Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Hijackthis Log- Need Help Please!


  • This topic is locked This topic is locked
4 replies to this topic

#1 AZpa623

AZpa623

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:04:22 PM

Posted 14 September 2007 - 05:50 PM

Okay well I am going to post my log to see if anyone can help me understand it-
or just tell me what's wrong- or what I need to delete.. (I DON'T KNOW WHAT I AM INFECTED WITH)
Thank you!!




Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 3:49:41 PM, on 9/14/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\csrss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\PROGRA~1\Grisoft\AVG7\avgrssvc.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgrssvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\mcafee.com\personal firewall\MPFService.exe
C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\PROGRA~1\Grisoft\AVG7\avgfwsrv.exe
C:\WINDOWS\System32\alg.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Digital Media Reader\readericon45G.exe
C:\WINDOWS\RTHDCPL.EXE
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Common Files\Logitech\QCDriver3\LVCOMS.EXE
C:\Program Files\Logitech\ImageStudio\LogiTray.exe
C:\Program Files\Common Files\AOL\1172185596\ee\AOLSoftware.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\QuickTime\QTTask.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Ahead\ODD Toolkit\DVDTray.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Program Files\mcafee.com\personal firewall\MPfTray .exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe
C:\WINDOWS\system32\wbem\wmiprvse.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://otp2.mycricket.com/mmawap/jsp/otp/login.jsp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=25040
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R3 - URLSearchHook: AOLTBSearch Class - {EA756889-2338-43DB-8F07-D1CA6FB9C90D} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O1 - Hosts: 66.98.148.65 auto.search.msn.com
O1 - Hosts: 66.98.148.65 auto.search.msn.es
O2 - BHO: Poly HTML Filter BHO - {0140DF95-9128-4053-AE72-F43F0CFCA062} - (no file)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: BitComet Helper - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - (no file)
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: CBrowserHelperObject Object - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\windows\system32\BAE.dll
O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [readericon] C:\Program Files\Digital Media Reader\readericon45G.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [LXCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCCtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Common Files\Logitech\QCDriver3\LVCOMS.EXE
O4 - HKLM\..\Run: [LogitechGalleryRepair] C:\Program Files\Logitech\ImageStudio\ISStart.exe
O4 - HKLM\..\Run: [LogitechImageStudioTray] C:\Program Files\Logitech\ImageStudio\LogiTray.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1172185596\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [MPFExe] C:\Program Files\mcafee.com\personal firewall\MPfTray.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [DVDTray] C:\Program Files\Ahead\ODD Toolkit\DVDTray.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [PowerBar] "C:\Program Files\CyberLink\DVD Solution\PowerBar.exe" /AtBootTime
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [Power2GoExpress] NA (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Power2GoExpress] NA (User 'Default user')
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 5.0\resources\en-US\local\search.html
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Namo SWF Catcher - C:\Program Files\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: Namo SWF Catcher - {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
O9 - Extra 'Tools' menuitem: Namo SWF Catcher - {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O15 - Trusted Zone: http://toolbar.imageshack.us
O16 - DPF: {1B4F9DD7-2D7C-44B5-9126-73206DA0AE75} (CNavigationManager Object) - http://www3.authentium.com/cssrelease/bin/wizard.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/shared/m...01/mcinsctl.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {6BAB93B7-1917-4214-A7D2-874FA6DB4740} (AOL Newport Editor Ctrl) - http://o.aolcdn.com/pictures/ap/Resources/...ns.10.6.0.4.cab
O16 - DPF: {BD4C7EDB-A392-11D9-8BFB-0040953018D7} (PhaseCaster Widget) - http://www.streamerp2p.com/sfiles/phasex.cab
O16 - DPF: {C02226EB-A5D7-4B1F-BD7E-635E46C2288D} (Toontown Installer ActiveX Control) - http://a.download.toontown.com/sv1.0.29.11/ttinst.cab
O16 - DPF: {D821DC4A-0814-435E-9820-661C543A4679} (CRLDownloadWrapper Class) - http://drmlicense.one.microsoft.com/crlupdate/en/crlocx.ocx
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O20 - Winlogon Notify: avgwlntf - C:\WINDOWS\SYSTEM32\avgwlntf.dll
O20 - Winlogon Notify: yayxyvv - yayxyvv.dll (file missing)
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG7 Resident Shield Service (AvgCoreSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgrssvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: AVG Firewall (AVGFwSrv) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgfwsrv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: lxcc_device - Lexmark International, Inc. - C:\WINDOWS\system32\lxcccoms.exe
O23 - Service: McAfee McShield (McShield) - Unknown owner - C:\PROGRA~1\mcafee.com\ANTIVI~1\mcshield.exe (file missing)
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\Program Files\mcafee.com\personal firewall\MPFService.exe
O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: Roxio UPnP Renderer 9 - Sonic Solutions - C:\Program Files\Common Files\Sonic Shared\RoxioUPnPRenderer9.exe
O23 - Service: Roxio Upnp Server 9 - Sonic Solutions - C:\Program Files\Common Files\Sonic Shared\RoxioUpnpService9.exe
O23 - Service: LiveShare P2P Server 9 (RoxLiveShare9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe

--
End of file - 15997 bytes

Edited by AZpa623, 14 September 2007 - 05:51 PM.


BC AdBot (Login to Remove)

 


#2 SifuMike

SifuMike

    malware expert


  • Staff Emeritus
  • 15,385 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Vancouver (not BC) WA (Not DC) USA
  • Local time:02:22 PM

Posted 16 September 2007 - 12:39 AM

Hello AZpa623,

I am SifuMike and I will be helping you. :thumbsup:

Download and install AVG Anti-Spyware v7.5.
  • After download, double click on the file to launch the install process.
  • Choose a language, click "OK" and then click "Next".
  • Read the "License Agreement" and click "I Agree".
  • Accept default installation path: C:\Program Files\Grisoft\AVG Anti-Spyware 7.5, click "Next", then click "Install".
  • After setup completes, click "Finish" to start the program automatically or launch AVG Anti-Spyware by double-clicking its icon on your desktop or in the system tray.
  • Connect to the Internet, go back to AVG Anti-Spyware, select the "Update" button and click "Start update". Wait until you see the "Update successful" message. If you are having problems with the updater, manually update with the AVG Anti-Spyware Full database installer from here.
  • Exit AVG Anti-Spyware when done - DO NOT perform a scan yet.
Reboot your computer in "SAFE MODE" using the F8 method. To do this, restart your computer and after hearing your computer beep once during startup (but before the Windows icon appears) press the F8 key repeatedly. A menu will appear with several options. Use the arrow keys to navigate and select the option to run Windows in "Safe Mode". (Note: When run in safe mode, sometimes the GUI is larger than the screen and the buttons at the bottom are partly or completely hidden, making them unaccessible for doing a scan. If this is the case, press the WINKEY + M key to "Minimize" the AVG display. Then right-click on AVG in the Task Bar and select "Maximize". If that does not help, then you may have to run your scan in normal mode and advise your helper afterwards.)

Scan with AVG Anti-Spyware as follows:
  • Click on the "Scanner" button and choose the "Settings" tab.
  • Under "How to act?", click on "Recommended actions" and choose "Quarantine" to set default action for detected malware.
  • Under "How to Scan?", "Possibly unwanted software", and What to Scan?" leave all the default settings.
  • Under "Reports" select "Do not automatically generate reports" and UNcheck "Only if threats were found".
  • Click the "Scan" tab to return to scanning options.
  • Click "Complete System Scan" to start.
  • When the scan has finished, it should automatically be set to Quarantine--if not click on Recommended Action and set it there.
  • You will also be presented with a list of infected objects found. Click "Apply all actions" to place the files in Quarantine.
IMPORTANT! Do not save the report before you have clicked the Apply all actions button. If you do, the log that is created will indicate "No action taken", making it more difficult to interpret the report. So be sure you save it only AFTER clicking the "Apply all actions" button.
  • Click on "Save Report" to view all completed scans. Click on the most recent scan you just performed and select "Save report as" - the default file name will be in date/time format as follows: Report-Scan-20060620-142816.txt. Save to your desktop.
    A copy of each report will also be saved in C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\Reports\
  • Exit AVG Anti-Spyware when done, reboot normally and submit the log report in your next response.
Note: Close all open windows, programs, and DO NOT USE the computer while AVG Anti-Spyware is scanning. Doing so can hamper AVG Anti-Spyware's ability to clean properly and may result in reinfection.

AVG Anti-Spyware is free for 30 days and all the extensions of the full version will be activated. After the 30 day trial, active protection extensions will be deactivated and the program will turn into a feature-limited freeware version that you can can continue to use as an on-demand scanner or you may purchase a license to use the full version.

********************

Reboot your computer to the Normal Mode.

NOTE: If you have downloaded ComboFix previously please delete that version and download it again!

1. Download this file - combofix.exe to your Desktop.
Note:
It is important that it is saved directly to your desktop

2. Double click combofix.exe & follow the prompts.
3. When finished, it shall produce a log for you, C:\ComboFix.txt. Post the ComboFix log, AVG Anti-Spyware 7.5 log and a fresh Hijackthis log in your next reply.
Do NOT post the ComboFix-quarantined-files.txt - unless I ask you to.

Note:
Do not mouseclick combofix's window while it's running. That may cause it to stall

Edited by SifuMike, 20 September 2007 - 11:57 AM.

If I've saved you time & money,
please make a donation so I can keep helping people just like you! You can donate using a credit card and PayPal. Thank you!



Posted Image

Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.

#3 AZpa623

AZpa623
  • Topic Starter

  • Members
  • 3 posts
  • OFFLINE
  •  
  • Local time:04:22 PM

Posted 20 September 2007 - 03:57 AM

Everytime I run a "Combofix" Wimdows shuts down and I get the blue screen..
But heres the AVG and Hjths.logs:


AVG
General properties
Report name Complete Test
Start time 9/16/2007 8:00
End time 9/16/2007 10:44:27 AM (total: 2:44:16.6 hrs)
Launch method Scanning launched by scheduler
Scanning result Threats found
Report status Scanning completed successfully

