Jump to content

Hijak This Log


phrack3r

Recommended Posts

ok i got hacked the other no idea how since i didnt download anything then next thing i kno i got hack changed pass and everything got hacked again so what should i delet with this HijakThis log thnx all.

 

 

 

 

 

 

 

 

 

 

 

Logfile of HijackThis v1.99.1

 

 

 

Scan saved at 1:40:48 PM, on 2/17/2007

 

 

 

Platform: Windows XP SP2 (WinNT 5.01.2600)

 

 

 

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

 

 

 

 

 

 

 

Running processes:

 

 

 

C:\WINDOWS\System32\smss[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\winlogon[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\services[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\lsass[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\svchost[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\System32\svchost[Caution: ExecutableFile]

 

 

 

C:\Program Files\Common Files\Symantec Shared\ccSetMgr[Caution: ExecutableFile]

 

 

 

C:\Program Files\Common Files\Symantec Shared\ccEvtMgr[Caution: ExecutableFile]

 

 

 

C:\Program Files\CyberLink\PowerDVD\PDVDServ[Caution: ExecutableFile]

 

 

 

C:\Program Files\Common Files\Symantec Shared\ccApp[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\zHotkey[Caution: ExecutableFile]

 

 

 

C:\Program Files\Digital Media Reader\shwiconem[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\SOUNDMAN[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\ALCWZRD[Caution: ExecutableFile]

 

 

 

C:\Program Files\HP\hpcoretech\hpcmpmgr[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb10[Caution: ExecutableFile]

 

 

 

C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2[Caution: ExecutableFile]

 

 

 

C:\Program Files\MessengerPlus! 3\MsgPlus[Caution: ExecutableFile]

 

 

 

C:\Program Files\Common Files\Real\Update_OB\realsched[Caution: ExecutableFile]

 

 

 

C:\Program Files\iTunes\iTunesHelper[Caution: ExecutableFile]

 

 

 

C:\Program Files\Java\jre1.5.0_10\bin\jusched[Caution: ExecutableFile]

 

 

 

C:\Program Files\Internet Explorer\iexplore[Caution: ExecutableFile]

 

 

 

C:\Program Files\BigFix\BigFix[Caution: ExecutableFile]

 

 

 

c:\progra~1\intern~1\iexplore[Caution: ExecutableFile]

 

 

 

C:\Program Files\Lavasoft\Personal Firewall\lpfw[Caution: ExecutableFile]

 

 

 

C:\Program Files\Norton AntiVirus\navapsvc[Caution: ExecutableFile]

 

 

 

C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC[Caution: ExecutableFile]

 

 

 

C:\Program Files\iPod\bin\iPodService[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\wscntfy[Caution: ExecutableFile]

 

 

 

C:\Program Files\Norton AntiVirus\SAVScan[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\spoolsv[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\svchost[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\wuauclt[Caution: ExecutableFile]

 

 

 

C:\Program Files\Mozilla Firefox\firefox[Caution: ExecutableFile]

 

 

 

C:\Program Files\WinRAR\WinRAR[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\explorer[Caution: ExecutableFile]

 

 

 

C:\Program Files\Messenger\msmsgs[Caution: ExecutableFile]

 

 

 

C:\DOCUME~1\Owner\LOCALS~1\Temp\Rar$EX06.984\HijackThis[Caution: ExecutableFile]

 

 

 

 

 

 

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gateway.com/

 

 

 

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.gateway.com

 

 

 

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)

 

 

 

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll

 

 

 

O2 - BHO: (no name) - {549B5CA7-4A86-11D7-A4DF-000874180BB3} - (no file)

 

 

 

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll

 

 

 

O2 - BHO: (no name) - {7D258670-C8F6-11B7-4BAE-6A0AACF7FD67} - C:\DOCUME~1\Owner\APPLIC~1\EGGSRO~1\knob platform[Caution: ExecutableFile] (file missing)

 

 

 

O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll

 

 

 

O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll

 

 

 

O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file)

 

 

 

O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll

 

 

 

O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAudPropShortcut[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ[Caution: ExecutableFile]"

 

 

 

O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp[Caution: ExecutableFile]"

 

 

 

O4 - HKLM\..\Run: [NAV CfgWiz] C:\Program Files\Common Files\Symantec Shared\CfgWiz[Caution: ExecutableFile] /GUID NAV /CMDLINE "REBOOT"

 

 

 

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [CHotkey] zHotkey[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [showWnd] ShowWnd[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [sunKistEM] C:\Program Files\Digital Media Reader\shwiconem[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [soundMan] SOUNDMAN[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [Alcmtr] ALCMTR[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon[Caution: ExecutableFile] /Consumer

 

 

 

O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr[Caution: ExecutableFile]"

 

 

 

O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb10[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2[Caution: ExecutableFile]"

 

 

 

O4 - HKLM\..\Run: [MessengerPlus3] "C:\Program Files\MessengerPlus! 3\MsgPlus[Caution: ExecutableFile]"

 

 

 

O4 - HKLM\..\Run: [Open Warn Face Part] C:\Documents and Settings\All Users\Application Data\DEBUGBROWSEOPENWARN\mp3drv[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched[Caution: ExecutableFile]" -osboot

 

 

 

O4 - HKLM\..\Run: [Personal Firewall] C:\Program Files\Lavasoft\Personal Firewall\lpfw[Caution: ExecutableFile] /waitservice

 

 

 

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask[Caution: ExecutableFile]" -atboottime

 

 

 

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper[Caution: ExecutableFile]"

 

 

 

O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_10\bin\jusched[Caution: ExecutableFile]

 

 

 

O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr[Caution: ExecutableFile]" /background

