Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Hjt Log Please Help!


  • Please log in to reply
6 replies to this topic

#1 JosephM

JosephM

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:03:23 PM

Posted 15 August 2006 - 05:04 PM

just did a scan and wondering wuts wrong with it thnx.


Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\ObjectDock.exe
C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\system32\devldr32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\SwiftSwitch\SwiftSwitch.exe
C:\Program Files\Grisoft\AVG Free\avgcc.exe
C:\Program Files\Grisoft\AVG Free\avgwb.dat
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Documents and Settings\Matt\Desktop\HijackThis.exe

O1 - Hosts: 70.84.242.241 L2authd.lineage2.com
O2 - BHO: IE 4.x-6.x BHO for Internet Download Accelerator - {2A646672-9C3A-4C28-9A7A-1FB0F63F28B6} - C:\PROGRA~1\IDA\idaiehlp.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [KumaSysTray] \KumaSysTray\Kumawar_tray.exe
O4 - HKLM\..\Run: [AGEIA PhysX SysTray] C:\Program Files\AGEIA Technologies\TrayIcon.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [TXP] c:\program files\topthemesxp\txp.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe"
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Internet Download Accelerator] C:\Program Files\IDA\ida.exe -autorun
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Startup: Stardock ObjectDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\ObjectDock.exe
O4 - Startup: Y'z ToolBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.exe
O8 - Extra context menu item: Download ALL with IDA - C:\Program Files\IDA\idaieall.htm
O8 - Extra context menu item: Download with IDA - C:\Program Files\IDA\idaie.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra button: Internet Download Accelerator - {9819CC0E-9669-4D01-9CD7-2C66DA43AC6C} - C:\Program Files\IDA\ida.exe
O9 - Extra 'Tools' menuitem: &Internet Download Accelerator - {9819CC0E-9669-4D01-9CD7-2C66DA43AC6C} - C:\Program Files\IDA\ida.exe
O9 - Extra button: AOL Instant Messenger ™ - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab
O16 - DPF: {48884C41-EFAC-433D-958A-9FADAC41408E} (EGamesPlugin Class) - https://www.e-games.com.my/com/EGamesPlugin.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1149258258437
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: winopn32 - winopn32.dll (file missing)
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: MD Simple Burner Service (NetMDSB) - Sony Corporation - C:\Program Files\Sony\MD Simple Burner\NetMDSB.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\Pacsptisvr.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\Sptisrv.exe

BC AdBot (Login to Remove)

 


#2 JosephM

JosephM
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:03:23 PM

Posted 16 August 2006 - 09:46 PM

can someone help plz?

#3 OldTimer

OldTimer

    Malware Expert


  • Members
  • 11,092 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:North Carolina
  • Local time:03:23 PM

Posted 19 August 2006 - 08:41 AM

Hello JosephM and welcome to the BC HijackThis forum. The HijackThis log is incomplete so let's run a new one.

We need a complete HijackThis (HJT) log file to be able to analyze what is happening on your computer.

Boot normally, start HijackThis and click the Do a system scan and save a log button to perform a scan and create a log file. When the scan is complete, Notepad will open up with the log file in it. While in Notepad, press Ctrl-A to select all text and then Ctrl-C to copy the text to the clipboard.

POST the log in this thread using the Add Reply button. Click in the data-entry window and press Ctrl-V to paste the log into the window. Add any other comments which you believe might be helpful in our analysis. and click the Add Reply button.

I will review your log when it comes in. Inlude any information regarding any specific issues you are currently encountering to help with the analysis.


DO NOT MAKE ANY CHANGES OR CLICK "FIX CHECKED" UNTIL I CHECK THE LOG, AS SOME OF THE FILES ARE LEGIT AND VITAL TO THE FUNCTION OF YOUR COMPUTER

OT
I do not respond to PM's requesting help. That's what the forums are here for. Please use them so that others may benefit from your questions and the responses you receive.
OldTimer

Posted Image

#4 JosephM

JosephM
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:03:23 PM

Posted 19 August 2006 - 10:36 PM

Logfile of HijackThis v1.99.1
Scan saved at 11:50:36 PM, on 8/19/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\ObjectDock.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\system32\devldr32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Grisoft\AVG Free\avgcc.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\Program Files\Winamp\Winamp.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\WINDOWS\system32\drwtsn32.exe
C:\WINDOWS\explorer.exe
C:\Program Files\MSN Messenger\msnmsgr.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Hamachi\hamachi.exe
C:\Documents and Settings\Matt\Desktop\HijackThis.exe

O1 - Hosts: 70.84.242.241 L2authd.lineage2.com
O2 - BHO: IE 4.x-6.x BHO for Internet Download Accelerator - {2A646672-9C3A-4C28-9A7A-1FB0F63F28B6} - C:\PROGRA~1\IDA\idaiehlp.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [KumaSysTray] \KumaSysTray\Kumawar_tray.exe
O4 - HKLM\..\Run: [AGEIA PhysX SysTray] C:\Program Files\AGEIA Technologies\TrayIcon.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [TXP] c:\program files\topthemesxp\txp.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe"
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Internet Download Accelerator] C:\Program Files\IDA\ida.exe -autorun
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Startup: Stardock ObjectDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\ObjectDock.exe
O4 - Startup: Y'z ToolBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.exe
O8 - Extra context menu item: Download ALL with IDA - C:\Program Files\IDA\idaieall.htm
O8 - Extra context menu item: Download with IDA - C:\Program Files\IDA\idaie.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra button: Internet Download Accelerator - {9819CC0E-9669-4D01-9CD7-2C66DA43AC6C} - C:\Program Files\IDA\ida.exe
O9 - Extra 'Tools' menuitem: &Internet Download Accelerator - {9819CC0E-9669-4D01-9CD7-2C66DA43AC6C} - C:\Program Files\IDA\ida.exe
O9 - Extra button: AOL Instant Messenger ™ - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab
O16 - DPF: {48884C41-EFAC-433D-958A-9FADAC41408E} (EGamesPlugin Class) - https://www.e-games.com.my/com/EGamesPlugin.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1149258258437
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: winopn32 - winopn32.dll (file missing)
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: MD Simple Burner Service (NetMDSB) - Sony Corporation - C:\Program Files\Sony\MD Simple Burner\NetMDSB.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\Pacsptisvr.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\Sptisrv.exe

#5 OldTimer

OldTimer

    Malware Expert


  • Members
  • 11,092 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:North Carolina
  • Local time:03:23 PM

Posted 20 August 2006 - 02:16 PM

Hi JosephM. It looks like we have a couple of things in there. Please print these directions and then proceed with the following steps in order.

Step #1

Download SmitfraudFix S!Ri

Extract the contents (a folder named SmitfraudFix) to your Desktop (do not run anything yet).

Download ewido anti-spyware from HERE and save that file to your desktop.
  • Once you have downloaded ewido anti-spyware, locate the icon on the desktop and double-click it to launch the set up program.
  • Once the setup is complete you will need to run ewido and update the definition files.
  • On the main screen select the icon "Update" then select the "Update now" link.
    • Next select the "Start Update" button, the update will start and a progress bar will show the updates being installed.
  • Once the update has completed select the "Scanner" icon at the top of the screen, then select the "Settings" tab.
  • Once in the Settings screen click on "Recommended actions" and then select "Quarantine".
  • Under "Reports"
    • Select "Automatically generate report after every scan"
    • Un-Select "Only if threats were found"
Close ewido anti-spyware, Do Not run a scan just yet, we will shortly.

Step #2

Start in Safe Mode Using the F8 method:
  • Restart the computer.
  • As soon as the BIOS is loaded begin tapping the F8 key until the boot menu appears.
  • Use the arrow keys to select the Safe Mode menu item (NOT Safe Mode with Networking).
  • Press the Enter key.
Step #3
  • Open the SmitfraudFix folder and double-click smitfraudfix.cmd.
  • Select option #2 - Clean by typing 2 and press Enter.
  • You will be prompted : "Registry cleaning - Do you want to clean the registry ?" answer Yes by typing Y and press Enter in order to remove the Desktop background and clean registry keys associated with the infection.
  • The tool will also check if wininet.dll is infected. If a clean version is found, you will be prompted to replace wininet.dll. Answer Yes to the question "Replace infected file ?" by typing Y and press Enter
Note : process.exe is detected by some antivirus programs (AntiVir, Dr.Web, Kaspersky) as a "RiskTool"; it is not a virus, but a program used to stop system processes. Antivirus programs cannot distinguish between "good" and "malicious" use of such programs, therefore they may alert the user.
http://www.beyondlogic.org/consulting/proc...processutil.htm

Step #4
  • Reboot your computer into SafeMode. You can do this by restarting your computer and continually tapping the F8 key until a menu appears. Use your up arrow key to highlight SafeMode then hit enter.
    IMPORTANT: Do not open any other windows or programs while ewido is scanning, it may interfere with the scanning proccess:
  • Launch ewido-anti-spyware by double-clicking the icon on your desktop.
  • Select the "Scanner" icon at the top and then the "Scan" tab then click on "Complete System Scan".
  • ewido will now begin the scanning process, be patient this may take a little time.
    Once the scan is complete do the following:
    • IMake sure that Set all elements to: shows Quarantine, if not click on the link and choose Quarantine from the popup menu.
    • At the bottom of the window click on the "Apply all actions" button
    Note: Don't save the report before you hit the Apply action button.
  • Next select the "Reports" icon at the top.
  • Select the "Save report as" button in the lower left hand of the screen and save it to a text file on your system (make sure to remember where you saved that file, this is important).
  • Close ewido and reboot your system back into Normal Mode.
Step #5

Post back the following logs:SmitFraud log
Ewido Log
New HijackThis log

I will review the information when it comes in.

Cheers.

OT
I do not respond to PM's requesting help. That's what the forums are here for. Please use them so that others may benefit from your questions and the responses you receive.
OldTimer

Posted Image

#6 JosephM

JosephM
  • Topic Starter

  • Members
  • 7 posts
  • OFFLINE
  •  
  • Local time:03:23 PM

Posted 20 August 2006 - 04:33 PM

OK um the smitfraud thing doesnt work, when i get open it up and type 2 and press enter it does a bit of writing then closes. and heres my ewido log and HJT log

Logfile of HijackThis v1.99.1
Scan saved at 5:42:06 PM, on 8/20/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\AGEIA Technologies\TrayIcon.exe
C:\Program Files\Winamp\winampa.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe
C:\Program Files\ewido anti-spyware 4.0\ewido.exe
C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\ObjectDock.exe
C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.exe
C:\WINDOWS\system32\devldr32.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Matt\Desktop\HijackThis.exe

O1 - Hosts: 70.84.242.241 L2authd.lineage2.com
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O2 - BHO: FDMIECookiesBHO Class - {CC59E0F9-7E43-44FA-9FAA-8377850BF205} - C:\Program Files\Free Download Manager\iefdmcks.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\System32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [KumaSysTray] \KumaSysTray\Kumawar_tray.exe
O4 - HKLM\..\Run: [AGEIA PhysX SysTray] C:\Program Files\AGEIA Technologies\TrayIcon.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [TXP] c:\program files\topthemesxp\txp.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_08\bin\jusched.exe"
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Internet Download Accelerator] C:\Program Files\IDA\ida.exe -autorun
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Startup: Stardock ObjectDock.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat\ObjectDock\ObjectDock.exe
O4 - Startup: Y'z ToolBar.lnk = C:\WINDOWS\BricoPacks\Vista Inspirat\YzToolbar\YzToolBar.exe
O8 - Extra context menu item: Download all with Free Download Manager - file://C:\Program Files\Free Download Manager\dlall.htm
O8 - Extra context menu item: Download selected with Free Download Manager - file://C:\Program Files\Free Download Manager\dlselected.htm
O8 - Extra context menu item: Download with Free Download Manager - file://C:\Program Files\Free Download Manager\dllink.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_08\bin\ssv.dll
O9 - Extra button: (no name) - {9819CC0E-9669-4D01-9CD7-2C66DA43AC6C} - (no file)
O9 - Extra button: AOL Instant Messenger ™ - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab
O16 - DPF: {2917297F-F02B-4B9D-81DF-494B6333150B} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineS...er.cab31267.cab
O16 - DPF: {48884C41-EFAC-433D-958A-9FADAC41408E} (EGamesPlugin Class) - https://www.e-games.com.my/com/EGamesPlugin.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1149258258437
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/Messe...nt.cab31267.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab47946.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: winopn32 - winopn32.dll (file missing)
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: MD Simple Burner Service (NetMDSB) - Sony Corporation - C:\Program Files\Sony\MD Simple Burner\NetMDSB.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\Pacsptisvr.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\Sptisrv.exe



---------------------------------------------------------
ewido anti-spyware - Scan Report
---------------------------------------------------------

+ Created at: 5:32:15 PM 8/20/2006

+ Scan result:



C:\Documents and Settings\Matt\Desktop\byemsn.exe -> Not-A-Virus.HackTool.Win32.Homac : Cleaned with backup (quarantined).
C:\Program Files\Activity Keylogger\actik.exe -> Not-A-Virus.Monitor.Win32.ActiveKeyLogger.16 : Cleaned with backup (quarantined).
C:\WINDOWS\chatlogs.dll -> Not-A-Virus.Monitor.Win32.ActiveKeyLogger.16 : Cleaned with backup (quarantined).
C:\Program Files\Activity Keylogger\hidden.dll -> Not-A-Virus.Monitor.Win32.ActiveKeyLogger.18 : Cleaned with backup (quarantined).
:mozilla.415:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned with backup (quarantined).
:mozilla.26:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined).
:mozilla.27:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined).
:mozilla.28:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined).
:mozilla.29:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined).
:mozilla.30:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined).
:mozilla.312:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined).
:mozilla.31:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined).
:mozilla.33:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined).
:mozilla.34:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined).
:mozilla.35:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined).
:mozilla.36:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined).
:mozilla.37:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined).
:mozilla.443:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined).
:mozilla.45:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined).
:mozilla.814:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined).
C:\Documents and Settings\Matt\Cookies\matt@2o7[2].txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined).
:mozilla.266:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup (quarantined).
:mozilla.268:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup (quarantined).
:mozilla.518:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup (quarantined).
:mozilla.519:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup (quarantined).
:mozilla.520:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup (quarantined).
:mozilla.63:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup (quarantined).
:mozilla.64:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup (quarantined).
:mozilla.65:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup (quarantined).
:mozilla.66:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup (quarantined).
:mozilla.67:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup (quarantined).
:mozilla.52:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Addynamix : Cleaned with backup (quarantined).
:mozilla.53:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Addynamix : Cleaned with backup (quarantined).
:mozilla.68:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned with backup (quarantined).
:mozilla.69:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned with backup (quarantined).
:mozilla.795:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adocean : Cleaned with backup (quarantined).
:mozilla.796:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adocean : Cleaned with backup (quarantined).
:mozilla.212:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup (quarantined).
:mozilla.213:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup (quarantined).
:mozilla.214:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup (quarantined).
:mozilla.215:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup (quarantined).
:mozilla.216:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup (quarantined).
:mozilla.217:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup (quarantined).
:mozilla.506:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup (quarantined).
:mozilla.507:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup (quarantined).
:mozilla.502:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined).
:mozilla.503:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined).
:mozilla.504:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined).
:mozilla.505:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined).
:mozilla.509:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined).
:mozilla.59:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup (quarantined).
C:\Documents and Settings\Matt\Cookies\matt@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned with backup (quarantined).
:mozilla.435:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Bfast : Cleaned with backup (quarantined).
:mozilla.436:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Bfast : Cleaned with backup (quarantined).
:mozilla.316:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned with backup (quarantined).
:mozilla.721:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned with backup (quarantined).
:mozilla.722:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned with backup (quarantined).
:mozilla.723:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned with backup (quarantined).
:mozilla.724:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned with backup (quarantined).
:mozilla.247:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned with backup (quarantined).
:mozilla.238:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined).
:mozilla.239:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined).
:mozilla.246:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined).
:mozilla.237:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined).
:mozilla.240:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined).
:mozilla.241:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined).
:mozilla.242:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined).
:mozilla.243:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined).
:mozilla.244:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined).
:mozilla.245:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined).
:mozilla.407:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Clickbank : Cleaned with backup (quarantined).
:mozilla.925:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Clickhype : Cleaned with backup (quarantined).
:mozilla.167:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup (quarantined).
:mozilla.168:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup (quarantined).
C:\Documents and Settings\Matt\Cookies\matt@com[1].txt -> TrackingCookie.Com : Cleaned with backup (quarantined).
:mozilla.60:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup (quarantined).
C:\Documents and Settings\Matt\Cookies\matt@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned with backup (quarantined).
:mozilla.401:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned with backup (quarantined).
:mozilla.402:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned with backup (quarantined).
:mozilla.403:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned with backup (quarantined).
:mozilla.404:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned with backup (quarantined).
:mozilla.405:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned with backup (quarantined).
C:\Documents and Settings\Matt\Cookies\matt@adopt.euroclick[1].txt -> TrackingCookie.Euroclick : Cleaned with backup (quarantined).
:mozilla.539:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined).
:mozilla.540:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined).
:mozilla.541:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined).
:mozilla.210:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup (quarantined).
:mozilla.211:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup (quarantined).
:mozilla.218:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup (quarantined).
:mozilla.219:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup (quarantined).
:mozilla.220:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup (quarantined).
:mozilla.378:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup (quarantined).
:mozilla.408:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup (quarantined).
:mozilla.731:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup (quarantined).
:mozilla.771:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup (quarantined).
:mozilla.164:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined).
:mozilla.165:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined).
:mozilla.166:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined).
:mozilla.332:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined).
:mozilla.333:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined).
:mozilla.334:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined).
:mozilla.782:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined).
:mozilla.783:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined).
:mozilla.784:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined).
C:\Documents and Settings\Matt\Cookies\matt@ehg-gamespot.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined).
C:\Documents and Settings\Matt\Cookies\matt@hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined).
:mozilla.745:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Hitslink : Cleaned with backup (quarantined).
:mozilla.746:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Hitslink : Cleaned with backup (quarantined).
:mozilla.747:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Hitslink : Cleaned with backup (quarantined).
:mozilla.748:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Hitslink : Cleaned with backup (quarantined).
:mozilla.955:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Hitslink : Cleaned with backup (quarantined).
:mozilla.641:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Hotlog : Cleaned with backup (quarantined).
:mozilla.299:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup (quarantined).
:mozilla.300:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup (quarantined).
:mozilla.301:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup (quarantined).
:mozilla.302:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup (quarantined).
:mozilla.729:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup (quarantined).
:mozilla.730:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup (quarantined).
:mozilla.170:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned with backup (quarantined).
C:\Documents and Settings\Matt\Cookies\matt@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned with backup (quarantined).
:mozilla.250:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Overture : Cleaned with backup (quarantined).
:mozilla.74:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Paycounter : Cleaned with backup (quarantined).
:mozilla.296:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Paypopup : Cleaned with backup (quarantined).
:mozilla.297:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Paypopup : Cleaned with backup (quarantined).
:mozilla.298:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Paypopup : Cleaned with backup (quarantined).
:mozilla.346:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined).
:mozilla.347:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined).
:mozilla.348:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined).
:mozilla.349:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined).
C:\Documents and Settings\Matt\Cookies\matt@ads.pointroll[2].txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined).
:mozilla.826:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned with backup (quarantined).
:mozilla.827:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned with backup (quarantined).
:mozilla.172:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined).
:mozilla.173:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined).
:mozilla.174:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined).
:mozilla.175:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined).
C:\Documents and Settings\Matt\Cookies\matt@questionmarket[2].txt -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined).
:mozilla.968:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned with backup (quarantined).
:mozilla.972:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned with backup (quarantined).
:mozilla.973:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned with backup (quarantined).
:mozilla.974:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned with backup (quarantined).
:mozilla.840:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Revenue : Cleaned with backup (quarantined).
:mozilla.176:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined).
:mozilla.177:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined).
:mozilla.178:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined).
:mozilla.179:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined).
:mozilla.180:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined).
C:\Documents and Settings\Matt\Cookies\matt@serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined).
:mozilla.355:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
:mozilla.356:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
:mozilla.357:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
:mozilla.358:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
:mozilla.359:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
:mozilla.360:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
:mozilla.361:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
:mozilla.362:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup (quarantined).
:mozilla.121:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup (quarantined).
:mozilla.122:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup (quarantined).
:mozilla.523:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned with backup (quarantined).
:mozilla.524:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned with backup (quarantined).
:mozilla.894:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned with backup (quarantined).
:mozilla.897:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned with backup (quarantined).
:mozilla.898:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned with backup (quarantined).
:mozilla.820:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Spylog : Cleaned with backup (quarantined).
:mozilla.456:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.457:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.458:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.459:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.460:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.461:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.462:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.463:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.464:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.465:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.466:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.467:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.468:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.469:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.470:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.471:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.472:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.473:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.474:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.475:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.476:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.477:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined).
:mozilla.330:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup (quarantined).
:mozilla.331:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup (quarantined).
:mozilla.613:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Targetnet : Cleaned with backup (quarantined).
:mozilla.929:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined).
:mozilla.930:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined).
:mozilla.931:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined).
:mozilla.932:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined).
:mozilla.933:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined).
:mozilla.934:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined).
:mozilla.935:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined).
:mozilla.936:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined).
:mozilla.447:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup (quarantined).
:mozilla.48:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup (quarantined).
:mozilla.49:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup (quarantined).
:mozilla.50:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup (quarantined).
:mozilla.51:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup (quarantined).
C:\Documents and Settings\Matt\Cookies\matt@tribalfusion[2].txt -> TrackingCookie.Tribalfusion : Cleaned with backup (quarantined).
:mozilla.280:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Valuead : Cleaned with backup (quarantined).
:mozilla.281:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Valuead : Cleaned with backup (quarantined).
:mozilla.282:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Valuead : Cleaned with backup (quarantined).
:mozilla.283:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Valuead : Cleaned with backup (quarantined).
:mozilla.284:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Valuead : Cleaned with backup (quarantined).
:mozilla.285:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Valuead : Cleaned with backup (quarantined).
:mozilla.286:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Valuead : Cleaned with backup (quarantined).
:mozilla.772:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned with backup (quarantined).
:mozilla.640:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Yadro : Cleaned with backup (quarantined).
:mozilla.21:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined).
:mozilla.22:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined).
:mozilla.23:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined).
:mozilla.24:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined).
:mozilla.42:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined).
:mozilla.858:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup (quarantined).
:mozilla.859:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup (quarantined).
:mozilla.860:C:\Documents and Settings\Matt\Application Data\Mozilla\Firefox\Profiles\4zow1k9u.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup (quarantined).


::Report end

#7 OldTimer

OldTimer

    Malware Expert


  • Members
  • 11,092 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:North Carolina
  • Local time:03:23 PM

Posted 20 August 2006 - 05:38 PM

Hi JosephM. Only see 1 item that needs to be fixed.

Start HijackThis and click the Scan button to perform a scan. Look for the following items and click in the checkbox in front of each item to select it:O20 - Winlogon Notify: winopn32 - winopn32.dll (file missing)
Now close ALL open windows except HijackThis and click the Fix Checked button to finish the repair.

Everything else looks good. You should be good to go.

Cheers.

OT
I do not respond to PM's requesting help. That's what the forums are here for. Please use them so that others may benefit from your questions and the responses you receive.
OldTimer

Posted Image




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users