Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Poor Gaming Performance


  • Please log in to reply
11 replies to this topic

#1 unoplank

unoplank

  • Members
  • 10 posts
  • OFFLINE
  •  
  • Local time:06:49 AM

Posted 15 May 2006 - 10:38 AM

Hello all,

Recently I purchased Everquest 2 for my laptop, according to my system specs I should be running the game well, if not above average. Well, after a few weeks of poor performance and ample driver troubleshooting I finally decided to do some research on the net and see if others were having the same problem. I came across websites saying that Dell computers come with pre-packaged very hard to remove spyware and sure enough I found some in my add/remove programs that I am unable to remove, etc.

I want to get this comp running like it should without having to do a fresh XP install. I purchased it in June and silly me decided that Dell was trustworthy (not!), so I didn't mess with anything.

Here is the Hijack This log. Thanks in advance.

Logfile of HijackThis v1.99.1
Scan saved at 11:32:11 AM, on 5/15/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Norton Internet Security\ISSVC.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Creative\Sound Blaster Audigy 2\DVDAudio\CTDVDDET.EXE
C:\Program Files\Creative\Sound Blaster Audigy 2\Surround Mixer\CTSysVol.exe
C:\Program Files\Creative\Sound Blaster Audigy 2\SB Performance Utility\CTPowUti.exe
C:\WINDOWS\CTHELPER.EXE
C:\Program Files\Microsoft Hardware\Mouse\point32.exe
C:\Program Files\Winamp\winampa.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
C:\WINDOWS\system32\ctfmon.exe
C:\FRAPS\FRAPS.EXE
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Adobe\Acrobat 6.0\Reader\AcroRd32.exe
C:\WINDOWS\system32\WISPTIS.EXE
C:\WINDOWS\Microsoft.NET\Framework\v2.0.50727\mscorsvw.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell4me.com/myway
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://v4.windowsupdate.microsoft.com/
R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\1.bin\deSrcAs.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Nothing - {b0398eca-0bcd-4645-8261-5e9dc70248d0} - C:\WINDOWS\system32\hp1BCD.tmp (file missing)
O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll (file missing)
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [CTDVDDET] "C:\Program Files\Creative\Sound Blaster Audigy 2\DVDAudio\CTDVDDET.EXE"
O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\Sound Blaster Audigy 2\Surround Mixer\CTSysVol.exe /r
O4 - HKLM\..\Run: [CTPerformanceUtility] C:\Program Files\Creative\Sound Blaster Audigy 2\SB Performance Utility\CTPowUti.exe
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [POINTER] point32.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Creative Detector] C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe /R
O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Fraps] C:\FRAPS\FRAPS.EXE
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: IntelWireless - C:\Program Files\Intel\Wireless\Bin\LgNotify.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Program Files\Norton Internet Security\ISSVC.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe

BC AdBot (Login to Remove)

 


#2 unoplank

unoplank
  • Topic Starter

  • Members
  • 10 posts
  • OFFLINE
  •  
  • Local time:06:49 AM

Posted 15 May 2006 - 08:21 PM

Oh, before I took this log I un-installed a lot of spyware from add/remove programs. I still am unable to completely get rid of My Way search assistant though...such a lame program. Please help, thanks :thumbsup:

#3 jurgenv

jurgenv

  • Members
  • 1,093 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Belgium
  • Local time:12:49 PM

Posted 21 May 2006 - 06:07 AM

Please download SmitfraudFix (by S!Ri)
Extract the content (a folder named SmitfraudFix) to your Desktop.

Open the SmitfraudFix folder and double-click smitfraudfix.cmd
Select option #1 - Search by typing 1 and press "Enter"; a text file will appear, which lists infected files (if present).
Please copy/paste the content of that report into your next reply.

Note : process.exe is detected by some antivirus programs (AntiVir, Dr.Web, Kaspersky) as a "RiskTool"; it is not a virus, but a program used to stop system processes. Antivirus programs cannot distinguish between "good" and "malicious" use of such programs, therefore they may alert the user.
http://www.beyondlogic.org/consulting/proc...processutil.htm
Greets Jürgenv

Donation: Click me.

#4 unoplank

unoplank
  • Topic Starter

  • Members
  • 10 posts
  • OFFLINE
  •  
  • Local time:06:49 AM

Posted 21 May 2006 - 06:33 PM

Here it is jurgenv:

SmitFraudFix v2.45

Scan done at 19:30:31.79, Sun 05/21/2006
Run from C:\Documents and Settings\RJ\My Documents\smitfraud\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600]

»»»»»»»»»»»»»»»»»»»»»»»» C:\


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32

C:\WINDOWS\system32\atmclk.exe FOUND !
C:\WINDOWS\system32\dcomcfg.exe FOUND !
C:\WINDOWS\system32\regperf.exe FOUND !
C:\WINDOWS\system32\simpole.tlb FOUND !
C:\WINDOWS\system32\stdole3.tlb FOUND !

»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\RJ\Application Data


»»»»»»»»»»»»»»»»»»»»»»»» Start Menu


»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\RJ\FAVORI~1


»»»»»»»»»»»»»»»»»»»»»»»» Desktop


»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files


»»»»»»»»»»»»»»»»»»»»»»»» Corrupted keys


»»»»»»»»»»»»»»»»»»»»»»»» Desktop Components

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"


»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll

»»»»»»»»»»»»»»»»»»»»»»»» Scanning wininet.dll infection


»»»»»»»»»»»»»»»»»»»»»»»» End


And thanks for your help :thumbsup:

#5 jurgenv

jurgenv

  • Members
  • 1,093 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Belgium
  • Local time:12:49 PM

Posted 22 May 2006 - 09:42 AM

You should print out these instructions, or copy them to a NotePad file for reading while in Safe Mode, because you will not be able to connect to the Internet to read from this site.

Next, please reboot your computer in Safe Mode by doing the following :
  • Restart your computer
  • After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually;
  • Instead of Windows loading as normal, a menu with options should appear;
  • Select the first option, to run Windows in Safe Mode, then press "Enter".
  • Choose your usual account.
Once in Safe Mode, open the SmitfraudFix folder again and double-click smitfraudfix.cmd
Select option #2 - Clean by typing 2 and press "Enter" to delete infected files.

You will be prompted : "Registry cleaning - Do you want to clean the registry ?"; answer "Yes" by typing Y and press "Enter" in order to remove the Desktop background and clean registry keys associated with the infection.

The tool will now check if wininet.dll is infected. You may be prompted to replace the infected file (if found); answer "Yes" by typing Y and press "Enter".

The tool may need to restart your computer to finish the cleaning process; if it doesn't, please restart it into Normal Windows.
A text file will appear onscreen, with results from the cleaning process; please copy/paste the content of that report into your next reply with a new hijackthis log
The report can also be found at the root of the system drive, usually at C:\rapport.txt

Warning : running option #2 on a non infected computer will remove your Desktop background.
Greets Jürgenv

Donation: Click me.

#6 unoplank

unoplank
  • Topic Starter

  • Members
  • 10 posts
  • OFFLINE
  •  
  • Local time:06:49 AM

Posted 22 May 2006 - 07:17 PM

SmitFraudFix v2.45

Scan done at 20:07:09.21, Mon 05/22/2006
Run from C:\Documents and Settings\RJ\My Documents\smitfraud\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600]

»»»»»»»»»»»»»»»»»»»»»»»» Killing process


»»»»»»»»»»»»»»»»»»»»»»»» Deleting infected files

C:\WINDOWS\system32\atmclk.exe Deleted
C:\WINDOWS\system32\dcomcfg.exe Deleted
C:\WINDOWS\system32\regperf.exe Deleted
C:\WINDOWS\system32\simpole.tlb Deleted
C:\WINDOWS\system32\stdole3.tlb Deleted

»»»»»»»»»»»»»»»»»»»»»»»» Deleting Temp Files


»»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning

Registry Cleaning done.

»»»»»»»»»»»»»»»»»»»»»»»» End

Logfile of HijackThis v1.99.1
Scan saved at 8:15:07 PM, on 5/22/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Creative\Sound Blaster Audigy 2\DVDAudio\CTDVDDET.EXE
C:\Program Files\Creative\Sound Blaster Audigy 2\Surround Mixer\CTSysVol.exe
C:\Program Files\Creative\Sound Blaster Audigy 2\SB Performance Utility\CTPowUti.exe
C:\WINDOWS\CTHELPER.EXE
C:\Program Files\Microsoft Hardware\Mouse\point32.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
C:\WINDOWS\system32\ctfmon.exe
C:\FRAPS\FRAPS.EXE
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\HijackThis\HijackThis.exe
C:\WINDOWS\system32\verclsid.exe

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://v4.windowsupdate.microsoft.com/
R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\1.bin\deSrcAs.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [CTDVDDET] "C:\Program Files\Creative\Sound Blaster Audigy 2\DVDAudio\CTDVDDET.EXE"
O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\Sound Blaster Audigy 2\Surround Mixer\CTSysVol.exe /r
O4 - HKLM\..\Run: [CTPerformanceUtility] C:\Program Files\Creative\Sound Blaster Audigy 2\SB Performance Utility\CTPowUti.exe
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [POINTER] point32.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [NVHotkey] rundll32.exe nvHotkey.dll,Start
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Creative Detector] C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe /R
O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Fraps] C:\FRAPS\FRAPS.EXE
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O16 - DPF: {BE833F39-1E0C-468C-BA70-25AAEE55775E} -
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: IntelWireless - C:\Program Files\Intel\Wireless\Bin\LgNotify.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe

here it is. thanks jurgenv.

#7 jurgenv

jurgenv

  • Members
  • 1,093 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Belgium
  • Local time:12:49 PM

Posted 23 May 2006 - 10:27 AM

* Please download, install, and update the free version of Ewido Security Suite:
  • When installing, under "Additional Options" uncheck "Install background guard" and "Install scan via context menu".
  • When you run Ewido for the first time, you will get a warning "Database could not be found!". Click OK. We will fix this in a moment.
  • From the main Ewido screen, click on update in the left menu, then click the Start update button.
  • After the update finishes, the status bar at the bottom will display "Update successful"
  • Exit Ewido. DO NOT run a scan yet.
* If you do not already have Ad-Aware SE 1.06 installed, follow these download and setup instructions. Also check for updates:
Ad-Aware SE Setup
Again, do NOT run a scan yet.


* Next, please reboot your computer in Safe Mode by doing the following:
  • Restart your computer
  • After hearing your computer beep once during startup, but before the Windows icon appears, press F8.
  • Instead of Windows loading as normal, a menu should appear
  • Select the first option, to run Windows in Safe Mode.
* open hijackthis and put a check next to the following:
===================================================
R3 - URLSearchHook: (no name) - {4D25F926-B9FE-4682-BF72-8AB8210D6D75} - C:\Program Files\MyWaySA\SrchAsDe\1.bin\deSrcAs.dll (file missing)
===================================================
* After you check the items, close all browsers and windows, except for HijackThis, then click on the Fix Checked button on HijackThis

* Next, run Ad-aware and perform a full scan. Remove everything found.

* Now open Ewido Security Suite
  • Click on Scanner
  • Click on Complete System Scan and the scan will begin.
  • NOTE: During some scans with ewido it is finding cases of false positives. You will need to step through the process of cleaning files one-by-one. If ewido detects a file you KNOW to be legitimate, select none as the action.
  • DO NOT select "Perform action on all infections"
  • When the scan is finished, click the Save report button at the bottom of the screen.
  • Save the report to your desktop
  • Close Ewido
* boot back into normal mode

* Please download ATF Cleaner by Atribune.
This program is for XP and Windows 2000 onlyDouble-click ATF-Cleaner.exe to run the program.
Under Main choose: Select All
Click the Empty Selected button.
If you use Firefox browserClick Firefox at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click No at the prompt.
If you use Opera browserClick Opera at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click No at the prompt.
Click Exit on the Main menu to close the program.
For Technical Support, double-click the e-mail address located at the bottom of each menu.

* Now, post a new hijackthis log here withthe report from ewido
Greets Jürgenv

Donation: Click me.

#8 unoplank

unoplank
  • Topic Starter

  • Members
  • 10 posts
  • OFFLINE
  •  
  • Local time:06:49 AM

Posted 23 May 2006 - 01:12 PM

Logfile of HijackThis v1.99.1
Scan saved at 2:09:45 PM, on 5/23/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\Program Files\Creative\Sound Blaster Audigy 2\DVDAudio\CTDVDDET.EXE
C:\Program Files\Creative\Sound Blaster Audigy 2\Surround Mixer\CTSysVol.exe
C:\Program Files\Creative\Sound Blaster Audigy 2\SB Performance Utility\CTPowUti.exe
C:\WINDOWS\CTHELPER.EXE
C:\Program Files\Microsoft Hardware\Mouse\point32.exe
C:\WINDOWS\system32\CTsvcCDA.EXE
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe
C:\WINDOWS\system32\ctfmon.exe
C:\FRAPS\FRAPS.EXE
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://v4.windowsupdate.microsoft.com/
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O4 - HKLM\..\Run: [Apoint] C:\Program Files\Apoint\Apoint.exe
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [CTDVDDET] "C:\Program Files\Creative\Sound Blaster Audigy 2\DVDAudio\CTDVDDET.EXE"
O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\Sound Blaster Audigy 2\Surround Mixer\CTSysVol.exe /r
O4 - HKLM\..\Run: [CTPerformanceUtility] C:\Program Files\Creative\Sound Blaster Audigy 2\SB Performance Utility\CTPowUti.exe
O4 - HKLM\..\Run: [CTHelper] CTHELPER.EXE
O4 - HKLM\..\Run: [POINTER] point32.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [NVHotkey] rundll32.exe nvHotkey.dll,Start
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [Creative Detector] C:\Program Files\Creative\MediaSource\Detector\CTDetect.exe /R
O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Fraps] C:\FRAPS\FRAPS.EXE
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - Global Startup: Digital Line Detect.lnk = C:\Program Files\Digital Line Detect\DLG.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O16 - DPF: {BE833F39-1E0C-468C-BA70-25AAEE55775E} -
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: IntelWireless - C:\Program Files\Intel\Wireless\Bin\LgNotify.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd.exe" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe

---------------------------------------------------------
ewido anti-malware - Scan report
---------------------------------------------------------

+ Created on: 2:04:46 PM, 5/23/2006
+ Report-Checksum: F131B000

+ Scan result:

:mozilla.39:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.45:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.46:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.49:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.57:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
:mozilla.58:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.79:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.80:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.81:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.82:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.83:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.84:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.85:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.86:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.87:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.88:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.89:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.90:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.91:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.92:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.93:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.94:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.95:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.96:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.97:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.98:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.99:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.100:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.101:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.102:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.103:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.116:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup
:mozilla.134:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.135:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.136:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.137:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.138:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.143:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned with backup
:mozilla.145:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.146:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.147:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.148:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.149:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.152:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Overture : Cleaned with backup
:mozilla.153:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Overture : Cleaned with backup
:mozilla.154:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup
:mozilla.155:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup
:mozilla.157:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup
:mozilla.159:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.160:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.161:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.162:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.163:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.164:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.165:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.166:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.167:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.204:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned with backup
:mozilla.205:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned with backup
:mozilla.206:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned with backup
:mozilla.207:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned with backup
:mozilla.212:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.213:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.214:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.215:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.216:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.217:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.218:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.219:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.220:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.235:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.237:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.239:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.240:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.241:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.242:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.243:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.244:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.245:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.246:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.247:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.248:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup
:mozilla.249:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup
:mozilla.252:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.253:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.254:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.255:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.256:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.257:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.258:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.268:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup
:mozilla.269:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup
:mozilla.272:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Addynamix : Cleaned with backup
:mozilla.274:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
:mozilla.275:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
:mozilla.276:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
:mozilla.277:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
:mozilla.279:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
:mozilla.280:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
:mozilla.281:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
:mozilla.315:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.316:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.317:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.318:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.319:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.320:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned with backup
:mozilla.341:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.343:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.344:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.347:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.348:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.349:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.388:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned with backup
:mozilla.398:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
:mozilla.399:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
:mozilla.400:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
:mozilla.401:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
:mozilla.402:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
:mozilla.414:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
:mozilla.415:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned with backup
:mozilla.416:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
:mozilla.417:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
:mozilla.419:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup
:mozilla.470:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned with backup
:mozilla.474:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Myaffiliateprogram : Cleaned with backup
:mozilla.497:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned with backup
:mozilla.498:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned with backup
:mozilla.507:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned with backup
:mozilla.508:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned with backup
:mozilla.513:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
:mozilla.514:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
:mozilla.534:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
:mozilla.536:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Centrport : Cleaned with backup
:mozilla.550:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup
:mozilla.551:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup
:mozilla.563:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned with backup
:mozilla.572:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.620:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Kmpads : Cleaned with backup
:mozilla.621:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Kmpads : Cleaned with backup
:mozilla.634:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.638:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.639:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.654:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.663:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.671:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Overture : Cleaned with backup
:mozilla.679:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Valuead : Cleaned with backup
:mozilla.680:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Valuead : Cleaned with backup
:mozilla.681:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Valuead : Cleaned with backup
:mozilla.682:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Valuead : Cleaned with backup
:mozilla.683:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Valuead : Cleaned with backup
:mozilla.692:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Revenue : Cleaned with backup
:mozilla.700:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
:mozilla.701:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
:mozilla.702:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
:mozilla.703:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
:mozilla.718:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.719:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.720:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.721:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.722:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.723:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.724:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup
:mozilla.758:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned with backup
:mozilla.759:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned with backup
:mozilla.798:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.829:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.830:C:\Documents and Settings\RJ\Application Data\Mozilla\Firefox\Profiles\1ua0tqkz.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
C:\Documents and Settings\RJ\Cookies\rj@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\RJ\Cookies\rj@adopt.euroclick[1].txt -> TrackingCookie.Euroclick : Cleaned with backup
C:\Documents and Settings\RJ\Cookies\rj@adopt.specificclick[2].txt -> TrackingCookie.Specificclick : Cleaned with backup
C:\Documents and Settings\RJ\Cookies\rj@as.casalemedia[1].txt -> TrackingCookie.Casalemedia : Cleaned with backup
C:\Documents and Settings\RJ\Cookies\rj@burstnet[2].txt -> TrackingCookie.Burstnet : Cleaned with backup
C:\Documents and Settings\RJ\Cookies\rj@cnn.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\RJ\Cookies\rj@com[2].txt -> TrackingCookie.Com : Cleaned with backup
C:\Documents and Settings\RJ\Cookies\rj@cpvfeed[1].txt -> TrackingCookie.Cpvfeed : Cleaned with backup
C:\Documents and Settings\RJ\Cookies\rj@cz7.clickzs[2].txt -> TrackingCookie.Clickzs : Cleaned with backup
C:\Documents and Settings\RJ\Cookies\rj@microsofteup.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\RJ\Cookies\rj@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\RJ\Cookies\rj@pay4klick[1].txt -> TrackingCookie.Pay4klick : Cleaned with backup
C:\Documents and Settings\RJ\Cookies\rj@rotator.adjuggler[2].txt -> TrackingCookie.Adjuggler : Cleaned with backup
C:\Documents and Settings\RJ\Cookies\rj@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Cleaned with backup
C:\Documents and Settings\RJ\Cookies\rj@tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned with backup
C:\Documents and Settings\RJ\Cookies\rj@tgn.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\RJ\Cookies\rj@www.burstbeacon[1].txt -> TrackingCookie.Burstbeacon : Cleaned with backup
C:\Documents and Settings\RJ\Cookies\rj@yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned with backup


::Report End

#9 jurgenv

jurgenv

  • Members
  • 1,093 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Belgium
  • Local time:12:49 PM

Posted 23 May 2006 - 01:17 PM

Looking good, how is everything working? :thumbsup:
Greets Jürgenv

Donation: Click me.

#10 unoplank

unoplank
  • Topic Starter

  • Members
  • 10 posts
  • OFFLINE
  •  
  • Local time:06:49 AM

Posted 23 May 2006 - 01:20 PM

It's working a lot better now. I can't thank you enough. I just hope that I can keep it spyware/malware free from now on (even though this came pre-packaged lol).

See you next infection. :thumbsup:

#11 jurgenv

jurgenv

  • Members
  • 1,093 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Belgium
  • Local time:12:49 PM

Posted 23 May 2006 - 01:22 PM

Below I have included a number of recommendations for how to protect your computer in order to prevent future malware infections. Please take these recommendations seriously; these few simple steps can stave off the vast majority of spyware problems. As happy as we at SWI are to help you, for your sake we would rather not have repeat customers. :thumbsup:

1) Please navigate to http://windowsupdate.microsoft.com and download all the "critical updates" for Windows. This can patch many of the security holes through which attackers can gain access to your computer.

Please either enable Automatic Updates under Start -> Control Panel -> Automatic Updates , or get into the habit of checking for Windows updates regularly. I cannot stress enough how important this is.

2) In order to protect yourself against spyware, you should consider installing and running the following free programs:

Ad-Aware SE
A tutorial on using Ad-Aware to remove spyware from your computer may be found here.

Spybot-Search & Destroy
A tutorial on using Spybot to remove spyware from your computer may be found here. Please also remember to enable Spybot's "Immunize" and "TeaTimer" features.

SpywareBlaster
A tutorial on using SpywareBlaster to prevent spyware from ever installing on your computer may be found here.

SpywareGuard
A tutorial on using SpywareGuard for realtime protection against spyware and hijackers may be found here.

Make sure to keep these programs up-to-date and to run them regularly, as this can prevent a great deal of spyware hassle.

3) Please consider using an alternate browser. Mozilla's Firefox browser is fantastic; it is much more secure than Internet Explorer, immune to almost all known browser hijackers, and also has the best built-in popup blocker (as an added benefit!) that I have ever seen. If you are interested, Firefox may be downloaded from here:
http://www.mozilla.org/products/firefox/

4)I notice that you do not seem to be running antivirus software. This is somewhat suicidal in today's digital world. AVG makes an excellent free antivirus client, as do AntiVir or avast!.

Please make sure to run your antivirus software regularly, and to keep it up-to-date.

5) Finally, consider maintaining a firewall. Some good free firewalls are ZoneAlarm, Kerio, or
Outpost
A tutorial on understanding and using firewalls may be found here.

Please also read Tony Klein's excellent article: How I got Infected in the First Place

Hopefully this should take care of your problems! Good luck. :D

Edited by jurgenv, 23 May 2006 - 01:23 PM.

Greets Jürgenv

Donation: Click me.

#12 unoplank

unoplank
  • Topic Starter

  • Members
  • 10 posts
  • OFFLINE
  •  
  • Local time:06:49 AM

Posted 23 May 2006 - 01:41 PM

Thanks again jurgen. I usually do run anti-virus but had uninstalled it to see if it was possibly hogging resources and making performance suffer. I will re-install it today and see if it runs ok now that spyware has been removed.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users