Logfile of HijackThis v1.99.1
Scan saved at 1:28:10 PM, on 2/20/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\devldr32.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\gmcqaww\cryyey.exe
C:\WINDOWS\system32\gmcqaww\cryyey.exe
C:\WINDOWS\system32\gcqc\xaoyu.exe
C:\WINDOWS\system32\namkeqv\oedjac.exe
C:\WINDOWS\system32\gmcqaww\cryyey.exe
C:\WINDOWS\system32\ctfmon.exe
C:\DOCUME~1\main\APPLIC~1\RACLE~1\dexplore.exe
C:\Program Files\??pPatch\s?ool32.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\America Online 9.0b\waol.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\WINDOWS\system32\bmwebcfg.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\ewido anti-malware\ewidoguard.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\system32\evpw\rwsnw.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Trend Micro\Antivirus\Tmntsrv.exe
C:\Program Files\Trend Micro\Antivirus\tmproxy.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\America Online 9.0b\shellmon.exe
C:\HJT\HijackThis.exe
C:\WINDOWS\system32\wuauclt.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.foxnews.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
R3 - URLSearchHook: (no name) - {B4AC2F63-B5D6-C359-F7DD-E0CB59EB5C96} - C:\WINDOWS\system32\vsqk.dll
N3 - Netscape 7: user_pref("browser.startup.homepage", "http://home.netscape.com/bookmark/7_1/home.html"); (C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\prefs.js)
N3 - Netscape 7: user_pref("browser.search.defaultengine", ""); (C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\prefs.js)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {B4AC2F63-B5D6-C359-F7DD-E0CB59EB5C96} - C:\WINDOWS\system32\vsqk.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [swbrwc] C:\WINDOWS\system32\rotys\swbrwc.exe
O4 - HKLM\..\Run: [qmvmgh] C:\WINDOWS\system32\bvpsoth\qmvmgh.exe
O4 - HKLM\..\Run: [snrhewhu] C:\WINDOWS\system32\wmrfn\snrhewhu.exe
O4 - HKLM\..\Run: [bhod] C:\WINDOWS\system32\fgrv\bhod.exe
O4 - HKLM\..\Run: [vyqpbdmi] C:\WINDOWS\system32\gyuxclfm\vyqpbdmi.exe
O4 - HKLM\..\Run: [tvrbpvd] C:\WINDOWS\system32\qwasf\tvrbpvd.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [cgfajyg] C:\WINDOWS\system32\eioj\cgfajyg.exe
O4 - HKLM\..\Run: [elthk] C:\WINDOWS\system32\rcbl\elthk.exe
O4 - HKLM\..\Run: [srwnsucs] C:\WINDOWS\system32\etudypfm\srwnsucs.exe
O4 - HKLM\..\Run: [hpuvcv] C:\WINDOWS\system32\rwbvkxyl\hpuvcv.exe
O4 - HKLM\..\Run: [fxnxh] C:\WINDOWS\system32\jbabs\fxnxh.exe
O4 - HKLM\..\Run: [oedjac] C:\WINDOWS\system32\namkeqv\oedjac.exe
O4 - HKLM\..\Run: [cryyey] C:\WINDOWS\system32\gmcqaww\cryyey.exe
O4 - HKLM\..\Run: [cmvcej] C:\WINDOWS\system32\blcfj\cmvcej.exe
O4 - HKLM\..\Run: [rwsnw] C:\WINDOWS\system32\evpw\rwsnw.exe
O4 - HKLM\..\Run: [wcxtxlre] C:\WINDOWS\system32\yowapa\wcxtxlre.exe
O4 - HKLM\..\Run: [ufkpdrv] C:\WINDOWS\system32\atymda\ufkpdrv.exe
O4 - HKLM\..\Run: [xaoyu] C:\WINDOWS\system32\gcqc\xaoyu.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [AOL Fast Start] "C:\Program Files\America Online 9.0b\AOL.EXE" -b
O4 - HKCU\..\Run: [Amot] "C:\DOCUME~1\main\APPLIC~1\RACLE~1\dexplore.exe" -vt yazr
O4 - HKCU\..\Run: [Xuixsb] C:\Program Files\??pPatch\s?ool32.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: &AOL Toolbar Search - res://c:\program files\aol\aol toolbar 2.0\aoltbhtml.dll/search.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Create Mobile Favorite - {2EAF5BB1-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra button: (no name) - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra 'Tools' menuitem: Create Mobile Favorite… - {2EAF5BB2-070F-11D3-9307-00C04FAE2D4F} - C:\Program Files\Microsoft ActiveSync\INETREPL.DLL
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\WINDOWS\System32\shdocvw.dll
O9 - Extra button: UltimateBet - {94148DB5-B42D-4915-95DA-2CBB4F7095BF} - C:\Program Files\UltimateBet\UltimateBet.exe
O9 - Extra 'Tools' menuitem: UltimateBet - {94148DB5-B42D-4915-95DA-2CBB4F7095BF} - C:\Program Files\UltimateBet\UltimateBet.exe
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\IEExtension.dll
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\IEExtension.dll
O9 - Extra button: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O9 - Extra 'Tools' menuitem: ICQ Lite - {B863453A-26C3-4e1f-A54D-A2CD196348E9} - C:\Program Files\ICQLite\ICQLite.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Bodog Poker - {F47C1DB5-ED21-4dc1-853E-D1495792D4C5} - C:\Program Files\Bodog Poker\GameClient.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\PROGRA~1\AWS\WEATHE~1\Weather.exe (HKCU)
O12 - Plugin for .xml: C:\Program Files\Netscape\Netscape Browser\PLUGINS\npTrident.dll
O16 - DPF: Yahoo! Chat - http://us.chat1.yimg.com/us.yimg.com/i/cha…t/c381/chat.cab
O16 - DPF: Yahoo! Pool 2 -
http://download.games.yahoo.com/games/clients/y/potc_x.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\Common\yinsthelper.dll
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} -
http://a1540.g.akamai.net/7/1540/52/200203…meInstaller.exe
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) -
http://by4fd.bay4.hotmail.msn.com/resources/MsnPUpld.cab
O16 - DPF: {6BEA1C48-1850-486C-8F58-C7354BA3165E} -
http://updates.lifescapeinc.com/installers…ll/pinstall.cab
O16 - DPF: {8FCDF9D9-A28B-480F-8C3D-581F119A8AB8} -
http://static.zangocash.com/cab/Zango/ie/bridge-c18.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: bhodfgrv - Unknown owner - C:\WINDOWS\system32\fgrv\bhod.exe
O23 - Service: Bytemobile Web Configurator (bmwebcfg) - Bytemobile, Inc. - C:\WINDOWS\system32\bmwebcfg.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
O23 - Service: fxnxhjbabs - Unknown owner - C:\WINDOWS\system32\jbabs\fxnxh.exe
O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: rwsnwevpw - Unknown owner - C:\WINDOWS\system32\evpw\rwsnw.exe
O23 - Service: Trend NT Realtime Service (Tmntsrv) - Trend Micro Incorporated. - C:\Program Files\Trend Micro\Antivirus\Tmntsrv.exe
O23 - Service: Trend Micro Proxy Service (tmproxy) - Trend Micro Incorporated. - C:\Program Files\Trend Micro\Antivirus\tmproxy.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
———————————————————
ewido anti-malware - Scan report
———————————————————
+ Created on: 1:23:33 PM, 2/20/2006
+ Report-Checksum: 9FE8D8CA
+ Scan result:
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\ins -> Adware.WebRebates : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DisplayUtility -> Adware.Delfin : Cleaned with backup
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\InternetOffers -> Adware.LZIO : Cleaned with backup
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0AD937E7-2F37-4873-A05E-548A67EF1D0E} -> Adware.FlashEnhancer : Cleaned with backup
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11A4CA8C-A8B9-49C2-A6D3-3F64C9EEBAE6} -> Adware.Shorty : Cleaned with backup
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4E7BD74F-2B8D-469E-8DBC-A42EB79CB428} -> Adware.Generic : Cleaned with backup
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8B6DA27E-7F64-4694-8F8F-DC87AB8C6B22} -> Adware.LinkMaker : Cleaned with backup
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D7E588AB-A5D9-4422-B313-22A3470F9700} -> Adware.FlashEnhancer : Cleaned with backup
HKU\.DEFAULT\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FFF4E223-7019-4CE7-BE03-D7D3C8CCE884} -> Adware.Shorty : Cleaned with backup
HKU\S-1-5-21-1574323382-1815002781-3652652152-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Settings\{8B6DA27E-7F64-4694-8F8F-DC87AB8C6B22} -> Adware.LinkMaker : Cleaned with backup
HKU\S-1-5-21-1574323382-1815002781-3652652152-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8B6DA27E-7F64-4694-8F8F-DC87AB8C6B22} -> Adware.LinkMaker : Cleaned with backup
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{0AD937E7-2F37-4873-A05E-548A67EF1D0E} -> Adware.FlashEnhancer : Cleaned with backup
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{11A4CA8C-A8B9-49C2-A6D3-3F64C9EEBAE6} -> Adware.Shorty : Cleaned with backup
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4E7BD74F-2B8D-469E-8DBC-A42EB79CB428} -> Adware.Generic : Cleaned with backup
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{8B6DA27E-7F64-4694-8F8F-DC87AB8C6B22} -> Adware.LinkMaker : Cleaned with backup
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D7E588AB-A5D9-4422-B313-22A3470F9700} -> Adware.FlashEnhancer : Cleaned with backup
HKU\S-1-5-18\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{FFF4E223-7019-4CE7-BE03-D7D3C8CCE884} -> Adware.Shorty : Cleaned with backup
C:\Documents and Settings\LocalService\Cookies\[removed][1].txt -> TrackingCookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\LocalService\Cookies\[removed][2].txt -> TrackingCookie.Specificclick : Cleaned with backup
C:\Documents and Settings\LocalService\Cookies\[removed][2].txt -> TrackingCookie.Realcastmedia : Cleaned with backup
C:\Documents and Settings\LocalService\Cookies\system@hypertracker[1].txt -> TrackingCookie.Hypertracker : Cleaned with backup
C:\Documents and Settings\LocalService\Cookies\system@paypopup[1].txt -> TrackingCookie.Paypopup : Cleaned with backup
C:\Documents and Settings\LocalService\Cookies\system@tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned with backup
C:\Documents and Settings\LocalService\Cookies\system@yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\main\a.exe/mc-58-12-0000137.exe -> Adware.Maxifiles : Cleaned with backup
:mozilla.8:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.9:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.10:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.11:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.12:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.13:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.14:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.15:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.16:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.17:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.18:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.19:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.20:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.21:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.22:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.23:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.24:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.25:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.26:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.27:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.30:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
:mozilla.31:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
:mozilla.32:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
:mozilla.33:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
:mozilla.34:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.35:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.36:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.37:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.38:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.39:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.55:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
:mozilla.57:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.58:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.59:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.60:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.61:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.62:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.63:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Com : Cleaned with backup
:mozilla.64:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Com : Cleaned with backup
:mozilla.72:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.73:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.74:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.75:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.76:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.77:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.78:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.79:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.80:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.126:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Overture : Cleaned with backup
:mozilla.127:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Overture : Cleaned with backup
:mozilla.129:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Overture : Cleaned with backup
:mozilla.147:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup
:mozilla.155:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
:mozilla.156:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
:mozilla.157:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
:mozilla.158:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
:mozilla.163:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.164:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.166:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.167:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.168:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.187:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.188:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.189:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.190:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.191:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.192:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.193:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.194:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.195:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.196:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.197:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.198:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.208:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned with backup
:mozilla.209:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned with backup
:mozilla.210:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned with backup
:mozilla.212:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Overture : Cleaned with backup
:mozilla.220:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.221:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.222:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.223:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.224:C:\Documents and Settings\main\Application Data\Mozilla\Profiles\default\y6fnwbn6.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
:mozilla.32:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.Trafic : Cleaned with backup
:mozilla.34:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup
:mozilla.41:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup
:mozilla.43:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.44:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.45:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.46:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.47:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.48:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.50:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.Centrport : Cleaned with backup
:mozilla.51:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.Centrport : Cleaned with backup
:mozilla.53:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.54:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.55:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.56:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
:mozilla.64:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.65:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.66:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned with backup
:mozilla.73:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.Coremetrics : Cleaned with backup
:mozilla.76:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.78:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.86:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup
:mozilla.88:C:\Documents and Settings\main\Application Data\Netscape\NSB\Profiles\gitb56jg.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned with backup
C:\Documents and Settings\main\Cookies\[removed][2].txt -> TrackingCookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\main\Cookies\[removed][2].txt -> TrackingCookie.Specificclick : Cleaned with backup
C:\Documents and Settings\main\Cookies\[removed][2].txt -> TrackingCookie.Tacoda : Cleaned with backup
C:\Documents and Settings\main\Cookies\[removed][1].txt -> TrackingCookie.Overture : Cleaned with backup
C:\Documents and Settings\main\Cookies\main@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\main\Cookies\main@partygaming.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup
C:\Documents and Settings\main\Cookies\[removed][1].txt -> TrackingCookie.Reliablestats : Cleaned with backup
C:\Documents and Settings\main\Cookies\main@tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned with backup
C:\Documents and Settings\main\Cookies\[removed][1].txt -> TrackingCookie.Burstbeacon : Cleaned with backup
C:\Documents and Settings\main\Cookies\main@yadro[2].txt -> TrackingCookie.Yadro : Cleaned with backup
C:\Documents and Settings\main\Local Settings\TEMP\13.tmp -> Downloader.Agent.lg : Cleaned with backup
C:\Documents and Settings\main\Local Settings\TEMP\Cookies\[removed][2].txt -> TrackingCookie.Specificclick : Cleaned with backup
C:\Program Files\BearShare\Installer\saveinstwm.exe/VVSN.exe -> Adware.SaveNow : Cleaned with backup
C:\Program Files\BearShare\Installer\saveinstwm.exe/VVSN.exe -> Adware.SaveNow : Cleaned with backup
C:\Program Files\Ftk\ftk.dll -> Adware.FlashEnhancer : Cleaned with backup
C:\Program Files\Yazzle Sudoku\Sudoku.exe -> Dropper.VB.kk : Cleaned with backup
C:\System Volume Information\_restore{10079EF7-9BEA-4908-92B4-0EDBB2391CF2}\RP114\A0016078.exe -> Dropper.VB.kk : Cleaned with backup
C:\System Volume Information\_restore{10079EF7-9BEA-4908-92B4-0EDBB2391CF2}\RP116\A0016357.exe -> Adware.BrilliantDigital : Cleaned with backup
C:\WINDOWS\system32\ariqaro\xdwnmgrn.exe -> Downloader.Agent.lg : Cleaned with backup
C:\WINDOWS\system32\auaonf\aynaxgoo.exe -> Downloader.Agent.lg : Cleaned with backup
C:\WINDOWS\system32\bngkfyhd.exe -> Adware.EZula : Cleaned with backup
C:\WINDOWS\system32\bnugl.exe -> Adware.DealHelper : Cleaned with backup
C:\WINDOWS\system32\BO2809040510.exe -> Adware.VirtualBouncer : Cleaned with backup
C:\WINDOWS\system32\bsdg.exe -> Adware.DealHelper : Cleaned with backup
C:\WINDOWS\system32\cegh\exmwmd.exe -> Downloader.Agent.lg : Cleaned with backup
C:\WINDOWS\system32\cinmnpl.exe -> Adware.DealHelper : Cleaned with backup
C:\WINDOWS\system32\danfxsdr\xtbodhu.exe -> Downloader.Agent.lg : Cleaned with backup
C:\WINDOWS\system32\ddichos\1E.tmp -> Downloader.Agent.lg : Cleaned with backup
C:\WINDOWS\system32\dun.exe -> Adware.DealHelper : Cleaned with backup
C:\WINDOWS\system32\etcgwr.exe -> Adware.DealHelper : Cleaned with backup
C:\WINDOWS\system32\fluc\thbjqjuh.exe -> Downloader.Agent.lg : Cleaned with backup
C:\WINDOWS\system32\hfnjjl\qglmtx.exe -> Downloader.Agent.lg : Cleaned with backup
C:\WINDOWS\system32\hliknm\qtwfq.exe -> Downloader.Agent.lg : Cleaned with backup
C:\WINDOWS\system32\ioave.exe -> Adware.EZula : Cleaned with backup
C:\WINDOWS\system32\isshyfxg\quqqa.exe -> Downloader.Agent.lg : Cleaned with backup
C:\WINDOWS\system32\jbfp\aadjo.exe -> Downloader.Agent.lg : Cleaned with backup
C:\WINDOWS\system32\jenjm.exe -> Adware.Sahat : Cleaned with backup
C:\WINDOWS\system32\jfgign\klyt.exe -> Downloader.Agent.lg : Cleaned with backup
C:\WINDOWS\system32\jocyjsw\ywvr.exe -> Downloader.Agent.lg : Cleaned with backup
C:\WINDOWS\system32\kastqwem\fxyylro.exe -> Downloader.Agent.lg : Cleaned with backup
C:\WINDOWS\system32\lgaqhy\ontwsx.exe -> Downloader.Agent.lg : Cleaned with backup
C:\WINDOWS\system32\mema.exe -> Adware.DealHelper : Cleaned with backup
C:\WINDOWS\system32\oeeg.exe -> Adware.DealHelper : Cleaned with backup
C:\WINDOWS\system32\oklamto\trwyapn.exe -> Downloader.Agent.lg : Cleaned with backup
C:\WINDOWS\system32\pdbfjlo.exe -> Adware.EZula : Cleaned with backup
C:\WINDOWS\system32\prmw.exe -> Adware.EZula : Cleaned with backup
C:\WINDOWS\system32\qyieu\xdrf.exe -> Downloader.Agent.lg : Cleaned with backup
C:\WINDOWS\system32\sasrowc.exe -> Adware.EZula : Cleaned with backup
C:\WINDOWS\system32\seoht.exe -> Adware.Sahat : Cleaned with backup
C:\WINDOWS\system32\smoypsn\xnqdi.exe -> Downloader.Agent.lg : Cleaned with backup
C:\WINDOWS\system32\spfs.exe -> Adware.EZula : Cleaned with backup
C:\WINDOWS\system32\SplWbr.dll -> Adware.VirtualBouncer : Cleaned with backup
C:\WINDOWS\system32\ubgqhf.exe -> Adware.DealHelper : Cleaned with backup
C:\WINDOWS\system32\xrarkf\glnbghvf.exe -> Downloader.Agent.lg : Cleaned with backup
C:\WINDOWS\system32\xxpxfk.exe -> Adware.Sahat : Cleaned with backup
C:\WINDOWS\system32\xyev\grobkk.exe -> Downloader.Agent.lg : Cleaned with backup
C:\WINDOWS\system32\yrvn.exe -> Adware.DealHelper : Cleaned with backup
::Report End