This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

flash problems, shut downs, popups

68 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

i'm enclosing my hijack scan file… i have no flash on my computer - repeated atempts to download it say i have it but then nothing requiring flash actually plays… in addition the IE shuts down occasionally - no explanations – and of course, the typical popups…

Logfile of HijackThis v1.99.1
Scan saved at 9:54:25 AM, on 9/8/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\NORTON~1\NORTON~2\GHOSTS~2.EXE
C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Norton SystemWorks\Norton Ghost\GhostStartTrayApp.exe
C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr_.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\Common Files\AOL\1148416296\ee\AOLSoftware.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\svcwinra.exe
C:\Program Files\eFax Messenger Plus 3.3\J2GDllCmd.exe
C:\WINDOWS\resfilter32.exe
C:\Program Files\Nikon\NkView5\NkvMon.exe
C:\Documents and Settings\Shane.MAURER-BLODGETT\Desktop\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaul…//www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul…rch/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul…//www.yahoo.com
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://mail.yahoo.com/?.redir=ymmapi1&….cldefstat=Def1
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn5\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn5\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: CitiUSBrowserHelper Class - {387EDF53-1CF2-4523-BC2F-13462651BE8C} - C:\WINDOWS\system32\BhoCitUS.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
O2 - BHO: Discover deskshop Browser Helper Object - {8DB3D69D-DA5E-4165-B781-72A761790672} - (no file)
O2 - BHO: (no name) - {A3C78565-3B89-3875-A2D9-121331D53896} - C:\WINDOWS\system32\ghlns.dll
O3 - Toolbar: (no name) - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - (no file)
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn5\yt.dll
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [ccApp] C:\Program Files\Common Files\Symantec Shared\ccApp.exe
O4 - HKLM\..\Run: [GhostStartTrayApp] C:\Program Files\Norton SystemWorks\Norton Ghost\GhostStartTrayApp.exe
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr_.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [CitiVAN] C:\Program Files\Citi Virtual Account Numbers\CitiVAN.exe /dontopenmycards
O4 - HKLM\..\Run: [SecureOnlineAccountNumbers] C:\Program Files\Secure Online Account Numbers\SOAN.exe /dontopenmycards
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1148416296\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [sprinit] C:\WINDOWS\svcwinra.exe
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_7 -reboot 1
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: eFax Live Menu 3.3.lnk = C:\Program Files\eFax Messenger Plus 3.3\J2GDllCmd.exe
O4 - Global Startup: eFax Tray Menu 3.3.lnk = C:\Program Files\eFax Messenger Plus 3.3\J2GTray.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: NkvMon.exe.lnk = C:\Program Files\Nikon\NkView5\NkvMon.exe
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 3.0\resources\en-US\local\search.html
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/…arch.jhtml?p=ZJ
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
O9 - Extra button: Citi - {4C730913-3961-439b-83D5-F4E445520422} - C:\Program Files\Citi Virtual Account Numbers\CitiVAN.exe
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Secure Online Account Numbers - {F74E75A5-96BF-40ef-A1C8-88EAEBB82AB6} - C:\Program Files\Secure Online Account Numbers\SOAN.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: YExplorer1_8US.CAB - http://photos.groups.yahoo.com/ocx/us/yexplorer1_8us.cab
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=58813
O16 - DPF: {08BEF711-06DA-48B2-9534-802ECAA2E4F9} (PlxInstall Class) - https://www.plaxo.com/down/latest/PlaxoInstall.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/…nst_current.cab
O16 - DPF: {42C9E5EE-DA49-49B4-8ECC-1CAB1C51A2AB} (HomePrintingCtrl Class) - http://www.ofoto.com/downloads/hmpr/HMPR_W…_1/axhomepr.cab
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EP…l_v1-0-3-24.cab
O16 - DPF: {50647AB5-18FD-4142-82B0-5852478DD0D5} (Keynote Connector Launcher 2) - http://webeffective.keynote.com/applicatio…torLauncher.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat…b?1157463871890
O16 - DPF: {6F750200-1362-4815-A476-88533DE61D0C} (Ofoto Upload Manager Class) - http://www.kodakgallery.com/downloads/BUM/…_1/axofupld.cab
O16 - DPF: {70647AB5-18FD-4142-82B0-5852478DD0D4} (Keynote Connector Launcher) - http://xms.keynote.com/applications/connec…torLauncher.cab
O16 - DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} (Groove Control) - http://www.nick.com/common/groove/gx/GrooveAX27.cab
O16 - DPF: {8D83D301-E841-11D1-B155-00600823BCF9} (WebLine Browser Integration Classes) - http://live.landsend.com/webline/applets/msie40x.cab
O16 - DPF: {A8739816-022C-11D6-A85D-00C04F9AEAFB} (WebEyeControl) - http://www.rockefellercenter.com/viewer/wg_webeye.cab
O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) - http://www.crucial.com/controls/cpcScanner.cab
O16 - DPF: {BB383206-6DA1-4E80-B62A-3DF950FCC697} (Create & Print ActiveX Plug-in) - http://ak.imgag.com/imgag/cp/install/AxCtp2.cab
O16 - DPF: {C3DFA998-A486-11D4-AA25-00C04F72DAEB} (MSN Photo Upload Tool) - http://sc.groups.msn.com/controls/PhotoUC/MsnPUpld.cab
O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} (Virtools WebPlayer Class) - http://a532.g.akamai.net/f/532/6712/5m/vir…5/installer.exe
O16 - DPF: {E856B973-45FD-4559-8F82-EAB539144667} (AutoFix Launcher Control) - http://pccheckup.dellfix.com/rel/35/install/gtdownde.cab
O16 - DPF: {E87F6C8E-16C0-11D3-BEF7-009027438003} (Persits Software XUpload) - http://www.auctiva.com/hostedimages/active…oad/XUpload.ocx
O16 - DPF: {EE8B6D5F-FEF2-11D0-B13F-00A024798EF3} (Microsoft Search Settings Control) - http://lg.home.microsoft.com/search/lobby/searchsettings.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/controls/msnchat45.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{4CDB5680-45E6-445B-8E0B-209252ACF84C}: NameServer = 167.206.3.238,167.206.3.235
O17 - HKLM\System\CS1\Services\Tcpip\..\{4CDB5680-45E6-445B-8E0B-209252ACF84C}: NameServer = 167.206.3.238,167.206.3.235
O20 - AppInit_DLLs: msconfig.dll
O20 - Winlogon Notify: Control Panel - C:\WINDOWS\system32\cnutil.dll (file missing)
O20 - Winlogon Notify: Reinstall - C:\WINDOWS\system32\nrth.dll (file missing)
O20 - Winlogon Notify: ShellServiceObjectDelayLoad - C:\WINDOWS\system32\nxdll.dll (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: GhostStartService - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~2\GHOSTS~2.EXE
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
Logfile of HijackThis v1.99.1
Scan saved at 5:03:40 PM, on 9/11/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Norton SystemWorks\Norton Ghost\GhostStartTrayApp.exe
C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr_.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\WINDOWS\svcwinra.exe
C:\WINDOWS\System32\RunDLL32.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\NORTON~1\NORTON~2\GHOSTS~2.EXE
C:\WINDOWS\system32\CURITY~1\attrib.exe
C:\Program Files\??mbols\msdtc.exe
C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
C:\WINDOWS\resfilter32.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
C:\Program Files\eFax Messenger Plus 3.3\J2GDllCmd.exe
C:\Program Files\eFax Messenger Plus 3.3\J2GTray.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Nikon\NkView5\NkvMon.exe
c:\program files\common files\aol\1148416296\ee\aolsoftware.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\PROGRA~1\WINZIP\winzip32.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\Rachel.MAURER-BLODGETT\Local

Settings\Temp\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page =

http://red.clientapps.yahoo.com/customize/…//www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL =

http://us.rd.yahoo.com/customize/ie/defaul…//www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar =

http://us.rd.yahoo.com/customize/ie/defaul…o.com/ext/searc

h/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page =

http://us.rd.yahoo.com/customize/ie/defaul…//www.yahoo.com
R3 - URLSearchHook: (no name) - {EC19C0DD-7935-7ACB-1080-02E2EE78769A} -

C:\WINDOWS\system32\aabsohsf.dll
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} -

C:\Program Files\Yahoo!\Companion\Installs\cpn5\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} -

C:\Program Files\Yahoo!\Companion\Installs\cpn5\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3}

- C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: CitiUSBrowserHelper Class - {387EDF53-1CF2-4523-BC2F-13462651BE8C} -

C:\WINDOWS\system32\BhoCitUS.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} -

C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} -

C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} -

C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
O2 - BHO: Discover deskshop Browser Helper Object -

{8DB3D69D-DA5E-4165-B781-72A761790672} - C:\WINDOWS\system32\BhoDshop.dll
O2 - BHO: (no name) - {EC19C0DD-7935-7ACB-1080-02E2EE78769A} -

C:\WINDOWS\system32\aabsohsf.dll
O3 - Toolbar: (no name) - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - (no file)
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program

Files\AOL\AOL Toolbar 3.0\aoltb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program

Files\Yahoo!\Companion\Installs\cpn5\yt.dll
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control

Panel\atiptaxx.exe
O4 - HKLM\..\Run: [ccApp] C:\Program Files\Common Files\Symantec Shared\ccApp.exe
O4 - HKLM\..\Run: [GhostStartTrayApp] C:\Program Files\Norton SystemWorks\Norton

Ghost\GhostStartTrayApp.exe
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator

5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr_.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program

Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common

Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [CitiVAN] C:\Program Files\Citi Virtual Account Numbers\CitiVAN.exe

/dontopenmycards
O4 - HKLM\..\Run: [SecureOnlineAccountNumbers] C:\Program Files\Secure Online Account

Numbers\SOAN.exe /dontopenmycards
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang

1033
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common

Files\AOL\1148416296\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows

Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [iudinit] C:\WINDOWS\svcwinra.exe
O4 - HKCU\..\Run: [OfotoNow USB Detection] C:\WINDOWS\System32\RunDLL32.exe

C:\PROGRA~1\Ofoto\OfotoNow\OFUSBS.DLL,WatchForConnection OfotoNow
O4 - HKCU\..\Run: [hButRPj6V] cfgrov.exe
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE"

-quiet
O4 - HKCU\..\Run: [µTorrent] "C:\Documents and

Settings\Savannah.MAURER-BLODGETT\Desktop\utorrent.exe"
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\Common Files\AOL\Launch\AOLLaunch.exe"

/d locale=en-US ee://aol/imApp
O4 - HKCU\..\Run: [Anonymizer] C:\Program Files\Anonymizer\Anonymizer

Software\Anonymizer.exe -nogui
O4 - HKCU\..\Run: [Aida] "C:\WINDOWS\system32\CURITY~1\attrib.exe" -vt ndrv
O4 - HKCU\..\Run: [Wtfqndfc] C:\Program Files\??mbols\msdtc.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat

7.0\Reader\reader_sl.exe
O4 - Global Startup: eFax Live Menu 3.3.lnk = C:\Program Files\eFax Messenger Plus

3.3\J2GDllCmd.exe
O4 - Global Startup: eFax Tray Menu 3.3.lnk = C:\Program Files\eFax Messenger Plus

3.3\J2GTray.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft

Office\Office10\OSA.EXE
O4 - Global Startup: NkvMon.exe.lnk = C:\Program Files\Nikon\NkView5\NkvMon.exe
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar

3.0\resources\en-US\local\search.html
O8 - Extra context menu item: &Search -

http://edits.mywebsearch.com/toolbaredits/…arch.jhtml?p=ZJ
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program

Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program

Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program

Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program

Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -

C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console -

{08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program

Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} -

C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
O9 - Extra button: Citi - {4C730913-3961-439b-83D5-F4E445520422} - C:\Program

Files\Citi Virtual Account Numbers\CitiVAN.exe
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} -

C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program

Files\AIM95\aim.exe
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} -

C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger -

{E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program

Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Secure Online Account Numbers -

{F74E75A5-96BF-40ef-A1C8-88EAEBB82AB6} - C:\Program Files\Secure Online Account

Numbers\SOAN.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program

Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger -

{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: YExplorer1_8US.CAB -

http://photos.groups.yahoo.com/ocx/us/yexplorer1_8us.cab
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage

Validation Tool) - http://go.microsoft.com/fwlink/?linkid=58813
O16 - DPF: {08BEF711-06DA-48B2-9534-802ECAA2E4F9} (PlxInstall Class) -

https://www.plaxo.com/down/latest/PlaxoInstall.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage

Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) -

http://us.dl1.yimg.com/download.yahoo.com/…nst_current.cab
O16 - DPF: {42C9E5EE-DA49-49B4-8ECC-1CAB1C51A2AB} (HomePrintingCtrl Class) -

http://www.ofoto.com/downloads/hmpr/HMPR_W…_1/axhomepr.cab
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) -

http://tools.ebayimg.com/eps/wl/activex/EP…l_v1-0-3-24.cab
O16 - DPF: {50647AB5-18FD-4142-82B0-5852478DD0D5} (Keynote Connector Launcher 2)

