECYCLER\NPROTECT\01807443.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.106:C:\RECYCLER\NPROTECT\01807709.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.106:C:\RECYCLER\NPROTECT\01807713.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.106:C:\RECYCLER\NPROTECT\01807717.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.106:C:\RECYCLER\NPROTECT\01807722.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.107:C:\RECYCLER\NPROTECT\01807439.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.107:C:\RECYCLER\NPROTECT\01807443.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.107:C:\RECYCLER\NPROTECT\01807709.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.107:C:\RECYCLER\NPROTECT\01807713.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.107:C:\RECYCLER\NPROTECT\01807717.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.107:C:\RECYCLER\NPROTECT\01807722.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.107:C:\RECYCLER\NPROTECT\01808078.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.108:C:\RECYCLER\NPROTECT\01808078.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.109:C:\RECYCLER\NPROTECT\01808078.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.75:C:\RECYCLER\NPROTECT\01807135.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.75:C:\RECYCLER\NPROTECT\01808346.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.76:C:\RECYCLER\NPROTECT\01807135.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.76:C:\RECYCLER\NPROTECT\01808346.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.77:C:\RECYCLER\NPROTECT\01807135.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.77:C:\RECYCLER\NPROTECT\01808346.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.80:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.80:C:\RECYCLER\NPROTECT\01807139.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.80:C:\RECYCLER\NPROTECT\01808466.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.81:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.81:C:\RECYCLER\NPROTECT\01807139.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.81:C:\RECYCLER\NPROTECT\01807143.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.81:C:\RECYCLER\NPROTECT\01808466.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.82:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.82:C:\RECYCLER\NPROTECT\01807139.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.82:C:\RECYCLER\NPROTECT\01807143.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.82:C:\RECYCLER\NPROTECT\01808466.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.83:C:\RECYCLER\NPROTECT\01807143.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.84:C:\RECYCLER\NPROTECT\01807176.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.85:C:\RECYCLER\NPROTECT\01807176.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.85:C:\RECYCLER\NPROTECT\01807177.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.85:C:\RECYCLER\NPROTECT\01807184.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.86:C:\RECYCLER\NPROTECT\01807176.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.86:C:\RECYCLER\NPROTECT\01807177.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.86:C:\RECYCLER\NPROTECT\01807184.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.86:C:\RECYCLER\NPROTECT\01807188.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.86:C:\RECYCLER\NPROTECT\01807190.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.86:C:\RECYCLER\NPROTECT\01807218.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.86:C:\RECYCLER\NPROTECT\01807245.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.86:C:\RECYCLER\NPROTECT\01807384.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.87:C:\RECYCLER\NPROTECT\01807177.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.87:C:\RECYCLER\NPROTECT\01807184.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.87:C:\RECYCLER\NPROTECT\01807188.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.87:C:\RECYCLER\NPROTECT\01807190.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.87:C:\RECYCLER\NPROTECT\01807218.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.87:C:\RECYCLER\NPROTECT\01807245.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.87:C:\RECYCLER\NPROTECT\01807384.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.88:C:\RECYCLER\NPROTECT\01807188.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.88:C:\RECYCLER\NPROTECT\01807190.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.88:C:\RECYCLER\NPROTECT\01807218.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.88:C:\RECYCLER\NPROTECT\01807245.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.88:C:\RECYCLER\NPROTECT\01807384.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.89:C:\RECYCLER\NPROTECT\01807400.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.90:C:\RECYCLER\NPROTECT\01807400.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.90:C:\RECYCLER\NPROTECT\01807402.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.91:C:\RECYCLER\NPROTECT\01807400.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.91:C:\RECYCLER\NPROTECT\01807402.MOZ -> TrackingCookie.Ru4 :

Stormcougar
2006-09-29, 01:30
Cleaned.
:mozilla.92:C:\RECYCLER\NPROTECT\01807402.MOZ -> TrackingCookie.Ru4 : Cleaned.
:mozilla.205:C:\RECYCLER\NPROTECT\01808346.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.206:C:\RECYCLER\NPROTECT\01808346.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.208:C:\RECYCLER\NPROTECT\01807135.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.208:C:\RECYCLER\NPROTECT\01807139.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.208:C:\RECYCLER\NPROTECT\01807143.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.208:C:\RECYCLER\NPROTECT\01807176.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.209:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.209:C:\RECYCLER\NPROTECT\01807135.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.209:C:\RECYCLER\NPROTECT\01807139.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.209:C:\RECYCLER\NPROTECT\01807143.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.209:C:\RECYCLER\NPROTECT\01807176.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.209:C:\RECYCLER\NPROTECT\01807177.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.209:C:\RECYCLER\NPROTECT\01807184.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.209:C:\RECYCLER\NPROTECT\01808466.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.210:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.210:C:\RECYCLER\NPROTECT\01807177.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.210:C:\RECYCLER\NPROTECT\01807184.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.210:C:\RECYCLER\NPROTECT\01807188.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.210:C:\RECYCLER\NPROTECT\01807190.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.210:C:\RECYCLER\NPROTECT\01807218.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.210:C:\RECYCLER\NPROTECT\01807245.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.210:C:\RECYCLER\NPROTECT\01807384.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.210:C:\RECYCLER\NPROTECT\01808466.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.211:C:\RECYCLER\NPROTECT\01807188.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.211:C:\RECYCLER\NPROTECT\01807190.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.211:C:\RECYCLER\NPROTECT\01807218.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.211:C:\RECYCLER\NPROTECT\01807245.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.211:C:\RECYCLER\NPROTECT\01807384.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.213:C:\RECYCLER\NPROTECT\01807400.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.214:C:\RECYCLER\NPROTECT\01807400.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.214:C:\RECYCLER\NPROTECT\01807402.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.214:C:\RECYCLER\NPROTECT\01807406.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.215:C:\RECYCLER\NPROTECT\01807402.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.215:C:\RECYCLER\NPROTECT\01807406.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.216:C:\RECYCLER\NPROTECT\01807407.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.216:C:\RECYCLER\NPROTECT\01807410.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.217:C:\RECYCLER\NPROTECT\01807407.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.217:C:\RECYCLER\NPROTECT\01807410.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.217:C:\RECYCLER\NPROTECT\01807411.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.217:C:\RECYCLER\NPROTECT\01807435.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.218:C:\RECYCLER\NPROTECT\01807411.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.218:C:\RECYCLER\NPROTECT\01807435.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.219:C:\RECYCLER\NPROTECT\01807439.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.219:C:\RECYCLER\NPROTECT\01807443.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.219:C:\RECYCLER\NPROTECT\01807709.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.219:C:\RECYCLER\NPROTECT\01807713.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.219:C:\RECYCLER\NPROTECT\01807717.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.219:C:\RECYCLER\NPROTECT\01807722.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.220:C:\RECYCLER\NPROTECT\01807439.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.220:C:\RECYCLER\NPROTECT\01807443.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.220:C:\RECYCLER\NPROTECT\01807709.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.220:C:\RECYCLER\NPROTECT\01807713.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.220:C:\RECYCLER\NPROTECT\01807717.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.220:C:\RECYCLER\NPROTECT\01807722.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.221:C:\RECYCLER\NPROTECT\01808078.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.222:C:\RECYCLER\NPROTECT\01808078.MOZ -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.240:C:\RECYCLER\NPROTECT\01808346.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.241:C:\RECYCLER\NPROTECT\01808346.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.242:C:\RECYCLER\NPROTECT\01808346.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.243:C:\RECYCLER\NPROTECT\01807135.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.243:C:\RECYCLER\NPROTECT\01807139.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.243:C:\RECYCLER\NPROTECT\01807143.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.243:C:\RECYCLER\NPROTECT\01807176.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.244:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.244:C:\RECYCLER\NPROTECT\01807135.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.244:C:\RECYCLER\NPROTECT\01807139.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.244:C:\RECYCLER\NPROTECT\01807143.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.244:C:\RECYCLER\NPROTECT\01807176.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.244:C:\RECYCLER\NPROTECT\01807177.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.244:C:\RECYCLER\NPROTECT\01807184.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.244:C:\RECYCLER\NPROTECT\01807400.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.244:C:\RECYCLER\NPROTECT\01808466.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.245:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.245:C:\RECYCLER\NPROTECT\01807135.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.245:C:\RECYCLER\NPROTECT\01807139.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.245:C:\RECYCLER\NPROTECT\01807143.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.245:C:\RECYCLER\NPROTECT\01807176.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.245:C:\RECYCLER\NPROTECT\01807177.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.245:C:\RECYCLER\NPROTECT\01807184.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.245:C:\RECYCLER\NPROTECT\01807188.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.245:C:\RECYCLER\NPROTECT\01807190.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.245:C:\RECYCLER\NPROTECT\01807218.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.245:C:\RECYCLER\NPROTECT\01807245.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.245:C:\RECYCLER\NPROTECT\01807384.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.245:C:\RECYCLER\NPROTECT\01807400.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.245:C:\RECYCLER\NPROTECT\01807402.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.245:C:\RECYCLER\NPROTECT\01807406.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.245:C:\RECYCLER\NPROTECT\01808466.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.246:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.246:C:\RECYCLER\NPROTECT\01807135.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.246:C:\RECYCLER\NPROTECT\01807177.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.246:C:\RECYCLER\NPROTECT\01807184.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.246:C:\RECYCLER\NPROTECT\01807188.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.246:C:\RECYCLER\NPROTECT\01807190.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.246:C:\RECYCLER\NPROTECT\01807218.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.246:C:\RECYCLER\NPROTECT\01807245.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.246:C:\RECYCLER\NPROTECT\01807384.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.246:C:\RECYCLER\NPROTECT\01807400.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.246:C:\RECYCLER\NPROTECT\01807402.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.246:C:\RECYCLER\NPROTECT\01807406.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.246:C:\RECYCLER\NPROTECT\01808466.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.247:C:\RECYCLER\NPROTECT\01807188.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.247:C:\RECYCLER\NPROTECT\01807190.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.247:C:\RECYCLER\NPROTECT\01807218.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.247:C:\RECYCLER\NPROTECT\01807245.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.247:C:\RECYCLER\NPROTECT\01807384.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.247:C:\RECYCLER\NPROTECT\01807402.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.247:C:\RECYCLER\NPROTECT\01807406.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.247:C:\RECYCLER\NPROTECT\01807407.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.247:C:\RECYCLER\NPROTECT\01807410.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.248:C:\RECYCLER\NPROTECT\01807407.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.248:C:\RECYCLER\NPROTECT\01807410.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.248:C:\RECYCLER\NPROTECT\01807411.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.248:C:\RECYCLER\NPROTECT\01807435.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.249:C:\RECYCLER\NPROTECT\01807407.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.249:C:\RECYCLER\NPROTECT\01807410.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.249:C:\RECYCLER\NPROTECT\01807411.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.249:C:\RECYCLER\NPROTECT\01807435.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.250:C:\RECYCLER\NPROTECT\01807411.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.250:C:\RECYCLER\NPROTECT\01807435.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.250:C:\RECYCLER\NPROTECT\01807439.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.250:C:\RECYCLER\NPROTECT\01807443.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.250:C:\RECYCLER\NPROTECT\01807709.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.250:C:\RECYCLER\NPROTECT\01807713.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.250:C:\RECYCLER\NPROTECT\01807717.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.250:C:\RECYCLER\NPROTECT\01807722.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.251:C:\RECYCLER\NPROTECT\01807439.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.251:C:\RECYCLER\NPROTECT\01807443.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.251:C:\RECYCLER\NPROTECT\01807709.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.251:C:\RECYCLER\NPROTECT\01807713.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.251:C:\RECYCLER\NPROTECT\01807717.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.251:C:\RECYCLER\NPROTECT\01807722.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.252:C:\RECYCLER\NPROTECT\01807439.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.252:C:\RECYCLER\NPROTECT\01807443.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.252:C:\RECYCLER\NPROTECT\01807709.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.252:C:\RECYCLER\NPROTECT\01807713.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.252:C:\RECYCLER\NPROTECT\01807717.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.252:C:\RECYCLER\NPROTECT\01807722.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.252:C:\RECYCLER\NPROTECT\01808078.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.253:C:\RECYCLER\NPROTECT\01808078.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.254:C:\RECYCLER\NPROTECT\01808078.MOZ -> TrackingCookie.Yieldmanager : Cleaned.


