Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

HijackThis Log


  • Please log in to reply
24 replies to this topic

#1 shortsexychica

shortsexychica

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Local time:06:28 PM

Posted 03 October 2005 - 09:18 PM

I'm new to this site but my computer has been sick for a little while now. She likes to manually restart without my permission and then says that there has been a serious error to Windows. Here is my Hijack Log.

Logfile of HijackThis v1.99.1
Scan saved at 9:03:24 PM, on 10/3/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\ISafe.exe
C:\Program Files\Softex\OmniPass\Omniserv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Softex\OmniPass\OPXPApp.exe
C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\VetMsg.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\PROGRA~1\mcafee.com\agent\McUpdate.exe
C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\CAVTray.exe
C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\CAVRID.exe
C:\Program Files\PeoplePC\ISP6230\Browser\Bartshel.exe
C:\WINDOWS\System32\undztp.exe
C:\Program Files\Messenger\msmsgs.exe
C:\PROGRA~1\PeoplePC\ISP6230\Browser\PPShared.exe
C:\Program Files\Spyware Doctor\swdoctor.exe
C:\PROGRA~1\AOLCOM~1\ACCAgnt.exe
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\Documents and Settings\Brandi.YOUR-SZ6X6SEFXO.000\Local Settings\Temp\Temporary Directory 2 for hijackthis.zip\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://home.peoplepc.com/search
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.peoplepc.com/websearch
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://home.peoplepc.com/search
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by America Online
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=localhost:8080
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = ;localhost;<local>
R3 - Default URLSearchHook is missing
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: SDWin32 Class - {40D082B6-011D-4836-8847-9C796E86B111} - C:\WINDOWS\System32\fykwi.dll (file missing)
O2 - BHO: UberButton Class - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: YahooTaggedBM Class - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - C:\Program Files\Yahoo!\Common\YIeTagBm.dll
O2 - BHO: PeoplePal Toolbar - {A8FB8EB3-183B-4598-924D-86F0E5E37085} - C:\Program Files\PeoplePC\Toolbar\PPCToolbar_6.2.0.12.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: SuperBar - {AD2A8623-340A-44C0-872F-5BC2EAF7012C} - C:\Program Files\SUPERBAR\SUPERBAR.dll (file missing)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\companion\Installs\cpn4\yt.dll
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
O3 - Toolbar: PeoplePal Toolbar - {A8FB8EB3-183B-4598-924D-86F0E5E37085} - C:\Program Files\PeoplePC\Toolbar\PPCToolbar_6.2.0.12.dll
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1126474378\ee\AOLHostManager.exe
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [Pure Networks Port Magic] "C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe" -Run
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\McUpdate.exe
O4 - HKLM\..\Run: [Bart Station] C:\Program Files\PeoplePC\ISP6230\BIN\PPCOLink.exe -STATION
O4 - HKLM\..\Run: [CaAvTray] "C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\CAVTray.exe"
O4 - HKLM\..\Run: [CAVRID] "C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\CAVRID.exe"
O4 - HKLM\..\Run: [winsync] C:\WINDOWS\System32\undztp.exe reg_run
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\ypager.exe" -quiet
O4 - HKCU\..\Run: [Spyware Doctor] "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q
O4 - HKCU\..\Run: [AOLCC] "C:\PROGRA~1\AOLCOM~1\ACCAgnt.exe" /startup
O4 - Global Startup: tdrc.exe
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Refresh Pa&ge with Full Quality - C:\Program Files\PeoplePC Accelerated\pac-page.html
O8 - Extra context menu item: Refresh Pi&cture with Full Quality - C:\Program Files\PeoplePC Accelerated\pac-image.html
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: (no name) - {9E248641-0E24-4DDB-9A1F-705087832AD6} - (no file)
O9 - Extra 'Tools' menuitem: Java - {9E248641-0E24-4DDB-9A1F-705087832AD6} - (no file)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.aol.com
O16 - DPF: Yahoo! Literati - http://download.games.yahoo.com/games/clients/y/tt3_x.cab
O16 - DPF: Yahoo! Pool 2 - http://download.games.yahoo.com/games/clients/y/pote_x.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.imgfarm.com/images/nocache/funwe...up1.0.0.8-2.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {38578BF0-0ABB-11D3-9330-0080C6F796A1} (Create & Print ActiveX Plug-in) - http://www.imgag.com/cp/install/AxCtp.cab
O16 - DPF: {4620BC29-8B8E-4F4E-9D92-1DB6633D6793} (SurferNETWORK Plugin) - http://rd1.surfernetwork.com/surferplugin.ocx
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5co...b?1112486079562
O16 - DPF: {64D01C7F-810D-446E-A07E-365764235644} (AtlAtomadersCtlAttrib Class) - http://kraisoft.com/files/realone/atomaders.cab
O16 - DPF: {70522FA0-4656-11D5-B0E9-0050DAC24E8F} - http://cc.iwon.com/ct/pm3/iwonpm_12_1,0,2,5.cab
O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) - http://www.worldwinner.com/games/shared/wwlaunch.cab
O16 - DPF: {9AA73F41-EC64-489E-9A73-9CD52E528BC4} (ZoneAxRcMgr Class) - http://zone.msn.com/binGame/ZAxRcMgr.cab
O16 - DPF: {A1B09066-C95C-4EF6-8DFD-3DD0AFE610B6} (AOL YGP Screensaver) - http://pictures06.aim.com/ygp/aol/plugin/s...IM.9.1.6.27.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10/ZIntro.cab34246.cab
O16 - DPF: {C4925E65-7A1E-11D2-8BB4-00A0C9CC72C3} (Virtools WebPlayer Class) - http://a532.g.akamai.net/f/532/6712/4h/pla...0/Installer.exe
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://zone.msn.com/bingame/dim2/default/popcaploader_v6.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/bin/msnchat45.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: OPXPGina - C:\Program Files\Softex\OmniPass\opxpgina.dll
O20 - Winlogon Notify: Shell Extensions - C:\WINDOWS\system32\rqbdyctl.dll (file missing)
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: CAISafe - Computer Associates International, Inc. - C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\ISafe.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - Networks Associates Technology, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Softex OmniPass Service (omniserv) - Unknown owner - C:\Program Files\Softex\OmniPass\Omniserv.exe
O23 - Service: VET Message Service (VETMSGNT) - Computer Associates International, Inc. - C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\VetMsg.exe

I know that some of this stuff shouldn't be on there but I'm not sure what or how to delete it. Any help to a helpless girl would be greatly appreciated.

BC AdBot (Login to Remove)

 


#2 Guest_Cretemonster_*

Guest_Cretemonster_*

  • Guests
  • OFFLINE
  •  

Posted 06 October 2005 - 07:51 AM

Hi shortsexychica and Welcome to the Bleeping Computer!

That appears to be the Look2me infection,so please download the l2mfix from here
http://www.atribune.org/downloads/l2mfix.exe
or
http://www.downloads.subratam.org/l2mfix.exe

Save the file to your desktop and double click l2mfix.exe.

Click the Install button to extract the files and follow the prompts, then open the newly added l2mfix folder on your desktop.

Double click l2mfix.bat and select option #1 for Run Find Log by typing 1 and then pressing enter. This will scan your computer and it may appear nothing is happening, then, after a minute or 2, notepad will open with a log.

Copy the contents of that log and paste it into this thread.

IMPORTANT: Do NOT run option #2 OR any other files in the l2mfix folder until I ask you to.


If you recieve any error messages for CMD or Autoexec.bat>> Select Option 5 from the l2mfix and once at the Site,Click on the link that apply to your Operating System!

Double Click the file it downloads and Extract the files to its predetermined System32 folder!

#3 shortsexychica

shortsexychica
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  

Posted 06 October 2005 - 09:00 PM

Here is this next log:

L2MFIX find log 1.04a
These are the registry keys present
**********************************************************************************
Winlogon/notify:
Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify]

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain]
"Asynchronous"=dword:00000000
"Impersonate"=dword:00000000
"DllName"=hex(2):63,00,72,00,79,00,70,00,74,00,33,00,32,00,2e,00,64,00,6c,00,\
6c,00,00,00
"Logoff"="ChainWlxLogoffEvent"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet]
"Asynchronous"=dword:00000000
"Impersonate"=dword:00000000
"DllName"=hex(2):63,00,72,00,79,00,70,00,74,00,6e,00,65,00,74,00,2e,00,64,00,\
6c,00,6c,00,00,00
"Logoff"="CryptnetWlxLogoffEvent"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll]
"DLLName"="cscdll.dll"
"Logon"="WinlogonLogonEvent"
"Logoff"="WinlogonLogoffEvent"
"ScreenSaver"="WinlogonScreenSaverEvent"
"Startup"="WinlogonStartupEvent"
"Shutdown"="WinlogonShutdownEvent"
"StartShell"="WinlogonStartShellEvent"
"Impersonate"=dword:00000000
"Asynchronous"=dword:00000001

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui]
@=""
"DLLName"="igfxsrvc.dll"
"Asynchronous"=dword:00000001
"Impersonate"=dword:00000001
"Unlock"="WinlogonUnlockEvent"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\OPXPGina]
"STARTUP"="OPWlxStartup"
"RECONNECT"="OPWlxReconnect"
"UNLOCK"="OPWlxUnlock"
"ASYNCHRONOUS"=dword:00000000
"DLLNAME"="C:\\Program Files\\Softex\\OmniPass\\opxpgina.dll"
"STOPSCREENSAVER"="OPWlxStopScreenSaver"
"STARTSCREENSAVER"="OPWlxStartScreenSaver"
"LOCK"="OPWlxLock"
"LOGOFF"="OPWlxLogoff"
"SHUTDOWN"="OPWlxShutdown"
"STARTSHELL"="OPWlxStartShell"
"IMPERSONATE"=dword:00000000
"LOGON"="OPWlxLogon"
"DISCONNECT"="OPWlxDisconnect"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp]
"DLLName"="wlnotify.dll"
"Logon"="SCardStartCertProp"
"Logoff"="SCardStopCertProp"
"Lock"="SCardSuspendCertProp"
"Unlock"="SCardResumeCertProp"
"Enabled"=dword:00000001
"Impersonate"=dword:00000001
"Asynchronous"=dword:00000001

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule]
"Asynchronous"=dword:00000000
"DllName"=hex(2):77,00,6c,00,6e,00,6f,00,74,00,69,00,66,00,79,00,2e,00,64,00,\
6c,00,6c,00,00,00
"Impersonate"=dword:00000000
"StartShell"="SchedStartShell"
"Logoff"="SchedEventLogOff"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy]
"Logoff"="WLEventLogoff"
"Impersonate"=dword:00000000
"Asynchronous"=dword:00000001
"DllName"=hex(2):73,00,63,00,6c,00,67,00,6e,00,74,00,66,00,79,00,2e,00,64,00,\
6c,00,6c,00,00,00

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn]
"DLLName"="WlNotify.dll"
"Lock"="SensLockEvent"
"Logon"="SensLogonEvent"
"Logoff"="SensLogoffEvent"
"Safe"=dword:00000001
"MaxWait"=dword:00000258
"StartScreenSaver"="SensStartScreenSaverEvent"
"StopScreenSaver"="SensStopScreenSaverEvent"
"Startup"="SensStartupEvent"
"Shutdown"="SensShutdownEvent"
"StartShell"="SensStartShellEvent"
"PostShell"="SensPostShellEvent"
"Disconnect"="SensDisconnectEvent"
"Reconnect"="SensReconnectEvent"
"Unlock"="SensUnlockEvent"
"Impersonate"=dword:00000001
"Asynchronous"=dword:00000001

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Shell Extensions]
"Asynchronous"=dword:00000000
"DllName"="C:\\WINDOWS\\system32\\rqbdyctl.dll"
"Impersonate"=dword:00000000
"Logon"="WinLogon"
"Logoff"="WinLogoff"
"Shutdown"="WinShutdown"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv]
"Asynchronous"=dword:00000000
"DllName"=hex(2):77,00,6c,00,6e,00,6f,00,74,00,69,00,66,00,79,00,2e,00,64,00,\
6c,00,6c,00,00,00
"Impersonate"=dword:00000000
"Logoff"="TSEventLogoff"
"Logon"="TSEventLogon"
"PostShell"="TSEventPostShell"
"Shutdown"="TSEventShutdown"
"StartShell"="TSEventStartShell"
"Startup"="TSEventStartup"
"MaxWait"=dword:00000258
"Reconnect"="TSEventReconnect"
"Disconnect"="TSEventDisconnect"

[HKEY_LOCAL_MACHINE\Software\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon]
"DLLName"="wlnotify.dll"
"Logon"="RegisterTicketExpiredNotificationEvent"
"Logoff"="UnregisterTicketExpiredNotificationEvent"
"Impersonate"=dword:00000001
"Asynchronous"=dword:00000001


RegDACL 5.1 - Permissions Manager for Registry keys for Windows NT 4 and above
Copyright © 1999-2001 Frank Heyne Software (http://www.heysoft.de)
This program is Freeware, use it on your own risk!

Access Control List for Registry key HKLM\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify:
(NI) ALLOW Full access NT AUTHORITY\SYSTEM
(IO) ALLOW Full access NT AUTHORITY\SYSTEM
(NI) ALLOW Full access NT AUTHORITY\SYSTEM
(IO) ALLOW Full access NT AUTHORITY\SYSTEM
(ID-NI) ALLOW Read BUILTIN\Users
(ID-IO) ALLOW Read BUILTIN\Users
(ID-NI) ALLOW Full access BUILTIN\Administrators
(ID-IO) ALLOW Full access BUILTIN\Administrators
(ID-NI) ALLOW Full access NT AUTHORITY\SYSTEM
(ID-IO) ALLOW Full access NT AUTHORITY\SYSTEM
(ID-IO) ALLOW Full access CREATOR OWNER


**********************************************************************************
useragent:
Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform]
"{ECA05866-9407-A0AB-D9A3-3FC39883C4C8}"=""

**********************************************************************************
Shell Extension key:
Windows Registry Editor Version 5.00

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
"{00022613-0000-0000-C000-000000000046}"="Multimedia File Property Sheet"
"{176d6597-26d3-11d1-b350-080036a75b03}"="ICM Scanner Management"
"{1F2E5C40-9550-11CE-99D2-00AA006E086C}"="NTFS Security Page"
"{3EA48300-8CF6-101B-84FB-666CCB9BCD32}"="OLE Docfile Property Page"
"{40dd6e20-7c17-11ce-a804-00aa003ca9f6}"="Shell extensions for sharing"
"{41E300E0-78B6-11ce-849B-444553540000}"="PlusPack CPL Extension"
"{42071712-76d4-11d1-8b24-00a0c9068ff3}"="Display Adapter CPL Extension"
"{42071713-76d4-11d1-8b24-00a0c9068ff3}"="Display Monitor CPL Extension"
"{42071714-76d4-11d1-8b24-00a0c9068ff3}"="Display Panning CPL Extension"
"{4E40F770-369C-11d0-8922-00A024AB2DBB}"="DS Security Page"
"{513D916F-2A8E-4F51-AEAB-0CBC76FB1AF8}"="Compatibility Page"
"{56117100-C0CD-101B-81E2-00AA004AE837}"="Shell Scrap DataHandler"
"{59099400-57FF-11CE-BD94-0020AF85B590}"="Disk Copy Extension"
"{59be4990-f85c-11ce-aff7-00aa003ca9f6}"="Shell extensions for Microsoft Windows Network objects"
"{5DB2625A-54DF-11D0-B6C4-0800091AA605}"="ICM Monitor Management"
"{675F097E-4C4D-11D0-B6C1-0800091AA605}"="ICM Printer Management"
"{764BF0E1-F219-11ce-972D-00AA00A14F56}"="Shell extensions for file compression"
"{77597368-7b15-11d0-a0c2-080036af3f03}"="Web Printer Shell Extension"
"{7988B573-EC89-11cf-9C00-00AA00A14F56}"="Disk Quota UI"
"{853FE2B1-B769-11d0-9C4E-00C04FB6C6FA}"="Encryption Context Menu"
"{85BBD920-42A0-1069-A2E4-08002B30309D}"="Briefcase"
"{88895560-9AA2-1069-930E-00AA0030EBC8}"="HyperTerminal Icon Ext"
"{BD84B380-8CA2-1069-AB1D-08000948F534}"="Fonts"
"{DBCE2480-C732-101B-BE72-BA78E9AD5B27}"="ICC Profile"
"{F37C5810-4D3F-11d0-B4BF-00AA00BBB723}"="Printers Security Page"
"{f81e9010-6ea4-11ce-a7ff-00aa003ca9f6}"="Shell extensions for sharing"
"{f92e8c40-3d33-11d2-b1aa-080036a75b03}"="Display TroubleShoot CPL Extension"
"{7444C717-39BF-11D1-8CD9-00C04FC29D45}"="Crypto PKO Extension"
"{7444C719-39BF-11D1-8CD9-00C04FC29D45}"="Crypto Sign Extension"
"{7007ACC7-3202-11D1-AAD2-00805FC1270E}"="Network Connections"
"{992CFFA0-F557-101A-88EC-00DD010CCC48}"="Network Connections"
"{E211B736-43FD-11D1-9EFB-0000F8757FCD}"="Scanners & Cameras"
"{FB0C9C8A-6C50-11D1-9F1D-0000F8757FCD}"="Scanners & Cameras"
"{905667aa-acd6-11d2-8080-00805f6596d2}"="Scanners & Cameras"
"{3F953603-1008-4f6e-A73A-04AAC7A992F1}"="Scanners & Cameras"
"{83bbcbf3-b28a-4919-a5aa-73027445d672}"="Scanners & Cameras"
"{F0152790-D56E-4445-850E-4F3117DB740C}"="Remote Sessions CPL Extension"
"{5F327514-6C5E-4d60-8F16-D07FA08A78ED}"="Auto Update Property Sheet Extension"
"{60254CA5-953B-11CF-8C96-00AA00B8708C}"="Shell extensions for Windows Script Host"
"{2206CDB2-19C1-11D1-89E0-00C04FD7A829}"="Microsoft Data Link"
"{DD2110F0-9EEF-11cf-8D8E-00AA0060F5BF}"="Tasks Folder Icon Handler"
"{797F1E90-9EDD-11cf-8D8E-00AA0060F5BF}"="Tasks Folder Shell Extension"
"{D6277990-4C6A-11CF-8D87-00AA0060F5BF}"="Scheduled Tasks"
"{0DF44EAA-FF21-4412-828E-260A8728E7F1}"="Taskbar and Start Menu"
"{2559a1f0-21d7-11d4-bdaf-00c04f60b9f0}"="Search"
"{2559a1f1-21d7-11d4-bdaf-00c04f60b9f0}"="Help and Support"
"{2559a1f2-21d7-11d4-bdaf-00c04f60b9f0}"="Help and Support"
"{2559a1f3-21d7-11d4-bdaf-00c04f60b9f0}"="Run..."
"{2559a1f4-21d7-11d4-bdaf-00c04f60b9f0}"="Internet"
"{2559a1f5-21d7-11d4-bdaf-00c04f60b9f0}"="E-mail"
"{D20EA4E1-3957-11d2-A40B-0C5020524152}"="Fonts"
"{D20EA4E1-3957-11d2-A40B-0C5020524153}"="Administrative Tools"
"{875CB1A1-0F29-45de-A1AE-CFB4950D0B78}"="Audio Media Properties Handler"
"{40C3D757-D6E4-4b49-BB41-0E5BBEA28817}"="Video Media Properties Handler"
"{E4B29F9D-D390-480b-92FD-7DDB47101D71}"="Wav Properties Handler"
"{87D62D94-71B3-4b9a-9489-5FE6850DC73E}"="Avi Properties Handler"
"{A6FD9E45-6E44-43f9-8644-08598F5A74D9}"="Midi Properties Handler"
"{c5a40261-cd64-4ccf-84cb-c394da41d590}"="Video Thumbnail Extractor"
"{5E6AB780-7743-11CF-A12B-00AA004AE837}"="Microsoft Internet Toolbar"
"{22BF0C20-6DA7-11D0-B373-00A0C9034938}"="Download Status"
"{91EA3F8B-C99B-11d0-9815-00C04FD91972}"="Augmented Shell Folder"
"{6413BA2C-B461-11d1-A18A-080036B11A03}"="Augmented Shell Folder 2"
"{F61FFEC1-754F-11d0-80CA-00AA005B4383}"="BandProxy"
"{7BA4C742-9E81-11CF-99D3-00AA004AE837}"="Microsoft BrowserBand"
"{30D02401-6A81-11d0-8274-00C04FD5AE38}"="Search Band"
"{32683183-48a0-441b-a342-7c2a440a9478}"="Media Band"
"{169A0691-8DF9-11d1-A1C4-00C04FD75D13}"="In-pane search"
"{07798131-AF23-11d1-9111-00A0C98BA67D}"="Web Search"
"{AF4F6510-F982-11d0-8595-00AA004CD6D8}"="Registry Tree Options Utility"
"{01E04581-4EEE-11d0-BFE9-00AA005B4383}"="&Address"
"{A08C11D2-A228-11d0-825B-00AA005B4383}"="Address EditBox"
"{00BB2763-6A77-11D0-A535-00C04FD7D062}"="Microsoft AutoComplete"
"{7376D660-C583-11d0-A3A5-00C04FD706EC}"="TridentImageExtractor"
"{6756A641-DE71-11d0-831B-00AA005B4383}"="MRU AutoComplete List"
"{6935DB93-21E8-4ccc-BEB9-9FE3C77A297A}"="Custom MRU AutoCompleted List"
"{7e653215-fa25-46bd-a339-34a2790f3cb7}"="Accessible"
"{acf35015-526e-4230-9596-becbe19f0ac9}"="Track Popup Bar"
"{E0E11A09-5CB8-4B6C-8332-E00720A168F2}"="Address Bar Parser"
"{00BB2764-6A77-11D0-A535-00C04FD7D062}"="Microsoft History AutoComplete List"
"{03C036F1-A186-11D0-824A-00AA005B4383}"="Microsoft Shell Folder AutoComplete List"
"{00BB2765-6A77-11D0-A535-00C04FD7D062}"="Microsoft Multiple AutoComplete List Container"
"{ECD4FC4E-521C-11D0-B792-00A0C90312E1}"="Shell Band Site Menu"
"{3CCF8A41-5C85-11d0-9796-00AA00B90ADF}"="Shell DeskBarApp"
"{ECD4FC4C-521C-11D0-B792-00A0C90312E1}"="Shell DeskBar"
"{ECD4FC4D-521C-11D0-B792-00A0C90312E1}"="Shell Rebar BandSite"
"{DD313E04-FEFF-11d1-8ECD-0000F87A470C}"="User Assist"
"{EF8AD2D1-AE36-11D1-B2D2-006097DF8C11}"="Global Folder Settings"
"{EFA24E61-B078-11d0-89E4-00C04FC9E26E}"="Favorites Band"
"{0A89A860-D7B1-11CE-8350-444553540000}"="Shell Automation Inproc Service"
"{E7E4BC40-E76A-11CE-A9BB-00AA004AE837}"="Shell DocObject Viewer"
"{A5E46E3A-8849-11D1-9D8C-00C04FC99D61}"="Microsoft Browser Architecture"
"{FBF23B40-E3F0-101B-8488-00AA003E56F8}"="InternetShortcut"
"{3C374A40-BAE4-11CF-BF7D-00AA006946EE}"="Microsoft Url History Service"
"{FF393560-C2A7-11CF-BFF4-444553540000}"="History"
"{7BD29E00-76C1-11CF-9DD0-00A0C9034933}"="Temporary Internet Files"
"{7BD29E01-76C1-11CF-9DD0-00A0C9034933}"="Temporary Internet Files"
"{CFBFAE00-17A6-11D0-99CB-00C04FD64497}"="Microsoft Url Search Hook"
"{A2B0DD40-CC59-11d0-A3A5-00C04FD706EC}"="IE4 Suite Splash Screen"
"{67EA19A0-CCEF-11d0-8024-00C04FD75D13}"="CDF Extension Copy Hook"
"{131A6951-7F78-11D0-A979-00C04FD705A2}"="ISFBand OC"
"{9461b922-3c5a-11d2-bf8b-00c04fb93661}"="Search Assistant OC"
"{3DC7A020-0ACD-11CF-A9BB-00AA004AE837}"="The Internet"
"{871C5380-42A0-1069-A2EA-08002B30309D}"="Internet Name Space"
"{EFA24E64-B078-11d0-89E4-00C04FC9E26E}"="Explorer Band"
"{9E56BE60-C50F-11CF-9A2C-00A0C90A90CE}"="Sendmail service"
"{9E56BE61-C50F-11CF-9A2C-00A0C90A90CE}"="Sendmail service"
"{88C6C381-2E85-11D0-94DE-444553540000}"="ActiveX Cache Folder"
"{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"="WebCheck"
"{ABBE31D0-6DAE-11D0-BECA-00C04FD940BE}"="Subscription Mgr"
"{F5175861-2688-11d0-9C5E-00AA00A45957}"="Subscription Folder"
"{08165EA0-E946-11CF-9C87-00AA005127ED}"="WebCheckWebCrawler"
"{E3A8BDE6-ABCE-11d0-BC4B-00C04FD929DB}"="WebCheckChannelAgent"
"{E8BB6DC0-6B4E-11d0-92DB-00A0C90C2BD7}"="TrayAgent"
"{7D559C10-9FE9-11d0-93F7-00AA0059CE02}"="Code Download Agent"
"{E6CC6978-6B6E-11D0-BECA-00C04FD940BE}"="ConnectionAgent"
"{D8BD2030-6FC9-11D0-864F-00AA006809D9}"="PostAgent"
"{7FC0B86E-5FA7-11d1-BC7C-00C04FD929DB}"="WebCheck SyncMgr Handler"
"{352EC2B7-8B9A-11D1-B8AE-006008059382}"="Shell Application Manager"
"{0B124F8F-91F0-11D1-B8B5-006008059382}"="Installed Apps Enumerator"
"{CFCCC7A0-A282-11D1-9082-006008059382}"="Darwin App Publisher"
"{e84fda7c-1d6a-45f6-b725-cb260c236066}"="Shell Image Verbs"
"{66e4e4fb-f385-4dd0-8d74-a2efd1bc6178}"="Shell Image Data Factory"
"{3F30C968-480A-4C6C-862D-EFC0897BB84B}"="GDI+ file thumbnail extractor"
"{9DBD2C50-62AD-11d0-B806-00C04FD706EC}"="Summary Info Thumbnail handler (DOCFILES)"
"{EAB841A0-9550-11cf-8C16-00805F1408F3}"="HTML Thumbnail Extractor"
"{eb9b1153-3b57-4e68-959a-a3266bc3d7fe}"="Shell Image Property Handler"
"{CC6EEFFB-43F6-46c5-9619-51D571967F7D}"="Web Publishing Wizard"
"{add36aa8-751a-4579-a266-d66f5202ccbb}"="Print Ordering via the Web"
"{6b33163c-76a5-4b6c-bf21-45de9cd503a1}"="Shell Publishing Wizard Object"
"{58f1f272-9240-4f51-b6d4-fd63d1618591}"="Get a Passport Wizard"
"{7A9D77BD-5403-11d2-8785-2E0420524153}"="User Accounts"
"{BD472F60-27FA-11cf-B8B4-444553540000}"="Compressed (zipped) Folder Right Drag Handler"
"{888DCA60-FC0A-11CF-8F0F-00C04FD7D062}"="Compressed (zipped) Folder SendTo Target"
"{f39a0dc0-9cc8-11d0-a599-00c04fd64433}"="Channel File"
"{f3aa0dc0-9cc8-11d0-a599-00c04fd64434}"="Channel Shortcut"
"{f3ba0dc0-9cc8-11d0-a599-00c04fd64435}"="Channel Handler Object"
"{f3da0dc0-9cc8-11d0-a599-00c04fd64437}"="Channel Menu"
"{f3ea0dc0-9cc8-11d0-a599-00c04fd64438}"="Channel Properties"
"{63da6ec0-2e98-11cf-8d82-444553540000}"="FTP Folders Webview"
"{883373C3-BF89-11D1-BE35-080036B11A03}"="Microsoft DocProp Shell Ext"
"{A9CF0EAE-901A-4739-A481-E35B73E47F6D}"="Microsoft DocProp Inplace Edit Box Control"
"{8EE97210-FD1F-4B19-91DA-67914005F020}"="Microsoft DocProp Inplace ML Edit Box Control"
"{0EEA25CC-4362-4A12-850B-86EE61B0D3EB}"="Microsoft DocProp Inplace Droplist Combo Control"
"{6A205B57-2567-4A2C-B881-F787FAB579A3}"="Microsoft DocProp Inplace Calendar Control"
"{28F8A4AC-BBB3-4D9B-B177-82BFC914FA33}"="Microsoft DocProp Inplace Time Control"
"{8A23E65E-31C2-11d0-891C-00A024AB2DBB}"="Directory Query UI"
"{9E51E0D0-6E0F-11d2-9601-00C04FA31A86}"="Shell properties for a DS object"
"{163FDC20-2ABC-11d0-88F0-00A024AB2DBB}"="Directory Object Find"
"{F020E586-5264-11d1-A532-0000F8757D7E}"="Directory Start/Search Find"
"{0D45D530-764B-11d0-A1CA-00AA00C16E65}"="Directory Property UI"
"{62AE1F9A-126A-11D0-A14B-0800361B1103}"="Directory Context Menu Verbs"
"{ECF03A33-103D-11d2-854D-006008059367}"="MyDocs Copy Hook"
"{ECF03A32-103D-11d2-854D-006008059367}"="MyDocs Drop Target"
"{4a7ded0a-ad25-11d0-98a8-0800361b1103}"="MyDocs Properties"
"{750fdf0e-2a26-11d1-a3ea-080036587f03}"="Offline Files Menu"
"{10CFC467-4392-11d2-8DB4-00C04FA31A66}"="Offline Files Folder Options"
"{AFDB1F70-2A4C-11d2-9039-00C04F8EEB3E}"="Offline Files Folder"
"{143A62C8-C33B-11D1-84FE-00C04FA34A14}"="Microsoft Agent Character Property Sheet Handler"
"{ECCDF543-45CC-11CE-B9BF-0080C87CDBA6}"="DfsShell"
"{60fd46de-f830-4894-a628-6fa81bc0190d}"="%DESC_PublishDropTarget%"
"{7A80E4A8-8005-11D2-BCF8-00C04F72C717}"="MMC Icon Handler"
"{0CD7A5C0-9F37-11CE-AE65-08002B2E1262}"=".CAB file viewer"
"{32714800-2E5F-11d0-8B85-00AA0044F941}"="For &People..."
"{8DD448E6-C188-4aed-AF92-44956194EB1F}"="Windows Media Player Play as Playlist Context Menu Handler"
"{CE3FB1D1-02AE-4a5f-A6E9-D9F1B4073E6C}"="Windows Media Player Burn Audio CD Context Menu Handler"
"{F1B9284F-E9DC-4e68-9D7E-42362A59F0FD}"="Windows Media Player Add to Playlist Context Menu Handler"
"{F0CB00CD-5A07-4D91-97F5-A8C92CDA93E4}"="Shell Extensions for RealOne Player"
"{7F67036B-66F1-411A-AD85-759FB9C5B0DB}"="SampleView"
"{1D2680C9-0E2A-469d-B787-065558BC7D43}"="Fusion Cache"
"{1CDB2949-8F65-4355-8456-263E7C208A5D}"="Desktop Explorer"
"{1E9B04FB-F9E5-4718-997B-B8DA88302A47}"="Desktop Explorer Menu"
"{CCFE56EE-C7DE-44EE-A160-4553A5A912C9}"="OmniPass Shell Extension"
"{640167b4-59b0-47a6-b335-a6b3c0695aea}"="Portable Media Devices"
"{cc86590a-b60a-48e6-996b-41d25ed39a1e}"="Portable Media Devices Menu"
"{EBDF1F20-C829-11D1-8233-FF20AF3E97A9}"="TrojanHunter Menu Shell Extension"
"{73B24247-042E-4EF5-ADC2-42F62E6FD654}"="ICQ Lite Shell Extension"
"{5E7D9611-0A92-11D6-BCC6-C117EB0C4E52}"="RStudio Menu Handler"
"{3C7BE262-0E51-11D6-BCC6-A29C3C5B2152}"="R-Undelete"
"{9A87CAD5-E95D-4B78-88EE-D4897CE0DCF0}"=""
"{693ABB58-CDA1-47A1-A7F4-0A4ACF601F82}"=""
"{585A92C4-73DF-4CCB-82D8-407DBF8F314A}"=""
"{A327F362-345B-4C90-9E7B-CF4DC4F97067}"=""
"{8040CB0D-FC0E-401E-B96A-801AAFCDA9CD}"=""
"{D9872D13-7651-4471-9EEE-F0A00218BEBB}"="Multiscan"
"{1CE2AA40-1317-11D3-9922-00104B0AD431}"="CA_AntiVirus"

**********************************************************************************
HKEY ROOT CLASSIDS:
Windows Registry Editor Version 5.00

[HKEY_CLASSES_ROOT\CLSID\{9A87CAD5-E95D-4B78-88EE-D4897CE0DCF0}]
@=""

[HKEY_CLASSES_ROOT\CLSID\{9A87CAD5-E95D-4B78-88EE-D4897CE0DCF0}\Implemented Categories]
@=""

[HKEY_CLASSES_ROOT\CLSID\{9A87CAD5-E95D-4B78-88EE-D4897CE0DCF0}\Implemented Categories\{00021492-0000-0000-C000-000000000046}]
@=""

[HKEY_CLASSES_ROOT\CLSID\{9A87CAD5-E95D-4B78-88EE-D4897CE0DCF0}\InprocServer32]
@="C:\\WINDOWS\\system32\\myicda.dll"
"ThreadingModel"="Apartment"

Windows Registry Editor Version 5.00

[HKEY_CLASSES_ROOT\CLSID\{693ABB58-CDA1-47A1-A7F4-0A4ACF601F82}]
@=""

[HKEY_CLASSES_ROOT\CLSID\{693ABB58-CDA1-47A1-A7F4-0A4ACF601F82}\Implemented Categories]
@=""

[HKEY_CLASSES_ROOT\CLSID\{693ABB58-CDA1-47A1-A7F4-0A4ACF601F82}\Implemented Categories\{00021492-0000-0000-C000-000000000046}]
@=""

[HKEY_CLASSES_ROOT\CLSID\{693ABB58-CDA1-47A1-A7F4-0A4ACF601F82}\InprocServer32]
@="C:\\WINDOWS\\system32\\kzdhu1.dll"
"ThreadingModel"="Apartment"

Windows Registry Editor Version 5.00

[HKEY_CLASSES_ROOT\CLSID\{585A92C4-73DF-4CCB-82D8-407DBF8F314A}]
@=""

[HKEY_CLASSES_ROOT\CLSID\{585A92C4-73DF-4CCB-82D8-407DBF8F314A}\Implemented Categories]
@=""

[HKEY_CLASSES_ROOT\CLSID\{585A92C4-73DF-4CCB-82D8-407DBF8F314A}\Implemented Categories\{00021492-0000-0000-C000-000000000046}]
@=""

[HKEY_CLASSES_ROOT\CLSID\{585A92C4-73DF-4CCB-82D8-407DBF8F314A}\InprocServer32]
@="C:\\WINDOWS\\system32\\imxwan.dll"
"ThreadingModel"="Apartment"

Windows Registry Editor Version 5.00

[HKEY_CLASSES_ROOT\CLSID\{A327F362-345B-4C90-9E7B-CF4DC4F97067}]
@=""

[HKEY_CLASSES_ROOT\CLSID\{A327F362-345B-4C90-9E7B-CF4DC4F97067}\Implemented Categories]
@=""

[HKEY_CLASSES_ROOT\CLSID\{A327F362-345B-4C90-9E7B-CF4DC4F97067}\Implemented Categories\{00021492-0000-0000-C000-000000000046}]
@=""

[HKEY_CLASSES_ROOT\CLSID\{A327F362-345B-4C90-9E7B-CF4DC4F97067}\InprocServer32]
@="C:\\WINDOWS\\system32\\kkdycc.dll"
"ThreadingModel"="Apartment"

Windows Registry Editor Version 5.00

[HKEY_CLASSES_ROOT\CLSID\{8040CB0D-FC0E-401E-B96A-801AAFCDA9CD}]
@=""

[HKEY_CLASSES_ROOT\CLSID\{8040CB0D-FC0E-401E-B96A-801AAFCDA9CD}\Implemented Categories]
@=""

[HKEY_CLASSES_ROOT\CLSID\{8040CB0D-FC0E-401E-B96A-801AAFCDA9CD}\Implemented Categories\{00021492-0000-0000-C000-000000000046}]
@=""

[HKEY_CLASSES_ROOT\CLSID\{8040CB0D-FC0E-401E-B96A-801AAFCDA9CD}\InprocServer32]
@="C:\\WINDOWS\\system32\\mrwdat10.dll"
"ThreadingModel"="Apartment"

**********************************************************************************
Files Found are not all bad files:

C:\WINDOWS\SYSTEM32\
gccoll~1.dll Tue Jul 12 2005 3:35:14p A.... 126,680 123.71 K
gcunco~1.dll Tue Jul 12 2005 3:35:10p A.... 95,448 93.21 K
gdfdsjs.dll Fri Sep 2 2005 11:43:52p A.... 46,080 45.00 K
hashlib.dll Tue Jul 12 2005 3:35:14p A.... 117,976 115.21 K
lgkkm.dll Wed Oct 5 2005 8:19:38p A.... 133,120 130.00 K
oklncro.dll Wed Oct 5 2005 8:19:38p A.... 181,760 177.50 K
pinomres.dll Fri Sep 2 2005 11:06:14p A.... 45,056 44.00 K
pncrt.dll Sun Sep 11 2005 4:35:56p A.... 278,528 272.00 K
pndx5016.dll Sun Sep 11 2005 4:35:58p A.... 6,656 6.50 K
pndx5032.dll Sun Sep 11 2005 4:35:58p A.... 5,632 5.50 K
rmoc3260.dll Sun Sep 11 2005 4:36:54p A.... 157,696 154.00 K
vetredir.dll Tue Sep 20 2005 6:50:44a A.... 74,864 73.11 K
winsusrm.dll Sun Sep 4 2005 10:51:16a A.... 264 0.26 K
wuauclt.dll Fri Sep 2 2005 11:44:44p A.... 30,720 30.00 K

14 items found: 14 files, 0 directories.
Total of file sizes: 1,300,480 bytes 1.24 M
Locate .tmp files:

No matches found.
**********************************************************************************
Directory Listing of system files:
Volume in drive C is PRESARIO
Volume Serial Number is FC9B-C5F5

Directory of C:\WINDOWS\System32

09/06/2005 11:56 AM <DIR> dllcache
09/03/2005 03:53 PM <DIR> Microsoft
07/13/2005 07:15 PM 195,376 26dg00.exe
07/13/2005 04:39 PM 349,396 6lzxkh0.sys
07/13/2005 04:39 PM 238,781 tadno.exe
09/20/2002 03:00 AM 181,296 SCSIACC.EXE
4 File(s) 964,849 bytes
2 Dir(s) 9,673,961,472 bytes free

#4 Guest_Cretemonster_*

Guest_Cretemonster_*

  • Guests
  • OFFLINE
  •  

Posted 06 October 2005 - 11:04 PM

Close any programs you have open since this step requires a reboot.


From the l2mfix folder on your desktop, double click l2mfix.bat and select option #2 for Run Fix by typing 2 and then pressing enter, then press any key to reboot your computer.

After a reboot, your desktop and icons will appear, then disappear (this is normal). L2mfix will continue to scan your computer and when it's finished, notepad will open with a log.

Copy the contents of that log and paste it back into this thread, along with a new hijackthis log.

IMPORTANT: Do NOT run any other files in the l2mfix folder until you are asked to do so!

Please let me know if you get any error messages while running Option2 of the l2mfix!

Post the log from Option2 and a fresh HijackThis log and proceed with the Instructions below!

Please download the trial version of Ewido Security Suite here:
http://www.ewido.net/en/download/

Please read Ewido Setup Instructions
Install it, and update the definitions to the newest files. Do NOT run a scan yet.

If you have not already installed Ad-Aware SE 1.06, follow these download and setup instructions, otherwise, check for updates:
Ad-Aware SE Setup
Don't run it yet!

Download and Install
CleanUp!
Dont use it yet!

Reboot into SAFE MODE(Tap F8 when restarting)
Here is a link on how to boot into Safe Mode:
http://service1.symantec.com/SUPPORT/tsgen...src=sec_doc_nam

Run Cleanup,when prompted to log off>> Select No

Scan the PC with Ewido just as described in the link-> Clean everthing it finds and make sure to Save the Report

Scan the System with Ad Aware,remove everything it finds and delete all quaratine files!

Run MSCONFIG and enable everything in the startup area. To get to MSCONFIG, click on Start -> Run -> type in MSCONFIG -> click OK!

Under the "General" Tab
Make Sure Normal Startup is Checked!!

Click Apply>>OK>>Follow the Prompts to Restart!!

Restart Normal and have the PC Scanned here:
Panda Active Scan

You will need to be using Internet Explorer for the Scan to work!

Save the Report it generates

Download the Hoster from here:
http://www.funkytoad.com/download/hoster.zip
Press "Restore Original Hosts" and press "OK"!
Exit Program!


Post back with a fresh HijackThis log and the reports from Ewido and Panda!

#5 shortsexychica

shortsexychica
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Local time:06:28 PM

Posted 07 October 2005 - 06:00 PM

Okay I followed your instructions and it's running faster but now whenever I try to run HijackThis it keeps saying invalid file address and will shut down IE before I can do the Panda Scan. oh and it did that auto~restart again too. what's going on? :thumbsup:

Edited by shortsexychica, 07 October 2005 - 07:03 PM.


#6 Guest_Cretemonster_*

Guest_Cretemonster_*

  • Guests
  • OFFLINE
  •  

Posted 07 October 2005 - 08:12 PM

Were you able to save the reports from Ewido?

See if you can go into Safe Mode and save a log from HijackThis?

Post back with either or both if possible!

#7 shortsexychica

shortsexychica
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  

Posted 07 October 2005 - 09:41 PM

Here's the one from Ewido: and I'll try to post a HijackThis too if I can get it.

---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------

+ Created on: 1:17:27 PM, 10/7/2005
+ Report-Checksum: 37CA981C

+ Scan result:

HKLM\SOFTWARE\Classes\CLSID\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} -> Spyware.MiniBug : Ignored
HKLM\SOFTWARE\Classes\IAmWired.Var2Helper\CLSID\\ -> Spyware.SafeSurfing : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{014DA6C4-189F-421A-88CD-07CFE51CFF10}\TypeLib\\ -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{014DA6C6-189F-421A-88CD-07CFE51CFF10}\TypeLib\\ -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{014DA6CA-189F-421A-88CD-07CFE51CFF10}\TypeLib\\ -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{014DA6CC-189F-421A-88CD-07CFE51CFF10}\TypeLib\\ -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{26C23254-9C6C-48D8-8BF4-E629104E8B36}\TypeLib\\ -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{508EBE65-E39D-4363-8041-E647B4F6F4E1}\TypeLib\\ -> Spyware.NavExcel : Cleaned with backup
HKLM\SOFTWARE\Classes\MiniBugTransporter.MiniBugTransporterX\CLSID\\ -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\Classes\MiniBugTransporter.MiniBugTransporterX.1\CLSID\\ -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} -> Spyware.PopularScreensavers : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{70522FA0-4656-11D5-B0E9-0050DAC24E8F} -> Spyware.iWon : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{9E248641-0E24-4DDB-9A1F-705087832AD6}\\CLSID -> Spyware.VX2 : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\ins -> Spyware.WebRebates : Cleaned with backup
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\tdrc.exe -> Trojan.Pakes : Cleaned with backup
:mozilla.11:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\Default User\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.10:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.11:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.12:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.13:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.17:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.21:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.34:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.58:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.62:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.63:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.64:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.66:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.71:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.72:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.73:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.75:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
:mozilla.77:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.79:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup
:mozilla.80:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.83:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
:mozilla.84:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
:mozilla.85:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
:mozilla.87:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
:mozilla.88:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
:mozilla.89:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Euniverseads : Cleaned with backup
:mozilla.90:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Euniverseads : Cleaned with backup
:mozilla.91:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Euniverseads : Cleaned with backup
:mozilla.92:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.93:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.94:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.95:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.96:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.97:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.101:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.102:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.104:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.112:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Gator : Cleaned with backup
:mozilla.113:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Bfast : Cleaned with backup
:mozilla.118:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.119:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.120:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.121:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.122:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.123:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.124:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.125:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.126:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.127:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.128:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.129:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.130:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.131:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.133:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.134:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.135:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.136:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.137:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.138:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.152:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.153:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.154:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.171:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.172:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.173:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.176:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.177:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.185:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
:mozilla.194:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.195:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.200:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.201:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.218:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.219:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.220:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.226:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.227:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.228:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.229:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.6:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.18:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.19:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.20:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.23:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.24:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.28:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.29:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.33:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.34:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.56:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.58:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.59:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.60:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.61:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.62:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.63:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.64:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.65:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.66:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.67:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.68:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.69:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.70:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.77:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.78:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.79:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.80:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.81:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.82:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.85:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.86:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.87:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.88:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.89:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.90:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.91:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.94:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.118:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.119:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.122:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.123:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.124:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.125:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.126:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.127:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.128:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.129:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.130:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.131:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.133:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.134:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.135:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.136:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.137:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.138:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.139:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.143:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.144:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.145:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.146:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.150:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.151:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.152:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.153:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.158:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.166:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.180:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.183:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Gator : Cleaned with backup
:mozilla.200:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
:mozilla.201:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
:mozilla.223:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Bfast : Cleaned with backup
:mozilla.229:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.231:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.232:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.233:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.237:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.238:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.242:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Findwhat : Cleaned with backup
:mozilla.264:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.6:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.17:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Masterstats : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.56:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.58:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.59:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.60:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.97:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Gator : Cleaned with backup
:mozilla.99:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.100:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.101:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.102:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.103:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.105:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.106:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.107:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.109:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.120:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.121:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.122:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.125:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.126:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.133:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.134:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.135:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.136:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.137:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.138:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.139:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.140:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.141:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.142:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.143:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.162:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.163:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.165:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.166:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.167:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.168:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.169:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.170:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.172:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.173:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.175:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.176:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.177:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.178:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.179:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.180:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.181:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.182:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.183:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.184:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.185:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.186:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.187:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.188:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.189:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.190:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.191:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.192:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.193:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.194:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.195:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.196:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.197:C:\Documents and Settings\Brandi\Application Data\Mo

#8 Guest_Cretemonster_*

Guest_Cretemonster_*

  • Guests
  • OFFLINE
  •  

Posted 08 October 2005 - 03:27 AM

Looks like the Ewido log was cur off!

Download WinPFind:
http://www.bleepingcomputer.com/files/winpfind.php

Right Click the Zip Folder and Select "Extract All"

Don't use it yet!

Reboot into SAFE MODE(Tap F8 when restarting)

From the WinPFind folder-> Doubleclick WinPFind.exe and Click "Start Scan"

It will scan the entire System, so please be patient!

One you see "Scan Complete"-> a log (WinPFind.txt) will be automatically generated in the WinPFind folder!


Restart Normal and Post back with a fresh HijackThis log and the reportfrom WinPFind!

#9 shortsexychica

shortsexychica
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Local time:06:28 PM

Posted 20 October 2005 - 12:34 PM

Sorry it took so long to get back. So much going on right now with me :thumbsup: but here are my new logs :flowers:

---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------

+ Created on: 1:17:27 PM, 10/7/2005
+ Report-Checksum: 37CA981C

+ Scan result:

HKLM\SOFTWARE\Classes\CLSID\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} -> Spyware.MiniBug : Ignored
HKLM\SOFTWARE\Classes\IAmWired.Var2Helper\CLSID\\ -> Spyware.SafeSurfing : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{014DA6C4-189F-421A-88CD-07CFE51CFF10}\TypeLib\\ -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{014DA6C6-189F-421A-88CD-07CFE51CFF10}\TypeLib\\ -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{014DA6CA-189F-421A-88CD-07CFE51CFF10}\TypeLib\\ -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{014DA6CC-189F-421A-88CD-07CFE51CFF10}\TypeLib\\ -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{26C23254-9C6C-48D8-8BF4-E629104E8B36}\TypeLib\\ -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{508EBE65-E39D-4363-8041-E647B4F6F4E1}\TypeLib\\ -> Spyware.NavExcel : Cleaned with backup
HKLM\SOFTWARE\Classes\MiniBugTransporter.MiniBugTransporterX\CLSID\\ -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\Classes\MiniBugTransporter.MiniBugTransporterX.1\CLSID\\ -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} -> Spyware.PopularScreensavers : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{70522FA0-4656-11D5-B0E9-0050DAC24E8F} -> Spyware.iWon : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{9E248641-0E24-4DDB-9A1F-705087832AD6}\\CLSID -> Spyware.VX2 : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\ins -> Spyware.WebRebates : Cleaned with backup
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\tdrc.exe -> Trojan.Pakes : Cleaned with backup
:mozilla.11:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\Default User\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.10:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.11:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.12:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.13:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.17:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.21:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.34:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.58:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.62:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.63:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.64:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.66:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.71:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.72:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.73:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.75:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
:mozilla.77:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.79:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup
:mozilla.80:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.83:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
:mozilla.84:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
:mozilla.85:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
:mozilla.87:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
:mozilla.88:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
:mozilla.89:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Euniverseads : Cleaned with backup
:mozilla.90:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Euniverseads : Cleaned with backup
:mozilla.91:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Euniverseads : Cleaned with backup
:mozilla.92:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.93:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.94:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.95:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.96:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.97:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.101:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.102:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.104:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.112:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Gator : Cleaned with backup
:mozilla.113:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Bfast : Cleaned with backup
:mozilla.118:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.119:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.120:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.121:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.122:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.123:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.124:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.125:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.126:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.127:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.128:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.129:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.130:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.131:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.133:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.134:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.135:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.136:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.137:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.138:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.152:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.153:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.154:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.171:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.172:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.173:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.176:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.177:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.185:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
:mozilla.194:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.195:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.200:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.201:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.218:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.219:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.220:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.226:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.227:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.228:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.229:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.6:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.18:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.19:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.20:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.23:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.24:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.28:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.29:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.33:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.34:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.56:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.58:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.59:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.60:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.61:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.62:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.63:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.64:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.65:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.66:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.67:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.68:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.69:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.70:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.77:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.78:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.79:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.80:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.81:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.82:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.85:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.86:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.87:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.88:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.89:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.90:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.91:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.94:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.118:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.119:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.122:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.123:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.124:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.125:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.126:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.127:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.128:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.129:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.130:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.131:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.133:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.134:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.135:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.136:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.137:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.138:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.139:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.143:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.144:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.145:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.146:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.150:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.151:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.152:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.153:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.158:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.166:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.180:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.183:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Gator : Cleaned with backup
:mozilla.200:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
:mozilla.201:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
:mozilla.223:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Bfast : Cleaned with backup
:mozilla.229:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.231:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.232:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.233:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.237:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.238:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.242:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Findwhat : Cleaned with backup
:mozilla.264:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.6:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.17:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Masterstats : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.56:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.58:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.59:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.60:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.97:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Gator : Cleaned with backup
:mozilla.99:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.100:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.101:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.102:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.103:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.105:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.106:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.107:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.109:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.120:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.121:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.122:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.125:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.126:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.133:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.134:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.135:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.136:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.137:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.138:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.139:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.140:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.141:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.142:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.143:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.162:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.163:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.165:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.166:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.167:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.168:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.169:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.170:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.172:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.173:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.175:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.176:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.177:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.178:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.179:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.180:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.181:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.182:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.183:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.184:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.185:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.186:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.187:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.188:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.189:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.190:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.191:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.192:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.193:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.194:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.195:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.196:C:\Documents and Settings\Brandi\

Edited by shortsexychica, 20 October 2005 - 12:33 PM.


#10 Guest_Cretemonster_*

Guest_Cretemonster_*

  • Guests
  • OFFLINE
  •  

Posted 22 October 2005 - 04:34 AM

See if you can attach the Ewido log to the next reply!

Go ahead post a fresh HijackThis log as well!

#11 shortsexychica

shortsexychica
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  

Posted 22 October 2005 - 08:02 AM

Here's the HijackThis,

Logfile of HijackThis v1.99.1
Scan saved at 7:54:41 AM, on 10/22/2005
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\ISafe.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\Softex\OmniPass\Omniserv.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\VetMsg.exe
C:\Program Files\Softex\OmniPass\OPXPApp.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Yahoo!\Messenger\ypager.exe
C:\Program Files\America Online 9.0\waol.exe
C:\Program Files\America Online 9.0\shellmon.exe
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\AOL Toolbar\UNWISE.EXE
C:\Program Files\mozilla.org\Mozilla\mozilla.exe
C:\Documents and Settings\Brandi.YOUR-SZ6X6SEFXO.000\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://home.peoplepc.com/search
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://home.peoplepc.com/websearch
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://home.peoplepc.com/search
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer provided by America Online
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R3 - Default URLSearchHook is missing
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: SDWin32 Class - {40D082B6-011D-4836-8847-9C796E86B111} - C:\WINDOWS\System32\fykwi.dll (file missing)
O2 - BHO: UberButton Class - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: YahooTaggedBM Class - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - C:\Program Files\Yahoo!\Common\YIeTagBm.dll
O2 - BHO: PeoplePal Toolbar - {A8FB8EB3-183B-4598-924D-86F0E5E37085} - c:\program files\peoplepc\toolbar\PPCToolbar.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
O3 - Toolbar: SuperBar - {AD2A8623-340A-44C0-872F-5BC2EAF7012C} - C:\Program Files\SUPERBAR\SUPERBAR.dll (file missing)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\companion\Installs\cpn4\yt.dll
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
O3 - Toolbar: PeoplePal Toolbar - {A8FB8EB3-183B-4598-924D-86F0E5E37085} - c:\program files\peoplepc\toolbar\PPCToolbar.dll
O4 - HKLM\..\RunOnce: [AOLDeskbarDirRemoval] cmd.exe /C rd "C:\Program Files\AOL Deskbar"
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\ypager.exe" -quiet
O4 - HKCU\..\Run: [AOL Fast Start] "C:\Program Files\America Online 9.0\AOL.EXE" -b
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll
O9 - Extra button: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra 'Tools' menuitem: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: (no name) - {9E248641-0E24-4DDB-9A1F-705087832AD6} - (no file)
O9 - Extra 'Tools' menuitem: Java - {9E248641-0E24-4DDB-9A1F-705087832AD6} - (no file)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\MSMSGS.EXE
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.aol.com
O16 - DPF: Yahoo! Literati - http://download.games.yahoo.com/games/clients/y/tt3_x.cab
O16 - DPF: Yahoo! Pool 2 - http://download.games.yahoo.com/games/clients/y/pote_x.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {38578BF0-0ABB-11D3-9330-0080C6F796A1} (Create & Print ActiveX Plug-in) - http://www.imgag.com/cp/install/AxCtp.cab
O16 - DPF: {4620BC29-8B8E-4F4E-9D92-1DB6633D6793} (SurferNETWORK Plugin) - http://rd1.surfernetwork.com/surferplugin.ocx
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5co...b?1112486079562
O16 - DPF: {64D01C7F-810D-446E-A07E-365764235644} (AtlAtomadersCtlAttrib Class) - http://kraisoft.com/files/realone/atomaders.cab
O16 - DPF: {8A94C905-FF9D-43B6-8708-F0F22D22B1CB} (Wwlaunch Control) - http://www.worldwinner.com/games/shared/wwlaunch.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {9AA73F41-EC64-489E-9A73-9CD52E528BC4} (ZoneAxRcMgr Class) - http://zone.msn.com/binGame/ZAxRcMgr.cab
O16 - DPF: {A1B09066-C95C-4EF6-8DFD-3DD0AFE610B6} (AOL YGP Screensaver) - http://pictures06.aim.com/ygp/aol/plugin/s...IM.9.1.6.27.cab
O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMesse...pDownloader.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10/ZIntro.cab34246.cab
O16 - DPF: {C4925E65-7A1E-11D2-8BB4-00A0C9CC72C3} (Virtools WebPlayer Class) - http://a532.g.akamai.net/f/532/6712/4h/pla...0/Installer.exe
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://zone.msn.com/bingame/dim2/default/popcaploader_v6.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/bin/msnchat45.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: OPXPGina - C:\Program Files\Softex\OmniPass\opxpgina.dll
O20 - Winlogon Notify: Shell Extensions - C:\WINDOWS\system32\rqbdyctl.dll (file missing)
O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: CAISafe - Computer Associates International, Inc. - C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\ISafe.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - Networks Associates Technology, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: Softex OmniPass Service (omniserv) - Unknown owner - C:\Program Files\Softex\OmniPass\Omniserv.exe
O23 - Service: VET Message Service (VETMSGNT) - Computer Associates International, Inc. - C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\VetMsg.exe



and Ewido,

---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------

+ Created on: 1:17:27 PM, 10/7/2005
+ Report-Checksum: 37CA981C

+ Scan result:

HKLM\SOFTWARE\Classes\CLSID\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} -> Spyware.MiniBug : Ignored
HKLM\SOFTWARE\Classes\IAmWired.Var2Helper\CLSID\\ -> Spyware.SafeSurfing : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{014DA6C4-189F-421A-88CD-07CFE51CFF10}\TypeLib\\ -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{014DA6C6-189F-421A-88CD-07CFE51CFF10}\TypeLib\\ -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{014DA6CA-189F-421A-88CD-07CFE51CFF10}\TypeLib\\ -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{014DA6CC-189F-421A-88CD-07CFE51CFF10}\TypeLib\\ -> Spyware.BargainBuddy : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{26C23254-9C6C-48D8-8BF4-E629104E8B36}\TypeLib\\ -> Spyware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\Interface\{508EBE65-E39D-4363-8041-E647B4F6F4E1}\TypeLib\\ -> Spyware.NavExcel : Cleaned with backup
HKLM\SOFTWARE\Classes\MiniBugTransporter.MiniBugTransporterX\CLSID\\ -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\Classes\MiniBugTransporter.MiniBugTransporterX.1\CLSID\\ -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} -> Spyware.PopularScreensavers : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{70522FA0-4656-11D5-B0E9-0050DAC24E8F} -> Spyware.iWon : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{9E248641-0E24-4DDB-9A1F-705087832AD6}\\CLSID -> Spyware.VX2 : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\ins -> Spyware.WebRebates : Cleaned with backup
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\tdrc.exe -> Trojan.Pakes : Cleaned with backup
:mozilla.11:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\Default User\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.10:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.11:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.12:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.13:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.17:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.21:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.34:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.58:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.62:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.63:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.64:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.66:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.71:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.72:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.73:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.75:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
:mozilla.77:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.79:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup
:mozilla.80:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.83:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
:mozilla.84:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
:mozilla.85:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
:mozilla.87:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
:mozilla.88:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
:mozilla.89:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Euniverseads : Cleaned with backup
:mozilla.90:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Euniverseads : Cleaned with backup
:mozilla.91:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Euniverseads : Cleaned with backup
:mozilla.92:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.93:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.94:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.95:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.96:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.97:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.101:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.102:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.104:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.112:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Gator : Cleaned with backup
:mozilla.113:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Bfast : Cleaned with backup
:mozilla.118:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.119:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.120:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.121:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.122:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.123:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.124:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.125:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.126:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.127:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.128:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.129:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.130:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.131:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.133:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.134:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.135:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.136:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.137:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.138:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.152:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.153:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.154:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.171:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.172:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.173:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.176:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.177:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.185:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
:mozilla.194:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.195:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
:mozilla.200:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.201:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.218:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.219:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.220:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.226:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.227:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.228:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.229:C:\Documents and Settings\Brandi\Application Data\Mozilla\Firefox\Profiles\default.79m\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.6:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.18:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.19:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.20:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.23:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.24:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.28:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.29:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.33:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.34:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.56:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.58:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.59:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.60:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.61:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.62:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.63:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.64:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.65:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.66:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.67:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.68:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.69:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.70:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.77:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.78:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.79:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.80:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.81:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.82:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.85:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.86:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.87:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.88:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.89:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.90:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.91:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.94:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.118:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.119:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.122:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.123:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.124:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.125:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.126:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.127:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.128:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.129:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.130:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.131:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.133:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.134:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.135:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.136:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.137:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.138:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.139:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.143:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.144:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.145:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.146:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.150:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.151:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.152:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.153:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
:mozilla.158:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.166:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.180:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.183:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Gator : Cleaned with backup
:mozilla.200:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
:mozilla.201:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
:mozilla.223:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Bfast : Cleaned with backup
:mozilla.229:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.231:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.232:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.233:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.237:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.238:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.242:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Findwhat : Cleaned with backup
:mozilla.264:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\default\p2ae3yrg.slt\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.6:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.17:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Masterstats : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.56:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.58:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.59:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.60:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.97:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Gator : Cleaned with backup
:mozilla.99:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.100:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.101:C:\Documents and Settings\Brandi\Application Data\Mozilla\Profiles\Default User2\ecxqvrz1.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.102:

#12 Guest_Cretemonster_*

Guest_Cretemonster_*

  • Guests
  • OFFLINE
  •  

Posted 23 October 2005 - 08:19 AM

So Sorry for all the delays,looks like the Ewido log is just too long to fit into one post!

Were you able to scan with WinPFind?

I need to see the results of the WinPFind scan so I can see whats leftover and any registry changes that have been made!

Look2me has made some serious changes in the last month so I want to be sure we get everything!

#13 shortsexychica

shortsexychica
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  
  • Local time:06:28 PM

Posted 23 October 2005 - 10:48 AM

WARNING: not all files found by this scanner are bad. Consult with a knowledgable person before proceeding.

If you see a message in the titlebar saying "Not responding..." you can ignore it. Windows somethimes displays this message due to the high volume of disk I/O. As long as the hard disk light is flashing, the program is still working properly.

Windows OS and Versions
Product Name: Microsoft Windows XP Current Build: Service Pack 1 Current Build Number: 2600
Internet Explorer Version: 6.0.2800.1106

Checking Selected Standard Folders

Checking %SystemDrive% folder...
UPX! 8/21/2005 2:12:22 PM 188416 C:\AdMunch.dll
UPX! 7/12/2004 11:39:16 AM 158878661 C:\AdobePhotoshopCS.zip
FSG! 7/12/2004 11:39:16 AM 158878661 C:\AdobePhotoshopCS.zip
UPX! 8/5/2004 9:17:00 AM 5082708 C:\FirefoxSetup-0.9.3.exe
UPX! 6/9/2004 8:03:36 PM 26953157 C:\NAV10ESD.exe
UPX! 7/13/2004 10:16:30 AM 3740658 C:\pac2002_en_trial.exe

Checking %ProgramFilesDir% folder...
aspack 4/19/2004 11:03:06 AM 3081329 C:\Program Files\PartyPokerSetup.exe

Checking %WinDir% folder...

Checking %System% folder...
UPX! 9/3/2005 1:37:54 PM 224256 C:\WINDOWS\SYSTEM32\AM-Install.exe
PEC2 8/29/2002 7:00:00 AM 41397 C:\WINDOWS\SYSTEM32\dfrg.msc
69.59.186.63 10/7/2005 6:30:50 AM 133120 C:\WINDOWS\SYSTEM32\lgkkm.dll
209.66.67.134 10/7/2005 6:30:50 AM 133120 C:\WINDOWS\SYSTEM32\lgkkm.dll
web-nex 10/7/2005 6:30:50 AM 133120 C:\WINDOWS\SYSTEM32\lgkkm.dll
winsync 10/7/2005 6:30:50 AM 133120 C:\WINDOWS\SYSTEM32\lgkkm.dll
UPX! 1/13/2005 9:41:48 PM 11254 C:\WINDOWS\SYSTEM32\locate.com
PECompact2 8/4/2005 10:01:54 AM 1449304 C:\WINDOWS\SYSTEM32\MRT.exe
aspack 8/4/2005 10:01:54 AM 1449304 C:\WINDOWS\SYSTEM32\MRT.exe
Umonitor 8/29/2002 7:00:00 AM 631808 C:\WINDOWS\SYSTEM32\rasdlg.dll
UPX! 1/20/2005 1:47:50 PM 175616 C:\WINDOWS\SYSTEM32\strings.exe
PEC2 6/22/2004 12:00:00 PM 121856 C:\WINDOWS\SYSTEM32\VsNetMenu.ocx
winsync 8/29/2002 7:00:00 AM 1309184 C:\WINDOWS\SYSTEM32\wbdbase.deu

Checking %System%\Drivers folder and sub-folders...

Items found in C:\WINDOWS\SYSTEM32\drivers\etc\hosts


Checking the Windows folder and sub-folders for system and hidden files within the last 60 days...
10/8/2005 4:35:22 PM S 2048 C:\WINDOWS\bootstat.dat
10/8/2005 4:32:34 PM H 57 C:\WINDOWS\p5JwN
9/5/2005 4:12:36 PM H 4212 C:\WINDOWS\system32\zllictbl.dat
10/8/2005 4:35:12 PM H 8192 C:\WINDOWS\system32\config\default.LOG
10/8/2005 4:36:00 PM H 1024 C:\WINDOWS\system32\config\SAM.LOG
10/8/2005 4:35:24 PM H 16384 C:\WINDOWS\system32\config\SECURITY.LOG
10/8/2005 4:36:34 PM H 98304 C:\WINDOWS\system32\config\software.LOG
10/8/2005 4:36:02 PM H 868352 C:\WINDOWS\system32\config\system.LOG
9/4/2005 9:11:18 AM H 1024 C:\WINDOWS\system32\config\systemprofile\NTUSER.DAT.LOG
9/3/2005 3:53:04 PM HS 388 C:\WINDOWS\system32\Microsoft\Protect\S-1-5-18\User\fee7551f-69d2-4ba0-8ad2-81586ca43289
9/3/2005 3:53:04 PM HS 24 C:\WINDOWS\system32\Microsoft\Protect\S-1-5-18\User\Preferred
10/8/2005 4:33:54 PM H 6 C:\WINDOWS\Tasks\SA.DAT

Checking for CPL files...
Microsoft Corporation 8/29/2002 7:00:00 AM 66048 C:\WINDOWS\SYSTEM32\access.cpl
Realtek Semiconductor Corp. 3/11/2003 7:21:40 PM 3554304 C:\WINDOWS\SYSTEM32\ALSNDMGR.CPL
Microsoft Corporation 8/29/2002 7:00:00 AM 578560 C:\WINDOWS\SYSTEM32\appwiz.cpl
11/11/1999 9:11:00 PM 183808 C:\WINDOWS\SYSTEM32\bdeadmin.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 129024 C:\WINDOWS\SYSTEM32\desk.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 150016 C:\WINDOWS\SYSTEM32\hdwwiz.cpl
Intel Corporation 3/11/2003 7:18:48 PM 94208 C:\WINDOWS\SYSTEM32\igfxcpl.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 292352 C:\WINDOWS\SYSTEM32\inetcpl.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 121856 C:\WINDOWS\SYSTEM32\intl.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 65536 C:\WINDOWS\SYSTEM32\joy.cpl
Sun Microsystems 6/3/2004 11:05:06 PM 61555 C:\WINDOWS\SYSTEM32\jpicpl32.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 187904 C:\WINDOWS\SYSTEM32\main.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 559616 C:\WINDOWS\SYSTEM32\mmsys.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 35840 C:\WINDOWS\SYSTEM32\ncpa.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 256000 C:\WINDOWS\SYSTEM32\nusrmgr.cpl
NVIDIA Corporation 3/3/2003 6:44:00 PM 139264 C:\WINDOWS\SYSTEM32\nvtuicpl.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 36864 C:\WINDOWS\SYSTEM32\odbccp32.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 109056 C:\WINDOWS\SYSTEM32\powercfg.cpl
PeoplePC 6/14/2005 3:57:00 PM 45056 C:\WINDOWS\SYSTEM32\ppcpanel.cpl
RealNetworks, Inc. 9/11/2005 4:36:00 PM 24576 C:\WINDOWS\SYSTEM32\prefscpl.cpl
Apple Computer, Inc. 1/6/2004 4:02:36 PM 323072 C:\WINDOWS\SYSTEM32\QuickTime.cpl
Softex, Inc 2/21/2003 6:06:04 AM 32768 C:\WINDOWS\SYSTEM32\scurecpl.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 268288 C:\WINDOWS\SYSTEM32\sysdm.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 28160 C:\WINDOWS\SYSTEM32\telephon.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 90112 C:\WINDOWS\SYSTEM32\timedate.cpl
Microsoft Corporation 8/3/2004 2:03:24 PM 167704 C:\WINDOWS\SYSTEM32\wuaucpl.cpl
The Weather Channel Interactive5/18/2005 1:22:20 PM 3010560 C:\WINDOWS\SYSTEM32\wxfw.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 66048 C:\WINDOWS\SYSTEM32\dllcache\access.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 578560 C:\WINDOWS\SYSTEM32\dllcache\appwiz.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 129024 C:\WINDOWS\SYSTEM32\dllcache\desk.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 150016 C:\WINDOWS\SYSTEM32\dllcache\hdwwiz.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 292352 C:\WINDOWS\SYSTEM32\dllcache\inetcpl.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 121856 C:\WINDOWS\SYSTEM32\dllcache\intl.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 65536 C:\WINDOWS\SYSTEM32\dllcache\joy.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 187904 C:\WINDOWS\SYSTEM32\dllcache\main.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 559616 C:\WINDOWS\SYSTEM32\dllcache\mmsys.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 35840 C:\WINDOWS\SYSTEM32\dllcache\ncpa.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 256000 C:\WINDOWS\SYSTEM32\dllcache\nusrmgr.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 36864 C:\WINDOWS\SYSTEM32\dllcache\odbccp32.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 109056 C:\WINDOWS\SYSTEM32\dllcache\powercfg.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 147456 C:\WINDOWS\SYSTEM32\dllcache\sapi.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 268288 C:\WINDOWS\SYSTEM32\dllcache\sysdm.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 28160 C:\WINDOWS\SYSTEM32\dllcache\telephon.cpl
Microsoft Corporation 8/29/2002 7:00:00 AM 90112 C:\WINDOWS\SYSTEM32\dllcache\timedate.cpl
Intel Corporation 3/11/2003 7:18:48 PM 94208 C:\WINDOWS\SYSTEM32\ReinstallBackups\0002\DriverFiles\igfxcpl.cpl

Checking Selected Startup Folders

Checking files in %ALLUSERSPROFILE%\Startup folder...
11/10/2004 11:50:50 PM 1903 C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Compaq Connections.lnk
4/10/2003 4:49:46 AM HS 84 C:\Documents and Settings\All Users\Start Menu\Programs\Startup\desktop.ini
4/10/2003 5:59:50 AM 675 C:\Documents and Settings\All Users\Start Menu\Programs\Startup\Quicken Scheduled Updates.lnk

Checking files in %ALLUSERSPROFILE%\Application Data folder...
4/9/2003 9:41:42 PM HS 62 C:\Documents and Settings\All Users\Application Data\desktop.ini

Checking files in %USERPROFILE%\Startup folder...
4/10/2003 4:49:46 AM HS 84 C:\Documents and Settings\Brandi.YOUR-SZ6X6SEFXO.000\Start Menu\Programs\Startup\desktop.ini

Checking files in %USERPROFILE%\Application Data folder...
4/9/2003 9:41:42 PM HS 62 C:\Documents and Settings\Brandi.YOUR-SZ6X6SEFXO.000\Application Data\desktop.ini

Checking Selected Registry Keys

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform]
=

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]
{9A87CAD5-E95D-4B78-88EE-D4897CE0DCF0} = C:\WINDOWS\system32\myicda.dll
{693ABB58-CDA1-47A1-A7F4-0A4ACF601F82} = C:\WINDOWS\system32\kzdhu1.dll
{585A92C4-73DF-4CCB-82D8-407DBF8F314A} = C:\WINDOWS\system32\imxwan.dll
{A327F362-345B-4C90-9E7B-CF4DC4F97067} = C:\WINDOWS\system32\kkdycc.dll
{8040CB0D-FC0E-401E-B96A-801AAFCDA9CD} = C:\WINDOWS\system32\mrwdat10.dll

[HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Shell Extensions\Approved]

[HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers]
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\CA_AntiVirus
{1CE2AA40-1317-11D3-9922-00104B0AD431} = C:\WINDOWS\avshlext.dll
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\ewido
{57BD36D7-CE32-4600-9B1C-1A0C47EFC02E} = C:\Program Files\ewido\security suite\context.dll
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Offline Files
{750fdf0e-2a26-11d1-a3ea-080036587f03} = %SystemRoot%\System32\cscui.dll
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Open With
{09799AFB-AD67-11d1-ABCD-00C04FC30936} = %SystemRoot%\system32\SHELL32.dll
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\Open With EncryptionMenu
{A470F8CF-A1E8-4f65-8335-227475AA5C46} = %SystemRoot%\system32\SHELL32.dll
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\OPShellE
{CCFE56EE-C7DE-44EE-A160-4553A5A912C9} = C:\Program Files\Softex\OmniPass\opshelle.dll
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\qgmkynxf
{f8f84229-c33c-477e-a0bd-186854073efc} = C:\WINDOWS\System32\lgkkm.dll
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\WinRAR
=
HKEY_CLASSES_ROOT\*\shellex\ContextMenuHandlers\{a2a9545d-a0c2-42b4-9708-a0b2badd77c8}
Start Menu Pin = %SystemRoot%\system32\SHELL32.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers]
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\CA_AntiVirus
{1CE2AA40-1317-11D3-9922-00104B0AD431} = C:\WINDOWS\avshlext.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ContextMenuHandlers\WinRAR
=

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers]
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\EncryptionMenu
{A470F8CF-A1E8-4f65-8335-227475AA5C46} = %SystemRoot%\system32\SHELL32.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\ewido
{57BD36D7-CE32-4600-9B1C-1A0C47EFC02E} = C:\Program Files\ewido\security suite\context.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\ICQLiteMenu
{73B24247-042E-4EF5-ADC2-42F62E6FD654} =
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\Offline Files
{750fdf0e-2a26-11d1-a3ea-080036587f03} = %SystemRoot%\System32\cscui.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\OPShellE
{CCFE56EE-C7DE-44EE-A160-4553A5A912C9} = C:\Program Files\Softex\OmniPass\opshelle.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\RStudioMenuExt
{5E7D9611-0A92-11D6-BCC6-C117EB0C4E52} = C:\Program Files\R-Undelete20\RSExt.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\Sharing
{f81e9010-6ea4-11ce-a7ff-00aa003ca9f6} = ntshrui.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Directory\shellex\ContextMenuHandlers\WinRAR
=

[HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers]
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\{0D2E74C4-3C34-11d2-A27E-00C04FC30871}
= %SystemRoot%\system32\SHELL32.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\{24F14F01-7B1C-11d1-838f-0000F80461CF}
= %SystemRoot%\system32\SHELL32.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\{24F14F02-7B1C-11d1-838f-0000F80461CF}
= %SystemRoot%\system32\SHELL32.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Classes\Folder\shellex\ColumnHandlers\{66742402-F9B9-11D1-A202-0000F81FEDEE}
= %SystemRoot%\system32\SHELL32.dll

[HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects]
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}
AcroIEHlprObj Class = C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{40D082B6-011D-4836-8847-9C796E86B111}
SDWin32 Class = C:\WINDOWS\System32\fykwi.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897}
UberButton Class = C:\Program Files\Yahoo!\Common\yiesrvc.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{65D886A2-7CA7-479B-BB95-14D1EFB7946A}
YahooTaggedBM Class = C:\Program Files\Yahoo!\Common\YIeTagBm.dll
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{A8FB8EB3-183B-4598-924D-86F0E5E37085}
PeoplePal Toolbar = c:\program files\peoplepc\toolbar\PPCToolbar.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{4528BBE0-4E08-11D5-AD55-00010333D0AD}
&Yahoo! Messenger = C:\PROGRA~1\Yahoo!\Common\yhexbmesus.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{4D5C8C25-D075-11d0-B416-00C04FB90376}
&Tip of the Day = %SystemRoot%\System32\shdocvw.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\{FE54FA40-D68C-11d2-98FA-00C0F0318AFE}
Real.com = C:\WINDOWS\System32\Shdocvw.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar]
{8E718888-423F-11D2-876E-00A0C9082467} = &Radio : C:\WINDOWS\System32\msdxm.ocx
{AD2A8623-340A-44C0-872F-5BC2EAF7012C} = SuperBar : C:\Program Files\SUPERBAR\SUPERBAR.dll
{EF99BD32-C1FB-11D2-892F-0090271D4F88} = Yahoo! Toolbar : C:\Program Files\Yahoo!\companion\Installs\cpn4\yt.dll
{4982D40A-C53B-4615-B15B-B5B5E98D167C} = AOL Toolbar : C:\Program Files\AOL Toolbar\toolbar.dll
{BA52B914-B692-46c4-B683-905236F6F655} = :
{A8FB8EB3-183B-4598-924D-86F0E5E37085} = PeoplePal Toolbar : c:\program files\peoplepc\toolbar\PPCToolbar.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{08B0E5C0-4FCB-11CF-AAA5-00401C608501}
MenuText = Sun Java Console : C:\WINDOWS\System32\msjava.dll
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{4982D40A-C53B-4615-B15B-B5B5E98D167C}
ButtonText = AOL Toolbar :
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897}
ButtonText = Yahoo! Services :
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{9E248641-0E24-4DDB-9A1F-705087832AD6}
MenuText = Java :
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{CD67F990-D8E9-11d2-98FE-00C0F0318AFE}
ButtonText = Real.com :
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\{FB5F1910-F110-11d2-BB9E-00C04F795683}
ButtonText = Messenger : C:\Program Files\Messenger\MSMSGS.EXE

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars]
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{32683183-48a0-441b-a342-7c2a440a9478}
Media Band = %SystemRoot%\System32\browseui.dll
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Explorer Bars\{4528BBE0-4E08-11D5-AD55-00010333D0AD}
&Yahoo! Messenger = C:\PROGRA~1\Yahoo!\Common\yhexbmesus.dll

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar]
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ShellBrowser
HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\WebBrowser
{01E04581-4EEE-11D0-BFE9-00AA005B4383} = &Address : %SystemRoot%\System32\browseui.dll
{4D5C8C2A-D075-11D0-B416-00C04FB90376} = Microsoft CommBand : %SystemRoot%\System32\browseui.dll
{BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} = :
{EF99BD32-C1FB-11D2-892F-0090271D4F88} = Yahoo! Toolbar : C:\Program Files\Yahoo!\companion\Installs\cpn4\yt.dll
{0E5CBF21-D15F-11D0-8301-00AA005B4383} = &Links : %SystemRoot%\system32\SHELL32.dll
{42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} = :
{4982D40A-C53B-4615-B15B-B5B5E98D167C} = AOL Toolbar : C:\Program Files\AOL Toolbar\toolbar.dll
{A8FB8EB3-183B-4598-924D-86F0E5E37085} = PeoplePal Toolbar : c:\program files\peoplepc\toolbar\PPCToolbar.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
AOLDialer C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
HostManager C:\Program Files\Common Files\AOL\1126474378\ee\AOLHostManager.exe
RealTray C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
Pure Networks Port Magic "C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe" -Run
MCAgentExe c:\PROGRA~1\mcafee.com\agent\mcagent.exe
MCUpdateExe C:\PROGRA~1\mcafee.com\agent\mcupdate.exe
Bart Station C:\Program Files\PeoplePC\ISP6230\BIN\PPCOLink.exe -STATION
CaAvTray "C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\CAVTray.exe"
CAVRID "C:\Program Files\CA\eTrust EZ Armor\eTrust EZ Antivirus\CAVRID.exe"
Zone Labs Client C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
WT GameChannel C:\Program Files\WildTangent\Apps\GameChannel.exe
winsync C:\WINDOWS\System32\undztp.exe reg_run
WildTangent CDA RUNDLL32.exe "C:\Program Files\WildTangent\Apps\CDA\cdaEngine0400.dll",cdaEngineMain
VSOCheckTask "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
VirusScan Online C:\Program Files\McAfee.com\VSO\mcvsshld.exe
TkBellExe "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
Symantec NetDriver Monitor C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
SunJavaUpdateSched C:\Program Files\Java\j2re1.4.2_05\bin\jusched.exe
StorageGuard "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
SpySweeper "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
satmat C:\WINDOWS\satmat.exe
Recguard C:\WINDOWS\SMINST\RECGUARD.EXE
QuickFinder Scheduler "C:\Program Files\Corel\WordPerfect Office 2002\Programs\QFSCHD100.EXE"
PS2 C:\WINDOWS\system32\ps2.exe
OASClnt C:\Program Files\McAfee.com\VSO\oasclnt.exe
NeroFilterCheck C:\WINDOWS\system32\NeroCheck.exe
kcxnswp C:\WINDOWS\System32\cpoepnkf.exe
KBD C:\HP\KBD\KBD.EXE
hpsysdrv c:\windows\system\hpsysdrv.exe
HotKeysCmds C:\WINDOWS\System32\hkcmd.exe
dzkdqzsdd C:\WINDOWS\System32\cpoepnkf.exe
AlcxMonitor ALCXMNTR.EXE
Ad Muncher C:\Documents and Settings\Brandi.YOUR-SZ6X6SEFXO.000\AdMunch.exe /bt

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\OptionalComponents]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnceEx]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
MSMSGS "C:\Program Files\Messenger\msmsgs.exe" /background
Yahoo! Pager "C:\Program Files\Yahoo!\Messenger\ypager.exe" -quiet
Spyware Doctor "C:\Program Files\Spyware Doctor\swdoctor.exe" /Q
AOLCC "C:\PROGRA~1\AOLCOM~1\ACCAgnt.exe" /startup
AOL Fast Start "C:\Program Files\America Online 9.0\AOL.EXE" -b
Weather C:\Program Files\AWS\WeatherBug\Weather.exe 1
MyWebSearch Email Plugin C:\PROGRA~1\MYWEBS~1\bar\1.bin\mwsoemon.exe
MsnMsgr "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
MoneyAgent "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
AIM C:\PROGRA~1\AIM\aim.exe -cnetwait.odl

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunOnce]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServices]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\RunServicesOnce]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\load]

[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\run]

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig]

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\services

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupfolder

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\startupreg

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Shared Tools\MSConfig\state
system.ini 0
win.ini 0
bootini 0
services 0
startup 0


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies]

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum
{BDEADF00-C265-11D0-BCED-00A0C90AB50F} = C:\PROGRA~1\COMMON~1\MICROS~1\WEBFOL~1\MSONSEXT.DLL
{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} =
{0DF44EAA-FF21-4412-828E-260A8728E7F1} =


HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Ratings

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system
dontdisplaylastusername 0
legalnoticecaption
legalnoticetext
shutdownwithoutlogon 1
undockwithoutlogon 1


[HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies]

HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer
NoDriveTypeAutoRun 145


[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\ShellServiceObjectDelayLoad]
PostBootReminder {7849596a-48ea-486e-8937-a2a3009f31a9} = %SystemRoot%\system32\SHELL32.dll
CDBurn {fbeb8a05-beee-4442-804e-409d6c4515e9} = %SystemRoot%\system32\SHELL32.dll
WebCheck {E6FB5E20-DE35-11CF-9C87-00AA005127ED} = %SystemRoot%\System32\webcheck.dll
SysTray {35CEC8A3-2BE6-11D2-8773-92E220524153} = C:\WINDOWS\System32\stobject.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
UserInit = C:\WINDOWS\system32\userinit.exe,
Shell = Explorer.exe
System =

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\crypt32chain
= crypt32.dll

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cryptnet
= cryptnet.dll

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\cscdll
= cscdll.dll

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\igfxcui
= igfxsrvc.dll

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\OPXPGina
= C:\Program Files\Softex\OmniPass\opxpgina.dll

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ScCertProp
= wlnotify.dll

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Schedule
= wlnotify.dll

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\sclgntfy
= sclgntfy.dll

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\SensLogn
= WlNotify.dll

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\Shell Extensions
= C:\WINDOWS\system32\rqbdyctl.dll

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\termsrv
= wlnotify.dll

HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\wlballoon
= wlnotify.dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options]
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Image File Execution Options\Your Image File Name Here without a path
Debugger = ntsd -d

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
AppInit_DLLs


Scan Complete
WinPFind v1.4.1 - Log file written to "WinPFind.Txt" in the WinPFind folder.
Scan completed on 10/8/2005 7:55:47 PM

#14 Guest_Cretemonster_*

Guest_Cretemonster_*

  • Guests
  • OFFLINE
  •  

Posted 23 October 2005 - 01:05 PM

I was afraid of this!

Look2me is still Alive and Kicking!

Download a fresh Copy of the Look2me fix to a floppy disc

Update SpySweeper and Scan the PC!

Before starting the Scan,On the left hand side of SpySweeper,Click Options

Now Click Sweep Options

Put a check by the 2 boxes at the bottom of the list!

Sweep for Rootkits and Sweep Compressed Folders

Let SpySweeper clean all it finds and then reboot into Safe Mode

When you get to thr Log On screen in Safe Mode,Log in under the Aaministrator Account

Install the l2mfix and run Options 1,4,2 (In that exact order)

Restart Normal and Post back with a fresh HijackThis log!

#15 shortsexychica

shortsexychica
  • Topic Starter

  • Members
  • 30 posts
  • OFFLINE
  •  

Posted 23 October 2005 - 01:09 PM

Great instructions....one MAJOR problem..... I can NEVER log in under Administrator account cause of some password. do I need to get in under there? if so, how do I?




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users