PDA

View Full Version : Smitfraud or Zlob


Kev107
11-01-2006, 08:37 PM
I am infected with one of those trojans or viruses that puts "Online security Guide" on my desktop and something keeps flashing saying my computer is infected. I am told by my 16 year old that the program is "Issearch". Can someone please help? Thank you so much!

Kevin

Kev107
11-01-2006, 08:58 PM
Double post...

mjc
11-01-2006, 09:34 PM
We will need more information, including, at least, a HijackThis (http://merijn.org/programs.php) log.

Kev107
11-01-2006, 09:47 PM
Logfile of HijackThis v1.99.1
Scan saved at 8:32:31 PM, on 11/1/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Norton Internet Security\ISSVC.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\WINDOWS\system32\crypserv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\UAService7.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Registry Mechanic\regmech.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\NAVW32.EXE
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Kevin\Desktop\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/chsi.html
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,AutoConfigURL = http://www.hshsl.umaryland.edu/proxy.pac
O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: Safety Bar - {052b12f7-86fa-4921-8482-26c42316b522} - C:\Program Files\Safety Bar\SafetyBar.dll
O4 - HKLM\..\Run: [RegistryMechanic] C:\Program Files\Registry Mechanic\RegMech.exe /QS
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 2.0\resources\en-US\local\search.html
O8 - Extra context menu item: &Search - [url]http://edits.mywebsearch.com/toolbaredits/menusearch.jhtml?p=ZBxdm066YYUS[/url]
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - [url]http://go.microsoft.com/fwlink/?linkid=58813[/url]
O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} (Musicnotes Viewer) - [url]http://www.musicnotes.com/download/mnviewer.cab[/url]
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - [url]http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409[/url]
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - [url]http://www.symantec.com/techsupp/asa/ctrl/LSSupCtl.cab[/url]
O16 - DPF: {288C5F13-7E52-4ADA-A32E-F5BF9D125F99} (CR64Loader Object) - [url]http://www.miniclip.com/puzzlepirates/miniclipGameLoader.dll[/url]
O16 - DPF: {3451DEDE-631F-421C-8127-FD793AFC6CC8} (ActiveDataInfo Class) - [url]https://www-secure.symantec.com/techsupp/asa/ctrl/SymAData.cab[/url]
O16 - DPF: {37DF41B2-61DB-4CAC-A755-CFB3C7EE7F40} (AOL Content Update) - [url]http://esupport.aol.com/help/acp2/engine/aolcoach_core_1.cab[/url]
O16 - DPF: {44990200-3C9D-426D-81DF-AAB636FA4345} (Symantec SmartIssue) - [url]https://www-secure.symantec.com/techsupp/asa/ctrl/tgctlsi.cab[/url]
O16 - DPF: {44990301-3C9D-426D-81DF-AAB636FA4345} (Symantec Script Runner Class) - [url]https://www-secure.symantec.com/techsupp/asa/ctrl/tgctlsr.cab[/url]
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - [url]http://aolcc.aol.com/computercheckup/qdiagcc.cab[/url]
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - [url]http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1095990174078[/url]
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - [url]http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab[/url]
O16 - DPF: {94B82441-A413-4E43-8422-D49930E69764} (TLIEFlashObj Class) - [url]https://echat.us.dell.com/Media/VisitorChat/TLIEFlash.CAB[/url]
O16 - DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429} (ScorchPlugin Class) - [url]http://www.sibelius.com/download/software/win/ActiveXPlugin.cab[/url]
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - [url]http://aolsvc.aol.com/onlinegames/bejeweled2/popcaploader_v7.cab[/url]
O16 - DPF: {EB387D2F-E27B-4D36-979E-847D1036C65D} (QDiagHUpdateObj Class) - [url]http://h30043.www3.hp.com/ps/en/check/qdiagh.cab?322[/url]
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: Crypkey License - Kenonic Controls Ltd. - C:\WINDOWS\SYSTEM32\crypserv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Program Files\Norton Internet Security\ISSVC.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPH11 - HP - C:\WINDOWS\system32\HPHipm11.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Sony DADC Austria AG. - C:\WINDOWS\system32\UAService7.exe

Budfred
11-01-2006, 11:22 PM
Please open and HJT scan and put checks by:

O3 - Toolbar: Safety Bar - {052b12f7-86fa-4921-8482-26c42316b522} - C:\Program Files\Safety Bar\SafetyBar.dll
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbar...p=ZBxdm066YYUS
O16 - DPF: {288C5F13-7E52-4ADA-A32E-F5BF9D125F99} (CR64Loader Object) - http://www.miniclip.com/puzzlepirate...GameLoader.dll

Close all open windows except HJT and press Fix checked...

Please download SmitfraudFix (http://siri.urz.free.fr/Fix/SmitfraudFix.zip) (by S!Ri)
Extract the content (a folder named SmitfraudFix) to your Desktop.

Open the SmitfraudFix folder and double-click smitfraudfix.cmd
Select option #1 - Search by typing 1 and press "Enter"; a text file will appear, which lists infected files (if present).
Please copy/paste the content of that report into your next reply.

Note : process.exe is detected by some antivirus programs (AntiVir, Dr.Web, Kaspersky) as a "RiskTool"; it is not a virus, but a program used to stop system processes. Antivirus programs cannot distinguish between "good" and "malicious" use of such programs, therefore they may alert the user.
http://www.beyondlogic.org/consulting/proc...processutil.htm (http://www.beyondlogic.org/consulting/processutil/processutil.htm)]

Reboot and post a fresh HJT log as well as the SmitfraudFix log...

Kev107
11-02-2006, 12:00 AM
SmitFraudFix v2.117

Scan done at 22:58:46.17, Wed 11/01/2006
Run from C:\Documents and Settings\Kevin\Desktop\SmitfraudFix\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
Fix run in normal mode

»»»»»»»»»»»»»»»»»»»»»»»» C:\


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32

C:\WINDOWS\system32\issearch.exe FOUND !
C:\WINDOWS\system32\ixt?.dll FOUND !
C:\WINDOWS\system32\ixt??.dll FOUND !
C:\WINDOWS\system32\ot.ico FOUND !
C:\WINDOWS\system32\ts.ico FOUND !
C:\WINDOWS\system32\urroxtl.dll FOUND !
C:\WINDOWS\system32\components\flx?.dll FOUND !
C:\WINDOWS\system32\components\flx??.dll FOUND !
C:\WINDOWS\system32\components\flx???.dll FOUND !

»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32\LogFiles


»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Kevin


»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Kevin\Application Data


»»»»»»»»»»»»»»»»»»»»»»»» Start Menu


»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\Kevin\FAVORI~1

C:\DOCUME~1\Kevin\FAVORI~1\Antivirus Test Online.url FOUND !

»»»»»»»»»»»»»»»»»»»»»»»» Desktop

C:\DOCUME~1\ALLUSE~1\Desktop\Online Security Guide.url FOUND !
C:\DOCUME~1\ALLUSE~1\Desktop\Security Troubleshooting.url FOUND !

»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files

C:\Program Files\Safety Bar\ FOUND !
C:\Program Files\SpyQuake2.com\ FOUND !

»»»»»»»»»»»»»»»»»»»»»»»» Corrupted keys


»»»»»»»»»»»»»»»»»»»»»»»» Desktop Components

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"


»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\SharedTaskScheduler]
"incestuously"="{03413bf7-e34c-445b-bfc0-a2b127255871}"



»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, following keys are not inevitably infected!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""


»»»»»»»»»»»»»»»»»»»»»»»» pe386-msguard-lzx32


»»»»»»»»»»»»»»»»»»»»»»»» Scanning wininet.dll infection


»»»»»»»»»»»»»»»»»»»»»»»» End

Kev107
11-02-2006, 12:12 AM
Logfile of HijackThis v1.99.1
Scan saved at 11:07:19 PM, on 11/1/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Norton Internet Security\ISSVC.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\WINDOWS\system32\crypserv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\UAService7.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\svchost.exe
C:\Documents and Settings\Kevin\Desktop\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/chsi.html
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,AutoConfigURL = http://www.hshsl.umaryland.edu/proxy.pac
O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [RegistryMechanic] C:\Program Files\Registry Mechanic\RegMech.exe /QS
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 2.0\resources\en-US\local\search.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - [url]http://go.microsoft.com/fwlink/?linkid=58813[/url]
O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} (Musicnotes Viewer) - [url]http://www.musicnotes.com/download/mnviewer.cab[/url]
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - [url]http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409[/url]
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - [url]http://www.symantec.com/techsupp/asa/ctrl/LSSupCtl.cab[/url]
O16 - DPF: {288C5F13-7E52-4ADA-A32E-F5BF9D125F99} (CR64Loader Object) - [url]http://www.miniclip.com/puzzlepirates/miniclipGameLoader.dll[/url]
O16 - DPF: {3451DEDE-631F-421C-8127-FD793AFC6CC8} (ActiveDataInfo Class) - [url]https://www-secure.symantec.com/techsupp/asa/ctrl/SymAData.cab[/url]
O16 - DPF: {37DF41B2-61DB-4CAC-A755-CFB3C7EE7F40} (AOL Content Update) - [url]http://esupport.aol.com/help/acp2/engine/aolcoach_core_1.cab[/url]
O16 - DPF: {44990200-3C9D-426D-81DF-AAB636FA4345} (Symantec SmartIssue) - [url]https://www-secure.symantec.com/techsupp/asa/ctrl/tgctlsi.cab[/url]
O16 - DPF: {44990301-3C9D-426D-81DF-AAB636FA4345} (Symantec Script Runner Class) - [url]https://www-secure.symantec.com/techsupp/asa/ctrl/tgctlsr.cab[/url]
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - [url]http://aolcc.aol.com/computercheckup/qdiagcc.cab[/url]
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - [url]http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1095990174078[/url]
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - [url]http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab[/url]
O16 - DPF: {94B82441-A413-4E43-8422-D49930E69764} (TLIEFlashObj Class) - [url]https://echat.us.dell.com/Media/VisitorChat/TLIEFlash.CAB[/url]
O16 - DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429} (ScorchPlugin Class) - [url]http://www.sibelius.com/download/software/win/ActiveXPlugin.cab[/url]
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - [url]http://aolsvc.aol.com/onlinegames/bejeweled2/popcaploader_v7.cab[/url]
O16 - DPF: {EB387D2F-E27B-4D36-979E-847D1036C65D} (QDiagHUpdateObj Class) - [url]http://h30043.www3.hp.com/ps/en/check/qdiagh.cab?322[/url]
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: Crypkey License - Kenonic Controls Ltd. - C:\WINDOWS\SYSTEM32\crypserv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Program Files\Norton Internet Security\ISSVC.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPH11 - HP - C:\WINDOWS\system32\HPHipm11.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Sony DADC Austria AG. - C:\WINDOWS\system32\UAService7.exe

Kev107
11-02-2006, 12:12 AM
SmitFraudFix v2.117

Scan done at 23:10:08.32, Wed 11/01/2006
Run from C:\Documents and Settings\Kevin\Desktop\SmitfraudFix\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
Fix run in normal mode

»»»»»»»»»»»»»»»»»»»»»»»» C:\


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32

C:\WINDOWS\system32\ixt?.dll FOUND !
C:\WINDOWS\system32\ixt??.dll FOUND !
C:\WINDOWS\system32\ot.ico FOUND !
C:\WINDOWS\system32\ts.ico FOUND !
C:\WINDOWS\system32\urroxtl.dll FOUND !
C:\WINDOWS\system32\components\flx?.dll FOUND !
C:\WINDOWS\system32\components\flx??.dll FOUND !
C:\WINDOWS\system32\components\flx???.dll FOUND !

»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32\LogFiles


»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Kevin


»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Kevin\Application Data


»»»»»»»»»»»»»»»»»»»»»»»» Start Menu


»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\Kevin\FAVORI~1

C:\DOCUME~1\Kevin\FAVORI~1\Antivirus Test Online.url FOUND !

»»»»»»»»»»»»»»»»»»»»»»»» Desktop

C:\DOCUME~1\ALLUSE~1\Desktop\Online Security Guide.url FOUND !
C:\DOCUME~1\ALLUSE~1\Desktop\Security Troubleshooting.url FOUND !

»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files

C:\Program Files\Safety Bar\ FOUND !
C:\Program Files\SpyQuake2.com\ FOUND !

