This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

HJT log

33 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

Logfile of HijackThis v1.99.1
Scan saved at 6:48:53 PM, on 10/22/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Support.com\bin\tgcmd.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Common Files\DriveCleaner 2006 Free\udcsdr.exe
C:\Program Files\Common Files\DriveCleaner 2006 Free\udcpas.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\explorer.exe
C:\program files\hjt\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://as.weatherstudio.com/dp/search?x=wK…iXv5YfiIUAMSw==
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer presented by Comcast
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [tgcmd] C:\Program Files\Support.com\bin\tgcmd.exe /server /startmonitor /deaf
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [WinAntiVirusPro2006] "C:\Program Files\WinAntiVirus Pro 2006\WinAV.exe" /min
O4 - HKLM\..\Run: [uwa6pcw] "C:\Program Files\Common Files\WinAntiVirus Pro 2006\uwa6pcw.exe" -c
O4 - HKLM\..\Run: [SDR6_Check] "C:\Program Files\Common Files\DriveCleaner 2006 Free\udcsdr.exe"
O4 - HKLM\..\Run: [PAS_Check] "C:\Program Files\Common Files\DriveCleaner 2006 Free\udcpas.exe"
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [OE_OEM] "C:\Program Files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [HijackThis startup scan] C:\Program Files\hjt\HijackThis.exe /startupscan
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: ComcastHSI - {669B269B-0D4E-41FB-A3D8-FD67CA94F646} - http://www.comcast.net/ (file missing)
O9 - Extra button: Support - {8828075D-D097-4055-AA02-2DBFA9D85E8A} - http://www.comcastsupport.com/ (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Help - {97809617-3937-4F84-B335-9BB05EF1A8D4} - http://online.comcast.net/help/ (file missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: dlcc_device - Unknown owner - C:\WINDOWS\system32\dlcccoms.exe
O23 - Service: Firewall service (FWSvc) - Unknown owner - C:\Program Files\WinAntiVirus Pro 2006\FWSvc.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
Hi junkyman222 and welcome to TomCoyote's forums :wavey:

I am currently looking over your log. As I am an Undergraduate, everything that I post to you must be checked by an Admin or Moderator. Thus, there may be a tiny bit of a delay between posts, but it shouldn't be too long. I will post back shortly with a potential fix.

Thanks for your patience!
Delete thru add/remove programs:
Support.com
WinAntiVirus Pro 2006


Rename HijackThis.exe file to Scanner.exe. We need to do this because your system has malware which can hide from default named HijackThis.

When you've done renaming do a new system scan and send a fresh hjt log.
here it is!

Logfile of HijackThis v1.99.1
Scan saved at 6:48:53 PM, on 10/22/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Support.com\bin\tgcmd.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Common Files\DriveCleaner 2006 Free\udcsdr.exe
C:\Program Files\Common Files\DriveCleaner 2006 Free\udcpas.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\explorer.exe
C:\program files\hjt\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://as.weatherstudio.com/dp/search?x=wK…iXv5YfiIUAMSw==
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer presented by Comcast
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [tgcmd] C:\Program Files\Support.com\bin\tgcmd.exe /server /startmonitor /deaf
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [WinAntiVirusPro2006] "C:\Program Files\WinAntiVirus Pro 2006\WinAV.exe" /min
O4 - HKLM\..\Run: [uwa6pcw] "C:\Program Files\Common Files\WinAntiVirus Pro 2006\uwa6pcw.exe" -c
O4 - HKLM\..\Run: [SDR6_Check] "C:\Program Files\Common Files\DriveCleaner 2006 Free\udcsdr.exe"
O4 - HKLM\..\Run: [PAS_Check] "C:\Program Files\Common Files\DriveCleaner 2006 Free\udcpas.exe"
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [OE_OEM] "C:\Program Files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [HijackThis startup scan] C:\Program Files\hjt\HijackThis.exe /startupscan
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: ComcastHSI - {669B269B-0D4E-41FB-A3D8-FD67CA94F646} - http://www.comcast.net/ (file missing)
O9 - Extra button: Support - {8828075D-D097-4055-AA02-2DBFA9D85E8A} - http://www.comcastsupport.com/ (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Help - {97809617-3937-4F84-B335-9BB05EF1A8D4} - http://online.comcast.net/help/ (file missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: dlcc_device - Unknown owner - C:\WINDOWS\system32\dlcccoms.exe
O23 - Service: Firewall service (FWSvc) - Unknown owner - C:\Program Files\WinAntiVirus Pro 2006\FWSvc.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
You didn't rename your HijackThis.exe. If you want your computer cleaned you need to do renaming or we can't get hiding malware visible.

This is the file you need to rename C:\program files\hjt\HijackThis.exe

To do this, follow these steps:
1. Navigate into C:\program files\hjt -folder
2. Click (don't double-click!) on HijackThis.exe to make it highlighted.
3. Press F2 and you can give a new name to this file. Name it scanner.exe

When you've done renaming do a new system scan and send a fresh hjt log.

PS. If you have difficulties doing renaming, feel free to ask. :)
Logfile of HijackThis v1.99.1
Scan saved at 6:48:53 PM, on 10/22/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Support.com\bin\tgcmd.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Common Files\DriveCleaner 2006 Free\udcsdr.exe
C:\Program Files\Common Files\DriveCleaner 2006 Free\udcpas.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\explorer.exe
C:\program files\hjt\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://as.weatherstudio.com/dp/search?x=wK…iXv5YfiIUAMSw==
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer presented by Comcast
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [tgcmd] C:\Program Files\Support.com\bin\tgcmd.exe /server /startmonitor /deaf
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [WinAntiVirusPro2006] "C:\Program Files\WinAntiVirus Pro 2006\WinAV.exe" /min
O4 - HKLM\..\Run: [uwa6pcw] "C:\Program Files\Common Files\WinAntiVirus Pro 2006\uwa6pcw.exe" -c
O4 - HKLM\..\Run: [SDR6_Check] "C:\Program Files\Common Files\DriveCleaner 2006 Free\udcsdr.exe"
O4 - HKLM\..\Run: [PAS_Check] "C:\Program Files\Common Files\DriveCleaner 2006 Free\udcpas.exe"
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [OE_OEM] "C:\Program Files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [HijackThis startup scan] C:\Program Files\hjt\HijackThis.exe /startupscan
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: ComcastHSI - {669B269B-0D4E-41FB-A3D8-FD67CA94F646} - http://www.comcast.net/ (file missing)
O9 - Extra button: Support - {8828075D-D097-4055-AA02-2DBFA9D85E8A} - http://www.comcastsupport.com/ (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Help - {97809617-3937-4F84-B335-9BB05EF1A8D4} - http://online.comcast.net/help/ (file missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: dlcc_device - Unknown owner - C:\WINDOWS\system32\dlcccoms.exe
O23 - Service: Firewall service (FWSvc) - Unknown owner - C:\Program Files\WinAntiVirus Pro 2006\FWSvc.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
This row in your log tells me you didn't rename HijackThis.exe file (or you renamed it in wrong place) C:\program files\hjt\HijackThis.exe

I took some screenshots to make it easier to explain.


1.Navigate to your HijackThis location (in my example it's C:\program files\hjt)
[external image: Posted Image]

2.Highlight HijackThis.exe and press right mouse button over it. Select rename.
[external image: Posted Image]

3.Write scanner.exe and press enter
[external image: Posted Image]

4.Now you should have scanner.exe in your HijackThis folder.
[external image: Posted Image]


Double click on this scanner.exe, do scanning with it and finally post log it produces.
i am not a moron!!! i know how to rename a '''' file… it has been done!!! i have renamed hijackthis to scanner.exe
here is another log

Logfile of HijackThis v1.99.1
Scan saved at 03:55, on 06-10-27
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Support.com\bin\tgcmd.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Common Files\DriveCleaner 2006 Free\udcsdr.exe
C:\Program Files\Common Files\DriveCleaner 2006 Free\udcpas.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\WINDOWS\system32\imapi.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\WINDOWS\explorer.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
C:\program files\hjt\scanner.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://as.weatherstudio.com/dp/search?x=wK…iXv5YfiIUAMSw==
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer presented by Comcast
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {849B9523-785F-4014-9CAF-079FB4A74C61} - C:\WINDOWS\system32\aulubhil.dll (file missing)
O2 - BHO: (no name) - {982F148A-398A-4319-8425-4A8E16ED71B2} - C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\nietc.dll
O2 - BHO: (no name) - {B8C89182-7BC4-426D-95E8-F0BA44157F43} - C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\nietc.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [tgcmd] C:\Program Files\Support.com\bin\tgcmd.exe /server /startmonitor /deaf
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [WinAntiVirusPro2006] "C:\Program Files\WinAntiVirus Pro 2006\WinAV.exe" /min
O4 - HKLM\..\Run: [uwa6pcw] "C:\Program Files\Common Files\WinAntiVirus Pro 2006\uwa6pcw.exe" -c
O4 - HKLM\..\Run: [SDR6_Check] "C:\Program Files\Common Files\DriveCleaner 2006 Free\udcsdr.exe"
O4 - HKLM\..\Run: [PAS_Check] "C:\Program Files\Common Files\DriveCleaner 2006 Free\udcpas.exe"
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [OE_OEM] "C:\Program Files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [HijackThis startup scan] C:\Program Files\hjt\HijackThis.exe /startupscan
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: ComcastHSI - {669B269B-0D4E-41FB-A3D8-FD67CA94F646} - http://www.comcast.net/ (file missing)
O9 - Extra button: Support - {8828075D-D097-4055-AA02-2DBFA9D85E8A} - http://www.comcastsupport.com/ (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Help - {97809617-3937-4F84-B335-9BB05EF1A8D4} - http://online.comcast.net/help/ (file missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O20 - Winlogon Notify: nietc - C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\nietc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: dlcc_device - Unknown owner - C:\WINDOWS\system32\dlcccoms.exe
O23 - Service: Firewall service (FWSvc) - Unknown owner - C:\Program Files\WinAntiVirus Pro 2006\FWSvc.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
Yes, I know exactly what I'm doing. You have Vundo in your system. If you run HijackThis scan with HijackThis.exe named file Vundo knows this and hides its 02 and 020 entries. When we name this HijackThis.exe to some randomly named file for example scanner.exe (as I asked you to do) those entries become visible and we have something we need to be able to continue forward.

Please download
VundoFix.exe
to your desktop.
  • Double-click VundoFix.exe to run it.
  • Click the Scan for Vundo button.
  • Once it's done scanning, click the Remove Vundo button.
  • You will receive a prompt asking if you want to remove the files,
    click YES
  • Once you click yes, your desktop will go blank as it starts removing
    Vundo.
  • When completed, it will prompt that it will reboot your computer,
    click OK.
  • Please post the contents of C:\vundofix.txt and a new
    HiJackThis log.
Note: It is possible that VundoFix encountered a file it could not remove.
In this case, VundoFix will run on reboot, simply follow the above
instructions starting from "Click the Scan for Vundo button."
when VundoFix appears at reboot.
junkyman222, one more example of foul language and disrespect to your helper and this topic will be locked and you will be banned from this forum
Here is the VundoFix

VundoFix V6.2.6

Checking Java version…

Java version is 1.4.2.3

Java version is 1.5.0.6

Scan started at 16:08:24 06-10-28

Listing files found while scanning….

C:\WINDOWS\system32\ssqro.dll
C:\WINDOWS\system32\orqss.tmp
C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\nietc.dll
C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\nietc.dll
C:\WINDOWS\system32\orqss.tmp
C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\ctein.ini
C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\ctein.bak1
C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\ctein.ini2
C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\ctein.tmp
C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\ctein.ini
C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\ctein.bak1
C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\ctein.ini2
C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\ctein.tmp

Beginning removal…

Attempting to delete C:\WINDOWS\system32\ssqro.dll
C:\WINDOWS\system32\ssqro.dll Has been deleted!

Attempting to delete C:\WINDOWS\system32\orqss.tmp
C:\WINDOWS\system32\orqss.tmp Has been deleted!

Attempting to delete C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\nietc.dll
C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\nietc.dll Could not be deleted.

Attempting to delete C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\nietc.dll
C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\nietc.dll Could not be deleted.

