Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Unknown Problem


  • This topic is locked This topic is locked
17 replies to this topic

#1 TexasPrairieGal

TexasPrairieGal

  • Members
  • 26 posts
  • OFFLINE
  •  
  • Local time:10:46 AM

Posted 23 October 2006 - 06:32 PM

Logfile of HijackThis v1.99.1
Scan saved at 6:27:12 PM, on 10/23/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Aclient\AClient.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
C:\Program Files\Aclient\AClntUsr.EXE
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb12.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
c:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\Program Files\Nikon\NkView5\NkvMon.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\HijackThis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.hp.com/
R3 - URLSearchHook: (no name) - {BE89472C-B803-4D1D-9A9A-0A63660E0FE3} - C:\PROGRA~1\COPERN~1\COPERN~1.DLL
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: CNavExtBho Class - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Norton Internet Security 2006 - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Copernic Agent - {F2E259E8-0FC8-438C-A6E0-342DD80FA53E} - C:\Program Files\Copernic Agent\CopernicAgentExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Smapp] C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
O4 - HKLM\..\Run: [SetRefresh] C:\Program Files\Compaq\SetRefresh\SetRefresh.exe
O4 - HKLM\..\Run: [AClntUsr] C:\Program Files\Aclient\AClntUsr.EXE
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb12.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] c:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: NkvMon.exe.lnk = C:\Program Files\Nikon\NkView5\NkvMon.exe
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Search Using Copernic Agent - res://C:\Program Files\Copernic Agent\CopernicAgentExt.dll/INTEGRATION_MENU_SEARCHEXT
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: (no name) - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra 'Tools' menuitem: Launch Copernic Agent - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Copernic Agent - {688DC797-DC11-46A7-9F1B-445F4F58CE6E} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - https://www-secure.symantec.com/techsupp/as...rl/LSSupCtl.cab
O16 - DPF: {26CBF141-7D0F-46E1-AA06-718958B6E4D2} - http://download.ebay.com/turbo_lister/US/install.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.safety.live.com/resource/d...wlscbase969.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1161641192953
O16 - DPF: {B020B534-4AA2-4B99-BD6D-5F6EE286DF5C} (Symantec Download Bridge) - https://a248.e.akamai.net/f/248/5462/2h/www...ol/SymDlBrg.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Altiris Client Service (AClient) - Altiris, Inc. - C:\Program Files\Aclient\AClient.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\ccPwdSvc.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Norton Internet Security\comHost.exe
O23 - Service: HP Port Resolver - Hewlett-Packard Company - C:\WINDOWS\system32\hpbpro.exe
O23 - Service: HP Status Server - Hewlett-Packard Company - C:\WINDOWS\system32\hpboid.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe

BC AdBot (Login to Remove)

 


#2 SifuMike

SifuMike

    malware expert


  • Members
  • 15,385 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Vancouver (not BC) WA (Not DC) USA
  • Local time:08:46 AM

Posted 31 October 2006 - 06:23 PM

Hello TexasPrairieGal,

Sorry for the delay. Let's get started. :thumbsup: If this is a malware problem then I can help you. If it is a hardware or Windows problem then you will need to go to another forum.

Sporadic Computer HangUp


Could you explain this to me in detail? That may give me a clue as to what is causing your problem. Did this problem just start or is it an old problem?

see my posting in the XP forum


I looked in the XP forum, but dont see your posting listed there. :flowers:

Disable your antivirus program and go here http://www.bitdefender.com/scan8/ie.html and run an online scan with BitDefender (you will need to use Internet Explorer for this scan). When the ActiveX Control has loaded, click on "Click here to scan" and grab a coffee. :huh:

When BitDefender completes the scan, select the "Detected Problems" tab.
Click on "Click here to export scan".
Save the file as an HTML to your Desktop.
Then click on the saved file and allow it to open with your browser.
Go to Edit - Select All then copy/paste that log back here.
Post the BitDefender log.




Download and install AVG Anti-Spyware 7.5 (formerly Ewido)

1. After download, double click on the file to launch the install process.
2. Choose a language, click "OK" and then click "Next".
3. Read the "License Agreement" and click "I Agree".
4. Accept the default installation path: C:\Program Files\AVG Anti-Spyware 7.5 and click "Next", then click "Install".
5. After setup completes, click "Finish" to start the program automatically or launch ewido by double-clicking its icon on your desktop or in the system tray.
6. The main "Status" menu will appear. You can select "Change state" to inactivate 'Resident Sheild' and 'Automatic Updates'. If you choose to do this, then right click on ewdio in the system tray and uncheck "Start with Windows".
7. Select the "Update" button and click "Start update". If you are having problems with the updater, manually update with the Ewido Full database installer from here.
8. Exit AVG Anti-Spyware 7.5 when done - DO NOT perform a scan yet.

Reboot your computer in "SAFE MODE" using the F8 method so Windows will start with minimal drivers and running processes. To do this restart your computer and after hearing your computer beep once during startup [but before the Windows icon appears] press the F8 key repeatedly. A menu will appear with several options. Use the arrow keys to navigate and select the option to run Windows in "Safe Mode".

Scan with AVG Anti-Spyware 7.5 as follows:

1. Launch AVG Anti-Spyware 7.5, click on the "Scanner" button and choose the "Settings" tab.

Under "How to act?", click on "Recommended actions" and choose "Quarantine" to set default action for detected malware.

Under "How to Scan?" check all (default).

Under "Possibly unwanted software" check all (default).

Under "What to Scan?" make sure "Scan every file" is selected (default).

Under "Reports" select "Automatically generate report after every scan and UNcheck "Only if threats were found".

2. Click the "Scan" tab to return to scanning options.
3. Click "Complete System Scan" to start.
4. When the scan has finished you will be presented with a list of infected objects found. Click "Apply all actions" to place the files in Quarantine.
5. Click on "Save Report" to view all completed scans.
Click on the most recent scan you just performed and select "Save report as" - the default file name will be in date/time format as follows: Report-Scan-20060620-142816.txt. Save to your desktop. A copy of each report will also be saved in C:\Program Files\AVG Anti-Spyware 7.5\Reports\
6. Exit AVG Anti-Spyware 7.5

When done and submit the AVG Anti-Spyware 7.5 log, the BitDefender log and a fresh Hijackthis log.

Edited by SifuMike, 31 October 2006 - 06:31 PM.

If I've saved you time & money,
please make a donation so I can keep helping people just like you! You can donate using a credit card and PayPal. Thank you!



Posted Image

Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.

#3 TexasPrairieGal

TexasPrairieGal
  • Topic Starter

  • Members
  • 26 posts
  • OFFLINE
  •  
  • Local time:10:46 AM

Posted 31 October 2006 - 08:34 PM

Hi Sifumike...
No apologies necessary... I completely understand.

Before I do any of the BitDefender and AVG stuff, here's a very detailed explanation of the problem (sorry for the length, but I want to make sure the issue and what we've tried is understandable). Soooo, here goes:

My system:
XP Pro 2002 SP2
Pentium 4 3.20GHz ~ 1GB Ram
HP Compaq dc7100 Intel
Norton Internet Security 2006
Windows Updates are current
System has been De-Fragmented
Computer is maybe not quite 1 yr old

I originally posted a plea for help on Oct23rd:
http://www.bleepingcomputer.com/forums/t/69293/xp-sporadic-hang-ups/

I also posted a HijackThis log on Oct 23rd:
http://www.bleepingcomputer.com/forums/t/69485/unknown-problem/

I did everything advised initially on the XP Forum:

1. Installed and ran AdAwareSE: It found 129 "problems". They were all just tracking cookies (Data Miner). Fixed them and ran program again - all clear

2. Installed and ran Spybot: It found 7 problems. Four were simply monitoring cookies... 3 were just the Windows security functions that are disabled because I have Norton Security 2006. Fixed the 4 - again all clear

3. Performed at least 3 FULL SYSTEM scans... all show clear

4. Posted a Hijack log and was told to wait for an answer and do nothing else.

My problem and dilemma.... and possible reason for me to give up on computers and become a Sunflower Seed farmerette:

The problem started for me when we switched to T-Lab wireless internet service on Sep27, 2006.


Periodically my computer will hang up. When it does I cannot do anything: e.g., right click, open a new Window (any kind), bring up a CMD prompt, engage Task Manager, click on Taskbar... nothing will work. However, I can move the mouse, and I can click "X" to close a window. Sometimes that will allow me to open a new window or perform some other function, sometimes it just keeps backing me down to fewer and fewer windows. This can happen with as few as 2-3 windows open, or sometimes I can have 10++ open. No rhyme or reason to what's open or when it happens (AM, PM... all times of day or nite). Sometimes a day or more without it happening at all. No problems reported in the Event Logs.

We have 4 computers on our home network, I am the ONLY one experiencing difficulties.

I have NO problems when working with a dial-up internet connection

I have NO problems when working with a satellite internet connection

I ONLY have the problem when working with T-LAB Wireless internet connection

We have done the following in an attempt to resolve the problem:

1. We disconnected my USB Wireless Adapter (Linksys WUSB54GC), uninstalled it, and hardwired me to the router. That didn't help

2. We deleted and reestablished my Network Connection. That didn't help

3. We ran netsh to completely reinitialize my TCP/IP connections (or whatever they're called). That didn't help.

4. At least 3 Full System scans... all clear

5. Defragmented the computer

6. Looked for bad things with Ad-aware and Spybot and found nothing momentous...

7. Ran a chkdsk... it's ok

8. Called T-Lab... nothing they can help with (but then again, our other 3 XP machines are sailing along with T-Lab just fine...

To summarize:
- 3 out 4 pcs show NO similar symptoms (ALL are running XP)
- 2 out of 3 internet connections work 100% OK for me without any freezes or hang-ups
- wireless or hardwired doesn't make a difference
- the satellite/wireless internet connections likely working thru the same NIC, so probably also OK
- Proverbial bushes have been beaten for bad things (malware, viruses, etc) and I look clean
- It's ONLY when I'm using the T-Lab wireless Internet service that I experience these random freezes...

Waaaaaaaaaaaaaaaa

Do you still think I need to do the BitDefender and AVG stuff?

I also meant to add a HEARTFELT thank you for your help... means alot to me!!!

#4 TexasPrairieGal

TexasPrairieGal
  • Topic Starter

  • Members
  • 26 posts
  • OFFLINE
  •  
  • Local time:10:46 AM

Posted 31 October 2006 - 08:51 PM

Never mind my last ?
I'm running the BitDefender and AVG thingies....
I vow to turn over EVERY stone I can until I can get this crazy problem to go away...
Waaaaaaaaaaa

#5 SifuMike

SifuMike

    malware expert


  • Members
  • 15,385 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Vancouver (not BC) WA (Not DC) USA
  • Local time:08:46 AM

Posted 31 October 2006 - 09:12 PM

My problem and dilemma.... and possible reason for me to give up on computers and become a Sunflower Seed farmerette:

LOL :thumbsup:
If I've saved you time & money,
please make a donation so I can keep helping people just like you! You can donate using a credit card and PayPal. Thank you!



Posted Image

Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.

#6 TexasPrairieGal

TexasPrairieGal
  • Topic Starter

  • Members
  • 26 posts
  • OFFLINE
  •  
  • Local time:10:46 AM

Posted 01 November 2006 - 12:41 AM

OK... even tho I feel like I'm baring my dirty laundry (did I say that?).... I'll post 3 replies... 1st will be the BitDefender, 2nd will be AVG, 3rd will be the new HijackThis log

This is #1 - BitDefender Log:

BitDefender Online Scanner



Scan report generated at: Tue, Oct 31, 2006 - 22:02:59





Scan path: C:\;D:\;E:\;







Statistics

Time
02:13:52

Files
1244822

Folders
4875

Boot Sectors
2

Archives
267735

Packed Files
146292




Results

Identified Viruses
3

Infected Files
20

Suspect Files
16

Warnings
0

Disinfected
0

Deleted Files
54




Engines Info

Virus Definitions
479680

Engine build
AVCORE v1.0 (build 2310) (i386) (Apr 17 2006 16:24:38)

Scan plugins
13

Archive plugins
38

Unpack plugins
6

E-mail plugins
6

System plugins
1




Scan Settings

First Action
Disinfect

Second Action
Delete

Heuristics
Yes

Enable Warnings
Yes

Scanned Extensions
*;

Exclude Extensions


Scan Emails
Yes

Scan Archives
Yes

Scan Packed
Yes

Scan Files
Yes

Scan Boot
Yes




Scanned File
Status

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 1)=>[Subject: virus email??? Fw: Hi][Date: Mon, 19 Jan 2004 17:32:58 -0600]=>(MIME part)=>kecknqlsr.exe
Infected with: Win32.Bagle.A@mm

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 1)=>[Subject: virus email??? Fw: Hi][Date: Mon, 19 Jan 2004 17:32:58 -0600]=>(MIME part)=>kecknqlsr.exe
Deleted

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 1)=>[Subject: virus email??? Fw: Hi][Date: Mon, 19 Jan 2004 17:32:58 -0600]=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 1)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx
Update failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 2)=>[Subject: virus email properties: Fw: Hi][Date: Mon, 19 Jan 2004 17:34:25 -0600]=>(MIME part)=>kecknqlsr.exe
Infected with: Win32.Bagle.A@mm

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 2)=>[Subject: virus email properties: Fw: Hi][Date: Mon, 19 Jan 2004 17:34:25 -0600]=>(MIME part)=>kecknqlsr.exe
Deleted