»»»»»»»»»»»»»»»»»»»»»»»» Corrupted keys


»»»»»»»»»»»»»»»»»»»»»»»» Desktop Components

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"


»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\SharedTaskScheduler]
"incestuously"="{03413bf7-e34c-445b-bfc0-a2b127255871}"



»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, following keys are not inevitably infected!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""


»»»»»»»»»»»»»»»»»»»»»»»» pe386-msguard-lzx32


»»»»»»»»»»»»»»»»»»»»»»»» Scanning wininet.dll infection


»»»»»»»»»»»»»»»»»»»»»»»» End

Budfred
11-02-2006, 12:38 AM
Why did you post the SmitfraudFix log twice??

Anyway, please do this:

It would be a good idea to print out these instructions, or copy them to a NotePad file for reading while in Safe Mode, because you will not be able to connect to the Internet to read from this site.

Next, please reboot your computer in Safe Mode by doing the following :
Restart your computer
Just before the Windows icon appears, tap the F8 key;
Instead of Windows loading as normal, a menu with options should appear;
Select the first option, to run Windows in Safe Mode, then press "Enter".
Choose your usual account.
Once in Safe Mode, open the SmitfraudFix folder again and double-click smitfraudfix.cmd
Select option #2 - Clean by typing 2 and press "Enter" to delete infected files.

You will be prompted : "Registry cleaning - Do you want to clean the registry ?"; answer "Yes" by typing Y and press "Enter" in order to remove the Desktop background and clean registry keys associated with the infection.

The tool will now check if wininet.dll is infected. You may be prompted to replace the infected file (if found); answer "Yes" by typing Y and press "Enter".

The tool may need to restart your computer to finish the cleaning process; if it doesn't, please restart it into Normal Windows.
A text file will appear onscreen, with results from the cleaning process; please copy/paste the content of that report into your next reply.
The report can also be found at the root of the system drive, usually at C:\rapport.txt

Warning : running option #2 on a non infected computer will remove your Desktop background.

Kev107
11-02-2006, 08:38 AM
Good morning - I did what you suggested (I had sent the Smitfraudfix.log that I did before running the program and then after).

Here's the rapport:

SmitFraudFix v2.117

Scan done at 7:28:32.37, Thu 11/02/2006
Run from C:\Documents and Settings\Kevin\Desktop\SmitfraudFix\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
Fix run in safe mode

»»»»»»»»»»»»»»»»»»»»»»»» Before SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\Curr entVersion\Explorer\SharedTaskScheduler]
"incestuously"="{03413bf7-e34c-445b-bfc0-a2b127255871}"


»»»»»»»»»»»»»»»»»»»»»»»» Killing process


»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix

GenericRenosFix by S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» Deleting infected files

C:\WINDOWS\system32\ixt?.dll Deleted
C:\WINDOWS\system32\ot.ico Deleted
C:\WINDOWS\system32\ts.ico Deleted
C:\WINDOWS\system32\urroxtl.dll Deleted
C:\WINDOWS\system32\components\flx?.dll Deleted
C:\WINDOWS\system32\components\flx??.dll Deleted
C:\DOCUME~1\Kevin\FAVORI~1\Antivirus Test Online.url Deleted
C:\Program Files\Safety Bar\ Deleted
C:\Program Files\SpyQuake2.com\ Deleted

»»»»»»»»»»»»»»»»»»»»»»»» Deleting Temp Files


»»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning

Registry Cleaning done.

»»»»»»»»»»»»»»»»»»»»»»»» After SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll


»»»»»»»»»»»»»»»»»»»»»»»» End

Budfred
11-02-2006, 08:59 AM
Now please post a fresh HJT log after a reboot and report on how your system is doing...

Kev107
11-02-2006, 11:29 PM
No more pop-ups!!! Thank you so much!


Logfile of HijackThis v1.99.1
Scan saved at 10:26:38 PM, on 11/2/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Norton Internet Security\ISSVC.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\WINDOWS\system32\crypserv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\UAService7.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\AdBlocking\NSMdtr.exe
C:\WINDOWS\system32\dumprep.exe
C:\WINDOWS\system32\dwwin.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Symantec\LiveUpdate\AUpdate.exe
C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
C:\Documents and Settings\Kevin\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,AutoConfigURL = http://www.hshsl.umaryland.edu/proxy.pac
O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 2.0\resources\en-US\local\search.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - [url]http://go.microsoft.com/fwlink/?linkid=58813[/url]
O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} (Musicnotes Viewer) - [url]http://www.musicnotes.com/download/mnviewer.cab[/url]
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - [url]http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409[/url]
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - [url]http://www.symantec.com/techsupp/asa/ctrl/LSSupCtl.cab[/url]
O16 - DPF: {288C5F13-7E52-4ADA-A32E-F5BF9D125F99} (CR64Loader Object) - [url]http://www.miniclip.com/puzzlepirates/miniclipGameLoader.dll[/url]
O16 - DPF: {3451DEDE-631F-421C-8127-FD793AFC6CC8} (ActiveDataInfo Class) - [url]https://www-secure.symantec.com/techsupp/asa/ctrl/SymAData.cab[/url]
O16 - DPF: {37DF41B2-61DB-4CAC-A755-CFB3C7EE7F40} (AOL Content Update) - [url]http://esupport.aol.com/help/acp2/engine/aolcoach_core_1.cab[/url]
O16 - DPF: {44990200-3C9D-426D-81DF-AAB636FA4345} (Symantec SmartIssue) - [url]https://www-secure.symantec.com/techsupp/asa/ctrl/tgctlsi.cab[/url]
O16 - DPF: {44990301-3C9D-426D-81DF-AAB636FA4345} (Symantec Script Runner Class) - [url]https://www-secure.symantec.com/techsupp/asa/ctrl/tgctlsr.cab[/url]
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - [url]http://aolcc.aol.com/computercheckup/qdiagcc.cab[/url]
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - [url]http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1095990174078[/url]
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - [url]http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab[/url]
O16 - DPF: {94B82441-A413-4E43-8422-D49930E69764} (TLIEFlashObj Class) - [url]https://echat.us.dell.com/Media/VisitorChat/TLIEFlash.CAB[/url]
O16 - DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429} (ScorchPlugin Class) - [url]http://www.sibelius.com/download/software/win/ActiveXPlugin.cab[/url]
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - [url]http://aolsvc.aol.com/onlinegames/bejeweled2/popcaploader_v7.cab[/url]
O16 - DPF: {EB387D2F-E27B-4D36-979E-847D1036C65D} (QDiagHUpdateObj Class) - [url]http://h30043.www3.hp.com/ps/en/check/qdiagh.cab?322[/url]
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: Crypkey License - Kenonic Controls Ltd. - C:\WINDOWS\SYSTEM32\crypserv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Program Files\Norton Internet Security\ISSVC.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPH11 - HP - C:\WINDOWS\system32\HPHipm11.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Sony DADC Austria AG. - C:\WINDOWS\system32\UAService7.exe

Budfred
11-03-2006, 12:18 AM
Please open a HJT scan and put a check by:

O16 - DPF: {288C5F13-7E52-4ADA-A32E-F5BF9D125F99} (CR64Loader Object) - http://www.miniclip.com/puzzlepirate...GameLoader.dll

Then close all open windows except HJT and press Fix checked...

Please run this tool to see if there is anything else lurking...

* Click here (http://support.f-secure.com/enu/home/ols3.shtml) to use the F-Secure Online Scanner
It's explained there with images how to allow the ActiveX to start the scan, so read that first.
Then click the F-Secure Online Scanner Next Generation Beta link.
Once the ActiveX is installed, you should accept the License terms by clicking OK below to start the scan.
Click the Full System Scan button.
It will start to download scanner components and databases. This can take a while.
The main scan will start.
Once the scan finished scanning, click the Automatic cleaning (recommended) button
It could be possible that your firewall gives an alert - allow it, because that's a connection you establish to submit infected files to F-Secure.
The cleaning can take a while, so please be patient.
Then click the Show report button and copy and paste what's present under results in your next reply.


After a reboot, please post a fresh HJT log as well...

Kev107
11-05-2006, 07:52 AM
Still getting pop-ups while on IE. Running F-Secure now. Will send file when done.

Kev107
11-06-2006, 08:32 AM
Sorry for let delay in response. I'm a doctor and I haven't been able to get to the computer. Here's the latest - I ran the F-Secure and it showed I have a bunch of viruses, etc. I did the autcleaning, but I didn't save the first report (my kid got to the computer first). I ran the program again and it still showed viruses. The report from that run is:

Result: 11 malware found
Adware.SafetyBar (spyware)
System
Exploit.HTML.Mht (virus)
C:\DOCUMENTS AND SETTINGS\KEVIN\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\7BPV7HSO\DELIVER46860[1].HTM (Submitted)
JS/Istbar.P (virus)
C:\DOCUMENTS AND SETTINGS\JACOB\LOCAL SETTINGS\TEMP\TEMPORARY INTERNET FILES\CONTENT.IE5\SH565GDJ\IDEALIDEALLYYOURSLYRICS [1].HTM (Submitted)
Tracking Cookie (spyware)
System (Disinfected)
System (Submitted)
Trojan-Downloader.Win32.PurityScan.co (virus)
C:\WINDOWS\?ICROSOFT\REGEDIT.EXE
W32/Agent.HDQ (virus)
C:\DOCUMENTS AND SETTINGS\KEVIN\DESKTOP\BACKUPS\BACKUP-20061105-060926-390.DLL (Submitted)
W32/NetworkWorm (virus)
C:\DOCUMENTS AND SETTINGS\NOAH\LOCAL SETTINGS\TEMPORARY INTERNET FILES\CONTENT.IE5\WPGXUN8D\MULBIN32[1].EXE (Submitted)
C:\DOCUMENTS AND SETTINGS\NOAH\LOCAL SETTINGS\TEMP\WIN289.TMP.EXE (Submitted)
WinAntiVirusPro (spyware)
System
not-virus:Hoax.Win32.Renos.fw (virus)
C:\WINDOWS\SYSTEM32\DRVKID.DLL (Submitted)

--------------------------------------------------------------------------------

Statistics
Scanned:
Files: 43196
System: 5669
Not scanned: 18
Actions:
Disinfected: 1
Renamed: 0
Deleted: 0
None: 10
Submitted: 7
Files not scanned:
C:\PAGEFILE.SYS
C:\WINDOWS\SYSTEM32\DRIVERS\DTSCSI.SYS
C:\WINDOWS\SYSTEM32\DRIVERS\SPTD.SYS
C:\WINDOWS\SYSTEM32\CONFIG\DEFAULT
C:\WINDOWS\$NTUNINSTALLQ828026$\MSDXM.OCX
C:\WINDOWS\$NTUNINSTALLQ329115$\REG00003
C:\WINDOWS\$NTUNINSTALLKB839645$\FLDRCLNR.DLL
C:\WINDOWS\$NTUNINSTALLKB837001$\DAO360.DLL
C:\WINDOWS\$NTUNINSTALLKB835732$\CALLCONT.DLL
C:\WINDOWS\$NTUNINSTALLKB835732$\RTCDLL.DLL
C:\WINDOWS\$NTUNINSTALLKB833987$\SXS.DLL
C:\WINDOWS\$NTUNINSTALLKB828741$\CATSRV.DLL
C:\WINDOWS\$NTUNINSTALLKB828035$\MSGSVC.DLL
C:\WINDOWS\$NTUNINSTALLKB824141$\USER32.DLL
C:\PROGRAM FILES\VSADD-IN\VSADD-IN.DLL
C:\PROGRAM FILES\COMMON FILES\SYMANTEC SHARED\CCPD-LC\SYMLCRST.DLL
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\MICROSOFT\CRYPTO\RSA\MACHINEKEYS\658E8EA785D8 01C433673D89D30373BE_9BE4F52D-6EDB-4AE9-888D-3CEF817969FF
C:\DOCUMENTS AND SETTINGS\ALL USERS\APPLICATION DATA\MICROSOFT\CRYPTO\RSA\MACHINEKEYS\B6C84A33A7A4 2A79464E67A74EC853B5_9BE4F52D-6EDB-4AE9-888D-3CEF817969FF

--------------------------------------------------------------------------------

Options
Scanning engines:
F-Secure AVP: 6.0.171, 2006-11-03
F-Secure Libra: 2.4.1, 2006-11-02
F-Secure Orion: 1.2.37, 2006-11-03
F-Secure Blacklight: 1.0.31, 0000-00-00
F-Secure Pegasus: 1.19.0, 2006-08-29
F-Secure Draco: 1.0.35, 2006-10-31
Scanning options:
Scan defined files: COM EXE SYS OV? BIN SCR DLL SHS HTM HTML HTT VBS JS INF VXD DO? XL? RTF CPL WIZ HTA PP? PWZ P?T MSO PIF . ACM ASP AX CNV CSC DRV INI MDB MPD MPP MPT OBD OBT OCX PCI TLB TSP WBK WBT WPC WSH VWP WML BOO HLP TD0 TT6 MSG ASD JSE VBE WSC CHM EML PRC SHB LNK WSF {* PDF ZL? XML ZIP XXX
Use Advanced heuristics

Kev107
11-06-2006, 08:33 AM
Here is also the latest HJT:

Logfile of HijackThis v1.99.1
Scan saved at 7:27:15 AM, on 11/6/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Norton Internet Security\ISSVC.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\WINDOWS\system32\crypserv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\UAService7.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\AdBlocking\NSMdtr.exe
C:\Documents and Settings\Kevin\Desktop\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.foxnews.com/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,AutoConfigURL = http://www.hshsl.umaryland.edu/proxy.pac
O3 - Toolbar: Norton Internet Security - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Program Files\Common Files\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 2.0\resources\en-US\local\search.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - [url]http://go.microsoft.com/fwlink/?linkid=58813[/url]
O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} (Musicnotes Viewer) - [url]http://www.musicnotes.com/download/mnviewer.cab[/url]
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - [url]http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409[/url]
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} (LSSupCtl Class) - [url]http://www.symantec.com/techsupp/asa/ctrl/LSSupCtl.cab[/url]
O16 - DPF: {3451DEDE-631F-421C-8127-FD793AFC6CC8} (ActiveDataInfo Class) - [url]https://www-secure.symantec.com/techsupp/asa/ctrl/SymAData.cab[/url]
O16 - DPF: {37DF41B2-61DB-4CAC-A755-CFB3C7EE7F40} (AOL Content Update) - [url]http://esupport.aol.com/help/acp2/engine/aolcoach_core_1.cab[/url]
O16 - DPF: {44990200-3C9D-426D-81DF-AAB636FA4345} (Symantec SmartIssue) - [url]https://www-secure.symantec.com/techsupp/asa/ctrl/tgctlsi.cab[/url]
O16 - DPF: {44990301-3C9D-426D-81DF-AAB636FA4345} (Symantec Script Runner Class) - [url]https://www-secure.symantec.com/techsupp/asa/ctrl/tgctlsr.cab[/url]
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - [url]http://aolcc.aol.com/computercheckup/qdiagcc.cab[/url]
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - [url]http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1095990174078[/url]
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - [url]http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab[/url]
O16 - DPF: {94B82441-A413-4E43-8422-D49930E69764} (TLIEFlashObj Class) - [url]https://echat.us.dell.com/Media/VisitorChat/TLIEFlash.CAB[/url]
O16 - DPF: {9D190AE6-C81E-4039-8061-978EBAD10073} (F-Secure Online Scanner 3.0) - [url]http://support.f-secure.com/ols3/fscax.cab[/url]
O16 - DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429} (ScorchPlugin Class) - [url]http://www.sibelius.com/download/software/win/ActiveXPlugin.cab[/url]
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - [url]http://aolsvc.aol.com/onlinegames/bejeweled2/popcaploader_v7.cab[/url]
O16 - DPF: {EB387D2F-E27B-4D36-979E-847D1036C65D} (QDiagHUpdateObj Class) - [url]http://h30043.www3.hp.com/ps/en/check/qdiagh.cab?322[/url]
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: Crypkey License - Kenonic Controls Ltd. - C:\WINDOWS\SYSTEM32\crypserv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: ISSvc (ISSVC) - Symantec Corporation - C:\Program Files\Norton Internet Security\ISSVC.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPH11 - HP - C:\WINDOWS\system32\HPHipm11.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Sony DADC Austria AG. - C:\WINDOWS\system32\UAService7.exe


One weird thing is that I can no longer get IE to load!

Thank you so much for your help.

Budfred
11-06-2006, 08:50 AM
Please run this tool to fix whatever might be lingering and to produce a log... Your HJT log isn't showing anything, but I suspect that you have some hidden garbage still... I suggest keeping your son away from the computer until it is clean, he may be reinfecting it... It actually would be a good idea to keep it offline as much as possible until it is clean...

1. Download this file - combofix.exe (http://download.bleepingcomputer.com/sUBs/combofix.exe)
2. Double click combofix.exe & follow the prompts.
3. When finished, it will produce a log for you. Post that log in your next reply

Note:
Do not mouseclick combofix's window whilst it's running. That may cause it to stall...

Kev107
11-06-2006, 11:52 PM
Kevin - 06-11-06 22:44:01.21 Service Pack 2
ComboFix 06.10.19 - Running from: "C:\Documents and Settings\Kevin\Desktop"

(((((((((((((((((((((((((((((((((((((((((((( Other Deletions )))))))))))))))))))))))))))))))))))))))))))))))))



~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ Purity ~ ~ ~ ~ ~ ~ ~ ~~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~

Folders Quarantined:

C:\QooBox\Purity\Program Files\Common Files\MANTEC~1
C:\QooBox\Purity\Program Files\Common Files\MANTEC~1\services.exe
C:\QooBox\Purity\WINDOWS\ICROSO~1
C:\QooBox\Purity\WINDOWS\ICROSO~1\regedit.exe
C:\QooBox\Purity\WINDOWS\ICROSO~1\?icrosoft


((((((((((((((((((((((((((((((( Files Created from 2006-10-06 to 2006-11-06 ))))))))))))))))))))))))))))))))))


2006-11-06 12:17 110,612 --a------ C:\WINDOWS\system32\bprilguc.exe
2006-11-06 12:15 110,612 --a------ C:\WINDOWS\system32\thpevcbn.exe
2006-11-05 12:14 110,612 --a------ C:\WINDOWS\system32\fjmvnwfa.exe
2006-11-04 12:14 110,612 --a------ C:\WINDOWS\system32\vsruwdbo.exe
2006-11-04 12:14 110,612 --a------ C:\WINDOWS\system32\kanrekqc.exe
2006-11-03 15:28 756,122 ---hs---- C:\WINDOWS\system32\egjlm.ini2
2006-11-03 12:14 110,612 --a------ C:\WINDOWS\system32\wdrctkfv.exe
2006-11-02 17:55 62,744 --a------ C:\WINDOWS\system32\xinput1_2.dll
2006-11-02 17:55 236,824 --a------ C:\WINDOWS\system32\xactengine2_3.dll
2006-11-02 12:14 110,612 --a------ C:\WINDOWS\system32\tyhwqdcm.exe
2006-11-01 22:58 53,248 --a------ C:\WINDOWS\system32\Process.exe
2006-11-01 22:58 40,960 --a------ C:\WINDOWS\system32\swsc.exe
2006-11-01 22:58 288,417 --a------ C:\WINDOWS\system32\SrchSTS.exe
2006-11-01 22:58 135,168 --a------ C:\WINDOWS\system32\swreg.exe
2006-11-01 12:14 110,612 --a------ C:\WINDOWS\system32\mqidlsod.exe
2006-11-01 12:13 754,869 ---hs---- C:\WINDOWS\system32\egjlm.bak2
2006-11-01 07:12 24,576 --a------ C:\WINDOWS\system32\STKIT432.DLL
2006-10-31 12:13 754,345 ---hs---- C:\WINDOWS\system32\egjlm.bak1
2006-10-31 12:13 692,276 ---hs---- C:\WINDOWS\system32\mljge.dll
2006-10-31 12:13 60,436 --a------ C:\WINDOWS\system32\rqlryufx.dll
2006-10-31 12:13 110,612 --a------ C:\WINDOWS\system32\inrtfupt.exe
2006-10-31 12:02 51,200 --a------ C:\WINDOWS\system32\drvkid.dll
2006-10-31 12:00 40,973 ---hs---- C:\WINDOWS\system32\yayvwuv.dll


(((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report )))))))))))))))))))))))))))))))))))))))))))))))))) )))


2006-11-06 22:33 -------- d-------- C:\Program Files\Common Files
2006-11-06 22:27 -------- d-------- C:\Program Files\Mozilla Firefox
2006-11-02 19:42 -------- d--h----- C:\Program Files\InstallShield Installation Information
2006-11-02 19:42 -------- d-------- C:\Program Files\Eidos
2006-11-02 18:31 -------- d-------- C:\Program Files\Activision
2006-11-01 15:38 -------- d-------- C:\Program Files\Viewpoint
2006-11-01 07:39 -------- d-------- C:\Program Files\Registry Mechanic
2006-10-31 12:14 -------- d-------- C:\Program Files\VSAdd-in
2006-10-24 17:29 -------- d-------- C:\Program Files\iTunes
2006-10-05 22:29 -------- d-------- C:\Program Files\PowerPlugs
2006-10-04 16:02 156672 ---hs---- C:\Program Files\Common Files\YAZZLE1162OINADMIN.0XE
2006-09-29 15:40 -------- d-------- C:\Program Files\Finale PrintMusic 2006
2006-09-17 20:34 80 -r-hs---- C:\WINDOWS\system32\5EAB89F91C.dll
2006-09-13 00:01 1084416 --a------ C:\WINDOWS\system32\msxml3.dll
2006-08-25 10:45 617472 --a------ C:\WINDOWS\system32\comctl32.dll
2006-08-21 07:21 16896 --a------ C:\WINDOWS\system32\fltlib.dll
2006-08-21 04:14 23040 --a------ C:\WINDOWS\system32\fltmc.exe
2006-08-16 06:58 100352 --a------ C:\WINDOWS\system32\6to4svc.dll
2006-08-11 11:00 499712 --a------ C:\WINDOWS\system32\eSy_ScreenCapture.dll
2006-08-11 11:00 3040256 --a------ C:\WINDOWS\system32\PwrPlugs.dll
2006-08-11 11:00 278528 --a------ C:\WINDOWS\system32\CGPower3DUtilityFx.dll
2006-08-11 11:00 262144 --a------ C:\WINDOWS\system32\STARTUP.dll
2006-08-11 11:00 221184 --a------ C:\WINDOWS\system32\CGRegister.exe
2006-08-11 11:00 176128 --a------ C:\WINDOWS\system32\VideoPlayer.dll
2006-08-11 11:00 131072 --a------ C:\WINDOWS\system32\TransSaveStatus.dll
2006-08-11 11:00 131072 --a------ C:\WINDOWS\system32\ProcessTerminator.dll
2006-08-11 11:00 114688 --a------ C:\WINDOWS\system32\RemovePresFromTemp.dll


(((((((((((((((((((((((((((((((((((((((((( Reg Loading Points ))))))))))))))))))))))))))))))))))))))))))))))))

Kev107
11-06-2006, 11:54 PM
*Note* empty entries are not shown

[HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\run]
"NvCplDaemon"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\run\OptionalComponents]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\run\OptionalComponents\IMAIL]
"Installed"="1"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\run\OptionalComponents\MAPI]
"Installed"="1"
"NoChange"="1"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\run\OptionalComponents\MSFS]
"Installed"="1"

[HKEY_CURRENT_USER\software\microsoft\internet explorer\desktop\components]
"DeskHtmlVersion"=dword:00000110
"DeskHtmlMinorVersion"=dword:00000005
"Settings"=dword:00000001
"GeneralFlags"=dword:00000004

[HKEY_USERS\.default\software\microsoft\windows\cur rentversion\run]
"Symantec NetDriver Warning"="C:\\PROGRA~1\\SYMNET~1\\SNDWarn.exe"

[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\run]
"Symantec NetDriver Warning"="C:\\PROGRA~1\\SYMNET~1\\SNDWarn.exe"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\explorer\sharedtaskscheduler]
"{438755C2-A8BA-11D1-B96B-00A0C90312E1}"="Browseui preloader"
"{8C7461EF-2B13-11d2-BE35-3078302C2030}"="Component Categories cache daemon"

[HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\explorer\shellexecutehooks]
"{AEB6717E-7E19-11d0-97EE-00C04FD91972}"=""
"{091EB208-39DD-417D-A5DD-7E2C2D8FB9CB}"="Microsoft AntiMalware ShellExecuteHook"

[HKEY_CURRENT_USER\software\microsoft\windows\curre ntversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091

[HKEY_CURRENT_USER\software\microsoft\windows\curre ntversion\policies\explorer\Run]

[HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\policies\system]
"dontdisplaylastusername"=dword:00000000
"legalnoticecaption"=""
"legalnoticetext"=""
"shutdownwithoutlogon"=dword:00000001
"undockwithoutlogon"=dword:00000001

[HKEY_USERS\.default\software\microsoft\windows\cur rentversion\policies\explorer]
"NoDriveTypeAutoRun"=dword:00000091

[HKEY_USERS\s-1-5-18\software\microsoft\windows\currentversion\polic ies\explorer]
"NoDriveTypeAutoRun"=dword:00000091

[HKEY_LOCAL_MACHINE\software\microsoft\windows\curr entversion\shellserviceobjectdelayload]
"PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}"
"CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}"
"WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}"
"SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Adobe Reader Speed Launch.lnk]
"backup"="C:\\WINDOWS\\pss\\Adobe Reader Speed Launch.lnkCommon Startup"
"location"="Common Startup"
"command"="C:\\PROGRA~1\\Adobe\\ACROBA~3.0\\Reader\\READER~1. EXE "
"item"="Adobe Reader Speed Launch"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^America Online 9.0 Tray Icon.lnk]
"backup"="C:\\WINDOWS\\pss\\America Online 9.0 Tray Icon.lnkCommon Startup"
"location"="Common Startup"
"command"="C:\\PROGRA~1\\AMERIC~1.0\\aoltray.exe -check"
"item"="America Online 9.0 Tray Icon"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Autodetect.lnk]
"backup"="C:\\WINDOWS\\pss\\Autodetect.lnkCommon Startup"
"location"="Common Startup"
"command"="C:\\PROGRA~1\\PHOTOL~1\\AUTODE~1.EXE "
"item"="Autodetect"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupfolder\C:^Documents and Settings^All Users^Start Menu^Programs^Startup^Microsoft Office.lnk]
"backup"="C:\\WINDOWS\\pss\\Microsoft Office.lnkCommon Startup"
"location"="Common Startup"
"item"="Microsoft Office"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg]

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AOLDialer]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="AOLDial"
"hkey"="HKLM"
"command"="C:\\Program Files\\Common Files\\AOL\\ACS\\AOLDial.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\AsioReg]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="REGSVR32"
"hkey"="HKLM"
"command"="REGSVR32.EXE /S CTASIO.DLL"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ccApp]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="ccApp"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Common Files\\Symantec Shared\\ccApp.exe\""
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTDrive]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="drvkid"
"hkey"="HKLM"
"command"="rundll32.exe C:\\WINDOWS\\system32\\drvkid.dll,startup"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTDVDDet]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="CTDVDDet"
"hkey"="HKLM"
"command"="C:\\Program Files\\Creative\\SBAudigy2\\DVDAudio\\CTDVDDet.EXE "
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ctfmon.exe]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="ctfmon"
"hkey"="HKCU"
"command"="C:\\WINDOWS\\system32\\ctfmon.exe"
"inimapping"="0"

Kev107
11-06-2006, 11:54 PM
[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTHelper]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="CTHELPER"
"hkey"="HKLM"
"command"="CTHELPER.EXE"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\CTSysVol]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="CTSysVol"
"hkey"="HKLM"
"command"="C:\\Program Files\\Creative\\SBAudigy2\\Surround Mixer\\CTSysVol.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Lamp]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="HPLamp"
"hkey"="HKLM"
"command"="C:\\Program Files\\Hewlett-Packard\\HP PrecisionScan\\PrecisionScan\\HPLamp.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HP Software Update]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="HPWuSchd2"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Hewlett-Packard\\HP Software Update\\HPWuSchd2.exe\""
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPDJ Taskbar Utility]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="hpztsb07"
"hkey"="HKLM"
"command"="C:\\WINDOWS\\system32\\spool\\drivers\\w32x86\\3\\ hpztsb07.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPHmon04]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="hphmon04"
"hkey"="HKLM"
"command"="C:\\WINDOWS\\system32\\hphmon04.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HPHUPD04]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="hphupd04"
"hkey"="HKLM"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSPM Startup]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="ISUSPM"
"hkey"="HKLM"
"command"="C:\\PROGRA~1\\COMMON~1\\INSTAL~1\\UPDATE~1\\ISUSPM .exe -startup"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ISUSScheduler]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="issch"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Common Files\\InstallShield\\UpdateService\\issch.exe\" -start"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\iTunesHelper]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="iTunesHelper"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\""
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MSMSGS]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="msmsgs"
"hkey"="HKCU"
"command"="\"C:\\Program Files\\Messenger\\msmsgs.exe\" /background"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\My Web Search Bar]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="MWSBAR"
"hkey"="HKLM"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\MyWebSearch Email Plugin]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="mwsoemon"
"hkey"="HKLM"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NeroFilterCheck]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="NeroCheck"
"hkey"="HKLM"
"command"="C:\\WINDOWS\\system32\\NeroCheck.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvCplDaemon]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="NvCpl"
"hkey"="HKLM"
"command"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvCpl.dll,NvStartup"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\NvMediaCenter]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="NvMcTray"
"hkey"="HKLM"
"command"="RUNDLL32.EXE C:\\WINDOWS\\system32\\NvMcTray.dll,NvTaskbarInit"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="nwiz"
"hkey"="HKLM"
"command"="nwiz.exe /install"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\PhotoShow Deluxe Media Manager]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="mssysmgr"
"hkey"="HKCU"
"command"="C:\\PROGRA~1\\Ahead\\NEROPH~1\\data\\Xtras\\mssysm gr.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Pure Networks Port Magic]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="PortAOL"
"hkey"="HKLM"
"command"="\"C:\\PROGRA~1\\PURENE~1\\PORTMA~1\\PortAOL.exe\" -Run"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="qttask"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RealTray]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="RealPlay"
"hkey"="HKLM"
"command"="C:\\Program Files\\Real\\RealPlayer\\RealPlay.exe SYSTEMBOOTHIDEPLAYER"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\RegistryMechanic]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="RegMech"
"hkey"="HKLM"
"command"="C:\\Program Files\\Registry Mechanic\\RegMech.exe /QS"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SB Audigy 2 Startup Menu]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"=" /L:ENG"
"hkey"="HKCU"
"command"=" /L:ENG"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Start WingMan Profiler]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="lwemon"
"hkey"="HKCU"
"command"="\"C:\\Program Files\\Logitech\\Profiler\\lwemon.exe\" /noui"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\StatusClient 2.6]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="StatusClient"
"hkey"="HKLM"
"command"="C:\\Program Files\\Hewlett-Packard\\Toolbox\\StatusClient\\StatusClient.exe /auto"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\SunJavaUpdateSched]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="jusched"
"hkey"="HKLM"
"command"="C:\\Program Files\\Java\\jre1.5.0_06\\bin\\jusched.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Symantec NetDriver Monitor]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="SNDMon"
"hkey"="HKLM"
"command"="C:\\PROGRA~1\\SYMNET~1\\SNDMon.exe /Consumer"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TkBellExe]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="realsched"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\TomcatStartup 2.5]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="hpbpsttp"
"hkey"="HKLM"
"command"="C:\\Program Files\\Hewlett-Packard\\Toolbox\\hpbpsttp.exe"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\UpdReg]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="UpdReg"
"hkey"="HKLM"
"command"="C:\\WINDOWS\\UpdReg.EXE"
"inimapping"="0"

[HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Windows Defender]
"key"="SOFTWARE\\Microsoft\\Windows\\CurrentVersion\\Run"
"item"="MSASCui"
"hkey"="HKLM"
"command"="\"C:\\Program Files\\Windows Defender\\MSASCui.exe\" -hide"
"inimapping"="0"

HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\mljge
HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\wintst32

[HKEY_LOCAL_MACHINE\system\currentcontrolset\contro l\securityproviders]
"SecurityProviders"="msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll"


Contents of the 'Scheduled Tasks' folder
C:\WINDOWS\tasks\HP Usg Daily.job
C:\WINDOWS\tasks\HP Usg Login.job
C:\WINDOWS\tasks\MP Scheduled Scan.job
C:\WINDOWS\tasks\Norton AntiVirus - Scan my computer - Kevin.job
C:\WINDOWS\tasks\XoftSpy.job

Completion time: 06-11-06 22:48:55.26
C:\ComboFix.txt ... 06-11-06 22:48
C:\ComboFix2.txt ... 06-11-06 22:34

Budfred
11-07-2006, 12:12 AM
You have a bunch of stuff that was hidden... Use these tools...

Download Killbox:

http://www.atribune.org/downloads/KillBox.exe

Then copy/paste this list into a Notepad file so that you can access it in Safe Mode... Boot to Safe Mode (tap F8 just before Windows starts loading and select Safe Mode)... Choose the "Delete on reboot" and "End Explorer Shell while Killing file" options... Copy/paste the entire list into the line for the file... It should be able to accept the whole list, but if it doesn't you will need to enter them one at a time... Do not click through to close it out and reboot until they have all been entered... Once they are all entered, click through to kill them...

C:\WINDOWS\system32\bprilguc.exe
C:\WINDOWS\system32\thpevcbn.exe
C:\WINDOWS\system32\fjmvnwfa.exe
C:\WINDOWS\system32\vsruwdbo.exe
C:\WINDOWS\system32\kanrekqc.exe
C:\WINDOWS\system32\egjlm.ini2
C:\WINDOWS\system32\wdrctkfv.exe
C:\WINDOWS\system32\tyhwqdcm.exe
C:\WINDOWS\system32\Process.exe
C:\WINDOWS\system32\mqidlsod.exe
C:\WINDOWS\system32\egjlm.bak2
C:\WINDOWS\system32\egjlm.bak1
C:\WINDOWS\system32\mljge.dll
C:\WINDOWS\system32\rqlryufx.dll
C:\WINDOWS\system32\inrtfupt.exe
C:\WINDOWS\system32\drvkid.dll
C:\WINDOWS\system32\yayvwuv.dll

Then AVG AS (Ewido)...

Please download, install, and update Ewido anti-spyware (http://www.ewido.net/en/download/)



Load Ewido and then click the Update tab at the top. Under Manual Update click Start update.

After the update finishes (the status bar at the bottom will display "Update successful")

Close ewido. Do not run it yet.


Please reboot your computer into Safe Mode. To boot into Safe Mode, please restart your computer. Tap F8 before Windows loads. Select Safe Mode on the screen that appears.


In Safe Mode, load Ewido and click on the Scanner tab at the top. Click the "Settings" tab and then change the recommended action to Quarantine and click Automatically generate report after every scan. Click back to the "Scan" tab and then click on Complete System Scan. This scan can take quite a while to run, so be prepared.

Ewido will list any infections found on the left hand side. When the scan has finished, it will automatically set the recommended action. Click the Apply all actions button. Ewido will display "All actions have been applied" on the right hand side.

Click on "Save Report", then "Save Report As". This will create a text file. Make sure you know where to find this file again (like on the Desktop).

Restart back into Normal Mode.


Please perform another scan with Hijack This, and then post back with a copy of the Ewido log and the new HijackThis log.

and next:

* Download Dr.Web CureIt to the desktop:
ftp://ftp.drweb.com/pub/drweb/cureit/drweb-cureit.exe

Doubleclick the drweb-cureit.exe file and Allow to run the express scan
This will scan the files currently running in memory and when something is found, click the yes button when it asks you if you want to cure it. This is only a short scan.
Once the short scan has finished, mark the drives that you want to scan.
Select all drives. A red dot shows which drives have been chosen.
Click the green arrow at the right, and the scan will start.
Click 'Yes to all' if it asks if you want to cure/move the file.
When the scan has finished, look if you can click next icon next to the files found: http://users.telenet.be/bluepatchy/miekiemoes/images/check.gif
If so, click it and then click the next icon right below and select Move incurable as you'll see in next image:
http://users.telenet.be/bluepatchy/miekiemoes/images/move.gif
This will move it to the %userprofile%\DoctorWeb\quarantaine-folder if it can't be cured. (this in case if we need samples)
After selecting, in the Dr.Web CureIt menu on top, click file and choose save report list
Save the report to your desktop. The report will be called DrWeb.csv
Close Dr.Web Cureit.
Reboot your computer!! Because it could be possible that files in use will be moved/deleted during reboot.
After reboot, post the contents of the log from Dr.Web you saved previously in your next reply.


Post the logs here and report on how the fixes went...

What kind of doc are you??

Kev107
11-07-2006, 11:16 PM
Logfile of HijackThis v1.99.1
Scan saved at 10:13:05 PM, on 11/7/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\WINDOWS\system32\crypserv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\UAService7.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Symantec\LiveUpdate\AUPDATE.EXE
C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe
C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe
C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe
C:\Documents and Settings\Kevin\Desktop\HijackThis.exe
C:\Program Files\Symantec\LiveUpdate\LuCallbackProxy.exe
C:\Program Files\Mozilla Firefox\firefox.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.foxnews.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,AutoConfigURL = http://www.hshsl.umaryland.edu/proxy.pac
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\UIBHO.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton Internet Security\osCheck.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 2.0\resources\en-US\local\search.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - [url]http://go.microsoft.com/fwlink/?linkid=58813[/url]
O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} (Musicnotes Viewer) - [url]http://www.musicnotes.com/download/mnviewer.cab[/url]
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - [url]http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409[/url]
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} - [url]http://www.symantec.com/techsupp/asa/ctrl/LSSupCtl.cab[/url]
O16 - DPF: {3451DEDE-631F-421C-8127-FD793AFC6CC8} (ActiveDataInfo Class) - [url]https://www-secure.symantec.com/techsupp/asa/ctrl/SymAData.cab[/url]
O16 - DPF: {37DF41B2-61DB-4CAC-A755-CFB3C7EE7F40} (AOL Content Update) - [url]http://esupport.aol.com/help/acp2/engine/aolcoach_core_1.cab[/url]
O16 - DPF: {44990200-3C9D-426D-81DF-AAB636FA4345} (Symantec SmartIssue) - [url]https://www-secure.symantec.com/techsupp/asa/ctrl/tgctlsi.cab[/url]
O16 - DPF: {44990301-3C9D-426D-81DF-AAB636FA4345} (Symantec Script Runner Class) - [url]https://www-secure.symantec.com/techsupp/asa/ctrl/tgctlsr.cab[/url]
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - [url]http://aolcc.aol.com/computercheckup/qdiagcc.cab[/url]
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - [url]http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1095990174078[/url]
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - [url]http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab[/url]
O16 - DPF: {6A344D34-5231-452A-8A57-D064AC9B7862} (Symantec Download Manager) - [url]https://webdl.symantec.com/activex/symdlmgr.cab[/url]
O16 - DPF: {94B82441-A413-4E43-8422-D49930E69764} (TLIEFlashObj Class) - [url]https://echat.us.dell.com/Media/VisitorChat/TLIEFlash.CAB[/url]
O16 - DPF: {9D190AE6-C81E-4039-8061-978EBAD10073} (F-Secure Online Scanner 3.0) - [url]http://support.f-secure.com/ols3/fscax.cab[/url]
O16 - DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429} (ScorchPlugin Class) - [url]http://www.sibelius.com/download/software/win/ActiveXPlugin.cab[/url]
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - [url]http://aolsvc.aol.com/onlinegames/bejeweled2/popcaploader_v7.cab[/url]
O16 - DPF: {EB387D2F-E27B-4D36-979E-847D1036C65D} (QDiagHUpdateObj Class) - [url]http://h30043.www3.hp.com/ps/en/check/qdiagh.cab?322[/url]
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
O23 - Service: Symantec Settings Manager (ccSetMgr) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: Crypkey License - Kenonic Controls Ltd. - C:\WINDOWS\SYSTEM32\crypserv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\isPwdSvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPH11 - HP - C:\WINDOWS\system32\HPHipm11.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe
O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Sony DADC Austria AG. - C:\WINDOWS\system32\UAService7.exe

Kev107
11-07-2006, 11:20 PM
---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------

+ Created at: 10:00:03 PM 11/7/2006

+ Scan result:



C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1254\A0172420.dll -> Adware.Agent : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1255\A0173490.dll -> Adware.Agent : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1258\A0173702.dll -> Adware.Agent : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1259\A0173706.dll -> Adware.Agent : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1260\A0173772.dll -> Adware.Agent : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1261\A0173817.dll -> Adware.Agent : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1268\A0175123.dll -> Adware.Agent : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1270\A0176133.dll -> Adware.Agent : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1271\A0176391.dll -> Adware.Agent : Cleaned with backup (quarantined).
C:\Program Files\AWS\WeatherBug\MiniBugTransporter.dll -> Adware.Aws : Cleaned with backup (quarantined).
HKU\S-1-5-21-725345543-789336058-682003330-1003\Software\Microsoft\Windows\CurrentVersion\Ext \Stats\{C3703265-4671-4858-92A4-CBA6A7B3BB45} -> Adware.Generic : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1248\A0171308.DLL -> Adware.IWon : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1248\A0171313.EXE -> Adware.MyWebSearch : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1249\A0171390.dll -> Adware.PurityScan : Cleaned with backup (quarantined).
C:\Documents and Settings\Noah\Application Data\Microsoft\Internet Explorer\Quick Launch\SpyQuake2.com 2.3.lnk -> Adware.SpywareQuake : Cleaned with backup (quarantined).
C:\Documents and Settings\Noah\Start Menu\Programs\SpyQuake2.com -> Adware.SpywareQuake : Cleaned with backup (quarantined).
C:\Documents and Settings\Noah\Start Menu\Programs\SpyQuake2.com\SpyQuake2.com 2.3 Website.lnk -> Adware.SpywareQuake : Cleaned with backup (quarantined).
C:\Documents and Settings\Noah\Start Menu\Programs\SpyQuake2.com\SpyQuake2.com 2.3.lnk -> Adware.SpywareQuake : Cleaned with backup (quarantined).
C:\Documents and Settings\Noah\Start Menu\Programs\SpyQuake2.com\Uninstall SpyQuake2.com 2.3.lnk -> Adware.SpywareQuake : Cleaned with backup (quarantined).
C:\Documents and Settings\Noah\Start Menu\SpyQuake2.com 2.3.lnk -> Adware.SpywareQuake : Cleaned with backup (quarantined).

Kev107
11-07-2006, 11:22 PM
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1248\A0171283.exe -> Adware.SpywareQuake : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1271\A0176401.dll -> Adware.Virtumonde : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\ins -> Adware.WebRebates : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1248\A0171297.DLL -> Downloader.IstBar : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1271\A0176392.exe -> Downloader.PurityScan.co : Cleaned with backup (quarantined).
C:\Program Files\Common Files\YAZZLE1162OINADMIN.0XE -> Downloader.PurityScan.dc : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1260\A0173778.exe -> Downloader.PurityScan.dc : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1249\A0171389.exe -> Downloader.PurityScan.dt : Cleaned with backup (quarantined).
C:\Documents and Settings\Kevin\Desktop\backups\backup-20061105-060926-390.dll -> Downloader.Small : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1252\A0172383.exe -> Downloader.Zlob.aew : Cleaned with backup (quarantined).
C:\Documents and Settings\Noah\Local Settings\Temporary Internet Files\Content.IE5\ZZQ7K6YI\L11[1].0XE -> Downloader.Zlob.att : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1247\A0171253.exe -> Downloader.Zlob.att : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1247\A0171269.exe -> Downloader.Zlob.att : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1248\A0171357.exe -> Downloader.Zlob.att : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1248\A0171364.exe -> Downloader.Zlob.att : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1249\A0172365.exe -> Downloader.Zlob.att : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1250\A0172381.exe -> Downloader.Zlob.att : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1252\A0172384.exe -> Downloader.Zlob.att : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1252\A0172385.exe -> Downloader.Zlob.att : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1249\A0171388.dll -> Dropper.Small.abe : Cleaned with backup (quarantined).
C:\Documents and Settings\Jacob\Local Settings\Temp\Temporary Directory 1 for heroes_trial.zip\heroes_trial.exe -> Heuristic.Win32.Dialer : Cleaned with backup (quarantined).
C:\Documents and Settings\Noah\Local Settings\Temporary Internet Files\Content.IE5\NQGNBHWX\popup[2].htm -> Hijacker.Agent.a : Cleaned with backup (quarantined).
C:\Documents and Settings\Noah\Local Settings\Temporary Internet Files\Content.IE5\GPM3ODUN\ANTZOM[1].0XE -> Hijacker.Small.lr : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1254\A0173466.dll -> Not-A-Virus.Hoax.Win32.Renos.ds : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1254\A0173472.dll -> Not-A-Virus.Hoax.Win32.Renos.ds : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1254\A0173474.dll -> Not-A-Virus.Hoax.Win32.Renos.ds : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1254\A0173476.dll -> Not-A-Virus.Hoax.Win32.Renos.ds : Cleaned with backup (quarantined).
C:\!KillBox\drvkid.dll -> Not-A-Virus.Hoax.Win32.Renos.fw : Cleaned with backup (quarantined).
C:\Documents and Settings\Noah\Local Settings\Temp\mst288.tmp -> Not-A-Virus.Hoax.Win32.Renos.fw : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1271\A0176423.dll -> Not-A-Virus.Hoax.Win32.Renos.fw : Cleaned with backup (quarantined).
:mozilla.562:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.247realmedia : Cleaned.

Kev107
11-07-2006, 11:24 PM
C:\Documents and Settings\Noah\Cookies\noah@247realmedia[1].txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.100:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.100:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.100:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.101:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.101:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.101:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.102:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.102:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.102:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.103:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.103:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.104:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.104:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.105:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.105:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.106:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.107:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.108:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.109:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.110:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.111:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.112:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.113:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.114:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.115:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.116:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.117:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.118:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.119:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.120:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.121:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.122:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.123:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.124:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.158:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.169:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.184:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.196:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.255:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.276:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.296:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.334:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.34:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.353:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.356:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.359:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.35:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.36:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.36:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.370:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.375:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.37:C:\Documents and Settings\Lisa\Application

Kev107
11-07-2006, 11:26 PM
Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.38:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.399:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.39:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.39:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.402:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.40:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.40:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.41:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.41:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.42:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.42:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.43:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.43:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.44:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.44:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.45:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.45:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.465:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.46:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.46:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.47:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.47:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.481:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.485:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.48:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.48:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.493:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.49:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.49:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.50:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.50:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.51:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.51:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.52:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.52:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.539:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.53:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.53:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.54:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.54:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.55:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.55:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.56:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.56:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.609:C:\Documents and Settings\Noah\Application

Kev107
11-07-2006, 11:27 PM
Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.610:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.61:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.62:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.63:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.64:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.65:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.66:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.67:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.68:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.69:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.69:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.70:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.71:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.71:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.72:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.72:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.73:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.73:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.74:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.74:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.75:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.75:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.76:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.77:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.77:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.78:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.78:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.79:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.79:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.80:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.80:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.81:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.81:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.82:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.82:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.83:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.83:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.83:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.84:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.84:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.84:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.85:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.85:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.85:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.86:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.86:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.86:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.86:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.87:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.87:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.87:C:\Documents and Settings\Noah\Application

Kev107
11-07-2006, 11:28 PM
Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.87:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.88:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.88:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.88:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.88:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.89:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.89:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.89:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.90:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.90:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.90:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.90:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.91:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.91:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.91:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.92:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.92:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.92:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.93:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.93:C:\Documents and Settings\Kevin\Application

Kev107
11-07-2006, 11:29 PM
Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.93:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.94:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.94:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.94:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.95:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.95:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.95:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.96:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.96:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.96:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.97:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.97:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.97:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.98:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.98:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.98:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.99:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.99:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.99:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.2o7 : Cleaned.C:\Documents and Settings\Jacob\Cookies\jacob@2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Jacob\Local Settings\Temp\Cookies\jacob@2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@americanexpress.122.2 o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@cnn.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@embarq.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@examinercom.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@highbeam.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@homestore.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@blindscom.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@cbs.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@entrepreneur.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@highbeam.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@metacafe.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.

Kev107
11-07-2006, 11:30 PM
C:\Documents and Settings\Noah\Cookies\noah@wrigley.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Zachary\Cookies\zachary@msnportal.112.2o7 [1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Zachary\Cookies\zachary@powellsbooks.122. 2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Zachary\Cookies\zachary@riptownmedia.122. 2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Zachary\Cookies\zachary@simplestar.122.2o 7[1].txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.324:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.325:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.326:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.327:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.328:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.329:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.330:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.331:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.852:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.853:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.854:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.857:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.858:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.864:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.872:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.874:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.901:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.902:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Aavalue : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@aavalue[2].txt -> TrackingCookie.Aavalue : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@eztracks.aavalue[2].txt -> TrackingCookie.Aavalue : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@mrsupergames.aavalue[1].txt -> TrackingCookie.Aavalue : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@reciperewards.aavalue [1].txt -> TrackingCookie.Aavalue : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@aavalue[2].txt -> TrackingCookie.Aavalue : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@musicvixen.aavalue[2].txt -> TrackingCookie.Aavalue : Cleaned.
:mozilla.411:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Ad-logics : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@ad-logics[2].txt -> TrackingCookie.Ad-logics : Cleaned.
:mozilla.131:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.132:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.162:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.168:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.397:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.398:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@adbrite[2].txt -> TrackingCookie.Adbrite : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@ads.addynamix[2].txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.208:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Adjuggler : Cleaned.
:mozilla.209:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Adjuggler : Cleaned.
:mozilla.210:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Adjuggler : Cleaned.
:mozilla.218:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Adjuggler : Cleaned.
:mozilla.219:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Adjuggler : Cleaned.
:mozilla.220:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Adjuggler : Cleaned.
:mozilla.426:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Adjuggler : Cleaned.
:mozilla.427:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Adjuggler : Cleaned.
:mozilla.428:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Adjuggler : Cleaned.
:mozilla.296:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Admarketplace : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@admarketplace[2].txt -> TrackingCookie.Admarketplace : Cleaned.
:mozilla.201:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.272:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.273:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.356:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.357:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.422:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.423:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.644:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.645:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Adserver : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@z1.adserver[1].txt -> TrackingCookie.Adserver : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@z1.adserver[1].txt -> TrackingCookie.Adserver : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@z1.adserver[1].txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.175:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.176:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.25:C:\Documents and Settings\Jacob\Application

Kev107
11-07-2006, 11:31 PM
Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.26:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.278:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.279:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.27:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.280:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.281:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.28:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.29:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.65:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.66:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.66:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.67:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.67:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.68:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.68:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.68:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.69:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.69:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.69:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.70:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.70:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.71:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.71:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Advertising : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@advertising[2].txt -> TrackingCookie.Advertising : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@advertising[1].txt -> TrackingCookie.Advertising : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@advertising[2].txt -> TrackingCookie.Advertising : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@advertising[1].txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.155:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.21:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.31:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.32:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.61:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.66:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\Jacob\Local Settings\Temp\Cookies\jacob@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.127:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Bfast : Cleaned.
:mozilla.514:C:\Documents and Settings\Noah\Application

Kev107
11-07-2006, 11:31 PM
Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Bfast : Cleaned.
:mozilla.605:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Bfast : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@bfast[1].txt -> TrackingCookie.Bfast : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@bfast[2].txt -> TrackingCookie.Bfast : Cleaned.
:mozilla.164:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.641:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Bluestreak : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@citi.bridgetrack[2].txt -> TrackingCookie.Bridgetrack : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@citi.bridgetrack[2].txt -> TrackingCookie.Bridgetrack : Cleaned.
:mozilla.283:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Burstbeacon : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@www.burstbeacon[2].txt -> TrackingCookie.Burstbeacon : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@www.burstbeacon[2].txt -> TrackingCookie.Burstbeacon : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@burstnet[2].txt -> TrackingCookie.Burstnet : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@burstnet[2].txt -> TrackingCookie.Burstnet : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@burstnet[1].txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.157:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.18:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.19:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.210:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.253:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.27:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.28:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.30:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.552:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Casalemedia : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@casalemedia[1].txt -> TrackingCookie.Casalemedia : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@casalemedia[1].txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.179:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.Centrport : Cleaned.
:mozilla.350:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Centrport : Cleaned.
:mozilla.473:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Centrport : Cleaned.
:mozilla.899:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Centrport : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@centrport[1].txt -> TrackingCookie.Centrport : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@centrport[1].txt -> TrackingCookie.Centrport : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@centrport[1].txt -> TrackingCookie.Centrport : Cleaned.
:mozilla.50:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Clickbank : Cleaned.
:mozilla.51:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Clickbank : Cleaned.
C:\Documents and Settings\Zachary\Cookies\zachary@clickbank[1].txt -> TrackingCookie.Clickbank : Cleaned.
:mozilla.137:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Clickzs : Cleaned.
:mozilla.138:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Clickzs : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@vip.clickzs[2].txt -> TrackingCookie.Clickzs : Cleaned.
:mozilla.119:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.120:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.242:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Com : Cleaned.
:mozilla.284:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.285:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.35:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.413:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.417:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.79:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.80:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Com : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@com[2].txt -> TrackingCookie.Com : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@com[2].txt -> TrackingCookie.Com : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@com[2].txt -> TrackingCookie.Com : Cleaned.
C:\Documents and Settings\Zachary\Cookies\zachary@com[2].txt -> TrackingCookie.Com : Cleaned.
:mozilla.103:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Coremetrics : Cleaned.
:mozilla.114:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Coremetrics : Cleaned.
:mozilla.119:C:\Documents and Settings\Lisa\Application

Kev107
11-07-2006, 11:32 PM
Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.Coremetrics : Cleaned.
:mozilla.180:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.Coremetrics : Cleaned.
:mozilla.263:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Coremetrics : Cleaned.
:mozilla.270:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Coremetrics : Cleaned.
:mozilla.314:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Coremetrics : Cleaned.
:mozilla.323:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Coremetrics : Cleaned.
:mozilla.346:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Coremetrics : Cleaned.
:mozilla.419:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Coremetrics : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@data.coremetrics[1].txt -> TrackingCookie.Coremetrics : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@twci.coremetrics[1].txt -> TrackingCookie.Coremetrics : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@data.coremetrics[1].txt -> TrackingCookie.Coremetrics : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@twci.coremetrics[1].txt -> TrackingCookie.Coremetrics : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@twci.coremetrics[1].txt -> TrackingCookie.Coremetrics : Cleaned.
:mozilla.161:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Cpvfeed : Cleaned.
:mozilla.162:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Cpvfeed : Cleaned.
:mozilla.163:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Cpvfeed : Cleaned.
:mozilla.164:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Cpvfeed : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@cpvfeed[2].txt -> TrackingCookie.Cpvfeed : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@cpvfeed[2].txt -> TrackingCookie.Cpvfeed : Cleaned.
:mozilla.105:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.181:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.20:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.225:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.243:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.283:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.33:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@doubleclick[2].txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@doubleclick[2].txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@c.enhance[1].txt -> TrackingCookie.Enhance : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@enhance[1].txt -> TrackingCookie.Enhance : Cleaned.
:mozilla.137:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.228:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.233:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.798:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@e-2dj6wjlokhazkgo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@e-2dj6wjnygpcjsho.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@y-1shz2prbmdj6wvny-1sez2pra2dj6wfliclc5ahpgqdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.233:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Estat : Cleaned.
:mozilla.448:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Estat : Cleaned.
:mozilla.480:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Etracker : Cleaned.
:mozilla.503:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Euniverseads : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@euniverseads[1].txt -> TrackingCookie.Euniverseads : Cleaned.
:mozilla.414:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.451:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Euroclick : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.108:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.111:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.112:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.113:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.122:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.17:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.24:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.475:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Falkag : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@as-us.falkag[2].txt -> TrackingCookie.Falkag : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@as-eu.falkag[2].txt -> TrackingCookie.Falkag : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@as-us.falkag[2].txt -> TrackingCookie.Falkag : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@sel.as-eu.falkag[1].txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.10:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.11:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.12:C:\Documents and Settings\Noah\Application

Kev107
11-07-2006, 11:33 PM
Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.13:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.14:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.161:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.182:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.29:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.311:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.312:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.52:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.53:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.54:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.55:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.58:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.6:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.7:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.8:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.9:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@fastclick[1].txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\Jacob\Local Settings\Temp\Cookies\jacob@fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@media.fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@fastclick[1].txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@media.fastclick[1].txt -> TrackingCookie.Fastclick : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@****-access[2].txt -> TrackingCookie.****-access : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@tracking.g3x[1].txt -> TrackingCookie.G3x : Cleaned.
:mozilla.188:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Gamershell : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@www.gamershell[2].txt -> TrackingCookie.Gamershell : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@gator[1].txt -> TrackingCookie.Gator : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@c.goclick[1].txt -> TrackingCookie.Goclick : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@c.goclick[2].txt -> TrackingCookie.Goclick : Cleaned.
:mozilla.216:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.252:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.262:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.26:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.40:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.47:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.52:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.115:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.123:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.13:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.142:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.143:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.144:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.145:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.146:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.147:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.14:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.15:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.184:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.185:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.186:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.188:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.190:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.203:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.204:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.21:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.220:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.22:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.234:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.23:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.24:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.252:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.261:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.265:C:\Documents and Settings\Kevin\Application

Kev107
11-07-2006, 11:34 PM
Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.266:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.267:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.268:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.271:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.295:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.304:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.305:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.306:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.307:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.308:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.309:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.309:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.336:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.337:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.338:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.371:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.375:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.386:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.425:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.462:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.462:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.464:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.465:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.494:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.501:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.525:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.526:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.53:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.575:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.582:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.583:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.587:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.58:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.59:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.60:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.613:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.61:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.62:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.634:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.63:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.643:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.64:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.65:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.66:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.67:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.720:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@ehg-bestbuy.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.

Kev107
11-07-2006, 11:34 PM
C:\Documents and Settings\Jacob\Cookies\jacob@ehg-bestwestern.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@ehg-classifiedventures.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@ehg-comcast.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@ehg-dig.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@ehg-foxsports.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@ehg-idg.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@ehg-timeinc.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@ehg-ubisoft.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@ehg-airtran.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@ehg-cisco.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@ehg-dig.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@ehg-hollywoodmedia.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@ehg-simon.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@ehg-stampsdotcom.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@ehg-teococorp.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@ehg-dig.hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@ehg-ubisoft.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.349:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.350:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.351:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.352:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.377:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.380:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.381:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.382:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.383:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.384:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.391:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.596:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.597:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.598:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.599:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Hitslink : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@counter.hitslink[1].txt -> TrackingCookie.Hitslink : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@counter2.hitslink[1].txt -> TrackingCookie.Hitslink : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@counter2.hitslink[2].txt -> TrackingCookie.Hitslink : Cleaned.
:mozilla.606:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Hotlog : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@hotlog[1].txt -> TrackingCookie.Hotlog : Cleaned.
:mozilla.226:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hypertracker : Cleaned.
:mozilla.227:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Hypertracker : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@hypertracker[1].txt -> TrackingCookie.Hypertracker : Cleaned.
:mozilla.271:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Ivwbox : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@ivwbox[1].txt -> TrackingCookie.Ivwbox : Cleaned.
:mozilla.319:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.320:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.321:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.428:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.429:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.430:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.693:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.694:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Liveperson : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@server.iad.liveperson [1].txt -> TrackingCookie.Liveperson : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@sec1.liveperson[1].txt -> TrackingCookie.Liveperson : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@sales.liveperson[1].txt -> TrackingCookie.Liveperson : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@server.iad.liveperson[1].txt -> TrackingCookie.Liveperson : Cleaned.
C:\Documents and Settings\Zachary\Cookies\zachary@sales.liveperson[1].txt -> TrackingCookie.Liveperson : Cleaned.
:mozilla.161:C:\Documents and Settings\Noah\Application

Kev107
11-07-2006, 11:35 PM
Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Masterstats : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@image.masterstats[1].txt -> TrackingCookie.Masterstats : Cleaned.
:mozilla.149:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.150:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.175:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.183:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.22:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.97:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@mediaplex[2].txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\Zachary\Cookies\zachary@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@www.myaffiliateprogram[2].txt -> TrackingCookie.Myaffiliateprogram : Cleaned.
:mozilla.211:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.213:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.214:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.321:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.323:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.428:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.432:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.434:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.435:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.496:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.497:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Onestat : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@stat.onestat[1].txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.120:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.121:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.128:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.129:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.130:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.159:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.160:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.175:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.176:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.213:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.214:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.215:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.248:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.271:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.292:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.378:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@overture[2].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@data1.perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@data3.perf.overture[2].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@data3.perf.overture[2].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@overture[2].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@data1.perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@data4.perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@overture[1].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@www10.paypopup[2].txt -> TrackingCookie.Paypopup : Cleaned.
:mozilla.226:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.227:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.228:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.229:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.230:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.34:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.35:C:\Documents and Settings\Kevin\Application

Budfred
11-07-2006, 11:35 PM
Stop... You don't need to post all those tracking cookies, just the other stuff....

Kev107
11-07-2006, 11:36 PM
Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.36:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.37:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Pointroll : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@ads.pointroll[2].txt -> TrackingCookie.Pointroll : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@ads.pointroll[2].txt -> TrackingCookie.Pointroll : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@ads.pointroll[1].txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.827:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Pro-market : Cleaned.
:mozilla.828:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Pro-market : Cleaned.
:mozilla.829:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Pro-market : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@pro-market[1].txt -> TrackingCookie.Pro-market : Cleaned.
:mozilla.205:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Qksrv : Cleaned.
:mozilla.206:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Qksrv : Cleaned.
:mozilla.449:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Qksrv : Cleaned.
:mozilla.453:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Qksrv : Cleaned.
:mozilla.493:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Qksrv : Cleaned.
:mozilla.494:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Qksrv : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@qksrv[1].txt -> TrackingCookie.Qksrv : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@qksrv[1].txt -> TrackingCookie.Qksrv : Cleaned.
:mozilla.162:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.163:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.178:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.231:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.232:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.59:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.60:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Questionmarket : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@questionmarket[2].txt -> TrackingCookie.Questionmarket : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@questionmarket[2].txt -> TrackingCookie.Questionmarket : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@questionmarket[1].txt -> TrackingCookie.Questionmarket : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@ads.realcastmedia[1].txt -> TrackingCookie.Realcastmedia : Cleaned.
:mozilla.511:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Realtracker : Cleaned.
:mozilla.833:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Realtracker : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@web4.realtracker[2].txt -> TrackingCookie.Realtracker : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@stats1.reliablestats[2].txt -> TrackingCookie.Reliablestats : Cleaned.
C:\Documents and Settings\Zachary\Cookies\zachary@stats1.reliablest ats[2].txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.230:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Revenue : Cleaned.
:mozilla.454:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Revenue : Cleaned.
:mozilla.455:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Revenue : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@revenue[2].txt -> TrackingCookie.Revenue : Cleaned.
:mozilla.135:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.136:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.231:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.278:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.279:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.406:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.407:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.66:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.67:C:\Documents and Settings\Lisa\Application Data\Mozilla\Firefox\Profiles\n7wrphgs.default\coo kies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.77:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.78:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.79:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.80:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.81:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.82:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.83:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.85:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.86:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Ru4 : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@edge.ru4[1].txt -> TrackingCookie.Ru4 : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@edge.ru4[1].txt -> TrackingCookie.Ru4 : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@edge.ru4[2].txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.124:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.125:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.126:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.127:C:\Documents and Settings\Noah\Application

Kev107
11-07-2006, 11:37 PM
Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.228:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.229:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.230:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.231:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.233:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.234:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.235:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.236:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.237:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.325:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@serving-sys[1].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.239:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Sitestat : Cleaned.
:mozilla.240:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Sitestat : Cleaned.
:mozilla.151:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.257:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.444:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Specificclick : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@adopt.specificclick[1].txt -> TrackingCookie.Specificclick : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@adopt.specificclick[2].txt -> TrackingCookie.Specificclick : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@adopt.specificclick[2].txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.265:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Spylog : Cleaned.
C:\Documents and Settings\Jacob\Cookies\jacob@spylog[1].txt -> TrackingCookie.Spylog : Cleaned.
:mozilla.150:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Starware : Cleaned.
:mozilla.151:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Starware : Cleaned.
:mozilla.152:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Starware : Cleaned.
:mozilla.153:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Starware : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@h.starware[1].txt -> TrackingCookie.Starware : Cleaned.
C:\Documents and Settings\Kevin\Cookies\kevin@www.starware[1].txt -> TrackingCookie.Starware : Cleaned.
C:\Documents and Settings\Lisa\Cookies\lisa@h.starware[1].txt -> TrackingCookie.Starware : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@h.starware[2].txt -> TrackingCookie.Starware : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@starware[2].txt -> TrackingCookie.Starware : Cleaned.
C:\Documents and Settings\Noah\Cookies\noah@try.starware[1].txt -> TrackingCookie.Starware : Cleaned.
:mozilla.100:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.101:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.102:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.103:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.108:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.109:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.10:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.110:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\6erqpnmj.Noah\cookie s.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.11:C:\Documents and Settings\Zachary\Application Data\Mozilla\Firefox\Profiles\it237w98.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.125:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.126:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.127:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.128:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.129:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.130:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.131:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.131:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.132:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.133:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.133:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.134:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.135:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.135:C:\Documents and Settings\Noah\Application Data\Mozilla\Firefox\Profiles\nsvag9vm.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.136:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.137:C:\Documents and Settings\Jacob\Application Data\Mozilla\Firefox\Profiles\qmm17b2a.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.373:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.374:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.375:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.376:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.377:C:\Documents and Settings\Kevin\Application Data\Mozilla\Firefox\Profiles\k4kzi1gm.default\coo kies.txt -> TrackingCookie.Statcounter : Cleaned.
:mozilla.378:C:\Documents and Settings\Kevin\Application

Budfred
11-07-2006, 11:51 PM
Read the PM I sent you... I need to know that you are not going to post any more of those tracking cookies and I will open this thread again...

Budfred
11-08-2006, 12:29 AM
I reopened the thread... You didn't respond to my PM, so I don't know if you got my message... Please: DO NOT post any more of those tracking cookies, they are not helpful and they just make it harder to figure out what is going on... Please do post any entries that are not cookies and the DrWeb log...

Kev107
11-08-2006, 08:27 PM
Didn't realize you didn't need to see all of the Ewido stuff.

Here's the Dr. Web file

mljge.dll;c:\windows\system32;Trojan.Virtumod;Will be cured after reboot.;
mljge.dll;C:\!KillBox;Trojan.Virtumod;Deleted.;
Process.exe;C:\!KillBox;Tool.Prockill;Moved.;
YSB_PROMPT[1].0TM;C:\Documents and Settings\Jacob\Local Settings\Temp\Temporary Internet Files\Content.IE5\F7D8W3SQ;Trojan.Isbar.83;Deleted .;
YSB_PROMPT[1].0TM;C:\Documents and Settings\Jacob\Local Settings\Temp\Temporary Internet Files\Content.IE5\S8AFN0MD;Trojan.Isbar.83;Deleted .;
Process.exe;C:\Documents and Settings\Kevin\Desktop\SmitfraudFix\SmitfraudFix;T ool.Prockill;Moved.;
restart.exe;C:\Documents and Settings\Kevin\Desktop\SmitfraudFix\SmitfraudFix;T ool.ShutDown.11;Moved.;
anti4[1].exe;C:\Documents and Settings\Noah\Local Settings\Temporary Internet Files\Content.IE5\98TB9NIF;Trojan.Virtumod;Deleted .;
ff3[1];C:\Documents and Settings\Noah\Local Settings\Temporary Internet Files\Content.IE5\NQGNBHWX;Trojan.Virtumod;Deleted .;
ErrorSafeNewReleaseInstall[1].exe;C:\Documents and Settings\Noah\Local Settings\Temporary Internet Files\Content.IE5\WPGXUN8D;Trojan.DownLoader.10963 ;Deleted.;
WxBug.EXE;C:\Program Files\AIM\Sysfiles;Adware.Aws;Moved.;
Randomize.dll;C:\Program Files\Broderbund\The Print Shop Photo Pro\System;BackDoor.Ralpha;Deleted.;
GTDownAO_106.ocx;C:\Program Files\Common Files\AolCoach\en_en;Adware.Gdown;Moved.;
A0171291.scr;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1248;Adware.Msearch;Moved.;
A0171292.dll;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1248;Adware.Msearch;Moved.;
A0171295.DLL;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1248;Adware.Msearch;Moved.;
A0171299.SCR;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1248;Adware.Msearch;Moved.;
A0171301.DLL;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1248;Adware.Msearch;Moved.;
A0171302.EXE;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1248;Adware.Msearch;Moved.;
A0171303.DLL;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1248;Trojan.DownLoader.7028;Delete d.;
A0171305.DLL;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1248;Adware.Msearch;Moved.;
A0171307.DLL;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1248;Adware.Msearch;Moved.;
A0171309.DLL;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1248;Adware.Msearch;Moved.;
A0171310.DLL;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1248;Adware.Msearch;Moved.;
A0171314.DLL;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1248;Adware.Websearch;Moved.;
A0171316.DLL;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1248;Adware.Msearch;Moved.;
A0171328.DLL;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1248;Tool.Hatkeys;Moved.;
A0171359.DLL;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1248;Adware.MWS;Moved.;
A0172359.dll;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1249;Adware.MWS;Moved.;
A0176393.exe;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1271;Adware.SearchColours;Moved.;
A0176394.exe;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1271;Adware.SearchColours;Moved.;
A0176395.exe;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1271;Adware.SearchColours;Moved.;
A0176396.exe;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1271;Adware.SearchColours;Moved.;
A0176397.exe;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1271;Adware.SearchColours;Moved.;
A0176398.exe;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1271;Adware.SearchColours;Moved.;
A0176399.exe;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1271;Adware.SearchColours;Moved.;
A0176400.exe;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1271;Adware.SearchColours;Moved.;
A0176402.exe;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1271;Adware.SearchColours;Moved.;
A0176403.exe;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1271;Adware.SearchColours;Moved.;
A0176404.exe;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1271;Adware.SearchColours;Moved.;
A0176434.dll;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1271;Trojan.DownLoader.3069;Delete d.;
A0176440.dll;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1271;Adware.Aws;Moved.;
A0176453.dll;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1271;Trojan.Virtumod;Deleted.;
A0176454.dll;C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1271;BackDoor.Ralpha;Deleted.;
popcaploader.dll;C:\WINDOWS\Downloaded Program Files;Program.PopcapLoader;Moved.;
mljge.dll;C:\WINDOWS\system32;Trojan.Virtumod;Will be cured after reboot.;
Process.exe;C:\WINDOWS\system32;Tool.Prockill;Move d.;

And...I'm a professor of Family Medicine at the University of Maryland School of Medicine.

I can't tell you how grateful I am for your help.

k

Kev107
11-08-2006, 08:30 PM
Looks like everytthing else was cookie related except this. Sorry, again.


C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1260\A0173773.dll -> Trojan.Agent.aae : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{C94DC10A-7652-46C5-BFFD-3ADD670A962C}\RP1271\A0176384.dll -> Trojan.BHO.g : Cleaned with backup (quarantined).


::Report end

Kev107
11-08-2006, 08:34 PM
Also - I had downloaded the newest version of IE a few days ago because the old version wouldn't load after starting to do some of this anti-viral stuff. It was working fine - although I still got occassional pop-ups. Now that version is also not loading. I guess the cleaning somehow corrupted the program. Just FYI.

k

Budfred
11-08-2006, 11:16 PM
Were these logs run before or after the HJT log... It would be a good idea to run another HJT log anyway so I can see what the current situation is, so please post that here... If you are still getting popups, you are still infected...

Also, I have lost track if I asked you to run this, but even if I did, it would be a good idea to run it again:

Please download VundoFix.exe (http://www.atribune.org/ccount/click.php?id=4)
to your desktop.
Double-click *VundoFix.exe* to run it.
Click the *Scan for Vundo* button.
Once it's done scanning, click the *Remove Vundo* button.
You will receive a prompt asking if you want to remove the files, click *YES*
Once you click yes, your desktop will go blank as it starts removing Vundo.
When completed, it will prompt that it will reboot your computer, click *OK*.
Please post the contents of C:\*vundofix.txt* and a new HiJackThis log.

Note: It is possible that VundoFix encountered a file it could not remove.
In this case, VundoFix will run on reboot, simply follow the above
instructions starting from "Click the *Scan for Vundo* button." when
VundoFix appears at reboot.

I work in health care myself, that is why I was interested in your connection... I work primarily with diabetes...

Kev107
11-10-2006, 12:29 AM
Here's the vundo and newest HJT

Don't know if there are any more pop-ups since IE won't load at all!
Are you an endocrinologist?

VundoFix V6.2.8

Checking Java version...

Java version is 1.5.0.4

Java version is 1.5.0.6

Scan started at 11:04:57 PM 11/9/2006

Listing files found while scanning....

C:\WINDOWS\system32\mljge.dll
C:\WINDOWS\system32\mljge.dll
C:\WINDOWS\system32\mljge.dll
C:\WINDOWS\system32\egjlm.ini
C:\WINDOWS\system32\egjlm.bak1
C:\WINDOWS\system32\egjlm.bak2
C:\WINDOWS\system32\egjlm.ini2
C:\WINDOWS\system32\egjlm.tmp
C:\WINDOWS\system32\egjlm.ini
C:\WINDOWS\system32\egjlm.bak1
C:\WINDOWS\system32\egjlm.bak2
C:\WINDOWS\system32\egjlm.ini2
C:\WINDOWS\system32\egjlm.tmp
C:\WINDOWS\system32\egjlm.ini
C:\WINDOWS\system32\egjlm.bak1
C:\WINDOWS\system32\egjlm.bak2
C:\WINDOWS\system32\egjlm.ini2
C:\WINDOWS\system32\egjlm.tmp

Beginning removal...

Attempting to delete C:\WINDOWS\system32\mljge.dll
C:\WINDOWS\system32\mljge.dll Could not be deleted.

Attempting to delete C:\WINDOWS\system32\mljge.dll
C:\WINDOWS\system32\mljge.dll Could not be deleted.

Attempting to delete C:\WINDOWS\system32\mljge.dll
C:\WINDOWS\system32\mljge.dll Could not be deleted.

Attempting to delete C:\WINDOWS\system32\egjlm.ini
C:\WINDOWS\system32\egjlm.ini Has been deleted!

Attempting to delete C:\WINDOWS\system32\egjlm.bak1
C:\WINDOWS\system32\egjlm.bak1 Has been deleted!

Attempting to delete C:\WINDOWS\system32\egjlm.bak2
C:\WINDOWS\system32\egjlm.bak2 Has been deleted!

Attempting to delete C:\WINDOWS\system32\egjlm.ini2
C:\WINDOWS\system32\egjlm.ini2 Has been deleted!

Attempting to delete C:\WINDOWS\system32\egjlm.tmp
C:\WINDOWS\system32\egjlm.tmp Has been deleted!

Performing Repairs to the registry.
Done!

Beginning removal...

Attempting to delete C:\WINDOWS\system32\mljge.dll
C:\WINDOWS\system32\mljge.dll Has been deleted!

Performing Repairs to the registry.
Done!

Kev107
11-10-2006, 12:31 AM
Logfile of HijackThis v1.99.1
Scan saved at 11:25:27 PM, on 11/9/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\WINDOWS\system32\crypserv.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\UAService7.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\dumprep.exe
C:\Documents and Settings\Kevin\Desktop\HijackThis.exe
C:\WINDOWS\system32\dwwin.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.foxnews.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,AutoConfigURL = http://www.hshsl.umaryland.edu/proxy.pac
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {10667B86-83F0-4AA6-B7B6-E3DEA5F1E75C} - C:\WINDOWS\system32\mljge.dll (file missing)
O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\NppBho.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O2 - BHO: (no name) - {8F5F503E-762E-4E21-BCEC-2465A3746A60} - C:\WINDOWS\system32\mljge.dll (file missing)
O2 - BHO: (no name) - {DC691818-8FD8-FC5D-DCAE-A028EA5066CE} - blank (file missing)
O2 - BHO: (no name) - {E1CB56A9-79EC-4ABC-86EC-C30B6DA93C9A} - C:\WINDOWS\system32\mljge.dll (file missing)
O2 - BHO: (no name) - {F18F04B0-9CF1-4b93-B004-77A288BEE28B} - C:\WINDOWS\system32\rqlryufx.dll (file missing)
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\UIBHO.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton Internet Security\osCheck.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 2.0\resources\en-US\local\search.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=58813
O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} (Musicnotes Viewer) - http://www.musicnotes.com/download/mnviewer.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} - http://www.symantec.com/techsupp/asa/ctrl/LSSupCtl.cab
O16 - DPF: {3451DEDE-631F-421C-8127-FD793AFC6CC8} (ActiveDataInfo Class) -

Kev107
11-10-2006, 12:31 AM
https://www-secure.symantec.com/techsupp/asa/ctrl/SymAData.cab
O16 - DPF: {37DF41B2-61DB-4CAC-A755-CFB3C7EE7F40} (AOL Content Update) - http://esupport.aol.com/help/acp2/engine/aolcoach_core_1.cab
O16 - DPF: {44990200-3C9D-426D-81DF-AAB636FA4345} (Symantec SmartIssue) - https://www-secure.symantec.com/techsupp/asa/ctrl/tgctlsi.cab
O16 - DPF: {44990301-3C9D-426D-81DF-AAB636FA4345} (Symantec Script Runner Class) - https://www-secure.symantec.com/techsupp/asa/ctrl/tgctlsr.cab
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - http://aolcc.aol.com/computercheckup/qdiagcc.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1095990174078
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab
O16 - DPF: {6A344D34-5231-452A-8A57-D064AC9B7862} (Symantec Download Manager) - https://webdl.symantec.com/activex/symdlmgr.cab
O16 - DPF: {94B82441-A413-4E43-8422-D49930E69764} (TLIEFlashObj Class) - https://echat.us.dell.com/Media/VisitorChat/TLIEFlash.CAB
O16 - DPF: {9D190AE6-C81E-4039-8061-978EBAD10073} (F-Secure Online Scanner 3.0) - http://support.f-secure.com/ols3/fscax.cab
O16 - DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429} (ScorchPlugin Class) - http://www.sibelius.com/download/software/win/ActiveXPlugin.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://aolsvc.aol.com/onlinegames/bejeweled2/popcaploader_v7.cab
O16 - DPF: {EB387D2F-E27B-4D36-979E-847D1036C65D} (QDiagHUpdateObj Class) - http://h30043.www3.hp.com/ps/en/check/qdiagh.cab?322
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: wintst32 - wintst32.dll (file missing)
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
O23 - Service: Symantec Settings Manager (ccSetMgr) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: Crypkey License - Kenonic Controls Ltd. - C:\WINDOWS\SYSTEM32\crypserv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\isPwdSvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPH11 - HP - C:\WINDOWS\system32\HPHipm11.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe
O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Sony DADC Austria AG. - C:\WINDOWS\system32\UAService7.exe

Budfred
11-10-2006, 12:46 AM
I think you may almost be done... Open an HJT scan and put checks by:

O2 - BHO: (no name) - {10667B86-83F0-4AA6-B7B6-E3DEA5F1E75C} - C:\WINDOWS\system32\mljge.dll (file missing)
O2 - BHO: (no name) - {8F5F503E-762E-4E21-BCEC-2465A3746A60} - C:\WINDOWS\system32\mljge.dll (file missing)
O2 - BHO: (no name) - {DC691818-8FD8-FC5D-DCAE-A028EA5066CE} - blank (file missing)
O2 - BHO: (no name) - {E1CB56A9-79EC-4ABC-86EC-C30B6DA93C9A} - C:\WINDOWS\system32\mljge.dll (file missing)
O2 - BHO: (no name) - {F18F04B0-9CF1-4b93-B004-77A288BEE28B} - C:\WINDOWS\system32\rqlryufx.dll (file missing)
O20 - Winlogon Notify: wintst32 - wintst32.dll (file missing)

Close all open windows except HJT and press Fix checked...

Reboot and post a fresh log... You may need to do an IE Repair to get it working again... What happens when you try to open it??

Kev107
11-11-2006, 08:15 PM
Logfile of HijackThis v1.99.1
Scan saved at 7:12:21 PM, on 11/11/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.5730.0011)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\WINDOWS\system32\crypserv.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\system32\UAService7.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\Kevin\Desktop\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.foxnews.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Int ernet Settings,AutoConfigURL = http://www.hshsl.umaryland.edu/proxy.pac
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {1E8A6170-7264-4D0F-BEAE-D42A53123C75} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\NppBho.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: Show Norton Toolbar - {90222687-F593-4738-B738-FBEE9C7B26DF} - C:\Program Files\Common Files\Symantec Shared\coShared\Browser\1.0\UIBHO.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [osCheck] "C:\Program Files\Norton Internet Security\osCheck.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 2.0\resources\en-US\local\search.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 2.0\aoltb.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - [url]http://go.microsoft.com/fwlink/?linkid=58813[/url]
O16 - DPF: {1239CC52-59EF-4DFA-8C61-90FFA846DF7E} (Musicnotes Viewer) - [url]http://www.musicnotes.com/download/mnviewer.cab[/url]
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - [url]http://go.microsoft.com/fwlink/?linkid=36467&clcid=0x409[/url]
O16 - DPF: {1F2F4C9E-6F09-47BC-970D-3C54734667FE} - [url]http://www.symantec.com/techsupp/asa/ctrl/LSSupCtl.cab[/url]
O16 - DPF: {3451DEDE-631F-421C-8127-FD793AFC6CC8} (ActiveDataInfo Class) - [url]https://www-secure.symantec.com/techsupp/asa/ctrl/SymAData.cab[/url]
O16 - DPF: {37DF41B2-61DB-4CAC-A755-CFB3C7EE7F40} (AOL Content Update) - [url]http://esupport.aol.com/help/acp2/engine/aolcoach_core_1.cab[/url]
O16 - DPF: {44990200-3C9D-426D-81DF-AAB636FA4345} (Symantec SmartIssue) - [url]https://www-secure.symantec.com/techsupp/asa/ctrl/tgctlsi.cab[/url]
O16 - DPF: {44990301-3C9D-426D-81DF-AAB636FA4345} (Symantec Script Runner Class) - [url]https://www-secure.symantec.com/techsupp/asa/ctrl/tgctlsr.cab[/url]
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - [url]http://aolcc.aol.com/computercheckup/qdiagcc.cab[/url]
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - [url]http://v5.windowsupdate.microsoft.com/v5consumer/V5Controls/en/x86/client/wuweb_site.cab?1095990174078[/url]
O16 - DPF: {644E432F-49D3-41A1-8DD5-E099162EEEC5} (Symantec RuFSI Utility Class) - [url]http://security.symantec.com/sscv6/SharedContent/common/bin/cabsa.cab[/url]
O16 - DPF: {6A344D34-5231-452A-8A57-D064AC9B7862} (Symantec Download Manager) - [url]https://webdl.symantec.com/activex/symdlmgr.cab[/url]
O16 - DPF: {94B82441-A413-4E43-8422-D49930E69764} (TLIEFlashObj Class) - [url]https://echat.us.dell.com/Media/VisitorChat/TLIEFlash.CAB[/url]
O16 - DPF: {9D190AE6-C81E-4039-8061-978EBAD10073} (F-Secure Online Scanner 3.0) - [url]http://support.f-secure.com/ols3/fscax.cab[/url]
O16 - DPF: {A8F2B9BD-A6A0-486A-9744-18920D898429} (ScorchPlugin Class) - [url]http://www.sibelius.com/download/software/win/ActiveXPlugin.cab[/url]
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - [url]http://aolsvc.aol.com/onlinegames/bejeweled2/popcaploader_v7.cab[/url]
O16 - DPF: {EB387D2F-E27B-4D36-979E-847D1036C65D} (QDiagHUpdateObj Class) - [url]http://h30043.www3.hp.com/ps/en/check/qdiagh.cab?322[/url]
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
O23 - Service: Symantec Settings Manager (ccSetMgr) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
O23 - Service: Symantec Lic NetConnect service (CLTNetCnService) - Unknown owner - C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe" /h ccCommon (file missing)
O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\VAScanner\comHost.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: Crypkey License - Kenonic Controls Ltd. - C:\WINDOWS\SYSTEM32\crypserv.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Symantec IS Password Validation (ISPwdSvc) - Symantec Corporation - C:\Program Files\Norton Internet Security\isPwdSvc.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Pml Driver HPH11 - HP - C:\WINDOWS\system32\HPHipm11.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: Symantec AppCore Service (SymAppCore) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\AppCore\AppSvc32.exe
O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Sony DADC Austria AG. - C:\WINDOWS\system32\UAService7.exe

IE doesn't launch at all. The icon is still on the desktop but the program doesn't start at all.

Thank you so much for all of your help!

Kev107
11-11-2006, 08:17 PM
I guess with that last bit of changing in HJT it did something. IE now up and running. You're a genius!

Budfred
11-11-2006, 10:04 PM
Your log seems to be clean... are you having any other symptoms of infection??

Here is my prevention speech to help avoid future infection:

This is a good time to set up protection against further attacks. Read the article linked below about "How did I
get infected". You need an antivirus that is updated, a good firewall (a router firewall is not enough) and a
spyware blocker like SpywareBlaster and also IE-Spyads. All of these have good free versions available... be very
cautious about any security software that advertises in popups or other intrusive ways, they are not only usually
useless, but also often have malware in them....

http://forums.spywareinfo.com/index.php?showtopic=60955

Kev107
11-12-2006, 02:02 PM
So is there anything I can do to support your work in the forum? Do you guys take donations?

Budfred
11-12-2006, 05:31 PM
We don't individually accept donations, but the PCGuide accepts them to keep the forums running... In the banners at the top of each page, there is a link to the PC Guide Tip Jar which can be used for that... :)