Attempting to delete C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\ctein.ini
C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\ctein.ini Has been deleted!

Attempting to delete C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\ctein.bak1
C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\ctein.bak1 Has been deleted!

Attempting to delete C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\ctein.ini2
C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\ctein.ini2 Has been deleted!

Attempting to delete C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\ctein.tmp
C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\ctein.tmp Has been deleted!

Performing Repairs to the registry.
Done!

Beginning removal…

Attempting to delete C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\nietc.dll
C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\nietc.dll Has been deleted!

Performing Repairs to the registry.
Done!


Here is the HijackThis

Logfile of HijackThis v1.99.1
Scan saved at 16:17, on 06-10-28
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\Real\RealPlayer\RealPlay.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Support.com\bin\tgcmd.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Common Files\DriveCleaner 2006 Free\udcsdr.exe
C:\Program Files\Common Files\DriveCleaner 2006 Free\udcpas.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\dlcccoms.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\program files\hjt\scanner.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell.com
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.comcast.net/
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://as.weatherstudio.com/dp/search?x=wK…iXv5YfiIUAMSw==
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Microsoft Internet Explorer presented by Comcast
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = :0
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: (no name) - {02E44076-1653-4C8F-8D3D-EB3511A77AAF} - C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\nietc.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: (no name) - {5E48C869-E84E-4DFE-B45C-A405942645CE} - C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\nietc.dll (file missing)
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: (no name) - {849B9523-785F-4014-9CAF-079FB4A74C61} - C:\WINDOWS\system32\aulubhil.dll (file missing)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [RealTray] C:\Program Files\Real\RealPlayer\RealPlay.exe SYSTEMBOOTHIDEPLAYER
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [DLCCCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCCtime.dll,_RunDLLEntry@16
O4 - HKLM\..\Run: [dlccmon.exe] "C:\Program Files\Dell Photo AIO Printer 924\dlccmon.exe"
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [tgcmd] C:\Program Files\Support.com\bin\tgcmd.exe /server /startmonitor /deaf
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [WinAntiVirusPro2006] "C:\Program Files\WinAntiVirus Pro 2006\WinAV.exe" /min
O4 - HKLM\..\Run: [uwa6pcw] "C:\Program Files\Common Files\WinAntiVirus Pro 2006\uwa6pcw.exe" -c
O4 - HKLM\..\Run: [SDR6_Check] "C:\Program Files\Common Files\DriveCleaner 2006 Free\udcsdr.exe"
O4 - HKLM\..\Run: [PAS_Check] "C:\Program Files\Common Files\DriveCleaner 2006 Free\udcpas.exe"
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [OE_OEM] "C:\Program Files\Trend Micro\Internet Security 12\TMAS_OE\TMAS_OEMon.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [HijackThis startup scan] C:\Program Files\hjt\HijackThis.exe /startupscan
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O8 - Extra context menu item: &Google Search - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://C:\Program Files\Google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://C:\Program Files\Google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://C:\Program Files\Google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://C:\Program Files\Google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://C:\Program Files\Google\GoogleToolbar1.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: ComcastHSI - {669B269B-0D4E-41FB-A3D8-FD67CA94F646} - http://www.comcast.net/ (file missing)
O9 - Extra button: Support - {8828075D-D097-4055-AA02-2DBFA9D85E8A} - http://www.comcastsupport.com/ (file missing)
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Help - {97809617-3937-4F84-B335-9BB05EF1A8D4} - http://online.comcast.net/help/ (file missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: dlcc_device - Unknown owner - C:\WINDOWS\system32\dlcccoms.exe
O23 - Service: Firewall service (FWSvc) - Unknown owner - C:\Program Files\WinAntiVirus Pro 2006\FWSvc.exe (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
You've done well. :)