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 2)=>[Subject: virus email properties: Fw: Hi][Date: Mon, 19 Jan 2004 17:34:25 -0600]=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 2)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx
Update failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 3)=>[Subject: virus email Fw: Hi,please try again][Date: Wed, 24 Dec 2003 15:08:37 -0600]=>(MIME part)=>(MIME part)=>(message body)=>(IFRAME)
Suspected of: Exploit.Iframe.Vulnerability

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 3)=>[Subject: virus email Fw: Hi,please try again][Date: Wed, 24 Dec 2003 15:08:37 -0600]=>(MIME part)=>(MIME part)=>(message body)=>(IFRAME)
Disinfection failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 3)=>[Subject: virus email Fw: Hi,please try again][Date: Wed, 24 Dec 2003 15:08:37 -0600]=>(MIME part)=>(MIME part)=>(message body)=>(IFRAME)
Deleted

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 3)=>[Subject: virus email Fw: Hi,please try again][Date: Wed, 24 Dec 2003 15:08:37 -0600]=>(MIME part)=>(MIME part)=>(message body)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 3)=>[Subject: virus email Fw: Hi,please try again][Date: Wed, 24 Dec 2003 15:08:37 -0600]=>(MIME part)=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 3)=>[Subject: virus email Fw: Hi,please try again][Date: Wed, 24 Dec 2003 15:08:37 -0600]=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 3)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx
Update failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 4)=>[Subject: virus email Fw: Hi,please try again][Date: Wed, 24 Dec 2003 14:47:14 -0600]=>(MIME part)=>(MIME part)=>(message body)=>(IFRAME)
Suspected of: Exploit.Iframe.Vulnerability

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 4)=>[Subject: virus email Fw: Hi,please try again][Date: Wed, 24 Dec 2003 14:47:14 -0600]=>(MIME part)=>(MIME part)=>(message body)=>(IFRAME)
Disinfection failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 4)=>[Subject: virus email Fw: Hi,please try again][Date: Wed, 24 Dec 2003 14:47:14 -0600]=>(MIME part)=>(MIME part)=>(message body)=>(IFRAME)
Deleted

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 4)=>[Subject: virus email Fw: Hi,please try again][Date: Wed, 24 Dec 2003 14:47:14 -0600]=>(MIME part)=>(MIME part)=>(message body)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 4)=>[Subject: virus email Fw: Hi,please try again][Date: Wed, 24 Dec 2003 14:47:14 -0600]=>(MIME part)=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 4)=>[Subject: virus email Fw: Hi,please try again][Date: Wed, 24 Dec 2003 14:47:14 -0600]=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 4)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx
Update failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 5)=>[Subject: virus email Fw: Under the Test Tab, th][Date: Sat, 20 Dec 2003 15:51:10 -0600]=>(MIME part)=>(MIME part)=>(message body)
Suspected of: Exploit.Iframe.Vulnerability

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 5)=>[Subject: virus email Fw: Under the Test Tab, th][Date: Sat, 20 Dec 2003 15:51:10 -0600]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 5)=>[Subject: virus email Fw: Under the Test Tab, th][Date: Sat, 20 Dec 2003 15:51:10 -0600]=>(MIME part)=>(MIME part)=>(message body)
Deleted

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 5)=>[Subject: virus email Fw: Under the Test Tab, th][Date: Sat, 20 Dec 2003 15:51:10 -0600]=>(MIME part)=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 5)=>[Subject: virus email Fw: Under the Test Tab, th][Date: Sat, 20 Dec 2003 15:51:10 -0600]=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 5)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx
Update failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 7)=>[Subject: virus email Fw: Keyboard Tests, and ][Date: Thu, 18 Dec 2003 00:25:14 -0600]=>(MIME part)=>(MIME part)=>(message body)
Suspected of: Exploit.Iframe.Vulnerability

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 7)=>[Subject: virus email Fw: Keyboard Tests, and ][Date: Thu, 18 Dec 2003 00:25:14 -0600]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 7)=>[Subject: virus email Fw: Keyboard Tests, and ][Date: Thu, 18 Dec 2003 00:25:14 -0600]=>(MIME part)=>(MIME part)=>(message body)
Deleted

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 7)=>[Subject: virus email Fw: Keyboard Tests, and ][Date: Thu, 18 Dec 2003 00:25:14 -0600]=>(MIME part)=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 7)=>[Subject: virus email Fw: Keyboard Tests, and ][Date: Thu, 18 Dec 2003 00:25:14 -0600]=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 7)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx
Update failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 9)=>[Subject: virus email Fw: The user ][Date: Thu, 18 Dec 2003 20:30:47 -0600]=>(MIME part)=>(MIME part)=>(message body)
Suspected of: Exploit.Iframe.Vulnerability

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 9)=>[Subject: virus email Fw: The user ][Date: Thu, 18 Dec 2003 20:30:47 -0600]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 9)=>[Subject: virus email Fw: The user ][Date: Thu, 18 Dec 2003 20:30:47 -0600]=>(MIME part)=>(MIME part)=>(message body)
Deleted

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 9)=>[Subject: virus email Fw: The user ][Date: Thu, 18 Dec 2003 20:30:47 -0600]=>(MIME part)=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 9)=>[Subject: virus email Fw: The user ][Date: Thu, 18 Dec 2003 20:30:47 -0600]=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 9)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx
Update failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 10)=>[Subject: virus email Fw: A funny website][Date: Sat, 13 Dec 2003 12:00:03 -0600]=>(MIME part)=>(MIME part)=>(message body)
Suspected of: Exploit.Iframe.Vulnerability

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 10)=>[Subject: virus email Fw: A funny website][Date: Sat, 13 Dec 2003 12:00:03 -0600]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 10)=>[Subject: virus email Fw: A funny website][Date: Sat, 13 Dec 2003 12:00:03 -0600]=>(MIME part)=>(MIME part)=>(message body)
Deleted

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 10)=>[Subject: virus email Fw: A funny website][Date: Sat, 13 Dec 2003 12:00:03 -0600]=>(MIME part)=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 10)=>[Subject: virus email Fw: A funny website][Date: Sat, 13 Dec 2003 12:00:03 -0600]=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 10)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx
Update failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 13)=>[Subject: Fw: From the Windows Control Panel, do][Date: Mon, 8 Dec 2003 20:21:59 -0600]=>(MIME part)=>(MIME part)=>(message body)
Suspected of: Exploit.Iframe.Vulnerability

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 13)=>[Subject: Fw: From the Windows Control Panel, do][Date: Mon, 8 Dec 2003 20:21:59 -0600]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 13)=>[Subject: Fw: From the Windows Control Panel, do][Date: Mon, 8 Dec 2003 20:21:59 -0600]=>(MIME part)=>(MIME part)=>(message body)
Deleted

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 13)=>[Subject: Fw: From the Windows Control Panel, do][Date: Mon, 8 Dec 2003 20:21:59 -0600]=>(MIME part)=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 13)=>[Subject: Fw: From the Windows Control Panel, do][Date: Mon, 8 Dec 2003 20:21:59 -0600]=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 13)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx
Update failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 14)=>[Subject: virus email Fw: From the Windows Contr][Date: Mon, 8 Dec 2003 19:33:32 -0600]=>(MIME part)=>(MIME part)=>(message body)=>(IFRAME)
Suspected of: Exploit.Iframe.Vulnerability

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 14)=>[Subject: virus email Fw: From the Windows Contr][Date: Mon, 8 Dec 2003 19:33:32 -0600]=>(MIME part)=>(MIME part)=>(message body)=>(IFRAME)
Disinfection failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 14)=>[Subject: virus email Fw: From the Windows Contr][Date: Mon, 8 Dec 2003 19:33:32 -0600]=>(MIME part)=>(MIME part)=>(message body)=>(IFRAME)
Deleted

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 14)=>[Subject: virus email Fw: From the Windows Contr][Date: Mon, 8 Dec 2003 19:33:32 -0600]=>(MIME part)=>(MIME part)=>(message body)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 14)=>[Subject: virus email Fw: From the Windows Contr][Date: Mon, 8 Dec 2003 19:33:32 -0600]=>(MIME part)=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 14)=>[Subject: virus email Fw: From the Windows Contr][Date: Mon, 8 Dec 2003 19:33:32 -0600]=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 14)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx
Update failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 15)=>[Subject: virus email Fw: From the Windows Contr][Date: Mon, 8 Dec 2003 20:15:34 -0600]=>(MIME part)=>(MIME part)=>(message body)
Suspected of: Exploit.Iframe.Vulnerability

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 15)=>[Subject: virus email Fw: From the Windows Contr][Date: Mon, 8 Dec 2003 20:15:34 -0600]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 15)=>[Subject: virus email Fw: From the Windows Contr][Date: Mon, 8 Dec 2003 20:15:34 -0600]=>(MIME part)=>(MIME part)=>(message body)
Deleted

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 15)=>[Subject: virus email Fw: From the Windows Contr][Date: Mon, 8 Dec 2003 20:15:34 -0600]=>(MIME part)=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 15)=>[Subject: virus email Fw: From the Windows Contr][Date: Mon, 8 Dec 2003 20:15:34 -0600]=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 15)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx
Update failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 16)=>[Subject: Fw: ][Date: Mon, 1 Dec 2003 19:09:57 -0600]=>(MIME part)=>(MIME part)=>(message body)
Suspected of: Exploit.Iframe.Vulnerability

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 16)=>[Subject: Fw: ][Date: Mon, 1 Dec 2003 19:09:57 -0600]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 16)=>[Subject: Fw: ][Date: Mon, 1 Dec 2003 19:09:57 -0600]=>(MIME part)=>(MIME part)=>(message body)
Deleted

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 16)=>[Subject: Fw: ][Date: Mon, 1 Dec 2003 19:09:57 -0600]=>(MIME part)=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 16)=>[Subject: Fw: ][Date: Mon, 1 Dec 2003 19:09:57 -0600]=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 16)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx
Update failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 17)=>[Subject: Virus email Fw: The Garden of Eden][Date: Wed, 3 Dec 2003 19:40:03 -0600]=>(MIME part)=>(MIME part)=>(message body)
Suspected of: Exploit.Iframe.Vulnerability

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 17)=>[Subject: Virus email Fw: The Garden of Eden][Date: Wed, 3 Dec 2003 19:40:03 -0600]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 17)=>[Subject: Virus email Fw: The Garden of Eden][Date: Wed, 3 Dec 2003 19:40:03 -0600]=>(MIME part)=>(MIME part)=>(message body)
Deleted

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 17)=>[Subject: Virus email Fw: The Garden of Eden][Date: Wed, 3 Dec 2003 19:40:03 -0600]=>(MIME part)=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 17)=>[Subject: Virus email Fw: The Garden of Eden][Date: Wed, 3 Dec 2003 19:40:03 -0600]=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 17)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx
Update failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 18)=>[Subject: Fw: Keyboard Tests, and ][Date: Fri, 5 Dec 2003 15:42:02 -0600]=>(MIME part)=>(MIME part)=>(message body)
Suspected of: Exploit.Iframe.Vulnerability

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 18)=>[Subject: Fw: Keyboard Tests, and ][Date: Fri, 5 Dec 2003 15:42:02 -0600]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 18)=>[Subject: Fw: Keyboard Tests, and ][Date: Fri, 5 Dec 2003 15:42:02 -0600]=>(MIME part)=>(MIME part)=>(message body)
Deleted

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 18)=>[Subject: Fw: Keyboard Tests, and ][Date: Fri, 5 Dec 2003 15:42:02 -0600]=>(MIME part)=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 18)=>[Subject: Fw: Keyboard Tests, and ][Date: Fri, 5 Dec 2003 15:42:02 -0600]=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 18)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx
Update failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 19)=>[Subject: virus email Fw: Keyboard Tests, and ][Date: Fri, 5 Dec 2003 15:42:41 -0600]=>(MIME part)=>(MIME part)=>(message body)
Suspected of: Exploit.Iframe.Vulnerability

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 19)=>[Subject: virus email Fw: Keyboard Tests, and ][Date: Fri, 5 Dec 2003 15:42:41 -0600]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 19)=>[Subject: virus email Fw: Keyboard Tests, and ][Date: Fri, 5 Dec 2003 15:42:41 -0600]=>(MIME part)=>(MIME part)=>(message body)
Deleted

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 19)=>[Subject: virus email Fw: Keyboard Tests, and ][Date: Fri, 5 Dec 2003 15:42:41 -0600]=>(MIME part)=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 19)=>[Subject: virus email Fw: Keyboard Tests, and ][Date: Fri, 5 Dec 2003 15:42:41 -0600]=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 19)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx
Update failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 21)=>[Subject: virus email Fw: Honey][Date: Sat, 29 Nov 2003 21:07:44 -0600]=>(MIME part)=>(MIME part)=>(message body)
Suspected of: Exploit.Iframe.Vulnerability

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 21)=>[Subject: virus email Fw: Honey][Date: Sat, 29 Nov 2003 21:07:44 -0600]=>(MIME part)=>(MIME part)=>(message body)
Disinfection failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 21)=>[Subject: virus email Fw: Honey][Date: Sat, 29 Nov 2003 21:07:44 -0600]=>(MIME part)=>(MIME part)=>(message body)
Deleted

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 21)=>[Subject: virus email Fw: Honey][Date: Sat, 29 Nov 2003 21:07:44 -0600]=>(MIME part)=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 21)=>[Subject: virus email Fw: Honey][Date: Sat, 29 Nov 2003 21:07:44 -0600]=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 21)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx
Update failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 22)=>[Subject: Virus email Fw: Programs icon, ][Date: Sun, 30 Nov 2003 13:44:07 -0600]=>(MIME part)=>(MIME part)=>(message body)=>(IFRAME)
Suspected of: Exploit.Iframe.Vulnerability

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 22)=>[Subject: Virus email Fw: Programs icon, ][Date: Sun, 30 Nov 2003 13:44:07 -0600]=>(MIME part)=>(MIME part)=>(message body)=>(IFRAME)
Disinfection failed

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 22)=>[Subject: Virus email Fw: Programs icon, ][Date: Sun, 30 Nov 2003 13:44:07 -0600]=>(MIME part)=>(MIME part)=>(message body)=>(IFRAME)
Deleted

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 22)=>[Subject: Virus email Fw: Programs icon, ][Date: Sun, 30 Nov 2003 13:44:07 -0600]=>(MIME part)=>(MIME part)=>(message body)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 22)=>[Subject: Virus email Fw: Programs icon, ][Date: Sun, 30 Nov 2003 13:44:07 -0600]=>(MIME part)=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 22)=>[Subject: Virus email Fw: Programs icon, ][Date: Sun, 30 Nov 2003 13:44:07 -0600]=>(MIME part)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx=>(message 22)
Updated

C:\Documents and Settings\Administrator\Local Settings\Application Data\Identities\{6A01F162-74C5-4FD8-893F-6F38872F3613}\Microsoft\Outlook Express\Virus EMails.dbx
Update failed

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\030929C8.tmp=>(Quarantine-2)
Infected with: Win32.Nyxem.E@mm

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\030929C8.tmp=>(Quarantine-2)
Disinfection failed

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\030929C8.tmp=>(Quarantine-2)
Deleted

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\128C18B7.tmp=>(Quarantine-2)
Infected with: Win32.Nyxem.E@mm

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\128C18B7.tmp=>(Quarantine-2)
Disinfection failed

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\128C18B7.tmp=>(Quarantine-2)
Deleted

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\150A6CD4.tmp=>(Quarantine-2)
Infected with: Win32.Nyxem.E@mm

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\150A6CD4.tmp=>(Quarantine-2)
Disinfection failed

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\150A6CD4.tmp=>(Quarantine-2)
Deleted

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D053F30.tmp=>(Quarantine-2)
Infected with: Win32.Nyxem.E@mm

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D053F30.tmp=>(Quarantine-2)
Disinfection failed

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\1D053F30.tmp=>(Quarantine-2)
Deleted

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\291665E9.tmp=>(Quarantine-2)
Infected with: Win32.Nyxem.E@mm

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\291665E9.tmp=>(Quarantine-2)
Disinfection failed

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\291665E9.tmp=>(Quarantine-2)
Deleted

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\30B17E65.tmp=>(Quarantine-2)
Infected with: Win32.Nyxem.E@mm

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\30B17E65.tmp=>(Quarantine-2)
Disinfection failed

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\30B17E65.tmp=>(Quarantine-2)
Deleted

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B0A0103.tmp=>(Quarantine-2)
Infected with: Win32.Nyxem.E@mm

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B0A0103.tmp=>(Quarantine-2)
Disinfection failed

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B0A0103.tmp=>(Quarantine-2)
Deleted

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B9F3383.tmp=>(Quarantine-2)
Infected with: Win32.Nyxem.E@mm

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B9F3383.tmp=>(Quarantine-2)
Disinfection failed

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\3B9F3383.tmp=>(Quarantine-2)
Deleted

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45897B75.tmp=>(Quarantine-2)
Infected with: Win32.Nyxem.E@mm

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45897B75.tmp=>(Quarantine-2)
Disinfection failed

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\45897B75.tmp=>(Quarantine-2)
Deleted

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4A023B66.tmp=>(Quarantine-2)
Infected with: Win32.Nyxem.E@mm

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4A023B66.tmp=>(Quarantine-2)
Disinfection failed

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4A023B66.tmp=>(Quarantine-2)
Deleted

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4F476FE1.tmp=>(Quarantine-2)
Infected with: Win32.Nyxem.E@mm

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4F476FE1.tmp=>(Quarantine-2)
Disinfection failed

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\4F476FE1.tmp=>(Quarantine-2)
Deleted

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5A2F29E1.tmp=>(Quarantine-2)
Infected with: Win32.Nyxem.E@mm

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5A2F29E1.tmp=>(Quarantine-2)
Disinfection failed

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5A2F29E1.tmp=>(Quarantine-2)
Deleted

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E8A6FF2.tmp=>(Quarantine-2)
Infected with: Win32.Nyxem.E@mm

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E8A6FF2.tmp=>(Quarantine-2)
Disinfection failed

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\5E8A6FF2.tmp=>(Quarantine-2)
Deleted

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\61C85B56.tmp=>(Quarantine-2)
Suspected of: BehavesLike:Trojan.Downloader

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\61C85B56.tmp=>(Quarantine-2)
Disinfection failed

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\61C85B56.tmp=>(Quarantine-2)
Deleted

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\621B0329.tmp=>(Quarantine-2)
Infected with: Win32.Nyxem.E@mm

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\621B0329.tmp=>(Quarantine-2)
Disinfection failed

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\621B0329.tmp=>(Quarantine-2)
Deleted

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\625C4AE1.tmp=>(Quarantine-2)
Infected with: Win32.Nyxem.E@mm

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\625C4AE1.tmp=>(Quarantine-2)
Disinfection failed

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\625C4AE1.tmp=>(Quarantine-2)
Deleted

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\71450C31.tmp=>(Quarantine-2)
Infected with: Win32.Nyxem.E@mm

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\71450C31.tmp=>(Quarantine-2)
Disinfection failed

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\71450C31.tmp=>(Quarantine-2)
Deleted

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73723EF0.tmp=>(Quarantine-2)
Infected with: Win32.Nyxem.E@mm

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73723EF0.tmp=>(Quarantine-2)
Disinfection failed

C:\Documents and Settings\All Users\Application Data\Symantec\Norton AntiVirus\Quarantine\73723EF0.tmp=>(Quarantine-2)
Deleted

C:\system.sav\util\postoobe\favtool2.exe
Infected with: Trojan.Startpage.TC

C:\system.sav\util\postoobe\favtool2.exe
Disinfection failed

C:\system.sav\util\postoobe\favtool2.exe
Deleted

#7 TexasPrairieGal

TexasPrairieGal
  • Topic Starter

  • Members
  • 26 posts
  • OFFLINE
  •  
  • Local time:10:46 AM

Posted 01 November 2006 - 12:42 AM

This is #2... the AVH Log:

---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------

+ Created at: 11:22:26 PM 10/31/2006

+ Scan result:



C:\Documents and Settings\Administrator\Cookies\administrator@1800wheelchair.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@albertoculver.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@blindscom.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@brightbuilders.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@buycom.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@canvasondemand.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@cbs.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@cnn.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@cratebarrel.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@entrepreneur.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@firemountaingems.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@goodyear.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@heritagegalleries.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@highbeam.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@indigio.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@microsofteup.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@msnclassifieds.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@msnservices.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@paypal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@potpourrigroup.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@primediabusiness.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@snapfish.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@waterfrontmedia.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@wholesalemarketer.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@adbrite[2].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@rotator.adjuggler[1].txt -> TrackingCookie.Adjuggler : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@rotator.dex.adjuggler[2].txt -> TrackingCookie.Adjuggler : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@thunderbolt.adjuggler[2].txt -> TrackingCookie.Adjuggler : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@admarketplace[1].txt -> TrackingCookie.Admarketplace : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@adtech[2].txt -> TrackingCookie.Adtech : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@www.burstbeacon[1].txt -> TrackingCookie.Burstbeacon : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@burstnet[1].txt -> TrackingCookie.Burstnet : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@www.burstnet[1].txt -> TrackingCookie.Burstnet : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@com[1].txt -> TrackingCookie.Com : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@news.com[1].txt -> TrackingCookie.Com : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@cpvfeed[1].txt -> TrackingCookie.Cpvfeed : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfk4akajkkp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfk4cnczkdo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfk4egajodq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfk4eldjgao.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfk4eoajshq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfk4ggcjibo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfk4gjdjako.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfk4gpcjeho.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfk4gpcpchq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfk4kmc5iko.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfk4qgd5sgp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfk4qjczikq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfk4qlazaap.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfk4sicjecq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfk4skdjwap.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkialdjiep.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkianajilq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkichcpaap.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkicmdpkcp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkigkd5ghq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkikocjkbp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkioidzado.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkiojcpcko.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkiqgcpibo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkiqoazeco.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkisnczabq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkiugczgfo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkiuidpcko.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkiwhcjclp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkiwpdjkbo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkoagd5mlp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkoahajakq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkocgcjseo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkochd5sco.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkocjdpikp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkoelczsgq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkogicpmgo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkokmd5wgo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkokndjekp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkoogczwao.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkooiajebq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkoqjcjikp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkoqkcjebo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkoslajoeo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkouoazeap.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkowpdzeep.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkyahazgfp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkycicjckp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkyegc5wcp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkyemdpaap.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkykldpaeo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkykmc5glo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkyoldzoeq.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkyqkcpicq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkysmdpefp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkysoajsap.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkysodjwko.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkyulcpgfo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkyuldpgkp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkywhczkdo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkywndjcdp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfkywodpgcp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfl4agcpgep.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfl4egajiap.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfl4gidpceq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfl4gmd5kep.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfl4oicpsgo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfl4qhdpglo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfl4umdjmgp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfl4uod5mbo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wflicmajckp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfliendzglo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wflighdjsap.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfligiajgbp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfligmdjafp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfligndjeep.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfligndpako.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfliomd5ibo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfliooajagq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfliooajido.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfliqjcjafo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wflishajacq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfloemd5cep.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfloqod5geo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wflouidjsko.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfloukdjmdp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wflowic5aaq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wflowjd5gfp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wflyklcpmhp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wflyulajido.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wflyundpslp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfmickc5igo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfmieicpgao.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfmiendpieq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfmikic5ifp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfmiojc5ecq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfmiqkd5cbp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfmisndjsep.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfmycmdpedo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfmycnd5gcp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfmyemcpmgo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfmyqnd5elo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wfmywmdzmfo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgk4ejdpshp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgk4ekc5cbp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgk4gmdzmhp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgk4qhdpibp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgk4qlc5ckq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgk4wkczkcq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkiehd5aao.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkiekazolo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkikgdjcdp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkikldpslo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkikpczkep.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkiunczgho.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkiwnajggp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkoaoc5alo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkokmajmfp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkokndzgaq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkoomcpwlq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkosjdjifo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkowgcpsgo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkowjczaho.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkowpdpabo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkyalazkbo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkyeldjkco.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkyeodpccp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkykid5ofp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkyohazkdo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkysidjieq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkyslcpgfp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgkyukd5sbq.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgl4ekd5ghp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgl4gjdjafp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgl4gkc5wbp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgl4klc5okq.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wglignd5icp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgliojdjokp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgmiemcjkbq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgmigkdpifp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgmiojcpskp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgmiwpajmho.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgmyapc5ebq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgmychczskp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wgmyulcpoao.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6whk4emdjmlp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6whk4qnc5obp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6whkicjdpidp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6whkiklcpclq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6whkisndjkho.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6whkogjczodp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6whkokhajagp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6whkoqjcpcao.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6whkyqkazsfp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6whlioid5sbp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4aidpihp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4aidpofo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4ciazghp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4cod5iko.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4cpcpmcp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4ekdjgbq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4giazggq.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4gjdzcep.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4gkdzmap.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4glc5gap.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4gpcjkgp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4gpcjscq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4khc5cdo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4kidpeco.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4kncpklo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4koajihq.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4ogcpgap.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4opd5obo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4ugcjogo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4wkazeaq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4wkc5eco.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjk4wpdpwfo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkoagcjmhp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkoagczseo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkoagdjoep.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkockcpodp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkocodjefo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkoeic5seq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkoekdzihp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkoeldpcap.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkoend5mbp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkoepdjwao.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkoepdzgap.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkoghc5cho.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkogjazagp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkokgcjmfp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkokhdpebp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkokjajefp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkoklc5kgp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkoknd5gkp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkoojdzwao.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkoqgdzkkp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkoqkdpsdo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkoqnazsbp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkouhdzsho.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkoukdpmgo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkoulazkbq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkounazadq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkowiazglo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkowoazagp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkowpazieo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyahdpilp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyaidpsdo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyalajeao.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyaldzsfo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyanazsdo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyandzilp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyapczeco.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyckczolp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkycmdjwfo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyegazafo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyehcpsgo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyehdpagq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyehdpahp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyemazcao.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyemcjofo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyeodjmkp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyghajogp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkygjdjslq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkygldjgep.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkygmajkap.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkygmdpsbp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkykjdpiao.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkykodzskp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyohd5mlq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyoid5ggp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyokdjwhp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyoldjeep.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyondzwlq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyoodzaao.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyqkdzmlo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkysidjwao.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkysjajkfp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkysndzico.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkysodjihq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyspcpakp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyuhazwlq.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyumdjifo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyunajoap.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjkyunc5ifo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjl4agdjobo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjl4apdpcbo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjl4clazahq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjl4ejd5ego.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjl4gjdjgfo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjl4kgc5oco.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjl4khdpilp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjl4kjcjifo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjl4ohcpmko.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjl4ohdzgkq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjl4ojcpsfp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjl4smc5sgo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjl4ugdjceo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjl4uhajifo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjl4ukd5efp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjl4ulajidq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjl4wocpibp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlicicjogq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlicicpmgo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjliekcjacp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlienczafo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlighdzcap.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjliklc5whp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlikmajigo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlikodpcho.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjliqgczabq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjliqncjogp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjliqncpwkp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlishcpaeo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlisjazehp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlismc5icp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlismdzsbq.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjliugd5mco.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjliujdjwgp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjliwocjaao.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjloahczwcp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjloand5wep.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlocicpkkq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlockazofo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlocnc5obp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlococjeep.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjloeidzckq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjloekd5mfp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjloekdpoap.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjloggdzkbo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlogic5ilq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlogidpafq.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlogkcpgkq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjloohc5gbo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjloohczehp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlooldpgcq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjloopc5geo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjloqjdzecq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjloqldzalp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjloqodpolp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjloshdjalq.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlosjcjmeo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlosndpsdp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlosodpgbo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlowgdjiho.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlowhdpggp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlyaiczwkq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlyaidzwao.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlychcpklp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlycpdzmfo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlyehdpoco.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlyehdzglp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlyemdzibq.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlyeodzelo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlyepdjafp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlygid5idp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlygjcjcfp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlygkdziho.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlygpdzsap.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlykgdpmgq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlykiajgbo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlykldzmcp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlyqhczkgo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlyqjczchp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlyqlc5mao.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlyqoazkep.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlysicpogp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlysidpcao.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlysjczmgo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlyskdpaco.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlyuhczidp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjlywjcpweo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjmichajodp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjmiciajsep.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjmicjdpieo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjmicmcpmco.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjmicnczggp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjmicnd5wcp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjmicpcpwbp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjmiepc5ckp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjmikgcpwko.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjmiohdzkhp.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjmiolcpafo.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjmisndjifq.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjmiuldzwcq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\administrator@e-2dj6wjmiwkcpmlp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Administrator\Cookies\adminis

#8 TexasPrairieGal

TexasPrairieGal
  • Topic Starter

  • Members
  • 26 posts
  • OFFLINE
  •  
  • Local time:10:46 AM

Posted 01 November 2006 - 12:43 AM

This is #3... the new HijackThis log:

Logfile of HijackThis v1.99.1
Scan saved at 11:34:30 PM, on 10/31/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Aclient\AClient.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
C:\Program Files\Aclient\AClntUsr.EXE
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe
C:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb12.exe
C:\Program Files\Messenger\msmsgs.exe
c:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnf.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Nikon\NkView5\NkvMon.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Outlook Express\msimn.exe
C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Google\GoogleToolbarNotifier\1.2.908.5008\GoogleToolbarNotifier.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\Program Files\HijackThis\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://clusty.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.hp.com/
R3 - URLSearchHook: (no name) - {BE89472C-B803-4D1D-9A9A-0A63660E0FE3} - C:\PROGRA~1\COPERN~1\COPERN~1.DLL
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: CNisExtBho Class - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: CNavExtBho Class - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: Norton Internet Security 2006 - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Copernic Agent - {F2E259E8-0FC8-438C-A6E0-342DD80FA53E} - C:\Program Files\Copernic Agent\CopernicAgentExt.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Smapp] C:\Program Files\Analog Devices\SoundMAX\SMTray.exe
O4 - HKLM\..\Run: [SetRefresh] C:\Program Files\Compaq\SetRefresh\SetRefresh.exe
O4 - HKLM\..\Run: [AClntUsr] C:\Program Files\Aclient\AClntUsr.EXE
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd.exe"
O4 - HKLM\..\Run: [Share-to-Web Namespace Daemon] c:\Program Files\Hewlett-Packard\HP Share-to-Web\hpgs2wnd.exe
O4 - HKLM\..\Run: [OpwareSE2] "C:\Program Files\ScanSoft\OmniPageSE2.0\OpwareSE2.exe"
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb12.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: NkvMon.exe.lnk = C:\Program Files\Nikon\NkView5\NkvMon.exe
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Search Using Copernic Agent - res://C:\Program Files\Copernic Agent\CopernicAgentExt.dll/INTEGRATION_MENU_SEARCHEXT
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: (no name) - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra 'Tools' menuitem: Launch Copernic Agent - {193B17B0-7C9F-4D5B-AEAB-8D3605EFC084} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: Copernic Agent - {688DC797-DC11-46A7-9F1B-445F4F58CE6E} - C:\PROGRA~1\COPERN~1\COPERN~1.EXE
O9 - Extra button: (no name) - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra 'Tools' menuitem: Uninstall BitDefender Online Scanner v8 - {85d1f590-48f4-11d9-9669-0800200c9a66} - %windir%\bdoscandel.exe (file missing)
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - https://www-secure.symantec.com/techsupp/as...rl/LSSupCtl.cab
O16 - DPF: {26CBF141-7D0F-46E1-AA06-718958B6E4D2} - http://download.ebay.com/turbo_lister/US/install.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {5D86DDB5-BDF9-441B-9E9E-D4730F4EE499} (BDSCANONLINE Control) - http://download.bitdefender.com/resources/scan8/oscan8.cab
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (Windows Live Safety Center Base Module) - http://cdn.scan.safety.live.com/resource/d...wlscbase969.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat...b?1161641192953
O16 - DPF: {AB86CE53-AC9F-449F-9399-D8ABCA09EC09} (Get_ActiveX Control) - https://h17000.www1.hp.com/ewfrf-JAVA/Secur...loadManager.ocx
O16 - DPF: {B020B534-4AA2-4B99-BD6D-5F6EE286DF5C} (Symantec Download Bridge) - https://a248.e.akamai.net/f/248/5462/2h/www...ol/SymDlBrg.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Altiris Client Service (AClient) - Altiris, Inc. - C:\Program Files\Aclient\AClient.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\ccPwdSvc.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Norton Internet Security\comHost.exe
O23 - Service: HP Port Resolver - Hewlett-Packard Company - C:\WINDOWS\system32\hpbpro.exe
O23 - Service: HP Status Server - Hewlett-Packard Company - C:\WINDOWS\system32\hpboid.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: SoundMAX Agent Service (SoundMAX Agent Service (default)) - Analog Devices, Inc. - C:\Program Files\Analog Devices\SoundMAX\SMAgent.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe

#9 TexasPrairieGal

TexasPrairieGal
  • Topic Starter

  • Members
  • 26 posts
  • OFFLINE
  •  
  • Local time:10:46 AM

Posted 01 November 2006 - 12:57 AM

You Do realize it's Halloween....????
I hope that isn't "THE BAD THING"....

Waaaaaaaaaaaaa

#10 SifuMike

SifuMike

    malware expert


  • Members
  • 15,385 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Vancouver (not BC) WA (Not DC) USA
  • Local time:08:46 AM

Posted 01 November 2006 - 01:20 AM

You Do realize it's Halloween....????
I hope that isn't "THE BAD THING"....


How could I forget, the doorbell has been ringing all evening. Must have had 20 trick or treaters.. mostly little nippers with their parents. :thumbsup:

Edited by SifuMike, 01 November 2006 - 01:24 AM.

If I've saved you time & money,
please make a donation so I can keep helping people just like you! You can donate using a credit card and PayPal. Thank you!



Posted Image

Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.

#11 SifuMike

SifuMike

    malware expert


  • Members
  • 15,385 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Vancouver (not BC) WA (Not DC) USA
  • Local time:08:46 AM

Posted 01 November 2006 - 01:23 AM

Hi TexasPrairieGal,

Looks like those scans removed some malware. :thumbsup: I dont see any malware in your log, but we can do some cleanup.

Download CCleaner and install it. (default location is best). Do not run it yet!

CCleaner Tutorial


*******************************************

How to Reboot into Safe Mode
tap F8 key during reboot, until the boot menu appears...use the arrow keys to choose "Safe Mode" from the menu......,then press the "Enter" key. If that does not work this go to this site: http://www.bleepingcomputer.com/tutorials/how-to-start-windows-in-safe-mode/



Please boot into Safe Mode and select the following with HijackThis.
With all windows (including this one!) closed (close browser/explorer windows), please select "fix.
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)

The following are not necessarily spyware/malware, but I suggest you place a check mark next to the following entries, as these programs may be taking up system resources.

O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
(Description: Intel hotkey applet. Unnecessary. Removing this will free up a small amount of system resources.)

O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
(Description: Sun Java update scheduler. Checks for updates. Not necessary. Removing this entry will free up a small amount of system resources.)

O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
(Description: Microsoft Office Startup Assistant. This program loads some Microsoft Office components into memory, even if you're not currently using MS Office. Removing this unnecessary program will free up a considerable amount of system resources. )

*******************************************

*NOTE* CCleaner deletes EVERYTHING out of temp/temporary folders and does not make backups.

Let's empty the temp files:

Run CCleaner.

1. Starting with v1.27.260, CCleaner installs the Yahoo Toolbar as an option which IS checkmarked by default during the installation.
IF you do NOT want it, REMOVE the checkmark when provided with the option OR download the toolbarfree Basic version instead of the Standard Build.


2. Before first use, select Options > Advanced and UNCHECK "Only delete files in Windows Temp folder older than 48 hours"

3. Then select the items you wish to clean up.

In the Windows Tab:
Clean all entries in the "Internet Explorer" section except Cookies.
Clean all the entries in the "Windows Explorer" section.
Clean all entries in the "System" section.
Clean all entries in the "Advanced" section.
Clean any others that you choose.

In the Applications Tab:
Clean all except cookies in the Firefox/Mozilla section if you use it.
Clean all in the Opera section if you use it.
Clean Sun Java in the Internet Section.
Clean any others that you choose.

4. Click the "Run Cleaner" button.
5. A pop up box will appear advising this process will permanently delete files from your system.
6. Click "OK" and it will scan and clean your system.
7. Click "exit" when done.

If it asks you to reboot at the end, click NO.

CCleaner should be run with the above settings for each User Account!

*******************************************

Finally, reboot to the Normal Mode and post a new Hijackthis log, and tell me how your computer is running.

Edited by SifuMike, 01 November 2006 - 01:26 AM.

If I've saved you time & money,
please make a donation so I can keep helping people just like you! You can donate using a credit card and PayPal. Thank you!



Posted Image

Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.

#12 TexasPrairieGal

TexasPrairieGal
  • Topic Starter

  • Members
  • 26 posts
  • OFFLINE
  •  
  • Local time:10:46 AM

Posted 01 November 2006 - 01:47 AM

Not a single trick-or-treater here... Our closest neighbor is at least 1/2 mile away, and it's COLD outside (plus now it's tomorrow already)...

Too late to tackle anything more this evening...
But I do have a question... Exactly what is it that I need to "cleanup"???
Is any of it something that would create this problem for me when using T-Lab wireless internet but NOT when using Satellite or Dial-up internet service? I am sooooo frustrated!!

I will tell you that even after I doing any cleanup, telling you how my 'puter is running won't tell you much at all... It runs totally awesome until it hangs up.. Been lucky for the last 26 hours... Hasn't happened once.. But as soon as I relax I know I'll get stalled again... It's just so freaking :thumbsup:

:flowers:

#13 TexasPrairieGal

TexasPrairieGal
  • Topic Starter

  • Members
  • 26 posts
  • OFFLINE
  •  
  • Local time:10:46 AM

Posted 01 November 2006 - 01:48 AM

OK.... bed now, then tomorrow.... TRASH DAY (cleanup)

Thanks soooooooo much for hanging in there with me

#14 SifuMike

SifuMike

    malware expert


  • Members
  • 15,385 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Vancouver (not BC) WA (Not DC) USA
  • Local time:08:46 AM

Posted 01 November 2006 - 08:55 AM

Hi TexasPrairieGal,

Exactly what is it that I need to "cleanup"???
Is any of it something that would create this problem for me when using T-Lab wireless internet but NOT when using Satellite or Dial-up internet service?



You need to cleanup some items in the hijackthis log that were leftovers in registry. This is just general housekeeping.
No, IMHO it is not something that would be creating problem for you when using T-Lab wireless internet but NOT when using Satellite or Dial-up internet service
Also, running CCleaner will clean your temp files.

We are going to make sure your problem is not malware related first.

Edited by SifuMike, 01 November 2006 - 08:57 AM.

If I've saved you time & money,
please make a donation so I can keep helping people just like you! You can donate using a credit card and PayPal. Thank you!



Posted Image

Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.

#15 SifuMike

SifuMike

    malware expert


  • Members
  • 15,385 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:Vancouver (not BC) WA (Not DC) USA
  • Local time:08:46 AM

Posted 01 November 2006 - 02:30 PM

Hi TexasPrairieGal,

Upgrade to IE7 as it is finally out of beta. :thumbsup: Do you have IE7 on your other computers that work OK?


Let's dig deeper. :flowers:

1. Download this file - combofix.exe
2. Double click combofix.exe & follow the prompts.
3. When finished, it shall produce a log for you. Post that log in your next reply

Notes:
Do not mouseclick combofix's window while it's running. That may cause it to stall
Disable script blocking if you have Norton Antivirus installed so it will not interfere with the fix. Trojan Hunter has been reported to detect combofix as Worm.Qiv.100.

Edited by SifuMike, 01 November 2006 - 10:30 PM.

If I've saved you time & money,
please make a donation so I can keep helping people just like you! You can donate using a credit card and PayPal. Thank you!



Posted Image

Asking for help via Private Message or Mail will be ignored - So If you need help, post your problem in the forum.




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users