::Report end

Stormcougar
2006-09-29, 01:34
Logfile of HijackThis v1.99.1
Scan saved at 6:32:40 PM, on 9/28/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\MySQL\MySQL Server 5.0\bin\mysqld-nt.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
C:\WINDOWS\SYSTEM32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\system32\wfxsnt40.exe
C:\PROGRA~1\NORTON~1\WinFax\WFXSWTCH.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe
C:\PROGRA~1\LEXMAR~1\ACMonitor_X83.exe
C:\PROGRA~1\LEXMAR~1\AcBtnMgr_X83.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Anti-Blaxx 1.18\Anti-Blaxx.exe
C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe
C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\kdx\KHost.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Xfire\Xfire.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\HiJackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr7/*http://www.yahoo.com
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O1 - Hosts: 153.91.179.153 L2authd.lineage2.com
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [WinFaxAppPortStarter] wfxsnt40.exe
O4 - HKLM\..\Run: [WFXSwtch] C:\PROGRA~1\NORTON~1\WinFax\WFXSWTCH.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [PrinTray] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
O4 - HKLM\..\Run: [NAV Agent] C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe
O4 - HKLM\..\Run: [Lexmark X83 Button Monitor] C:\PROGRA~1\LEXMAR~1\ACMonitor_X83.exe
O4 - HKLM\..\Run: [Lexmark X83 Button Manager] C:\PROGRA~1\LEXMAR~1\AcBtnMgr_X83.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [Anti-Blaxx Manager] C:\Program Files\Anti-Blaxx 1.18\Anti-Blaxx.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe"
O4 - HKLM\..\RunOnce: [SpybotSnD] "C:\Program Files\Spybot - Search & Destroy\SpybotSD.exe" /autocheck
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [kdx] C:\WINDOWS\kdx\KHost.exe -all
O4 - Startup: Xfire.lnk = C:\Program Files\Xfire\Xfire.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\User\Start Menu\Programs\IMVU\Run IMVU.lnk
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1141088438437
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1155926045156
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: MySQL - Unknown owner - C:\Program.exe (file missing)
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe

Stormcougar
2006-09-29, 01:43
I also have "Command Service" that won't go away on a Spybot scan...but I see a nice sticky I'll do.

pskelley
2006-09-29, 01:48
Your HJT log looks fine, good job:bigthumb: . Most of that junk in the ewido scan report is stuff Norton has removed and it is stored in the Norton version of a recycle bin. Do you ever clean it out? Follow these instructions:
http://service1.symantec.com/support/nsw.nsf/ba62122e5d142a6588256d87006b22be/831aa5c6ef0d750685256c370048ad89?OpenDocument&src=bar_sch_nam once that junk is cleaned out, run the ewido scan again and make sure it is run in SAFE MODE:
http://www.bleepingcomputer.com/tutorials/tutorial61.html

That is all I need now, the results of ewido run in Safe Mode, let me know also how the computer is running now at that point.

Instructions for your Spybot scan request:

Please download and unzip Ren-cmdservice to your Desktop.
It will only work correctly if the folder is placed on your Desktop and extracted !!.

http://www.bleepingcomputer.com/files/lonny/ren-cmdservice.zip

Open the ren-cmdservice folder by doubleclicking it and then doubleclick the
ren-cmdservice.bat file to run the program.
A text will open when it is finished, Post it please.
Then restart the PC run spybot check for and fix any problems found.

tashi
2006-10-04, 23:09
How is it going Stormcougar

Stormcougar
2006-10-05, 08:03
I'm sorry, I'm having troubles getting ewido to run in Safe Mode.

pskelley
2006-10-05, 11:36
OK, run it in Normal Mode then but make sure you delete what it find unless you know the item is not bad. Save the scan report and post it. Finish the instructions to run
Ren-cmdservice, let me know if that takes care of all of your problems.

Thanks

Stormcougar
2006-10-06, 09:18
---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------

+ Created at: 2:13:12 AM 10/6/2006

+ Scan result:



C:\Documents and Settings\User\Local Settings\Temp\ICD1.tmp\USDR6_0001_D19M2108NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.q : Ignored.
C:\Documents and Settings\User\Local Settings\Temporary Internet Files\Content.IE5\AZSFYBUH\SystemDoctor2006FreeInstall[1].cab/USDR6_0001_D19M2108NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.q : Ignored.
C:\WINDOWS\Downloaded Program Files\CONFLICT.1\USDR6_0001_D19M2108NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.q : Ignored.
C:\WINDOWS\Downloaded Program Files\CONFLICT.2\USDR6_0001_D19M2108NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.q : Ignored.
C:\WINDOWS\Downloaded Program Files\CONFLICT.3\USDR6_0001_D19M2108NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.q : Ignored.
C:\WINDOWS\Downloaded Program Files\USDR6_0001_D19M2108NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.q : Ignored.
C:\Documents and Settings\User\My Documents\WoW\UWC_SpeedSoloMiniEMU.rar/miniemu\extra\Tools\ItemCreator1.2.5.exe -> Not-A-Virus.Monitor.Win32.JazoKeylogger.3110 : Ignored.
C:\Program Files\Akutski's 1.9.2 Repack\Tools\Item Creator.rar/ItemCreator1.2.5.exe -> Not-A-Virus.Monitor.Win32.JazoKeylogger.3110 : Ignored.
C:\Program Files\Akutski's 1.9.2 Repack\Tools\ItemCreator1-2-5.rar/ItemCreator1.2.5.exe -> Not-A-Virus.Monitor.Win32.JazoKeylogger.3110 : Ignored.
C:\Program Files\Akutski's 1.9.2 Repack\Tools\game restarter tool.rar/daijwrestarter.exe -> Not-A-Virus.Monitor.Win32.JazoKeylogger.3110 : Ignored.
C:\Documents and Settings\User\Cookies\user@ads.addynamix[1].txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.10:C:\RECYCLER\NPROTECT\00000065.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.10:C:\RECYCLER\NPROTECT\00000069.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.11:C:\RECYCLER\NPROTECT\00000070.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.12:C:\RECYCLER\NPROTECT\00000069.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.12:C:\RECYCLER\NPROTECT\00000070.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.14:C:\RECYCLER\NPROTECT\00000067.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.14:C:\RECYCLER\NPROTECT\00000069.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.15:C:\RECYCLER\NPROTECT\00000067.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.16:C:\RECYCLER\NPROTECT\00000067.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.17:C:\RECYCLER\NPROTECT\00000067.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.19:C:\RECYCLER\NPROTECT\00000066.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.20:C:\RECYCLER\NPROTECT\00000066.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.21:C:\RECYCLER\NPROTECT\00000066.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.22:C:\RECYCLER\NPROTECT\00000066.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.40:C:\RECYCLER\NPROTECT\00000071.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.41:C:\RECYCLER\NPROTECT\00000071.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.42:C:\RECYCLER\NPROTECT\00000071.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.43:C:\RECYCLER\NPROTECT\00000071.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.52:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.52:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.53:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.53:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.53:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.53:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.53:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.53:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.53:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.53:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.53:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.53:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.54:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.54:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.54:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.54:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.54:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.54:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.54:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.54:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.54:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.54:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.54:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.54:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.54:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.54:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.55:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.55:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.55:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.55:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.55:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.55:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.55:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.55:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.55:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.55:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.55:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.55:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.55:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.55:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.56:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.56:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.56:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.56:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.56:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.56:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.56:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.56:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.56:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.56:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.56:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.56:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.57:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.57:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.57:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.57:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.6:C:\RECYCLER\NPROTECT\00000065.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.7:C:\RECYCLER\NPROTECT\00000065.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.7:C:\RECYCLER\NPROTECT\00000070.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.8:C:\RECYCLER\NPROTECT\00000070.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.9:C:\RECYCLER\NPROTECT\00000065.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.9:C:\RECYCLER\NPROTECT\00000069.MOZ -> TrackingCookie.Advertising : Cleaned.
:mozilla.13:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.20:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.24:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.25:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.25:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.27:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.27:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.27:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.6:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.6:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.6:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.6:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.6:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.7:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Atdmt : Cleaned.
:mozilla.20:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Bridgetrack : Cleaned.
:mozilla.25:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Bridgetrack : Cleaned.
:mozilla.25:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Bridgetrack : Cleaned.
:mozilla.40:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Bridgetrack : Cleaned.
:mozilla.11:C:\RECYCLER\NPROTECT\00000069.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.11:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.25:C:\RECYCLER\NPROTECT\00000067.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.26:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.27:C:\RECYCLER\NPROTECT\00000066.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.28:C:\RECYCLER\NPROTECT\00000070.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.36:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.44:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.44:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.44:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.45:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.45:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.45:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.46:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.46:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.47:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.47:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.48:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.7:C:\RECYCLER\NPROTECT\00000071.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.8:C:\RECYCLER\NPROTECT\00000065.MOZ -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.10:C:\RECYCLER\NPROTECT\00000070.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.10:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.10:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.11:C:\RECYCLER\NPROTECT\00000065.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.11:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.12:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.12:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.13:C:\RECYCLER\NPROTECT\00000069.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.13:C:\RECYCLER\NPROTECT\00000071.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.13:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.13:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.14:C:\RECYCLER\NPROTECT\00000065.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.14:C:\RECYCLER\NPROTECT\00000071.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.14:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.14:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.14:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.14:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.15:C:\RECYCLER\NPROTECT\00000065.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.15:C:\RECYCLER\NPROTECT\00000069.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.15:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.15:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.15:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Fastclick : Cleaned.

Stormcougar
2006-10-06, 09:19
:mozilla.16:C:\RECYCLER\NPROTECT\00000065.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.16:C:\RECYCLER\NPROTECT\00000069.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.16:C:\RECYCLER\NPROTECT\00000070.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.16:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.17:C:\RECYCLER\NPROTECT\00000069.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.17:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.17:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.17:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.18:C:\RECYCLER\NPROTECT\00000067.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.18:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.19:C:\RECYCLER\NPROTECT\00000067.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.19:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.20:C:\RECYCLER\NPROTECT\00000067.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.21:C:\RECYCLER\NPROTECT\00000067.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.21:C:\RECYCLER\NPROTECT\00000070.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.22:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.22:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.22:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.23:C:\RECYCLER\NPROTECT\00000066.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.23:C:\RECYCLER\NPROTECT\00000071.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.23:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.23:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.23:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.24:C:\RECYCLER\NPROTECT\00000066.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.24:C:\RECYCLER\NPROTECT\00000071.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.24:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.25:C:\RECYCLER\NPROTECT\00000066.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.26:C:\RECYCLER\NPROTECT\00000066.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.27:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.28:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.29:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.31:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.36:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.36:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.36:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.37:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.37:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.37:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.38:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.38:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.38:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.39:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.39:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.39:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.47:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.48:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.49:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.50:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.6:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.7:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.7:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.7:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.7:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.8:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.8:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.8:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.9:C:\RECYCLER\NPROTECT\00000070.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.9:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Fastclick : Cleaned.
:mozilla.10:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.12:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.13:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.14:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.15:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.16:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.17:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.25:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.26:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.27:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.28:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.29:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.29:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.30:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.30:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.31:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.31:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.32:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.32:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.33:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.33:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.34:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.34:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.35:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.35:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.40:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.40:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.40:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.40:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.40:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.40:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.40:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.41:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.41:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.41:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.41:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.41:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.41:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.41:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.41:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.41:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.41:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.41:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.42:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.42:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.42:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.42:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.42:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.42:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.42:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.42:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.42:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.42:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.42:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.43:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.43:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.43:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.43:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.43:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.43:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.43:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.43:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.43:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.43:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.43:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.44:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.44:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.44:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.44:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.44:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.44:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.44:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.44:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.45:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.45:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.45:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.45:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.45:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.45:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.45:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.45:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.46:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.46:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.46:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.46:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.46:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.46:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.46:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Trafficmp : Cleaned.

Stormcougar
2006-10-06, 10:45
:mozilla.46:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.46:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.47:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.47:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.47:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.47:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.47:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.47:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.47:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.47:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.47:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.48:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.48:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.48:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.48:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.48:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.48:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.48:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.48:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.48:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.48:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.49:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.49:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.49:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.49:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.49:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.49:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.49:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.49:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.49:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.49:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.49:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.50:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.50:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.50:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.50:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.8:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.9:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Trafficmp : Cleaned.
:mozilla.10:C:\RECYCLER\NPROTECT\00000071.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.10:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.10:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.10:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.10:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.11:C:\RECYCLER\NPROTECT\00000071.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.11:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.11:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.11:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.11:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.12:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.13:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.14:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.15:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.15:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.15:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.16:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.16:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.16:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.16:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.16:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.17:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.17:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.17:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.18:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.18:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.18:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.18:C:\RECYCLER\NPROTECT\00000085.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.18:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.19:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.19:C:\RECYCLER\NPROTECT\00000080.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.19:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.20:C:\RECYCLER\NPROTECT\00000077.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.20:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.20:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.21:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.21:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.21:C:\RECYCLER\NPROTECT\00000087.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.22:C:\RECYCLER\NPROTECT\00000067.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.22:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.22:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.23:C:\RECYCLER\NPROTECT\00000067.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.23:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.23:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.24:C:\RECYCLER\NPROTECT\00000067.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.24:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.24:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.24:C:\RECYCLER\NPROTECT\00000086.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.25:C:\RECYCLER\NPROTECT\00000070.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.25:C:\RECYCLER\NPROTECT\00000079.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.26:C:\RECYCLER\NPROTECT\00000070.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.27:C:\RECYCLER\NPROTECT\00000070.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.31:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.32:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.33:C:\RECYCLER\NPROTECT\00000073.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.33:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.33:C:\RECYCLER\NPROTECT\00000084.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.34:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.35:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.36:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.37:C:\RECYCLER\NPROTECT\00000081.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.6:C:\RECYCLER\NPROTECT\00000066.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.6:C:\RECYCLER\NPROTECT\00000069.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.6:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.6:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.7:C:\RECYCLER\NPROTECT\00000066.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.7:C:\RECYCLER\NPROTECT\00000069.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.7:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.7:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.7:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.8:C:\RECYCLER\NPROTECT\00000066.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.8:C:\RECYCLER\NPROTECT\00000069.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.8:C:\RECYCLER\NPROTECT\00000071.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.8:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.8:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.8:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.8:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.8:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.9:C:\RECYCLER\NPROTECT\00000071.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.9:C:\RECYCLER\NPROTECT\00000074.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.9:C:\RECYCLER\NPROTECT\00000075.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.9:C:\RECYCLER\NPROTECT\00000078.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.9:C:\RECYCLER\NPROTECT\00000083.MOZ -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.9:C:\RECYCLER\NPROTECT\00000088.MOZ -> TrackingCookie.Yieldmanager : Cleaned.


::Report end

Stormcougar
2006-10-06, 10:51
That looks like Norton stuff again, I cleaned it out like instructed...it seemed simple instructions. Unsure if I messed up or not.

I have a new virus that Norton is annoying me with -- sending new HJT.

Logfile of HijackThis v1.99.1
Scan saved at 3:48:21 AM, on 10/6/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5700.0006)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\MySQL\MySQL Server 5.0\bin\mysqld-nt.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\SYSTEM32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wfxsnt40.exe
C:\PROGRA~1\NORTON~1\WinFax\WFXSWTCH.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe
C:\PROGRA~1\LEXMAR~1\ACMonitor_X83.exe
C:\PROGRA~1\LEXMAR~1\AcBtnMgr_X83.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Anti-Blaxx 1.18\Anti-Blaxx.exe
C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\kdx\KHost.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Xfire\Xfire.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\HiJackThis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=54729
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=55245&clcid={SUB_CLCID}
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr7/*http://www.yahoo.com
O1 - Hosts: 153.91.179.153 L2authd.lineage2.com
O2 - BHO: (no name) - {00172AD1-F4BD-48C0-AEB5-A4CFE4638393} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {144475BF-880D-4E52-9DEB-02ED942821C7} - C:\VundoFix Backups\ddcyx.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O2 - BHO: (no name) - {B7672BAF-E9A3-49B6-86B2-C81719A18A4C} - (no file)
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [WinFaxAppPortStarter] wfxsnt40.exe
O4 - HKLM\..\Run: [WFXSwtch] C:\PROGRA~1\NORTON~1\WinFax\WFXSWTCH.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [PrinTray] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
O4 - HKLM\..\Run: [NAV Agent] C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe
O4 - HKLM\..\Run: [Lexmark X83 Button Monitor] C:\PROGRA~1\LEXMAR~1\ACMonitor_X83.exe
O4 - HKLM\..\Run: [Lexmark X83 Button Manager] C:\PROGRA~1\LEXMAR~1\AcBtnMgr_X83.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [Anti-Blaxx Manager] C:\Program Files\Anti-Blaxx 1.18\Anti-Blaxx.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe"
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [kdx] C:\WINDOWS\kdx\KHost.exe -all
O4 - Startup: Xfire.lnk = C:\Program Files\Xfire\Xfire.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?p=ZJfox000
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\User\Start Menu\Programs\IMVU\Run IMVU.lnk
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1141088438437
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1155926045156
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: winepi32 - winepi32.dll (file missing)
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: MySQL - Unknown owner - C:\Program.exe (file missing)
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe

pskelley
2006-10-06, 13:41
This stuff is in the Norton version of a recycle bin (C:\RECYCLER\NPROTECT\)
I suggest you follow these instructions to clean the junk off your computer:
http://service1.symantec.com/support/nsw.nsf/ba62122e5d142a6588256d87006b22be/831aa5c6ef0d750685256c370048ad89?OpenDocument&src=bar_sch_nam
I do not use Norton, if this does not work if the directions are followed, I suggest you contact Norton for instructions.
http://www.symantec.com/techsupp/

You also ignored a lot of nasty junk at the start of the ewido scan, Winfixer is a rouge spyware program. Please clean out that Norton recycle bin then run ewido again deleting what you find unless you know something is not bad.
I have no idea what this junk is:
C:\Documents and Settings\User\My Documents\WoW\UWC_SpeedSoloMiniEMU.rar/miniemu\extra\Tools\ItemCreator1.2.5.exe -> Not-A-Virus.Monitor.Win32.JazoKeylogger.3110 : Ignored.
C:\Program Files\Akutski's 1.9.2 Repack\Tools\Item Creator.rar/ItemCreator1.2.5.exe -> Not-A-Virus.Monitor.Win32.JazoKeylogger.3110 : Ignored.
C:\Program Files\Akutski's 1.9.2 Repack\Tools\ItemCreator1-2-5.rar/ItemCreator1.2.5.exe -> Not-A-Virus.Monitor.Win32.JazoKeylogger.3110 : Ignored.
C:\Program Files\Akutski's 1.9.2 Repack\Tools\game restarter tool.rar/daijwrestarter.exe -> Not-A-Virus.Monitor.Win32.JazoKeylogger.3110 : Ignored.
I would delete it also unless you know something about it. Here are free online scanners if you want to check them:
http://virusscan.jotti.org/
http://www.kaspersky.com/scanforvirus
http://www.virustotal.com/flash/index_en.html


I have a new virus that Norton is annoying me with -- sending new HJT.This is no information at all for me to work with. What is Norton finding, where is it finding it, what does it do about it? I need the exact name and location of anything it locates.

You have stuff in this HJT log that was not in the last one, indicates you may be picking up infections online. My suggestion would be to stay offline until you are clean.

Open HijackThis and choose "Do a system scan only" then check the box in front of these line items:

(If you get a message from Norton or another program about changes, be sure to allow then when using HJT)

(much of this stuff is new and had to be allowed by you? I suggest you click each link and if you do not need them, check and remove them)

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=54729
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=55245&clcid={SUB_CLCID}
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/.../www.yahoo.com

(check and remove all of the rest)

O2 - BHO: (no name) - {00172AD1-F4BD-48C0-AEB5-A4CFE4638393} - (no file)
O2 - BHO: (no name) - {144475BF-880D-4E52-9DEB-02ED942821C7} - C:\VundoFix Backups\ddcyx.dll (file missing)
O2 - BHO: (no name) - {B7672BAF-E9A3-49B6-86B2-C81719A18A4C} - (no file)
O20 - Winlogon Notify: winepi32 - winepi32.dll (file missing)

Close all programs but HJT and all browser windows, then click on "Fix Checked"

Run ATF Cleaner
Double-click ATF-Cleaner.exe to run the program.
Click Select All found at the bottom of the list.
Click the Empty Selected button.
Click Exit on the Main menu to close the program.

Post a new HJT log, the ewido scan after you remove the junk in the Norton Bin and the other bad stuff along with any additional information I requested.

I suggest you download, install, update and run this program for starters, it will block a lot of junk from your computer and it is free.
http://www.javacoolsoftware.com/spywareblaster.html here is a good tutorial for using it.
http://www.bleepingcomputer.com/tutorials/tutorial49.html

Thanks

tashi
2006-10-12, 22:38
How is it going Stormcougar

Stormcougar
2006-10-17, 23:19
Computer is running better then when I first asked your help *thanks*, but still has a bit to go to be back to normal.

Still trying to get the Nortons stuff off...taking more time then I hoped, because the machine is always used the items that take time has to be done at night. I appolize for the time its taking on my end.

Stormcougar
2006-10-18, 09:14
Yay! I got Norton's stuff cleared.

---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------

+ Created at: 6:57:49 PM 10/17/2006

+ Scan result:



C:\Documents and Settings\User\Local Settings\Temp\ICD1.tmp\USDR6_0001_D19M2108NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.q : Ignored.
C:\Documents and Settings\User\Local Settings\Temporary Internet Files\Content.IE5\AZSFYBUH\SystemDoctor2006FreeInstall[1].cab/USDR6_0001_D19M2108NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.q : Ignored.
C:\WINDOWS\Downloaded Program Files\CONFLICT.1\USDR6_0001_D19M2108NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.q : Ignored.
C:\WINDOWS\Downloaded Program Files\CONFLICT.2\USDR6_0001_D19M2108NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.q : Ignored.
C:\WINDOWS\Downloaded Program Files\CONFLICT.3\USDR6_0001_D19M2108NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.q : Ignored.
C:\WINDOWS\Downloaded Program Files\USDR6_0001_D19M2108NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.q : Ignored.
C:\Documents and Settings\User\My Documents\WoW\UWC_SpeedSoloMiniEMU.rar/miniemu\extra\Tools\ItemCreator1.2.5.exe -> Not-A-Virus.Monitor.Win32.JazoKeylogger.3110 : Ignored.
C:\Program Files\Akutski's 1.9.2 Repack\Tools\Item Creator.rar/ItemCreator1.2.5.exe -> Not-A-Virus.Monitor.Win32.JazoKeylogger.3110 : Ignored.
C:\Program Files\Akutski's 1.9.2 Repack\Tools\ItemCreator1-2-5.rar/ItemCreator1.2.5.exe -> Not-A-Virus.Monitor.Win32.JazoKeylogger.3110 : Ignored.
C:\Program Files\Akutski's 1.9.2 Repack\Tools\game restarter tool.rar/daijwrestarter.exe -> Not-A-Virus.Monitor.Win32.JazoKeylogger.3110 : Ignored.
:mozilla.241:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.242:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.191:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.192:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.193:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.194:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.195:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.130:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.131:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.132:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.222:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.223:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.224:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.246:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Cqcounter : Cleaned.
:mozilla.135:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.136:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.137:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.245:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Masterstats : Cleaned.
:mozilla.230:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.231:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.232:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.233:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.234:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.261:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.262:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.200:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.201:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.202:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.203:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.204:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.104:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.105:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.106:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.96:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.97:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.98:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.19:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.20:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.21:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.22:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.23:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.24:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.25:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.26:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.227:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.228:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.229:C:\Documents and Settings\User\Application Data\Mozilla\Firefox\Profiles\xwy80a05.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.


::Report end

pskelley
2006-10-18, 10:28
Please run the AVG scan again, you are choosing to ignore a lot of junk. Either delete or quarantine everything located. Look at that the scan report, you can see the winfixer junk you did not remove with the scan?? If you do not allow the tool to remove that junk, you will have to delete it manually. Make sure you run ths scan in SAFE MODE:
http://www.bleepingcomputer.com/tutorials/tutorial61.html

Before you post the scan, edit out all of the cookies, I have no need to see them again.

Return to here: C:\HiJackThis\HijackThis.exe <<< right click and rename HijackThis.exe to Stormcougar.exe or whatever you wish. Restart the computer and post a new HJT log along with the AVG scan. I believe we are dealing with a hidden Vundo infection and that should show it to us.

Thanks

tashi
2006-10-23, 21:24
Still with us Stormcougar?

Stormcougar
2006-10-26, 10:05
Still with you, figuring out what he means by AVG.

pskelley
2006-10-26, 14:21
If you have questions, please post and ask them. AVG Anti-Spyware will not remove the junk from your computer unless you tell it to. Follow the instructions in this link:
http://www.virusvault.co.uk/fusionbb/showtopic.php?tid/33/

So as not to confuse you, you do not need to do number one (1) of the instructions again since you already have the program installed, but follow the balance of the instructions. In Number six (6), make sure you do this:
Then click Save report > Save report as and save the Report-Scan.txt to your desktop. `


Since it has been over a week since you have responded, be sure you follow all of the directions I posted at this time: 2006-10-18, 04:28
Once I get the results of that HJT log with the renamed HJT.exe and the Report-Scan.txt from AVG Anti-Spyware scan, we will go from there,

Thanks

tashi
2006-10-30, 17:28
Hi all.

I will close this topic if no response by end of day. :)

Stormcougar
2006-11-03, 20:01
Logfile of HijackThis v1.99.1
Scan saved at 1:00:16 PM, on 11/3/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\SYSTEM32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\SYSTEM32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\MySQL\MySQL Server 5.0\bin\mysqld-nt.exe
C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\system32\wfxsnt40.exe
C:\PROGRA~1\NORTON~1\WinFax\WFXSWTCH.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe
C:\PROGRA~1\LEXMAR~1\ACMonitor_X83.exe
C:\PROGRA~1\LEXMAR~1\AcBtnMgr_X83.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\DAEMON Tools\daemon.exe
C:\Program Files\Anti-Blaxx 1.18\Anti-Blaxx.exe
C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe
C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\HiJackThis\ijT.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://us.rd.yahoo.com/customize/ie/defaults/su/msgr7/*http://www.yahoo.com
O1 - Hosts: 153.91.179.153 L2authd.lineage2.com
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton SystemWorks\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [WinFaxAppPortStarter] wfxsnt40.exe
O4 - HKLM\..\Run: [WFXSwtch] C:\PROGRA~1\NORTON~1\WinFax\WFXSWTCH.exe
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [PrinTray] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\printray.exe
O4 - HKLM\..\Run: [NAV Agent] C:\PROGRA~1\NORTON~1\NORTON~1\navapw32.exe
O4 - HKLM\..\Run: [Lexmark X83 Button Monitor] C:\PROGRA~1\LEXMAR~1\ACMonitor_X83.exe
O4 - HKLM\..\Run: [Lexmark X83 Button Manager] C:\PROGRA~1\LEXMAR~1\AcBtnMgr_X83.exe
O4 - HKLM\..\Run: [ATIPTA] "C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe"
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [Anti-Blaxx Manager] C:\Program Files\Anti-Blaxx 1.18\Anti-Blaxx.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe"
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Run IMVU - {d9288080-1baa-4bc4-9cf8-a92d743db949} - C:\Documents and Settings\User\Start Menu\Programs\IMVU\Run IMVU.lnk (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1141088438437
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1155926045156
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: MySQL - Unknown owner - C:\Program.exe (file missing)
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe

pskelley
2006-11-03, 20:21
Well, It is apparent you are not going to follow directions. I will make a couple of suggestions in closing.

1) the version of ewido you are running is out of date, you can download the new version here: http://www.ewido.net/en/

2) I believe your Java program is out of date, see this information:
http://forums.spybot.info/showpost.php?p=12880&postcount=2

3) HJT log appears to be clean of malware. I suggest you do this: System Restore does not know the good files from the bad. In case bad stuff has gotten into your System Restore files, follow the instructions in this link to get clean System Restore files. Turn it off, reboot then turn it back on:
http://service1.symantec.com/SUPPORT/tsgeninfo.nsf/docid/2001111912274039?Open&src=sec_doc_nam

Here is some great information from Tony Klein, Texruss, ChrisRLG and Grinler to help you stay clean and safe online:
http://forums.spybot.info/showthread.php?t=279
http://russelltexas.com/malware/allclear.htm
http://forum.malwareremoval.com/viewtopic.php?t=14
http://www.bleepingcomputer.com/forums/topict2520.html
http://cybercoyote.org/security/not-admin.shtml

tashi:) can close this topic when time permits.

Thanks...pskelley
Safer Networking Forums
http://www.spybot.info/en/donate/index.html
If you are reading this information...thank a teacher,
If you are reading it in English...thank a soldier.

Stormcougar
2006-11-03, 22:40
Explain what direction I didn't follow?

I posted a HiJackThis scan, I started a ewido scan...I come back to post those results which I have to clean to your specs.

Stormcougar
2006-11-03, 22:42
If my ewido is out dated then the scan results are worthless and I'll have to get the new one and start over.

I have updated Java from the first time, FOLLOWING instructions...everything I do java related works. I'm not sure how to update to your standerds.

Stormcougar
2006-11-04, 00:56
---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------

+ Created at: 5:45:18 PM 11/3/2006

+ Scan result:



C:\RECYCLER\NPROTECT\00000099.exe -> Adware.Searchcolor : Cleaned.
C:\WINDOWS\Downloaded Program Files\CONFLICT.1\UDC6_0001_D19M1908NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.m : Cleaned.
C:\WINDOWS\Downloaded Program Files\CONFLICT.2\UDC6_0001_D19M1908NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.m : Cleaned.
C:\WINDOWS\Downloaded Program Files\UDC6_0001_D19M1908NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.m : Cleaned.
C:\WINDOWS\Downloaded Program Files\CONFLICT.1\USDR6_0001_D19M2108NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.q : Cleaned.
C:\WINDOWS\Downloaded Program Files\CONFLICT.2\USDR6_0001_D19M2108NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.q : Cleaned.
C:\WINDOWS\Downloaded Program Files\CONFLICT.3\USDR6_0001_D19M2108NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.q : Cleaned.
C:\WINDOWS\Downloaded Program Files\USDR6_0001_D19M2108NetInstaller.exe -> Not-A-Virus.Downloader.Win32.WinFixer.q : Cleaned.
C:\Documents and Settings\User\My Documents\WoW\UWC_SpeedSoloMiniEMU.rar/miniemu\extra\Tools\ItemCreator1.2.5.exe -> Not-A-Virus.Monitor.Win32.JazoKeylogger.3110 : Cleaned.
C:\Program Files\Akutski's 1.9.2 Repack\Tools\Item Creator.rar/ItemCreator1.2.5.exe -> Not-A-Virus.Monitor.Win32.JazoKeylogger.3110 : Cleaned.
C:\Program Files\Akutski's 1.9.2 Repack\Tools\ItemCreator1-2-5.rar/ItemCreator1.2.5.exe -> Not-A-Virus.Monitor.Win32.JazoKeylogger.3110 : Cleaned.
C:\Program Files\Akutski's 1.9.2 Repack\Tools\game restarter tool.rar/daijwrestarter.exe -> Not-A-Virus.Monitor.Win32.JazoKeylogger.3110 : Cleaned.



::Report end

pskelley
2006-11-04, 01:05
AVG Anti-Spyware cleaned what it located, your HJT log is clean. Make sure you follow the directions in that last post to clean System Restore files. The information in the links from the experts will go a long way towards helping you stay clean.

Safe surfing:bigthumb:

LonnyRJones
2006-11-12, 07:55
Im Glad we could help
Since the problems are solved Im going to close the topic now, this keeps others with similar problems from posting there logs/question here, they should start a new topic.

If you should need to post another log for the same PC let one of us know via a PM (personal message).