Downloading needed applications
——————————-

Please download AVG Anti-Spyware to your Desktop or to your usual Download Folder.
http://www.ewido.net/en/download/
  • Install AVG Anti-Spyware by double clicking the installer.
  • Follow the prompts. Make sure that Launch AVG Anti-Spyware is checked.
  • On the main screen under Your Computer's security.
    • Click on Change state next to Resident shield. It should now change to inactive.
    • Click on Change state next to Automatic updates. It should now change to inactive.
    • Next to Last Update, click on Update now. (You will need an active internet connection to perform this)
    • Wait until you see the Update succesfull message.
  • Right-click the AVG Anti-Spyware Tray Icon and uncheck Start with Windows.
  • Right-click the AVG Anti-Spyware Tray Icon and select Exit. Confirm by clicking Yes.
If you are having problems with the updater, you can use this link to manually update ewido.
AVG Anti-Spyware manual updates.
Download the Full database to your Desktop or to your usual Download Folder and install it by double clicking the file. Make sure that AVG Anti-Spyware is closed before installing the update. Don't run AVG yet. Will do it a bit later.


Download ATF (Atribune Temp File) Cleaner© by Atribune to your desktop. Don't run ATF yet. Will do it a bit later.


Your Java is out of date. Older versions have vulnerabilities that malware can use to infect your system. Please follow these steps to remove older version Java components and update to the latest version…

Updating Java:
  • Download the latest version of Java Runtime Environment (JRE) 5.0 Update 9.
  • Scroll down to where it says
    The J2SE Runtime Environment (JRE) allows end-users to run Java applications.
  • Click the
    Download
    button to the right.
  • Check the box that says:
    Accept License Agreement.
  • The page will refresh.
  • Click on the link to download Windows Offline Installation with or without Multi-language and save to your desktop.
  • Close any programs you may have running - especially your web browser.
  • Go to Start > Control Panel double-click on Add/Remove programs and remove all older versions of Java.
  • Check any item with Java Runtime Environment (JRE or J2SE) in the name.
  • Click the Remove or Change/Remove button.
  • Repeat as many times as necessary to remove each Java versions.
  • Reboot your computer once all Java components are removed.
  • Then from your desktop double-click on jre-1_5_0_09- windowsi586-p.exe to install the newest version.


I recommend you to print/save these instructions since these are quite long and you can't access them while in safe mode.



Running HijackThis
——————-

Start HijackThis, click do a system scan only, check:
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://as.weatherstudio.com/dp/search?x=wK…iXv5YfiIUAMSw==
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
O2 - BHO: (no name) - {02E44076-1653-4C8F-8D3D-EB3511A77AAF} - C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\nietc.dll (file missing)
O2 - BHO: (no name) - {5E48C869-E84E-4DFE-B45C-A405942645CE} - C:\WINDOWS\assembly\NativeImages1_v1.0.3705\System.Drawing\nietc.dll (file missing)
O2 - BHO: (no name) - {849B9523-785F-4014-9CAF-079FB4A74C61} - C:\WINDOWS\system32\aulubhil.dll (file missing)
O4 - HKLM\..\Run: [tgcmd] C:\Program Files\Support.com\bin\tgcmd.exe /server /startmonitor /deaf
O4 - HKLM\..\Run: [WinAntiVirusPro2006] "C:\Program Files\WinAntiVirus Pro 2006\WinAV.exe" /min
O4 - HKLM\..\Run: [uwa6pcw] "C:\Program Files\Common Files\WinAntiVirus Pro 2006\uwa6pcw.exe" -c
O23 - Service: Firewall service (FWSvc) - Unknown owner - C:\Program Files\WinAntiVirus Pro 2006\FWSvc.exe (file missing)

Close all browsers & other windows and click fix checked.



Creating & executing batch file
——————————-

Open notepad and then copy and paste the bolded lines below into it. Go to File > save as and name the file fixes.bat, change the Save as type to all files and save it to your desktop. (If you are still unsure on how to do this there is a little tutorial with pictures here)
@echo off
sc stop FWSvc
sc delete FWSvc

Double-click on fixes.bat file to execute it.



==============================

Reboot into safe mode (press F8 before Windows' loading screen and select safe mode)



Deleting folders
————————

Delete following folders:
C:\Program Files\Support.com
C:\WINDOWS\assembly\NativeImages1_v1.0.3705
C:\Program Files\WinAntiVirus Pro 2006
C:\Program Files\Common Files\WinAntiVirus Pro 2006


Running temp cleaner & AVG Anti-Spyware
—————————————



Double-click ATF Cleaner.exe to open it

Under Main choose:
Windows Temp
Current User Temp
All Users Temp
Cookies
Temporary Internet Files
Prefetch
Java Cache

*The other boxes are optional*
Then click the Empty Selected button.

Firefox:
Click Firefox at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click NO at the prompt.

Opera:
Click Opera at the top and choose: Select All
Click the Empty Selected button.
NOTE: If you would like to keep your saved passwords, please click NO at the prompt.

Click Exit on the Main menu to close the program.



Close ALL open Windows / Programs / Folders. Please start AVG Anti-Spyware and run a full scan.
  • Click on Scanner on the toolbar.
  • Click on the Settings tab.
    • Under How to act?
      • Click on Recommended Action and choose Quarantine from the popup menu.
    • Under How to scan?
      • All checkboxes should be ticked.
    • Under Possibly unwanted software:
      • All checkboxes should be ticked.
    • Under Reports:
      • Select Automatically generate report after every scan and uncheck Only if threats were found.
    • Under What to scan?
      • Select Scan every file.
  • Click on the Scan tab.
  • Click on Complete System Scan to start the scan process.
  • Let the program scan the machine.
  • When the scan has finished, follow the instructions below.
    IMPORTANT : Don't click on the
    Save Scan Report
    button before you did hit the
    Apply all Actions
    button.
    • Make sure that Set all elements to: shows Quarantine (1), if not click on the link and choose Quarantine from the popup menu. (2)
    • At the bottom of the window click on the Apply all Actions button. (3)
      [external image: Posted Image]
  • When done, click the Save Scan Report button. (4)
    • Click the Save Report as button.
    • Save the report to your Desktop.
  • Right-click the AVG Anti-Spyware Tray Icon and select Exit. Confirm by clicking Yes.
Reboot in Normal Mode.