-

http://webeffective.keynote.com/applicatio…torLauncher.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) -

http://update.microsoft.com/microsoftupdat…/muweb_site.cab

?1157463871890
O16 - DPF: {6F750200-1362-4815-A476-88533DE61D0C} (Ofoto Upload Manager Class) -

http://www.kodakgallery.com/downloads/BUM/…_1/axofupld.cab
O16 - DPF: {70647AB5-18FD-4142-82B0-5852478DD0D4} (Keynote Connector Launcher) -

http://xms.keynote.com/applications/connec…torLauncher.cab
O16 - DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} (Groove Control) -

http://www.nick.com/common/groove/gx/GrooveAX27.cab
O16 - DPF: {8D83D301-E841-11D1-B155-00600823BCF9} (WebLine Browser Integration

Classes) - http://live.landsend.com/webline/applets/msie40x.cab
O16 - DPF: {A8739816-022C-11D6-A85D-00C04F9AEAFB} (WebEyeControl) -

http://www.rockefellercenter.com/viewer/wg_webeye.cab
O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) -

http://www.crucial.com/controls/cpcScanner.cab
O16 - DPF: {BB383206-6DA1-4E80-B62A-3DF950FCC697} (Create & Print ActiveX Plug-in)

- http://ak.imgag.com/imgag/cp/install/AxCtp2.cab
O16 - DPF: {C3DFA998-A486-11D4-AA25-00C04F72DAEB} (MSN Photo Upload Tool) -

http://sc.groups.msn.com/controls/PhotoUC/MsnPUpld.cab
O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} (Virtools WebPlayer Class) -

http://a532.g.akamai.net/f/532/6712/5m/vir…/player/install

3.5/installer.exe
O16 - DPF: {E856B973-45FD-4559-8F82-EAB539144667} (AutoFix Launcher Control) -

http://pccheckup.dellfix.com/rel/35/install/gtdownde.cab
O16 - DPF: {E87F6C8E-16C0-11D3-BEF7-009027438003} (Persits Software XUpload) -

http://www.auctiva.com/hostedimages/active…oad/XUpload.ocx
O16 - DPF: {EE8B6D5F-FEF2-11D0-B13F-00A024798EF3} (Microsoft Search Settings

Control) - http://lg.home.microsoft.com/search/lobby/searchsettings.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) -

http://chat.msn.com/controls/msnchat45.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{4CDB5680-45E6-445B-8E0B-209252ACF84C}:

NameServer = 167.206.3.238,167.206.3.235
O17 - HKLM\System\CS1\Services\Tcpip\..\{4CDB5680-45E6-445B-8E0B-209252ACF84C}:

NameServer = 167.206.3.238,167.206.3.235
O20 - AppInit_DLLs: msconfig.dll
O20 - Winlogon Notify: Control Panel - C:\WINDOWS\system32\cnutil.dll (file missing)
O20 - Winlogon Notify: Reinstall - C:\WINDOWS\system32\nrth.dll (file missing)
O20 - Winlogon Notify: ShellServiceObjectDelayLoad - C:\WINDOWS\system32\nxdll.dll

(file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. -

C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. -

C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: GhostStartService - Symantec Corporation -

C:\PROGRA~1\NORTON~1\NORTON~2\GHOSTS~2.EXE
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation -

C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program

Files\iPod\bin\iPodService.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation -

C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation -

C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation -

C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Speed Disk service - Symantec Corporation -

C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
rachelfran :D

Welcome to the forum, please reply to this thread only by using the Add-Reply button and not the New Topic button or else you will have posts all over the forum and we wont be able to keep track of you.


DO THIS FIRST
Your HIJACKTHIS program is current, but it is very important that it resides in its own folder.
We will use Hijackthis (HJT) to make changes to your system and HJT will make backups of those changes,
If HJT is not in its own folder, those backups could be lost.

Easy to fix.
  • just go to My Computer > YOUR C:\ DRIVE > Program Files and create a new folder and name it Hijackthis .
  • Now scroll to where you have HJT currently, right click on the HJT icon and select CUT .
  • Now open the new folder you just created and right click within that folder and select PASTE .
  • Now HJT should reside in C:\Program Files\Hijackthis\Hijackthis.exe
Please do not proceed until you have moved HJT




Download and install the 30 day trial of Ewido Anti Spyware to your desktop.
  • Once you have downloaded Ewido Anti-Spyware, locate the icon on the desktop and double-click it to launch the set up program.
  • Once the setup is complete you will need run Ewido and update the definition files.
  • On the main screen select the icon Update then select the Update now link.
  • Next select the Start Update button, the update will start and a progress bar will show the updates being installed.
  • Once the update has completed select the Scanner icon at the top of the screen, then select the Settings tab.
  • Once in the Settings screen click on Recommended actions and then select Quarantine <– Dont forget this
  • Under Reports
  • Select Automatically generate report after every scan
  • Un-Select Only if threats were found
  • Close Ewido Anti-Spyware <– Do not run the scan yet.



Please download VundoFix.exe to your desktop.
  • Double-click VundoFix.exe to run it.
  • Click the Scan for Vundo button.
  • Once it's done scanning, click the Remove Vundo button.
  • You will receive a prompt asking if you want to remove the files, click YES
  • Once you click yes, your desktop will go blank as it starts removing Vundo.
  • When completed, it will prompt that it will reboot your computer, click OK.
  • Please post the contents of C:\vundofix.txt and a new HiJackThis log.
Note: It is possible that VundoFix encountered a file it could not remove.
In this case, VundoFix will run on reboot, simply follow the above instructions starting from "Click the Scan for Vundo button." when VundoFix appears at reboot.






Boot your computer into Safemode
  • Go to Start> Shut Off your Computer> Restart
  • As the computer starts to boot-up, Tap the F8 KEY somewhat rapidly.
  • This will bring up a menu.
  • Use the Up and Down Arrow Keys to scroll up to SAFEMODE
  • Then press the Enter on your Keyboard
IMPORTANT: Do not open any other windows or programs while ewido is scanning, it may interfere with the scanning process:
  • Launch Ewido-Anti-Spyware by double-clicking the icon on your desktop.
  • Select the Scanner icon at the top and then the Scan tab then click on Complete System Scan.
  • Ewido will now begin the scanning process, be patient this may take a little time.
  • Once the scan is complete do the following:
  • If you have any infections you will prompted, then select Apply all actions
  • Next select the Reports icon at the top.
  • Select the Save report as button in the lower left hand of the screen and save it to a text file on your system
  • make sure to remember where you saved that file, this is important
  • Close Ewido



Reboot normally and run this system cleaner


Please download ATF Cleaner by Atribune.
  • This program is for XP and Windows 2000 only
  • Double-click ATF-Cleaner.exe to run the program.
  • Under Main choose: Select All
  • Click the Empty Selected button.

Post the result from the Vundofix, the Ewido log and a new HJT log please.

Ken :D
i cannot post the ewido scan as it makes the post too long and isn't accepted

there was no result from vundofix as it didn't find anything

here is the hijack log

Logfile of HijackThis v1.99.1
Scan saved at 5:07:42 PM, on 9/14/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Norton SystemWorks\Norton Ghost\GhostStartTrayApp.exe
C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr_.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\System32\Ati2evxx.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\WINDOWS\svcwinra.exe
C:\WINDOWS\System32\RunDLL32.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\WINDOWS\resfilter32.exe
C:\PROGRA~1\NORTON~1\NORTON~2\GHOSTS~2.EXE
C:\WINDOWS\system32\CURITY~1\attrib.exe
C:\Program Files\??mbols\msdtc.exe
C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
C:\Program Files\eFax Messenger Plus 3.3\J2GDllCmd.exe
C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
C:\Program Files\eFax Messenger Plus 3.3\J2GTray.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Nikon\NkView5\NkvMon.exe
C:\Program Files\Common Files\AOL\1148416296\ee\aolsoftware.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\PROGRA~1\Yahoo!\COMPAN~1\Installs\cpn5\YTBSDK.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/…//www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaul…//www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul…rch/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul…//www.yahoo.com
R3 - URLSearchHook: (no name) - {F1FABED9-5834-0598-4175-28F00FC66FCB} - C:\WINDOWS\system32\eukhqzh.dll (file missing)
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn5\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn5\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: CitiUSBrowserHelper Class - {387EDF53-1CF2-4523-BC2F-13462651BE8C} - C:\WINDOWS\system32\BhoCitUS.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
O2 - BHO: Discover deskshop Browser Helper Object - {8DB3D69D-DA5E-4165-B781-72A761790672} - C:\WINDOWS\system32\BhoDshop.dll
O2 - BHO: (no name) - {F1FABED9-5834-0598-4175-28F00FC66FCB} - C:\WINDOWS\system32\eukhqzh.dll (file missing)
O3 - Toolbar: (no name) - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - (no file)
O3 - Toolbar: AOL Toolbar - {DE9C389F-3316-41A7-809B-AA305ED9D922} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn5\yt.dll
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [ccApp] C:\Program Files\Common Files\Symantec Shared\ccApp.exe
O4 - HKLM\..\Run: [GhostStartTrayApp] C:\Program Files\Norton SystemWorks\Norton Ghost\GhostStartTrayApp.exe
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr_.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [CitiVAN] C:\Program Files\Citi Virtual Account Numbers\CitiVAN.exe /dontopenmycards
O4 - HKLM\..\Run: [SecureOnlineAccountNumbers] C:\Program Files\Secure Online Account Numbers\SOAN.exe /dontopenmycards
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1148416296\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [sprinit] C:\WINDOWS\svcwinra.exe
O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
O4 - HKCU\..\Run: [OfotoNow USB Detection] C:\WINDOWS\System32\RunDLL32.exe C:\PROGRA~1\Ofoto\OfotoNow\OFUSBS.DLL,WatchForConnection OfotoNow
O4 - HKCU\..\Run: [hButRPj6V] cfgrov.exe
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - HKCU\..\Run: [µTorrent] "C:\Documents and Settings\Savannah.MAURER-BLODGETT\Desktop\utorrent.exe"
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\Common Files\AOL\Launch\AOLLaunch.exe" /d locale=en-US ee://aol/imApp
O4 - HKCU\..\Run: [Anonymizer] C:\Program Files\Anonymizer\Anonymizer Software\Anonymizer.exe -nogui
O4 - HKCU\..\Run: [Aida] "C:\WINDOWS\system32\CURITY~1\attrib.exe" -vt ndrv
O4 - HKCU\..\Run: [Wtfqndfc] C:\Program Files\??mbols\msdtc.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: eFax Live Menu 3.3.lnk = C:\Program Files\eFax Messenger Plus 3.3\J2GDllCmd.exe
O4 - Global Startup: eFax Tray Menu 3.3.lnk = C:\Program Files\eFax Messenger Plus 3.3\J2GTray.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: NkvMon.exe.lnk = C:\Program Files\Nikon\NkView5\NkvMon.exe
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 3.0\resources\en-US\local\search.html
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/…arch.jhtml?p=ZJ
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
O9 - Extra button: Citi - {4C730913-3961-439b-83D5-F4E445520422} - C:\Program Files\Citi Virtual Account Numbers\CitiVAN.exe
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Secure Online Account Numbers - {F74E75A5-96BF-40ef-A1C8-88EAEBB82AB6} - C:\Program Files\Secure Online Account Numbers\SOAN.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: YExplorer1_8US.CAB - http://photos.groups.yahoo.com/ocx/us/yexplorer1_8us.cab
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=58813
O16 - DPF: {08BEF711-06DA-48B2-9534-802ECAA2E4F9} (PlxInstall Class) - https://www.plaxo.com/down/latest/PlaxoInstall.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/…nst_current.cab
O16 - DPF: {42C9E5EE-DA49-49B4-8ECC-1CAB1C51A2AB} (HomePrintingCtrl Class) - http://www.ofoto.com/downloads/hmpr/HMPR_W…_1/axhomepr.cab
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EP…l_v1-0-3-24.cab
O16 - DPF: {50647AB5-18FD-4142-82B0-5852478DD0D5} (Keynote Connector Launcher 2) - http://webeffective.keynote.com/applicatio…torLauncher.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat…b?1157463871890
O16 - DPF: {6F750200-1362-4815-A476-88533DE61D0C} (Ofoto Upload Manager Class) - http://www.kodakgallery.com/downloads/BUM/…_1/axofupld.cab
O16 - DPF: {70647AB5-18FD-4142-82B0-5852478DD0D4} (Keynote Connector Launcher) - http://xms.keynote.com/applications/connec…torLauncher.cab
O16 - DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} (Groove Control) - http://www.nick.com/common/groove/gx/GrooveAX27.cab
O16 - DPF: {8D83D301-E841-11D1-B155-00600823BCF9} (WebLine Browser Integration Classes) - http://live.landsend.com/webline/applets/msie40x.cab
O16 - DPF: {A8739816-022C-11D6-A85D-00C04F9AEAFB} (WebEyeControl) - http://www.rockefellercenter.com/viewer/wg_webeye.cab
O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) - http://www.crucial.com/controls/cpcScanner.cab
O16 - DPF: {BB383206-6DA1-4E80-B62A-3DF950FCC697} (Create & Print ActiveX Plug-in) - http://ak.imgag.com/imgag/cp/install/AxCtp2.cab
O16 - DPF: {C3DFA998-A486-11D4-AA25-00C04F72DAEB} (MSN Photo Upload Tool) - http://sc.groups.msn.com/controls/PhotoUC/MsnPUpld.cab
O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} (Virtools WebPlayer Class) - http://a532.g.akamai.net/f/532/6712/5m/vir…5/installer.exe
O16 - DPF: {E856B973-45FD-4559-8F82-EAB539144667} (AutoFix Launcher Control) - http://pccheckup.dellfix.com/rel/35/install/gtdownde.cab
O16 - DPF: {E87F6C8E-16C0-11D3-BEF7-009027438003} (Persits Software XUpload) - http://www.auctiva.com/hostedimages/active…oad/XUpload.ocx
O16 - DPF: {EE8B6D5F-FEF2-11D0-B13F-00A024798EF3} (Microsoft Search Settings Control) - http://lg.home.microsoft.com/search/lobby/searchsettings.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/controls/msnchat45.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{4CDB5680-45E6-445B-8E0B-209252ACF84C}: NameServer = 167.206.3.238,167.206.3.235
O17 - HKLM\System\CS1\Services\Tcpip\..\{4CDB5680-45E6-445B-8E0B-209252ACF84C}: NameServer = 167.206.3.238,167.206.3.235
O20 - AppInit_DLLs: msconfig.dll
O20 - Winlogon Notify: Control Panel - C:\WINDOWS\system32\cnutil.dll (file missing)
O20 - Winlogon Notify: Reinstall - C:\WINDOWS\system32\nrth.dll (file missing)
O20 - Winlogon Notify: ShellServiceObjectDelayLoad - C:\WINDOWS\system32\nxdll.dll (file missing)
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: GhostStartService - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~2\GHOSTS~2.EXE
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe

how can i get you the ewido scan?

thanks for your help!
rachel
Hello Again,

You have some real nasty stuff on your pc, its going to take some work to remove.