 

 

 

O4 - HKCU\..\Run: [balm Play] C:\DOCUME~1\Owner\APPLIC~1\GLOBAL~1\longforkintra[Caution: ExecutableFile]

 

 

 

O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype[Caution: ExecutableFile]" /nosplash /minimized

 

 

 

O4 - HKCU\..\Run: [steam] "c:\program files\valve\steam\steam[Caution: ExecutableFile]" -silent

 

 

 

O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader[Caution: ExecutableFile]

 

 

 

O4 - Startup: HotSync Manager.lnk = C:\Program Files\palmOne\HOTSYNC[Caution: ExecutableFile]

 

 

 

O4 - Global Startup: BigFix.lnk = C:\Program Files\BigFix\BigFix[Caution: ExecutableFile]

 

 

 

O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML

 

 

 

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll

 

 

 

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll

 

 

 

O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim[Caution: ExecutableFile]

 

 

 

O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)

 

 

 

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs[Caution: ExecutableFile]

 

 

 

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs[Caution: ExecutableFile]

 

 

 

O14 - IERESET.INF: START_PAGE_URL=http://www.gateway.com

 

 

 

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)

 

 

 

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

 

 

 

O20 - AppInit_DLLs: C:\PROGRA~1\Lavasoft\PERSON~1\wl_hook.dll

 

 

 

O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll

 

 

 

O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

 

 

 

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll

 

 

 

O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc[Caution: ExecutableFile]

 

 

 

O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr[Caution: ExecutableFile]

 

 

 

O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc[Caution: ExecutableFile]

 

 

 

O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr[Caution: ExecutableFile]

 

 

 

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT[Caution: ExecutableFile]

 

 

 

O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService[Caution: ExecutableFile]

 

 

 

O23 - Service: Lavasoft Personal Firewall Service (LavasoftFirewall) - Agnitum Ltd. - C:\Program Files\Lavasoft\Personal Firewall\lpfw[Caution: ExecutableFile]

 

 

 

O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc[Caution: ExecutableFile]

 

 

 

O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd[Caution: ExecutableFile]" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)

 

 

 

O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan[Caution: ExecutableFile]

 

 

 

O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ[Caution: ExecutableFile]

 

 

 

O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc[Caution: ExecutableFile]

 

 

 

O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC[Caution: ExecutableFile]

elfsiggylw3.jpg
Link to comment
Share on other sites

===

 

 

 

Step 1

 

 

 

====

 

 

 

Move HiJackthis out of the temp. Preferably to it's own folder, somewhere on the desktop.

 

 

 

 

 

 

 

====

 

 

 

Step 2

 

 

 

====

 

 

 

 

 

 

 

Download NoLop to your desktop from one of the links below...

 

 

 

]Link 1

 

 

 

Link 2

 

 

 

Link 3


  •  
     
     
    [*:3n1bsp95]First close any other programs you have running as this will require a reboot
     
     
     
    [*:3n1bsp95]Double click NoLop[Caution: ExecutableFile] to run it

    •  
       
       
      [*:3n1bsp95]Carefully type or copy and paste this series of characters into the lower text area labelled Insert CLSID Here. Include the {}:
       
       
       
       
       
       
       
      {7D258670-C8F6-11B7-4BAE-6A0AACF7FD67}

 

 

 

[*:3n1bsp95]Now click the button labelled "Search and Destroy"

 

 

 

<>

 

 

 

[*:3n1bsp95] When scanning is finished you will be prompted to reboot only if infected, Click OK

 

 

 

[*:3n1bsp95] Now click the "REBOOT" Button.

 

 

 

[*:3n1bsp95] A Message should popup from NoLop. If not, double click the program again and it will finish Please Post the contents of C:\NoLop.log along with a fresh HijackThis log

--If you receive an error, "mscomctl.ocx or one of its dependencies are not correctly registered," please download mscomctl.ocx to your system32 folder then rerun the program. --

 

 

 

 

 

 

 

=====

 

 

 

Step 3

 

 

 

=====

 

 

 

Post a new HJT log and the nolop log.

 

 

 

 

 

 

 

Edit...woops typo...

Link to comment
Share on other sites

ok thnx and here we starting with NoLop log....

 

 

 

 

 

 

 

 

 

 

 

Fix running from: C:\Documents and Settings\Owner\Desktop

 

 

 

[2/17/2007]

 

 

 

[4]

 

 

 

 

 

 

 

---Infection Files Found/Removed---

 

 

 

C:\Documents and Settings\Owner\Application Data\Global multi\longforkintra[Caution: ExecutableFile]

 

 

 

C:\Documents and Settings\All Users\Application Data\DEBUGBROWSEOPENWARN\mp3drv[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\tasks\B9BC601F832C16D7.job

 

 

 

 

 

 

 

HJT Log:

 

 

 

 

 

 

 

Logfile of HijackThis v1.99.1

 

 

 

Scan saved at 4:20:46 PM, on 2/17/2007

 

 

 

Platform: Windows XP SP2 (WinNT 5.01.2600)

 

 

 

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

 

 

 

 

 

 

 

Running processes:

 

 

 

C:\WINDOWS\System32\smss[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\winlogon[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\services[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\lsass[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\svchost[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\System32\svchost[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\ZoneLabs\vsmon[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\Explorer[Caution: ExecutableFile]

 

 

 

C:\Program Files\Common Files\Symantec Shared\ccSetMgr[Caution: ExecutableFile]

 

 

 

C:\Program Files\Common Files\Symantec Shared\ccEvtMgr[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\spoolsv[Caution: ExecutableFile]

 

 

 

C:\Program Files\Lavasoft\Personal Firewall\lpfw[Caution: ExecutableFile]

 

 

 

C:\Program Files\Norton AntiVirus\navapsvc[Caution: ExecutableFile]

 

 

 

C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC[Caution: ExecutableFile]

 

 

 

C:\Program Files\Norton AntiVirus\SAVScan[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\wscntfy[Caution: ExecutableFile]

 

 

 

C:\Program Files\CyberLink\PowerDVD\PDVDServ[Caution: ExecutableFile]

 

 

 

C:\Program Files\Common Files\Symantec Shared\ccApp[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\zHotkey[Caution: ExecutableFile]

 

 

 

C:\Program Files\Digital Media Reader\shwiconem[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\SOUNDMAN[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\ALCWZRD[Caution: ExecutableFile]

 

 

 

C:\Program Files\HP\hpcoretech\hpcmpmgr[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb10[Caution: ExecutableFile]

 

 

 

C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2[Caution: ExecutableFile]

 

 

 

C:\Program Files\Common Files\Real\Update_OB\realsched[Caution: ExecutableFile]

 

 

 

C:\Program Files\Internet Explorer\iexplore[Caution: ExecutableFile]

 

 

 

C:\Program Files\iTunes\iTunesHelper[Caution: ExecutableFile]

 

 

 

C:\Program Files\Java\jre1.5.0_10\bin\jusched[Caution: ExecutableFile]

 

 

 

C:\Program Files\Zone Labs\ZoneAlarm\zlclient[Caution: ExecutableFile]

 

 

 

C:\Program Files\iPod\bin\iPodService[Caution: ExecutableFile]

 

 

 

c:\progra~1\intern~1\iexplore[Caution: ExecutableFile]

 

 

 

C:\Program Files\BigFix\BigFix[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\wuauclt[Caution: ExecutableFile]

 

 

 

C:\Program Files\Mozilla Firefox\firefox[Caution: ExecutableFile]

 

 

 

C:\Program Files\Messenger\msmsgs[Caution: ExecutableFile]

 

 

 

C:\Documents and Settings\Owner\Desktop\pjs stuff\HijackThis[Caution: ExecutableFile]

 

 

 

 

 

 

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gateway.com/

 

 

 

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.gateway.com

 

 

 

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)

 

 

 

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll

 

 

 

O2 - BHO: (no name) - {549B5CA7-4A86-11D7-A4DF-000874180BB3} - (no file)

 

 

 

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll

 

 

 

O2 - BHO: (no name) - {7D258670-C8F6-11B7-4BAE-6A0AACF7FD67} - C:\DOCUME~1\Owner\APPLIC~1\EGGSRO~1\knob platform[Caution: ExecutableFile] (file missing)

 

 

 

O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll

 

 

 

O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll

 

 

 

O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file)

 

 

 

O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll

 

 

 

O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAudPropShortcut[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ[Caution: ExecutableFile]"

 

 

 

O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp[Caution: ExecutableFile]"

 

 

 

O4 - HKLM\..\Run: [NAV CfgWiz] C:\Program Files\Common Files\Symantec Shared\CfgWiz[Caution: ExecutableFile] /GUID NAV /CMDLINE "REBOOT"

 

 

 

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [CHotkey] zHotkey[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [showWnd] ShowWnd[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [sunKistEM] C:\Program Files\Digital Media Reader\shwiconem[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [soundMan] SOUNDMAN[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [Alcmtr] ALCMTR[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon[Caution: ExecutableFile] /Consumer

 

 

 

O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr[Caution: ExecutableFile]"

 

 

 

O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb10[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2[Caution: ExecutableFile]"

 

 

 

O4 - HKLM\..\Run: [Open Warn Face Part] C:\Documents and Settings\All Users\Application Data\DEBUGBROWSEOPENWARN\mp3drv[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched[Caution: ExecutableFile]" -osboot

 

 

 

O4 - HKLM\..\Run: [Personal Firewall] C:\Program Files\Lavasoft\Personal Firewall\lpfw[Caution: ExecutableFile] /waitservice

 

 

 

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask[Caution: ExecutableFile]" -atboottime

 

 

 

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper[Caution: ExecutableFile]"

 

 

 

O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_10\bin\jusched[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [iSS_SIP] C:\Program Files\Anti Keylogger Elite\AKE[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [sTDL] C:\WINDOWS\system32\stub[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient[Caution: ExecutableFile]"

 

 

 

O4 - HKCU\..\Run: [balm Play] C:\DOCUME~1\Owner\APPLIC~1\GLOBAL~1\longforkintra[Caution: ExecutableFile]

 

 

 

O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype[Caution: ExecutableFile]" /nosplash /minimized

 

 

 

O4 - HKCU\..\Run: [steam] "c:\program files\valve\steam\steam[Caution: ExecutableFile]" -silent

 

 

 

O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader[Caution: ExecutableFile]

 

 

 

O4 - Startup: HotSync Manager.lnk = C:\Program Files\palmOne\HOTSYNC[Caution: ExecutableFile]

 

 

 

O4 - Startup: Project1.lnk = C:\WINDOWS\system32\Stub[Caution: ExecutableFile]

 

 

 

O4 - Global Startup: BigFix.lnk = C:\Program Files\BigFix\BigFix[Caution: ExecutableFile]

 

 

 

O4 - Global Startup: NoLop[Caution: ExecutableFile]

 

 

 

O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML

 

 

 

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll

 

 

 

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll

 

 

 

O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim[Caution: ExecutableFile]

 

 

 

O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)

 

 

 

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs[Caution: ExecutableFile]

 

 

 

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs[Caution: ExecutableFile]

 

 

 

O14 - IERESET.INF: START_PAGE_URL=http://www.gateway.com

 

 

 

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)

 

 

 

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

 

 

 

O20 - AppInit_DLLs: C:\PROGRA~1\Lavasoft\PERSON~1\wl_hook.dll

 

 

 

O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll

 

 

 

O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

 

 

 

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll

 

 

 

O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc[Caution: ExecutableFile]

 

 

 

O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr[Caution: ExecutableFile]

 

 

 

O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc[Caution: ExecutableFile]

 

 

 

O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr[Caution: ExecutableFile]

 

 

 

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT[Caution: ExecutableFile]

 

 

 

O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService[Caution: ExecutableFile]

 

 

 

O23 - Service: Lavasoft Personal Firewall Service (LavasoftFirewall) - Agnitum Ltd. - C:\Program Files\Lavasoft\Personal Firewall\lpfw[Caution: ExecutableFile]

 

 

 

O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc[Caution: ExecutableFile]

 

 

 

O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd[Caution: ExecutableFile]" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)

 

 

 

O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan[Caution: ExecutableFile]

 

 

 

O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ[Caution: ExecutableFile]

 

 

 

O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc[Caution: ExecutableFile]

 

 

 

O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC[Caution: ExecutableFile]

 

 

 

O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon[Caution: ExecutableFile]

 

 

 

 

 

 

 

Thnx again

elfsiggylw3.jpg
Link to comment
Share on other sites

o.0 that's a bit shorter than I've expected... Did you follow my previous instructions fully?

 

 

 

 

 

 

 

You might want to print this off or save it to your computer, since you'll need to go into safemode for some parts of the fix.

 

 

 

 

 

 

 

====

 

 

 

Step 1

 

 

 

====

 

 

 

 

 

 

 

Download AVG Anti-Spyware from ]HERE and save that file to your desktop.

 

 

 


  1.  
     
     
    [*:30zpfedu]Once you have downloaded AVG Anti-Spyware, locate the icon on the desktop and double-click it to launch the set up program.
     
     
     
    [*:30zpfedu]Once the setup is complete you will need run AVG Anti-Spyware and update the definition files.
     
     
     
    [*:30zpfedu]On the main screen select the icon "Update" then select the "Update now" link.

  •  
     
     
    [*:30zpfedu]Next select the "Start Update" button, the update will start and a progress bar will show the updates being installed.

 

 

 

[*:30zpfedu]Once the update has completed select the "Scanner" icon at the top of the screen, then select the "Settings" tab.

 

 

 

[*:30zpfedu]Once in the Settings screen click on "Recommended actions" and then select "Quarantine".

 

 

 

[*:30zpfedu]Under "Reports"


  •  
     
     
    [*:30zpfedu]Select "Automatically generate report after every scan"
     
     
     
    [*:30zpfedu]Un-Select "Only if threats were found"

Close AVG Anti-Spyware, Do Not run a scan just yet, we will shortly.

 

 

 

 

 

 

 

====

 

 

 

Step 2

 

 

 

====

 

 

 

 

 

 

 

Re-open hijackthis and fix the following:

 

 

 

 

 

 

 

O2 - BHO: (no name) - {549B5CA7-4A86-11D7-A4DF-000874180BB3} - (no file) O2 - BHO: (no name) - {7D258670-C8F6-11B7-4BAE-6A0AACF7FD67} - C:\DOCUME~1\Owner\APPLIC~1\EGGSRO~1\knob platform[Caution] (file missing)

 

 

 

O4 - HKLM\..\Run: [showWnd] ShowWnd[Caution]

 

 

 

O4 - HKLM\..\Run: [Open Warn Face Part] C:\Documents and Settings\All Users\Application Data\DEBUGBROWSEOPENWARN\mp3drv[Caution]

 

 

 

O4 - HKLM\..\Run: [sTDL] C:\WINDOWS\system32\stub[Caution: ExecutableFile]

 

 

 

O4 - HKCU\..\Run: [balm Play] C:\DOCUME~1\Owner\APPLIC~1\GLOBAL~1\longforkintra[Caution]

 

 

 

O4 - Startup: Project1.lnk = C:\WINDOWS\system32\Stub[Caution]

 

 

 

 

 

 

 

close all windows other than HiJackThis, then click Fix Checked. Close HiJackThis. Reboot into safe mode.

 

 

 

 

 

 

 

Using Windows Explorer (to get there right-click your Start button and go to "Explore"), please delete these files (if present):

 

 

 

 

 

 

 

 

 

 

C:\WINDOWS\system32\Stub[Caution: ExecutableFile]

 

 

 

C:\System32\ShowWnd[Caution: ExecutableFile]

 

 

 

 

 

 

 


  1.  
     
     
    IMPORTANT: Do not open any other windows or programs while AVG Anti-Spyware is scanning, it may interfere with the scanning proccess:
     
     
     
    [*:30zpfedu]Lauch AVG Anti-Spyware by double-clicking the icon on your desktop.
     
     
     
    [*:30zpfedu]Select the "Scanner" icon at the top and then the "Scan" tab then click on "Complete System Scan".
     
     
     
    [*:30zpfedu]AVG Anti-Spyware will now begin the scanning process, be patient this may take a little time.
     
     
     
    Once the scan is complete do the following:
     
     
     
    [*:30zpfedu]If you have any infections you will prompted, then select "Apply all actions"
     
     
     
    [*:30zpfedu]Next select the "Reports" icon at the top.
     
     
     
    [*:30zpfedu]Select the "Save report as" button in the lower left hand of the screen and save it to a text file on your system (make sure to remember where you saved that file, this is important).
     
     
     
    [*:30zpfedu]Close AVG Anti-Spyware and reboot your system back into Normal Mode and post the results of the AVG Anti-Spyware report scan.

 

 

 

 

 

 

 

Next reply I would want to see the following:

 

 

 


  •  
     
     
    [*:30zpfedu]AVG antispyware report
     
     
     
    [*:30zpfedu]A New HJT log
     
     
     
    [*:30zpfedu]How your computer is

 

 

 

 

 

 

 

Note: [Caution] means .e xe (without the space). If you can't find a file don't delete anything.

Link to comment
Share on other sites

ive analysed your running processes and its all clear, :D, how ever the only concern i have is that you have 2 svchosts[Caution: ExecutableFile]'s running, this could be a problem as virus's have disguised themselves as this in the past, only htink i could recomend is scan these two files individualy.

 

 

 

 

 

 

 

hope this helps

Link to comment
Share on other sites

well everything said so far ive done so heres the HJT scan after cleaning everything as told....

 

 

 

 

 

 

 

Logfile of HijackThis v1.99.1

 

 

 

Scan saved at 6:38:27 PM, on 2/17/2007

 

 

 

Platform: Windows XP SP2 (WinNT 5.01.2600)

 

 

 

MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

 

 

 

 

 

 

 

Running processes:

 

 

 

C:\WINDOWS\System32\smss[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\winlogon[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\services[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\savedump[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\lsass[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\svchost[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\System32\svchost[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\ZoneLabs\vsmon[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\Explorer[Caution: ExecutableFile]

 

 

 

C:\Program Files\Common Files\Symantec Shared\ccSetMgr[Caution: ExecutableFile]

 

 

 

C:\Program Files\Common Files\Symantec Shared\ccEvtMgr[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\spoolsv[Caution: ExecutableFile]

 

 

 

C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard[Caution: ExecutableFile]

 

 

 

C:\Program Files\Norton AntiVirus\navapsvc[Caution: ExecutableFile]

 

 

 

C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC[Caution: ExecutableFile]

 

 

 

C:\Program Files\Norton AntiVirus\SAVScan[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\wscntfy[Caution: ExecutableFile]

 

 

 

C:\Program Files\CyberLink\PowerDVD\PDVDServ[Caution: ExecutableFile]

 

 

 

C:\Program Files\Common Files\Symantec Shared\ccApp[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\zHotkey[Caution: ExecutableFile]

 

 

 

C:\Program Files\Digital Media Reader\shwiconem[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\SOUNDMAN[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\ALCWZRD[Caution: ExecutableFile]

 

 

 

C:\Program Files\HP\hpcoretech\hpcmpmgr[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb10[Caution: ExecutableFile]

 

 

 

C:\Program Files\Messenger\msmsgs[Caution: ExecutableFile]

 

 

 

C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2[Caution: ExecutableFile]

 

 

 

C:\Program Files\Common Files\Real\Update_OB\realsched[Caution: ExecutableFile]

 

 

 

C:\Program Files\iTunes\iTunesHelper[Caution: ExecutableFile]

 

 

 

C:\Program Files\Java\jre1.5.0_10\bin\jusched[Caution: ExecutableFile]

 

 

 

C:\Program Files\iPod\bin\iPodService[Caution: ExecutableFile]

 

 

 

C:\Program Files\Zone Labs\ZoneAlarm\zlclient[Caution: ExecutableFile]

 

 

 

C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas[Caution: ExecutableFile]

 

 

 

C:\Program Files\BigFix\BigFix[Caution: ExecutableFile]

 

 

 

C:\WINDOWS\system32\wuauclt[Caution: ExecutableFile]

 

 

 

C:\Documents and Settings\Owner\Desktop\pjs stuff\HijackThis[Caution: ExecutableFile]

 

 

 

 

 

 

 

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.gateway.com/

 

 

 

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.gateway.com

 

 

 

R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)

 

 

 

O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll

 

 

 

O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll

 

 

 

O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll

 

 

 

O2 - BHO: FlashFXP Helper for Internet Explorer - {E5A1691B-D188-4419-AD02-90002030B8EE} - C:\PROGRA~1\FlashFXP\IEFlash.dll

 

 

 

O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file)

 

 

 

O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll

 

 

 

O4 - HKLM\..\Run: [High Definition Audio Property Page Shortcut] HDAudPropShortcut[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [RemoteControl] "C:\Program Files\CyberLink\PowerDVD\PDVDServ[Caution: ExecutableFile]"

 

 

 

O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp[Caution: ExecutableFile]"

 

 

 

O4 - HKLM\..\Run: [NAV CfgWiz] C:\Program Files\Common Files\Symantec Shared\CfgWiz[Caution: ExecutableFile] /GUID NAV /CMDLINE "REBOOT"

 

 

 

O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [CHotkey] zHotkey[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [sunKistEM] C:\Program Files\Digital Media Reader\shwiconem[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [soundMan] SOUNDMAN[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [Alcmtr] ALCMTR[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon[Caution: ExecutableFile] /Consumer

 

 

 

O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr[Caution: ExecutableFile]"

 

 

 

O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb10[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [HP Software Update] "C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2[Caution: ExecutableFile]"

 

 

 

O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched[Caution: ExecutableFile]" -osboot

 

 

 

O4 - HKLM\..\Run: [Personal Firewall] C:\Program Files\Lavasoft\Personal Firewall\lpfw[Caution: ExecutableFile] /waitservice

 

 

 

O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask[Caution: ExecutableFile]" -atboottime

 

 

 

O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper[Caution: ExecutableFile]"

 

 

 

O4 - HKLM\..\Run: [sunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_10\bin\jusched[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [iSS_SIP] C:\Program Files\Anti Keylogger Elite\AKE[Caution: ExecutableFile]

 

 

 

O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient[Caution: ExecutableFile]"

 

 

 

O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas[Caution: ExecutableFile]" /minimized

 

 

 

O4 - HKCU\..\Run: [skype] "C:\Program Files\Skype\Phone\Skype[Caution: ExecutableFile]" /nosplash /minimized

 

 

 

O4 - HKCU\..\Run: [steam] "c:\program files\valve\steam\steam[Caution: ExecutableFile]" -silent

 

 

 

O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader[Caution: ExecutableFile]

 

 

 

O4 - Startup: HotSync Manager.lnk = C:\Program Files\palmOne\HOTSYNC[Caution: ExecutableFile]

 

 

 

O4 - Global Startup: BigFix.lnk = C:\Program Files\BigFix\BigFix[Caution: ExecutableFile]

 

 

 

O4 - Global Startup: NoLop[Caution: ExecutableFile]

 

 

 

O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML

 

 

 

O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll

 

 

 

O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll

 

 

 

O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim[Caution: ExecutableFile]

 

 

 

O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)

 

 

 

O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs[Caution: ExecutableFile]

 

 

 

O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs[Caution: ExecutableFile]

 

 

 

O14 - IERESET.INF: START_PAGE_URL=http://www.gateway.com

 

 

 

O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)

 

 

 

O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL

 

 

 

O20 - AppInit_DLLs: C:\PROGRA~1\Lavasoft\PERSON~1\wl_hook.dll

 

 

 

O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll

 

 

 

O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll

 

 

 

O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll

 

 

 

O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc[Caution: ExecutableFile]

 

 

 

O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard[Caution: ExecutableFile]

 

 

 

O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr[Caution: ExecutableFile]

 

 

 

O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc[Caution: ExecutableFile]

 

 

 

O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr[Caution: ExecutableFile]

 

 

 

O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT[Caution: ExecutableFile]

 

 

 

O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService[Caution: ExecutableFile]

 

 

 

O23 - Service: Lavasoft Personal Firewall Service (LavasoftFirewall) - Agnitum Ltd. - C:\Program Files\Lavasoft\Personal Firewall\lpfw[Caution: ExecutableFile]

 

 

 

O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc[Caution: ExecutableFile]

 

 

 

O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - Unknown owner - %ProgramFiles%\WinPcap\rpcapd[Caution: ExecutableFile]" -d -f "%ProgramFiles%\WinPcap\rpcapd.ini (file missing)

 

 

 

O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan[Caution: ExecutableFile]

 

 

 

O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ[Caution: ExecutableFile]

 

 

 

O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc[Caution: ExecutableFile]

 

 

 

O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC[Caution: ExecutableFile]

 

 

 

O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon[Caution: ExecutableFile]

 

 

 

 

 

 

 

 

 

 

 

and the AVG Scan now:

 

 

 

 

 

 

 

---------------------------------------------------------

 

 

 

AVG Anti-Spyware - Scan Report

 

 

 

---------------------------------------------------------

 

 

 

 

 

 

 

+ Created at: 6:32:23 PM 2/17/2007

 

 

 

 

 

 

 

+ Scan result:

 

 

 

 

 

 

 

 

 

 

 

 

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP276\A0030371.dll -> Adware.SpyMarshal : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP276\A0030372.dll -> Adware.SpyMarshal : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP276\A0030373.dll -> Adware.SpyMarshal : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP276\A0030374.dll -> Adware.SpyMarshal : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP276\A0030369[Caution: ExecutableFile] -> Adware.Spysheriff : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP276\A0030378[Caution: ExecutableFile] -> Dialer.GBDialer.i : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP276\A0030385.dll -> Downloader.SFC.os : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP275\A0030346[Caution: ExecutableFile] -> Downloader.Small.dgk : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP276\A0030380[Caution: ExecutableFile] -> Downloader.Small.dgk : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP276\A0030382[Caution: ExecutableFile] -> Downloader.Small.dgk : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP275\A0028364[Caution: ExecutableFile] -> Downloader.Small.edb : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP276\A0030391[Caution: ExecutableFile] -> Downloader.Small.edb : Cleaned.

 

 

 

C:\WINDOWS\system32:lzx32.sys -> Hijacker.Costrat.z : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP328\A0036974[Caution: ExecutableFile] -> Logger.Ardamax.b : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP329\A0036981[Caution: ExecutableFile] -> Logger.Ardamax.b : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP338\A0038374[Caution: ExecutableFile] -> Logger.Ardamax.b : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP338\A0038376[Caution: ExecutableFile] -> Logger.Ardamax.b : Cleaned.

 

 

 

C:\Documents and Settings\Owner\Local Settings\Temp\setup_akl[Caution: ExecutableFile] -> Logger.Ardamax.e : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP328\A0036973[Caution: ExecutableFile] -> Logger.Ardamax.e : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP329\A0036985[Caution: ExecutableFile] -> Logger.Ardamax.e : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP329\A0036986[Caution: ExecutableFile] -> Logger.Ardamax.e : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP338\A0038372[Caution: ExecutableFile] -> Logger.Ardamax.e : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP338\A0038373[Caution: ExecutableFile] -> Logger.Ardamax.e : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP339\A0038554[Caution: ExecutableFile] -> Logger.Ardamax.e : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP339\A0038555[Caution: ExecutableFile] -> Logger.Ardamax.e : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP276\A0030387.dll -> Logger.Goldun.on : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP276\A0030381[Caution: ExecutableFile] -> Not-A-Virus.Hoax.Win32.Renos.fl : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP275\A0030345[Caution: ExecutableFile] -> Not-A-Virus.Hoax.Win32.Renos.gc : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP276\A0030388[Caution: ExecutableFile] -> Not-A-Virus.Hoax.Win32.Renos.gc : Cleaned.

 

 

 

:mozilla.557:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.

 

 

 

:mozilla.558:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.

 

 

 

:mozilla.559:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.

 

 

 

:mozilla.560:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.

 

 

 

:mozilla.321:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.322:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.324:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.325:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.326:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.327:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.328:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.329:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.330:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.331:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.332:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.333:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.334:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.335:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.336:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.337:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.338:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.339:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.340:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.341:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.342:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.343:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.344:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.345:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.346:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.347:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.348:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.349:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.350:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.351:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.352:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.353:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.354:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.355:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.356:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.357:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.358:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.359:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.360:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.361:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.362:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.363:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.364:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.365:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.366:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.367:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.368:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.369:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.370:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.371:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.549:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.706:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.709:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.835:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.

 

 

 

:mozilla.398:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.

 

 

 

:mozilla.399:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.

 

 

 

:mozilla.400:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.

 

 

 

:mozilla.401:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.

 

 

 

:mozilla.404:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.

 

 

 

:mozilla.465:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.

 

 

 

:mozilla.314:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Addynamix : Cleaned.

 

 

 

:mozilla.585:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.

 

 

 

:mozilla.586:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.

 

 

 

:mozilla.587:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Adjuggler : Cleaned.

 

 

 

:mozilla.563:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.

 

 

 

:mozilla.564:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.

 

 

 

:mozilla.565:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.

 

 

 

:mozilla.566:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.

 

 

 

:mozilla.567:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.

 

 

 

:mozilla.568:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.

 

 

 

:mozilla.570:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.

 

 

 

:mozilla.670:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.

 

 

 

:mozilla.671:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.

 

 

 

:mozilla.39:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.

 

 

 

:mozilla.40:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.

 

 

 

:mozilla.41:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.

 

 

 

:mozilla.42:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.

 

 

 

:mozilla.43:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.

 

 

 

:mozilla.93:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.

 

 

 

:mozilla.119:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.

 

 

 

:mozilla.72:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned.

 

 

 

:mozilla.67:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.

 

 

 

:mozilla.68:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.

 

 

 

:mozilla.69:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.

 

 

 

:mozilla.70:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.

 

 

 

:mozilla.71:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.

 

 

 

:mozilla.217:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.

 

 

 

:mozilla.218:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.

 

 

 

:mozilla.219:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.

 

 

 

:mozilla.220:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.

 

 

 

:mozilla.221:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.

 

 

 

:mozilla.222:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.

 

 

 

:mozilla.223:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.

 

 

 

:mozilla.224:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.

 

 

 

:mozilla.225:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.

 

 

 

:mozilla.226:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.

 

 

 

:mozilla.731:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned.

 

 

 

:mozilla.732:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned.

 

 

 

:mozilla.926:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned.

 

 

 

:mozilla.120:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Com : Cleaned.

 

 

 

:mozilla.468:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Coremetrics : Cleaned.

 

 

 

:mozilla.726:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned.

 

 

 

:mozilla.727:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned.

 

 

 

:mozilla.728:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned.

 

 

 

:mozilla.729:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Cpvfeed : Cleaned.

 

 

 

:mozilla.75:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.

 

 

 

:mozilla.785:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Estat : Cleaned.

 

 

 

:mozilla.666:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.

 

 

 

:mozilla.667:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.

 

 

 

:mozilla.668:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.

 

 

 

:mozilla.594:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.

 

 

 

:mozilla.595:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.

 

 

 

:mozilla.100:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.

 

 

 

:mozilla.101:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.

 

 

 

:mozilla.102:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.

 

 

 

:mozilla.103:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.

 

 

 

:mozilla.104:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.

 

 

 

:mozilla.99:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.

 

 

 

:mozilla.561:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.

 

 

 

:mozilla.302:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

 

 

 

:mozilla.303:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

 

 

 

:mozilla.304:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

 

 

 

:mozilla.305:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

 

 

 

:mozilla.306:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

 

 

 

:mozilla.307:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

 

 

 

:mozilla.308:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

 

 

 

:mozilla.309:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

 

 

 

:mozilla.310:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

 

 

 

:mozilla.416:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

 

 

 

:mozilla.417:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

 

 

 

:mozilla.516:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

 

 

 

:mozilla.517:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

 

 

 

:mozilla.518:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

 

 

 

:mozilla.542:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

 

 

 

:mozilla.604:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

 

 

 

:mozilla.605:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.

 

 

 

:mozilla.800:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Hotlog : Cleaned.

 

 

 

:mozilla.636:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Kmpads : Cleaned.

 

 

 

:mozilla.637:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Kmpads : Cleaned.

 

 

 

:mozilla.937:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.

 

 

 

:mozilla.938:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.

 

 

 

:mozilla.939:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned.

 

 

 

:mozilla.601:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Masterstats : Cleaned.

 

 

 

:mozilla.84:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.

 

 

 

:mozilla.85:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.

 

 

 

:mozilla.918:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Myaffiliateprogram : Cleaned.

 

 

 

:mozilla.941:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.

 

 

 

:mozilla.942:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.

 

 

 

:mozilla.943:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.

 

 

 

:mozilla.388:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Overture : Cleaned.

 

 

 

:mozilla.389:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Overture : Cleaned.

 

 

 

:mozilla.390:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Overture : Cleaned.

 

 

 

:mozilla.391:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Overture : Cleaned.

 

 

 

:mozilla.392:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Overture : Cleaned.

 

 

 

:mozilla.422:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.

 

 

 

:mozilla.423:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.

 

 

 

:mozilla.424:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.

 

 

 

:mozilla.425:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.

 

 

 

:mozilla.426:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.

 

 

 

:mozilla.427:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.

 

 

 

:mozilla.428:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.

 

 

 

:mozilla.429:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.

 

 

 

:mozilla.374:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.

 

 

 

:mozilla.375:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.

 

 

 

:mozilla.376:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.

 

 

 

:mozilla.377:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.

 

 

 

:mozilla.378:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.

 

 

 

:mozilla.379:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.

 

 

 

:mozilla.380:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.

 

 

 

:mozilla.189:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.

 

 

 

:mozilla.190:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.

 

 

 

:mozilla.191:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.

 

 

 

:mozilla.192:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.

 

 

 

:mozilla.193:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.

 

 

 

:mozilla.194:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.

 

 

 

:mozilla.195:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.

 

 

 

:mozilla.196:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.

 

 

 

:mozilla.197:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.

 

 

 

:mozilla.198:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.

 

 

 

:mozilla.596:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.

 

 

 

:mozilla.597:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.

 

 

 

:mozilla.598:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.

 

 

 

:mozilla.599:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.

 

 

 

:mozilla.508:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.

 

 

 

:mozilla.509:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.

 

 

 

:mozilla.510:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.

 

 

 

:mozilla.511:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.

 

 

 

:mozilla.512:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.

 

 

 

:mozilla.513:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.

 

 

 

:mozilla.488:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.

 

 

 

:mozilla.489:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.

 

 

 

:mozilla.490:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.

 

 

 

:mozilla.491:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.

 

 

 

:mozilla.492:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.

 

 

 

:mozilla.493:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.

 

 

 

:mozilla.494:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.

 

 

 

:mozilla.588:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.

 

 

 

:mozilla.590:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.

 

 

 

:mozilla.591:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.

 

 

 

:mozilla.592:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.

 

 

 

:mozilla.593:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.

 

 

 

:mozilla.455:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.

 

 

 

:mozilla.456:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.

 

 

 

:mozilla.457:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.

 

 

 

:mozilla.458:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.

 

 

 

:mozilla.459:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.

 

 

 

:mozilla.486:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.

 

 

 

:mozilla.487:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.

 

 

 

:mozilla.200:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.

 

 

 

:mozilla.201:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.

 

 

 

:mozilla.202:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.

 

 

 

:mozilla.203:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.

 

 

 

:mozilla.204:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.

 

 

 

:mozilla.205:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.

 

 

 

:mozilla.206:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.

 

 

 

:mozilla.207:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.

 

 

 

:mozilla.208:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.

 

 

 

:mozilla.117:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.

 

 

 

:mozilla.315:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.

 

 

 

:mozilla.105:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.

 

 

 

:mozilla.106:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.

 

 

 

:mozilla.107:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.

 

 

 

:mozilla.108:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.

 

 

 

:mozilla.110:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.

 

 

 

:mozilla.111:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.

 

 

 

:mozilla.112:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.

 

 

 

:mozilla.113:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.

 

 

 

:mozilla.114:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.

 

 

 

:mozilla.115:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.

 

 

 

:mozilla.116:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.

 

 

 

:mozilla.131:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.

 

 

 

:mozilla.132:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.

 

 

 

:mozilla.133:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.

 

 

 

:mozilla.134:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.

 

 

 

:mozilla.135:C:\Documents and Settings\Owner\Application Data\Mozilla\Firefox\Profiles\wjv31dn0.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP275\A0030342[Caution: ExecutableFile] -> Trojan.ProcKill.DJ : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP275\A0030344[Caution: ExecutableFile] -> Trojan.ProcKill.DJ : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP276\A0030383[Caution: ExecutableFile] -> Trojan.ProcKill.DJ : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP276\A0030384[Caution: ExecutableFile] -> Trojan.ProcKill.DJ : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP276\A0030389.dll -> Trojan.Sinowal.bh : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP276\A0030436[Caution: ExecutableFile] -> Trojan.Sinowal.bh : Cleaned.

 

 

 

C:\System Volume Information\_restore{C5941BA0-7954-431B-BB37-2E1ABEED1085}\RP276\A0030390.dll -> Trojan.Sinowal.br : Cleaned.

 

 

 

C:\Documents and Settings\Owner\Desktop\pjs stuff\PJ files\crap\music\01 Track 1.wma -> Trojan.Wimad.a : Cleaned.

 

 

 

C:\WINDOWS\system32\winccf32(2).dll -> Trojan.Zapchast.naj : Cleaned.

 

 

 

 

 

 

 

 

 

 

 

::Report end

 

 

 

 

 

 

 

i hope everything is fixed ill check up on this thread later thank you again lol

elfsiggylw3.jpg
Link to comment
Share on other sites

Log looks good, can't see anything wrong.

 

 

 

 

 

 

 

Most of the things detected by avg are harmless. Some of them are in your system restore points but I would just ignore them for now.

 

 

 

 

 

 

 

You can clear your restore points in a few days if everything is working again.

 

 

 

 

 

 

 

Clean this up. I'm not sure why it's still here. It should of gone when it rebooted.

 

 

 

 

 

 

 

O4 - Global Startup: NoLop[Caution]

Link to comment
Share on other sites

Create an account or sign in to comment

You need to be a member in order to leave a comment

Create an account

Sign up for a new account in our community. It's easy!

Register a new account

Sign in

Already have an account? Sign in here.

Sign In Now
×
×
  • Create New...

Important Information

By using this site, you agree to our Terms of Use.