Post AVG Anti-Spyware log & a fresh HJT log.
I did not find folders: C:\WINDOWS\assembly\NativeImages1_v1.0.3705 C:\Program Files\WinAntiVirus Pro 2006 C:\Program Files\Common Files\WinAntiVirus Pro 2006 …for deletion. Here is the AVG… I accidentally removed some of the elements. AVG Anti-Spyware - Scan Report ——————————————————— + Created at: 21:00 06-10-29 + Scan result: C:\Documents and Settings\Liz\Desktop\installdrivecleanerstart.exe -> Adware.DriveCleaner : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP288\A0021097.exe -> Adware.DriveCleaner : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP288\A0021098.dll -> Adware.DriveCleaner : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP290\A0021197.exe -> Adware.DriveCleaner : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP292\A0021389.exe -> Adware.DriveCleaner : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP292\A0021390.exe -> Adware.DriveCleaner : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP292\A0021391.exe -> Adware.DriveCleaner : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP292\A0021444.exe -> Adware.DriveCleaner : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP300\A0022919.exe -> Adware.DriveCleaner : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP300\A0022920.exe -> Adware.DriveCleaner : Cleaned with backup (quarantined). C:\Program Files\VSToolbar\VSToolBar.dll -> Adware.Searchcolours : Cleaned with backup (quarantined). HKLM\SOFTWARE\Classes\AppID\{4F5E5D72-C915-4f3b-908B-527D064B0FAA} -> Adware.SysProtect : Cleaned with backup (quarantined). HKLM\SOFTWARE\Classes\CLSID\{EF130E77-0A34-4365-BFB7-218FD3DDCD5F} -> Adware.SysProtect : Cleaned with backup (quarantined). HKLM\SOFTWARE\Classes\Interface\{02946FD1-2D99-46E6-A790-3A089714EDD9} -> Adware.SysProtect : Cleaned with backup (quarantined). HKLM\SOFTWARE\SysProtect -> Adware.SysProtect : Cleaned with backup (quarantined). HKU\S-1-5-21-3611997730-295077337-963388888-1010\Software\SysProtect -> Adware.SysProtect : Cleaned with backup (quarantined). C:\!KillBox\stera.exe -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\Program Files\Common Files\Companion Wizard\compwiz.exe -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP283\A0019711.exe -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP283\A0019766.exe -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP283\A0019767.exe -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP283\A0019769.exe -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP283\A0019770.dll -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP283\A0019819.ini -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP283\A0019820.exe -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP283\A0019821.exe -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP283\A0019822.exe -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP283\A0019823.sys -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP283\A0019824.exe -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP283\A0019825.exe -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP283\A0019826.exe -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP283\A0019827.dll -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP283\A0019828.dll -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP283\A0019829.exe -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP286\A0020757.dll -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP286\A0020759.dll -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP286\A0020760.dll -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP286\A0020764.dll -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP286\A0020765.dll -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP286\A0020766.exe -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP286\A0020767.dll -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP286\A0020781.dll -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP286\A0020782.sys -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP286\A0020783.sys -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP286\A0020784.sys -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP287\A0021054.exe -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP292\A0021398.exe -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP292\A0021430.exe -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP292\A0021436.cpl -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\WINDOWS\system32\SpOrder.dll -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\WINDOWS\system32\av.cpl -> Adware.WinAntiVirus : Cleaned with backup (quarantined). HKLM\SYSTEM\CurrentControlSet\Services\vspf -> Adware.WinAntiVirus : Cleaned with backup (quarantined). HKLM\SYSTEM\CurrentControlSet\Services\vspf\Enum -> Adware.WinAntiVirus : Cleaned with backup (quarantined). HKLM\SYSTEM\CurrentControlSet\Services\vspf\Security -> Adware.WinAntiVirus : Cleaned with backup (quarantined). HKLM\SYSTEM\CurrentControlSet\Services\vspf_hk -> Adware.WinAntiVirus : Cleaned with backup (quarantined). HKLM\SYSTEM\CurrentControlSet\Services\vspf_hk\Enum -> Adware.WinAntiVirus : Cleaned with backup (quarantined). HKLM\SYSTEM\CurrentControlSet\Services\vspf_hk\Security -> Adware.WinAntiVirus : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP283\A0017698.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Cleaned with backup (quarantined). C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP292\A0021438.exe -> Not-A-Virus.Downloader.Win32.WinFixer.o : Cleaned with backup (quarantined). :mozilla.290:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned. :mozilla.301:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned. :mozilla.10:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.11:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.12:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.13:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.14:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.15:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.181:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.182:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.183:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.184:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.185:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.186:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.187:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.188:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.189:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.190:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.191:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.192:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.193:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.194:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.195:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.196:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.197:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.198:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.199:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.200:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.201:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.202:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.203:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.204:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.205:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.206:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.207:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.208:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.209:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.210:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.223:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.224:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.225:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.226:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.227:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.228:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.229:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.230:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.231:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.232:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.233:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.234:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.235:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.236:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.237:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.238:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.239:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.240:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.241:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.242:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.243:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.244:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.245:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.246:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.247:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.248:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.249:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.24:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.250:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.251:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.252:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.253:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.254:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.255:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.256:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.25:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.283:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.423:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.424:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.426:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.443:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.447:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.575:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.589:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.614:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.618:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.684:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.752:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.807:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.861:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.8:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.9:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.2o7 : Cleaned. :mozilla.332:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned. :mozilla.333:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned. :mozilla.334:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned. :mozilla.797:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned. :mozilla.340:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Admarketplace : Cleaned. :mozilla.149:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.150:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.151:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.152:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.154:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.227:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.228:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.229:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.230:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.231:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.232:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.233:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.234:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.235:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.236:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.345:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.346:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.593:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.594:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.595:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.607:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.608:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.609:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.610:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.611:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.612:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.917:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.918:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned. :mozilla.268:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Adserver : Cleaned. :mozilla.269:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Adserver : Cleaned. :mozilla.270:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Adserver : Cleaned. :mozilla.271:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Adserver : Cleaned. :mozilla.50:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Adserver : Cleaned. :mozilla.51:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Adserver : Cleaned. :mozilla.845:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Adserver : Cleaned. :mozilla.846:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Adserver : Cleaned. :mozilla.350:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Adtech : Cleaned. :mozilla.351:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Adtech : Cleaned. :mozilla.145:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.146:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.147:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.148:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.149:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.41:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.59:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.60:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.61:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.62:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.63:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.64:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.65:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.66:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Advertising : Cleaned. :mozilla.14:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned. :mozilla.28:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned. :mozilla.48:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned. :mozilla.7:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned. :mozilla.19:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned. :mozilla.20:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned. :mozilla.21:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned. :mozilla.22:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned. :mozilla.429:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned. :mozilla.430:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned. :mozilla.873:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned. :mozilla.874:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned. :mozilla.875:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned. :mozilla.909:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned. :mozilla.910:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned. :mozilla.96:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned. :mozilla.97:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned. :mozilla.406:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned. :mozilla.409:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned. :mozilla.68:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.69:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.70:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.71:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.73:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.74:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.75:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.81:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.82:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.83:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.84:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.85:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.86:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.87:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned. :mozilla.432:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Clickbank : Cleaned. :mozilla.451:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned. :mozilla.452:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Clickzs : Cleaned. :mozilla.435:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Com : Cleaned. :mozilla.441:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Com : Cleaned. :mozilla.442:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Com : Cleaned. :mozilla.887:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Comclick : Cleaned. :mozilla.888:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Comclick : Cleaned. :mozilla.889:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Comclick : Cleaned. :mozilla.20:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned. :mozilla.38:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned. :mozilla.45:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned. :mozilla.8:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned. :mozilla.468:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned. :mozilla.484:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned. :mozilla.485:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned. :mozilla.486:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned. :mozilla.487:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned. :mozilla.488:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned. :mozilla.489:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned. :mozilla.490:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned. :mozilla.345:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned. :mozilla.70:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned. :mozilla.71:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned. :mozilla.72:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned. :mozilla.383:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.92:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.93:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.94:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.95:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.96:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.97:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Falkag : Cleaned. :mozilla.112:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.113:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.114:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.115:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.116:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.237:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.238:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.239:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.70:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.71:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.72:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned. :mozilla.921:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.922:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned. :mozilla.84:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.92:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.93:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.94:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned. :mozilla.576:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Ivwbox : Cleaned. :mozilla.136:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned. :mozilla.137:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned. :mozilla.28:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned. :mozilla.33:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned. :mozilla.34:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned. :mozilla.35:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned. :mozilla.89:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned. :mozilla.90:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned. :mozilla.91:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned. :mozilla.558:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Masterstats : Cleaned. :mozilla.196:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned. :mozilla.26:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned. :mozilla.68:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned. :mozilla.85:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned. :mozilla.212:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Overture : Cleaned. :mozilla.213:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Overture : Cleaned. :mozilla.214:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Overture : Cleaned. :mozilla.215:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Overture : Cleaned. :mozilla.670:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Overture : Cleaned. :mozilla.671:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Overture : Cleaned. :mozilla.672:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Overture : Cleaned. :mozilla.688:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Overture : Cleaned. :mozilla.20:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned. :mozilla.21:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned. :mozilla.22:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned. :mozilla.23:C:\Documents and Settings\Dad\Application Data\Mozilla\Firefox\Profiles\t3w8f6ua.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned. :mozilla.245:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned. :mozilla.246:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned. :mozilla.247:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned. :mozilla.248:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned. :mozilla.249:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned. :mozilla.348:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned. :mozilla.349:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned. :mozilla.350:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned. :mozilla.351:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned. :mozilla.689:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Pro-market : Cleaned. :mozilla.690:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Pro-market : Cleaned. :mozilla.691:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Pro-market : Cleaned. :mozilla.697:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned. :mozilla.698:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned. :mozilla.700:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned. :mozilla.701:C:\Documents and Settings\Liz\Application Data\Mozilla\Firefox\Profiles\v0y82hlb.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned. :mozilla.12:C:\Documents and Settings\Jenny\Application Data\Mozilla\Firefox\Profiles\zzlhf61n.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned. :mozilla.62:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned. :mozilla.63:C:\Documents and Settings\Mom\Application Data\Mozilla\Firefox\Profiles\47k4vrv8.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned. :mozilla.64:C:\Documents and Settings\Mom\Applica

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI