Jump to content

Build Theme!
  •  
  • Infected?

WE'RE SURE THAT YOU'LL LOVE US!

Hey there! :wub: Looks like you're enjoying the discussion, but you're not signed up for an account. When you create an account, we remember exactly what you've read, so you always come right back where you left off. You also get notifications, here and via email, whenever new posts are made. You can like posts to share the love. :D Join 93099 other members! Anybody can ask, anybody can answer. Consistently helpful members may be invited to become staff. Here's how it works. Virus cleanup? Start here -> Malware Removal Forum.

Try What the Tech -- It's free!


Photo

Winfixer and Vundo Trojan Problem!


  • This topic is locked This topic is locked
23 replies to this topic

#1 marriana

marriana

    New Member

  • Authentic Member
  • Pip
  • 16 posts

Posted 11 January 2006 - 07:36 PM

I have been researching you site on the many problems everyone is having with Winfixer. I had Spyhunter do a manual scan, but it was too late. I dowloaded STOPZILLA and presently have it on my Black List to block it. But now, I am getting popups from my McAfee VirusScan saying that I am infected with Vundo Trojan filepath:c:/WINDOS/SYSTEM32/mljgf.dll and cannot be cleaned, quarantined or deleted. I know I need to manually remove this from my system, but have no idea how to do this. I just downloaded HijackThis to give you a log report.

(just as a side note, every time I start up my computer, a small window comes up saying that the RUNDLL.NEWDOT could not be located. I didn't know what that was.)

Thanks for your help!!!

Logfile of HijackThis v1.99.1
Scan saved at 8:32:13 PM, on 1/11/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\System32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\STOPzilla!\SZServer.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\CTsvcCDA.exe
c:\program files\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
c:\PROGRA~1\mcafee.com\vso\OasClnt.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
c:\program files\mcafee.com\vso\mcvsshld.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\BCMSMMSG.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MSKAgent.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\PROGRA~1\MUSICM~1\MUSICM~2\mm_tray.exe
C:\Program Files\Dell Photo AIO Printer 942\dlbubmgr.exe
C:\Program Files\Dell Photo AIO Printer 942\memcard.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\Program Files\Dell Photo AIO Printer 942\dlbubmon.exe
C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoemon.exe
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\Program Files\STOPzilla!\STOPzilla.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\AWS\WeatherBug\Weather.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mim.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\Sony Corporation\Image Transfer\SonyTray.exe
C:\Program Files\Greetings Workshop\GWREMIND.EXE
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\MMDiag.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
c:\progra~1\mcafee.com\vso\mcvsftsn.exe
C:\WINDOWS\system32\dlbucoms.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\DOCUME~1\Marriana\LOCALS~1\Temp\Temporary Directory 1 for hijackthis[1].zip\HijackThis.exe
C:\DOCUME~1\Marriana\LOCALS~1\Temp\Temporary Directory 2 for hijackthis[1].zip\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapp.../search/ie.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell4me.com/myway
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://channels.aimt.../aimtoolbar.jsp
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapp...//www.yahoo.com
R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\2.bin\MWSSRCAS.DLL
O2 - BHO: MyWebSearch Search Assistant BHO - {00A6FAF1-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\2.bin\MWSSRCAS.DLL
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\ycomp5_3_16_0.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: mwsBar BHO - {07B18EA1-A523-4961-B6BB-170DE4475CCA} - C:\Program Files\MyWebSearch\bar\2.bin\MWSBAR.DLL
O2 - BHO: McAfee AntiPhishing Filter - {41D68ED8-4CFF-4115-88A6-6EBB8AF19000} - c:\program files\mcafee\spamkiller\mcapfbho.dll
O2 - BHO: (no name) - {549B5CA7-4A86-11D7-A4DF-000874180BB3} - (no file)
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: ATLDistrib Object - {78653A3E-A63F-42A9-A6FE-7524F4058767} - C:\WINDOWS\system32\mljgf.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: (no name) - {B407EF00-B808-4B84-A461-9FCBE5B0F74E} - C:\WINDOWS\System32\iarclass.dll (file missing)
O2 - BHO: STOPzilla Browser Helper Object - {E3215F20-3212-11D6-9F8B-00D0B743919D} - C:\Program Files\STOPzilla!\SZIEBHO.dll
O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file)
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: (no name) - {0494D0D9-F8E0-41ad-92A3-14154ECE70AC} - (no file)
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\ycomp5_3_16_0.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [BCMSMMSG] BCMSMMSG.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [MSKAGENTEXE] C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
O4 - HKLM\..\Run: [MSKDetectorExe] C:\PROGRA~1\McAfee\SPAMKI~1\MSKDetct.exe /startup
O4 - HKLM\..\Run: [Tat] C:\WINDOWS\system32\pgtools\tatss.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [WildTangent CDA] RUNDLL32.exe "C:\Program Files\WildTangent\Apps\CDA\cdaEngine0400.dll",cdaEngineMain
O4 - HKLM\..\Run: [New.net Startup] rundll32 C:\PROGRA~1\NEWDOT~1\NEWDOT~2.DLL,NewDotNetStartup -s
O4 - HKLM\..\Run: [MimBoot] C:\PROGRA~1\MUSICM~1\MUSICM~2\mimboot.exe
O4 - HKLM\..\Run: [MMTray] C:\PROGRA~1\MUSICM~1\MUSICM~2\mm_tray.exe
O4 - HKLM\..\Run: [Dell Photo AIO Printer 942] "C:\Program Files\Dell Photo AIO Printer 942\dlbubmgr.exe"
O4 - HKLM\..\Run: [DellMCM] "C:\Program Files\Dell Photo AIO Printer 942\memcard.exe"
O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoemon.exe
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [diagent] "C:\Program Files\Creative\SBLive\Diagnostics\diagent.exe" startup
O4 - HKLM\..\Run: [STOPzilla] C:\Program Files\STOPzilla!\STOPzilla.exe /autostart
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
O4 - HKCU\..\Run: [Weather] C:\Program Files\AWS\WeatherBug\Weather.exe 1
O4 - HKCU\..\Run: [MSKAGENTEXE] c:\PROGRA~1\mcafee\SPAMKI~1\mskagent.exe
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoemon.exe
O4 - HKCU\..\Run: [WinFixer2006] "C:\Program Files\WinFixer_2006\uwfx6.exe" /min
O4 - Startup: Greetings Workshop Reminders.lnk = C:\Program Files\Greetings Workshop\GWREMIND.EXE
O4 - Startup: MyWebSearch Email Plugin.lnk = C:\Program Files\MyWebSearch\bar\2.bin\MWSOEMON.EXE
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Image Transfer.lnk = ?
O4 - Global Startup: MyWebSearch Email Plugin.lnk = C:\Program Files\MyWebSearch\bar\2.bin\MWSOEMON.EXE
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra button: (no name) - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\program files\mcafee\spamkiller\mcapfbho.dll
O9 - Extra 'Tools' menuitem: McAfee AntiPhishing Filter - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\program files\mcafee\spamkiller\mcapfbho.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Related - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm (file missing)
O9 - Extra 'Tools' menuitem: Show &Related Links - {c95fe080-8f5d-11d2-a20b-00aa003c157a} - C:\WINDOWS\web\related.htm (file missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Ebates - {7F241C00-DAB6-11d5-AAA8-0001028DF1BC} - file://C:\Program Files\EbatesMoeMoneyMaker\System\Temp\ebates_script0.htm (HKCU)
O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\Program Files\AWS\WeatherBug\Weather.exe (HKCU)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} - http://ak.imgfarm.co...tup1.0.0.15.cab
O16 - DPF: {1D6711C8-7154-40BB-8380-3DEA45B69CBF} -
O16 - DPF: {38578BF0-0ABB-11D3-9330-0080C6F796A1} (Create & Print ActiveX Plug-in) - http://www.imgag.com...stall/AxCtp.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://bin.mcafee.co...76/mcinsctl.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.micros...b?1136562850953
O16 - DPF: {6F750200-1362-4815-A476-88533DE61D0C} (Ofoto Upload Manager Class) - http://adobe.kodakga..._1/axofupld.cab
O16 - DPF: {78AEEDE8-7345-4FB5-A8FE-4BFF16EF25FC} (McAfee Virtual Technician Control Class) - http://us-download.m...ted/mvt/mvt.cab
O16 - DPF: {BB383206-6DA1-4E80-B62A-3DF950FCC697} (Create & Print ActiveX Plug-in) - http://www.imgag.com...tall/AxCtp2.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://bin.mcafee.co...,16/mcgdmgr.cab
O16 - DPF: {D9EC0A76-03BF-11D4-A509-0090270F86E3} - http://bannerfarm.ac...r1132040406.EXE
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: mljgf - C:\WINDOWS\system32\mljgf.dll
O20 - Winlogon Notify: pmnli - C:\WINDOWS\system32\pmnli.dll (file missing)
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: dlbu_device - Dell - C:\WINDOWS\system32\dlbucoms.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
O23 - Service: McAfee SpamKiller Server (MskService) - McAfee Inc. - C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
O23 - Service: STOPzilla Service (szserver) - Unknown owner - C:\Program Files\Common Files\STOPzilla!\SZServer.exe

    Advertisements

Register to Remove


#2 marriana

marriana

    New Member

  • Authentic Member
  • Pip
  • 16 posts

Posted 13 January 2006 - 02:02 PM

It is January 13th and a close knowledgeable computer friend told me to get off IE and switch my browser to Firefox. I did so, and my computer is working faster and it seems to be blocking all popups. I haven't been getting any windows popping up from McAfee regarding the Vundo Trojan. I now I didn't remove any files, so I don't know why my computer is working good now. Here is another HijackThis log. Please help when you can. Thanks! Logfile of HijackThis v1.99.1 Scan saved at 3:00:44 PM, on 1/13/2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS\System32\smss.exe C:\WINDOWS\System32\winlogon.exe C:\WINDOWS\system32\services.exe C:\WINDOWS\system32\lsass.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\System32\svchost.exe C:\Program Files\Common Files\STOPzilla!\SZServer.exe C:\WINDOWS\system32\spoolsv.exe C:\WINDOWS\System32\CTsvcCDA.exe c:\program files\mcafee.com\agent\mcdetect.exe c:\PROGRA~1\mcafee.com\vso\mcshield.exe c:\PROGRA~1\mcafee.com\agent\mctskshd.exe C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe C:\WINDOWS\System32\svchost.exe C:\WINDOWS\System32\MsPMSPSv.exe C:\WINDOWS\system32\svchost.exe C:\WINDOWS\system32\dlbucoms.exe C:\WINDOWS\System32\winlogon.exe C:\Program Files\iPod\bin\iPodService.exe C:\WINDOWS\Explorer.EXE C:\WINDOWS\system32\hkcmd.exe C:\WINDOWS\BCMSMMSG.exe C:\WINDOWS\system32\dla\tfswctrl.exe C:\Program Files\Dell\Media Experience\PCMService.exe C:\Program Files\Common Files\Real\Update_OB\realsched.exe C:\PROGRA~1\mcafee.com\agent\mcagent.exe C:\Program Files\McAfee.com\VSO\mcvsshld.exe C:\PROGRA~1\McAfee\SPAMKI~1\MSKAgent.exe c:\progra~1\mcafee.com\vso\mcvsescn.exe C:\PROGRA~1\MUSICM~1\MUSICM~2\mm_tray.exe C:\Program Files\Dell Photo AIO Printer 942\dlbubmgr.exe C:\Program Files\Dell Photo AIO Printer 942\memcard.exe C:\Program Files\McAfee.com\VSO\oasclnt.exe C:\Program Files\QuickTime\qttask.exe C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe C:\Program Files\Dell Photo AIO Printer 942\dlbubmon.exe C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoemon.exe C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe C:\Program Files\STOPzilla!\STOPzilla.exe C:\Program Files\Messenger\msmsgs.exe C:\Program Files\AWS\WeatherBug\Weather.exe C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe C:\Program Files\Dell Support\DSAgnt.exe C:\Program Files\Sony Corporation\Image Transfer\SonyTray.exe C:\Program Files\Greetings Workshop\GWREMIND.EXE c:\progra~1\mcafee.com\vso\mcvsftsn.exe C:\Program Files\Mozilla Firefox\firefox.exe C:\Documents and Settings\Marriana\Desktop\HijackThis.exe

#3 Siggyx

Siggyx

    SuperHelper

  • Authentic Member
  • PipPipPipPipPipPip
  • 6,776 posts

Posted 13 January 2006 - 09:40 PM

STEP 1.
======
SpySweeper
Please download http://www.webroot.c...ode=af1&rc=3597
(It's a 2 week trial):
  • Click the Free Trial link under to "SpySweeper" to download the program.
  • Install it.
  • Once the program is installed, it will open.
  • It will prompt you to update to the latest definitions, click Yes.
  • Once the definitions are installed, click Sweep Now on the left side.
  • Click the Start button.
  • When it's done scanning, click the Next button.
  • Make sure everything has a check next to it, then click the Next button.
  • It will remove all of the items found.
  • Click Session Log in the upper right corner, copy everything in that window.
  • Click the Summary tab and click Finish.
  • Paste the contents of the session log you copied into your next reply.
STEP 2.
======
Download Ewido
  • Download and install Ewido Security Suite It is a free trial version of the program.
  • Install ewido security suite
  • Launch ewido, there should be an icon on your desktop double-click it.
  • The program will now go to the main screen
STEP 3.
======
Update Ewido
You will need to update ewido to the latest definition files.
  • On the left hand side of the main screen click update
  • Then click on Start Update
The update will start and a progress bar will show the updates being installed.
If you are having problems with the updater, you can use Ewido manual updates

STEP 4.
======
Ewido Scan
Once the updates are installed do the following:
  • Click on scanner
  • Click on Complete System Scan and the scan will begin.
  • NOTE: During some scans with ewido it is finding cases of false positives.**
    o You will need to step through the process of cleaning files one-by-one.
    o If ewido detects a file you KNOW to be legitimate, select none as the action.
    o DO NOT select "Perform action on all infections"
    o If you are unsure of any entry found select none for now.
  • Once the scan has completed, there will be a button located on the bottom of the screen named Save report
  • Click Save report.
  • Save the report .txt file to your desktop.
Now close ewido security suite.
**(Ewido for example has been flagging parts of AVG Anti-Virus, pcAnywhere and the game "Risk")


STEP 5.
======
CWShredder

Please download and run CWShredder
Make sure that all browser windows are closed with the exception of Cwshredder and choose FIX.

STEP 6.
======

Please do an onlione scan here http://housecall.trendmicro.com/ and allow it to clean/remove what it finds.


Please post the results from SpySweeper, ewido and a new hijackthis log.

#4 marriana

marriana

    New Member

  • Authentic Member
  • Pip
  • 16 posts

Posted 14 January 2006 - 04:07 PM

Thanks so much! I ran the programs and here is the Spysweeper Report. The ewido report is on the next posting. I had trouble with the housecall.trendmicro.com. It seemsed frozen in the scanning stage for over an hour. I will try that again. ******** 12:18 PM: | Start of Session, Saturday, January 14, 2006 | 12:18 PM: Spy Sweeper started 12:18 PM: Sweep initiated using definitions version 601 12:18 PM: Starting Memory Sweep 12:31 PM: Memory Sweep Complete, Elapsed Time: 00:12:25 12:31 PM: Starting Registry Sweep 12:31 PM: Found Adware: altnet 12:31 PM: HKCR\appid\{8b0fef15-54dc-49f5-8377-8172de975f75}\ (1 subtraces) (ID = 103453) 12:31 PM: HKCR\appid\{99a8e2b2-3405-4c0d-9110-131c14caaf62}\ (1 subtraces) (ID = 103454) 12:31 PM: HKCR\clsid\{3f4d4f88-0198-4921-b630-957f3eb814e0}\ (1 subtraces) (ID = 103460) 12:31 PM: HKCR\clsid\{3646c2bd-3554-49ca-8125-44deefb881de}\ (1 subtraces) (ID = 103462) 12:31 PM: HKCR\interface\{ad5bc1f0-72d8-44b3-8e3d-8e8fecce43fb}\ (5 subtraces) (ID = 103472) 12:31 PM: HKCR\signingmodule.signingmodule.1\ (3 subtraces) (ID = 103476) 12:31 PM: HKCR\signingmodule.signingmodule\ (5 subtraces) (ID = 103478) 12:31 PM: HKLM\software\classes\appid\{8b0fef15-54dc-49f5-8377-8172de975f75}\ (1 subtraces) (ID = 103490) 12:31 PM: HKLM\software\classes\appid\{99a8e2b2-3405-4c0d-9110-131c14caaf62}\ (1 subtraces) (ID = 103491) 12:31 PM: HKLM\software\classes\signingmodule.signingmodule.1\ (3 subtraces) (ID = 103496) 12:31 PM: HKLM\software\classes\signingmodule.signingmodule\ (5 subtraces) (ID = 103497) 12:31 PM: HKLM\software\classes\typelib\{676f6d1d-c559-42a9-860b-27c1477b7179}\ (9 subtraces) (ID = 103502) 12:31 PM: HKLM\software\classes\typelib\{5830698f-7fc0-40cd-a453-9a0cafdf3a64}\ (9 subtraces) (ID = 103503) 12:31 PM: HKLM\software\classes\typelib\{bff4f684-677e-44f4-8c74-1d575c950e10}\ (9 subtraces) (ID = 103504) 12:31 PM: HKCR\typelib\{676f6d1d-c559-42a9-860b-27c1477b7179}\ (9 subtraces) (ID = 103535) 12:31 PM: HKCR\typelib\{bff4f684-677e-44f4-8c74-1d575c950e10}\ (9 subtraces) (ID = 103536) 12:31 PM: Found Adware: apropos 12:31 PM: HKLM\software\autoloader\ (ID = 103742) 12:31 PM: Found Adware: exact cashback/bargain buddy 12:31 PM: HKLM\software\microsoft\windows\currentversion\app management\arpcache\bargain buddy\ (2 subtraces) (ID = 104023) 12:31 PM: Found Adware: browseraid 12:31 PM: HKLM\software\microsoft\windows\currentversion\runwindowsupdate\ (4 subtraces) (ID = 105169) 12:31 PM: Found Adware: delfin 12:31 PM: HKCR\interface\{2bb15d36-43be-4743-a3a0-3308f4b1a610}\ (8 subtraces) (ID = 124839) 12:31 PM: HKCR\interface\{41700749-a109-4254-af13-be54011e8783}\ (8 subtraces) (ID = 124840) 12:31 PM: HKLM\software\classes\interface\{2bb15d36-43be-4743-a3a0-3308f4b1a610}\ (8 subtraces) (ID = 124843) 12:31 PM: HKLM\software\classes\interface\{41700749-a109-4254-af13-be54011e8783}\ (8 subtraces) (ID = 124844) 12:31 PM: HKLM\software\classes\vccpgdataaccess.pgdataaccessctrl.1\ (3 subtraces) (ID = 124846) 12:31 PM: HKLM\software\dpi\ (2 subtraces) (ID = 124851) 12:31 PM: HKLM\software\microsoft\windows\currentversion\run\ || tat (ID = 124875) 12:31 PM: HKLM\software\microsoft\windows\currentversion\uninstall\pgtools\ (2 subtraces) (ID = 124882) 12:31 PM: HKCR\vccpgdataaccess.pgdataaccessctrl.1\ (3 subtraces) (ID = 124900) 12:31 PM: Found Adware: isearch toolbar 12:31 PM: HKU\.default\software\microsoft\internet explorer\extensions\cmdmapping\ || {1a00c40b-da85-4aa3-a67f-582d9347eecd} (ID = 129018) 12:31 PM: Found Adware: ist istbar 12:31 PM: HKLM\software\microsoft\windows\currentversion\app management\arpcache\istbaristbar\ (2 subtraces) (ID = 129119) 12:31 PM: Found Adware: memorywatcher 12:31 PM: HKLM\software\microsoft\windows\currentversion\uninstall\memorywatcher\ (2 subtraces) (ID = 134971) 12:31 PM: Found Adware: wild media - statblaster 12:31 PM: HKLM\software\statblaster\ (2 subtraces) (ID = 142908) 12:31 PM: Found Adware: topsearch 12:31 PM: HKLM\software\classes\typelib\{edd3b3e9-3ffd-4836-a6de-d4a9c473a971}\ (9 subtraces) (ID = 143928) 12:31 PM: HKCR\typelib\{edd3b3e9-3ffd-4836-a6de-d4a9c473a971}\ (9 subtraces) (ID = 143930) 12:31 PM: Found Adware: directrevenue-abetterinternet 12:31 PM: HKLM\software\dbi\ (29 subtraces) (ID = 145915) 12:31 PM: HKLM\software\microsoft\windows\currentversion\uninstall\dbi\ (2 subtraces) (ID = 146119) 12:32 PM: Found Adware: virtualbouncer 12:32 PM: HKLM\software\microsoft\code store database\distribution units\{d9ec0a76-03bf-11d4-a509-0090270f86e3}\ (8 subtraces) (ID = 723198) 12:32 PM: HKU\WRSS_Profile_S-1-5-21-4216694087-3154602795-3738521052-501\software\microsoft\internet explorer\extensions\cmdmapping\ || {1a00c40b-da85-4aa3-a67f-582d9347eecd} (ID = 129028) 12:32 PM: Found Adware: bikinidesk myfunstart.com sb.html hijacker 12:32 PM: HKU\WRSS_Profile_S-1-5-21-4216694087-3154602795-3738521052-1010\software\microsoft\internet explorer\main\ || search bar (ID = 104411) 12:32 PM: HKU\WRSS_Profile_S-1-5-21-4216694087-3154602795-3738521052-1010\software\microsoft\windows\currentversion\updt\ (ID = 105189) 12:32 PM: HKU\WRSS_Profile_S-1-5-21-4216694087-3154602795-3738521052-1010\software\{2cf0b992-5eeb-4143-99c0-5297ef71f444}\ (2 subtraces) (ID = 105190) 12:32 PM: Found Adware: cydoor peer-to-peer dependency 12:32 PM: HKU\WRSS_Profile_S-1-5-21-4216694087-3154602795-3738521052-1010\software\kazaa\promotions\cydoor\ (4380 subtraces) (ID = 124527) 12:32 PM: Found Adware: ebates money maker 12:32 PM: HKU\WRSS_Profile_S-1-5-21-4216694087-3154602795-3738521052-1010\software\microsoft\internet explorer\extensions\cmdmapping\ || {7f241c00-dab6-11d5-aaa8-0001028df1bc} (ID = 125586) 12:32 PM: HKU\WRSS_Profile_S-1-5-21-4216694087-3154602795-3738521052-1010\software\microsoft\internet explorer\extensions\{7f241c00-dab6-11d5-aaa8-0001028df1bc}\ (6 subtraces) (ID = 125588) 12:32 PM: HKU\WRSS_Profile_S-1-5-21-4216694087-3154602795-3738521052-1010\software\microsoft\internet explorer\menuext\ebates\ (2 subtraces) (ID = 125590) 12:32 PM: Found Adware: internetoptimizer 12:32 PM: HKU\WRSS_Profile_S-1-5-21-4216694087-3154602795-3738521052-1010\software\avenue media\ (ID = 128887) 12:32 PM: HKU\WRSS_Profile_S-1-5-21-4216694087-3154602795-3738521052-1010\software\microsoft\internet explorer\extensions\cmdmapping\ || {1a00c40b-da85-4aa3-a67f-582d9347eecd} (ID = 129028) 12:32 PM: Found Adware: 180search assistant/zango 12:32 PM: HKU\WRSS_Profile_S-1-5-21-4216694087-3154602795-3738521052-1010\software\180solutions\ (7 subtraces) (ID = 135617) 12:32 PM: Found Adware: whenu 12:32 PM: HKU\WRSS_Profile_S-1-5-21-4216694087-3154602795-3738521052-1010\software\whenu\ (ID = 140455) 12:32 PM: HKU\S-1-5-21-4216694087-3154602795-3738521052-1009\software\microsoft\windows\currentversion\updt\ (ID = 105189) 12:32 PM: HKU\S-1-5-21-4216694087-3154602795-3738521052-1009\software\{2cf0b992-5eeb-4143-99c0-5297ef71f444}\ (3 subtraces) (ID = 105190) 12:32 PM: HKU\S-1-5-21-4216694087-3154602795-3738521052-1009\software\kazaa\promotions\cydoor\ (4000 subtraces) (ID = 124527) 12:32 PM: HKU\S-1-5-21-4216694087-3154602795-3738521052-1009\software\microsoft\internet explorer\extensions\cmdmapping\ || {7f241c00-dab6-11d5-aaa8-0001028df1bc} (ID = 125586) 12:32 PM: HKU\S-1-5-21-4216694087-3154602795-3738521052-1009\software\microsoft\internet explorer\extensions\{7f241c00-dab6-11d5-aaa8-0001028df1bc}\ (6 subtraces) (ID = 125588) 12:32 PM: HKU\S-1-5-21-4216694087-3154602795-3738521052-1009\software\avenue media\ (ID = 128887) 12:32 PM: HKU\S-1-5-21-4216694087-3154602795-3738521052-1009\software\180solutions\ (7 subtraces) (ID = 135617) 12:32 PM: HKU\S-1-5-21-4216694087-3154602795-3738521052-1008\software\kazaa\promotions\cydoor\ (3011 subtraces) (ID = 124527) 12:32 PM: HKU\S-1-5-21-4216694087-3154602795-3738521052-1007\software\microsoft\windows\currentversion\updt\ (ID = 105189) 12:32 PM: Found Adware: cws-aboutblank 12:32 PM: HKU\S-1-5-21-4216694087-3154602795-3738521052-1007\software\microsoft\internet explorer\main\ || search page_bak (ID = 115925) 12:32 PM: HKU\S-1-5-21-4216694087-3154602795-3738521052-1007\software\kazaa\promotions\cydoor\ (5 subtraces) (ID = 124527) 12:32 PM: HKU\S-1-5-21-4216694087-3154602795-3738521052-1007\software\microsoft\internet explorer\extensions\cmdmapping\ || {7f241c00-dab6-11d5-aaa8-0001028df1bc} (ID = 125586) 12:32 PM: HKU\S-1-5-21-4216694087-3154602795-3738521052-1007\software\microsoft\internet explorer\extensions\{7f241c00-dab6-11d5-aaa8-0001028df1bc}\ (6 subtraces) (ID = 125588) 12:33 PM: HKU\S-1-5-21-4216694087-3154602795-3738521052-1007\software\microsoft\internet explorer\main\ || search page_bak (ID = 774883) 12:33 PM: HKU\S-1-5-18\software\microsoft\internet explorer\extensions\cmdmapping\ || {1a00c40b-da85-4aa3-a67f-582d9347eecd} (ID = 129028) 12:33 PM: Registry Sweep Complete, Elapsed Time:00:01:54 12:33 PM: Starting Cookie Sweep 12:33 PM: Found Spy Cookie: 2o7.net cookie 12:33 PM: guest@2o7[2].txt (ID = 1957) 12:33 PM: Found Spy Cookie: websponsors cookie 12:33 PM: guest@a.websponsors[2].txt (ID = 3665) 12:33 PM: Found Spy Cookie: ad-logics cookie 12:33 PM: guest@ad-logics[2].txt (ID = 2049) 12:33 PM: Found Spy Cookie: yieldmanager cookie 12:33 PM: guest@ad.yieldmanager[2].txt (ID = 3751) 12:33 PM: Found Spy Cookie: adknowledge cookie 12:33 PM: guest@adknowledge[2].txt (ID = 2072) 12:33 PM: Found Spy Cookie: specificclick.com cookie 12:33 PM: guest@adopt.specificclick[2].txt (ID = 3400) 12:33 PM: Found Spy Cookie: advertising cookie 12:33 PM: guest@advertising[1].txt (ID = 2175) 12:33 PM: Found Spy Cookie: atlas dmt cookie 12:33 PM: guest@atdmt[2].txt (ID = 2253) 12:33 PM: Found Spy Cookie: atwola cookie 12:33 PM: guest@atwola[1].txt (ID = 2255) 12:33 PM: Found Spy Cookie: belnk cookie 12:33 PM: guest@belnk[1].txt (ID = 2292) 12:33 PM: Found Spy Cookie: bluestreak cookie 12:33 PM: guest@bluestreak[1].txt (ID = 2314) 12:33 PM: Found Spy Cookie: casalemedia cookie 12:33 PM: guest@casalemedia[1].txt (ID = 2354) 12:33 PM: Found Spy Cookie: centrport net cookie 12:33 PM: guest@centrport[1].txt (ID = 2374) 12:33 PM: guest@dist.belnk[2].txt (ID = 2293) 12:33 PM: Found Spy Cookie: fastclick cookie 12:33 PM: guest@fastclick[1].txt (ID = 2651) 12:33 PM: Found Spy Cookie: maxserving cookie 12:33 PM: guest@maxserving[2].txt (ID = 2966) 12:33 PM: Found Spy Cookie: overture cookie 12:33 PM: guest@overture[1].txt (ID = 3105) 12:33 PM: Found Spy Cookie: realmedia cookie 12:33 PM: guest@realmedia[1].txt (ID = 3235) 12:33 PM: Found Spy Cookie: servedby advertising cookie 12:33 PM: guest@servedby.advertising[1].txt (ID = 3335) 12:33 PM: Found Spy Cookie: sirsearch cookie 12:33 PM: guest@sirsearch[2].txt (ID = 3379) 12:33 PM: Found Spy Cookie: trafficmp cookie 12:33 PM: guest@trafficmp[1].txt (ID = 3581) 12:33 PM: Found Spy Cookie: tribalfusion cookie 12:33 PM: guest@tribalfusion[1].txt (ID = 3589) 12:33 PM: Found Spy Cookie: adserver cookie 12:33 PM: guest@z1.adserver[1].txt (ID = 2142) 12:33 PM: Found Spy Cookie: zedo cookie 12:33 PM: guest@zedo[2].txt (ID = 3762) 12:33 PM: Found Spy Cookie: dbbsrv cookie 12:33 PM: mackenzie@1800search.com.19522.fb.dbbsrv[1].txt (ID = 2500) 12:33 PM: mackenzie@2o7[2].txt (ID = 1957) 12:33 PM: mackenzie@ad-logics[1].txt (ID = 2049) 12:33 PM: mackenzie@ad.yieldmanager[1].txt (ID = 3751) 12:33 PM: Found Spy Cookie: pointroll cookie 12:33 PM: mackenzie@ads.pointroll[1].txt (ID = 3148) 12:33 PM: Found Spy Cookie: x10 cookie 12:33 PM: mackenzie@ads.x10[2].txt (ID = 3712) 12:33 PM: mackenzie@advertising[2].txt (ID = 2175) 12:33 PM: Found Spy Cookie: apmebf cookie 12:33 PM: mackenzie@apmebf[1].txt (ID = 2229) 12:33 PM: Found Spy Cookie: adbureau cookie 12:33 PM: mackenzie@apropos.adbureau[1].txt (ID = 2060) 12:33 PM: Found Spy Cookie: falkag cookie 12:33 PM: mackenzie@as-us.falkag[2].txt (ID = 2650) 12:33 PM: mackenzie@atdmt[2].txt (ID = 2253) 12:33 PM: mackenzie@atwola[2].txt (ID = 2255) 12:33 PM: Found Spy Cookie: azjmp cookie 12:33 PM: mackenzie@azjmp[1].txt (ID = 2270) 12:33 PM: mackenzie@belnk[1].txt (ID = 2292) 12:33 PM: Found Spy Cookie: bs.serving-sys cookie 12:33 PM: mackenzie@bs.serving-sys[2].txt (ID = 2330) 12:33 PM: Found Spy Cookie: clickagents cookie 12:33 PM: mackenzie@clickagents[2].txt (ID = 2394) 12:33 PM: Found Spy Cookie: commission junction cookie 12:33 PM: mackenzie@commission-junction[1].txt (ID = 2455) 12:33 PM: Found Spy Cookie: 360i cookie 12:33 PM: mackenzie@ct.360i[1].txt (ID = 1962) 12:33 PM: mackenzie@dist.belnk[2].txt (ID = 2293) 12:33 PM: Found Spy Cookie: ru4 cookie 12:33 PM: mackenzie@edge.ru4[2].txt (ID = 3269) 12:33 PM: Found Spy Cookie: euniverseads cookie 12:33 PM: mackenzie@euniverseads[1].txt (ID = 2629) 12:33 PM: Found Spy Cookie: exitexchange cookie 12:33 PM: mackenzie@exitexchange[2].txt (ID = 2633) 12:33 PM: mackenzie@fastclick[2].txt (ID = 2651) 12:33 PM: Found Spy Cookie: gotoast cookie 12:33 PM: mackenzie@gotoast[1].txt (ID = 2751) 12:33 PM: Found Spy Cookie: go.com cookie 12:33 PM: mackenzie@go[1].txt (ID = 2728) 12:33 PM: Found Spy Cookie: incredifind cookie 12:33 PM: mackenzie@incredifind[2].txt (ID = 2849) 12:33 PM: Found Spy Cookie: linksynergy cookie 12:33 PM: mackenzie@linksynergy[1].txt (ID = 2926) 12:33 PM: mackenzie@maxserving[1].txt (ID = 2966) 12:33 PM: Found Spy Cookie: mywebsearch cookie 12:33 PM: mackenzie@mywebsearch[2].txt (ID = 3051) 12:33 PM: Found Spy Cookie: offeroptimizer cookie 12:33 PM: mackenzie@offeroptimizer[2].txt (ID = 3087) 12:33 PM: Found Spy Cookie: peel network cookie 12:33 PM: mackenzie@peel[1].txt (ID = 3127) 12:33 PM: mackenzie@perf.overture[1].txt (ID = 3106) 12:33 PM: mackenzie@psc.disney.go[1].txt (ID = 2729) 12:33 PM: Found Spy Cookie: qksrv cookie 12:33 PM: mackenzie@qksrv[2].txt (ID = 3213) 12:33 PM: Found Spy Cookie: questionmarket cookie 12:33 PM: mackenzie@questionmarket[1].txt (ID = 3217) 12:33 PM: mackenzie@realmedia[1].txt (ID = 3235) 12:33 PM: mackenzie@sel.as-us.falkag[1].txt (ID = 2650) 12:33 PM: mackenzie@servedby.advertising[2].txt (ID = 3335) 12:33 PM: Found Spy Cookie: serving-sys cookie 12:33 PM: mackenzie@serving-sys[2].txt (ID = 3343) 12:33 PM: Found Spy Cookie: webtrendslive cookie 12:33 PM: mackenzie@statse.webtrendslive[2].txt (ID = 3667) 12:33 PM: Found Spy Cookie: tickle cookie 12:33 PM: mackenzie@tickle[1].txt (ID = 3529) 12:33 PM: Found Spy Cookie: tmpad cookie 12:33 PM: mackenzie@tmpad[1].txt (ID = 3545) 12:33 PM: mackenzie@trafficmp[1].txt (ID = 3581) 12:33 PM: mackenzie@www.disney.go[1].txt (ID = 2729) 12:33 PM: Found Spy Cookie: ebates cookie 12:33 PM: mackenzie@www.ebates[2].txt (ID = 2558) 12:33 PM: mackenzie@www.incredifind[1].txt (ID = 2850) 12:33 PM: mackenzie@z1.adserver[1].txt (ID = 2142) 12:33 PM: mackenzie@zedo[1].txt (ID = 3762) 12:33 PM: Found Spy Cookie: sandboxer cookie 12:33 PM: jt@0[1].txt (ID = 3282) 12:33 PM: jt@0[2].txt (ID = 3282) 12:33 PM: Found Spy Cookie: primaryads cookie 12:33 PM: jt@1.primaryads[2].txt (ID = 3190) 12:33 PM: Found Spy Cookie: 3 cookie 12:33 PM: jt@207.36.3[2].txt (ID = 1960) 12:33 PM: Found Spy Cookie: 216.221.138 cookie 12:33 PM: jt@216.221.138[2].txt (ID = 1947) 12:33 PM: jt@2o7[2].txt (ID = 1957) 12:33 PM: jt@355[2].txt (ID = 3279) 12:33 PM: jt@a.websponsors[1].txt (ID = 3665) 12:33 PM: Found Spy Cookie: abcsearch cookie 12:33 PM: jt@abcsearch[1].txt (ID = 2033) 12:33 PM: Found Spy Cookie: about cookie 12:33 PM: jt@about[2].txt (ID = 2037) 12:33 PM: jt@actionadventure.about[1].txt (ID = 2038) 12:33 PM: jt@ad-logics[1].txt (ID = 2049) 12:33 PM: jt@ad.yieldmanager[2].txt (ID = 3751) 12:33 PM: Found Spy Cookie: adecn cookie 12:33 PM: jt@adecn[2].txt (ID = 2063) 12:33 PM: jt@adknowledge[1].txt (ID = 2072) 12:33 PM: Found Spy Cookie: precisead cookie 12:33 PM: jt@adopt.precisead[1].txt (ID = 3182) 12:33 PM: jt@adopt.specificclick[2].txt (ID = 3400) 12:33 PM: Found Spy Cookie: adrevolver cookie 12:33 PM: jt@adrevolver[2].txt (ID = 2088) 12:33 PM: jt@adrevolver[3].txt (ID = 2088) 12:33 PM: Found Spy Cookie: addynamix cookie 12:33 PM: jt@ads.addynamix[1].txt (ID = 2062) 12:33 PM: Found Spy Cookie: ads.adsag cookie 12:33 PM: jt@ads.adsag[1].txt (ID = 2108) 12:33 PM: Found Spy Cookie: cc214142 cookie 12:33 PM: jt@ads.cc214142[2].txt (ID = 2367) 12:33 PM: Found Spy Cookie: gorillanation cookie 12:33 PM: jt@ads.gorillanation[1].txt (ID = 2744) 12:33 PM: jt@ads.pointroll[2].txt (ID = 3148) 12:33 PM: Found Spy Cookie: uproar cookie 12:33 PM: jt@ads.uproar[2].txt (ID = 3613) 12:33 PM: Found Spy Cookie: adultrevenueservice cookie 12:33 PM: jt@adultrevenueservice[1].txt (ID = 2167) 12:33 PM: jt@advertising[1].txt (ID = 2175) 12:33 PM: Found Spy Cookie: adviva cookie 12:33 PM: jt@adviva[1].txt (ID = 2177) 12:33 PM: jt@apmebf[2].txt (ID = 2229) 12:33 PM: jt@apropos.adbureau[1].txt (ID = 2060) 12:33 PM: jt@as-eu.falkag[1].txt (ID = 2650) 12:33 PM: jt@as-us.falkag[2].txt (ID = 2650) 12:33 PM: Found Spy Cookie: ask cookie 12:33 PM: jt@ask[1].txt (ID = 2245) 12:33 PM: jt@atdmt[2].txt (ID = 2253) 12:33 PM: jt@ath.belnk[1].txt (ID = 2293) 12:33 PM: jt@atwola[1].txt (ID = 2255) 12:33 PM: jt@azjmp[2].txt (ID = 2270) 12:33 PM: jt@babes.com.19522.fb.dbbsrv[2].txt (ID = 2500) 12:33 PM: Found Spy Cookie: bannerspace cookie 12:33 PM: jt@bannerspace[1].txt (ID = 2284) 12:33 PM: Found Spy Cookie: banner cookie 12:33 PM: jt@banner[1].txt (ID = 2276) 12:33 PM: jt@belnk[2].txt (ID = 2292) 12:33 PM: jt@bluestreak[2].txt (ID = 2314) 12:33 PM: jt@broadband.espn.go[2].txt (ID = 2729) 12:33 PM: jt@bs.serving-sys[2].txt (ID = 2330) 12:33 PM: Found Spy Cookie: burstnet cookie 12:33 PM: jt@burstnet[1].txt (ID = 2336) 12:33 PM: Found Spy Cookie: porngraph cookie 12:33 PM: jt@c.porngraph[1].txt (ID = 3169) 12:33 PM: jt@casalemedia[1].txt (ID = 2354) 12:33 PM: Found Spy Cookie: ccbill cookie 12:33 PM: jt@ccbill[1].txt (ID = 2369) 12:33 PM: jt@centrport[2].txt (ID = 2374) 12:33 PM: jt@cj[1].txt (ID = 2453) 12:33 PM: jt@commission-junction[1].txt (ID = 2455) 12:33 PM: jt@compnetworking.about[1].txt (ID = 2038) 12:33 PM: jt@cookie.tickle[1].txt (ID = 3530) 12:33 PM: Found Spy Cookie: hitslink cookie 12:33 PM: jt@counter.hitslink[2].txt (ID = 2790) 12:33 PM: Found Spy Cookie: sexsuche cookie 12:33 PM: jt@counter.sexsuche[1].txt (ID = 3360) 12:33 PM: Found Spy Cookie: sextracker cookie 12:33 PM: jt@counter14.sextracker[1].txt (ID = 3362) 12:33 PM: jt@counter15.sextracker[1].txt (ID = 3362) 12:33 PM: jt@counter3.sextracker[1].txt (ID = 3362) 12:33 PM: jt@counter4.sextracker[1].txt (ID = 3362) 12:33 PM: jt@counter5.sextracker[1].txt (ID = 3362) 12:33 PM: jt@counter6.sextracker[1].txt (ID = 3362) 12:33 PM: jt@counter7.sextracker[2].txt (ID = 3362) 12:33 PM: jt@counter8.sextracker[1].txt (ID = 3362) 12:33 PM: jt@counter9.sextracker[1].txt (ID = 3362) 12:33 PM: Found Spy Cookie: dcskqeg2voifwznnd6alhtnei_8f3u cookie 12:33 PM: jt@dcskqeg2voifwznnd6alhtnei_8f3u[1].txt (ID = 2501) 12:33 PM: jt@disney.go[2].txt (ID = 2729) 12:33 PM: jt@disneyvideos.disney.go[1].txt (ID = 2729) 12:33 PM: jt@dist.belnk[1].txt (ID = 2293) 12:33 PM: jt@edge.ru4[1].txt (ID = 3269) 12:33 PM: jt@espn.go[1].txt (ID = 2729) 12:33 PM: jt@euniverseads[1].txt (ID = 2629) 12:33 PM: jt@fastclick[2].txt (ID = 2651) 12:33 PM: Found Spy Cookie: findwhat cookie 12:33 PM: jt@findwhat[1].txt (ID = 2674) 12:33 PM: Found Spy Cookie: fortunecity cookie 12:33 PM: jt@fortunecity[1].txt (ID = 2686) 12:33 PM: Found Spy Cookie: wegcash cookie 12:33 PM: jt@free.wegcash[2].txt (ID = 3682) 12:33 PM: Found Spy Cookie: gamespy cookie 12:33 PM: jt@gamespy[2].txt (ID = 2719) 12:33 PM: Found Spy Cookie: go2net.com cookie 12:33 PM: jt@go2net[1].txt (ID = 2730) 12:33 PM: jt@go[1].txt (ID = 2728) 12:33 PM: Found Spy Cookie: hightrafficads cookie 12:33 PM: jt@hightrafficads[1].txt (ID = 2775) 12:33 PM: jt@hotbabes.com.19522.fb.dbbsrv[2].txt (ID = 2500) 12:33 PM: Found Spy Cookie: hotmatch cookie 12:33 PM: jt@hotmatch[1].txt (ID = 3854) 12:33 PM: Found Spy Cookie: ic-live cookie 12:33 PM: jt@ic-live[1].txt (ID = 2821) 12:33 PM: jt@incredifind[1].txt (ID = 2849) 12:33 PM: Found Spy Cookie: sb01 cookie 12:33 PM: jt@jp1.sb01[2].txt (ID = 3288) 12:33 PM: Found Spy Cookie: domainsponsor cookie 12:33 PM: jt@landing.domainsponsor[2].txt (ID = 2535) 12:33 PM: jt@linksynergy[1].txt (ID = 2926) 12:33 PM: jt@maxserving[2].txt (ID = 2966) 12:33 PM: jt@media.fastclick[1].txt (ID = 2652) 12:33 PM: Found Spy Cookie: ugo cookie 12:33 PM: jt@mediamgr.ugo[2].txt (ID = 3609) 12:33 PM: Found Spy Cookie: metareward.com cookie 12:33 PM: jt@metareward[2].txt (ID = 2990) 12:33 PM: Found Spy Cookie: mp3downloadhq cookie 12:33 PM: jt@mp3downloadhq[1].txt (ID = 3014) 12:33 PM: Found Spy Cookie: mp3downloading cookie 12:33 PM: jt@mp3downloading[1].txt (ID = 3016) 12:33 PM: Found Spy Cookie: touchclarity cookie 12:33 PM: jt@msn.touchclarity[1].txt (ID = 3566) 12:33 PM: Found Spy Cookie: myaffiliateprogram.com cookie 12:33 PM: jt@myaffiliateprogram[2].txt (ID = 3031) 12:33 PM: jt@mywebsearch[2].txt (ID = 3051) 12:33 PM: Found Spy Cookie: qsrch cookie 12:33 PM: jt@newnet.qsrch[1].txt (ID = 3216) 12:33 PM: Found Spy Cookie: nextag cookie 12:33 PM: jt@nextag[1].txt (ID = 5014) 12:33 PM: Found Spy Cookie: okcounter.com cookie 12:33 PM: jt@okcounter[1].txt (ID = 3093) 12:33 PM: Found Spy Cookie: outster cookie 12:33 PM: jt@outster[2].txt (ID = 3103) 12:33 PM: jt@overture[2].txt (ID = 3105) 12:33 PM: Found Spy Cookie: paycounter cookie 12:33 PM: jt@paycounter[1].txt (ID = 3115) 12:33 PM: jt@perf.overture[1].txt (ID = 3106) 12:33 PM: Found Spy Cookie: mircx cookie 12:33 PM: jt@pop.mircx[1].txt (ID = 2998) 12:33 PM: Found Spy Cookie: pricegrabber cookie 12:33 PM: jt@pricegrabber[1].txt (ID = 3185) 12:33 PM: jt@programs.wegcash[2].txt (ID = 3682) 12:33 PM: jt@qksrv[2].txt (ID = 3213) 12:33 PM: jt@qsrch[2].txt (ID = 3215) 12:33 PM: jt@questionmarket[1].txt (ID = 3217) 12:33 PM: jt@realmedia[1].txt (ID = 3235) 12:33 PM: Found Spy Cookie: reunion cookie 12:33 PM: jt@reunion[2].txt (ID = 3255) 12:33 PM: Found Spy Cookie: revenue.net cookie 12:33 PM: jt@revenue[2].txt (ID = 3257) 12:33 PM: Found Spy Cookie: rightmedia cookie 12:33 PM: jt@rightmedia[1].txt (ID = 3259) 12:33 PM: jt@rsi.espn.go[1].txt (ID = 2729) 12:33 PM: Found Spy Cookie: adscpm cookie 12:33 PM: jt@servedby.adscpm[1].txt (ID = 2137) 12:33 PM: jt@serving-sys[2].txt (ID = 3343) 12:33 PM: Found Spy Cookie: sexlist cookie 12:33 PM: jt@sexlist[2].txt (ID = 3353) 12:33 PM: jt@sextracker[1].txt (ID = 3361) 12:33 PM: Found Spy Cookie: sex cookie 12:33 PM: jt@sex[1].txt (ID = 3347) 12:33 PM: jt@sirsearch[1].txt (ID = 3379) 12:33 PM: jt@skateboard.about[1].txt (ID = 2038) 12:33 PM: jt@sports-att.espn.go[2].txt (ID = 2729) 12:33 PM: jt@sports.espn.go[1].txt (ID = 2729) 12:33 PM: Found Spy Cookie: spylog cookie 12:33 PM: jt@spylog[1].txt (ID = 3415) 12:33 PM: Found Spy Cookie: spywarestormer cookie 12:33 PM: jt@spywarestormer[1].txt (ID = 3417) 12:33 PM: Found Spy Cookie: startium cookie 12:33 PM: jt@startium[2].txt (ID = 5377) 12:33 PM: Found Spy Cookie: starware.com cookie 12:33 PM: jt@starware[2].txt (ID = 3441) 12:33 PM: Found Spy Cookie: onestat.com cookie 12:33 PM: jt@stat.onestat[2].txt (ID = 3098) 12:33 PM: Found Spy Cookie: statcounter cookie 12:33 PM: jt@statcounter[1].txt (ID = 3447) 12:33 PM: Found Spy Cookie: reliablestats cookie 12:33 PM: jt@stats1.reliablestats[2].txt (ID = 3254) 12:33 PM: Found Spy Cookie: targetnet cookie 12:33 PM: jt@targetnet[1].txt (ID = 3489) 12:33 PM: Found Spy Cookie: teensforcash cookie 12:33 PM: jt@teensforcash[2].txt (ID = 3509) 12:33 PM: jt@tickle[1].txt (ID = 3529) 12:33 PM: Found Spy Cookie: cashpartner cookie 12:33 PM: jt@tracking.cashpartner[1].txt (ID = 2357) 12:33 PM: Found Spy Cookie: tradedoubler cookie 12:33 PM: jt@tradedoubler[1].txt (ID = 3575) 12:33 PM: jt@trafficmp[2].txt (ID = 3581) 12:33 PM: jt@tribalfusion[2].txt (ID = 3589) 12:33 PM: Found Spy Cookie: tripod cookie 12:33 PM: jt@tripod[2].txt (ID = 3591) 12:33 PM: Found Spy Cookie: valuead cookie 12:33 PM: jt@valuead[2].txt (ID = 3626) 12:33 PM: jt@video.movies.go[1].txt (ID = 2729) 12:33 PM: jt@web.tickle[1].txt (ID = 3530) 12:33 PM: Found Spy Cookie: realtracker cookie 12:33 PM: jt@web4.realtracker[1].txt (ID = 3242) 12:33 PM: Found Spy Cookie: webpower cookie 12:33 PM: jt@webpower[2].txt (ID = 3660) 12:33 PM: Found Spy Cookie: affiliatefuel.com cookie 12:33 PM: jt@www.affiliatefuel[1].txt (ID = 2202) 12:33 PM: Found Spy Cookie: burstbeacon cookie 12:33 PM: jt@www.burstbeacon[2].txt (ID = 2335) 12:33 PM: Found Spy Cookie: collegefucktour cookie 12:33 PM: jt@www.collegefucktour[2].txt (ID = 2440) 12:33 PM: jt@www.disney.go[1].txt (ID = 2729) 12:33 PM: jt@www.greek.com.18345.fb.dbbsrv[2].txt (ID = 2500) 12:33 PM: Found Spy Cookie: herfirstanalsex cookie 12:33 PM: jt@www.herfirstanalsex[1].txt (ID = 2770) 12:33 PM: Found Spy Cookie: maximumcash cookie 12:33 PM: jt@www.maximumcash[1].txt (ID = 2962) 12:33 PM: jt@www.mp3downloading[1].txt (ID = 3017) 12:33 PM: jt@www.myaffiliateprogram[2].txt (ID = 3032) 12:33 PM: Found Spy Cookie: newtopsites cookie 12:33 PM: jt@www.newtopsites[2].txt (ID = 3078) 12:33 PM: Found Spy Cookie: paypopup cookie 12:33 PM: jt@www.paypopup[2].txt (ID = 3120) 12:33 PM: jt@www.sandboxer[1].txt (ID = 3283) 12:33 PM: Found Spy Cookie: screensavers.com cookie 12:33 PM: jt@www.screensavers[2].txt (ID = 3298) 12:33 PM: jt@www.startium[1].txt (ID = 5379) 12:33 PM: Found Spy Cookie: stopzilla cookie 12:33 PM: jt@www.stopzilla[2].txt (ID = 3466) 12:33 PM: Found Spy Cookie: try games cookie 12:33 PM: jt@www.trygames[1].txt (ID = 3594) 12:33 PM: Found Spy Cookie: xzoomy cookie 12:33 PM: jt@www.xzoomy[2].txt (ID = 3742) 12:33 PM: Found Spy Cookie: yesadvertising cookie 12:33 PM: jt@www2.yesadvertising[1].txt (ID = 3745) 12:33 PM: jt@www4.nextag[1].txt (ID = 5015) 12:33 PM: jt@www4.paypopup[1].txt (ID = 3120) 12:33 PM: Found Spy Cookie: xiti cookie 12:33 PM: jt@xiti[1].txt (ID = 3717) 12:33 PM: Found Spy Cookie: xmatch cookie 12:33 PM: jt@xmatch[1].txt (ID = 3719) 12:33 PM: Found Spy Cookie: xxxcounter cookie 12:33 PM: jt@xxxcounter[1].txt (ID = 3733) 12:33 PM: Found Spy Cookie: yadro cookie 12:33 PM: jt@yadro[1].txt (ID = 3743) 12:33 PM: jt@yieldmanager[2].txt (ID = 3749) 12:33 PM: jt@z1.adserver[1].txt (ID = 2142) 12:33 PM: jt@zedo[1].txt (ID = 3762) 12:33 PM: jim@about[2].txt (ID = 2037) 12:33 PM: jim@ad-logics[2].txt (ID = 2049) 12:33 PM: jim@adknowledge[1].txt (ID = 2072) 12:33 PM: jim@adrevolver[1].txt (ID = 2088) 12:33 PM: jim@adrevolver[3].txt (ID = 2088) 12:33 PM: jim@ads.adsag[1].txt (ID = 2108) 12:33 PM: Found Spy Cookie: enliven cookie 12:33 PM: jim@ads.enliven[2].txt (ID = 2615) 12:33 PM: jim@ads.pointroll[1].txt (ID = 3148) 12:33 PM: Found Spy Cookie: adultfriendfinder cookie 12:33 PM: jim@adultfriendfinder[2].txt (ID = 2165) 12:33 PM: jim@as1.falkag[1].txt (ID = 2650) 12:33 PM: Found Spy Cookie: askmen cookie 12:33 PM: jim@askmen[2].txt (ID = 2247) 12:33 PM: jim@atwola[2].txt (ID = 2255) 12:33 PM: Found Spy Cookie: bizrate cookie 12:33 PM: jim@bizrate[1].txt (ID = 2308) 12:33 PM: jim@bs.serving-sys[1].txt (ID = 2330) 12:33 PM: Found Spy Cookie: enhance cookie 12:33 PM: jim@c.enhance[1].txt (ID = 2614) 12:33 PM: Found Spy Cookie: clickbank cookie 12:33 PM: jim@clickbank[1].txt (ID = 2398) 12:33 PM: jim@ct.360i[2].txt (ID = 1962) 12:33 PM: Found Spy Cookie: coremetrics cookie 12:33 PM: jim@data.coremetrics[1].txt (ID = 2472) 12:33 PM: jim@dcsgcxwngpifwznfzlmv83o6w_5w4m[1].txt (ID = 3674) 12:33 PM: jim@findwhat[1].txt (ID = 2674) 12:33 PM: Found Spy Cookie: gostats cookie 12:33 PM: jim@gostats[2].txt (ID = 2747) 12:33 PM: jim@homecooking.about[1].txt (ID = 2038) 12:33 PM: jim@honeymoons.about[1].txt (ID = 2038) 12:33 PM: Found Spy Cookie: howstuffworks cookie 12:33 PM: jim@howstuffworks[1].txt (ID = 2805) 12:33 PM: jim@incredifind[2].txt (ID = 2849) 12:33 PM: jim@maxserving[1].txt (ID = 2966) 12:33 PM: Found Spy Cookie: mrskin cookie 12:33 PM: jim@mrskin[2].txt (ID = 3020) 12:33 PM: jim@mywebsearch[1].txt (ID = 3051) 12:33 PM: jim@nextag[2].txt (ID = 5014) 12:33 PM: jim@overture[1].txt (ID = 3105) 12:33 PM: Found Spy Cookie: partypoker cookie 12:33 PM: jim@partypoker[2].txt (ID = 3111) 12:33 PM: jim@perf.overture[1].txt (ID = 3106) 12:33 PM: Found Spy Cookie: adjuggler cookie 12:33 PM: jim@rotator.adjuggler[1].txt (ID = 2071) 12:33 PM: Found Spy Cookie: server.iad.liveperson cookie 12:33 PM: jim@server.iad.liveperson[2].txt (ID = 3341) 12:33 PM: jim@serving-sys[2].txt (ID = 3343) 12:33 PM: Found Spy Cookie: servlet cookie 12:33 PM: jim@servlet[2].txt (ID = 3345) 12:33 PM: jim@sirsearch[2].txt (ID = 3379) 12:33 PM: jim@southernfood.about[2].txt (ID = 2038) 12:33 PM: jim@spywarestormer[1].txt (ID = 3417) 12:33 PM: Found Spy Cookie: dealtime cookie 12:33 PM: jim@stat.dealtime[2].txt (ID = 2506) 12:33 PM: jim@statcounter[2].txt (ID = 3447) 12:33 PM: jim@stats1.reliablestats[1].txt (ID = 3254) 12:33 PM: jim@tmpad[2].txt (ID = 3545) 12:33 PM: Found Spy Cookie: tracking cookie 12:33 PM: jim@tracking[1].txt (ID = 3571) 12:33 PM: jim@tradedoubler[1].txt (ID = 3575) 12:33 PM: jim@web4.realtracker[2].txt (ID = 3242) 12:33 PM: jim@www.burstbeacon[2].txt (ID = 2335) 12:33 PM: jim@www.mrskin[1].txt (ID = 3021) 12:33 PM: jim@www.myaffiliateprogram[1].txt (ID = 3032) 12:33 PM: jim@www.stopzilla[1].txt (ID = 3466) 12:33 PM: Found Spy Cookie: upspiral cookie 12:33 PM: jim@www.upspiral[1].txt (ID = 3615) 12:33 PM: Found Spy Cookie: wirefly cookie 12:33 PM: jim@www.wirefly[1].txt (ID = 3694) 12:33 PM: jim@zedo[1].txt (ID = 3762) 12:33 PM: marriana@atdmt[1].txt (ID = 2253) 12:33 PM: marriana@edge.ru4[2].txt (ID = 3269) 12:33 PM: marriana@mywebsearch[2].txt (ID = 3051) 12:33 PM: Cookie Sweep Complete, Elapsed Time: 00:00:18 12:33 PM: Starting File Sweep 12:33 PM: Found Adware: whenu searchbar/pricebandit 12:33 PM: c:\documents and settings\marriana\start menu\programs\whenusearch (1 subtraces) (ID = -2147480382) 12:33 PM: c:\documents and settings\marriana\local settings\temp\admcache (ID = -2147481437) 12:33 PM: c:\program files\altnet\points manager (76 subtraces) (ID = -2147481438) 12:33 PM: Found Adware: bullguard popup ad 12:33 PM: c:\windows\temp\bullguard (1 subtraces) (ID = -2147476409) 12:33 PM: c:\documents and settings\marriana\start menu\programs\altnet (1 subtraces) (ID = -2147481443) 12:33 PM: c:\documents and settings\jim\application data\{2cf0b992-5eeb-4143-99c0-5297ef71f444} (ID = -2147481310) 12:33 PM: c:\program files\memorywatcher (3 subtraces) (ID = -2147480604) 12:33 PM: c:\documents and settings\mackenzie\application data\{2cf0b992-5eeb-4143-99c0-5297ef71f444} (ID = -2147481310) 12:33 PM: c:\program files\media\media (1 subtraces) (ID = -2147480222) 12:33 PM: Found Adware: ist powerscan 12:33 PM: c:\documents and settings\marriana\start menu\programs\power scan (ID = -2147480462) 12:33 PM: c:\program files\power scan (ID = -2147480461) 12:33 PM: c:\documents and settings\marriana\application data\{2cf0b992-5eeb-4143-99c0-5297ef71f444} (ID = -2147481310) 12:33 PM: c:\program files\whenusearch (99 subtraces) (ID = -2147480375) 12:33 PM: Found Adware: keenvalue/perfectnav 12:33 PM: c:\program files\common files\updater (ID = -2147480788) 12:33 PM: c:\documents and settings\mackenzie\start menu\programs\whenusearch (1 subtraces) (ID = -2147480382) 12:33 PM: c:\program files\autoupdate (1 subtraces) (ID = -2147481419) 12:33 PM: Found Adware: whenu savenow 12:33 PM: c:\program files\save (3 subtraces) (ID = -2147480378) 12:33 PM: c:\program files\ebatesmoemoneymaker (170 subtraces) (ID = -2147481069) 12:33 PM: c:\program files\bargain buddy (5 subtraces) (ID = -2147481395) 12:33 PM: c:\program files\internet optimizer (2 subtraces) (ID = -2147480830) 12:33 PM: Found Adware: gain - common components 12:33 PM: c:\documents and settings\jt\local settings\temp\fsg_tmp (2 subtraces) (ID = -2147480935) 12:33 PM: c:\program files\common files\dpi (ID = -2147481129) 12:33 PM: c:\documents and settings\all users\application data\tatss (20 subtraces) (ID = -2147481133) 12:33 PM: c:\windows\system32\pgtools (4 subtraces) (ID = -2147481120) 12:33 PM: c:\documents and settings\all users\application data\dpi (2 subtraces) (ID = -2147481137) 12:33 PM: c:\documents and settings\jt\application data\{2cf0b992-5eeb-4143-99c0-5297ef71f444} (ID = -2147481310) 12:33 PM: c:\program files\n-case (ID = -2147480563) 12:33 PM: c:\program files\altnet\my altnet shares (ID = -2147481439) 12:33 PM: c:\program files\altnet\download manager (8 subtraces) (ID = -2147481440) 12:33 PM: c:\program files\altnet (87 subtraces) (ID = -2147481441) 12:33 PM: c:\documents and settings\marriana\local settings\temp\~apropos0 (3 subtraces) (ID = -2147481414) 12:33 PM: c:\documents and settings\marriana\local settings\temp\~compoundinst0 (ID = -2147481413) 12:33 PM: c:\documents and settings\marriana\local settings\temp\autoupdate0 (1 subtraces) (ID = -2147481415) 12:33 PM: c:\program files\common files\gmt (1764 subtraces) (ID = -2147480945) 12:33 PM: c:\program files\common files\cmeii (12 subtraces) (ID = -2147480946) 12:33 PM: c:\documents and settings\all users\start menu\programs\gain publishing (ID = -2147480950) 12:33 PM: c:\program files\aproposclient (82 subtraces) (ID = -2147481421) 12:33 PM: c:\documents and settings\marriana\local settings\temp\fsg_tmp (2 subtraces) (ID = -2147480935) 12:33 PM: c:\documents and settings\jim\local settings\temp\fsg_tmp (2 subtraces) (ID = -2147480935) 12:34 PM: Found Adware: alyon 12:34 PM: cm_datatag_utils[1].js (ID = 49897) 12:34 PM: uninst.exe (ID = 74451) 12:35 PM: trayicon.ocx (ID = 69676) 12:35 PM: ebatesmoemoneymaker.inf (ID = 59619) 12:36 PM: appmgrgui.zip (ID = 61281) 12:37 PM: hfixcfg (ID = 61483) 12:38 PM: stlbdist.xml (ID = 51953) 12:42 PM: asmend.exe.bak (ID = 49803) 12:44 PM: splash.html (ID = 129770) 12:45 PM: setup.inf (ID = 50157) 12:48 PM: bulldownload.exe (ID = 52017) 12:49 PM: altnet.css (ID = 49792) 12:50 PM: skin.xml (ID = 49876) 12:50 PM: dminstall7.cab (ID = 49829) 12:51 PM: local_firstuse.html (ID = 49838) 12:52 PM: auto_update_install.exe (ID = 50057) 12:52 PM: setup.cab (ID = 49872) 12:54 PM: ebatesver2.dls (ID = 59631) 12:54 PM: Found Adware: whenu save 12:54 PM: save.htm (ID = 74382) 12:54 PM: browsers.dls (ID = 59483) 12:54 PM: fillin.wav (ID = 61352) 12:54 PM: system.dls (ID = 59703) 12:54 PM: ub.dat (ID = 50877) 12:55 PM: license.txt (ID = 57725) 12:55 PM: remove.exe (ID = 64959) 12:55 PM: dminfo3.cab (ID = 49823) 12:55 PM: local_points.html (ID = 49842) 12:55 PM: local_redeem.html (ID = 49842) 12:55 PM: odm.cfg.bak (ID = 61553) 12:56 PM: local_start.html (ID = 49838) 12:56 PM: points manager.exe.manifest.bak (ID = 49859) 12:57 PM: local_wallet.html (ID = 49842) 12:57 PM: help.xml (ID = 49830) 12:58 PM: delfinlo.ebd (ID = 57687) 12:58 PM: delfintg.ebd (ID = 57693) 12:58 PM: delfinst.ebd (ID = 57692) 12:58 PM: powerscan.exe.bak (ID = 72678) 12:59 PM: message.xml (ID = 49847) 1:01 PM: readme.txt (ID = 127161) 1:01 PM: ebates_disable0.htm (ID = 59645) 1:01 PM: ebates_memoffer0.htm (ID = 59647) 1:02 PM: ebates_autorediroffer0.htm (ID = 59643) 1:02 PM: ebates_nonmemoffer0.htm (ID = 59648) 1:02 PM: ebates_preferences0.htm (ID = 59649) 1:02 PM: topmoxie_conflicts2.htm (ID = 59712) 1:02 PM: topmoxie_proxy.htm (ID = 59713) 1:02 PM: button_submit.gif (ID = 59635) 1:02 PM: ebates_readme2.txt (ID = 59650) 1:02 PM: jsinstall.cab (ID = 49835) 1:03 PM: wingenerics.dll (ID = 50187) 1:04 PM: peer points manager.lnk (ID = 49852) 1:04 PM: gatorpdpsetup.log (ID = 61399) 1:05 PM: auto_update_uninstall.exe (ID = 50061) 1:07 PM: delfinco.edx (ID = 57686) 1:07 PM: delfinld.edx (ID = 57686) 1:07 PM: delfinsi.edx (ID = 57691) 1:07 PM: cmediagnostics.log (ID = 61291) 1:07 PM: delfinky.edx (ID = 57685) 1:07 PM: ebates_script0.htm (ID = 59651) 1:07 PM: biini.inf (ID = 83199) 1:07 PM: biini.inf (ID = 83199) 1:07 PM: ebates_script0.htm (ID = 59652) 1:07 PM: ebates_script0_wo.htm (ID = 59652) 1:07 PM: aproposuninst.ini (ID = 50042) 1:07 PM: selectdir.txt (ID = 49864) 1:07 PM: selectdir1st.txt (ID = 49865) 1:07 PM: q0tasjbqbgaaaleq-tobgnpj.gdt2 (ID = 61574) 1:07 PM: bundle.inf (ID = 61287) 1:07 PM: File Sweep Complete, Elapsed Time: 00:34:27 1:07 PM: Full Sweep has completed. Elapsed time 00:47:40 1:07 PM: Traces Found: 14439 1:16 PM: Removal process initiated 1:16 PM: Quarantining All Traces: 180search assistant/zango 1:16 PM: Quarantining All Traces: cws-aboutblank 1:16 PM: Quarantining All Traces: directrevenue-abetterinternet 1:16 PM: Quarantining All Traces: ist istbar 1:16 PM: Quarantining All Traces: apropos 1:16 PM: Quarantining All Traces: delfin 1:16 PM: Quarantining All Traces: internetoptimizer 1:16 PM: Quarantining All Traces: isearch toolbar 1:16 PM: Quarantining All Traces: altnet 1:16 PM: Quarantining All Traces: alyon 1:16 PM: Quarantining All Traces: bikinidesk myfunstart.com sb.html hijacker 1:16 PM: Quarantining All Traces: browseraid 1:16 PM: Quarantining All Traces: bullguard popup ad 1:17 PM: Quarantining All Traces: cydoor peer-to-peer dependency 1:17 PM: Quarantining All Traces: ebates money maker 1:17 PM: Quarantining All Traces: exact cashback/bargain buddy 1:17 PM: Quarantining All Traces: ist powerscan 1:17 PM: Quarantining All Traces: keenvalue/perfectnav 1:17 PM: Quarantining All Traces: memorywatcher 1:17 PM: Quarantining All Traces: topsearch 1:17 PM: Quarantining All Traces: virtualbouncer 1:17 PM: Quarantining All Traces: wild media - statblaster 1:17 PM: Quarantining All Traces: 216.221.138 cookie 1:17 PM: Quarantining All Traces: 2o7.net cookie 1:17 PM: Quarantining All Traces: 3 cookie 1:17 PM: Quarantining All Traces: 360i cookie 1:17 PM: Quarantining All Traces: abcsearch cookie 1:17 PM: Quarantining All Traces: about cookie 1:17 PM: Quarantining All Traces: adbureau cookie 1:17 PM: Quarantining All Traces: addynamix cookie 1:17 PM: Quarantining All Traces: adecn cookie 1:17 PM: Quarantining All Traces: adjuggler cookie 1:17 PM: Quarantining All Traces: adknowledge cookie 1:17 PM: Quarantining All Traces: ad-logics cookie 1:17 PM: Quarantining All Traces: adrevolver cookie 1:17 PM: Quarantining All Traces: ads.adsag cookie 1:17 PM: Quarantining All Traces: adscpm cookie 1:17 PM: Quarantining All Traces: adserver cookie 1:17 PM: Quarantining All Traces: adultfriendfinder cookie 1:17 PM: Quarantining All Traces: adultrevenueservice cookie 1:17 PM: Quarantining All Traces: advertising cookie 1:17 PM: Quarantining All Traces: adviva cookie 1:17 PM: Quarantining All Traces: affiliatefuel.com cookie 1:17 PM: Quarantining All Traces: apmebf cookie 1:17 PM: Quarantining All Traces: ask cookie 1:17 PM: Quarantining All Traces: askmen cookie 1:17 PM: Quarantining All Traces: atlas dmt cookie 1:17 PM: Quarantining All Traces: atwola cookie 1:17 PM: Quarantining All Traces: azjmp cookie 1:17 PM: Quarantining All Traces: banner cookie 1:17 PM: Quarantining All Traces: bannerspace cookie 1:17 PM: Quarantining All Traces: belnk cookie 1:17 PM: Quarantining All Traces: bizrate cookie 1:17 PM: Quarantining All Traces: bluestreak cookie 1:17 PM: Quarantining All Traces: bs.serving-sys cookie 1:17 PM: Quarantining All Traces: burstbeacon cookie 1:17 PM: Quarantining All Traces: burstnet cookie 1:17 PM: Quarantining All Traces: casalemedia cookie 1:17 PM: Quarantining All Traces: cashpartner cookie 1:17 PM: Quarantining All Traces: cc214142 cookie 1:17 PM: Quarantining All Traces: ccbill cookie 1:17 PM: Quarantining All Traces: centrport net cookie 1:17 PM: Quarantining All Traces: clickagents cookie 1:17 PM: Quarantining All Traces: clickbank cookie 1:17 PM: Quarantining All Traces: collegefucktour cookie 1:17 PM: Quarantining All Traces: commission junction cookie 1:17 PM: Quarantining All Traces: coremetrics cookie 1:17 PM: Quarantining All Traces: dbbsrv cookie 1:17 PM: Quarantining All Traces: dcskqeg2voifwznnd6alhtnei_8f3u cookie 1:17 PM: Quarantining All Traces: dealtime cookie 1:17 PM: Quarantining All Traces: domainsponsor cookie 1:17 PM: Quarantining All Traces: ebates cookie 1:17 PM: Quarantining All Traces: enhance cookie 1:17 PM: Quarantining All Traces: enliven cookie 1:17 PM: Quarantining All Traces: euniverseads cookie 1:17 PM: Quarantining All Traces: exitexchange cookie 1:17 PM: Quarantining All Traces: falkag cookie 1:17 PM: Quarantining All Traces: fastclick cookie 1:17 PM: Quarantining All Traces: findwhat cookie 1:17 PM: Quarantining All Traces: fortunecity cookie 1:17 PM: Quarantining All Traces: gain - common components 1:18 PM: Quarantining All Traces: gamespy cookie 1:18 PM: Quarantining All Traces: go.com cookie 1:18 PM: Quarantining All Traces: go2net.com cookie 1:18 PM: Quarantining All Traces: gorillanation cookie 1:18 PM: Quarantining All Traces: gostats cookie 1:18 PM: Quarantining All Traces: gotoast cookie 1:18 PM: Quarantining All Traces: herfirstanalsex cookie 1:18 PM: Quarantining All Traces: hightrafficads cookie 1:18 PM: Quarantining All Traces: hitslink cookie 1:18 PM: Quarantining All Traces: hotmatch cookie 1:18 PM: Quarantining All Traces: howstuffworks cookie 1:18 PM: Quarantining All Traces: ic-live cookie 1:18 PM: Quarantining All Traces: incredifind cookie 1:18 PM: Quarantining All Traces: linksynergy cookie 1:18 PM: Quarantining All Traces: maximumcash cookie 1:18 PM: Quarantining All Traces: maxserving cookie 1:18 PM: Quarantining All Traces: metareward.com cookie 1:18 PM: Quarantining All Traces: mircx cookie 1:18 PM: Quarantining All Traces: mp3downloadhq cookie 1:18 PM: Quarantining All Traces: mp3downloading cookie 1:18 PM: Quarantining All Traces: mrskin cookie 1:18 PM: Quarantining All Traces: myaffiliateprogram.com cookie 1:18 PM: Quarantining All Traces: mywebsearch cookie 1:18 PM: Quarantining All Traces: newtopsites cookie 1:18 PM: Quarantining All Traces: nextag cookie 1:18 PM: Quarantining All Traces: offeroptimizer cookie 1:18 PM: Quarantining All Traces: okcounter.com cookie 1:18 PM: Quarantining All Traces: onestat.com cookie 1:18 PM: Quarantining All Traces: outster cookie 1:18 PM: Quarantining All Traces: overture cookie 1:18 PM: Quarantining All Traces: partypoker cookie 1:18 PM: Quarantining All Traces: paycounter cookie 1:18 PM: Quarantining All Traces: paypopup cookie 1:18 PM: Quarantining All Traces: peel network cookie 1:18 PM: Quarantining All Traces: pointroll cookie 1:18 PM: Quarantining All Traces: porngraph cookie 1:18 PM: Quarantining All Traces: precisead cookie 1:18 PM: Quarantining All Traces: pricegrabber cookie 1:18 PM: Quarantining All Traces: primaryads cookie 1:18 PM: Quarantining All Traces: qksrv cookie 1:18 PM: Quarantining All Traces: qsrch cookie 1:18 PM: Quarantining All Traces: questionmarket cookie 1:18 PM: Quarantining All Traces: realmedia cookie 1:18 PM: Quarantining All Traces: realtracker cookie 1:18 PM: Quarantining All Traces: reliablestats cookie 1:18 PM: Quarantining All Traces: reunion cookie 1:18 PM: Quarantining All Traces: revenue.net cookie 1:18 PM: Quarantining All Traces: rightmedia cookie 1:18 PM: Quarantining All Traces: ru4 cookie 1:18 PM: Quarantining All Traces: sandboxer cookie 1:18 PM: Quarantining All Traces: sb01 cookie 1:18 PM: Quarantining All Traces: screensavers.com cookie 1:18 PM: Quarantining All Traces: servedby advertising cookie 1:18 PM: Quarantining All Traces: server.iad.liveperson cookie 1:18 PM: Quarantining All Traces: serving-sys cookie 1:18 PM: Quarantining All Traces: servlet cookie 1:18 PM: Quarantining All Traces: sex cookie 1:18 PM: Quarantining All Traces: sexlist cookie 1:18 PM: Quarantining All Traces: sexsuche cookie 1:18 PM: Quarantining All Traces: sextracker cookie 1:18 PM: Quarantining All Traces: sirsearch cookie 1:18 PM: Quarantining All Traces: specificclick.com cookie 1:18 PM: Quarantining All Traces: spylog cookie 1:18 PM: Quarantining All Traces: spywarestormer cookie 1:18 PM: Quarantining All Traces: startium cookie 1:18 PM: Quarantining All Traces: starware.com cookie 1:18 PM: Quarantining All Traces: statcounter cookie 1:18 PM: Quarantining All Traces: stopzilla cookie 1:18 PM: Quarantining All Traces: targetnet cookie 1:18 PM: Quarantining All Traces: teensforcash cookie 1:18 PM: Quarantining All Traces: tickle cookie 1:18 PM: Quarantining All Traces: tmpad cookie 1:18 PM: Quarantining All Traces: touchclarity cookie 1:18 PM: Quarantining All Traces: tracking cookie 1:18 PM: Quarantining All Traces: tradedoubler cookie 1:18 PM: Quarantining All Traces: trafficmp cookie 1:18 PM: Quarantining All Traces: tribalfusion cookie 1:18 PM: Quarantining All Traces: tripod cookie 1:18 PM: Quarantining All Traces: try games cookie 1:18 PM: Quarantining All Traces: ugo cookie 1:18 PM: Quarantining All Traces: uproar cookie 1:18 PM: Quarantining All Traces: upspiral cookie 1:18 PM: Quarantining All Traces: valuead cookie 1:18 PM: Quarantining All Traces: webpower cookie 1:18 PM: Quarantining All Traces: websponsors cookie 1:18 PM: Quarantining All Traces: webtrendslive cookie 1:18 PM: Quarantining All Traces: wegcash cookie 1:18 PM: Quarantining All Traces: whenu savenow 1:18 PM: Quarantining All Traces: whenu save 1:18 PM: whenu save is in use. It will be removed on reboot. 1:18 PM: save.htm is in use. It will be removed on reboot. 1:18 PM: Quarantining All Traces: whenu searchbar/pricebandit 1:18 PM: Quarantining All Traces: whenu 1:18 PM: whenu is in use. It will be removed on reboot. 1:18 PM: uninst.exe is in use. It will be removed on reboot. 1:18 PM: Quarantining All Traces: wirefly cookie 1:18 PM: Quarantining All Traces: x10 cookie 1:18 PM: Quarantining All Traces: xiti cookie 1:18 PM: Quarantining All Traces: xmatch cookie 1:18 PM: Quarantining All Traces: xxxcounter cookie 1:18 PM: Quarantining All Traces: xzoomy cookie 1:18 PM: Quarantining All Traces: yadro cookie 1:18 PM: Quarantining All Traces: yesadvertising cookie 1:18 PM: Quarantining All Traces: yieldmanager cookie 1:18 PM: Quarantining All Traces: zedo cookie 1:19 PM: BHO Shield: found: -- BHO installation denied at user request 1:21 PM: Removal process completed. Elapsed time 00:05:05 ******** 12:17 PM: | Start of Session, Saturday, January 14, 2006 | 12:17 PM: Spy Sweeper started 12:18 PM: Your spyware definitions have been updated. 12:18 PM: | End of Session, Saturday, January 14, 2006 |

#5 marriana

marriana

    New Member

  • Authentic Member
  • Pip
  • 16 posts

Posted 14 January 2006 - 04:12 PM

Here is the ewido and hijack this report. --------------------------------------------------------- ewido anti-malware - Scan report --------------------------------------------------------- + Created on: 3:16:13 PM, 1/14/2006 + Report-Checksum: D2AD3495 + Scan result: :mozilla.42:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Esomniture : Ignored :mozilla.129:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Burstbeacon : Ignored :mozilla.172:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Realtracker : Ignored :mozilla.182:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Realtracker : Ignored :mozilla.204:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Statcounter : Ignored :mozilla.205:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Statcounter : Ignored :mozilla.206:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Statcounter : Ignored :mozilla.207:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Statcounter : Ignored :mozilla.212:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Serving-sys : Ignored :mozilla.213:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Serving-sys : Ignored :mozilla.214:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Serving-sys : Ignored :mozilla.217:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Serving-sys : Ignored :mozilla.276:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Ignored :mozilla.279:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Liveperson : Ignored :mozilla.286:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Ignored :mozilla.290:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Liveperson : Ignored :mozilla.316:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Overture : Ignored :mozilla.317:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Overture : Ignored :mozilla.321:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Adjuggler : Ignored :mozilla.322:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Adjuggler : Ignored :mozilla.323:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Ignored :mozilla.326:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Ignored :mozilla.327:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Ignored :mozilla.335:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Overture : Ignored :mozilla.336:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Ignored :mozilla.337:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Ignored :mozilla.338:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Ignored :mozilla.428:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Findwhat : Ignored :mozilla.509:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Masterstats : Ignored :mozilla.519:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Coremetrics : Ignored :mozilla.538:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Bridgetrack : Ignored :mozilla.539:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Com : Ignored :mozilla.540:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Com : Ignored :mozilla.574:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Ignored :mozilla.575:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Ignored :mozilla.576:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Ignored :mozilla.586:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Falkag : Ignored :mozilla.587:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Falkag : Ignored :mozilla.595:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Ad-logics : Ignored :mozilla.599:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Serving-sys : Ignored :mozilla.624:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Enliven : Ignored :mozilla.637:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Liveperson : Ignored :mozilla.638:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Liveperson : Ignored :mozilla.645:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Pointroll : Ignored :mozilla.646:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Pointroll : Ignored :mozilla.648:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Pointroll : Ignored :mozilla.652:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Pointroll : Ignored :mozilla.667:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Falkag : Ignored :mozilla.671:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Liveperson : Ignored :mozilla.672:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Googleadservices : Ignored :mozilla.673:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Googleadservices : Ignored :mozilla.674:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Googleadservices : Ignored :mozilla.675:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Googleadservices : Ignored :mozilla.676:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Liveperson : Ignored :mozilla.677:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Liveperson : Ignored :mozilla.678:C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt -> Spyware.Cookie.Googleadservices : Ignored C:\Documents and Settings\Jim\Cookies\jim@citi.bridgetrack[1].txt -> Spyware.Cookie.Bridgetrack : Ignored :mozilla.26:C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt -> Spyware.Cookie.2o7 : Ignored :mozilla.27:C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt -> Spyware.Cookie.2o7 : Ignored :mozilla.28:C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt -> Spyware.Cookie.2o7 : Ignored :mozilla.29:C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt -> Spyware.Cookie.2o7 : Ignored :mozilla.30:C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt -> Spyware.Cookie.2o7 : Ignored C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@serving-sys[1].txt -> Spyware.Cookie.Serving-sys : Ignored C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@microsofteup.112.2o7[1].txt.dat/Documents and Settings/Marriana/Cookies/marriana@microsofteup.112.2o7[1].txt -> Spyware.Cookie.2o7 : Ignored C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@x10[2].txt.bak -> Spyware.Cookie.X10 : Ignored C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP674\A0065407.ocx -> Spyware.Delfin : Ignored C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP674\A0065408.dll -> Spyware.Delfin : Ignored C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP674\A0065409.exe -> Spyware.Delfin : Ignored C:\WINDOWS\SYSTEM32\AdCache\B_329_4_2_554300.htm -> Adware.Cydoor : Ignored HKLM\SOFTWARE\Classes\CLSID\{00A6FAF1-072E-44cf-8957-5838F569A31D} -> Spyware.MyWebSearch : Cleaned with backup HKLM\SOFTWARE\Classes\CLSID\{07B18EA1-A523-4961-B6BB-170DE4475CCA} -> Spyware.MyWebSearch : Cleaned with backup HKLM\SOFTWARE\Classes\CLSID\{07B18EA9-A523-4961-B6BB-170DE4475CCA} -> Spyware.MyWebSearch : Cleaned with backup HKLM\SOFTWARE\Classes\CLSID\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} -> Spyware.MiniBug : Cleaned with backup HKLM\SOFTWARE\Classes\Interface\{16097036-894C-4C00-A61F-93CA0D49A70E} -> Spyware.TOPicks : Cleaned with backup HKLM\SOFTWARE\Classes\Interface\{258A3625-183B-4477-AEE2-EA54DF6D878D} -> Spyware.TOPicks : Cleaned with backup HKLM\SOFTWARE\Classes\Interface\{29E825AA-13BC-457C-806A-D72E4A25B3C5} -> Spyware.BrilliantDigital : Cleaned with backup HKLM\SOFTWARE\Classes\Interface\{2ED5AF98-9258-45BA-B79B-06625C92F662} -> Spyware.TOPicks : Cleaned with backup HKLM\SOFTWARE\Classes\Interface\{700DC0DD-F409-42E0-9DE5-21EE1A2BA9FD} -> Spyware.TOPicks : Cleaned with backup HKLM\SOFTWARE\Classes\Interface\{9D4548CE-92FD-4C6C-AE7F-3DBE3BC763D8} -> Spyware.BrilliantDigital : Cleaned with backup HKLM\SOFTWARE\Classes\Interface\{C91E8926-D4BE-4685-99F4-0D996B96BAC0} -> Spyware.P2PNetworking : Cleaned with backup HKLM\SOFTWARE\Classes\Interface\{D273D427-57C6-4B12-860F-BBB8195F6E2A} -> Spyware.TOPicks : Cleaned with backup HKLM\SOFTWARE\Classes\Interface\{E79DADC6-18D0-4A2A-831F-D196D41F8438} -> Spyware.BrilliantDigital : Cleaned with backup HKLM\SOFTWARE\Classes\Interface\{FD42F6D3-7AB1-470C-979B-7996EDC99099} -> Spyware.TOPicks : Cleaned with backup HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{1D4DB7D2-6EC9-47A3-BD87-1E41684E07BB} -> Spyware.PopularScreensavers : Cleaned with backup HKLM\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{1D6711C8-7154-40BB-8380-3DEA45B69CBF} -> Downloader.WebP2P : Cleaned with backup HKLM\SOFTWARE\Microsoft\Internet Explorer\Extensions\{c95fe080-8f5d-11d2-a20b-00aa003c157a} -> Spyware.Alexa : Cleaned with backup HKLM\SOFTWARE\Microsoft\Internet Explorer\Toolbar\\{0494D0D9-F8E0-41ad-92A3-14154ECE70AC} -> Spyware.MyWay : Cleaned with backup HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\nCASE -> Spyware.180Solutions : Cleaned with backup HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{1A00C40B-DA85-4aa3-A67F-582D9347EECD} -> Spyware.iSearch : Cleaned with backup HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{BC3BBF86-E4EC-4412-9676-8355468B3B05} -> Spyware.Maxspeed : Cleaned with backup HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00A6FAF1-072E-44cf-8957-5838F569A31D} -> Spyware.MyWebSearch : Cleaned with backup HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{07B18EA1-A523-4961-B6BB-170DE4475CCA} -> Spyware.MyWebSearch : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1007\Software\Microsoft\Internet Explorer\MenuExt\Mail to a Friend... -> Spyware.Alexa : Error during cleaning HKU\S-1-5-21-4216694087-3154602795-3738521052-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{07B18EA1-A523-4961-B6BB-170DE4475CCA} -> Spyware.MyWebSearch : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00A6FAF1-072E-44CF-8957-5838F569A31D} -> Spyware.MyWebSearch : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA1-A523-4961-B6BB-170DE4475CCA} -> Spyware.MyWebSearch : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C95FE080-8F5D-11D2-A20B-00AA003C157A} -> Spyware.Alexa : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00A6FAF1-072E-44CF-8957-5838F569A31D} -> Spyware.MyWebSearch : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00D6A7E7-4A97-456F-848A-3B75BF7554D7} -> Spyware.KeenValue : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0199DF25-9820-4BD5-9FEE-5A765AB4371E} -> Spyware.KeenValue : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0494D0D1-F8E0-41AD-92A3-14154ECE70AC} -> Spyware.MyWay : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0494D0D9-F8E0-41AD-92A3-14154ECE70AC} -> Spyware.MyWay : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA1-A523-4961-B6BB-170DE4475CCA} -> Spyware.MyWebSearch : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA9-A523-4961-B6BB-170DE4475CCA} -> Spyware.MyWebSearch : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{15AD4789-CDB4-47E1-A9DA-992EE8E6BAD6} -> Spyware.WinFavorites : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1A00C40B-DA85-4AA3-A67F-582D9347EECD} -> Spyware.iSearch : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4A2AACF3-ADF6-11D5-98A9-00E018981B9E} -> Spyware.NewDotNet : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4FC95EDD-4796-4966-9049-29649C80111D} -> Spyware.KeenValue : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1E58A84-95B3-4630-B8C2-D06B77B7A0FC} -> Spyware.NavExcel : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C95FE080-8F5D-11D2-A20B-00AA003C157A} -> Spyware.Alexa : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F1FABE79-25FC-46DE-8C5A-2C6DB9D64333} -> Spyware.Alexa : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00A6FAF1-072E-44CF-8957-5838F569A31D} -> Spyware.MyWebSearch : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA1-A523-4961-B6BB-170DE4475CCA} -> Spyware.MyWebSearch : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{1A00C40B-DA85-4AA3-A67F-582D9347EECD} -> Spyware.iSearch : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4FC95EDD-4796-4966-9049-29649C80111D} -> Spyware.KeenValue : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C1E58A84-95B3-4630-B8C2-D06B77B7A0FC} -> Spyware.NavExcel : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{C95FE080-8F5D-11D2-A20B-00AA003C157A} -> Spyware.Alexa : Cleaned with backup HKU\S-1-5-21-4216694087-3154602795-3738521052-1009\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F1FABE79-25FC-46DE-8C5A-2C6DB9D64333} -> Spyware.Alexa : Cleaned with backup [4332] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoestb.dll -> Spyware.MyWebSearch : Cleaned with backup [5192] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoestb.dll -> Spyware.MyWebSearch : Error during cleaning [2416] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoestb.dll -> Spyware.MyWebSearch : Error during cleaning [6096] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoemon.exe -> Spyware.Wesbar : Cleaned with backup [1416] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoestb.dll -> Spyware.MyWebSearch : Error during cleaning [2720] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoestb.dll -> Spyware.MyWebSearch : Error during cleaning [3480] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoestb.dll -> Spyware.MyWebSearch : Error during cleaning [2672] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoestb.dll -> Spyware.MyWebSearch : Error during cleaning [6064] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoestb.dll -> Spyware.MyWebSearch : Error during cleaning [1676] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoemon.exe -> Spyware.Wesbar : Error during cleaning [2684] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoestb.dll -> Spyware.MyWebSearch : Error during cleaning [5068] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoestb.dll -> Spyware.MyWebSearch : Error during cleaning [5932] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoestb.dll -> Spyware.MyWebSearch : Error during cleaning [3844] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoestb.dll -> Spyware.MyWebSearch : Error during cleaning [3308] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoestb.dll -> Spyware.MyWebSearch : Error during cleaning [3360] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoemon.exe -> Spyware.Wesbar : Error during cleaning [2116] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoestb.dll -> Spyware.MyWebSearch : Error during cleaning [2428] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoestb.dll -> Spyware.MyWebSearch : Error during cleaning [2772] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoestb.dll -> Spyware.MyWebSearch : Error during cleaning [5508] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoestb.dll -> Spyware.MyWebSearch : Error during cleaning [4736] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoestb.dll -> Spyware.MyWebSearch : Error during cleaning C:\Documents and Settings\Guest\Cookies\guest@doubleclick[1].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup C:\Documents and Settings\Guest\Cookies\guest@ehg-vitamix.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Documents and Settings\Guest\Cookies\guest@hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Documents and Settings\Guest\Cookies\guest@mediaplex[1].txt -> Spyware.Cookie.Mediaplex : Cleaned with backup C:\Documents and Settings\Guest\Cookies\guest@valueclick[1].txt -> Spyware.Cookie.Valueclick : Cleaned with backup C:\Documents and Settings\Jim\Cookies\jim@cityclub.gamingpromo[2].txt -> Spyware.Cookie.Gamingpromo : Cleaned with backup C:\Documents and Settings\Jim\Cookies\jim@com[2].txt -> Spyware.Cookie.Com : Cleaned with backup C:\Documents and Settings\Jim\Cookies\jim@gamingpromo[1].txt -> Spyware.Cookie.Gamingpromo : Cleaned with backup C:\Documents and Settings\Jim\Cookies\jim@image.masterstats[1].txt -> Spyware.Cookie.Masterstats : Cleaned with backup C:\Documents and Settings\Jim\Cookies\jim@sales.liveperson[2].txt -> Spyware.Cookie.Liveperson : Cleaned with backup C:\Documents and Settings\Jim\Cookies\jim@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkysmdjikpwqdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup C:\Documents and Settings\Mackenzie\Cookies\mackenzie@bfast[2].txt -> Spyware.Cookie.Bfast : Cleaned with backup C:\Documents and Settings\Mackenzie\Cookies\mackenzie@doubleclick[1].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup C:\Documents and Settings\Mackenzie\Cookies\mackenzie@ehg-dig.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Documents and Settings\Mackenzie\Cookies\mackenzie@ehg-hasbro.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Documents and Settings\Mackenzie\Cookies\mackenzie@hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Documents and Settings\Mackenzie\Cookies\mackenzie@mediaplex[1].txt -> Spyware.Cookie.Mediaplex : Cleaned with backup C:\Documents and Settings\Mackenzie\Cookies\mackenzie@mysearch[1].txt -> Spyware.Cookie.Mysearch : Cleaned with backup C:\Documents and Settings\Mackenzie\Cookies\mackenzie@www2.enigmasoftwaregroup[1].txt -> Spyware.Cookie.Enigmasoftwaregroup : Cleaned with backup :mozilla.13:C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup :mozilla.20:C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup :mozilla.21:C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup :mozilla.22:C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup :mozilla.23:C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup :mozilla.31:C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup :mozilla.50:C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup :mozilla.59:C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup :mozilla.60:C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup :mozilla.68:C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt -> Spyware.Cookie.Coremetrics : Cleaned with backup :mozilla.92:C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup :mozilla.102:C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Application Data\Wildtangent\Cdacache\00\00\0F.dat/files\wtvh.dll -> Spyware.WildTangent : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@2o7[2].txt -> Spyware.Cookie.2o7 : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@ad-logics[1].txt -> Spyware.Cookie.Ad-logics : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@ad.yieldmanager[1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@ads.addynamix[1].txt -> Spyware.Cookie.Addynamix : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@ads.pointroll[1].txt -> Spyware.Cookie.Pointroll : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@advertising[2].txt -> Spyware.Cookie.Advertising : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@bfast[2].txt -> Spyware.Cookie.Bfast : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@bluestreak[1].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@burstnet[2].txt -> Spyware.Cookie.Burstnet : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@casalemedia[2].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@centrport[2].txt -> Spyware.Cookie.Centrport : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@citi.bridgetrack[2].txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@commission-junction[2].txt -> Spyware.Cookie.Commission-junction : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@cs.sexcounter[2].txt -> Spyware.Cookie.Sexcounter : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@data.coremetrics[1].txt -> Spyware.Cookie.Coremetrics : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@doubleclick[2].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@e-2dj6wjlowlczmkq.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@edge.ru4[1].txt -> Spyware.Cookie.Ru4 : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@ehg-citicards.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@ehg-directv.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@ehg-leggmason.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@ehg-pfizer.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@fastclick[2].txt -> Spyware.Cookie.Fastclick : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@hg1.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@media.fastclick[2].txt -> Spyware.Cookie.Fastclick : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@mediaplex[2].txt -> Spyware.Cookie.Mediaplex : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@paycounter[1].txt -> Spyware.Cookie.Paycounter : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@qksrv[1].txt -> Spyware.Cookie.Qksrv : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@server.iad.liveperson[1].txt -> Spyware.Cookie.Liveperson : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@statse.webtrendslive[1].txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@tradedoubler[2].txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@trafficmp[1].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@tribalfusion[1].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@twci.coremetrics[1].txt -> Spyware.Cookie.Coremetrics : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@valueclick[1].txt -> Spyware.Cookie.Valueclick : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@webpdp.gator[1].txt -> Spyware.Cookie.Gator : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@www.burstbeacon[2].txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@y-1shz2prbmdj6wvny-1sez2pra2dj6wjl4aldjkfpg2dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@y-1shz2prbmdj6wvny-1sez2pra2dj6wjlyokdjacqasdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@y-1shz2prbmdj6wvny-1sez2pra2dj6wjmichdjefpqqdj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@z1.adserver[1].txt -> Spyware.Cookie.Adserver : Cleaned with backup C:\Documents and Settings\Marriana\Local Settings\Temporary Internet Files\Content.IE5\AA6QY70X\WinFixer2006FreeInstall[1].exe -> Not-A-Virus.Downloader.Win32.WinFixer.b : Cleaned with backup C:\Program Files\AWS\WeatherBug\MiniBugTransporter.dll -> Spyware.Wheaterbug : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@112.2o7[1].txt.dat/Documents and Settings/Jim/Cookies/jim@112.2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@247realmedia[1].txt.dat/Documents and Settings/Jim/Cookies/jim@247realmedia[1].txt -> Spyware.Cookie.247realmedia : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@2o7[2].txt.dat/Documents and Settings/Jim/Cookies/jim@2o7[2].txt -> Spyware.Cookie.2o7 : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@ads.addynamix[2].txt.dat/Documents and Settings/Jim/Cookies/jim@ads.addynamix[2].txt -> Spyware.Cookie.Addynamix : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@advertising[1].txt.dat/Documents and Settings/Jim/Cookies/jim@advertising[1].txt -> Spyware.Cookie.Advertising : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@advertising[2].txt.dat/Documents and Settings/Jim/Cookies/jim@advertising[2].txt -> Spyware.Cookie.Advertising : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@as-us.falkag[2].txt.dat/Documents and Settings/Jim/Cookies/jim@as-us.falkag[2].txt -> Spyware.Cookie.Falkag : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@atdmt[2].txt.dat/Documents and Settings/Jim/Cookies/jim@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@banner.goldenpalace[2].txt.dat/Documents and Settings/Jim/Cookies/jim@banner.goldenpalace[2].txt -> Spyware.Cookie.Goldenpalace : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@bfast[1].txt.dat/Documents and Settings/Jim/Cookies/jim@bfast[1].txt -> Spyware.Cookie.Bfast : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@bluestreak[1].txt.dat/Documents and Settings/Jim/Cookies/jim@bluestreak[1].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@burstnet[1].txt.dat/Documents and Settings/Jim/Cookies/jim@burstnet[1].txt -> Spyware.Cookie.Burstnet : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@casalemedia[1].txt.dat/Documents and Settings/Jim/Cookies/jim@casalemedia[1].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@casalemedia[2].txt.dat/Documents and Settings/Jim/Cookies/jim@casalemedia[2].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@centrport[1].txt.dat/Documents and Settings/Jim/Cookies/jim@centrport[1].txt -> Spyware.Cookie.Centrport : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@centrport[2].txt.dat/Documents and Settings/Jim/Cookies/jim@centrport[2].txt -> Spyware.Cookie.Centrport : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@commission-junction[2].txt.dat/Documents and Settings/Jim/Cookies/jim@commission-junction[2].txt -> Spyware.Cookie.Commission-junction : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@counter14.sextracker[2].txt.dat/Documents and Settings/Jim/Cookies/jim@counter14.sextracker[2].txt -> Spyware.Cookie.Sextracker : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@counter16.sextracker[2].txt.dat/Documents and Settings/Jim/Cookies/jim@counter16.sextracker[2].txt -> Spyware.Cookie.Sextracker : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@counter3.sextracker[1].txt.dat/Documents and Settings/Jim/Cookies/jim@counter3.sextracker[1].txt -> Spyware.Cookie.Sextracker : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@counter9.sextracker[2].txt.dat/Documents and Settings/Jim/Cookies/jim@counter9.sextracker[2].txt -> Spyware.Cookie.Sextracker : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@cs.sexcounter[2].txt.dat/Documents and Settings/Jim/Cookies/jim@cs.sexcounter[2].txt -> Spyware.Cookie.Sexcounter : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@data.coremetrics[1].txt.dat/Documents and Settings/Jim/Cookies/jim@data.coremetrics[1].txt -> Spyware.Cookie.Coremetrics : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@doubleclick[1].txt.dat/Documents and Settings/Jim/Cookies/jim@doubleclick[1].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@edge.ru4[1].txt.dat/Documents and Settings/Jim/Cookies/jim@edge.ru4[1].txt -> Spyware.Cookie.Ru4 : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@edge.ru4[2].txt.dat/Documents and Settings/Jim/Cookies/jim@edge.ru4[2].txt -> Spyware.Cookie.Ru4 : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@ehg-aha.hitbox[1].txt.dat/Documents and Settings/Jim/Cookies/jim@ehg-aha.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@ehg-autotrader.hitbox[1].txt.dat/Documents and Settings/Jim/Cookies/jim@ehg-autotrader.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@ehg-cygnusbm.hitbox[2].txt.dat/Documents and Settings/Jim/Cookies/jim@ehg-cygnusbm.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@ehg-leggmason.hitbox[2].txt.dat/Documents and Settings/Jim/Cookies/jim@ehg-leggmason.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@ehg-lowermybills.hitbox[2].txt.dat/Documents and Settings/Jim/Cookies/jim@ehg-lowermybills.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@ehg-pennwell.hitbox[2].txt.dat/Documents and Settings/Jim/Cookies/jim@ehg-pennwell.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@ehg-professionalequipment.hitbox[1].txt.dat/Documents and Settings/Jim/Cookies/jim@ehg-professionalequipment.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@ehg-proflowers.hitbox[2].txt.dat/Documents and Settings/Jim/Cookies/jim@ehg-proflowers.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@ehg-traderpublishing.hitbox[2].txt.dat/Documents and Settings/Jim/Cookies/jim@ehg-traderpublishing.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@ehg-warnerbrothers.hitbox[2].txt.dat/Documents and Settings/Jim/Cookies/jim@ehg-warnerbrothers.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@fastclick[2].txt.dat/Documents and Settings/Jim/Cookies/jim@fastclick[2].txt -> Spyware.Cookie.Fastclick : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@fhm.valueclick[1].txt.dat/Documents and Settings/Jim/Cookies/jim@fhm.valueclick[1].txt -> Spyware.Cookie.Valueclick : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@goldenpalace[2].txt.dat/Documents and Settings/Jim/Cookies/jim@goldenpalace[2].txt -> Spyware.Cookie.Goldenpalace : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@hitbox[1].txt.dat/Documents and Settings/Jim/Cookies/jim@hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@hitbox[2].txt.dat/Documents and Settings/Jim/Cookies/jim@hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@hlwd.valueclick[2].txt.dat/Documents and Settings/Jim/Cookies/jim@hlwd.valueclick[2].txt -> Spyware.Cookie.Valueclick : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@mediaplex[1].txt.dat/Documents and Settings/Jim/Cookies/jim@mediaplex[1].txt -> Spyware.Cookie.Mediaplex : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@microsoftwga.112.2o7[1].txt.dat/Documents and Settings/Jim/Cookies/jim@microsoftwga.112.2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@msnportal.112.2o7[1].txt.dat/Documents and Settings/Jim/Cookies/jim@msnportal.112.2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@partygaming.122.2o7[1].txt.dat/Documents and Settings/Jim/Cookies/jim@partygaming.122.2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@phg.hitbox[1].txt.dat/Documents and Settings/Jim/Cookies/jim@phg.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@qksrv[1].txt.dat/Documents and Settings/Jim/Cookies/jim@qksrv[1].txt -> Spyware.Cookie.Qksrv : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@questionmarket[1].txt.dat/Documents and Settings/Jim/Cookies/jim@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@sel.as-us.falkag[1].txt.dat/Documents and Settings/Jim/Cookies/jim@sel.as-us.falkag[1].txt -> Spyware.Cookie.Falkag : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@servedby.advertising[1].txt.dat/Documents and Settings/Jim/Cookies/jim@servedby.advertising[1].txt -> Spyware.Cookie.Advertising : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@sextracker[2].txt.dat/Documents and Settings/Jim/Cookies/jim@sextracker[2].txt -> Spyware.Cookie.Sextracker : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@statse.webtrendslive[2].txt.dat/Documents and Settings/Jim/Cookies/jim@statse.webtrendslive[2].txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@trafficmp[1].txt.dat/Documents and Settings/Jim/Cookies/jim@trafficmp[1].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@tribalfusion[1].txt.dat/Documents and Settings/Jim/Cookies/jim@tribalfusion[1].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@twci.coremetrics[1].txt.dat/Documents and Settings/Jim/Cookies/jim@twci.coremetrics[1].txt -> Spyware.Cookie.Coremetrics : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@valueclick[1].txt.dat/Documents and Settings/Jim/Cookies/jim@valueclick[1].txt -> Spyware.Cookie.Valueclick : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@valueclick[2].txt.dat/Documents and Settings/Jim/Cookies/jim@valueclick[2].txt -> Spyware.Cookie.Valueclick : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@vip.clickzs[2].txt.dat/Documents and Settings/Jim/Cookies/jim@vip.clickzs[2].txt -> Spyware.Cookie.Clickzs : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@www.goldenpalace[2].txt.dat/Documents and Settings/Jim/Cookies/jim@www.goldenpalace[2].txt -> Spyware.Cookie.Goldenpalace : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@xxxcounter[1].txt.dat/Documents and Settings/Jim/Cookies/jim@xxxcounter[1].txt -> Spyware.Cookie.Xxxcounter : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@z1.adserver[1].txt.dat/Documents and Settings/Jim/Cookies/jim@z1.adserver[1].txt -> Spyware.Cookie.Adserver : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@112.2o7[1].txt.dat/Documents and Settings/Marriana/Cookies/marriana@112.2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@112.2o7[2].txt.bak -> Spyware.Cookie.2o7 : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@112.2o7[2].txt.dat/Documents and Settings/Marriana/Cookies/marriana@112.2o7[2].txt -> Spyware.Cookie.2o7 : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@2o7[1].txt.bak -> Spyware.Cookie.2o7 : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@2o7[1].txt.dat/Documents and Settings/Marriana/Cookies/marriana@2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@2o7[2].txt.bak -> Spyware.Cookie.2o7 : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@2o7[2].txt.dat/Documents and Settings/Marriana/Cookies/marriana@2o7[2].txt -> Spyware.Cookie.2o7 : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@ad.yieldmanager[2].txt.dat/Documents and Settings/Marriana/Cookies/marriana@ad.yieldmanager[2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@ads.addynamix[1].txt.bak -> Spyware.Cookie.Addynamix : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@ads.addynamix[1].txt.dat/Documents and Settings/Marriana/Cookies/marriana@ads.addynamix[1].txt -> Spyware.Cookie.Addynamix : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@ads.addynamix[2].txt.bak -> Spyware.Cookie.Addynamix : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@ads.addynamix[2].txt.dat/Documents and Settings/Marriana/Cookies/marriana@ads.addynamix[2].txt -> Spyware.Cookie.Addynamix : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@advertising[1].txt.bak -> Spyware.Cookie.Advertising : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@advertising[1].txt.dat/Documents and Settings/Marriana/Cookies/marriana@advertising[1].txt -> Spyware.Cookie.Advertising : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@advertising[2].txt.bak -> Spyware.Cookie.Advertising : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@advertising[2].txt.dat/Documents and Settings/Marriana/Cookies/marriana@advertising[2].txt -> Spyware.Cookie.Advertising : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@as-us.falkag[1].txt.dat/Documents and Settings/Marriana/Cookies/marriana@as-us.falkag[1].txt -> Spyware.Cookie.Falkag : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@atdmt[2].txt.bak -> Spyware.Cookie.Atdmt : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@atdmt[2].txt.dat/Documents and Settings/Marriana/Cookies/marriana@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@banner.goldenpalace[2].txt.bak -> Spyware.Cookie.Goldenpalace : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@bfast[1].txt.bak -> Spyware.Cookie.Bfast : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@bfast[1].txt.dat/Documents and Settings/Marriana/Cookies/marriana@bfast[1].txt -> Spyware.Cookie.Bfast : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@bfast[2].txt.bak -> Spyware.Cookie.Bfast : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@bfast[2].txt.dat/Documents and Settings/Marriana/Cookies/marriana@bfast[2].txt -> Spyware.Cookie.Bfast : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@bluestreak[1].txt.bak -> Spyware.Cookie.Bluestreak : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@bluestreak[1].txt.dat/Documents and Settings/Marriana/Cookies/marriana@bluestreak[1].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@bluestreak[2].txt.bak -> Spyware.Cookie.Bluestreak : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@bluestreak[2].txt.dat/Documents and Settings/Marriana/Cookies/marriana@bluestreak[2].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@burstnet[2].txt.dat/Documents and Settings/Marriana/Cookies/marriana@burstnet[2].txt -> Spyware.Cookie.Burstnet : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@buycom.122.2o7[1].txt.dat/Documents and Settings/Marriana/Cookies/marriana@buycom.122.2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@buycom.122.2o7[2].txt.dat/Documents and Settings/Marriana/Cookies/marriana@buycom.122.2o7[2].txt -> Spyware.Cookie.2o7 : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@c.porngraph[1].txt.bak -> Spyware.Cookie.Porngraph : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@casalemedia[1].txt.bak -> Spyware.Cookie.Casalemedia : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@casalemedia[1].txt.dat/Documents and Settings/Marriana/Cookies/marriana@casalemedia[1].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@casalemedia[2].txt.bak -> Spyware.Cookie.Casalemedia : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@casalemedia[2].txt.dat/Documents and Settings/Marriana/Cookies/marriana@casalemedia[2].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@centrport[1].txt.bak -> Spyware.Cookie.Centrport : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@centrport[1].txt.dat/Documents and Settings/Marriana/Cookies/marriana@centrport[1].txt -> Spyware.Cookie.Centrport : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@centrport[2].txt.bak -> Spyware.Cookie.Centrport : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@centrport[2].txt.dat/Documents and Settings/Marriana/Cookies/marriana@centrport[2].txt -> Spyware.Cookie.Centrport : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@commission-junction[1].txt.bak -> Spyware.Cookie.Commission-junction : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@commission-junction[2].txt.bak -> Spyware.Cookie.Commission-junction : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@counter.hitslink[1].txt.bak -> Spyware.Cookie.Hitslink : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@counter.hitslink[1].txt.dat/Documents and Settings/Marriana/Cookies/marriana@counter.hitslink[1].txt -> Spyware.Cookie.Hitslink : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@counter.hitslink[2].txt.bak -> Spyware.Cookie.Hitslink : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@counter.hitslink[2].txt.dat/Documents and Settings/Marriana/Cookies/marriana@counter.hitslink[2].txt -> Spyware.Cookie.Hitslink : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@counter2.hitslink[1].txt.dat/Documents and Settings/Marriana/Cookies/marriana@counter2.hitslink[1].txt -> Spyware.Cookie.Hitslink : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@counter2.hitslink[2].txt.bak -> Spyware.Cookie.Hitslink : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@counter2.hitslink[2].txt.dat/Documents and Settings/Marriana/Cookies/marriana@counter2.hitslink[2].txt -> Spyware.Cookie.Hitslink : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@counter3.sextracker[1].txt.dat/Documents and Settings/Marriana/Cookies/marriana@counter3.sextracker[1].txt -> Spyware.Cookie.Sextracker : Cleaned with backup C:\Program Files\Enigma Software Group\SpyHunter\B

#6 marriana

marriana

    New Member

  • Authentic Member
  • Pip
  • 16 posts

Posted 14 January 2006 - 04:17 PM

Remainder of ewido report C:\Program Files\SpyHunter\Backup\marriana@z1.adserver[1].txt.bak -> Spyware.Cookie.Adserver : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_503300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_503300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_523000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_523000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_529100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_529100.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_531800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_531800.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_537300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_537300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_541900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_541900.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_544400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_544400.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_554400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_554400.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_557500.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_584700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_584700.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_586100.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_599300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_599300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_600200.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_600200.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_600600.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_610600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_610600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_610900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_610900.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_618300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_618300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_621600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_621600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_622000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_622000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_623500.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_624000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_624000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_624300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_624300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_630000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_630000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_630600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_630600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_636500.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_636500.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_636700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_636700.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_636800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_636800.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_636900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_636900.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_637400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_637400.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_637700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_637700.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_647600.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_651200.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_651200.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_661000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_661000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_661300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_661300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_672100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_672100.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_672300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_672300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_672500.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_672500.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_672600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_672600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_673400.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_673700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_673700.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_674500.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_674500.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_678600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_678600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_679300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_679300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_688200.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_688200.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_699800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_699800.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_708100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_708100.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_708200.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_708200.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_708400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_1_708400.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_542000.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_542100.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_544900.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_545600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_545600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_554400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_554400.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_560600.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_586300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_586300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_588000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_588000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_589300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_589300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_590100.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_610600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_610600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_626000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_626000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_629400.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_640300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_640300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_651600.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_668500.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_668500.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_674300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_674300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_676300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_676300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_693100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_693100.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_697600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_697600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_699800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_699800.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_775900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_0_2_775900.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_503300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_503300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_523000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_523000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_529100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_529100.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_531800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_531800.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_537300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_537300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_541900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_541900.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_544400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_544400.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_554400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_554400.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_557500.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_586100.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_600600.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_606100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_606100.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_610600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_610600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_610900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_610900.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_618300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_618300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_621600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_621600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_622000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_622000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_623500.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_624000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_624000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_624300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_624300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_630000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_630000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_630600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_630600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_636500.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_636500.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_636700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_636700.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_636800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_636800.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_636900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_636900.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_637400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_637400.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_637700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_637700.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_647600.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_651200.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_651200.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_661000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_661000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_661300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_661300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_673400.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_678600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_678600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_679300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_679300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_688200.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_688200.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_708100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_708100.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_708400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_1_708400.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_542000.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_542100.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_544900.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_545600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_545600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_545900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_545900.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_549000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_549000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_549400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_549400.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_554400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_554400.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_560600.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_586300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_586300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_588000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_588000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_589300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_589300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_590100.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_597300.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_610600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_610600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_624900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_624900.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_625000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_625100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_625100.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_629400.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_640300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_640300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_651600.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_668500.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_668500.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_669000.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_674300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_674300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_676300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_676300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_693100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_693100.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_699800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_699800.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_775900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_2_775900.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_535100.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_535300.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_537400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_537400.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_538800.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_545600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_545600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_567700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_567700.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_568300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_568300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_588000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_588000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_591600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_591600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_608000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_608000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_625800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_625800.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_645000.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_648100.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_648500.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_653200.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_654100.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_654300.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_654800.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_657200.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_660700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_660700.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_672900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_672900.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_684700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_684700.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_684800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_684800.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_685200.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_685200.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_737700.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_737800.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_737900.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_738000.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_3_738300.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_4_562800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_4_562800.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_4_566400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_4_566400.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_4_571000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_4_571000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_4_586100.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_4_605600.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_4_606400.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_4_653800.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_4_656400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_4_656400.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_2_4_702000.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_503300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_503300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_523000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_523000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_529100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_529100.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_531800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_531800.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_537300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_537300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_541900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_541900.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_544400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_544400.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_554400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_554400.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_557500.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_584700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_584700.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_586100.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_599300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_599300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_600200.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_600200.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_600600.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_610600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_610600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_610900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_610900.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_618300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_618300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_621600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_621600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_622000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_622000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_623500.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_624000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_624000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_624300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_624300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_630000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_630000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_630600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_630600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_636500.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_636500.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_636700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_636700.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_636800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_636800.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_636900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_636900.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_637400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_637400.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_637700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_637700.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_647600.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_651200.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_651200.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_661000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_661000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_661300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_661300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_672100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_672100.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_672300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_672300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_672500.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_672500.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_672600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_672600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_673400.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_673700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_673700.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_674500.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_674500.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_678600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_678600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_679300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_679300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_688200.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_688200.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_699800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_699800.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_708100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_708100.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_708200.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_708200.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_708400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_1_708400.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_542000.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_542100.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_544900.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_545600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_545600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_554400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_554400.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_560600.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_582000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_582000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_586300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_586300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_588000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_588000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_589300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_589300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_590100.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_610600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_610600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_626000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_626000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_629400.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_640300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_640300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_651600.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_668500.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_668500.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_669000.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_674300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_674300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_676300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_676300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_693100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_693100.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_697600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_697600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_699800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_699800.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_775900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_2_775900.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_3_568300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_3_3_568300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_1_599400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_1_604800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_1_611800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_1_636600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_1_642300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_1_674600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_1_675600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_1_675700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_1_677400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_1_683100.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_1_683100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_1_707100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_1_707100.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_2_554300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_2_560900.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_2_560900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_2_576700.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_2_576700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_2_579200.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_2_604800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_2_620800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_2_648700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_2_658800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_2_711400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_2_711400.jpg -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_2_712100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_2_713100.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_2_713100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_503700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_552400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_552400.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_552600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_552600.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_553200.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_553200.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_553400.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_553400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_560900.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_560900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_577200.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_578000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_578000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_592500.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_592500.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_597000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_597000.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_599700.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_599700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_603400.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_603400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_607000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_608200.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_641500.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_641500.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_644100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_644100.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_644200.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_644200.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_645400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_645400.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_669100.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_669100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_669200.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_669200.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_669300.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_669300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_673800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_673800.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_673900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_673900.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_678500.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_678700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_678900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_698700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_711400.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_711400.jpg -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_711500.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_711500.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_711600.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_711600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_713000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_713100.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_3_713100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_4_502800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_4_551300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_4_551300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_4_605700.gif -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_4_605700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_4_648300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_4_648300.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_4_663900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_4_663900.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_4_664700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_4_664700.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_4_667100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_4_667100.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_4_675900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_4_675900.swf -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_4_678500.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_4_678700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_4_678900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_4_698700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_4_713000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_329_4_4_713900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_524800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_525100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_527100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_528500.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_530800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_553500.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_561000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_561100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_575200.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_576800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_577700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_590500.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_591300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_594200.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_604700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_618800.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_632900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_633300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_634700.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_637600.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_642100.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_644500.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_644900.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_652300.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_654000.htm -> Adware.Cydoor : Cleaned with backup C:\WINDOWS\SYSTEM32\AdCache\B_658100.h

#7 Siggyx

Siggyx

    SuperHelper

  • Authentic Member
  • PipPipPipPipPipPip
  • 6,776 posts

Posted 15 January 2006 - 12:42 AM

Please post a new hijackthis log.

#8 marriana

marriana

    New Member

  • Authentic Member
  • Pip
  • 16 posts

Posted 15 January 2006 - 12:12 PM

Here is the new hijackthis log. Thanks!

Logfile of HijackThis v1.99.1
Scan saved at 1:11:19 PM, on 1/15/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\System32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\STOPzilla!\SZServer.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\CTsvcCDA.exe
c:\program files\mcafee.com\agent\mcdetect.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\dlbucoms.exe
C:\WINDOWS\System32\winlogon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\BCMSMMSG.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\McAfee.com\VSO\mcvsshld.exe
C:\PROGRA~1\McAfee\SPAMKI~1\MSKAgent.exe
c:\progra~1\mcafee.com\vso\mcvsescn.exe
C:\PROGRA~1\MUSICM~1\MUSICM~2\mm_tray.exe
C:\Program Files\Dell Photo AIO Printer 942\dlbubmgr.exe
C:\Program Files\Dell Photo AIO Printer 942\memcard.exe
C:\Program Files\McAfee.com\VSO\oasclnt.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\Program Files\Dell Photo AIO Printer 942\dlbubmon.exe
C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe
C:\Program Files\STOPzilla!\STOPzilla.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\AWS\WeatherBug\Weather.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\Sony Corporation\Image Transfer\SonyTray.exe
C:\Program Files\Greetings Workshop\GWREMIND.EXE
c:\progra~1\mcafee.com\vso\mcvsftsn.exe
C:\WINDOWS\System32\winlogon.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
C:\Program Files\ewido anti-malware\ewidoguard.exe
C:\Program Files\ewido anti-malware\ewidoguard.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Documents and Settings\Marriana\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/myway
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapp.../search/ie.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell4me.com/myway
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://channels.aimt.../aimtoolbar.jsp
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapp...//www.yahoo.com
R3 - URLSearchHook: (no name) - {00A6FAF6-072E-44cf-8957-5838F569A31D} - C:\Program Files\MyWebSearch\SrchAstt\2.bin\MWSSRCAS.DLL (file missing)
O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\ycomp5_3_16_0.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: McAfee AntiPhishing Filter - {41D68ED8-4CFF-4115-88A6-6EBB8AF19000} - c:\program files\mcafee\spamkiller\mcapfbho.dll
O2 - BHO: (no name) - {549B5CA7-4A86-11D7-A4DF-000874180BB3} - (no file)
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: (no name) - {B407EF00-B808-4B84-A461-9FCBE5B0F74E} - C:\WINDOWS\System32\iarclass.dll (file missing)
O2 - BHO: STOPzilla Browser Helper Object - {E3215F20-3212-11D6-9F8B-00D0B743919D} - C:\Program Files\STOPzilla!\SZIEBHO.dll
O2 - BHO: (no name) - {FDD3B846-8D59-4ffb-8758-209B6AD74ACC} - (no file)
O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
O3 - Toolbar: Yahoo! Companion - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\ycomp5_3_16_0.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [BCMSMMSG] BCMSMMSG.exe
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] c:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvsshld.exe
O4 - HKLM\..\Run: [MSKAGENTEXE] C:\PROGRA~1\McAfee\SPAMKI~1\MSKAgent.exe
O4 - HKLM\..\Run: [MSKDetectorExe] C:\PROGRA~1\McAfee\SPAMKI~1\MSKDetct.exe /startup
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [WildTangent CDA] RUNDLL32.exe "C:\Program Files\WildTangent\Apps\CDA\cdaEngine0400.dll",cdaEngineMain
O4 - HKLM\..\Run: [New.net Startup] rundll32 C:\PROGRA~1\NEWDOT~1\NEWDOT~2.DLL,NewDotNetStartup -s
O4 - HKLM\..\Run: [MimBoot] C:\PROGRA~1\MUSICM~1\MUSICM~2\mimboot.exe
O4 - HKLM\..\Run: [MMTray] C:\PROGRA~1\MUSICM~1\MUSICM~2\mm_tray.exe
O4 - HKLM\..\Run: [Dell Photo AIO Printer 942] "C:\Program Files\Dell Photo AIO Printer 942\dlbubmgr.exe"
O4 - HKLM\..\Run: [DellMCM] "C:\Program Files\Dell Photo AIO Printer 942\memcard.exe"
O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoemon.exe
O4 - HKLM\..\Run: [Adobe Photo Downloader] "C:\Program Files\Adobe\Photoshop Album Starter Edition\3.0\Apps\apdproxy.exe"
O4 - HKLM\..\Run: [diagent] "C:\Program Files\Creative\SBLive\Diagnostics\diagent.exe" startup
O4 - HKLM\..\Run: [STOPzilla] C:\Program Files\STOPzilla!\STOPzilla.exe /autostart
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe" /startintray
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [MoneyAgent] "C:\Program Files\Microsoft Money\System\mnyexpr.exe"
O4 - HKCU\..\Run: [Weather] C:\Program Files\AWS\WeatherBug\Weather.exe 1
O4 - HKCU\..\Run: [MSKAGENTEXE] c:\PROGRA~1\mcafee\SPAMKI~1\mskagent.exe
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [MyWebSearch Email Plugin] C:\PROGRA~1\MYWEBS~1\bar\2.bin\mwsoemon.exe
O4 - HKCU\..\Run: [WinFixer2006] "C:\Program Files\WinFixer_2006\uwfx6.exe" /min
O4 - Startup: Greetings Workshop Reminders.lnk = C:\Program Files\Greetings Workshop\GWREMIND.EXE
O4 - Startup: MyWebSearch Email Plugin.lnk = C:\Program Files\MyWebSearch\bar\2.bin\MWSOEMON.EXE
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Image Transfer.lnk = ?
O4 - Global Startup: MyWebSearch Email Plugin.lnk = C:\Program Files\MyWebSearch\bar\2.bin\MWSOEMON.EXE
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\WINDOWS\System32\msjava.dll (file missing)
O9 - Extra button: (no name) - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\program files\mcafee\spamkiller\mcapfbho.dll
O9 - Extra 'Tools' menuitem: McAfee AntiPhishing Filter - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\program files\mcafee\spamkiller\mcapfbho.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\Program Files\AWS\WeatherBug\Weather.exe (HKCU)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {38578BF0-0ABB-11D3-9330-0080C6F796A1} (Create & Print ActiveX Plug-in) - http://www.imgag.com...stall/AxCtp.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://bin.mcafee.co...76/mcinsctl.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.micros...b?1136562850953
O16 - DPF: {6F750200-1362-4815-A476-88533DE61D0C} (Ofoto Upload Manager Class) - http://adobe.kodakga..._1/axofupld.cab
O16 - DPF: {78AEEDE8-7345-4FB5-A8FE-4BFF16EF25FC} (McAfee Virtual Technician Control Class) - http://us-download.m...ted/mvt/mvt.cab
O16 - DPF: {BB383206-6DA1-4E80-B62A-3DF950FCC697} (Create & Print ActiveX Plug-in) - http://www.imgag.com...tall/AxCtp2.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://bin.mcafee.co...,16/mcgdmgr.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: dlbu_device - Dell - C:\WINDOWS\system32\dlbucoms.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
O23 - Service: McAfee SpamKiller Server (MskService) - McAfee Inc. - C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
O23 - Service: Webroot Spy Sweeper Engine (svcWRSSSDK) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\WRSSSDK.exe
O23 - Service: STOPzilla Service (szserver) - Unknown owner - C:\Program Files\Common Files\STOPzilla!\SZServer.exe

#9 Siggyx

Siggyx

    SuperHelper

  • Authentic Member
  • PipPipPipPipPipPip
  • 6,776 posts

Posted 15 January 2006 - 12:22 PM

Tool has been updated. Please follow these steps.

Please download VundoFix.exe to your desktop.
  • Double-click VundoFix.exe to run it.
  • Click the Scan for Vundo button.
  • Once it's done scanning, click the Remove Vundo button.
  • You will receive a prompt asking if you want to remove the files, click YES
  • Once you click yes, your desktop will go blank as it starts removing Vundo.
  • When completed, it will prompt that it will shutdown your computer, click OK.
  • Turn your computer back on.
  • Please post the contents of C:\vundofix.txt and a new HiJackThis log.


#10 marriana

marriana

    New Member

  • Authentic Member
  • Pip
  • 16 posts

Posted 15 January 2006 - 01:14 PM

I downloaded Vundofix.exe and clicked on scan for Vundo. But it immediately said "done scanning" and there was nothing to remove. I don't believe it even scanned that quick. Did I do something wrong or maybe the vundofix is ot working properly.

    Advertisements

Register to Remove


#11 Siggyx

Siggyx

    SuperHelper

  • Authentic Member
  • PipPipPipPipPipPip
  • 6,776 posts

Posted 15 January 2006 - 01:17 PM

No thats fine it means that vundo is gone :)

Please do an online scan with Kaspersky Online Scanner

You will be promted to install an ActiveX component from Kaspersky, Click Yes.
  • The program will launch and then start to download the latest definition files.
  • Once the scanner is installed and the definitions downloaded, click Next.
  • Now click on Scan Settings
  • In the scan settings make that the following are selected:
    • Scan using the following Anti-Virus database:
      • Extended (If available otherwise Standard)
    • Scan Options:
      • Scan Archives
      • Scan Mail Bases
  • Click OK
  • Now under select a target to scan select My Computer
  • The scan will take a while so be patient and let it run. Once the scan is complete it will display if your system has been infected.
  • Now click on the Save as Text button:
  • Save the file to your desktop.
  • Copy and paste that information in your next post.


#12 marriana

marriana

    New Member

  • Authentic Member
  • Pip
  • 16 posts

Posted 15 January 2006 - 02:10 PM

Having a problem installing Kaspersky Online Scanner. I tried twice and it keeps coming up saying that it failed to load the online scanner because: - you must have administrative rights on this computer - you also must have IE security settings to medium level. I have both. I don't understand why this is happening. :(

#13 Siggyx

Siggyx

    SuperHelper

  • Authentic Member
  • PipPipPipPipPipPip
  • 6,776 posts

Posted 15 January 2006 - 08:38 PM

Lets try Pnada active scan. It will not remove files but will produce a log. Please post the log it produces.

http://www.pandasoft.../activescan.htm

#14 marriana

marriana

    New Member

  • Authentic Member
  • Pip
  • 16 posts

Posted 16 January 2006 - 10:09 AM

Activescan worked. Here is the report. Also, when I restarted my computer another window pops up saying that it could not load language.DLL error code:0 Could I have removed this by mistake. :oops: Incident Status Location Potentially unwanted tool:application/mywebsearch Not disinfected C:\Documents and Settings\All Users\Start Menu\Programs\Startup\MyWebSearch Email Plugin.lnk Adware:adware/keenvalue Not disinfected C:\Documents and Settings\Marriana\Local Settings\Temp\IncrediFindBHOLog.tmp Adware:adware/delfinmedia Not disinfected C:\PROGRAM FILES\COMMON FILES\remove_tools.html Potentially unwanted tool:application/mywebsearch Not disinfected C:\DOCUMENTS AND SETTINGS\ALL USERS\START MENU\PROGRAMS\STARTUP\MyWebSearch Email Plugin.lnk Potentially unwanted tool:application/funweb Not disinfected C:\WINDOWS\DOWNLOADED PROGRAM FILES\f3initialsetup1.0.0.15.inf Spyware:application/bestoffer Not disinfected C:\WINDOWS\smdat32a.sys Potentially unwanted tool:application/myway Not disinfected C:\PROGRAM FILES\MySearch Spyware:spyware/new.net Not disinfected C:\PROGRAM FILES\NewDotNet Adware:adware/cydoor Not disinfected C:\WINDOWS\SYSTEM32\AdCache Adware:adware/p2pnetworking Not disinfected Windows Registry Dialer:dialer generic Not disinfected HKEY_CLASSES_ROOT\CLSID\{A9571378-68A1-443D-B082-284F960C6D17} Adware:adware/alexa-toolbar Not disinfected Windows Registry Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt[.atdmt.com/] Spyware:Cookie/2o7.net Not disinfected C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt[.2o7.net/] Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt[.zedo.com/] Spyware:Cookie/Tickle Not disinfected C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt[.tickle.com/] Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt[.realmedia.com/] Spyware:Cookie/Target Not disinfected C:\Documents and Settings\Guest\Cookies\guest@target[2].txt Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt[] Spyware:Cookie/WebtrendsLive Not disinfected C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt[S150541] Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt[] Spyware:Cookie/WebtrendsLive Not disinfected C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt[S150541] Spyware:Cookie/Overture Not disinfected C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt[] Spyware:Cookie/WebtrendsLive Not disinfected C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt[S005-00-5-30-109972-12434] Spyware:Cookie/WebtrendsLive Not disinfected C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt[S130035] Spyware:Cookie/Overture Not disinfected C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt[] Spyware:Cookie/WebtrendsLive Not disinfected C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt[S130035] Spyware:Cookie/WebtrendsLive Not disinfected C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt[S150509] Spyware:Cookie/Maxserving Not disinfected C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt[] Spyware:Cookie/WebtrendsLive Not disinfected C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt[dcs80iwlfpifwzzk7ddtvurjf_8z5g] Spyware:Cookie/WebtrendsLive Not disinfected C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt[dcsbumwk021e5hq1wmm5qgke6_5x5b] Spyware:Cookie/WebtrendsLive Not disinfected C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt[dcsgcxwngpifwznfzlmv83o6w_5w4m] Spyware:Cookie/Falkag Not disinfected C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt[] Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt[2751137] Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt[42435556] Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\Documents and Settings\Jim\Application Data\Mozilla\Firefox\Profiles\ubx9r57m.default\cookies.txt[2751137] Spyware:Cookie/Target Not disinfected C:\Documents and Settings\Jim\Cookies\jim@target[1].txt Spyware:Cookie/WinFixer Not disinfected C:\Documents and Settings\Jim\Cookies\jim@winfixer[2].txt Spyware:Cookie/Date Not disinfected C:\Documents and Settings\Mackenzie\Cookies\mackenzie@date[1].txt Spyware:Cookie/Atlas DMT Not disinfected C:\Documents and Settings\Marriana\Application Data\Mozilla\Firefox\Profiles\evh38tp3.default\cookies.txt[] Spyware:Cookie/Sandboxer Not disinfected C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@0[3].txt Spyware:Cookie/Kazaa Networks Not disinfected C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@276[1].txt Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@adrevolver[2].txt Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@adrevolver[3].txt Spyware:Cookie/Apmebf Not disinfected C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@apmebf[2].txt Spyware:Cookie/Banner Not disinfected C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@banner[1].txt Spyware:Cookie/bravenetA Not disinfected C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@bravenet[1].txt Spyware:Cookie/360i Not disinfected C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@ct.360i[1].txt Spyware:Cookie/Kazaa Networks Not disinfected C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@desktop.kazaa[1].txt Spyware:Cookie/Maxserving Not disinfected C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@maxserving[1].txt Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@realmedia[2].txt Spyware:Cookie/Rn11 Not disinfected C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@rn11[1].txt Spyware:Cookie/Serving-sys Not disinfected C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@serving-sys[1].txt Spyware:Cookie/Target Not disinfected C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@target[1].txt Spyware:Cookie/TeensForCash Not disinfected C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@teensforcash[2].txt Spyware:Cookie/SaveNow Not disinfected C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@tracking.thunderdownloads[2].txt Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Marriana\Local Settings\Temp\Cookies\marriana@zedo[1].txt Spyware:Cookie/Apmebf Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@apmebf[2].txt.dat[jim@apmebf[2].txt] Spyware:Cookie/Belnk Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@dist.belnk[2].txt.dat[jim@dist.belnk[2].txt] Spyware:Cookie/RealMedia Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@realmedia[1].txt.dat[jim@realmedia[1].txt] Spyware:Cookie/RealMedia Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@realmedia[2].txt.dat[jim@realmedia[2].txt] Spyware:Cookie/Rightmedia Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@rightmedia[1].txt.dat[jim@rightmedia[1].txt] Spyware:Cookie/Tickle Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@tickle[1].txt.dat[jim@tickle[1].txt] Spyware:Cookie/Xiti Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\jim@xiti[1].txt.dat[jim@xiti[1].txt] Spyware:Cookie/Hbmediapro Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@adopt.hbmediapro[1].txt.dat[marriana@adopt.hbmediapro[1].txt] Spyware:Cookie/Apmebf Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@apmebf[1].txt.dat[marriana@apmebf[1].txt] Spyware:Cookie/Apmebf Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@apmebf[2].txt.dat[marriana@apmebf[2].txt] Spyware:Cookie/Belnk Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@ath.belnk[2].txt.dat[marriana@ath.belnk[2].txt] Spyware:Cookie/Azjmp Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@azjmp[1].txt.bak Spyware:Cookie/Azjmp Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@azjmp[2].txt.bak Spyware:Cookie/Azjmp Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@azjmp[2].txt.dat[marriana@azjmp[2].txt] Spyware:Cookie/Belnk Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@belnk[1].txt.dat[marriana@belnk[1].txt] Spyware:Cookie/Belnk Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@belnk[2].txt.dat[marriana@belnk[2].txt] Spyware:Cookie/bravenetA Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@bravenet[1].txt.dat[marriana@bravenet[1].txt] Spyware:Cookie/bravenetA Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@bravenet[2].txt.bak Spyware:Cookie/bravenetA Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@bravenet[2].txt.dat[marriana@bravenet[2].txt] Spyware:Cookie/Belnk Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@dist.belnk[1].txt.dat[marriana@dist.belnk[1].txt] Spyware:Cookie/Belnk Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@dist.belnk[2].txt.dat[marriana@dist.belnk[2].txt] Spyware:Cookie/Kount Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@kount[1].txt.dat[marriana@kount[1].txt] Spyware:Cookie/Kount Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@kount[2].txt.bak Spyware:Cookie/Microsofte Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@microsofteup.112.2o7[1].txt.dat[marriana@microsofteup.112.2o7[1].txt] Spyware:Cookie/OfferOptimizer Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@offeroptimizer[1].txt.dat[marriana@offeroptimizer[1].txt] Spyware:Cookie/RealMedia Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@realmedia[1].txt.bak Spyware:Cookie/RealMedia Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@realmedia[1].txt.dat[marriana@realmedia[1].txt] Spyware:Cookie/RealMedia Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@realmedia[2].txt.dat[marriana@realmedia[2].txt] Spyware:Cookie/Rightmedia Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@rightmedia[1].txt.bak Spyware:Cookie/Rightmedia Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@rightmedia[2].txt.bak Spyware:Cookie/Tickle Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@tickle[1].txt.bak Spyware:Cookie/X10 Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@x10[2].txt.bak Spyware:Cookie/Xiti Not disinfected C:\Program Files\Enigma Software Group\SpyHunter\Backup\marriana@xiti[1].txt.dat[marriana@xiti[1].txt] Potentially unwanted tool:Application/MyWebSearch Not disinfected C:\Program Files\MyWebSearch\bar\2.bin\MWSOEPLG.DLL Potentially unwanted tool:Application/MyWebSearch Not disinfected C:\Program Files\MyWebSearch\bar\Game\CHECKERS.F3S Potentially unwanted tool:Application/MyWebSearch Not disinfected C:\Program Files\MyWebSearch\bar\Game\CHESS.F3S Potentially unwanted tool:Application/MyWebSearch Not disinfected C:\Program Files\MyWebSearch\bar\Game\REVERSI.F3S Spyware:Cookie/RealMedia Not disinfected C:\Program Files\SpyHunter\Backup\marriana@realmedia[1].txt.bak Spyware:Cookie/RealMedia Not disinfected C:\Program Files\SpyHunter\Backup\marriana@realmedia[2].txt.bak Spyware:Cookie/Rightmedia Not disinfected C:\Program Files\SpyHunter\Backup\marriana@rightmedia[1].txt.bak Spyware:Cookie/Rightmedia Not disinfected C:\Program Files\SpyHunter\Backup\marriana@rightmedia[2].txt.bak Potentially unwanted tool:Application/FunWeb Not disinfected C:\WINDOWS\Downloaded Program Files\f3initialsetup1.0.0.15.inf

#15 Siggyx

Siggyx

    SuperHelper

  • Authentic Member
  • PipPipPipPipPipPip
  • 6,776 posts

Posted 16 January 2006 - 04:34 PM

Lets do some cleaning.

Download ccleaner from the link below, save it to your desktop. Open ccleaner and click on run ccleaner at the bottom right.

http://www.majorgeek...wnload4191.html

Next download Regseeker from the link below. Save it to your destop. Open Regseeker and click on clean registry, next click ok. Once the scan is complete make sure the make backups is checked and then select all and delete it.

http://www.majorgeek...wnload2579.html

Next

Please download Asquared from the link below.

http://www.emsisoft....tware/download/

Safe it to your desktop. Next open and check for updates.

Boot to safe mode (tap f8 while bios loads)

Then scan your system (this will take some time) after the scan is compelte allow it to fix what it has found. If there is something that it can not clean please let me know what it was.

Then reboot and post a new hijackthis log.

Related Topics



0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users