rawad
Topic Starter
hello, this is the the log files of spy sweeper, HJT, and AVG anti-spyware, of my roomate, that he is using the same connection and the same router that I am. he is using a USB connection, I am using Ethernet, we dont have WIFI:
Logfile of HijackThis v1.99.1
Scan saved at 3:43:45 AM, on 11/27/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\ALCMTR.EXE
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
C:\AddOn\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe
C:\AddOn\Fujitsu\Application Panel\QuickTouch.exe
C:\Program Files\Fujitsu\BtnHnd\BtnHnd.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\ltmoh\Ltmoh.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\Program Files\Ahead\InCD\InCD.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe
C:\Program Files\Webroot\Spy Sweeper\SSU.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\WinRAR\WinRAR.exe
C:\hgt\HijackThis1991.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/…/search/ie.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/…//www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/?.home=ytie
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/?.home=ytie
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customize/…//www.yahoo.com
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - C:\PROGRA~1\FlashGet\jccatch.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\en-us\msntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\en-us\msntb.dll
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SynTPLpr] "C:\Program Files\Synaptics\SynTP\SynTPLpr.exe"
O4 - HKLM\..\Run: [SynTPEnh] "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
O4 - HKLM\..\Run: [LoadFUJ02E3] "C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe"
O4 - HKLM\..\Run: [IndicatorUtility] "C:\AddOn\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe"
O4 - HKLM\..\Run: [LoadFujitsuQuickTouch] "C:\AddOn\Fujitsu\Application Panel\QuickTouch.exe"
O4 - HKLM\..\Run: [LoadBtnHnd] "C:\Program Files\Fujitsu\BtnHnd\BtnHnd.exe"
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [LtMoh] "C:\Program Files\ltmoh\Ltmoh.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [InCD] "C:\Program Files\Ahead\InCD\InCD.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe" /startintray
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [OM_Monitor] C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe -NoStart
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Startup: Sun clock 4.lnk = ?
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: Download All by FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: Download using FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat…b?1161807723500
O16 - DPF: {9059F30F-4EB1-4BD2-9FDC-36F43A218F4A} (Microsoft RDP Client Control (redist)) - http://first.groupe-esc-rouen.fr/firstgate…/tsac/msrdp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{0B2AD638-6D19-4199-A277-7CC132AF8C8F}: NameServer = 86.64.145.140 84.103.237.140
O17 - HKLM\System\CS1\Services\Tcpip\..\{0B2AD638-6D19-4199-A277-7CC132AF8C8F}: NameServer = 86.64.145.140 84.103.237.140
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
———————————————————
AVG Anti-Spyware - Scan Report
———————————————————
+ Created at: 6:52:46 PM 11/27/2006
+ Scan result:
:mozilla.247:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.248:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.249:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.250:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.251:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.252:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.253:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.347:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.348:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.349:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.350:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.351:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.352:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.353:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.354:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.355:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.380:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.413:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.496:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.584:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.606:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Cyril Gedeon\Cookies\cyril gedeon@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.232:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.233:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.28:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.225:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.226:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.177:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.178:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.180:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.181:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.182:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.20:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\Cyril Gedeon\Cookies\cyril gedeon@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.456:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Bfast : Cleaned.
:mozilla.109:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.236:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.265:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned.
:mozilla.266:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned.
:mozilla.88:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.91:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.92:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.130:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.131:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.132:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.73:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.27:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.96:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Estat : Cleaned.
:mozilla.417:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.273:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.230:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.231:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.173:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.174:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.175:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.382:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.391:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.306:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Linksynergy : Cleaned.
:mozilla.307:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Linksynergy : Cleaned.
:mozilla.87:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.529:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.530:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.531:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.261:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.158:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.159:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.160:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.161:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.162:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.163:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.200:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.201:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.202:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.203:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.204:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.205:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.206:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.207:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.551:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Revenue : Cleaned.
:mozilla.167:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.168:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.169:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.170:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.171:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.191:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
:mozilla.192:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
:mozilla.514:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
:mozilla.515:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
:mozilla.524:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
:mozilla.33:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.34:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.35:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.37:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.498:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Spylog : Cleaned.
:mozilla.89:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.90:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.93:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.107:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.94:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.133:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.134:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.135:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.104:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
:mozilla.262:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Yadro : Cleaned.
:mozilla.263:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Yadro : Cleaned.
:mozilla.278:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.78:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.79:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.80:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
::Report end
spy sweep
7:38 PM: Removal process completed. Elapsed time 00:00:10
7:38 PM: Quarantining All Traces: atlas dmt cookie
7:38 PM: Removal process initiated
7:36 PM: Traces Found: 1
7:36 PM: Full Sweep has completed. Elapsed time 00:24:32
7:36 PM: File Sweep Complete, Elapsed Time: 00:18:56
7:29 PM: Warning: Failed to open file "c:\windows\temp\_avast4_\webshlock.txt". The operation completed successfully
7:17 PM: Starting File Sweep
7:17 PM: Cookie Sweep Complete, Elapsed Time: 00:00:01
7:17 PM: c:\documents and settings\cyril gedeon\cookies\cyril gedeon@atdmt[1].txt (ID = 2253)
7:17 PM: Found Spy Cookie: atlas dmt cookie
7:17 PM: Starting Cookie Sweep
7:17 PM: Registry Sweep Complete, Elapsed Time:00:00:25
7:17 PM: Starting Registry Sweep
7:17 PM: Memory Sweep Complete, Elapsed Time: 00:05:07
7:12 PM: Starting Memory Sweep
7:12 PM: Warning: TVolume.Read: read past end of volume size: 0 reading cluster: 0
7:11 PM: Start Full Sweep
7:11 PM: Sweep initiated using definitions version 808
7:11 PM: Spy Sweeper 5.2.3.2125 started
7:11 PM: | Start of Session, Monday, November 27, 2006 |
********
7:11 PM: | End of Session, Monday, November 27, 2006 |
Operation: File Access
Target:
Source: C:\WINDOWS\EXPLORER.EXE
7:11 PM: Tamper Detection
7:02 PM: Access to Hosts file allowed for C:\HGT\AVG ANTI-SPYWARE 7.5\AVGAS.EXE
Keylogger: Off
BHO Shield: On
IE Security Shield: On
Alternate Data Stream (ADS) Execution Shield: On
Startup Shield: On
Common Ad Sites: Off
Hosts File Shield: On
Internet Communication Shield: On
ActiveX Shield: On
Windows Messenger Service Shield: On
IE Favorites Shield: On
Spy Installation Shield: On
Memory Shield: On
IE Hijack Shield: On
IE Tracking Cookies Shield: Off
6:56 PM: Shield States
6:56 PM: Spyware Definitions: 808
6:56 PM: Warning: Virus definitions files are invalid, please update your virus definitions. 220
6:55 PM: Spy Sweeper 5.2.3.2125 started
Operation: Terminate
Target: C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe
Source: C:\WINDOWS\system32\csrss.exe
6:16 PM: Tamper Detection
Operation: Terminate
Target: C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe
Source: C:\WINDOWS\system32\csrss.exe
6:16 PM: Tamper Detection
5:52 PM: Access to Hosts file allowed for C:\HGT\AVG ANTI-SPYWARE 7.5\AVGAS.EXE
Operation: File Access
Target:
Source: C:\HGT\AVG ANTI-SPYWARE 7.5\AVGAS.EXE
5:28 PM: Tamper Detection
4:51 PM: Access to Hosts file allowed for C:\HGT\AVG ANTI-SPYWARE 7.5\AVGAS.EXE
4:49 PM: Access to Hosts file allowed for C:\HGT\AVG ANTI-SPYWARE 7.5\AVGAS.EXE
4:47 PM: Access to Hosts file allowed for C:\HGT\AVG ANTI-SPYWARE 7.5\AVGAS.EXE
Keylogger: Off
BHO Shield: On
IE Security Shield: On
Alternate Data Stream (ADS) Execution Shield: On
Startup Shield: On
Common Ad Sites: Off
Hosts File Shield: On
Internet Communication Shield: On
ActiveX Shield: On
Windows Messenger Service Shield: On
IE Favorites Shield: On
Spy Installation Shield: On
Memory Shield: On
IE Hijack Shield: On
IE Tracking Cookies Shield: Off
11:52 AM: Shield States
11:52 AM: Spyware Definitions: 808
11:52 AM: Warning: Virus definitions files are invalid, please update your virus definitions. 220
11:52 AM: Spy Sweeper 5.2.3.2125 started
3:35 AM: | End of Session, Monday, November 27, 2006 |
Keylogger: Off
BHO Shield: On
IE Security Shield: On
Alternate Data Stream (ADS) Execution Shield: On
Startup Shield: On
Common Ad Sites: Off
Hosts File Shield: On
Internet Communication Shield: On
ActiveX Shield: On
Windows Messenger Service Shield: On
IE Favorites Shield: On
Spy Installation Shield: On
Memory Shield: On
IE Hijack Shield: On
IE Tracking Cookies Shield: Off
3:32 AM: Shield States
3:32 AM: Spyware Definitions: 790
3:32 AM: Warning: Virus definitions files are invalid, please update your virus definitions. 220
3:32 AM: Spy Sweeper 5.2.3.2125 started
3:32 AM: Spy Sweeper 5.2.3.2125 started
3:32 AM: | Start of Session, Monday, November 27, 2006 |
********
3:37 AM: | End of Session, Monday, November 27, 2006 |
3:37 AM: Your definitions are up to date.
3:36 AM: There is a problem reaching the server. The cause may be in your connection, or on the server. Please try again later.
3:36 AM: None
3:36 AM: Traces Found: 0
3:36 AM: Memory Sweep Complete, Elapsed Time: 00:00:43
3:36 AM: Sweep Canceled
3:35 AM: Starting Memory Sweep
3:35 AM: Warning: TVolume.Read: read past end of volume size: 0 reading cluster: 0
3:35 AM: Start Full Sweep
3:35 AM: Sweep initiated using definitions version 808
3:35 AM: Spy Sweeper 5.2.3.2125 started
3:35 AM: | Start of Session, Monday, November 27, 2006 |
********
4:19 AM: | End of Session, Monday, November 27, 2006 |
4:17 AM: Removal process completed. Elapsed time 00:00:52
4:16 AM: Quarantining All Traces: hotbar/zango
4:16 AM: Quarantining All Traces: 2o7.net cookie
4:16 AM: Quarantining All Traces: mediaplex cookie
4:16 AM: Removal process initiated
4:08 AM: Traces Found: 3
4:08 AM: Full Sweep has completed. Elapsed time 00:26:01
4:08 AM: File Sweep Complete, Elapsed Time: 00:20:32
4:03 AM: Warning: Stream read error
4:03 AM: Warning: Stream read error
4:02 AM: Warning: Failed to access drive F:
4:00 AM: Warning: Failed to open file "c:\windows\temp\_avast4_\webshlock.txt". The operation completed successfully
4:00 AM: Warning: Failed to open file "c:\documents and settings\cyril gedeon\application data\mozilla\firefox\profiles\w3y4yuic.default\parent.lock". The operation completed successfully
3:51 AM: C:\Documents and Settings\Cyril Gedeon\Local Settings\Temp\uz4tbjjf.exe (ID = 280632)
3:51 AM: Found Adware: hotbar/zango
3:48 AM: Starting File Sweep
3:48 AM: Cookie Sweep Complete, Elapsed Time: 00:00:01
3:48 AM: c:\documents and settings\cyril gedeon\cookies\cyril gedeon@msnportal.112.2o7[1].txt (ID = 1958)
3:48 AM: Found Spy Cookie: 2o7.net cookie
3:48 AM: c:\documents and settings\cyril gedeon\cookies\cyril gedeon@mediaplex[1].txt (ID = 6442)
3:48 AM: Found Spy Cookie: mediaplex cookie
3:48 AM: Starting Cookie Sweep
3:48 AM: Registry Sweep Complete, Elapsed Time:00:00:22
3:47 AM: Starting Registry Sweep
3:47 AM: Memory Sweep Complete, Elapsed Time: 00:10:21
3:37 AM: Starting Memory Sweep
3:37 AM: Warning: TVolume.Read: read past end of volume size: 0 reading cluster: 0
3:37 AM: Start Full Sweep
3:37 AM: Sweep initiated using definitions version 808
3:37 AM: Spy Sweeper 5.2.3.2125 started
3:37 AM: | Start of Session, Monday, November 27, 2006 |
********
4:21 AM: None
4:21 AM: Traces Found: 0
4:21 AM: Memory Sweep Complete, Elapsed Time: 00:01:16
4:20 AM: Sweep Canceled
4:20 AM: Starting Memory Sweep
4:19 AM: Warning: TVolume.Read: read past end of volume size: 0 reading cluster: 0
4:19 AM: Start Full Sweep
4:19 AM: Sweep initiated using definitions version 808
4:19 AM: Spy Sweeper 5.2.3.2125 started
4:19 AM: | Start of Session, Monday, November 27, 2006 |
********
Logfile of HijackThis v1.99.1
Scan saved at 3:43:45 AM, on 11/27/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\RTHDCPL.EXE
C:\WINDOWS\ALCMTR.EXE
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe
C:\AddOn\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe
C:\AddOn\Fujitsu\Application Panel\QuickTouch.exe
C:\Program Files\Fujitsu\BtnHnd\BtnHnd.exe
C:\WINDOWS\AGRSMMSG.exe
C:\Program Files\ltmoh\Ltmoh.exe
C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe
C:\Program Files\Ahead\InCD\InCD.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\MSN Messenger\MsnMsgr.Exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe
C:\Program Files\Webroot\Spy Sweeper\SSU.EXE
C:\Program Files\Internet Explorer\iexplore.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\WinRAR\WinRAR.exe
C:\hgt\HijackThis1991.exe
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://red.clientapps.yahoo.com/customize/…/search/ie.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://red.clientapps.yahoo.com/customize/…//www.yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.yahoo.com/?.home=ytie
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/?.home=ytie
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = http://red.clientapps.yahoo.com/customize/…//www.yahoo.com
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
O2 - BHO: IeCatch2 Class - {A5366673-E8CA-11D3-9CD9-0090271D075B} - C:\PROGRA~1\FlashGet\jccatch.dll
O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\en-us\msntb.dll
O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\MSN Toolbar\01.02.5000.1021\en-us\msntb.dll
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [SynTPLpr] "C:\Program Files\Synaptics\SynTP\SynTPLpr.exe"
O4 - HKLM\..\Run: [SynTPEnh] "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
O4 - HKLM\..\Run: [LoadFUJ02E3] "C:\Program Files\Fujitsu\FUJ02E3\FUJ02E3.exe"
O4 - HKLM\..\Run: [IndicatorUtility] "C:\AddOn\Fujitsu\Fujitsu Hotkey Utility\IndicatorUty.exe"
O4 - HKLM\..\Run: [LoadFujitsuQuickTouch] "C:\AddOn\Fujitsu\Application Panel\QuickTouch.exe"
O4 - HKLM\..\Run: [LoadBtnHnd] "C:\Program Files\Fujitsu\BtnHnd\BtnHnd.exe"
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [LtMoh] "C:\Program Files\ltmoh\Ltmoh.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_02\bin\jusched.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [InCD] "C:\Program Files\Ahead\InCD\InCD.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [VirtualCloneDrive] "C:\Program Files\Elaborate Bytes\VirtualCloneDrive\VCDDaemon.exe" /s
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SpySweeper] "C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe" /startintray
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MsnMsgr] "C:\Program Files\MSN Messenger\MsnMsgr.Exe" /background
O4 - HKCU\..\Run: [OM_Monitor] C:\Program Files\OLYMPUS\OLYMPUS Master\Monitor.exe -NoStart
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Startup: Sun clock 4.lnk = ?
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O8 - Extra context menu item: Download All by FlashGet - C:\Program Files\FlashGet\jc_all.htm
O8 - Extra context menu item: Download using FlashGet - C:\Program Files\FlashGet\jc_link.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra 'Tools' menuitem: &FlashGet - {D6E814A0-E0C5-11d4-8D29-0050BA6940E3} - C:\PROGRA~1\FlashGet\flashget.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://spaces.msn.com//PhotoUpload/MsnPUpld.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdat…b?1161807723500
O16 - DPF: {9059F30F-4EB1-4BD2-9FDC-36F43A218F4A} (Microsoft RDP Client Control (redist)) - http://first.groupe-esc-rouen.fr/firstgate…/tsac/msrdp.cab
O17 - HKLM\System\CCS\Services\Tcpip\..\{0B2AD638-6D19-4199-A277-7CC132AF8C8F}: NameServer = 86.64.145.140 84.103.237.140
O17 - HKLM\System\CS1\Services\Tcpip\..\{0B2AD638-6D19-4199-A277-7CC132AF8C8F}: NameServer = 86.64.145.140 84.103.237.140
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
———————————————————
AVG Anti-Spyware - Scan Report
———————————————————
+ Created at: 6:52:46 PM 11/27/2006
+ Scan result:
:mozilla.247:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.248:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.249:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.250:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.251:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.252:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.253:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.347:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.348:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.349:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.350:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.351:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.352:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.353:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.354:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.355:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.380:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.413:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.496:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.584:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.606:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
C:\Documents and Settings\Cyril Gedeon\Cookies\cyril gedeon@msnportal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.232:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.233:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.28:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.225:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.226:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.177:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.178:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.180:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.181:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.182:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.20:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
C:\Documents and Settings\Cyril Gedeon\Cookies\cyril gedeon@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.456:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Bfast : Cleaned.
:mozilla.109:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.236:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.265:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned.
:mozilla.266:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned.
:mozilla.88:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.91:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.92:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.130:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.131:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.132:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.73:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.27:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.96:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Estat : Cleaned.
:mozilla.417:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.273:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.230:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.231:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.173:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.174:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.175:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.382:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.391:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.306:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Linksynergy : Cleaned.
:mozilla.307:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Linksynergy : Cleaned.
:mozilla.87:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.529:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.530:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.531:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.261:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.158:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.159:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.160:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.161:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.162:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.163:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.200:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.201:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.202:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.203:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.204:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.205:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.206:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.207:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Reliablestats : Cleaned.
:mozilla.551:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Revenue : Cleaned.
:mozilla.167:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.168:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.169:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.170:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.171:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.191:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
:mozilla.192:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
:mozilla.514:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
:mozilla.515:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
:mozilla.524:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
:mozilla.33:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.34:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.35:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.37:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Smartadserver : Cleaned.
:mozilla.498:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Spylog : Cleaned.
:mozilla.89:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.90:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.93:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
:mozilla.107:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned.
:mozilla.94:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
:mozilla.133:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.134:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.135:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Weborama : Cleaned.
:mozilla.104:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned.
:mozilla.262:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Yadro : Cleaned.
:mozilla.263:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Yadro : Cleaned.
:mozilla.278:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
:mozilla.78:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.79:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
:mozilla.80:C:\Documents and Settings\Cyril Gedeon\Application Data\Mozilla\Firefox\Profiles\w3y4yuic.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
::Report end
spy sweep
7:38 PM: Removal process completed. Elapsed time 00:00:10
7:38 PM: Quarantining All Traces: atlas dmt cookie
7:38 PM: Removal process initiated
7:36 PM: Traces Found: 1
7:36 PM: Full Sweep has completed. Elapsed time 00:24:32
7:36 PM: File Sweep Complete, Elapsed Time: 00:18:56
7:29 PM: Warning: Failed to open file "c:\windows\temp\_avast4_\webshlock.txt". The operation completed successfully
7:17 PM: Starting File Sweep
7:17 PM: Cookie Sweep Complete, Elapsed Time: 00:00:01
7:17 PM: c:\documents and settings\cyril gedeon\cookies\cyril gedeon@atdmt[1].txt (ID = 2253)
7:17 PM: Found Spy Cookie: atlas dmt cookie
7:17 PM: Starting Cookie Sweep
7:17 PM: Registry Sweep Complete, Elapsed Time:00:00:25
7:17 PM: Starting Registry Sweep
7:17 PM: Memory Sweep Complete, Elapsed Time: 00:05:07
7:12 PM: Starting Memory Sweep
7:12 PM: Warning: TVolume.Read: read past end of volume size: 0 reading cluster: 0
7:11 PM: Start Full Sweep
7:11 PM: Sweep initiated using definitions version 808
7:11 PM: Spy Sweeper 5.2.3.2125 started
7:11 PM: | Start of Session, Monday, November 27, 2006 |
********
7:11 PM: | End of Session, Monday, November 27, 2006 |
Operation: File Access
Target:
Source: C:\WINDOWS\EXPLORER.EXE
7:11 PM: Tamper Detection
7:02 PM: Access to Hosts file allowed for C:\HGT\AVG ANTI-SPYWARE 7.5\AVGAS.EXE
Keylogger: Off
BHO Shield: On
IE Security Shield: On
Alternate Data Stream (ADS) Execution Shield: On
Startup Shield: On
Common Ad Sites: Off
Hosts File Shield: On
Internet Communication Shield: On
ActiveX Shield: On
Windows Messenger Service Shield: On
IE Favorites Shield: On
Spy Installation Shield: On
Memory Shield: On
IE Hijack Shield: On
IE Tracking Cookies Shield: Off
6:56 PM: Shield States
6:56 PM: Spyware Definitions: 808
6:56 PM: Warning: Virus definitions files are invalid, please update your virus definitions. 220
6:55 PM: Spy Sweeper 5.2.3.2125 started
Operation: Terminate
Target: C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe
Source: C:\WINDOWS\system32\csrss.exe
6:16 PM: Tamper Detection
Operation: Terminate
Target: C:\Program Files\Webroot\Spy Sweeper\SpySweeperUI.exe
Source: C:\WINDOWS\system32\csrss.exe
6:16 PM: Tamper Detection
5:52 PM: Access to Hosts file allowed for C:\HGT\AVG ANTI-SPYWARE 7.5\AVGAS.EXE
Operation: File Access
Target:
Source: C:\HGT\AVG ANTI-SPYWARE 7.5\AVGAS.EXE
5:28 PM: Tamper Detection
4:51 PM: Access to Hosts file allowed for C:\HGT\AVG ANTI-SPYWARE 7.5\AVGAS.EXE
4:49 PM: Access to Hosts file allowed for C:\HGT\AVG ANTI-SPYWARE 7.5\AVGAS.EXE
4:47 PM: Access to Hosts file allowed for C:\HGT\AVG ANTI-SPYWARE 7.5\AVGAS.EXE
Keylogger: Off
BHO Shield: On
IE Security Shield: On
Alternate Data Stream (ADS) Execution Shield: On
Startup Shield: On
Common Ad Sites: Off
Hosts File Shield: On
Internet Communication Shield: On
ActiveX Shield: On
Windows Messenger Service Shield: On
IE Favorites Shield: On
Spy Installation Shield: On
Memory Shield: On
IE Hijack Shield: On
IE Tracking Cookies Shield: Off
11:52 AM: Shield States
11:52 AM: Spyware Definitions: 808
11:52 AM: Warning: Virus definitions files are invalid, please update your virus definitions. 220
11:52 AM: Spy Sweeper 5.2.3.2125 started
3:35 AM: | End of Session, Monday, November 27, 2006 |
Keylogger: Off
BHO Shield: On
IE Security Shield: On
Alternate Data Stream (ADS) Execution Shield: On
Startup Shield: On
Common Ad Sites: Off
Hosts File Shield: On
Internet Communication Shield: On
ActiveX Shield: On
Windows Messenger Service Shield: On
IE Favorites Shield: On
Spy Installation Shield: On
Memory Shield: On
IE Hijack Shield: On
IE Tracking Cookies Shield: Off
3:32 AM: Shield States
3:32 AM: Spyware Definitions: 790
3:32 AM: Warning: Virus definitions files are invalid, please update your virus definitions. 220
3:32 AM: Spy Sweeper 5.2.3.2125 started
3:32 AM: Spy Sweeper 5.2.3.2125 started
3:32 AM: | Start of Session, Monday, November 27, 2006 |
********
3:37 AM: | End of Session, Monday, November 27, 2006 |
3:37 AM: Your definitions are up to date.
3:36 AM: There is a problem reaching the server. The cause may be in your connection, or on the server. Please try again later.
3:36 AM: None
3:36 AM: Traces Found: 0
3:36 AM: Memory Sweep Complete, Elapsed Time: 00:00:43
3:36 AM: Sweep Canceled
3:35 AM: Starting Memory Sweep
3:35 AM: Warning: TVolume.Read: read past end of volume size: 0 reading cluster: 0
3:35 AM: Start Full Sweep
3:35 AM: Sweep initiated using definitions version 808
3:35 AM: Spy Sweeper 5.2.3.2125 started
3:35 AM: | Start of Session, Monday, November 27, 2006 |
********
4:19 AM: | End of Session, Monday, November 27, 2006 |
4:17 AM: Removal process completed. Elapsed time 00:00:52
4:16 AM: Quarantining All Traces: hotbar/zango
4:16 AM: Quarantining All Traces: 2o7.net cookie
4:16 AM: Quarantining All Traces: mediaplex cookie
4:16 AM: Removal process initiated
4:08 AM: Traces Found: 3
4:08 AM: Full Sweep has completed. Elapsed time 00:26:01
4:08 AM: File Sweep Complete, Elapsed Time: 00:20:32
4:03 AM: Warning: Stream read error
4:03 AM: Warning: Stream read error
4:02 AM: Warning: Failed to access drive F:
4:00 AM: Warning: Failed to open file "c:\windows\temp\_avast4_\webshlock.txt". The operation completed successfully
4:00 AM: Warning: Failed to open file "c:\documents and settings\cyril gedeon\application data\mozilla\firefox\profiles\w3y4yuic.default\parent.lock". The operation completed successfully
3:51 AM: C:\Documents and Settings\Cyril Gedeon\Local Settings\Temp\uz4tbjjf.exe (ID = 280632)
3:51 AM: Found Adware: hotbar/zango
3:48 AM: Starting File Sweep
3:48 AM: Cookie Sweep Complete, Elapsed Time: 00:00:01
3:48 AM: c:\documents and settings\cyril gedeon\cookies\cyril gedeon@msnportal.112.2o7[1].txt (ID = 1958)
3:48 AM: Found Spy Cookie: 2o7.net cookie
3:48 AM: c:\documents and settings\cyril gedeon\cookies\cyril gedeon@mediaplex[1].txt (ID = 6442)
3:48 AM: Found Spy Cookie: mediaplex cookie
3:48 AM: Starting Cookie Sweep
3:48 AM: Registry Sweep Complete, Elapsed Time:00:00:22
3:47 AM: Starting Registry Sweep
3:47 AM: Memory Sweep Complete, Elapsed Time: 00:10:21
3:37 AM: Starting Memory Sweep
3:37 AM: Warning: TVolume.Read: read past end of volume size: 0 reading cluster: 0
3:37 AM: Start Full Sweep
3:37 AM: Sweep initiated using definitions version 808
3:37 AM: Spy Sweeper 5.2.3.2125 started
3:37 AM: | Start of Session, Monday, November 27, 2006 |
********
4:21 AM: None
4:21 AM: Traces Found: 0
4:21 AM: Memory Sweep Complete, Elapsed Time: 00:01:16
4:20 AM: Sweep Canceled
4:20 AM: Starting Memory Sweep
4:19 AM: Warning: TVolume.Read: read past end of volume size: 0 reading cluster: 0
4:19 AM: Start Full Sweep
4:19 AM: Sweep initiated using definitions version 808
4:19 AM: Spy Sweeper 5.2.3.2125 started
4:19 AM: | Start of Session, Monday, November 27, 2006 |
********