Object summary
Scanned 217768
Threats Found 444
Cleaned 0
Moved to vault 434
Deleted 9
Errors 0
D:\System Volume Information\_restore{F845E3DB-F751-4BE4-A620-64F2CA1BFB5F}\RP416\A0169484.exe:\downer.exe Trojan horse Downloader.Delf.AFF Infected, Embedded object
D:\System Volume Information\_restore{F845E3DB-F751-4BE4-A620-64F2CA1BFB5F}\RP416\A0169484.exe Trojan horse Downloader.Delf.AFF Infected, Archive
C:\System Volume Information\_restore{F845E3DB-F751-4BE4-A620-64F2CA1BFB5F}\RP409\A0162851.exe Deleted
C:\System Volume Information\_restore{F845E3DB-F751-4BE4-A620-64F2CA1BFB5F}\RP409\A0164841.sys Deleted
C:\System Volume Information\_restore{F845E3DB-F751-4BE4-A620-64F2CA1BFB5F}\RP409\A0164858.dll Deleted
C:\System Volume Information\_restore{F845E3DB-F751-4BE4-A620-64F2CA1BFB5F}\RP411\A0165004.exe Deleted
C:\System Volume Information\_restore{F845E3DB-F751-4BE4-A620-64F2CA1BFB5F}\RP411\A0165012.exe Deleted
C:\System Volume Information\_restore{F845E3DB-F751-4BE4-A620-64F2CA1BFB5F}\RP411\A0165013.exe Moved to Vault
C:\System Volume Information\_restore{F845E3DB-F751-4BE4-A620-64F2CA1BFB5F}\RP414\A0166062.sys Deleted
C:\WINDOWS\system32\dxdllreg.exe~ Deleted
C:\WINDOWS\system32\pipmon.exe Deleted
TrackingCookie.Trafficmp Family TrackingCookie.Trafficmp Spyware Family
TrackingCookie.2o7 Family TrackingCookie.2o7 Spyware Family
TrackingCookie.Adbrite Family TrackingCookie.Adbrite Spyware Family
TrackingCookie.Yieldmanager Family TrackingCookie.Yieldmanager Spyware Family
TrackingCookie.Clickhype Family TrackingCookie.Clickhype Spyware Family
TrackingCookie.Euroclick Family TrackingCookie.Euroclick Spyware Family
TrackingCookie.Specificclick Family TrackingCookie.Specificclick Spyware Family
TrackingCookie.Adrevolver Family TrackingCookie.Adrevolver Spyware Family
TrackingCookie.Addynamix Family TrackingCookie.Addynamix Spyware Family
TrackingCookie.Pointroll Family TrackingCookie.Pointroll Spyware Family
TrackingCookie.Advertising Family TrackingCookie.Advertising Spyware Family
TrackingCookie.Tacoda Family TrackingCookie.Tacoda Spyware Family
TrackingCookie.Atdmt Family TrackingCookie.Atdmt Spyware Family
TrackingCookie.Bluestreak Family TrackingCookie.Bluestreak Spyware Family
TrackingCookie.Serving-sys Family TrackingCookie.Serving-sys Spyware Family
TrackingCookie.Burstnet Family TrackingCookie.Burstnet Spyware Family
TrackingCookie.Casalemedia Family TrackingCookie.Casalemedia Spyware Family
TrackingCookie.Com Family TrackingCookie.Com Spyware Family
TrackingCookie.Cpvfeed Family TrackingCookie.Cpvfeed Spyware Family
TrackingCookie.Dealtime Family TrackingCookie.Dealtime Spyware Family
TrackingCookie.Doubleclick Family TrackingCookie.Doubleclick Spyware Family
TrackingCookie.Ru4 Family TrackingCookie.Ru4 Spyware Family
TrackingCookie.Hitbox Family TrackingCookie.Hitbox Spyware Family
TrackingCookie.Enhance Family TrackingCookie.Enhance Spyware Family
TrackingCookie.Fastclick Family TrackingCookie.Fastclick Spyware Family
TrackingCookie.Starware Family TrackingCookie.Starware Spyware Family
TrackingCookie.Ivwbox Family TrackingCookie.Ivwbox Spyware Family
TrackingCookie.Webtrends Family TrackingCookie.Webtrends Spyware Family
TrackingCookie.Mediaplex Family TrackingCookie.Mediaplex Spyware Family
TrackingCookie.Overture Family TrackingCookie.Overture Spyware Family
TrackingCookie.Pro-market Family TrackingCookie.Pro-market Spyware Family
TrackingCookie.Questionmarket Family TrackingCookie.Questionmarket Spyware Family
TrackingCookie.Realmedia Family TrackingCookie.Realmedia Spyware Family
TrackingCookie.Valuead Family TrackingCookie.Valuead Spyware Family
TrackingCookie.Revsci Family TrackingCookie.Revsci Spyware Family
TrackingCookie.Netflame Family TrackingCookie.Netflame Spyware Family
TrackingCookie.Onestat Family TrackingCookie.Onestat Spyware Family
TrackingCookie.Statcounter Family TrackingCookie.Statcounter Spyware Family
TrackingCookie.Webtrendslive Family TrackingCookie.Webtrendslive Spyware Family
TrackingCookie.Tradedoubler Family TrackingCookie.Tradedoubler Spyware Family
TrackingCookie.Tribalfusion Family TrackingCookie.Tribalfusion Spyware Family
TrackingCookie.Burstbeacon Family TrackingCookie.Burstbeacon Spyware Family
TrackingCookie.Paypal Family TrackingCookie.Paypal Spyware Family
TrackingCookie.Yadro Family TrackingCookie.Yadro Spyware Family
TrackingCookie.Zedo Family TrackingCookie.Zedo Spyware Family
TrackingCookie.Hitslink Family TrackingCookie.Hitslink Spyware Family
TrackingCookie.Googleadservices Family TrackingCookie.Googleadservices Spyware Family
TrackingCookie.Cnw Family TrackingCookie.Cnw Spyware Family
TrackingCookie.Hotlog Family TrackingCookie.Hotlog Spyware Family
TrackingCookie.Clickbank Family TrackingCookie.Clickbank Spyware Family
TrackingCookie.Smartadserver Family TrackingCookie.Smartadserver Spyware Family
TrackingCookie.Imrworldwide Family TrackingCookie.Imrworldwide Spyware Family
TrackingCookie.Cnn Family TrackingCookie.Cnn Spyware Family
C:\Documents and Settings\Owner\Cookies\owner@trafficmp[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Local Settings\Temp\b7gknkx1.exe Potentially Unwanted Program, Moved to Vault
C:\System Volume Information\_restore{F845E3DB-F751-4BE4-A620-64F2CA1BFB5F}\RP411\A0165014.exe Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@2o7[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@2o7[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@2o7[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@2o7[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@2o7[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@2o7[7].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@2o7[8].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@3.adbrite[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@3.adbrite[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@3.adbrite[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@4.adbrite[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@4.adbrite[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@4.adbrite[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@4.adbrite[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@4.adbrite[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@4.adbrite[6].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@4.adbrite[8].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ad.yieldmanager[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ad.yieldmanager[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ad.yieldmanager[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ad.yieldmanager[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ad.yieldmanager[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ad.yieldmanager[6].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ad.yieldmanager[7].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ad1.clickhype[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ad1.clickhype[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@adbrite[10].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@adbrite[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@adbrite[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@adbrite[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@adbrite[6].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@adbrite[7].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@adbrite[9].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@adopt.euroclick[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@adopt.euroclick[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@adopt.euroclick[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@adopt.specificclick[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@adopt.specificclick[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@adopt.specificclick[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@adopt.specificclick[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@adopt.specificclick[6].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@adrevolver[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@adrevolver[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@adrevolver[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@adrevolver[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@adrevolver[6].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ads.adbrite[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ads.adbrite[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ads.adbrite[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ads.adbrite[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ads.adbrite[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ads.adbrite[6].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ads.adbrite[7].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ads.addynamix[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ads.addynamix[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ads.addynamix[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ads.addynamix[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ads.addynamix[6].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ads.pointroll[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ads.pointroll[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ads.pointroll[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ads.pointroll[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ads.pointroll[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ads.pointroll[6].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ads.pointroll[7].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@advertising[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@advertising[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@advertising[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@advertising[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@advertising[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@advertising[6].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@advertising[7].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@anad.tacoda[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@anad.tacoda[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@anat.tacoda[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@anat.tacoda[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@atdmt[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@atdmt[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@atdmt[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@atdmt[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@atdmt[6].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@atdmt[7].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@atdmt[8].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@bluestreak[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@bluestreak[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@bluestreak[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@bluestreak[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@bs.serving-sys[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@bs.serving-sys[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@bs.serving-sys[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@burstnet[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@burstnet[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@buzznet.112.2o7[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@casalemedia[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@casalemedia[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@casalemedia[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@casalemedia[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@com[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@cpvfeed[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@cpvfeed[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@cpvfeed[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@cpvfeed[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@dealtime[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@doubleclick[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@doubleclick[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@doubleclick[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@doubleclick[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@doubleclick[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@doubleclick[6].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@doubleclick[8].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@edge.ru4[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@edge.ru4[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@edge.ru4[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ehg-dig.hitbox[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ehg-dig.hitbox[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ehg-dig.hitbox[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ehg-dig.hitbox[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ehg-foxsports.hitbox[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ehg-kasperskylab.hitbox[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ehg-pcsecurityshield.hitbox[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ehg-reddoorinteractive.hitbox[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ehg-reddoorinteractive.hitbox[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ehg-reddoorinteractive.hitbox[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ehg-youtube.hitbox[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@enhance[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@fastclick[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@fastclick[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@fastclick[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@fastclick[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@fastclick[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@h.starware[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@hitbox[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@hitbox[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@hitbox[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@hitbox[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@hitbox[6].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@hitbox[7].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@hitbox[8].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ivwbox[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@m.webtrends[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@mediaplex[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@mediaplex[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@mediaplex[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@mediaplex[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@mediaplex[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@mediaplex[6].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@mediaplex[7].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@overture[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@overture[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@overture[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@overture[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@overture[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@perf.overture[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@perf.overture[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@planetout.122.2o7[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@pro-market[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@questionmarket[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@questionmarket[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@questionmarket[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@questionmarket[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@questionmarket[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@questionmarket[7].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@realmedia[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@realmedia[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@realmedia[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@realmedia[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@realmedia[6].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@realmedia[7].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@realmedia[8].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@reduxads.valuead[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@reduxads.valuead[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@reduxads.valuead[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@revsci[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@revsci[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@revsci[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@revsci[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@revsci[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@revsci[6].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@revsci[8].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@serving-sys[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@serving-sys[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@serving-sys[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@shopping.112.2o7[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@specificclick[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@specificclick[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@specificclick[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@specificclick[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@specificclick[6].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ssl-hints.netflame[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@ssl-hints.netflame[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@stat.dealtime[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@stat.onestat[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@statcounter[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@statcounter[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@statcounter[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@statcounter[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@statcounter[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@statcounter[6].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@statse.webtrendslive[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@tacoda[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@tacoda[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@tacoda[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@tacoda[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@tradedoubler[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@tradedoubler[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@tradedoubler[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@trafficmp[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@trafficmp[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@trafficmp[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@trafficmp[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@trafficmp[5].txt Potentially Unwanted Program, Deleted
C:\Documents and Settings\Owner\Cookies\owner@tribalfusion[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@tribalfusion[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@tribalfusion[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@tribalfusion[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@tribalfusion[6].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@try.starware[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@try.starware[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@try.starware[5].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@try.starware[6].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@usatoday1.112.2o7[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@www.burstbeacon[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@www.burstbeacon[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@www.burstbeacon[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@www.burstbeacon[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@www.burstnet[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@www.burstnet[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@www.burstnet[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@www.burstnet[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@www.burstnet[6].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@www.paypal[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@www.paypal[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@www.paypal[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@yadro[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@yadro[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@zedo[1].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@zedo[2].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@zedo[3].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@zedo[4].txt Potentially Unwanted Program, Moved to Vault
C:\Documents and Settings\Owner\Cookies\owner@zedo[5].txt Potentially Unwanted Program, Moved to Vault
:mozilla.42:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.43:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.44:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.45:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.46:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.47:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.48:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.49:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.50:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.51:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.52:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.53:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.54:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.55:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.56:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.57:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.72:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.73:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.75:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.76:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.90:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.97:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.98:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.99:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.100:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.101:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.116:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.117:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.118:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.119:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.120:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.121:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.122:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.123:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.124:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.125:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.126:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.127:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.128:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.129:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.130:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.131:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.132:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.133:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.134:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.135:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.136:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.137:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.138:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.139:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.140:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.141:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.142:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.143:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.144:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.148:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.149:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.150:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.151:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.152:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.153:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.169:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.171:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.172:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.173:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.174:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.175:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.176:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.177:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.178:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.179:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.180:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.181:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.182:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.183:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.184:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.187:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.191:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.192:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.193:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.195:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.276:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.284:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.285:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.286:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.287:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.288:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.297:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.298:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.299:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.300:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.301:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.302:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.303:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.304:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.305:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.306:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.342:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.378:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.380:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.381:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.382:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.386:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.388:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.406:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.407:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.408:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.409:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.410:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.456:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.457:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.458:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.459:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.460:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.462:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.463:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.464:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.500:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.501:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.502:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.506:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.524:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.527:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.547:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.565:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.605:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.606:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.607:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.608:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.609:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.610:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.611:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.612:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.624:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.625:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.626:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.627:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.630:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.633:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.634:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.635:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.636:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.637:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.638:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.639:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.659:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.660:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.661:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.662:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.663:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.664:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.678:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.723:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.776:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.798:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.799:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.800:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.801:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.802:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.804:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.805:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.808:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.811:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.812:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.813:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.814:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.815:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.816:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.817:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.818:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.822:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.823:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.824:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.825:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.826:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.827:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.828:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.829:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.830:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.831:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.832:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.833:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.834:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.835:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.836:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.845:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.885:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.886:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.887:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.888:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault
:mozilla.889:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\cl7dnv7k.default\cookies.txt Potentially Unwanted Program, Moved to Vault


HJTHS LOG

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 1:56:20 AM, on 9/20/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16512)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\Grisoft\AVG7\avgrssvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgrssvc.exe
C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe
C:\Program Files\Digital Media Reader\readericon45G.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe
C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Common Files\Logitech\QCDriver3\LVCOMS.EXE
C:\Program Files\Logitech\ImageStudio\LogiTray.exe
C:\Program Files\Common Files\AOL\1172185596\ee\AOLSoftware.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\QuickTime\QTTask.exe
C:\Program Files\Ahead\ODD Toolkit\DVDTray.exe
C:\PROGRA~1\Grisoft\AVG7\avgcc.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\mcafee.com\personal firewall\MPfTray .exe
C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
C:\Program Files\CyberLink\Shared Files\RichVideo.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\PROGRA~1\Grisoft\AVG7\avgfwsrv.exe
C:\WINDOWS\system32\SearchIndexer.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\mcafee.com\personal firewall\MPFService.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://otp2.mycricket.com/mmawap/jsp/otp/login.jsp
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://g.msn.com/0SEENUS/SAOS01?FORM=TOOLBR
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://go.microsoft.com/fwlink/?LinkId=25040
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = 127.0.0.1
R3 - URLSearchHook: AOLTBSearch Class - {EA756889-2338-43DB-8F07-D1CA6FB9C90D} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O1 - Hosts: 66.98.148.65 auto.search.msn.com
O1 - Hosts: 66.98.148.65 auto.search.msn.es
O2 - BHO: Poly HTML Filter BHO - {0140DF95-9128-4053-AE72-F43F0CFCA062} - (no file)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: BitComet Helper - {39F7E362-828A-4B5A-BCAF-5B79BFDFEA60} - (no file)
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~1\MICROS~2\Office12\GRA8E1~1.DLL
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: Windows Live Toolbar Helper - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O2 - BHO: CBrowserHelperObject Object - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - c:\windows\system32\BAE.dll
O3 - Toolbar: (no name) - {0BF43445-2F28-4351-9252-17FE6E806AA0} - (no file)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: Windows Live Toolbar - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\Windows Live Toolbar\msntb.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ.exe"
O4 - HKLM\..\Run: [readericon] C:\Program Files\Digital Media Reader\readericon45G.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [LXCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCCtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [GrooveMonitor] "C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe"
O4 - HKLM\..\Run: [Logitech Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Common Files\Logitech\QCDriver3\LVCOMS.EXE
O4 - HKLM\..\Run: [LogitechGalleryRepair] C:\Program Files\Logitech\ImageStudio\ISStart.exe
O4 - HKLM\..\Run: [LogitechImageStudioTray] C:\Program Files\Logitech\ImageStudio\LogiTray.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1172185596\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [MPFExe] C:\Program Files\mcafee.com\personal firewall\MPfTray.exe
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [DVDTray] C:\Program Files\Ahead\ODD Toolkit\DVDTray.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVG7\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [PowerBar] "C:\Program Files\CyberLink\DVD Solution\PowerBar.exe" /AtBootTime
O4 - HKCU\..\Run: [NBJ] "C:\Program Files\Ahead\Nero BackItUp\NBJ.exe"
O4 - HKUS\S-1-5-19\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [AVG7_Run] C:\PROGRA~1\Grisoft\AVG7\avgw.exe /RUNONCE (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-18\..\Run: [Power2GoExpress] NA (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [Power2GoExpress] NA (User 'Default user')
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 5.0\resources\en-US\local\search.html
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Add to Windows &Live Favorites - http://favorites.live.com/quickadd.aspx
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office12\EXCEL.EXE/3000
O8 - Extra context menu item: Namo SWF Catcher - C:\Program Files\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_02\bin\ssv.dll
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: S&end to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\PROGRA~1\MICROS~2\Office12\ONBttnIE.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 5.0\aoltb.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - C:\WINDOWS\bdoscandel.exe
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\Office12\REFIEBAR.DLL
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: Namo SWF Catcher - {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
O9 - Extra 'Tools' menuitem: Namo SWF Catcher - {E19ADC6E-3909-43E4-9A89-B7B676377EE3} - C:\Program Files\Common Files\SourceTec\SWF Catcher\InternetExplorer.htm
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O15 - Trusted Zone: http://toolbar.imageshack.us
O16 - DPF: {1B4F9DD7-2D7C-44B5-9126-73206DA0AE75} (CNavigationManager Object) - http://www3.authentium.com/cssrelease/bin/wizard.exe
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} - http://download.mcafee.com/molbin/shared/m...01/mcinsctl.cab
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {6BAB93B7-1917-4214-A7D2-874FA6DB4740} (AOL Newport Editor Ctrl) - http://o.aolcdn.com/pictures/ap/Resources/...ns.10.6.0.4.cab
O16 - DPF: {BD4C7EDB-A392-11D9-8BFB-0040953018D7} (PhaseCaster Widget) - http://www.streamerp2p.com/sfiles/phasex.cab
O16 - DPF: {C02226EB-A5D7-4B1F-BD7E-635E46C2288D} (Toontown Installer ActiveX Control) - http://a.download.toontown.com/sv1.0.29.11/ttinst.cab
O16 - DPF: {D821DC4A-0814-435E-9820-661C543A4679} (CRLDownloadWrapper Class) - http://drmlicense.one.microsoft.com/crlupdate/en/crlocx.ocx
O18 - Protocol: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - C:\PROGRA~1\MICROS~2\Office12\GR99D3~1.DLL
O20 - Winlogon Notify: avgwlntf - C:\WINDOWS\SYSTEM32\avgwlntf.dll
O20 - Winlogon Notify: yayxyvv - yayxyvv.dll (file missing)
O23 - Service: AOL Connectivity Service (AOL ACS) - AOL LLC - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - C:\WINDOWS\system32\ati2sgag.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgupsvc.exe
O23 - Service: AVG7 Resident Shield Service (AvgCoreSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgrssvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgemc.exe
O23 - Service: AVG Firewall (AVGFwSrv) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVG7\avgfwsrv.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: lxcc_device - Lexmark International, Inc. - C:\WINDOWS\system32\lxcccoms.exe
O23 - Service: McAfee McShield (McShield) - Unknown owner - C:\PROGRA~1\mcafee.com\ANTIVI~1\mcshield.exe (file missing)
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\Program Files\mcafee.com\personal firewall\MPFService.exe
O23 - Service: PrismXL - New Boundary Technologies, Inc. - C:\Program Files\Common Files\New Boundary\PrismXL\PRISMXL.SYS
O23 - Service: Cyberlink RichVideo Service(CRVS) (RichVideo) - Unknown owner - C:\Program Files\CyberLink\Shared Files\RichVideo.exe
O23 - Service: Roxio UPnP Renderer 9 - Sonic Solutions - C:\Program Files\Common Files\Sonic Shared\RoxioUPnPRenderer9.exe
O23 - Service: Roxio Upnp Server 9 - Sonic Solutions - C:\Program Files\Common Files\Sonic Shared\RoxioUpnpService9.exe
O23 - Service: LiveShare P2P Server 9 (RoxLiveShare9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxLiveShare9.exe
O23 - Service: RoxMediaDB9 - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxMediaDB9.exe
O23 - Service: Roxio Hard Drive Watcher 9 (RoxWatch9) - Sonic Solutions - C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe

--
End of file - 15674 bytes

#4 SifuMike

SifuMike

    malware expert


  • Staff Emeritus
  • 15,385 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Vancouver (not BC) WA (Not DC) USA
  • Local time:02:22 PM

Posted 20 September 2007 - 11:56 AM

Everytime I run a "Combofix" Wimdows shuts down and I get the blue screen..


I need to know why Comobfix does not run. What messages are you getting? Are you following the directions I posted? Did you run it in the Normal Mode? Do NOT run it in the Safe Mode.


But heres the AVG


That is not the AVG antispyware scan, it is the AVG log. I can see my you Hijackthis log that you did not run AVG antispyware. :thumbsup:
Looks like you did not read and follow my instructions. :flowers:

So go back and read them again and first run ComboFix in the normal mode and post the ComboFix log.

After you do that then run AVG antispyware in the Safe Mode. Please follow my previous instructions on the way to run it.

Edited by SifuMike, 20 September 2007 - 11:44 PM.

If I've saved you time & money,
please make a donation so I can keep helping people just like you! You can donate using a credit card and PayPal. Thank you!



Posted Image

Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.

#5 SifuMike

SifuMike

    malware expert


  • Staff Emeritus
  • 15,385 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Vancouver (not BC) WA (Not DC) USA
  • Local time:02:22 PM

Posted 24 September 2007 - 11:04 PM

Due to inactivity, this thread will now be closed. If you need this topic reopened, please contact me or a member of the HJT Team and we will reopen it for you. Include the address of this thread in your request. If you should have a new issue, please start a new topic. This applies only to the original topic starter. Everyone else please begin a New Topic.
If I've saved you time & money,
please make a donation so I can keep helping people just like you! You can donate using a credit card and PayPal. Thank you!



Posted Image

Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users