As far as Ewido, you can open the log and break it up and paste into 2 or 3 replies if you need to.


Then lets run this tool and we can cleanup any leftovers when its done.



Please download ComboFix from either of these two locations

BleepingComputerComboFix
TechSupportForumComboFix
  • Double click combofix.exe & follow the prompts.
  • When finished, it shall produce a log for you. Post that log in your next reply along with a new HJT log,
Do not mouseclick combofix's window whilst it's running. That may cause it to stall.
first i'll post the ewido scan and then ill do the other things — ——————————————————— ewido anti-spyware - Scan Report ——————————————————— + Created at: 4:38:38 PM 9/14/2006 + Scan result: C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\ICD1.tmp\SAIX.dll -> Adware.180Solutions : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\DZ8UH1SE\ZangoInstaller[1].exe -> Adware.180Solutions : Cleaned with backup (quarantined). C:\Program Files\Microsoft AntiSpyware\Quarantine\334325F1-951A-4F7A-989D-0AD9C3\FA529F5F-6821-4571-A3A5-F03F9C -> Adware.180Solutions : Cleaned with backup (quarantined). C:\WINDOWS\trarcwl.exe -> Adware.BetterInternet : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\IESkins -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\IESkins\011501Hadley2_hotbar.bmp -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\IESkins\022001flyingman2.bmp -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\IESkins\091701fl5.bmp -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\IESkins\1222bar.bmp -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\eskin -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\eskin\090902fishy_prv.jpg -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\eskin\090902fishy_st.htm -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\eskin\Cats__wake_up_img.htm -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\eskin\Cats__wake_up_prv.gif -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\eskin\FileManager.txt -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\eskin\Waiters_and_Barmen_Waiter_with_cake_img.htm -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\eskin\Waiters_and_Barmen_Waiter_with_cake_prv.gif -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\eskin\busine25_img.htm -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\eskin\busine25_prv.gif -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0 -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\HostOI -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\HostOI\dynamic -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\HostOI\static -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\HostOL -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\HostOL\dynamic -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\HostOL\static -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\1.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\1056987.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\1058978.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\1066422.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\1066790.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\1091022.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\308756.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\313168.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\326611.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\39466.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\489121.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\566217.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\588080.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\608910.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\670828.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\765568.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\848819.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\890068.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\922323.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\964382.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\992161.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\bstat -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\domains.txt -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\ustat -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\dynamic\ustat\2f51.dat -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1 -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\Default_categorize.mnu -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\Default_favorites.mnu -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\Default_hotbarcom.mnu -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\Default_hsskin.mnu -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\Default_premium.mnu -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\Default_searchgo.mnu -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\Default_weather.mnu -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\Default_yellowpages.mnu -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\Top7_theweb.mnu -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\bubbles.cdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\bubbles2.cdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\bubbles2_Bubbles2.bbl -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\bubbles_Bubbles.bbl -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\business_promo.htm -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\buttondir.txt -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\components.cdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\d_icons_buttons_1000.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\d_icons_buttons_2000.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\d_icons_buttons_3000.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\d_icons_buttons_bar.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\d_icons_buttons_bbar1.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\d_icons_buttons_bbar10.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\d_icons_buttons_bbar11.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\d_icons_buttons_bbar12.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\d_icons_buttons_bbar13.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\d_icons_buttons_bbar14.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\d_icons_buttons_bbar2.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\d_icons_buttons_bbar3.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\d_icons_buttons_bbar4.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\d_icons_buttons_bbar5.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\d_icons_buttons_bbar6.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\d_icons_buttons_bbar7.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\d_icons_buttons_bbar8.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\d_icons_buttons_bbar9.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\d_icons_buttons_logos.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\d_icons_buttons_other.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\d_icons_buttons_x.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\default.cdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\email-t1-bg.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\hotbar_promo.htm -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\hotbarcom.mnu -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\icons2.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\keywords_idx.idx -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\keywords_sdf.sdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\layout.cdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\linkpathlegal.txt -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\progress.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\s_icons_buttons.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\samplegroups2.txt -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\t2_bg.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\theweb.mnu -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\top7.cdf -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\1\tsd_bg.res -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\bubbles.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\bubbles2.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\business_promo.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\buttondir.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\d_icons_buttons_1000.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\d_icons_buttons_2000.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\d_icons_buttons_3000.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\d_icons_buttons_bar.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\d_icons_buttons_bbar1.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\d_icons_buttons_bbar10.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\d_icons_buttons_bbar11.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\d_icons_buttons_bbar12.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\d_icons_buttons_bbar13.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\d_icons_buttons_bbar14.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\d_icons_buttons_bbar2.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\d_icons_buttons_bbar3.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\d_icons_buttons_bbar4.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\d_icons_buttons_bbar5.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\d_icons_buttons_bbar6.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\d_icons_buttons_bbar7.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\d_icons_buttons_bbar8.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\d_icons_buttons_bbar9.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\d_icons_buttons_logos.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\d_icons_buttons_other.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\d_icons_buttons_x.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\default.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\email-t1-bg.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\hotbar_promo.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\icons2.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\keywords_idx.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\keywords_sdf.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\layout.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\linkpathlegal.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\progress.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\s_icons_buttons.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\samplegroups2.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\t2_bg.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\top7.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel\Application Data\Hotbar\v3.0\Hotbar\static\DownLoad\tsd_bg.xip -> Adware.HotBar : Cleaned with backup (quarantined). C:\WINDOWS\SYSTEM32\mvisip.dll -> Adware.Look2Me : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Local Settings\Temp\temp.fr5D78 -> Adware.PurityScan : Cleaned with backup (quarantined). C:\WINDOWS\SYSTEM32\msdtc.dll -> Adware.PurityScan : Cleaned with backup (quarantined). C:\Program Files\DAEMON Tools\SetupDTSB.exe -> Adware.SaveNow : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\SAISetup.exe -> Adware.Zango : Cleaned with backup (quarantined). C:\Program Files\Аdobe\ati2evxx.exe -> Downloader.PurityScan.co : Cleaned with backup (quarantined). C:\WINDOWS\Temp\!update.exe -> Downloader.PurityScan.co : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Local Settings\Temporary Internet Files\Content.IE5\CTYN49IZ\popup[1].htm -> Hijacker.Agent.a : Cleaned with backup (quarantined). :mozilla.18:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@2o7[2].txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@microsoftwga.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@newlinecinema.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@newsinteractive.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@partygaming.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@paypal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@webmd.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055090.TXT -> TrackingCookie.2o7 : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055091.TXT -> TrackingCookie.2o7 : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055110.TXT -> TrackingCookie.2o7 : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055111.TXT -> TrackingCookie.2o7 : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Cookies\savannah@aavalue[1].txt -> TrackingCookie.Aavalue : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Cookies\[removed][1].txt -> TrackingCookie.Aavalue : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@adbrite[1].txt -> TrackingCookie.Adbrite : Cleaned with backup (quarantined). :mozilla.217:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Addynamix : Cleaned with backup (quarantined). :mozilla.92:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Addynamix : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Addynamix : Cleaned with backup (quarantined). :mozilla.119:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Admarketplace : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\rachel@admarketplace[1].txt -> TrackingCookie.Admarketplace : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Local Settings\Temp\Cookies\rachel@admarketplace[1].txt -> TrackingCookie.Admarketplace : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@admarketplace[1].txt -> TrackingCookie.Admarketplace : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Cookies\[removed][1].txt -> TrackingCookie.Admarketplace : Cleaned with backup (quarantined). C:\Documents and Settings\Shane.MAURER-BLODGETT\Cookies\shane@admarketplace[2].txt -> TrackingCookie.Admarketplace : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@adrevolver[2].txt -> TrackingCookie.Adrevolver : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Adrevolver : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055285.TXT -> TrackingCookie.Adrevolver : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055286.TXT -> TrackingCookie.Adrevolver : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055292.TXT -> TrackingCookie.Adrevolver : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055297.TXT -> TrackingCookie.Adrevolver : Cleaned with backup (quarantined). :mozilla.146:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Adserver : Cleaned with backup (quarantined). :mozilla.147:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Adserver : Cleaned with backup (quarantined). :mozilla.193:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Adserver : Cleaned with backup (quarantined). :mozilla.194:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Adserver : Cleaned with backup (quarantined). :mozilla.196:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Adserver : Cleaned with backup (quarantined). :mozilla.24:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.25:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.26:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.27:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.28:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.29:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.30:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.31:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.32:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.33:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.34:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.35:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.36:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.37:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.38:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.39:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.40:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.41:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.42:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.43:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.44:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.45:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.46:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.47:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.48:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.49:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.50:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.51:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.52:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.53:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.53:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.54:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.54:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.55:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.55:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.56:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.56:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.57:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.57:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.58:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.58:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.59:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.59:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.60:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.60:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.61:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.61:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.62:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.62:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.63:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.63:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.64:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.64:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.65:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.65:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.66:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.66:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.67:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.67:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.68:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.68:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.69:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.69:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined).
:mozilla.6:C:\Documents and Settings\Savannah.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\9u9k7jym.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.70:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.70:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.71:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.71:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.72:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.72:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.73:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.73:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.74:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.75:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.76:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.77:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.78:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.78:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Advertising : Error during cleaning. :mozilla.78:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Advertising : Error during cleaning. :mozilla.78:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Advertising : Error during cleaning. :mozilla.78:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Advertising : Error during cleaning. :mozilla.79:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Advertising : Error during cleaning. :mozilla.79:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Advertising : Error during cleaning. :mozilla.79:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Advertising : Error during cleaning. :mozilla.79:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Advertising : Error during cleaning. :mozilla.7:C:\Documents and Settings\Savannah.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\9u9k7jym.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.80:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Advertising : Error during cleaning. :mozilla.80:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Advertising : Error during cleaning. :mozilla.80:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Advertising : Error during cleaning. :mozilla.80:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Advertising : Error during cleaning. :mozilla.81:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Advertising : Error during cleaning. :mozilla.81:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Advertising : Error during cleaning. :mozilla.81:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Advertising : Error during cleaning. :mozilla.81:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Advertising : Error during cleaning. :mozilla.8:C:\Documents and Settings\Savannah.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\9u9k7jym.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.9:C:\Documents and Settings\Savannah.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\9u9k7jym.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Advertisingcom.zip/[removed][2].txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Advertisingcom36.zip/shane@advertising[2].txt -> TrackingCookie.Advertising : Cleaned with backup (quarantined). :mozilla.14:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Atdmt : Error during cleaning. :mozilla.14:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Atdmt : Error during cleaning. :mozilla.14:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Atdmt : Error during cleaning. :mozilla.14:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Atdmt : Error during cleaning. :mozilla.8:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Atdmt : Cleaned with backup (quarantined). :mozilla.8:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Atdmt : Cleaned with backup (quarantined). :mozilla.49:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Bfast : Error during cleaning. :mozilla.49:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Bfast : Error during cleaning. :mozilla.49:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Bfast : Error during cleaning. :mozilla.49:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Bfast : Error during cleaning. :mozilla.59:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Bluestreak : Error during cleaning. :mozilla.59:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Bluestreak : Error during cleaning. :mozilla.59:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Bluestreak : Error during cleaning. :mozilla.59:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Bluestreak : Error during cleaning. C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@bluestreak[1].txt -> TrackingCookie.Bluestreak : Cleaned with backup (quarantined). :mozilla.204:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Bridgetrack : Cleaned with backup (quarantined). :mozilla.205:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Bridgetrack : Cleaned with backup (quarantined). :mozilla.207:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Bridgetrack : Cleaned with backup (quarantined). :mozilla.208:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Bridgetrack : Cleaned with backup (quarantined). :mozilla.104:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\yyps66ai.Default User\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned with backup (quarantined). :mozilla.177:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Burstbeacon : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Burstbeacon : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Burstbeacon : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\[removed][3].txt -> TrackingCookie.Burstbeacon : Cleaned with backup (quarantined). :mozilla.100:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined). :mozilla.101:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined). :mozilla.105:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\yyps66ai.Default User\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined). :mozilla.115:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined). :mozilla.116:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined). :mozilla.117:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined). :mozilla.21:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\yyps66ai.Default User\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\rachel@burstnet[1].txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Local Settings\Temp\Cookies\rachel@burstnet[2].txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Local Settings\Temp\Cookies\[removed][1].txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@burstnet[2].txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@burstnet[3].txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Cookies\savannah@burstnet[2].txt -> TrackingCookie.Burstnet : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@casalemedia[2].txt -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055208.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055209.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055210.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055212.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055222.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055223.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055224.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055239.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055240.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055241.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055257.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055258.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055259.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055262.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055263.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055264.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055268.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055269.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055270.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055272.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055274.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055275.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055299.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055300.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055301.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055312.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055313.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055314.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055318.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055319.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055320.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055329.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055331.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055332.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055343.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055344.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055345.TXT -> TrackingCookie.Casalemedia : Cleaned with backup (quarantined). :mozilla.10:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Centrport : Error during cleaning. :mozilla.10:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Centrport : Error during cleaning. :mozilla.10:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Centrport : Error during cleaning. :mozilla.10:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Centrport : Error during cleaning. :mozilla.8:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Centrport : Error during cleaning. :mozilla.8:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Centrport : Error during cleaning. :mozilla.8:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Centrport : Error during cleaning. :mozilla.8:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Centrport : Error during cleaning. :mozilla.9:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Centrport : Error during cleaning. :mozilla.9:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Centrport : Error during cleaning. :mozilla.9:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Centrport : Error during cleaning. :mozilla.9:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Centrport : Error during cleaning. C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\rachel@com[1].txt -> TrackingCookie.Com : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Com : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Local Settings\Temp\Cookies\rachel@com[1].txt -> TrackingCookie.Com : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@com[1].txt -> TrackingCookie.Com : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Cookies\savannah@com[2].txt -> TrackingCookie.Com : Cleaned with backup (quarantined). C:\Documents and Settings\Shane.MAURER-BLODGETT\Cookies\shane@com[2].txt -> TrackingCookie.Com : Cleaned with backup (quarantined). :mozilla.136:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Coremetrics : Cleaned with backup (quarantined). :mozilla.79:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Coremetrics : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\rachel@cpvfeed[1].txt -> TrackingCookie.Cpvfeed : Cleaned with backup (quarantined). :mozilla.13:C:\Documents and Settings\Savannah.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\9u9k7jym.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup (quarantined). :mozilla.16:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Doubleclick : Cleaned with backup (quarantined). :mozilla.17:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Doubleclick : Cleaned with backup (quarantined). :mozilla.6:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Doubleclick : Error during cleaning. :mozilla.6:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Doubleclick : Error during cleaning. :mozilla.6:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Doubleclick : Error during cleaning. :mozilla.6:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Doubleclick : Error during cleaning. C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Enhance : Cleaned with backup (quarantined). :mozilla.158:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). :mozilla.183:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined).
C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Local Settings\Temp\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Local Settings\Temp\Cookies\[removed][2].txt -> TrackingCookie.Esomniture : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Euroclick : Cleaned with backup (quarantined). :mozilla.105:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.106:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.107:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.108:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.109:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.10:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\yyps66ai.Default User\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.110:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.11:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\yyps66ai.Default User\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.12:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\yyps66ai.Default User\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.13:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\yyps66ai.Default User\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.37:C:\Documents and Settings\Rachel\Application Data\Mozilla\Profiles\default\c1b828k1.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.38:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.38:C:\Documents and Settings\Rachel\Application Data\Mozilla\Profiles\default\c1b828k1.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.39:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.39:C:\Documents and Settings\Rachel\Application Data\Mozilla\Profiles\default\c1b828k1.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.40:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.40:C:\Documents and Settings\Rachel\Application Data\Mozilla\Profiles\default\c1b828k1.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.41:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.41:C:\Documents and Settings\Rachel\Application Data\Mozilla\Profiles\default\c1b828k1.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.42:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.42:C:\Documents and Settings\Rachel\Application Data\Mozilla\Profiles\default\c1b828k1.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.43:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.43:C:\Documents and Settings\Rachel\Application Data\Mozilla\Profiles\default\c1b828k1.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.44:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.45:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.52:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.52:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.52:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.52:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.53:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.53:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.53:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.53:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.54:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.54:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.54:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.54:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.55:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.55:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.55:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.55:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.56:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.56:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.56:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.56:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.57:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.57:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.57:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.57:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.58:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.58:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.58:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.58:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Falkag : Error during cleaning. :mozilla.9:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\yyps66ai.Default User\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup (quarantined). :mozilla.191:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Fastclick : Cleaned with backup (quarantined). :mozilla.192:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Fastclick : Cleaned with backup (quarantined). :mozilla.195:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Fastclick : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Goclick : Cleaned with backup (quarantined). :mozilla.167:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Hitbox : Cleaned with backup (quarantined). :mozilla.60:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning. :mozilla.60:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning. :mozilla.60:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning. :mozilla.60:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning. :mozilla.61:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning. :mozilla.61:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning. :mozilla.61:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning. :mozilla.61:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning. :mozilla.62:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning. :mozilla.62:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning. :mozilla.62:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning. :mozilla.62:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning. :mozilla.73:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning. :mozilla.73:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning. :mozilla.73:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning. :mozilla.73:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning. :mozilla.28:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Linksynergy : Error during cleaning. :mozilla.28:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Linksynergy : Error during cleaning. :mozilla.28:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Linksynergy : Error during cleaning. :mozilla.28:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Linksynergy : Error during cleaning. :mozilla.29:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Linksynergy : Error during cleaning. :mozilla.29:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Linksynergy : Error during cleaning. :mozilla.29:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Linksynergy : Error during cleaning. :mozilla.29:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Linksynergy : Error during cleaning. :mozilla.30:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Linksynergy : Error during cleaning. :mozilla.30:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Linksynergy : Error during cleaning. :mozilla.30:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Linksynergy : Error during cleaning. :mozilla.30:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Linksynergy : Error during cleaning. C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Liveperson : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Liveperson : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Liveperson : Cleaned with backup (quarantined). :mozilla.209:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Masterstats : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Masterstats : Cleaned with backup (quarantined). :mozilla.12:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Mediaplex : Cleaned with backup (quarantined). :mozilla.14:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Mediaplex : Cleaned with backup (quarantined). :mozilla.22:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Mediaplex : Error during cleaning. :mozilla.22:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Mediaplex : Error during cleaning. :mozilla.22:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Mediaplex : Error during cleaning. :mozilla.22:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Mediaplex : Error during cleaning. :mozilla.23:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Mediaplex : Error during cleaning. :mozilla.23:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Mediaplex : Error during cleaning. :mozilla.23:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Mediaplex : Error during cleaning. :mozilla.23:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Mediaplex : Error during cleaning. :mozilla.6:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Mediaplex : Cleaned with backup (quarantined). :mozilla.7:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Mediaplex : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Myaffiliateprogram : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Overture : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Overture : Cleaned with backup (quarantined). :mozilla.14:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined). :mozilla.15:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined). :mozilla.15:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Pointroll : Error during cleaning. :mozilla.15:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Pointroll : Error during cleaning. :mozilla.15:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Pointroll : Error during cleaning. :mozilla.15:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Pointroll : Error during cleaning. :mozilla.16:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined). :mozilla.16:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Pointroll : Error during cleaning. :mozilla.16:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Pointroll : Error during cleaning. :mozilla.16:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Pointroll : Error during cleaning. :mozilla.16:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Pointroll : Error during cleaning. :mozilla.17:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined). :mozilla.17:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Pointroll : Error during cleaning. :mozilla.17:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Pointroll : Error during cleaning. :mozilla.17:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Pointroll : Error during cleaning. :mozilla.17:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Pointroll : Error during cleaning. :mozilla.18:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined). :mozilla.18:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined). :mozilla.19:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined). :mozilla.19:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined). :mozilla.20:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined). :mozilla.21:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined). :mozilla.22:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined). :mozilla.6:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined). :mozilla.7:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined). :mozilla.8:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined). :mozilla.9:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup (quarantined). :mozilla.69:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Qksrv : Error during cleaning. :mozilla.69:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Qksrv : Error during cleaning. :mozilla.69:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Qksrv : Error during cleaning. :mozilla.69:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Qksrv : Error during cleaning. :mozilla.22:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined). :mozilla.23:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined). :mozilla.23:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined). :mozilla.24:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined). :mozilla.24:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined). :mozilla.7:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Questionmarket : Error during cleaning. :mozilla.7:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Questionmarket : Error during cleaning. :mozilla.7:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Questionmarket : Error during cleaning. :mozilla.7:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Questionmarket : Error during cleaning. :mozilla.98:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined). :mozilla.99:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@questionmarket[1].txt -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055197.TXT -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055198.TXT -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055225.TXT -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055226.TXT -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055288.TXT -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055289.TXT -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055302.TXT -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055303.TXT -> TrackingCookie.Questionmarket : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Reliablestats : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Reliablestats : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Cookies\[removed][2].txt -> TrackingCookie.Reliablestats : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@edge.ru4[1].txt -> TrackingCookie.Ru4 : Cleaned with backup (quarantined). :mozilla.126:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined). :mozilla.127:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined). :mozilla.128:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined). :mozilla.129:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined). :mozilla.130:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Serving-sys : Cleaned with backup (quarantined). :mozilla.148:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Specificclick : Cleaned with backup (quarantined). :mozilla.149:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Specificclick : Cleaned with backup (quarantined). :mozilla.150:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Specificclick : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Specificclick : Cleaned with backup (quarantined). :mozilla.76:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Specificpop : Error during cleaning. :mozilla.76:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Specificpop : Error during cleaning. :mozilla.76:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Specificpop : Error during cleaning. :mozilla.76:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Specificpop : Error during cleaning. C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Starware : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Starware : Cleaned with backup (quarantined). :mozilla.83:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\rachel@statcounter[1].txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@statcounter[2].txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined). C:\Documents and Settings\Shane.MAURER-BLODGETT\Cookies\shane@statcounter[1].txt -> TrackingCookie.Statcounter : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Tacoda : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Tacoda : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\rachel@tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Tacoda : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Cookies\[removed][1].txt -> TrackingCookie.Tacoda : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Cookies\savannah@tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned with backup (quarantined). :mozilla.110:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Targetnet : Cleaned with backup (quarantined). :mozilla.111:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Targetnet : Cleaned with backup (quarantined). :mozilla.112:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Targetnet : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\rachel@login.tracking101[2].txt -> TrackingCookie.Tracking101 : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@login.tracking101[2].txt -> TrackingCookie.Tracking101 : Cleaned with backup (quarantined). :mozilla.85:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined). :mozilla.86:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined). :mozilla.87:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined). :mozilla.88:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined). :mozilla.89:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined). :mozilla.90:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined). :mozilla.91:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@trafficmp[2].txt -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055246.TXT -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055247.TXT -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055248.TXT -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055249.TXT -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055250.TXT -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055251.TXT -> TrackingCookie.Trafficmp : Cleaned with backup (quarantined). :mozilla.23:C:\Documents and Settings\Savannah.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\9u9k7jym.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup (quarantined). :mozilla.24:C:\Documents and Settings\Savannah.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\9u9k7jym.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup (quarantined). :mozilla.35:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup (quarantined). :mozilla.70:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla2.zip/cookies.txt -> TrackingCookie.Tribalfusion : Error during cleaning. :mozilla.70:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla4.zip/cookies.txt -> TrackingCookie.Tribalfusion : Error during cleaning. :mozilla.70:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla5.zip/cookies.txt -> TrackingCookie.Tribalfusion : Error during cleaning. :mozilla.70:C:\Program Files\Spybot - Search & Destroy 1.1\Recovery\Mozilla6.zip/cookies.txt -> TrackingCookie.Tribalfusion : Error during cleaning. C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@tribalfusion[2].txt -> TrackingCookie.Tribalfusion : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055189.TXT -> TrackingCookie.Tribalfusion : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055196.TXT -> TrackingCookie.Tribalfusion : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055207.TXT -> TrackingCookie.Tribalfusion : Cleaned with backup (quarantined). :mozilla.112:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Valuead : Cleaned with backup (quarantined). :mozilla.113:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Valuead : Cleaned with backup (quarantined). :mozilla.114:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Valuead : Cleaned with backup (quarantined). :mozilla.115:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Valuead : Cleaned with backup (quarantined). :mozilla.47:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Valuead : Cleaned with backup (quarantined). :mozilla.48:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Valuead : Cleaned with backup (quarantined). :mozilla.49:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Valuead : Cleaned with backup (quarantined). :mozilla.50:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Valuead : Cleaned with backup (quarantined). :mozilla.137:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Webtrendslive : Cleaned with backup (quarantined). :mozilla.79:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). :mozilla.80:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). :mozilla.81:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). :mozilla.82:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). :mozilla.84:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\6hl44ywk.default\cookiesnew.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). :mozilla.93:C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\yyps66ai.Default User\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). C:\Documents and Settings\Rachel.MAURER-BLODGETT\Cookies\rachel@yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\[removed][1].txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Cookies\savannah@yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Cookies\[removed][2].txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). C:\Documents and Settings\Shane.MAURER-BLODGETT\Cookies\[removed][2].txt -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055170.TXT -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055171.TXT -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055172.TXT -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055173.TXT -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055174.TXT -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055186.TXT -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055337.TXT -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055338.TXT -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055339.TXT -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055363.TXT -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055364.TXT -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055365.TXT -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). C:\RECYCLER\NPROTECT\00055366.TXT -> TrackingCookie.Yieldmanager : Cleaned with backup (quarantined). :mozilla.93:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Zedo : Cleaned with backup (quarantined). :mozilla.94:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Zedo : Cleaned with backup (quarantined). :mozilla.95:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Zedo : Cleaned with backup (quarantined). :mozilla.96:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Zedo : Cleaned with backup (quarantined). :mozilla.97:C:\Documents and Settings\Shane.MAURER-BLODGETT\Application Data\Mozilla\Firefox\Profiles\s5hs5dd1.default\cookiesnew.txt -> TrackingCookie.Zedo : Cleaned with backup (quarantined). C:\WINDOWS\Downloaded Program Files\CONFLICT.1\gsa_1435.exe -> Trojan.Dialer.cj : Cleaned with backup (quarantined). C:\WINDOWS\Downloaded Program Files\gsa_1435.exe -> Trojan.Dialer.cj : Cleaned with backup (quarantined). ::Report end
rachelfran :D

Thats the biggest Ewido Report I have seen in the last two years :( Nothing in there you want to keep so open Ewido and go to the Quarantine folder and remove it all.

After you run ComboFix and post the log, you had a lot of entries for Hotbar in your Ewido log, lets make sure its all gone, you can download the removal tool from Symantec Here


Ken :D
what's the combofix supposed to look like when it's running i got a blue box that says performing a scan of your computer then under that it says Look2Me Orphaned entries found!!! then i just get a blinking cursor - but can't tell if it's working on something or what… do i just leave it alone and it's scanning?
Look2Me <- This one of the infections you have on your system, if the program hangs, shut it down, reboot and run it again, it will remove the bad files for this infection, be sure to post the report along with a new HJT log.

Ken :D
thank you so much for sticking with me and with what i guess is a nightmare of a computer! anyway - here is the combofix : Rachel - 06-09-15 11:41:45.82 Service Pack 2 ComboFix 06.09.14 - Running from: C:\Documents and Settings\Rachel.MAURER-BLODGETT\Desktop ((((((((((((((((((((((((((((((((((((((((((((( Look2Me's Log )))))))))))))))))))))))))))))))))))))))))))))))))) REGISTRY ENTRIES REMOVED: * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * * Granting sedebugprivilege to Administrators … successful (((((((((((((((((((((((((((((((((((((((((((( Other Deletions ))))))))))))))))))))))))))))))))))))))))))))))))) ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ Purity ~ ~ ~ ~ ~ ~ ~ ~~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ ~ Folders Quarantined: C:\QooBox\Purity\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\RACLE~1 C:\QooBox\Purity\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\RACLE~2 C:\QooBox\Purity\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\SCURIT~1 C:\QooBox\Purity\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\TSKS~1 C:\QooBox\Purity\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\WNSXS~1 C:\QooBox\Purity\Documents and Settings\Rachel.MAURER-BLODGETT\My Documents\FNTS~1 C:\QooBox\Purity\Documents and Settings\Rachel.MAURER-BLODGETT\My Documents\FNTS~2 C:\QooBox\Purity\Documents and Settings\Rachel.MAURER-BLODGETT\My Documents\MANTEC~1 C:\QooBox\Purity\Documents and Settings\Rachel.MAURER-BLODGETT\My Documents\RACLE~1 C:\QooBox\Purity\Documents and Settings\Rachel.MAURER-BLODGETT\My Documents\SKS~1 C:\QooBox\Purity\Documents and Settings\Rachel.MAURER-BLODGETT\My Documents\SMANTE~1 C:\QooBox\Purity\Documents and Settings\Rachel.MAURER-BLODGETT\My Documents\WNSXS~1 C:\QooBox\Purity\Documents and Settings\Rachel.MAURER-BLODGETT\My Documents\YMANTE~1 C:\QooBox\Purity\Program Files\CURITY~1 C:\QooBox\Purity\Program Files\DOBE~1 C:\QooBox\Purity\Program Files\ICROSO~1.NET C:\QooBox\Purity\Program Files\MANTEC~1 C:\QooBox\Purity\Program Files\MBOLS~1 C:\QooBox\Purity\Program Files\MCROSO~1 C:\QooBox\Purity\Program Files\SMBOLS~1 C:\QooBox\Purity\Program Files\SSTEM~1 C:\QooBox\Purity\Program Files\STEM32~1 C:\QooBox\Purity\Program Files\TSKS~1 C:\QooBox\Purity\Program Files\Common Files\CROSOF~1 C:\QooBox\Purity\Program Files\Common Files\CURITY~1 C:\QooBox\Purity\Program Files\Common Files\FNTS~1 C:\QooBox\Purity\Program Files\Common Files\FNTS~2 C:\QooBox\Purity\Program Files\Common Files\ICROSO~1 C:\QooBox\Purity\Program Files\Common Files\ICROSO~1.NET C:\QooBox\Purity\Program Files\Common Files\SSEMBL~1 C:\QooBox\Purity\Program Files\Common Files\STEM32~1 C:\QooBox\Purity\Program Files\DOBE~1\?dobe C:\QooBox\Purity\Program Files\DOBE~1\?dobe\ctxad-470.0000 C:\QooBox\Purity\Program Files\DOBE~1\?dobe\ctxad-470.0001 C:\QooBox\Purity\Program Files\DOBE~1\?dobe\ctxad-470.0002 C:\QooBox\Purity\Program Files\DOBE~1\?dobe\ctxad-470.0003 C:\QooBox\Purity\Program Files\MBOLS~1\msdtc.exe C:\QooBox\Purity\WINDOWS\ICROSO~1 C:\QooBox\Purity\WINDOWS\PPPATC~1 C:\QooBox\Purity\WINDOWS\SMANTE~1 C:\QooBox\Purity\WINDOWS\STEM32~1 C:\QooBox\Purity\WINDOWS\TSKS~1 C:\QooBox\Purity\WINDOWS\YMANTE~1 C:\QooBox\Purity\WINDOWS\SYSTEM32\CROSOF~1 C:\QooBox\Purity\WINDOWS\SYSTEM32\CURITY~1 C:\QooBox\Purity\WINDOWS\SYSTEM32\FNTS~1 C:\QooBox\Purity\WINDOWS\SYSTEM32\MBOLS~1 C:\QooBox\Purity\WINDOWS\SYSTEM32\MCROSO~1.NET C:\QooBox\Purity\WINDOWS\SYSTEM32\PPATCH~1 C:\QooBox\Purity\WINDOWS\SYSTEM32\RACLE~1 C:\QooBox\Purity\WINDOWS\SYSTEM32\SEMBLY~1 C:\QooBox\Purity\WINDOWS\SYSTEM32\SKS~1 C:\QooBox\Purity\WINDOWS\SYSTEM32\STEM~1 C:\QooBox\Purity\WINDOWS\SYSTEM32\YMANTE~1 C:\QooBox\Purity\WINDOWS\SYSTEM32\CURITY~1\attrib.exe C:\QooBox\Purity\WINDOWS\SYSTEM32\CURITY~1\CURITY~1 C:\QooBox\Purity\WINDOWS\SYSTEM32\CURITY~1\CURITY~1\ctxad-479.0000 C:\QooBox\Purity\WINDOWS\SYSTEM32\CURITY~1\CURITY~1\ctxad-479.0001 C:\QooBox\Purity\WINDOWS\SYSTEM32\CURITY~1\CURITY~1\ctxad-479.0002 C:\QooBox\Purity\WINDOWS\SYSTEM32\CURITY~1\CURITY~1\ctxad-479.0003 ((((((((((((((((((((((((((((((( Files Created from 2006-08-14 to 2006-09-14 )))))))))))))))))))))))))))))))))) 2006-09-09 11:47 243,680 –a—— C:\WINDOWS\UNINST16.EXE 2006-09-05 10:05 127,208 –a—— C:\WINDOWS\SYSTEM32\mucltui.dll 2006-08-27 11:44 729,088 –a—— C:\NPSWF32.dll 2006-08-26 21:03 83,968 –a—— C:\WINDOWS\SYSTEM32\Skbase40.dll 2006-08-26 21:03 8,704 –a—— C:\WINDOWS\SYSTEM32\vidccleaner.exe 2006-08-26 21:03 589,824 –a—— C:\WINDOWS\SYSTEM32\xvidcore.dll 2006-08-26 21:03 217,088 –a—— C:\WINDOWS\SYSTEM32\skjpeg40.dll 2006-08-26 21:03 180,224 –a—— C:\WINDOWS\SYSTEM32\xvidvfw.dll 2006-08-18 15:53 2 –a—— C:\WINDOWS\SYSTEM32\wtssvit.exe (((((((((((((((((((((((((((((((((((((((((((((((( Find3M Report ))))))))))))))))))))))))))))))))))))))))))))))))))))) 2006-09-15 11:49 ——– d——– C:\Program Files\Common Files 2006-09-15 11:29 ——– d——– C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\uTorrent 2006-09-14 22:57 2324 –a—— C:\WINDOWS\swn32reg.dll 2006-09-14 17:07 ——– d——– C:\Program Files\Hijackthis 2006-09-14 16:38 ——– d——– C:\Program Files\DAEMON Tools 2006-09-14 13:18 ——– d——– C:\Program Files\ewido anti-spyware 4.0 2006-09-10 16:04 72408 –a—— C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\GDIPFONTCACHEV1.DAT 2006-09-02 18:41 ——– d——– C:\Program Files\LimeWire 2006-09-01 14:55 ——– d——– C:\Program Files\Yahoo! 2006-09-01 14:54 ——– d——– C:\Program Files\Common Files\Scanner 2006-08-30 00:54 ——– d——– C:\Program Files\AWS 2006-08-27 23:56 ——– d——– C:\Program Files\Windows Defender 2006-08-27 23:56 ——– d——– C:\Program Files\Common Files\Microsoft Shared 2006-08-27 22:43 ——– d——– C:\Program Files\Lavasoft 2006-08-27 22:43 ——– d——– C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Lavasoft 2006-08-27 00:29 ——– d——– C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Macromedia 2006-08-26 22:14 ——– d——– C:\Program Files\Google Video 2006-08-26 22:07 ——– d——– C:\Program Files\IrfanView 2006-08-26 21:03 ——– d–h—– C:\Program Files\InstallShield Installation Information 2006-08-26 21:03 ——– d——– C:\Program Files\Samsung 2006-08-25 17:06 ——– d——– C:\Program Files\Common Files\InstallShield 2006-08-22 08:55 ——– d——– C:\Program Files\Virtools Web Player 3.5 2006-08-21 08:21 16896 –a—— C:\WINDOWS\SYSTEM32\fltlib.dll 2006-08-21 05:14 23040 –a—— C:\WINDOWS\SYSTEM32\fltmc.exe 2006-08-21 05:14 128896 ——— C:\WINDOWS\SYSTEM32\DRIVERS\fltmgr.sys 2006-08-19 20:13 0 –a—— C:\WINDOWS\ssprb32wl.dll 2006-08-19 20:13 0 –a—— C:\WINDOWS\sspra32wl.dll 2006-08-17 12:36 ——– d——– C:\Program Files\eFax Messenger Plus 3.3 2006-08-15 22:24 ——– d—s—- C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Microsoft 2006-08-11 13:27 ——– d——– C:\Program Files\Internet Explorer 2006-08-10 07:32 ——– d——– C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\Aim 2006-08-09 12:17 ——– d——– C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\LimeWire 2006-08-07 09:52 777472 –a—— C:\WINDOWS\SYSTEM32\DRIVERS\avg7core.sys 2006-08-07 09:52 27904 –a—— C:\WINDOWS\SYSTEM32\DRIVERS\avg7rsxp.sys 2006-08-06 15:39 92176 –a—— C:\WINDOWS\Johnny Depp Screen Saver Uninstaller.exe 2006-08-01 00:26 729088 –a—— C:\WINDOWS\iun6002.exe 2006-07-27 09:24 679424 –a—— C:\WINDOWS\SYSTEM32\inetcomm.dll 2006-07-25 14:51 43520 –a—— C:\WINDOWS\SYSTEM32\CmdLineExt03.dll 2006-07-25 14:33 ——– d——– C:\Program Files\THQ 2006-07-23 15:55 ——– d——– C:\Program Files\SpyTrackerPro 2006-07-21 04:24 72704 –a—— C:\WINDOWS\SYSTEM32\hlink.dll 2006-07-20 12:24 14872 –a—— C:\WINDOWS\SYSTEM32\SBBD.exe 2006-07-19 03:59 354 –a—— C:\PPCleanDeleteAtReboot.bat 2006-07-07 17:47 3911680 –a—— C:\WINDOWS\SSPro.exe 2006-07-06 11:59 667648 –a—— C:\WINDOWS\svcwinra.exe 2006-07-06 11:59 348160 –a—— C:\WINDOWS\resfilter32.exe 2006-07-06 10:40 34304 –a—— C:\WINDOWS\View32Utils.dll 2006-07-06 10:35 24576 –a—— C:\WINDOWS\survsplash.exe 2006-07-06 10:23 20480 –a—— C:\WINDOWS\sspbpalert.exe 2006-07-06 09:59 102400 –a—— C:\WINDOWS\survservices.dll 2006-07-06 09:11 98304 –a—— C:\WINDOWS\perfsysdeam.dll 2006-06-22 01:06 69120 –a—— C:\WINDOWS\SYSTEM32\ciodm.dll 2006-06-22 01:06 1435648 –a—— C:\WINDOWS\SYSTEM32\query.dll (((((((((((((((((((((((((((((((((((((((((( Reg Loading Points )))))))))))))))))))))))))))))))))))))))))))))))) *Note* empty entries are not shown [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "OfotoNow USB Detection"="C:\\WINDOWS\\System32\\RunDLL32.exe C:\\PROGRA~1\\Ofoto\\OfotoNow\\OFUSBS.DLL,WatchForConnection OfotoNow" "hButRPj6V"="cfgrov.exe" "Yahoo! Pager"="\"C:\\PROGRA~1\\Yahoo!\\MESSEN~1\\YAHOOM~1.EXE\" -quiet" "µTorrent"="\"C:\\Documents and Settings\\Savannah.MAURER-BLODGETT\\Desktop\\utorrent.exe\"" "Aim6"="\"C:\\Program Files\\Common Files\\AOL\\Launch\\AOLLaunch.exe\" /d locale=en-US ee://aol/imApp" "Anonymizer"="C:\\Program Files\\Anonymizer\\Anonymizer Software\\Anonymizer.exe -nogui" "Aida"="\"C:\\WINDOWS\\system32\\CURITY~1\\attrib.exe\" -vt ndrv" "Wtfqndfc"="C:\\Program Files\\??mbols\\msdtc.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "ATIModeChange"="Ati2mdxx.exe" "ATIPTA"="C:\\Program Files\\ATI Technologies\\ATI Control Panel\\atiptaxx.exe" "ccApp"="C:\\Program Files\\Common Files\\Symantec Shared\\ccApp.exe" "GhostStartTrayApp"="C:\\Program Files\\Norton SystemWorks\\Norton Ghost\\GhostStartTrayApp.exe" "AdaptecDirectCD"="\"C:\\Program Files\\Roxio\\Easy CD Creator 5\\DirectCD\\DirectCD.exe\"" "ViewMgr"="C:\\Program Files\\Viewpoint\\Viewpoint Manager\\ViewMgr_.exe" "SunJavaUpdateSched"="C:\\Program Files\\Java\\jre1.5.0_02\\bin\\jusched.exe" "TkBellExe"="\"C:\\Program Files\\Common Files\\Real\\Update_OB\\realsched.exe\" -osboot" "AVG7_CC"="C:\\PROGRA~1\\Grisoft\\AVGFRE~1\\avgcc.exe /STARTUP" "AVG7_EMC"="C:\\PROGRA~1\\Grisoft\\AVGFRE~1\\avgemc.exe" "CitiVAN"="C:\\Program Files\\Citi Virtual Account Numbers\\CitiVAN.exe /dontopenmycards" "SecureOnlineAccountNumbers"="C:\\Program Files\\Secure Online Account Numbers\\SOAN.exe /dontopenmycards" "DAEMON Tools"="\"C:\\Program Files\\DAEMON Tools\\daemon.exe\" -lang 1033" "HostManager"="C:\\Program Files\\Common Files\\AOL\\1148416296\\ee\\AOLSoftware.exe" "iTunesHelper"="\"C:\\Program Files\\iTunes\\iTunesHelper.exe\"" "QuickTime Task"="\"C:\\Program Files\\QuickTime\\qttask.exe\" -atboottime" "IPHSend"="C:\\Program Files\\Common Files\\AOL\\IPHSend\\IPHSend.exe" "Windows Defender"="\"C:\\Program Files\\Windows Defender\\MSASCui.exe\" -hide" "tcrinit"="C:\\WINDOWS\\svcwinra.exe" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\O ptionalComponents] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\O ptionalComponents\IMAIL] "Installed"="1" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\O ptionalComponents\MAPI] "Installed"="1" "NoChange"="1" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\O ptionalComponents\MSFS] "Installed"="1" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Desktop\Components] "DeskHtmlVersion"=dword:00000110 "DeskHtmlMinorVersion"=dword:00000005 "Settings"=dword:00000001 "GeneralFlags"=dword:00000001 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Desktop\Components\0] "Source"="About:Home" "SubscribedURL"="About:Home" "FriendlyName"="My Current Home Page" "Flags"=dword:00000002 "Position"=hex:2c,00,00,00,a0,00,00,00,00,00,00,00,80,02,00,00,3c,02,00,00, 00,\ 00,00,00,01,00,00,00,01,00,00,00,01,00,00,00,00,00,00,00,00,00,00,00 "CurrentState"=hex:04,00,00,40 "OriginalStateInfo"=hex:18,00,00,00,ff,ff,00,00,ff,ff,00,00,ff,ff,ff,ff,ff,ff,\ ff,ff,04,00,00,00 "RestoredStateInfo"=hex:18,00,00,00,6a,02,00,00,23,00,00,00,a4,00,00,00,9a ,00,\ 00,00,01,00,00,00 [HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Hhdig"="C:\\WINDOWS\\system32\\TI2EVX~1.EXE" "Aida"="\"C:\\PROGRA~1\\DOBE~1\\ati2evxx.exe\" -vt ndrv" [HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Run] "Hhdig"="C:\\WINDOWS\\system32\\TI2EVX~1.EXE" "Aida"="\"C:\\PROGRA~1\\DOBE~1\\ati2evxx.exe\" -vt ndrv" [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explor er\shellexecutehooks] "{AEB6717E-7E19-11d0-97EE-00C04FD91972}"="" "{091EB208-39DD-417D-A5DD-7E2C2D8FB9CB}"="Microsoft AntiMalware ShellExecuteHook" "{57B86673-276A-48B2-BAE7-C6DBB3020EB8}"="ewido anti-spyware 4.0" [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies \explorer] "NoDriveTypeAutoRun"=dword:00000091 [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies \explorer\Run] [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policie s\system] "dontdisplaylastusername"=dword:00000000 "legalnoticecaption"="" "legalnoticetext"="" "shutdownwithoutlogon"=dword:00000001 "undockwithoutlogon"=dword:00000001 [HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\polici es\explorer] "NoDriveTypeAutoRun"=dword:00000091 "CDRAutoRun"=dword:00000000 [HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\polici es\explorer\Run] [HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policie s\explorer] "NoDriveTypeAutoRun"=dword:00000091 "CDRAutoRun"=dword:00000000 [HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\policie s\explorer\Run] [HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\ShellSer viceObjectDelayLoad] "PostBootReminder"="{7849596a-48ea-486e-8937-a2a3009f31a9}" "CDBurn"="{fbeb8a05-beee-4442-804e-409d6c4515e9}" "WebCheck"="{E6FB5E20-DE35-11CF-9C87-00AA005127ED}" "SysTray"="{35CEC8A3-2BE6-11D2-8773-92E220524153}" HKEY_LOCAL_MACHINE\system\currentcontrolset\control\securityproviders securityproviders REG_SZ msapsspc.dll, schannel.dll, digest.dll, msnsspc.dll Contents of the 'Scheduled Tasks' folder C:\WINDOWS\tasks\MP Scheduled Scan.job Completion time: Fri 09/15/2006 11:55:44.53 ComboFix.txt ComboFix2.txt
this came from the fxhotbar - which shows no hotbar installed — Adware.Hotbar Removal Tool 1.0.5 C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\s?curity: (not scanned) C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\T?sks: (not scanned) C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\W?nSxS: (not scanned) C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\?dobe: (not scanned) C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\?racle: (not scanned) C:\Documents and Settings\Rachel.MAURER-BLODGETT\Application Data\?racle: (not scanned) C:\Documents and Settings\Rachel.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\JBBEWKYE\2-PAIR-BLACK-TRIPP-HOT-TOPIC-GOTH-PANTS-SIZE-9-NO-RESER_W0QQitemZ140019865680QQihZ004QQcategoryZ63863QQssPageNameZWDVWQQrdZ1QQcmdZViewItem[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Rachel.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\JBBEWKYE\4-pairTRIPP-PANTS-SIZE-9-HOT-TOPIC-GOTH-PUNK-NO-RESERVE_W0QQitemZ140019846867QQihZ004QQcategoryZ63863QQssPageNameZWDVWQQrdZ1QQcmdZViewItem[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Rachel.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\JBBEWKYE\tripp-9_Clothing-Shoes-Accessories_W0QQcatrefZC12QQfromZR9QQfromZR9QQfsooZ1QQfsopZ1QQfstypeZ1QQsacatZ11450QQsspagenameZSTRKQ3aMEFSRCHQ3aSRCH[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Rachel.MAURER-BLODGETT\My Documents\F?nts: (not scanned) C:\Documents and Settings\Rachel.MAURER-BLODGETT\My Documents\F?nts: (not scanned) C:\Documents and Settings\Rachel.MAURER-BLODGETT\My Documents\S?mantec: (not scanned) C:\Documents and Settings\Rachel.MAURER-BLODGETT\My Documents\W?nSxS: (not scanned) C:\Documents and Settings\Rachel.MAURER-BLODGETT\My Documents\?racle: (not scanned) C:\Documents and Settings\Rachel.MAURER-BLODGETT\My Documents\??sks: (not scanned) C:\Documents and Settings\Rachel.MAURER-BLODGETT\My Documents\?ymantec: (not scanned) C:\Documents and Settings\Rachel.MAURER-BLODGETT\My Documents\??mantec: (not scanned) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\09YZO56F\CA69WPW1.net%2Fs%2F2031855%2F8%2F&ad_type=text_image&image_size=468x60&feedback_link=on&cc=100&u_h=600&u_w=800&u_ah=566&u_aw=800&u_cd=32&u_tz=-240&u_his=27&u_java=true (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\09YZO56F\CAFQL09J.net%2Fs%2F2264425%2F2%2F&ad_type=text_image&image_size=468x60&feedback_link=on&cc=100&u_h=600&u_w=800&u_ah=566&u_aw=800&u_cd=32&u_tz=-240&u_his=8&u_java=true (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\09YZO56F\CAGH2BK5.net%2Fs%2F962586%2F2%2F&ad_type=text_image&image_size=468x60&feedback_link=on&cc=100&u_h=600&u_w=800&u_ah=566&u_aw=800&u_cd=32&u_tz=-240&u_his=11&u_java=true (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\09YZO56F\Network=ugo&size=300x250&adtype=over&affiliate=flashplayer&suba=flashplayer&channel=games&subchannel=flash&category=tic&PT=ct&CR=mi&pez=tic[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\09YZO56F\red[2].net&scx=800&scy=600&scc=32&wrd=1_compele,1_compele&sta=,,,1,,,,,,,0,5,0,24897,24487,14658,389,501&iid=153294&bid=304529&dat=;ord=09230892 (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\09YZO56F\Type%3dclick%26FlightID%3d51596%26AdID%3d80499%26TargetID%3d10134%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,202,212,552,557,596,638,[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\09YZO56F\Type%3dclick%26FlightID%3d51596%26AdID%3d80499%26TargetID%3d10134%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,202,212,552,557,596,638,[2].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\09YZO56F\Type%3dclick%26FlightID%3d51854%26AdID%3d80732%26TargetID%3d17693%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,197,212,557,596,638,708,[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\45Y7ODIB\CA4ZABUY.net%2Fs%2F2031855%2F6%2F&ad_type=text_image&image_size=468x60&feedback_link=on&cc=100&u_h=600&u_w=800&u_ah=566&u_aw=800&u_cd=32&u_tz=-240&u_his=25&u_java=true (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\45Y7ODIB\Network=ugo&size=300x250&adtype=over&affiliate=flashplayer&suba=flashplayer&channel=filmtv&subchannel=animation&category=tic&PT=hp&CR=mi&pez=tic[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\45Y7ODIB\Network=ugo&size=728x90&adtype=over&affiliate=flashplayer&suba=flashplayer&channel=games&subchannel=flash&category=tic&PT=ct&CR=mi&pez=tic[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\45Y7ODIB\Type%3dclick%26FlightID%3d51596%26AdID%3d80499%26TargetID%3d10134%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,202,212,552,557,596,638,[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\45Y7ODIB\Type%3dclick%26FlightID%3d51596%26AdID%3d80499%26TargetID%3d10134%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,202,212,552,557,596,638,[2].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\45Y7ODIB\Type%3dclick%26FlightID%3d51608%26AdID%3d80506%26TargetID%3d11450%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,202,212,552,557,596,638,[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\8DIJKD2Z\Type=click&FlightID=21444&AdID=36998&TargetID=6169&Segments=4,7,11,23,26,43,48,60,64,70,85,119,133,278,316,337,357,448,593,600,626,717,819,844,862,870,1035,1074,1407[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\8DIJKD2Z\Type=click&FlightID=22618&AdID=38767&TargetID=99&Segments=4,7,11,23,26,43,48,60,64,70,85,119,133,278,316,337,357,448,593,600,626,717,819,844,862,870,1035,1074,1407,1[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\BZ24GWEX\activity;src=920922;met=1;v=1;pid=11545463;aid=17903883;ko=0;cid=11014144;rid=11032040;rv=1;×tamp=1122422099092;eid1=2;ecn1=0;etm1=8;eid2=3;ecn2=0;etm2=3;&_dc_c[1].gif (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\BZ24GWEX\CAOLUBWT.net%2Fs%2F2037015%2F2%2F&ad_type=text_image&image_size=468x60&feedback_link=on&cc=100&u_h=600&u_w=800&u_ah=566&u_aw=800&u_cd=32&u_tz=-240&u_his=40&u_java=true (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\BZ24GWEX\Network=ugo&size=800x600&adtype=over&affiliate=flashplayer&suba=flashplayer&channel=filmtv&subchannel=animation&category=tic&PT=hp&CR=mi&pez=tic[1] (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\DZ8UH1SE\%2Eyieldmanager%2Ecom%2Fclick%2CAAAAAP4EAAATZAAAawcAAAAAAAAAAAoAAf8BEAEABALLDgAAZg8AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAP%2Ew40IAAAAA%2C%2C;rid=673;tid=1;ev=1;dt=1;ac=60;c=879; (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\DZ8UH1SE\activity;src=920922;met=1;v=1;pid=11545463;aid=17903883;ko=0;cid=11014144;rid=11032040;rv=1;×tamp=1122422085092;eid1=2;ecn1=1;etm1=6;eid2=3;ecn2=1;etm2=2;eid3=4[1].gif (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\DZ8UH1SE\activity;src=920922;met=1;v=1;pid=11545463;aid=17903883;ko=0;cid=11014144;rid=11032040;rv=1;×tamp=1122422155092;eid1=2;ecn1=0;etm1=38;&_dc_ck=try[1].gif (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\DZ8UH1SE\d%2Eyieldmanager%2Ecom%2Fclick%2CAAAAAP4EAAARlwAAawcAAAAAAAAAAP8AAP8BEAEABALLDgAAZg8AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAKHo40IAAAAA%2C%2C;rid=1190;tid=1;ev=1;dt=1;ac=60;c=424; (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\DZ8UH1SE\d%2Eyieldmanager%2Ecom%2Fclick%2CAAAAAPUEAAARlwAAawcAAAAAAAAAAA4ABf8DCwEABALLDgAAZg8AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAElG5kIAAAAA%2C%2C;rid=1190;tid=1;ev=1;dt=1;ac=60;c=424; (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\DZ8UH1SE\Type%3dclick%26FlightID%3d51596%26AdID%3d80499%26TargetID%3d10134%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,202,212,552,557,596,638,[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\H012L4N6\%2Eyieldmanager%2Ecom%2Fclick%2CAAAAAP0EAAATZAAAawcAAAAAAAAAAAoAA%2E8BEgEABALLDgAAZg8AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAPwB5EIAAAAA%2C%2C;rid=673;tid=1;ev=1;dt=1;ac=60;c=879; (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\H012L4N6\2Eyieldmanager%2Ecom%2Fclick%2CAAAAAP4EAAARlwAAawcAAAAAAAAAAAoAA%2E8BEgEABALLDgAAZg8AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAABcP5EIAAAAA%2C%2C;rid=1190;tid=1;ev=1;dt=1;ac=60;c=424; (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\H012L4N6\activity;src=920922;met=1;v=1;pid=11545463;aid=17903883;ko=0;cid=11014144;rid=11032040;rv=1;×tamp=1122422091092;eid1=2;ecn1=0;etm1=6;eid2=3;ecn2=0;etm2=1;&_dc_c[1].gif (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\H012L4N6\activity;src=920922;met=1;v=1;pid=11545463;aid=17903883;ko=0;cid=11014144;rid=11032040;rv=1;×tamp=1122422117092;eid1=2;ecn1=0;etm1=18;&_dc_ck=try[1].gif (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\H012L4N6\ad%2Eyieldmanager%2Ecom%2Fclick%2CAAAAAPUEAAATZAAAawcAAAAAAAAAAAkABP8BEgEABALLDgAAZg8AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAE0H5EIAAAAA%2C%2C;rid=673;tid=1;ev=1;dt=1;ac=60;c=879; (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\H012L4N6\d%2Eyieldmanager%2Ecom%2Fclick%2CAAAAAP4EAAARlwAAawcAAAAAAAAAAAkAAv8BEgEABALLDgAAZg8AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAJIH5EIAAAAA%2C%2C;rid=1190;tid=1;ev=1;dt=1;ac=60;c=424; (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\H012L4N6\Type%3dclick%26FlightID%3d51608%26AdID%3d80506%26TargetID%3d11450%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,202,212,552,557,596,638,[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\H012L4N6\yieldmanager%2Ecom%2Fclick%2CAAAAAP4EAAATZAAAawcAAAAAAAAAAP8AAP8BEAEABALLDgAAZg8AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAFnn40IAAAAA%2C%2C;rid=673;tid=1;ev=1;dt=1;ac=60;c=879;;nc=1 (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\IL6VA4VI\%2Eyieldmanager%2Ecom%2Fclick%2CAAAAAPUEAAATZAAAawcAAAAAAAAAAAIAB%2E8BEwEABALLDgAAZg8AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAABsQ5EIAAAAA%2C%2C;rid=673;tid=1;ev=1;dt=1;ac=60;c=879; (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\IL6VA4VI\2Eyieldmanager%2Ecom%2Fclick%2CAAAAAP4EAAAEZgAA4wcAAAAAAAAAAP8AAP8BEAEABALLDgAA%2EQ8AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAEPp40IAAAAA%2C%2C;rid=1158;tid=1;ev=1;dt=1;ac=60;c=590; (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\IL6VA4VI\activity;src=920922;met=1;v=1;pid=11545463;aid=17903883;ko=0;cid=11014144;rid=11032040;rv=1;×tamp=1122422199092;eid1=2;ecn1=0;etm1=44;&_dc_ck=try[1].gif (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\IL6VA4VI\ad%2Eyieldmanager%2Ecom%2Fclick%2CAAAAAAcFAAATZAAAawcAAAAAAAAAAAoAAv8BEQEABALLDgAAZg8AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAABL540IAAAAA%2C%2C;rid=673;tid=1;ev=1;dt=1;ac=60;c=879; (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\IL6VA4VI\ad%2Eyieldmanager%2Ecom%2Fclick%2CAAAAAP4EAAATZAAAawcAAAAAAAAAAAIABv8BEwEABALLDgAAZg8AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAPwP5EIAAAAA%2C%2C;rid=673;tid=1;ev=1;dt=1;ac=60;c=879; (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\IL6VA4VI\ad%2Eyieldmanager%2Ecom%2Fclick%2CAAAAAP4EAAATZAAAawcAAAAAAAAAAAMABf8BEgEABALLDgAAZg8AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAKYH5EIAAAAA%2C%2C;rid=673;tid=1;ev=1;dt=1;ac=60;c=879; (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\IL6VA4VI\ad%2Eyieldmanager%2Ecom%2Fclick%2CAAAAAPUEAAATZAAAawcAAAAAAAAAAAoABf8BEgEABALLDgAAZg8AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAMP5EIAAAAA%2C%2C;rid=673;tid=1;ev=1;dt=1;ac=60;c=879; (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\IL6VA4VI\d%2Eyieldmanager%2Ecom%2Fclick%2CAAAAAP4EAAARlwAAawcAAAAAAAAAAAsAAf8BEgEABALLDgAAZg8AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAsC5EIAAAAA%2C%2C;rid=1190;tid=1;ev=1;dt=1;ac=60;c=424; (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\IL6VA4VI\d%2Eyieldmanager%2Ecom%2Fclick%2CAAAAAP4EAAARlwAAawcAAAAAAAAAAAYABP8BEwEABALLDgAAZg8AAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAAB4Q5EIAAAAA%2C%2C;rid=1190;tid=1;ev=1;dt=1;ac=60;c=424; (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\IL6VA4VI\Type%3dclick%26FlightID%3d51596%26AdID%3d80499%26TargetID%3d10134%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,202,212,552,557,596,638,[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\IL6VA4VI\Type%3dclick%26FlightID%3d51608%26AdID%3d80506%26TargetID%3d11450%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,202,212,552,557,596,638,[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\JYTODBBV\CACLAN4H.net%2Fs%2F2031855%2F5%2F&ad_type=text_image&image_size=468x60&feedback_link=on&cc=100&u_h=600&u_w=800&u_ah=566&u_aw=800&u_cd=32&u_tz=-240&u_his=24&u_java=true (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\JYTODBBV\CAELSR0V.net%2Fs%2F2031855%2F3%2F&ad_type=text_image&image_size=468x60&feedback_link=on&cc=100&u_h=600&u_w=800&u_ah=566&u_aw=800&u_cd=32&u_tz=-240&u_his=22&u_java=true (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\JYTODBBV\CAURWPYP.net%2Fs%2F2031855%2F4%2F&ad_type=text_image&image_size=468x60&feedback_link=on&cc=100&u_h=600&u_w=800&u_ah=566&u_aw=800&u_cd=32&u_tz=-240&u_his=23&u_java=true (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\JYTODBBV\Network=ugo&size=300x250&adtype=over&affiliate=flashplayer&suba=flashplayer&channel=filmtv&subchannel=animation&category=tic&PT=forums&CR=mi&pez=tic[2].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\JYTODBBV\Type%3dclick%26FlightID%3d51596%26AdID%3d80499%26TargetID%3d10134%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,202,212,552,557,596,638,[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\JYTODBBV\Type%3dclick%26FlightID%3d51596%26AdID%3d80499%26TargetID%3d10134%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,202,212,552,557,596,638,[2].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\JYTODBBV\Type%3dclick%26FlightID%3d51596%26AdID%3d80499%26TargetID%3d10134%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,202,212,552,557,596,638,[3].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\JYTODBBV\Type%3dclick%26FlightID%3d51608%26AdID%3d80506%26TargetID%3d11450%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,202,212,552,557,596,638,[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\JYTODBBV\Type%3dclick%26FlightID%3d51608%26AdID%3d80506%26TargetID%3d11450%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,202,212,552,557,596,638,[2].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\JYTODBBV\Type%3dclick%26FlightID%3d51608%26AdID%3d80506%26TargetID%3d11450%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,202,212,552,557,596,638,[3].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\JYTODBBV\Type%3dclick%26FlightID%3d51857%26AdID%3d80739%26TargetID%3d17696%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,197,212,557,596,638,708,[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\UNKVIBUD\Type=click&FlightID=22624&AdID=38777&TargetID=3772&Segments=4,7,11,23,26,43,48,64,70,85,119,130,133,278,316,337,357,448,593,600,626,717,819,844,862,870,885,1035,1074[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\VIXW1NFZ\dBgorBgEEAYI3WAPVoIGOMIGLBgorBgEEAYI3WAMBoH0wewIDAgABAgJmAwICAMAECCJWFfH5N%252bRuBBBaiJrpSb9%252b2ecTA%252buED5KPBFAFzEfeHcmgF%252bVyrprNnBeiEV65qUuzpXBEyPCh4A5X0gFQ83AW&r=0 (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\WX6Z09ER\CA1FVXJH.net%2Fs%2F962586%2F2%2F&ad_type=text_image&image_size=468x60&feedback_link=on&cc=100&u_h=600&u_w=800&u_ah=566&u_aw=800&u_cd=32&u_tz=-240&u_his=16&u_java=true (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\WX6Z09ER\CASLE7WX.net%2Fs%2F2031855%2F2%2F&ad_type=text_image&image_size=468x60&feedback_link=on&cc=100&u_h=600&u_w=800&u_ah=566&u_aw=800&u_cd=32&u_tz=-240&u_his=31&u_java=true (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\WX6Z09ER\CAU2S5YY.net%2Fs%2F2031855%2F7%2F&ad_type=text_image&image_size=468x60&feedback_link=on&cc=100&u_h=600&u_w=800&u_ah=566&u_aw=800&u_cd=32&u_tz=-240&u_his=26&u_java=true (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\WX6Z09ER\CAUUZZP0.net%2Fs%2F2031855%2F2%2F&ad_type=text_image&image_size=468x60&feedback_link=on&cc=100&u_h=600&u_w=800&u_ah=566&u_aw=800&u_cd=32&u_tz=-240&u_his=21&u_java=true (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\WX6Z09ER\Network=ugo&size=1x1&adtype=over&affiliate=flashplayer&suba=flashplayer&channel=filmtv&subchannel=animation&category=tic&PT=ct&CR=mi&pez=tic[2] (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\WX6Z09ER\Network=ugo&size=728x90&adtype=over&affiliate=flashplayer&suba=flashplayer&channel=filmtv&subchannel=animation&category=tic&PT=hp&CR=mi&pez=tic[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\WX6Z09ER\red[2].net&scx=800&scy=600&scc=32&wrd=1_compele,1_compele&sta=,,,1,,,,,,,0,5,0,24897,24487,14658,389,501&iid=153294&bid=304529&dat=;ord=72386616 (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\WX6Z09ER\Type%3dclick%26FlightID%3d51596%26AdID%3d80499%26TargetID%3d10134%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,202,212,552,557,596,638,[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\WX6Z09ER\Type%3dclick%26FlightID%3d51608%26AdID%3d80506%26TargetID%3d11450%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,202,212,552,557,596,638,[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\WX6Z09ER\Type%3dclick%26FlightID%3d51608%26AdID%3d80506%26TargetID%3d11450%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,202,212,552,557,596,638,[2].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\WX6Z09ER\Type%3dclick%26FlightID%3d51857%26AdID%3d80739%26TargetID%3d17696%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,197,212,557,596,638,708,[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\WX6Z09ER\Type%3dclick%26FlightID%3d51857%26AdID%3d80739%26TargetID%3d17696%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,202,212,552,557,596,638,[1].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\WX6Z09ER\Type%3dclick%26FlightID%3d51857%26AdID%3d80739%26TargetID%3d17696%26Segments%3d%26Targets%3d%26Values%3d25,31,43,51,60,72,82,100,110,150,155,202,212,552,557,596,638,[2].htm (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\WXQB09IJ\1773075864@Button1,Button2,Button3,Button4,Button5,Button6,Button7,Button8,Button9,RichMedia,Text1,Text2,Text3,Text4,Text5,Text6,Text7,Text8,Text9,Text10,Text11,Text[1] (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\WXQB09IJ\ion%3Duser%26circuitaction%3DviewProfile_commentForm%26friendID%3D36907960%26name%3Ddid%2Bthe%2Bicee%2Bthing%2Bhelp%253f%26MyToken%3Dfd248592-1cfe-48fd-aa78-dfb44a186e41&r=0 (WARNING: not scanned, path to long) C:\Documents and Settings\Savannah.MAURER-BLODGETT\Local Settings\Temp\Temporary Internet Files\Content.IE5\WXQB09IJ\Type=click&FlightID=23329&AdID=39973&TargetID=6169&Segments=4,7,11,23,26,43,48,60,64,70,85,119,133,278,316,337,357,448,593,600,626,717,819,844,862,870,1035,1074,1407[1].htm (WARNING: not scanned, path to long) C:\Program Files\Common Files\F?nts: (not scanned) C:\Program Files\Common Files\F?nts: (not scanned) C:\Program Files\Common Files\?icrosoft: (not scanned) C:\Program Files\Common Files\??crosoft: (not scanned) C:\Program Files\Common Files\??curity: (not scanned) C:\Program Files\Common Files\??stem32: (not scanned) C:\Program Files\Common Files\?ssembly: (not scanned) C:\Program Files\Common Files\?icrosoft.NET: (not scanned) C:\Program Files\M?crosoft: (not scanned) C:\Program Files\s?mbols: (not scanned) C:\Program Files\s?stem: (not scanned) C:\Program Files\T?sks: (not scanned) C:\Program Files\?icrosoft.NET: (not scanned) C:\Program Files\??curity: (not scanned) C:\Program Files\??mantec: (not scanned) C:\Program Files\??mbols: (not scanned) C:\Program Files\??stem32: (not scanned) C:\Program Files\?dobe: (not scanned) C:\WINDOWS\SYSTEM32\F?nts: (not scanned) C:\WINDOWS\SYSTEM32\M?crosoft.NET: (not scanned) C:\WINDOWS\SYSTEM32\?ppPatch: (not scanned) C:\WINDOWS\SYSTEM32\??crosoft: (not scanned) C:\WINDOWS\SYSTEM32\?racle: (not scanned) C:\WINDOWS\SYSTEM32\?ymantec: (not scanned) C:\WINDOWS\SYSTEM32\??curity: (not scanned) C:\WINDOWS\SYSTEM32\??mbols: (not scanned) C:\WINDOWS\SYSTEM32\??stem: (not scanned) C:\WINDOWS\SYSTEM32\??sembly: (not scanned) C:\WINDOWS\SYSTEM32\??pPatch: (not scanned) C:\WINDOWS\SYSTEM32\??sks: (not scanned) C:\WINDOWS\S?mantec: (not scanned) C:\WINDOWS\T?sks: (not scanned) C:\WINDOWS\?icrosoft: (not scanned) C:\WINDOWS\?ymantec: (not scanned) C:\WINDOWS\??stem32: (not scanned) C:\WINDOWS\?ppPatch: (not scanned) D:\System Volume Information: (not scanned) Adware.Hotbar has not been found on your computer.
finally - here is the most recent hijack this scan


Logfile of HijackThis v1.99.1
Scan saved at 12:24:30 PM, on 9/15/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\Ati2evxx.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program Files\ewido anti-spyware 4.0\guard.exe
C:\PROGRA~1\NORTON~1\NORTON~2\GHOSTS~2.EXE
C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Norton SystemWorks\Norton Ghost\GhostStartTrayApp.exe
C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr_.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\Common Files\AOL\1148416296\ee\AOLSoftware.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\WINDOWS\svcwinra.exe
C:\WINDOWS\System32\RunDLL32.exe
C:\WINDOWS\resfilter32.exe
C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE
C:\Program Files\eFax Messenger Plus 3.3\J2GDllCmd.exe
C:\Program Files\eFax Messenger Plus 3.3\J2GTray.exe
C:\Program Files\Nikon\NkView5\NkvMon.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\msiexec.exe
C:\Documents and Settings\Rachel.MAURER-BLODGETT\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/…//www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://us.rd.yahoo.com/customize/ie/defaul…//www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://us.rd.yahoo.com/customize/ie/defaul…rch/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://us.rd.yahoo.com/customize/ie/defaul…//www.yahoo.com
R3 - URLSearchHook: (no name) - {F1FABED9-5834-0598-4175-28F00FC66FCB} - C:\WINDOWS\system32\eukhqzh.dll (file missing)
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn5\yt.dll
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn5\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: CitiUSBrowserHelper Class - {387EDF53-1CF2-4523-BC2F-13462651BE8C} - C:\WINDOWS\system32\BhoCitUS.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Yahoo! IE Services Button - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: AOL Toolbar Launcher - {7C554162-8CB7-45A4-B8F4-8EA1C75885F9} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
O2 - BHO: Discover deskshop Browser Helper Object - {8DB3D69D-DA5E-4165-B781-72A761790672} - C:\WINDOWS\system32\BhoDshop.dll
O2 - BHO: (no name) - {F1FABED9-5834-0598-4175-28F00FC66FCB} - C:\WINDOWS\system32\eukhqzh.dll (file missing)
O4 - HKLM\..\Run: [ATIModeChange] Ati2mdxx.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [ccApp] C:\Program Files\Common Files\Symantec Shared\ccApp.exe
O4 - HKLM\..\Run: [GhostStartTrayApp] C:\Program Files\Norton SystemWorks\Norton Ghost\GhostStartTrayApp.exe
O4 - HKLM\..\Run: [AdaptecDirectCD] "C:\Program Files\Roxio\Easy CD Creator 5\DirectCD\DirectCD.exe"
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr_.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKLM\..\Run: [CitiVAN] C:\Program Files\Citi Virtual Account Numbers\CitiVAN.exe /dontopenmycards
O4 - HKLM\..\Run: [SecureOnlineAccountNumbers] C:\Program Files\Secure Online Account Numbers\SOAN.exe /dontopenmycards
O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1148416296\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [IPHSend] C:\Program Files\Common Files\AOL\IPHSend\IPHSend.exe
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [tcrinit] C:\WINDOWS\svcwinra.exe
O4 - HKCU\..\Run: [OfotoNow USB Detection] C:\WINDOWS\System32\RunDLL32.exe C:\PROGRA~1\Ofoto\OfotoNow\OFUSBS.DLL,WatchForConnection OfotoNow
O4 - HKCU\..\Run: [hButRPj6V] cfgrov.exe
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\PROGRA~1\Yahoo!\MESSEN~1\YAHOOM~1.EXE" -quiet
O4 - HKCU\..\Run: [µTorrent] "C:\Documents and Settings\Savannah.MAURER-BLODGETT\Desktop\utorrent.exe"
O4 - HKCU\..\Run: [Aim6] "C:\Program Files\Common Files\AOL\Launch\AOLLaunch.exe" /d locale=en-US ee://aol/imApp
O4 - HKCU\..\Run: [Anonymizer] C:\Program Files\Anonymizer\Anonymizer Software\Anonymizer.exe -nogui
O4 - HKCU\..\Run: [Aida] "C:\WINDOWS\system32\CURITY~1\attrib.exe" -vt ndrv
O4 - HKCU\..\Run: [Wtfqndfc] C:\Program Files\??mbols\msdtc.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: eFax Live Menu 3.3.lnk = C:\Program Files\eFax Messenger Plus 3.3\J2GDllCmd.exe
O4 - Global Startup: eFax Tray Menu 3.3.lnk = C:\Program Files\eFax Messenger Plus 3.3\J2GTray.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: NkvMon.exe.lnk = C:\Program Files\Nikon\NkView5\NkvMon.exe
O8 - Extra context menu item: &AOL Toolbar Search - c:\program files\aol\aol toolbar 3.0\resources\en-US\local\search.html
O8 - Extra context menu item: &Search - http://edits.mywebsearch.com/toolbaredits/…arch.jhtml?p=ZJ
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: AOL Toolbar - {3369AF0D-62E9-4bda-8103-B4C75499B578} - C:\Program Files\AOL\AOL Toolbar 3.0\aoltb.dll
O9 - Extra button: Citi - {4C730913-3961-439b-83D5-F4E445520422} - C:\Program Files\Citi Virtual Account Numbers\CitiVAN.exe
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {E5D12C4E-7B4F-11D3-B5C9-0050045C3C96} - C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
O9 - Extra button: Secure Online Account Numbers - {F74E75A5-96BF-40ef-A1C8-88EAEBB82AB6} - C:\Program Files\Secure Online Account Numbers\SOAN.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: YExplorer1_8US.CAB - http://photos.groups.yahoo.com/ocx/us/yexplorer1_8us.cab
O16 - DPF: {05CA9FB0-3E3E-4B36-BF41-0E3A5CAA8CD8} (Office Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=58813
O16 - DPF: {08BEF711-06DA-48B2-9534-802ECAA2E4F9} (PlxInstall Class) - https://www.plaxo.com/down/latest/PlaxoInstall.cab
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yahoo.com/…nst_current.cab
O16 - DPF: {42C9E5EE-DA49-49B4-8ECC-1CAB1C51A2AB} (HomePrintingCtrl Class) - http://www.ofoto.com/downloads/hmpr/HMPR_W…_1/axhomepr.cab
O16 - DPF: {4C39376E-FA9D-4349-BACC-D305C1750EF3} (EPUImageControl Class) - http://tools.ebayimg.com/eps/wl/activex/EP…l_v1-0-3-24.cab
O16 - DPF: {50647AB5-18FD-4142-82B0-5852478DD0D5} (Keynote Connector Launcher 2) - http://webeffective.keynote.com/applicatio…torLauncher.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat…b?1157463871890
O16 - DPF: {6F750200-1362-4815-A476-88533DE61D0C} (Ofoto Upload Manager Class) - http://www.kodakgallery.com/downloads/BUM/…_1/axofupld.cab
O16 - DPF: {70647AB5-18FD-4142-82B0-5852478DD0D4} (Keynote Connector Launcher) - http://xms.keynote.com/applications/connec…torLauncher.cab
O16 - DPF: {77E32299-629F-43C6-AB77-6A1E6D7663F6} (Groove Control) - http://www.nick.com/common/groove/gx/GrooveAX27.cab
O16 - DPF: {8D83D301-E841-11D1-B155-00600823BCF9} (WebLine Browser Integration Classes) - http://live.landsend.com/webline/applets/msie40x.cab
O16 - DPF: {A8739816-022C-11D6-A85D-00C04F9AEAFB} (WebEyeControl) - http://www.rockefellercenter.com/viewer/wg_webeye.cab
O16 - DPF: {A90A5822-F108-45AD-8482-9BC8B12DD539} (Crucial cpcScan) - http://www.crucial.com/controls/cpcScanner.cab
O16 - DPF: {BB383206-6DA1-4E80-B62A-3DF950FCC697} (Create & Print ActiveX Plug-in) - http://ak.imgag.com/imgag/cp/install/AxCtp2.cab
O16 - DPF: {C3DFA998-A486-11D4-AA25-00C04F72DAEB} (MSN Photo Upload Tool) - http://sc.groups.msn.com/controls/PhotoUC/MsnPUpld.cab
O16 - DPF: {D4323BF2-006A-4440-A2F5-27E3E7AB25F8} (Virtools WebPlayer Class) - http://a532.g.akamai.net/f/532/6712/5m/vir…5/installer.exe
O16 - DPF: {E856B973-45FD-4559-8F82-EAB539144667} (AutoFix Launcher Control) - http://pccheckup.dellfix.com/rel/35/install/gtdownde.cab
O16 - DPF: {E87F6C8E-16C0-11D3-BEF7-009027438003} (Persits Software XUpload) - http://www.auctiva.com/hostedimages/active…oad/XUpload.ocx
O16 - DPF: {EE8B6D5F-FEF2-11D0-B13F-00A024798EF3} (Microsoft Search Settings Control) - http://lg.home.microsoft.com/search/lobby/searchsettings.cab
O16 - DPF: {F58E1CEF-A068-4C15-BA5E-587CAF3EE8C6} (MSN Chat Control 4.5) - http://chat.msn.com/controls/msnchat45.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{4CDB5680-45E6-445B-8E0B-209252ACF84C}: NameServer = 167.206.3.238,167.206.3.235
O17 - HKLM\System\CS1\Services\Tcpip\..\{4CDB5680-45E6-445B-8E0B-209252ACF84C}: NameServer = 167.206.3.238,167.206.3.235
O20 - AppInit_DLLs: msconfig.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: Ati HotKey Poller - Unknown owner - C:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
O23 - Service: GhostStartService - Symantec Corporation - C:\PROGRA~1\NORTON~1\NORTON~2\GHOSTS~2.EXE
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\Program Files\Norton SystemWorks\Norton Utilities\NPROTECT.EXE
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~1\SPEEDD~1\nopdb.exe

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI