I reran ewido and cleaned everything up. The scan logs are posted below. I still got a popup just now when I launched Firefox and went to TomCoyote.org. This popup is:
http://ad.firstadsol...QTAADspgAAL..... (bunch of letters)
Do you still see something that could be causing these popups? I am wondering if my FireFox is completely screwed and needs to be replaced. Whatever it is it is deeply rooted.
Here is the new ewido scan report:
---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 10:00:33 PM, 11/16/2005
+ Report-Checksum: 93675630
+ Scan result:
HKLM\SOFTWARE\Classes\CLSID\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\Classes\MiniBugTransporter.MiniBugTransporterX\CLSID\\ -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\Classes\MiniBugTransporter.MiniBugTransporterX.1\CLSID\\ -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\ISTbar -> Spyware.ISTBar : Error during cleaning
HKLM\SOFTWARE\ISTbar\Historyfiles -> Spyware.ISTBar : Error during cleaning
HKLM\SOFTWARE\ISTbar\Historystring -> Spyware.ISTBar : Error during cleaning
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/HDPlugin1015.dll\\.Owner -> Spyware.Gator : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/HDPlugin1015.dll\\{DBAE7000-01EC-4162-8FEB-8A27AC937CA0} -> Spyware.Gator : Cleaned with backup
HKU\S-1-5-21-2830983197-1402316693-1564819534-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000010-6F7D-442C-93E3-4A4827C2E4C8} -> Spyware.InternetOptimizer : Cleaned with backup
HKU\S-1-5-21-2830983197-1402316693-1564819534-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10E42047-DEB9-4535-A118-B3F6EC39B807} -> Spyware.SideFind : Cleaned with backup
HKU\S-1-5-21-2830983197-1402316693-1564819534-1003\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FAA356E4-D317-42A6-AB41-A3021C6E7D52} -> Spyware.ISTBar : Cleaned with backup
:mozilla.9:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.10:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.11:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.12:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.13:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.19:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.22:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
:mozilla.28:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.29:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.30:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.33:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.56:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.61:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.63:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.66:C:\Documents and Settings\Brian\Application Data\Mozilla\Firefox\Profiles\bdtsfdps.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.13:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.16:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.17:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.18:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.19:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.20:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.21:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.22:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.23:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.24:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.56:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.58:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.59:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.61:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.76:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.83:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.94:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.95:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.96:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.97:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.98:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.99:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.100:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.101:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.114:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.116:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.117:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.118:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.124:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.126:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.128:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.129:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.145:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.146:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.147:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.148:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.149:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.150:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.151:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.152:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.153:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.154:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.155:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.156:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.157:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.158:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.159:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.160:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.165:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
:mozilla.167:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
:mozilla.170:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
:mozilla.175:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.176:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.177:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
:mozilla.188:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.189:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.190:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.191:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.192:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.193:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.208:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Linksynergy : Cleaned with backup
:mozilla.209:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Linksynergy : Cleaned with backup
:mozilla.223:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.224:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.225:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.226:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.229:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.230:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.232:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.233:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.242:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.247:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.252:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
:mozilla.272:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
:mozilla.284:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.285:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.287:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.301:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.311:C:\Documents and Settings\Deborah\Application Data\Mozilla\Firefox\Profiles\si2m8h2r.default\cookies.txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
C:\Documents and Settings\Deborah\Start Menu\Programs\Power Scan -> Spyware.PowerScan : Cleaned with backup
C:\Documents and Settings\Deborah\Start Menu\Programs\Power Scan\Power Scan.lnk -> Spyware.PowerScan : Cleaned with backup
C:\Documents and Settings\Owner\Cookies\owner@2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
C:\Documents and Settings\Owner\Cookies\owner@ad.yieldmanager[1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Owner\Cookies\owner@adopt.specificclick[1].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
C:\Documents and Settings\Owner\Cookies\owner@advertising[1].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Documents and Settings\Owner\Cookies\owner@as-us.falkag[1].txt -> Spyware.Cookie.Falkag : Cleaned with backup
C:\Documents and Settings\Owner\Cookies\owner@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Documents and Settings\Owner\Cookies\owner@doubleclick[2].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Documents and Settings\Owner\Cookies\owner@edge.ru4[2].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
C:\Documents and Settings\Owner\Cookies\owner@mediaplex[1].txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
C:\Documents and Settings\Owner\Cookies\owner@servedby.advertising[2].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Documents and Settings\Owner\Cookies\owner@trafficmp[2].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\Documents and Settings\Owner\Cookies\owner@valueclick[2].txt -> Spyware.Cookie.Valueclick : Cleaned with backup
C:\Documents and Settings\Owner\Cookies\owner@yieldmanager[2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Owner\Cookies\owner@z1.adserver[1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\Documents and Settings\Owner\Local Settings\Application Data\Wildtangent\Cdacache\00\00\0F.dat/files\wtvh.dll -> Spyware.WildTangent : Cleaned with backup
:mozilla.6:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.7:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.8:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.9:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.10:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.11:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.12:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.13:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.16:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.17:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.18:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.19:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.20:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.21:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.22:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.23:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.24:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.25:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.27:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.33:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.34:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.56:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.58:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.59:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.60:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.61:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.62:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.63:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.64:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.65:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.66:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.67:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.68:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.69:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.70:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.81:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.85:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.111:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup
:mozilla.134:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.223:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.224:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.304:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.305:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.316:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
:mozilla.317:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
:mozilla.345:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.352:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.363:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.373:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.374:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.393:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
:mozilla.406:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.415:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.418:C:\Documents and Settings\Robbie\Application Data\Mozilla\Firefox\Profiles\buq12yig.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
C:\Program Files\HijackThis\backups\backup-20051114-234455-735.dll -> Spyware.WinAD : Cleaned with backup
::Report End
After running ewido I rebooted and ran HJT. Here is the HJT scan log:
Logfile of HijackThis v1.99.1
Scan saved at 10:02:37 PM, on 11/16/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\userinit.exe
C:\WINDOWS\Explorer.EXE
C:\windows\system\hpsysdrv.exe
C:\WINDOWS\System32\hphmon05.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\Microsoft IntelliType Pro\type32.exe
C:\Program Files\Microsoft IntelliPoint\point32.exe
C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE
C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe
C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
C:\Program Files\Multimedia Card Reader\shwicon2k.exe
C:\Program Files\HP\Digital Imaging\Unload\hpqcmon.exe
C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE
C:\WINDOWS\system32\rundll32.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\HijackThis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.lds.org/
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: HP View - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\Program Files\HP\Digital Imaging\bin\hpdtlk02.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\System32\hkcmd.exe
O4 - HKLM\..\Run: [HPHmon05] C:\WINDOWS\System32\hphmon05.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /installquiet /keeploaded /nodetect
O4 - HKLM\..\Run: [type32] "C:\Program Files\Microsoft IntelliType Pro\type32.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Program Files\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [ShStatEXE] "C:\Program Files\Network Associates\VirusScan\SHSTAT.EXE" /STANDALONE
O4 - HKLM\..\Run: [McAfeeUpdaterUI] "C:\Program Files\Network Associates\Common Framework\UpdaterUI.exe" /StartedFromRunKey
O4 - HKLM\..\Run: [AutoTKit] C:\hp\bin\AUTOTKIT.EXE
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [SsAAD.exe] C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
O4 - HKLM\..\Run: [Sunkist2k] C:\Program Files\Multimedia Card Reader\shwicon2k.exe
O4 - HKLM\..\Run: [CamMonitor] c:\Program Files\HP\Digital Imaging\Unload\hpqcmon.exe
O4 - HKCU\..\Run: [NVIEW] rundll32.exe nview.dll,nViewLoadHook
O4 - HKCU\..\Run: [H/PC Connection Agent] "C:\Program Files\Microsoft ActiveSync\WCESCOMM.EXE"
O4 - HKCU\..\Run: [certmgr] C:\WINDOWS\System32\certmgr.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar3.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar3.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar3.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar3.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar3.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar3.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra 'Tools' menuitem: Create Mobile Favorite... - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\PROGRA~1\MI3AA1~1\INetRepl.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft....k/?linkid=39204
O16 - DPF: {FE5B9F54-7764-4C01-89F0-4862601EE954} (DigWebHelper Class) -
http://photos.msn.co....cab?10,0,910,0
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - c:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.EXE
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: McAfee Framework Service (McAfeeFramework) - Network Associates, Inc. - C:\Program Files\Network Associates\Common Framework\FrameworkService.exe
O23 - Service: Network Associates McShield (McShield) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\mcshield.exe
O23 - Service: Network Associates Task Manager (McTaskManager) - Network Associates, Inc. - C:\Program Files\Network Associates\VirusScan\vstskmgr.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\System32\HPZipm12.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe