Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

rdriv.sys Trojan


  • This topic is locked This topic is locked
15 replies to this topic

#1 cheesycow5

cheesycow5

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:10:47 AM

Posted 03 August 2005 - 07:00 PM

My anti-virus software happened to pick up on a virus in my computer called rdriv.sys. It is located at C:\Windows\system32\rdriv.sys. Avast can do nothing about it. When I go to delete it, it just reappears the next second. I am currently in Safe Mode with Networking.

I joined this forum in the hopes that someone can help me fix this.

Thanks!

Edit: I've noticed that many people put their HijackThis log in their post. Even though I don't know what HijackThis is or what the log is for, I went ahead and did it:

Logfile of HijackThis v1.99.1
Scan saved at 8:08:46 PM, on 8/3/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\System32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Dima\Desktop\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.toshiba.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/...rch/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/...//www.yahoo.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://red.clientapps.yahoo.com/customize/...://my.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.mybluelight.com/s/search?r=minisearch
R3 - URLSearchHook: URLSearchHook Class - {37D2CDBF-2AF4-44AA-8113-BD0D2DA3C2B8} - C:\Program Files\BLSearch\SearchEnh1.dll
O1 - Hosts: 12.129.205.209 search.netscape.com12.129.205.209 sitefinder.verisign.com
O1 - Hosts: 12.129.205.209 search.netscape.com12.129.205.209 sitefinder.verisign.com
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO:   - {57AEC4F9-DB30-4D5C-AA5E-CE2CFC895994} - C:\WINDOWS\lbbho.dll
O2 - BHO: AIMSite Class - {D70E6A20-7060-4829-B3D7-B6624A1DE7C6} - C:\Program Files\AIM Toolbar\aimhelper.dll (file missing)
O3 - Toolbar: Browser Bar - {F5735C15-1FB2-41FE-BA12-242757E69DDE} - C:\Program Files\BlueLight Internet\toolbar.dll
O3 - Toolbar: MyBlueLight - {25EEFF3E-58EE-4811-95CC-78F922605006} - C:\Program Files\BlueLight Internet\Toolbar.dll
O4 - HKLM\..\Run: [00THotkey] C:\WINDOWS\System32\00THotkey.exe
O4 - HKLM\..\Run: [000StTHK] 000StTHK.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [LtMoh] C:\Program Files\ltmoh\Ltmoh.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [TouchED] C:\Program Files\TOSHIBA\TouchED\TouchED.Exe
O4 - HKLM\..\Run: [TFNF5] TFNF5.exe
O4 - HKLM\..\Run: [PadTouch] "C:\Program Files\TOSHIBA\PadTouch\PadExe.exe
O4 - HKLM\..\Run: [TPSMain] TPSMain.exe
O4 - HKLM\..\Run: [TFncKy] TFncKy.exe
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_Px.exe
O4 - HKLM\..\Run: [B'sCLiP] C:\PROGRA~1\B'SCLI~1\Win2K\BSCLIP.exe
O4 - HKLM\..\Run: [Pinger] c:\toshiba\ivp\ism\pinger.exe /run
O4 - HKLM\..\Run: [Disc Detector] C:\Program Files\Creative\ShareDLL\CtNotify.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] C:\Program Files\Google\Gmail Notifier\gnotify.exe
O4 - HKLM\..\Run: [WhenUSave] "C:\Program Files\Save\Save.exe"
O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - Global Startup: Billminder.lnk = C:\Program Files\QUICKENW\BILLMIND.EXE
O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
O4 - Global Startup: Kodak software updater.lnk = C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
O4 - Global Startup: Office Startup.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE
O4 - Global Startup: Quicken Startup.lnk = C:\Program Files\QUICKENW\QWDLLS.EXE
O4 - Global Startup: RAMASST.lnk = C:\WINDOWS\system32\RAMASST.exe
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\DAP\dapextie.htm
O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\DAP\dapextie2.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Flash2X Flash Hunter - {77B563A5-2A35-4E6B-BFC8-F4B6BB65D5DF} - C:\Program Files\Flash2X\Flash Hunter\save.htm (file missing) (HKCU)
O9 - Extra 'Tools' menuitem: &Launch Flash Hunter - {77B563A5-2A35-4E6B-BFC8-F4B6BB65D5DF} - C:\Program Files\Flash2X\Flash Hunter\save.htm (file missing) (HKCU)
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.toshiba.com
O16 - DPF: {15AD4789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://public.windupdates.com/get_file.php...5271ab95b94951b
O16 - DPF: {26CBF141-7D0F-46E1-AA06-718958B6E4D2} - http://download.ebay.com/turbo_lister/US/install.cab
O16 - DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} - http://www.nick.com/common/groove/gx/GrooveAX27.cab
O16 - DPF: {87067F04-DE4C-4688-BC3C-4FCF39D609E7} - http://download.websearch.com/Dnl/T_50188/QDow_AS2.cab
O16 - DPF: {99410CDE-6F16-42ce-9D49-3807F78F0287} - http://www.180searchassistant.com/180saax.cab
O16 - DPF: {C02226EB-A5D7-4B1F-BD7E-635E46C2288D} (Toontown Installer ActiveX Control) - http://download.toontown.com/sv1.0.13.16/ttinst.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: C-DillaCdaC11BA - C-Dilla Ltd - C:\WINDOWS\System32\drivers\CDAC11BA.EXE
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: DVD-RAM_Service - Matsubleepa Electric Industrial Co., Ltd. - C:\WINDOWS\System32\DVDRAMSV.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: Flexlm (lmgrd) - Unknown owner - C:\Program Files\Cadopia\IntelliCAD 4\LicenseManager\lmgrd.exe (file missing)
O23 - Service: lsass (Local Security Authority System Service) - Unknown owner - C:\WINDOWS\lsass.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Swupdtmr - Unknown owner - c:\toshiba\ivp\swupdate\swupdtmr.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
O23 - Service: WinTools for IE service (WinToolsSvc) - Unknown owner - C:\Program Files\Common Files\WinTools\WToolsS.exe (file missing)
O23 - Service: WEP key recovery service (WZCOOK) - Unknown owner - C:\Documents and Settings\Dima\Desktop\aircrack-2.1\win32\wzcook.exe" (file missing)

Mod Edit: Using code for HJT logs makes it hard for team to read. So I have removed them.

Edited by Scarlett, 03 August 2005 - 07:22 PM.


BC AdBot (Login to Remove)

 


#2 g2i2r4

g2i2r4

    Malware remover


  • Members
  • 900 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:05:47 PM

Posted 04 August 2005 - 07:44 AM

Welcome cheesycow5 to Bleeping Computer.

Please follow all instructions as specified. Print these instructions to ensure all are followed.

You are running HijackThis from the Desktop.
Please create a new folder for it and move the program into the new folder.

***

Go to Start > Run and type in Services.msc then click OK

Click the Extended tab.

Scroll down until you find:
lsass

Click once on the service to highlight it.

Click Stop

Right-Click on the service.

Click on 'Properties'

Select the 'General' tab

Click the Arrow-down tab on the right-hand side on the 'Start-up Type' box

From the drop-down menu, click on 'Disabled'

Click the 'Apply' tab, then click 'OK'

The service is now stopped and disabled.

Do the same for this service:
WinTools for IE service

***

Open HijackThis
click on "None of the above, just start the program".
click on the "Config" button (bottom right),
click on "Misc Tools"
click on "Delete an NT Service" (a window will pop up)
Enter the below item into that field (make sure there are NO spaces before or after the name):

Local Security Authority System Service

Click OK.

It should pull up information about the service, then ask if you want to reboot. Click No the first time.


Now repeat this for the following service:
WinToolsSvc
Click YES at the reboot prompt now.

***

Please download the following programs, but do not run them yet:

* rdrivRem.zip
  • Unzip it to your desktop.
***

* Ewido Security Suite
  • Install ewido security suite
  • Launch ewido, there should be a big E icon on your desktop, double-click it.
  • The program will prompt you to update click the OK button
  • The program will now go to the main screen
  • You will need to update ewido to the latest definition files.
  • On the left hand side of the main screen click update
  • Click on Start
  • The update will start and a progress bar will show the updates being installed
  • After the updates are installed exit Ewido.
***

* CleanUp!
  • Install it.
***

Reboot your computer into Safe Mode. You can do this by restarting your computer and continually tapping the F8 key until a menu appears. Use your up arrow key to highlight "Safe Mode" then hit enter.

***

Open HijackThis
  • Click on the configure button on the bottom right
  • Click on the tab "Misc Tools"
  • Click on the Box that says "Uninstall Manager"
  • Click on the entry you wish to delete:
    SaveNow or WhenUSave or WhenUSearch or VVSN
    WinTools
  • Click on Delete this entry for each one you can find.
  • Click "Yes"
Close HijackThis.

***

1.) Please double-click rdrivRem.bat to run the program - follow the instructions on the screen. After it's complete, rdriv.txt will be created in the rdrivRem folder.

***

2.) Double-click the Ewido Security Suite icon to run the program.
  • Click on scanner
  • Click Complete System Scan
  • Let the program scan the machine
While the scan is in progress you will be prompted to clean the first infected file it finds. Choose "remove", then put a check next to "Perform action on all infections" in the left corner of the box so you don't have to sit and watch Ewido the whole time. Click OK.

Once the scan has completed, there will be a button located on the bottom of the screen named Save report
  • Click Save report
  • Save the report to your desktop
  • Exit Ewido
***

3.) Open Cleanup! by double-clicking the icon on your desktop (or from the Start > All Programs menu).
Set the program up as follows:
Click "Options..."
Move the arrow down to "Custom CleanUp!"
Put a check next to the following (Make sure nothing else is checked!):
  • Empty Recycle Bins
  • Delete Cookies
  • Delete Prefetch files
  • Cleanup! All Users
Click OK
Press the CleanUp! button to start the program.

***

4.) After Cleanup! is finished, run HijackThis. Place a check next to the following items, if found, and click FIX CHECKED:

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/...rch/search.html

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/...//www.yahoo.com

R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://red.clientapps.yahoo.com/customize/...://my.yahoo.com

O2 - BHO: - {57AEC4F9-DB30-4D5C-AA5E-CE2CFC895994} - C:\WINDOWS\lbbho.dll

O4 - HKLM\..\Run: [WhenUSave] "C:\Program Files\Save\Save.exe"

O16 - DPF: {15AD4789-CDB4-47E1-A9DA-992EE8E6BAD6} - http://public.windupdates.com/get_file.php...5271ab95b94951b

O16 - DPF: {87067F04-DE4C-4688-BC3C-4FCF39D609E7} - http://download.websearch.com/Dnl/T_50188/QDow_AS2.cab

O16 - DPF: {99410CDE-6F16-42ce-9D49-3807F78F0287} - http://www.180searchassistant.com/180saax.cab

Close HiJackThis.

***

5.) Use Windows Explorer to remove these folders:
C:\Program Files\Common Files\WinTools\
C:\Program Files\Save\
Close Windows Explorer when you are done.

***

6.) Make sure your firewall is on. Make sure you can turn it off then turn it back on and that nothing is greyed out.
Also, Make sure your Anti-Virus program is working properly - you can turn on and off auto-protect, etc.

***

7.) Run BOTH of these online virus scans (NOT at the same time!):
ActiveScan
TrendMicro's HouseCall - check "Auto Clean"

Save the results from ActiveScan.

I need you to post the contents of rdriv.txt, the log from Ewido, the log from ActiveScan, and a new HiJackThis log into this topic.


Posted Image
Life is what happens while you're making other plans

#3 cheesycow5

cheesycow5
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:10:47 AM

Posted 04 August 2005 - 11:12 AM

Hi, thanks for helping. Ok, well I was in Services.msc, and I highlighted lsass, but the option to stop it is disabled. Both the one on the toolbar, and on the right-click menu. I didn't feel that I should go any farther, as that might mess something up. Here is a screenshot to let you confirm it:

http://tabmatic.com/images/lsass.jpg

I've downloaded the three programs and did what I needed to do for them. As in the installing part.

Edited by cheesycow5, 04 August 2005 - 12:05 PM.


#4 g2i2r4

g2i2r4

    Malware remover


  • Members
  • 900 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:05:47 PM

Posted 04 August 2005 - 02:22 PM

Just skip that part then. We'll see what happens.


Posted Image
Life is what happens while you're making other plans

#5 cheesycow5

cheesycow5
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:10:47 AM

Posted 04 August 2005 - 07:50 PM

Ok, I've done every part but one. I tried to run the ActiveScan multiple times, and everytime I've had the same problem. About 15 minutes into it, IE just closes. I've tried it in Safe Mode and Normal, but neither way helps. Anyways, here's the logs:

Edit: For some reason the forum isn't displaying all the text of the logs, so I uploaded them to my server:

http://tabmatic.com/logs.php

Edited by cheesycow5, 04 August 2005 - 08:05 PM.


#6 g2i2r4

g2i2r4

    Malware remover


  • Members
  • 900 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:05:47 PM

Posted 05 August 2005 - 01:18 PM

Here's the logs for all to see.

Logfile of HijackThis v1.99.1
Scan saved at 8:34:28 PM, on 8/4/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\System32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.toshiba.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.mybluelight.com/s/search?r=minisearch
R3 - URLSearchHook: URLSearchHook Class - {37D2CDBF-2AF4-44AA-8113-BD0D2DA3C2B8} - C:\Program Files\BLSearch\SearchEnh1.dll
O1 - Hosts: 12.129.205.209 search.netscape.com12.129.205.209 sitefinder.verisign.com
O1 - Hosts: 12.129.205.209 search.netscape.com12.129.205.209 sitefinder.verisign.com
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: AIMSite Class - {D70E6A20-7060-4829-B3D7-B6624A1DE7C6} - C:\Program Files\AIM Toolbar\aimhelper.dll (file missing)
O3 - Toolbar: Browser Bar - {F5735C15-1FB2-41FE-BA12-242757E69DDE} - C:\Program Files\BlueLight Internet\toolbar.dll
O3 - Toolbar: MyBlueLight - {25EEFF3E-58EE-4811-95CC-78F922605006} - C:\Program Files\BlueLight Internet\Toolbar.dll
O4 - HKLM\..\Run: [00THotkey] C:\WINDOWS\System32\00THotkey.exe
O4 - HKLM\..\Run: [000StTHK] 000StTHK.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [LtMoh] C:\Program Files\ltmoh\Ltmoh.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [TouchED] C:\Program Files\TOSHIBA\TouchED\TouchED.Exe
O4 - HKLM\..\Run: [TFNF5] TFNF5.exe
O4 - HKLM\..\Run: [PadTouch] "C:\Program Files\TOSHIBA\PadTouch\PadExe.exe
O4 - HKLM\..\Run: [TPSMain] TPSMain.exe
O4 - HKLM\..\Run: [TFncKy] TFncKy.exe
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_Px.exe
O4 - HKLM\..\Run: [B'sCLiP] C:\PROGRA~1\B'SCLI~1\Win2K\BSCLIP.exe
O4 - HKLM\..\Run: [Pinger] c:\toshiba\ivp\ism\pinger.exe /run
O4 - HKLM\..\Run: [Disc Detector] C:\Program Files\Creative\ShareDLL\CtNotify.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] C:\Program Files\Google\Gmail Notifier\G001-1.0.25.0\gnotify.exe
O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - Global Startup: Billminder.lnk = C:\Program Files\QUICKENW\BILLMIND.EXE
O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
O4 - Global Startup: Kodak software updater.lnk = C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
O4 - Global Startup: Office Startup.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE
O4 - Global Startup: Quicken Startup.lnk = C:\Program Files\QUICKENW\QWDLLS.EXE
O4 - Global Startup: RAMASST.lnk = C:\WINDOWS\system32\RAMASST.exe
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\DAP\dapextie.htm
O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\DAP\dapextie2.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Flash2X Flash Hunter - {77B563A5-2A35-4E6B-BFC8-F4B6BB65D5DF} - C:\Program Files\Flash2X\Flash Hunter\save.htm (file missing) (HKCU)
O9 - Extra 'Tools' menuitem: &Launch Flash Hunter - {77B563A5-2A35-4E6B-BFC8-F4B6BB65D5DF} - C:\Program Files\Flash2X\Flash Hunter\save.htm (file missing) (HKCU)
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.toshiba.com
O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) - http://housecall60.trendmicro.com/housecall/xscan60.cab
O16 - DPF: {26CBF141-7D0F-46E1-AA06-718958B6E4D2} - http://download.ebay.com/turbo_lister/US/install.cab
O16 - DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} - http://www.nick.com/common/groove/gx/GrooveAX27.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5free/asinst.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: C-DillaCdaC11BA - C-Dilla Ltd - C:\WINDOWS\System32\drivers\CDAC11BA.EXE
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: DVD-RAM_Service - Matsubleepa Electric Industrial Co., Ltd. - C:\WINDOWS\System32\DVDRAMSV.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: Flexlm (lmgrd) - Unknown owner - C:\Program Files\Cadopia\IntelliCAD 4\LicenseManager\lmgrd.exe (file missing)
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Swupdtmr - Unknown owner - c:\toshiba\ivp\swupdate\swupdtmr.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
O23 - Service: WEP key recovery service (WZCOOK) - Unknown owner - C:\Documents and Settings\Dima\Desktop\aircrack-2.1\win32\wzcook.exe" (file missing)


Posted Image
Life is what happens while you're making other plans

#7 g2i2r4

g2i2r4

    Malware remover


  • Members
  • 900 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:05:47 PM

Posted 05 August 2005 - 01:20 PM

---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------

+ Created on: 4:52:02 PM, 8/4/2005
+ Report-Checksum: AE4A89E3

+ Scan result:

HKLM\SOFTWARE\Classes\ADM25.ADM25 -> Spyware.Altnet : Cleaned with backup
HKLM\SOFTWARE\Classes\ADM25.ADM25\CurVer -> Spyware.Altnet : Cleaned with backup
HKLM\SOFTWARE\Classes\ADM4.ADM4 -> Spyware.Altnet : Cleaned with backup
HKLM\SOFTWARE\Classes\ADM4.ADM4\CurVer -> Spyware.Altnet : Cleaned with backup
HKLM\SOFTWARE\Classes\AppID\adm.EXE -> Spyware.Altnet : Cleaned with backup
HKLM\SOFTWARE\Classes\AppID\Altnet Signing Module.EXE -> Spyware.Altnet : Cleaned with backup
HKLM\SOFTWARE\Classes\BridgeX.Installer -> Spyware.BlazeFind : Cleaned with backup
HKLM\SOFTWARE\Classes\BridgeX.Installer\CLSID -> Spyware.BlazeFind : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{12398DD6-40AA-4c40-A4EC-A42CFC0DE797} -> Spyware.ISTBar : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{15AD4789-CDB4-47E1-A9DA-992EE8E6BAD6} -> Spyware.WinFavorites : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{6E21F428-5617-47F7-AED8-B2E1D8FBA711} -> Spyware.IBIS : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{708BE496-E202-497B-BC31-9CF47E3BF8D6} -> Spyware.IBIS : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{86227D9C-0EFE-4f8a-AA55-30386A3F5686} -> Spyware.YourSiteBar : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{87067F04-DE4C-4688-BC3C-4FCF39D609E7} -> Spyware.WebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{87766247-311C-43B4-8499-3D5FEC94A183} -> Spyware.HuntBar : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{9F95F736-0F62-4214-A4B4-CAA6738D4C07} -> Spyware.SaveNow : Cleaned with backup
HKLM\SOFTWARE\Classes\CLSID\{A8DEB4A5-D9EF-4D21-B4F6-921475004E7D} -> Spyware.IBIS : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{9603A736-05B9-4D78-BDD5-BDCB0914E522} -> Spyware.WurldMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{AA4939C3-DECA-4A48-A454-97CD587C0EF5} -> Spyware.ISTBar : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{BC12B055-C9F5-407D-9B66-1851973F32AF} -> Spyware.WurldMedia : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{C285D18D-43A2-4AEF-83FB-BF280E660A97} -> Spyware.SaveNow : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{EEE4A2E5-9F56-432F-A6ED-F6F625B551E0} -> Dialer.Generic : Cleaned with backup
HKLM\SOFTWARE\Classes\PROTOCOLS\Name-Space Handler\res -> Spyware.WebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\PROTOCOLS\Name-Space Handler\res\WToolsB.ResProtocol -> Spyware.WebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\TypeLib\{308A04D3-084D-43AA-A3E6-0D12BCCA3CE6} -> Spyware.ISTBar : Cleaned with backup
HKLM\SOFTWARE\Classes\WToolsB.ResProtocol -> Spyware.WebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\WToolsB.ResProtocol\Clsid -> Spyware.WebSearch : Cleaned with backup
HKLM\SOFTWARE\eXactUtil -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\FENX -> Dialer.Generic : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{15AD4789-CDB4-47E1-A9DA-992EE8E6BAD6} -> Spyware.WinFavorites : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{87067F04-DE4C-4688-BC3C-4FCF39D609E7} -> Spyware.WebSearch : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{99410CDE-6F16-42ce-9D49-3807F78F0287} -> Spyware.Zango : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Installer\UserData\STO -> Spyware.WebSearch : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/ISTactivex.dll -> Spyware.ISTBar : Cleaned with backup
HKLM\SOFTWARE\PerfectNav -> Spyware.KeenValue : Cleaned with backup
HKLM\SOFTWARE\PowerScan -> Spyware.PowerScan : Cleaned with backup
HKLM\SOFTWARE\Toolbar -> Spyware.WebSearch : Cleaned with backup
HKLM\SOFTWARE\Toolbar\PlugIns -> Spyware.WebSearch : Cleaned with backup
HKLM\SOFTWARE\Toolbar\PlugIns\COMMON -> Spyware.WebSearch : Cleaned with backup
HKLM\SOFTWARE\WhenUSave -> Spyware.SaveNow : Cleaned with backup
HKLM\SOFTWARE\WhenUSave\Partners -> Spyware.SaveNow : Cleaned with backup
HKLM\SOFTWARE\WhenUSave\Partners\EEPE -> Spyware.SaveNow : Cleaned with backup
HKLM\SOFTWARE\WinTools -> Spyware.WebSearch : Cleaned with backup
HKLM\SOFTWARE\WinTools\kydmzylki -> Spyware.WebSearch : Cleaned with backup
HKLM\SOFTWARE\WinTools\nlibjhin -> Spyware.WebSearch : Cleaned with backup
HKLM\SOFTWARE\WinTools\nlibx4m -> Spyware.WebSearch : Cleaned with backup
HKLM\SYSTEM\ControlSet002\Services\WinToolsSvc -> Spyware.WebSearch : Cleaned with backup
HKU\.DEFAULT\Software\WinTools -> Spyware.WebSearch : Cleaned with backup
HKU\.DEFAULT\Software\WinTools\URLSearchHooks -> Spyware.WebSearch : Cleaned with backup
HKU\S-1-5-21-3659362564-328648941-652568254-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0000607D-D204-42C7-8E46-216055BF9918} -> Spyware.TwainTech : Cleaned with backup
HKU\S-1-5-21-3659362564-328648941-652568254-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{669695BC-A811-4A9D-8CDF-BA8C795F261C} -> Spyware.PowerStrip : Cleaned with backup
HKU\S-1-5-21-3659362564-328648941-652568254-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{87766247-311C-43B4-8499-3D5FEC94A183} -> Spyware.HuntBar : Cleaned with backup
HKU\S-1-5-21-3659362564-328648941-652568254-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F4E04583-354E-4076-BE7D-ED6A80FD66DA} -> Spyware.BargainBuddy : Cleaned with backup
HKU\S-1-5-21-3659362564-328648941-652568254-1007\Software\WinTools -> Spyware.WebSearch : Cleaned with backup
HKU\S-1-5-21-3659362564-328648941-652568254-1007\Software\WinTools\URLSearchHooks -> Spyware.WebSearch : Cleaned with backup
HKU\S-1-5-18\Software\WinTools -> Spyware.WebSearch : Cleaned with backup
HKU\S-1-5-18\Software\WinTools\URLSearchHooks -> Spyware.WebSearch : Cleaned with backup
:mozilla.18:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.33:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.34:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.60:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.61:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.62:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.63:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.65:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.72:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Linksynergy : Cleaned with backup
:mozilla.74:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Linksynergy : Cleaned with backup
:mozilla.98:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.100:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.101:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.102:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.103:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.104:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.111:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.112:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.113:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.163:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Comclick : Cleaned with backup
:mozilla.164:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Comclick : Cleaned with backup
:mozilla.165:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Comclick : Cleaned with backup
:mozilla.167:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.169:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.170:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.171:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.172:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.173:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.174:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.175:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.177:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.180:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.181:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.182:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.183:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.184:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.185:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.186:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.187:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.188:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.189:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.190:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.191:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.192:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.193:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.194:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.195:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.196:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.197:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.198:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.199:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.200:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.201:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.202:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.203:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.204:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.205:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.206:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.207:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.208:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.209:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.210:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.211:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.212:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.213:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.214:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.215:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.216:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.217:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.218:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.219:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.223:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.224:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.225:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.226:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.227:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.228:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.240:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.241:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.248:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.249:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.250:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.251:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.285:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.286:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.309:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
:mozilla.310:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
:mozilla.338:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.339:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.356:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.357:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.358:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.359:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.360:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.361:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.400:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.401:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.402:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.406:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
:mozilla.424:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.425:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.426:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.427:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.428:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.430:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.431:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.432:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.433:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.454:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.466:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.467:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.468:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.469:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.470:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.471:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.472:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.473:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.474:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.475:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.476:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Bfast : Cleaned with backup
:mozilla.479:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.480:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.481:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.487:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.493:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.494:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.495:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.497:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.558:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.561:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.562:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.570:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.247realmedia : Cleaned with backup
:mozilla.590:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.591:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.613:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.614:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.615:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.616:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
:mozilla.617:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.618:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.619:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.621:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.632:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Masterstats : Cleaned with backup
:mozilla.633:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Paycounter : Cleaned with backup
:mozilla.648:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.649:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.691:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.692:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.693:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.696:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.697:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.698:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.699:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.700:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.705:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.727:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
:mozilla.736:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.759:C:\Documents and Settings\Dima\Application Data\Mozilla\Firefox\Profiles\default.fsw\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@ad.yieldmanager[2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@adopt.specificclick[1].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@ads.pointroll[1].txt -> Spyware.Cookie.Pointroll : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@ads27.bpath[1].txt -> Spyware.Cookie.Bpath : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@ads32.bpath[2].txt -> Spyware.Cookie.Bpath : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@ads49.bpath[1].txt -> Spyware.Cookie.Bpath : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@as-us.falkag[1].txt -> Spyware.Cookie.Falkag : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@burstnet[2].txt -> Spyware.Cookie.Burstnet : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@casalemedia[2].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@centrport[1].txt -> Spyware.Cookie.Centrport : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@fastclick[2].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@perf.overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@server.iad.liveperson[2].txt -> Spyware.Cookie.Liveperson : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@specificclick[1].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@spylog[1].txt -> Spyware.Cookie.Spylog : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@statcounter[2].txt -> Spyware.Cookie.Statcounter : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@tradedoubler[1].txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@trafficmp[2].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@tribalfusion[1].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
C:\Documents and Settings\Dima\Cookies\dima@z1.adserver[1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\Documents and Settings\Dima\Local Settings\Temp\Cookies\dima@casalemedia[1].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
C:\Documents and Settings\Dima\Local Settings\Temp\Cookies\dima@centrport[1].txt -> Spyware.Cookie.Centrport : Cleaned with backup
C:\Documents and Settings\Dima\Local Settings\Temp\Cookies\dima@edge.ru4[1].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
C:\Documents and Settings\Dima\Local Settings\Temp\Cookies\dima@gator[1].txt -> Spyware.Cookie.Gator : Cleaned with backup
C:\Documents and Settings\Dima\Local Settings\Temp\Cookies\dima@qksrv[1].txt -> Spyware.Cookie.Qksrv : Cleaned with backup
C:\Documents and Settings\Dima\Local Settings\Temp\Cookies\dima@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Documents and Settings\Dima\Local Settings\Temp\Cookies\dima@trafficmp[1].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\Documents and Settings\Dima\Local Settings\Temp\Cookies\dima@z1.adserver[1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\Documents and Settings\Dima\Local Settings\Temp\IExploreSkins.exe -> Spyware.WebSearch : Cleaned with backup
C:\Documents and Settings\Dima\Local Settings\Temp\p2psetup.exe -> Spyware.P2PNetworking : Cleaned with backup
C:\Documents and Settings\Dima\Local Settings\Temp\remove.exe -> TrojanDownloader.Keenval.f : Cleaned with backup
C:\Documents and Settings\Dima\Local Settings\Temp\sidefind.exe -> TrojanDownloader.IstBar.jd : Cleaned with backup
C:\Documents and Settings\Dima\Local Settings\Temp\temp.cab/IExploreSkins.exe -> Spyware.WebSearch : Cleaned with backup
C:\Documents and Settings\Dima\Local Settings\Temp\WinTools.exe -> Spyware.WebSearch : Cleaned with backup
C:\Documents and Settings\Dima\My Documents\phpBBAttacker.exe -> Not-A-Virus.HackTool.VB.bt : Cleaned with backup
:mozilla.6:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.7:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.8:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.9:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.11:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.28:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.29:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.59:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.247realmedia : Cleaned with backup
:mozilla.61:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
:mozilla.75:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.76:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.77:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.78:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.79:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.80:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.81:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.82:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.83:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.84:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.85:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.86:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.111:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.112:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.113:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.114:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.115:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.116:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.117:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.118:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.119:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.120:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.121:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.122:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.123:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.124:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.125:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.126:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.127:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.128:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.129:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.130:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.131:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.133:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.134:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.135:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.136:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.140:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Spylog : Cleaned with backup
:mozilla.158:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.187:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.188:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.222:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.226:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.227:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.228:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.229:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.230:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.231:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.232:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.233:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.234:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.235:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.236:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.237:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.238:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.239:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.240:C:\Documents and Settings\Eric\Application Data\Mozilla�


Posted Image
Life is what happens while you're making other plans

#8 g2i2r4

g2i2r4

    Malware remover


  • Members
  • 900 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:05:47 PM

Posted 05 August 2005 - 01:21 PM

:mozilla.244:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.245:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.246:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.247:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.248:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.249:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.250:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.251:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.252:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.253:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.304:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.306:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.309:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.312:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.313:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.314:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.315:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.316:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.317:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.318:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.319:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.320:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.321:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.322:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.323:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.324:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.325:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.326:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.327:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.328:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.329:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.342:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.345:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.346:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.347:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.348:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.351:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.354:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.355:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.356:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.357:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.358:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.359:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.360:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.361:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.362:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.363:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.364:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.367:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.368:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.374:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.391:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.411:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.412:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.415:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.430:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.431:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.432:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.433:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.434:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.435:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.436:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.438:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.456:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.457:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.467:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.497:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.498:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.499:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.505:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.506:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.510:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Adengage : Cleaned with backup
:mozilla.511:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Adengage : Cleaned with backup
:mozilla.512:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Adengage : Cleaned with backup
:mozilla.519:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.522:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Clickagents : Cleaned with backup
:mozilla.523:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Clickagents : Cleaned with backup
:mozilla.524:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Clickagents : Cleaned with backup
:mozilla.525:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Clickagents : Cleaned with backup
:mozilla.526:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Clickagents : Cleaned with backup
:mozilla.527:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Clickagents : Cleaned with backup
:mozilla.539:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.549:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Commission-junction : Cleaned with backup
:mozilla.550:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Commission-junction : Cleaned with backup
:mozilla.568:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.569:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.570:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.571:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.572:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.593:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.594:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.595:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.596:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.597:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.603:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Paycounter : Cleaned with backup
:mozilla.625:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.649:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.650:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.651:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.652:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.667:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.668:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.679:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.682:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hotlog : Cleaned with backup
:mozilla.686:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.692:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.713:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.716:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.723:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.724:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.737:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Bfast : Cleaned with backup
:mozilla.742:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.743:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.762:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Counted : Cleaned with backup
:mozilla.769:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.770:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.771:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.772:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.773:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
:mozilla.774:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
:mozilla.824:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.825:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.826:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.835:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.848:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.863:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.869:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.875:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.877:C:\Documents and Settings\Eric\Application Data\Mozilla\Firefox\Profiles\default.qoi\cookies.txt -> Spyware.Cookie.Goldenpalace : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@112.2o7[2].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@a-1shz2prbmdj6wvny-1sez2pra2dj6wjmycidjohpg-1dj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@ad.yieldmanager[2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@ads.pointroll[1].txt -> Spyware.Cookie.Pointroll : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@advertising[2].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@bs.serving-sys[2].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@burstnet[2].txt -> Spyware.Cookie.Burstnet : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@casalemedia[1].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@centrport[2].txt -> Spyware.Cookie.Centrport : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@doubleclick[1].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@fastclick[1].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@mediaplex[1].txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@perf.overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@servedby.advertising[1].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@serving-sys[2].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@tribalfusion[1].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@vitacost.122.2o7[2].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@y-1shz2prbmdj6wvny-1sez2pra2dj6wjmiupdpibogsdj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Eric\Cookies\eric@ysbweb[1].txt -> Spyware.Cookie.Ysbweb : Cleaned with backup
C:\Documents and Settings\Eric\Local Settings\Temp\180sainstaller.exe -> Spyware.180Solutions.b : Cleaned with backup
C:\Documents and Settings\Eric\Local Settings\Temp\saveinstwm.exe -> Adware.SaveNow : Cleaned with backup
C:\Documents and Settings\Eric\Local Settings\Temp\sidefind.exe -> TrojanDownloader.IstBar.jd : Cleaned with backup
C:\Documents and Settings\Eric\Local Settings\Temporary Internet Files\Content.IE5\G1MVSP6V\hdplugin_1019_bundle43v3d33[1].cab/HDPlugin1019.dll -> Adware.Gator : Cleaned with backup
:mozilla.13:C:\Documents and Settings\Milla\Application Data\Mozilla\Firefox\Profiles\default.b5u\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.23:C:\Documents and Settings\Milla\Application Data\Mozilla\Firefox\Profiles\default.b5u\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.29:C:\Documents and Settings\Milla\Application Data\Mozilla\Firefox\Profiles\default.b5u\cookies.txt -> Spyware.Cookie.Clickagents : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Milla\Application Data\Mozilla\Firefox\Profiles\default.b5u\cookies.txt -> Spyware.Cookie.Clickagents : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Milla\Application Data\Mozilla\Firefox\Profiles\default.b5u\cookies.txt -> Spyware.Cookie.Clickagents : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Milla\Application Data\Mozilla\Firefox\Profiles\default.b5u\cookies.txt -> Spyware.Cookie.Clickagents : Cleaned with backup
:mozilla.33:C:\Documents and Settings\Milla\Application Data\Mozilla\Firefox\Profiles\default.b5u\cookies.txt -> Spyware.Cookie.Clickagents : Cleaned with backup
:mozilla.34:C:\Documents and Settings\Milla\Application Data\Mozilla\Firefox\Profiles\default.b5u\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Milla\Application Data\Mozilla\Firefox\Profiles\default.b5u\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Milla\Application Data\Mozilla\Firefox\Profiles\default.b5u\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Milla\Application Data\Mozilla\Firefox\Profiles\default.b5u\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Milla\Application Data\Mozilla\Firefox\Profiles\default.b5u\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Milla\Application Data\Mozilla\Firefox\Profiles\default.b5u\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Milla\Application Data\Mozilla\Firefox\Profiles\default.b5u\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@1shz2prbmdj6wvny-1sez2pra2dj6wjny-1pcpmdow-1dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@247realmedia[2].txt -> Spyware.Cookie.247realmedia : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@a-1shz2prbmdj6wvny-1sez2pra2dj6wjlyamdzkepw-1dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@a-1shz2prbmdj6wvny-1sez2pra2dj6wjmiqidjmhqq-1dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@a-1shz2prbmdj6wvny-1sez2pra2dj6wjny-1lczohpqsdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@a-1shz2prbmdj6wvny-1sez2pra2dj6wjny-1mczkdowudj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@a-1shz2prbmdj6wvny-1sez2pra2dj6wjny-1mdpsgpwydj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@a.as-us.falkag[2].txt -> Spyware.Cookie.Falkag : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@adnetintads.valuead[1].txt -> Spyware.Cookie.Valuead : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@adopt.specificclick[2].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@ads.addynamix[1].txt -> Spyware.Cookie.Addynamix : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@ads.pointroll[1].txt -> Spyware.Cookie.Pointroll : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@ads.x10[1].txt -> Spyware.Cookie.X10 : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@as-us.falkag[1].txt -> Spyware.Cookie.Falkag : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@bluestreak[1].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@bs.serving-sys[1].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@burstnet[2].txt -> Spyware.Cookie.Burstnet : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@c.porngraph[1].txt -> Spyware.Cookie.Porngraph : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@casalemedia[2].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@centrport[1].txt -> Spyware.Cookie.Centrport : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@citi.bridgetrack[2].txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@cs.sexcounter[2].txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@cz3.clickzs[1].txt -> Spyware.Cookie.Clickzs : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@cz8.clickzs[1].txt -> Spyware.Cookie.Clickzs : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@dbbsrv[1].txt -> Spyware.Cookie.Dbbsrv : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@edge.ru4[2].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@fastclick[1].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@hotlog[2].txt -> Spyware.Cookie.Hotlog : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@hypertracker[1].txt -> Spyware.Cookie.Hypertracker : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@paycounter[1].txt -> Spyware.Cookie.Paycounter : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@perf.overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@qksrv[1].txt -> Spyware.Cookie.Qksrv : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@questionmarket[2].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@revenue[2].txt -> Spyware.Cookie.Revenue : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@sales.liveperson[1].txt -> Spyware.Cookie.Liveperson : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@server.iad.liveperson[2].txt -> Spyware.Cookie.Liveperson : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@serving-sys[2].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@specificclick[1].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@spylog[2].txt -> Spyware.Cookie.Spylog : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@stat.onestat[2].txt -> Spyware.Cookie.Onestat : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@statcounter[1].txt -> Spyware.Cookie.Statcounter : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@tradedoubler[2].txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@trafficmp[2].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@tribalfusion[1].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@weborama[1].txt -> Spyware.Cookie.Weborama : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@xxxcounter[1].txt -> Spyware.Cookie.Xxxcounter : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wfk4cmajggowidj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wfk4ghajaapgwdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wfk4soc5shpawdj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wfkicoc5ofpaidj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wfkiogazgloqwdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wfkocjajwbpasdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wfkockcpkloqqdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wfkowldzahpgudj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wfkygiczshog2dj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wfkygjcpologudj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wfkykhdzodqa2dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wfkykpczckpgwdj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wflieiczchpqsdj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wflioic5cgoaidj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wflokpczwdqqqdj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjk4kkczggpqmdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjk4sncjobqq6dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkosodpmkowqdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkouhc5ceoa6dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkyagdjkfpgwdj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkyakd5wfpqydj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkyaldjwgqq6dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkycmdzgcpgydj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkycodzidoamdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkykgaziaoqudj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkyomdpoaogmdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkyonczcfowwdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkyqidjgcqqwdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkysgazwloasdj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjl4alczgkoaydj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjl4apczgcow6dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjl4ehdzceoaidj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjl4kocjkkoq2dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjliapdjwdpaudj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjlionczabpamdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjliqicpwdqa6dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjlishajscqaqdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjlookc5whpwudj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjlookdpggogsdj6x9ny-1seq-2-2.stats.esomniture[1].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjloqhajilqqwdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjloqnczshpaudj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjlycpajggpqydj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjlygkczmgpqudj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjlyqoczwcoaydj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjlyuld5acqa2dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjlywkdpgcpwidj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjmiuoc5sepq6dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjmiupc5gfqqudj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjmygidzkeoqsdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjmykjajehow6dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjmyqnd5khowsdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnyajczohpgmdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnyajd5wkpwidj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnyamajcapwsdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnyand5ccpgudj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnycicjobpwydj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnyemc5ceogqdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnygiajokoaidj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@y-1shz2prbmdj6wvny-1sez2pra2dj6wjnysicjgkogwdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Milla\Cookies\milla@z1.adserver[1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\Program Files\Alwil Software\Avast4\DATA\moved\rdriv.sys.vir -> Trojan.Rootkit.k : Cleaned with backup
C:\Program Files\BearShare\Installer\saveinstwm.exe -> Adware.SaveNow : Cleaned with backup
C:\Program Files\Common Files\WinTools\WSup.exe -> Spyware.Wintools : Cleaned with backup
C:\Program Files\Save\Save.exe -> Adware.SaveNow : Cleaned with backup
C:\Program Files\SB\Smart-Browser\BHO.0.1.0.155.dll -> Spyware.Thingies : Cleaned with backup
C:\WINDOWS\bsx32 -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\ADBN1.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\ADVC3.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\BID1.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\BingoRoom1.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\CARD2.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\CARS1.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\CAS1.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\CASH2.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\DEBT1.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\EDU1.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\EML1.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\FAM1.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\INK1.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\INSUR1.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\KanFinance3.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\MORT1.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\OPPR2.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\SPORT1.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\SPZ3.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\TMP1.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\TV1.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\WIRE1.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\bsx32\XTFL2.bsx -> Spyware.BookedSpace : Cleaned with backup
C:\WINDOWS\lbbho.dll -> Spyware.Neon : Cleaned with backup
C:\WINDOWS\mxTarget.dll -> Spyware.BiSpy : Cleaned with backup
C:\WINDOWS\NDNuninstall4_85.exe -> Spyware.NewDotNet : Cleaned with backup
C:\WINDOWS\NDNuninstall5_64.exe -> Spyware.NewDotNet : Cleaned with backup
C:\WINDOWS\NDNuninstall6_10.exe -> Spyware.NewDotNet : Cleaned with backup
C:\WINDOWS\NDNuninstall6_22.exe -> Spyware.NewDotNet : Cleaned with backup
C:\WINDOWS\NDNuninstall6_30.exe -> Spyware.NewDotNet : Cleaned with backup
C:\WINDOWS\NDNuninstall6_38.exe -> Spyware.NewDotNet : Cleaned with backup
C:\WINDOWS\preInsMt.exe -> Spyware.BiSpy : Cleaned with backup
C:\WINDOWS\system32\bbchk.exe -> Spyware.BargainBuddy : Cleaned with backup
C:\WINDOWS\Temp\Altnet\adm25.dll -> Spyware.Altnet : Cleaned with backup
C:\WINDOWS\Temp\Altnet\adm4.dll -> Spyware.Altnet : Cleaned with backup
C:\WINDOWS\Temp\Altnet\admdloader.dll -> Spyware.Altnet : Cleaned with backup
C:\WINDOWS\Temp\Altnet\admfdi.dll -> Spyware.Altnet : Cleaned with backup
C:\WINDOWS\Temp\Altnet\admprog.dll -> Spyware.Altnet : Cleaned with backup
C:\WINDOWS\Temp\Altnet\dmfiles.cab/AltnetUninstall.exe -> Spyware.Altnet : Cleaned with backup
C:\WINDOWS\Temp\Altnet\dmfiles.cab/asmend.exe -> Spyware.Altnet : Cleaned with backup
C:\WINDOWS\Temp\Altnet\pmexe.cab/Points Manager.exe -> Spyware.Altnet : Cleaned with backup
C:\WINDOWS\Temp\Altnet\pmfiles.cab/setup.cab/PMuninstall.bde -> Spyware.Altnet : Cleaned with backup
C:\WINDOWS\Temp\Altnet\pmfiles.cab/sysdetect.dll -> Adware.BrilliantDigital : Cleaned with backup
C:\WINDOWS\Temp\Altnet\Setup.exe -> Spyware.Altnet : Cleaned with backup
C:\WINDOWS\Temp\~542839.tmp -> Spyware.Wintools : Cleaned with backup
C:\WINDOWS\Temp\~776362.tmp -> Spyware.Wintools : Cleaned with backup
C:\WINDOWS\Temp\~836351.tmp -> Spyware.Wintools : Cleaned with backup
C:\WINDOWS\Temp\~913535.tmp -> Spyware.Wintools : Cleaned with backup
C:\WINDOWS\Temp\~928308.tmp -> Spyware.Wintools : Cleaned with backup
C:\WINDOWS\Temp\~961091.tmp -> Spyware.Wintools : Cleaned with backup
C:\WINDOWS\Temp\~963716.tmp -> Spyware.Wintools : Cleaned with backup
C:\WINDOWS\Temp\~972238.tmp -> Spyware.Wintools : Cleaned with backup
C:\WINDOWS\Temp\~981934.tmp -> Spyware.Wintools : Cleaned with backup


::Report End


Posted Image
Life is what happens while you're making other plans

#9 g2i2r4

g2i2r4

    Malware remover


  • Members
  • 900 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:05:47 PM

Posted 05 August 2005 - 01:22 PM

~~~~~~~~~~~~~ Pre-run File Check ~~~~~~~~~~~~~

rdriv.sys PRESENT!
ItunesMusic.exe NOT PRESENT!
wkssvc.exe NOT PRESENT!


~~~~~~~~~~~~~ Post run File Check ~~~~~~~~~~~~~

rdriv.sys NOT PRESENT!
ItunesMusic.exe NOT PRESENT!
wkssvc.exe NOT PRESENT!


Posted Image
Life is what happens while you're making other plans

#10 g2i2r4

g2i2r4

    Malware remover


  • Members
  • 900 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:05:47 PM

Posted 05 August 2005 - 01:37 PM

Download the Killbox.
Unzip it to the desktop

Double-click Killbox.exe to run it.

Select "Delete on Reboot".
Place the following line (complete path) in bold in the "Full Path of File to Delete" box in Killbox:
C:/WINDOWS/Downloaded Program Files/ISTactivex.dll
Put a mark next to "Delete on Reboot"
Click the red-and-white "Delete File" button. Click "Yes" at the Delete on Reboot prompt. Click "No" at the Pending Operations prompt.
If your computer does not restart automatically, please restart it manually.

***

Use Windows Explorer to remove this folder:
C:\WINDOWS\bsx32\

Did you remove these two:
C:\Program Files\Common Files\WinTools\
C:\Program Files\Save\

Close Windows Explorer when you are done.

***

Download the Hoster from here. Press "Restore Original Hosts" and press "OK". Exit Program.


Can you try to rerun Panda?
When it's done, press the grey button 'save report'.
Post me the content.


Posted Image
Life is what happens while you're making other plans

#11 cheesycow5

cheesycow5
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:10:47 AM

Posted 06 August 2005 - 02:27 PM

Download the Killbox.
Unzip it to the desktop

Double-click Killbox.exe to run it.

Select "Delete on Reboot".
Place the following line (complete path) in bold in the "Full Path of File to Delete" box in Killbox:
CODE

C:/WINDOWS/Downloaded Program Files/ISTactivex.dll

Put a mark next to "Delete on Reboot"
Click the red-and-white "Delete File" button. Click "Yes" at the Delete on Reboot prompt. Click "No" at the Pending Operations prompt.
If your computer does not restart automatically, please restart it manually.

Done.

Use Windows Explorer to remove this folder:
C:\WINDOWS\bsx32\

That folder doesn't exist.

Did you remove these two:
C:\Program Files\Common Files\WinTools\
C:\Program Files\Save\

Yes.

Download the Hoster from here. Press "Restore Original Hosts" and press "OK". Exit Program.

Done.

Can you try to rerun Panda?
When it's done, press the grey button 'save report'.
Post me the content.


It worked this time. :thumbsup: Well here's the report:


Incident Status Location

Adware:Adware/NavHelper No disinfected C:\Documents and Settings\Dima\Desktop\Saved Zips and Installs\setup_ares.exe
Adware:Adware/ISearch No disinfected C:\install.cab[initial.inf]
Spyware:Spyware/BetterInet No disinfected C:\Program Files\Common Files\updmgr(2)\data2.dat
Adware:adware/ipinsight No disinfected C:\WINDOWS\alchem.ini
Spyware:spyware/bridge No disinfected C:\WINDOWS\Downloaded Program Files\bridge.inf
Adware:Adware/WUpd No disinfected C:\WINDOWS\Downloaded Program Files\BridgeX.inf
Adware:Adware/nCase No disinfected C:\WINDOWS\Downloaded Program Files\ClientAX.inf
Adware:Adware Program No disinfected C:\WINDOWS\Downloaded Program Files\WildApp.inf
Adware:Adware/IPInsight No disinfected C:\WINDOWS\inf\alchem.inf
Adware:Adware/Twain-Tech No disinfected C:\WINDOWS\inf\twaintec.inf
Virus:W32/Oscarbot.BR.worm Disinfected C:\WINDOWS\lsass.exe
Adware:adware/twain-tech No disinfected C:\WINDOWS\smdat32a.sys
Virus:Trj/Qhost.M Disinfected C:\WINDOWS\system32\drivers\etc\hosts.bho

#12 g2i2r4

g2i2r4

    Malware remover


  • Members
  • 900 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:05:47 PM

Posted 06 August 2005 - 04:12 PM

Ok let's use killbox to remove those.


Double-click on Killbox.exe to run it. Place the following lines (complete paths) in bold in the "Full Path of File to Delete" box in Killbox, and click the red button with the white X on it after each

C:\Documents and Settings\Dima\Desktop\Saved Zips and Installs\setup_ares.exe
C:\install.cab
C:\Program Files\Common Files\updmgr(2)\data2.dat
C:\WINDOWS\alchem.ini
C:\WINDOWS\Downloaded Program Files\bridge.inf
C:\WINDOWS\Downloaded Program Files\BridgeX.inf
C:\WINDOWS\Downloaded Program Files\ClientAX.inf
C:\WINDOWS\Downloaded Program Files\WildApp.inf
C:\WINDOWS\inf\alchem.inf
C:\WINDOWS\inf\twaintec.inf
C:\WINDOWS\smdat32a.sys
For these file, put a mark next to "Delete on Reboot". Copy and paste each file into the file name box, then click the red button with the X after each. It will ask you if you want to reboot each time you click it, answer NO until after you've pasted the last file name, at which time you should answer Yes.

If your computer does not restart automatically, please restart it manually.

***

Please post me a HijackThis log for a final checkup. Is the computer running ok now?


Posted Image
Life is what happens while you're making other plans

#13 cheesycow5

cheesycow5
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:10:47 AM

Posted 06 August 2005 - 04:28 PM

Yes, the computer seems to be running much more smoothly now. My Anti-Virus isn't going off every 30 minutes with a new find. Also, may I ask what Wintools is? That's the main thing my AV kept detecting.

Anyways, here's the log:

Logfile of HijackThis v1.99.1
Scan saved at 5:25:16 PM, on 8/6/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\System32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\System32\drivers\CDAC11BA.EXE
C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
C:\WINDOWS\system32\CTsvcCDA.exe
C:\WINDOWS\System32\DVDRAMSV.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\WINDOWS\system32\drivers\KodakCCS.exe
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\System32\svchost.exe
c:\toshiba\ivp\swupdate\swupdtmr.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\System32\00THotkey.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\ltmoh\Ltmoh.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Apoint2K\Apoint.exe
C:\Program Files\TOSHIBA\TouchED\TouchED.Exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\TFNF5.exe
C:\Program Files\Apoint2K\Apntex.exe
C:\Program Files\TOSHIBA\PadTouch\PadExe.exe
C:\Program Files\TOSHIBA\TOSHIBA Controls\TFncKy.exe
C:\WINDOWS\System32\ezSP_Px.exe
C:\PROGRA~1\B'SCLI~1\Win2K\BSCLIP.exe
C:\WINDOWS\system32\TPSBattM.exe
C:\toshiba\ivp\ism\pinger.exe
C:\Program Files\Creative\ShareDLL\CtNotify.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Google\Gmail Notifier\G001-1.0.25.0\gnotify.exe
C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
C:\Program Files\Creative\ShareDLL\Mediadet.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
C:\Program Files\Microsoft Office\Office\OSA.EXE
C:\Program Files\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.toshiba.com
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://www.mybluelight.com/s/search?r=minisearch
R3 - URLSearchHook: URLSearchHook Class - {37D2CDBF-2AF4-44AA-8113-BD0D2DA3C2B8} - C:\Program Files\BLSearch\SearchEnh1.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: AIMSite Class - {D70E6A20-7060-4829-B3D7-B6624A1DE7C6} - C:\Program Files\AIM Toolbar\aimhelper.dll (file missing)
O3 - Toolbar: Browser Bar - {F5735C15-1FB2-41FE-BA12-242757E69DDE} - C:\Program Files\BlueLight Internet\toolbar.dll
O3 - Toolbar: MyBlueLight - {25EEFF3E-58EE-4811-95CC-78F922605006} - C:\Program Files\BlueLight Internet\Toolbar.dll
O4 - HKLM\..\Run: [00THotkey] C:\WINDOWS\System32\00THotkey.exe
O4 - HKLM\..\Run: [000StTHK] 000StTHK.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [LtMoh] C:\Program Files\ltmoh\Ltmoh.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint2K\Apoint.exe
O4 - HKLM\..\Run: [TouchED] C:\Program Files\TOSHIBA\TouchED\TouchED.Exe
O4 - HKLM\..\Run: [TFNF5] TFNF5.exe
O4 - HKLM\..\Run: [PadTouch] "C:\Program Files\TOSHIBA\PadTouch\PadExe.exe
O4 - HKLM\..\Run: [TPSMain] TPSMain.exe
O4 - HKLM\..\Run: [TFncKy] TFncKy.exe
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_Px.exe
O4 - HKLM\..\Run: [B'sCLiP] C:\PROGRA~1\B'SCLI~1\Win2K\BSCLIP.exe
O4 - HKLM\..\Run: [Pinger] c:\toshiba\ivp\ism\pinger.exe /run
O4 - HKLM\..\Run: [Disc Detector] C:\Program Files\Creative\ShareDLL\CtNotify.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [{0228e555-4f9c-4e35-a3ec-b109a192b4c2}] C:\Program Files\Google\Gmail Notifier\G001-1.0.25.0\gnotify.exe
O4 - HKCU\..\Run: [TOSCDSPD] C:\Program Files\TOSHIBA\TOSCDSPD\toscdspd.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - Global Startup: Billminder.lnk = C:\Program Files\QUICKENW\BILLMIND.EXE
O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
O4 - Global Startup: Kodak software updater.lnk = C:\Program Files\Kodak\KODAK Software Updater\7288971\Program\Kodak Software Updater.exe
O4 - Global Startup: Office Startup.lnk = C:\Program Files\Microsoft Office\Office\OSA.EXE
O4 - Global Startup: Quicken Startup.lnk = C:\Program Files\QUICKENW\QWDLLS.EXE
O4 - Global Startup: RAMASST.lnk = C:\WINDOWS\system32\RAMASST.exe
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: &Download with &DAP - C:\PROGRA~1\DAP\dapextie.htm
O8 - Extra context menu item: Download &all with DAP - C:\PROGRA~1\DAP\dapextie2.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Flash2X Flash Hunter - {77B563A5-2A35-4E6B-BFC8-F4B6BB65D5DF} - C:\Program Files\Flash2X\Flash Hunter\save.htm (file missing) (HKCU)
O9 - Extra 'Tools' menuitem: &Launch Flash Hunter - {77B563A5-2A35-4E6B-BFC8-F4B6BB65D5DF} - C:\Program Files\Flash2X\Flash Hunter\save.htm (file missing) (HKCU)
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.toshiba.com
O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) - http://housecall60.trendmicro.com/housecall/xscan60.cab
O16 - DPF: {26CBF141-7D0F-46E1-AA06-718958B6E4D2} - http://download.ebay.com/turbo_lister/US/install.cab
O16 - DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} - http://www.nick.com/common/groove/gx/GrooveAX27.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5free/asinst.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\acsd.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: C-DillaCdaC11BA - C-Dilla Ltd - C:\WINDOWS\System32\drivers\CDAC11BA.EXE
O23 - Service: ConfigFree Service (CFSvcs) - TOSHIBA CORPORATION - C:\Program Files\TOSHIBA\ConfigFree\CFSvcs.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
O23 - Service: DVD-RAM_Service - Matsubleepa Electric Industrial Co., Ltd. - C:\WINDOWS\System32\DVDRAMSV.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: Flexlm (lmgrd) - Unknown owner - C:\Program Files\Cadopia\IntelliCAD 4\LicenseManager\lmgrd.exe (file missing)
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Swupdtmr - Unknown owner - c:\toshiba\ivp\swupdate\swupdtmr.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
O23 - Service: WEP key recovery service (WZCOOK) - Unknown owner - C:\Documents and Settings\Dima\Desktop\aircrack-2.1\win32\wzcook.exe" (file missing)

#14 g2i2r4

g2i2r4

    Malware remover


  • Members
  • 900 posts
  • OFFLINE
  •  
  • Gender:Not Telling
  • Local time:05:47 PM

Posted 06 August 2005 - 04:36 PM

WinTools is a search-hijacker from Traffic Syndicate. It can also be installed by FavoriteMan and WildMedia parasites.

Well, looks like we did it. The log looks clean.

Shall I post you some tips for the future and close this topic?


Posted Image
Life is what happens while you're making other plans

#15 cheesycow5

cheesycow5
  • Topic Starter

  • Members
  • 14 posts
  • OFFLINE
  •  
  • Local time:10:47 AM

Posted 06 August 2005 - 11:15 PM

Yes, I'd appreciate some tips. And then yea, you can close it.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users