Thanks Ken,
You're performing a valuable public service here.
Even the tech guys at my office don't know what to do with
this problem, so I'm at a loss.
I found a lot of junk using those programs.
However, the end result is more or less the same.
I can't load certain websites: hotmail and google groups, for example
and the performance of the browser in general, is as if it has an anvil around its neck.
Here are the logs from HJT and the other programs.
For reference, the programs I've tried now include
Norton Anti-Virus
Adaware SE
Spyware Search & Destroy
Ewido
carp** Cleaner
CWShredder
ADSSpy
Spysweeper
Hijack This
Hoster
bugoff
unhackdef
rootkitrevealer
Do you have a regime you recommend?
Should I run all of these every week or what?
Or maybe I should just shell out $2,500 for a Mac?
Things seem pretty dire...
logs:
Logfile of HijackThis v1.99.1
Scan saved at 7:34:32 PM, on 12/8/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
c:\Program Files\Norton AntiVirus\navapsvc.exe
c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\ewido\security suite\ewidoguard.exe
C:\WINDOWS\system32\drivers\KodakCCS.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
c:\Program Files\Norton AntiVirus\SAVScan.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
c:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\windows\system\hpsysdrv.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\hphmon06.exe
C:\HP\KBD\KBD.EXE
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\igfxtray.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S0BIC1.EXE
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\Messenger\msmsgs.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\HIJACKTHIS\HijackThis.exe
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - c:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: HP view - {B2847E28-5D7D-4DEB-8B67-05D28BCF79F5} - c:\Program Files\HP\Digital Imaging\bin\HPDTLK02.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - c:\Program Files\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [HPHUPD06] c:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe
O4 - HKLM\..\Run: [HPHmon06] C:\WINDOWS\system32\hphmon06.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [EPSON Stylus C62 Series] C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S0BIC1.EXE /P23 "EPSON Stylus C62 Series" /O5 "LPT1:" /M "Stylus C62"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Updates from HP.lnk = C:\Program Files\Updates from HP\309731\Program\Updates from HP.exe
O8 - Extra context menu item: Add To HP Organize... - C:\PROGRA~1\HEWLET~1\HPORGA~1\bin\core.hp.main\SendTo.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .mid: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin2.dll
O12 - Plugin for .wav: C:\Program Files\Internet Explorer\PLUGINS\npqtplugin.dll
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) -
http://go.microsoft....k/?linkid=39204
O16 - DPF: {5ED80217-570B-4DA9-BF44-BE107C0EC166} (CwlscInstall Object) -
https://scan.safety....lscbase2213.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -
http://update.micros...b?1133223452171
O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) -
http://pdl.stream.ao.../ampx_en_dl.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido\security suite\ewidoguard.exe
O23 - Service: Kodak Camera Connection Software (KodakCCS) - Eastman Kodak Company - C:\WINDOWS\system32\drivers\KodakCCS.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - c:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: SAVScan - Symantec Corporation - c:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------
+ Created on: 8:52:21 PM, 12/6/2005
+ Report-Checksum: 534C6997
+ Scan result:
:mozilla.16:C:\Documents and Settings\HP_Owner\Application Data\Mozilla\Firefox\Profiles\r98ghre6.default\cookies.txt -> Spyware.Cookie.7search : Cleaned with backup
:mozilla.17:C:\Documents and Settings\HP_Owner\Application Data\Mozilla\Firefox\Profiles\r98ghre6.default\cookies.txt -> Spyware.Cookie.7search : Cleaned with backup
:mozilla.18:C:\Documents and Settings\HP_Owner\Application Data\Mozilla\Firefox\Profiles\r98ghre6.default\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.22:C:\Documents and Settings\HP_Owner\Application Data\Mozilla\Firefox\Profiles\r98ghre6.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.25:C:\Documents and Settings\HP_Owner\Application Data\Mozilla\Firefox\Profiles\r98ghre6.default\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
C:\Documents and Settings\HP_Owner\Cookies\hp_owner@centrport[1].txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.7:C:\Documents and Settings\kids\Application Data\Mozilla\Firefox\Profiles\0sjbyq0s.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.8:C:\Documents and Settings\kids\Application Data\Mozilla\Firefox\Profiles\0sjbyq0s.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.10:C:\Documents and Settings\kids\Application Data\Mozilla\Firefox\Profiles\0sjbyq0s.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.11:C:\Documents and Settings\kids\Application Data\Mozilla\Firefox\Profiles\0sjbyq0s.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.12:C:\Documents and Settings\kids\Application Data\Mozilla\Firefox\Profiles\0sjbyq0s.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.13:C:\Documents and Settings\kids\Application Data\Mozilla\Firefox\Profiles\0sjbyq0s.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.14:C:\Documents and Settings\kids\Application Data\Mozilla\Firefox\Profiles\0sjbyq0s.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.15:C:\Documents and Settings\kids\Application Data\Mozilla\Firefox\Profiles\0sjbyq0s.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.16:C:\Documents and Settings\kids\Application Data\Mozilla\Firefox\Profiles\0sjbyq0s.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Documents and Settings\kids\Cookies\kids@cnn.122.2o7[2].txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.8:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.9:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.19:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.52:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.56:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.60:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.61:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.62:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.63:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.64:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.65:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.67:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.68:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.69:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.70:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.71:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.72:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.80:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.103:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.104:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.106:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.107:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.108:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.109:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.111:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.130:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.149:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.247realmedia : Cleaned with backup
:mozilla.152:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.161:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.196:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
:mozilla.209:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\1k0pq8xe.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
F:\WINDOWS\TEMP\Temporary Internet Files\Content.IE5\GDAZCH6J\popup[1].js -> Spyware.BookedSpace : Cleaned with backup
:mozilla.12:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.13:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.14:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.15:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.19:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.20:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.21:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.22:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.23:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.24:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.25:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.26:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.27:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.28:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.29:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.30:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.31:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.32:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.33:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.34:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.35:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.36:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.37:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.38:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.39:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.40:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.41:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.42:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.43:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.44:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.45:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.46:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.47:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.48:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.49:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.57:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.58:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.59:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.69:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.80:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.88:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.89:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.106:F:\WINDOWS\TEMP\~DFB5CF.TMP -> Spyware.Cookie.Mediaplex : Cleaned with backup
F:\WINDOWS\Cookies\anyuser@news.com[1].txt -> Spyware.Cookie.Com : Cleaned with backup
F:\WINDOWS\Cookies\anyuser@www.myaffiliateprogram[1].txt -> Spyware.Cookie.Myaffiliateprogram : Cleaned with backup
F:\WINDOWS\Cookies\anyuser@burstnet[2].txt -> Spyware.Cookie.Burstnet : Cleaned with backup
F:\WINDOWS\Cookies\dmb3h@com[2].txt -> Spyware.Cookie.Com : Cleaned with backup
F:\WINDOWS\Cookies\anyuser@track-star[1].txt -> Spyware.Cookie.Track-star : Cleaned with backup
F:\WINDOWS\Cookies\anyuser@imgserv.adbutler[1].txt -> Spyware.Cookie.Adbutler : Cleaned with backup
F:\WINDOWS\Cookies\anyuser@ads.trafficvenue[1].txt -> Spyware.Cookie.Trafficvenue : Cleaned with backup
F:\WINDOWS\Cookies\anyuser@112.2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
F:\WINDOWS\Cookies\anyuser@com[2].txt -> Spyware.Cookie.Com : Cleaned with backup
F:\WINDOWS\Cookies\anyuser@abetterinternet[2].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
F:\WINDOWS\Cookies\anyuser@sales.liveperson[1].txt -> Spyware.Cookie.Liveperson : Cleaned with backup
F:\WINDOWS\Cookies\anyuser@com[1].txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.12:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.13:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.14:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.15:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.19:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.20:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.21:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.22:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.23:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.24:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.25:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.26:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.27:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.28:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.29:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.30:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.31:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.32:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.33:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.34:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.35:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.36:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.37:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.38:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.39:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.40:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.41:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.42:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.43:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.44:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.45:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.46:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.47:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.48:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.49:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.57:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.58:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.59:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
:mozilla.69:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.80:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
:mozilla.88:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.89:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.106:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
:mozilla.110:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.111:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.112:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.113:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.114:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.115:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.116:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.117:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.118:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.119:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.126:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.127:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.128:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.136:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.154:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.160:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.161:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.174:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Weborama : Cleaned with backup
:mozilla.184:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Bfast : Cleaned with backup
:mozilla.185:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Bfast : Cleaned with backup
:mozilla.193:F:\WINDOWS\Application Data\Mozilla\Firefox\Profiles\xjed5s8i.default\cookies.txt -> Spyware.Cookie.Masterstats : Cleaned with backup
::Report End
********
9:15 PM: | Start of Session, Tuesday, December 06, 2005 |
9:15 PM: Spy Sweeper started
9:15 PM: Sweep initiated using definitions version 556
9:15 PM: Starting Memory Sweep
9:17 PM: Memory Sweep Complete, Elapsed Time: 00:02:39
9:17 PM: Starting Registry Sweep
9:18 PM: Registry Sweep Complete, Elapsed Time:00:00:34
9:18 PM: Starting Cookie Sweep
9:18 PM: Found Spy Cookie: atwola cookie
9:18 PM: kids@atwola[1].txt (ID = 2255)
9:18 PM: Found Spy Cookie: centrport net cookie
9:18 PM: hp_owner@centrport[1].txt (ID = 2374)
9:18 PM: Found Spy Cookie: rn11 cookie
9:18 PM: hp_owner@rn11[2].txt (ID = 3261)
9:18 PM: Cookie Sweep Complete, Elapsed Time: 00:00:01
9:18 PM: Starting File Sweep
9:55 PM: Warning: Invalid file - not a PKZip file
9:55 PM: Warning: Invalid file - not a PKZip file
9:57 PM: File Sweep Complete, Elapsed Time: 00:38:36
9:57 PM: Full Sweep has completed. Elapsed time 00:42:00
9:57 PM: Traces Found: 3
10:49 PM: Removal process initiated
10:49 PM: Quarantining All Traces: atwola cookie
10:49 PM: Quarantining All Traces: centrport net cookie
10:49 PM: Quarantining All Traces: rn11 cookie
10:49 PM: Removal process completed. Elapsed time 00:00:11
********
9:12 PM: | Start of Session, Tuesday, December 06, 2005 |
9:12 PM: Spy Sweeper started
9:13 PM: There is a problem reaching the server. The cause may be in your connection, or on the server. Please try again later.
9:15 PM: | End of Session, Tuesday, December 06, 2005 |