This is a read-only archive. No new posts or registrations. Privacy Page
Spyware / Malware / Virus Removal

Log/Checkup

11 min read

This thread's last reply is from . Advice, software, and links below may be out of date — treat specific steps and download links with caution.

Looking for the outcome? Ask AI

Logfile of HijackThis v1.99.1
Scan saved at 11:59:14 PM, on 2/5/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\DISC\DISCover.exe
C:\Program Files\DISC\DiscUpdMgr.exe
C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\HP\KBD\KBD.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\rundll32.exe
C:\program files\steam\steam.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Compaq Connections\5577497\Program\Compaq Connections.exe
C:\WINDOWS\arservice.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\DISC\DiscStreamHub.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
c:\windows\system\hpsysdrv.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Last.fm\LastFM.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Compaq_Administrator\Desktop\Random\hijack this\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a…&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a…&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a…&pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a…&pf=desktop
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a…&pf=desktop
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: URLLink - {4A2AACF3-ADF6-11D5-98A9-00E018981B9E} - C:\Program Files\NewDotNet\newdotnet7_48.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: HpWebHelper - {AAAE832A-5FFF-4661-9C8F-369692D1DCB9} - C:\WINDOWS\pchealth\helpctr\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\plugin\WebHelper.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [AlwaysReady Power Message APP] ARPWRMSG.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [DISCover] C:\Program Files\DISC\DISCover.exe
O4 - HKLM\..\Run: [DiscUpdateManager] C:\Program Files\DISC\DiscUpdMgr.exe
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [Reminder] "C:\Windows\Creator\Remind_XP.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [ISUSPM Startup] c:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [New.net Startup] rundll32 C:\PROGRA~1\NEWDOT~1\NEWDOT~1.DLL,ClientStartup -s
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_7 -reboot 1
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Compaq Connections.lnk = C:\Program Files\Compaq Connections\5577497\Program\Compaq Connections.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Internet Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Internet Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://*.trymedia.com (HKLM)
O16 - DPF: {CD995117-98E5-4169-9920-6C12D4C0B548} (HGPlugin9USA Class) - http://gamedownload.ijjimax.com/gamedownlo…GPlugin9USA.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: InstallShield Licensing Service - Macrovision - C:\Program Files\Common Files\InstallShield Shared\Service\InstallShield Licensing Service.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe (file missing)
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe



Just want to make sure nothing's wrong.
I'm sorry you've waited so long for a reply. As you've probably noticed, we're quite busy. If you still require help, please post a fresh HijackThis log into this same thread, and I will be happy to have a look at it for you.
Alright, it's cool.

Logfile of HijackThis v1.99.1
Scan saved at 10:01:03 PM, on 2/15/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\DISC\DISCover.exe
C:\Program Files\DISC\DiscUpdMgr.exe
C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\HP\KBD\KBD.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\WINDOWS\system32\rundll32.exe
C:\program files\steam\steam.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Compaq Connections\5577497\Program\Compaq Connections.exe
C:\WINDOWS\arservice.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\Program Files\Viewpoint\Common\ViewpointService.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\DISC\DiscStreamHub.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
c:\windows\system\hpsysdrv.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Last.fm\LastFM.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\AIM\aim.exe
c:\progra~1\common~1\instal~1\update~1\isuspm.exe
c:\Program Files\Common Files\InstallShield\UpdateService\agent.exe
C:\Program Files\Winamp\winamp.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Compaq_Administrator\Desktop\Random\hijack this\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a…&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a…&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a…&pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a…&pf=desktop
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a…&pf=desktop
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: URLLink - {4A2AACF3-ADF6-11D5-98A9-00E018981B9E} - C:\Program Files\NewDotNet\newdotnet7_48.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: HpWebHelper - {AAAE832A-5FFF-4661-9C8F-369692D1DCB9} - C:\WINDOWS\pchealth\helpctr\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\plugin\WebHelper.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [AlwaysReady Power Message APP] ARPWRMSG.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [DISCover] C:\Program Files\DISC\DISCover.exe
O4 - HKLM\..\Run: [DiscUpdateManager] C:\Program Files\DISC\DiscUpdMgr.exe
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [Reminder] "C:\Windows\Creator\Remind_XP.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [ISUSPM Startup] c:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [New.net Startup] rundll32 C:\PROGRA~1\NEWDOT~1\NEWDOT~1.DLL,ClientStartup -s
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_7 -reboot 1
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Compaq Connections.lnk = C:\Program Files\Compaq Connections\5577497\Program\Compaq Connections.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Internet Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Internet Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://*.trymedia.com (HKLM)
O16 - DPF: {CD995117-98E5-4169-9920-6C12D4C0B548} (HGPlugin9USA Class) - http://gamedownload.ijjimax.com/gamedownlo…GPlugin9USA.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: InstallShield Licensing Service - Macrovision - C:\Program Files\Common Files\InstallShield Shared\Service\InstallShield Licensing Service.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe (file missing)
O23 - Service: Viewpoint Manager Service - Viewpoint Corporation - C:\Program Files\Viewpoint\Common\ViewpointService.exe


There you go.
Viewpoint Manager has been considered as foistware instead of malware since it is installed without the user's approval, but it didn't spy or do anything "bad." Based on the article at the following link, this has changed…

Read this article: http://www.clickz.com/news/article.php/3561546

I suggest you remove the program now. Go to Start > Settings > Control Panel > Add/Remove Programs and remove the following programs if present.
  • Viewpoint
  • Viewpoint Manager
  • Viewpoint Media Player
Also, while in Add/Remove Programs, I suggest you remove NewDotNet unless you deliberately installed it. It is extremely dubious and commercially sponsored. Look for New.Net or NewDotNet. If it is listed, remove it. If it is not listed, follow these instructions:
  • From a computer that has Internet access, click on the following link:
    http://www.new.net/support/uninstall6_90.exe.
  • Download and save uninstall6_90.exe to the Desktop.
  • Go to the Desktop and double-click on uninstall6_90.exe
  • Click on the OK button.
  • After removal, you may be prompted to reboot. Please reboot even if not prompted.
Post a fresh HijackThis log into this same topic, and we will see what remains to be done.
Logfile of HijackThis v1.99.1
Scan saved at 2:12:38 PM, on 2/18/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\DISC\DISCover.exe
C:\Program Files\DISC\DiscUpdMgr.exe
C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe
C:\HP\KBD\KBD.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\program files\steam\steam.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Compaq Connections\5577497\Program\Compaq Connections.exe
C:\WINDOWS\arservice.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\DISC\DiscStreamHub.exe
c:\windows\system\hpsysdrv.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Winamp\winamp.exe
C:\Program Files\Last.fm\LastFM.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Compaq_Administrator\Desktop\Random\hijack this\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a…&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a…&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a…&pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a…&pf=desktop
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a…&pf=desktop
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: HpWebHelper - {AAAE832A-5FFF-4661-9C8F-369692D1DCB9} - C:\WINDOWS\pchealth\helpctr\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\plugin\WebHelper.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [AlwaysReady Power Message APP] ARPWRMSG.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [DISCover] C:\Program Files\DISC\DISCover.exe
O4 - HKLM\..\Run: [DiscUpdateManager] C:\Program Files\DISC\DiscUpdMgr.exe
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [Reminder] "C:\Windows\Creator\Remind_XP.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_10\bin\jusched.exe"
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [ISUSPM Startup] c:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_7 -reboot 1
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Compaq Connections.lnk = C:\Program Files\Compaq Connections\5577497\Program\Compaq Connections.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_10\bin\ssv.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Internet Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Internet Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: http://*.trymedia.com (HKLM)
O16 - DPF: {CD995117-98E5-4169-9920-6C12D4C0B548} (HGPlugin9USA Class) - http://gamedownload.ijjimax.com/gamedownlo…GPlugin9USA.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: InstallShield Licensing Service - Macrovision - C:\Program Files\Common Files\InstallShield Shared\Service\InstallShield Licensing Service.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe (file missing)
  • I see absolutely no sign of an antivirus on this computer. You need to install one immediately or you will be very likely to have an infected system soon. Two good antivirus programs are:

    Avast and AVG Both have free versions for personal use.

  • Next, close all programs leaving only HijackThis running. Place a check against each of the following, making sure you get them all and not any others by mistake:

    Please be aware that anything placed in your Trusted Zone pretty much has unfettered access to your computer. If you do not trust this site to that degree, or if you did not add this O15 entry to your Trusted Zone because it was necessary to facilitate access, you should remove it with HJT…

    O15 - Trusted Zone: http://*.trymedia.com (HKLM)

    O16 - DPF: {CD995117-98E5-4169-9920-6C12D4C0B548} (HGPlugin9USA Class) - http://gamedownload.ijjimax.com/gamedownlo…GPlugin9USA.cab


    Click on Fix Checked when finished and exit HijackThis.

Your Java is out of date. Older versions have vulnerabilities that malware can use to infect your system. Please follow these steps to remove older version Java components and update to the latest version…

Updating Java:
  • Download the latest version of Java Runtime Environment (JRE) 6.0.
  • Scroll down to where it says "The J2SE Runtime Environment (JRE) allows end-users to run Java applications."
  • Click the "Download" button to the right.
  • Check the box that says: "Accept License Agreement."
  • The page will refresh.
  • Click on the link to download Windows Offline Installation with or without Multi-language and save to your desktop.
  • Close any programs you may have running - especially your web browser.
  • Go to Start > Control Panel double-click on Add/Remove programs and remove all older versions of Java.
  • Check any item with Java Runtime Environment (JRE or J2SE) in the name.
  • Click the Remove or Change/Remove button.
  • Repeat as many times as necessary to remove each Java version.
  • Reboot your computer once all Java components are removed.
  • Then from your desktop double-click on jre-6-windows-i586.exe to install the newest version.

Download CCleaner from here to clean temp files from your computer.
  • Double click on the file to start the installation of the program.
  • Select your language and click OK, then next.
  • Read the license agreement and click I Agree.
  • Click next to use the default install location. Click Install then finish to complete installation.
  • Double click the CCleaner shortcut on the desktop to start the program.
  • On the "Windows" tab, under "Internet Explorer," uncheck "Cookies" if you do not want them deleted. (If deleted, you will likely need to reenter your passwords at all sites where a cookie is used to recognize you when you visit).
  • If you use either the Firefox or Mozilla browsers, the box to uncheck for "Cookies" is on the Applications tab, under Firefox/Mozilla.
  • Click on the "Options" icon at the left side of the window, then click on "Advanced."
    deselect "Only delete files in Windows Temp folders older than 48 hours."
  • Click on the "Cleaner" icon on the left side of the window, then click Run Cleaner to run the program.
  • Caution: It is not recommended that you use the "Issues" feature unless you are very familiar with the registry as it has been known to find legitimate items.
  • After CCleaner has completed its process, click Exit.


Please download AVG Anti-Spyware to your Desktop or to your usual Download Folder.
http://www.ewido.net/en/download/
  • Install AVG Anti-Spyware by double clicking the installer.
  • Follow the prompts. Make sure that Launch AVG Anti-Spyware is checked.
  • On the main screen under Your Computer's security.
    • Click on Change state next to Resident shield. It should now change to inactive.
    • Click on Change state next to Automatic updates. It should now change to inactive.
    • Next to Last Update, click on Update now. (You will need an active internet connection to perform this)
    • Wait until you see the Update succesfull message.
  • Right-click the AVG Anti-Spyware Tray Icon and uncheck Start with Windows.
  • Right-click the AVG Anti-Spyware Tray Icon and select Exit. Confirm by clicking Yes.
If you are having problems with the updater, you can use this link to manually update ewido.
AVG Anti-Spyware manual updates.
Download the Full database to your Desktop or to your usual Download Folder and install it by double clicking the file. Make sure that AVG Anti-Spyware is closed before installing the update.

Reboot into safe mode, this way:
Restart the computer
Immediately begin tapping the <F8> key.
Use the arrow keys to highlight Safe Mode and press the <Enter> key.

Close ALL open Windows / Programs / Folders. Please start AVG Anti-Spyware and run a full scan.
  • Click on Scanner on the toolbar.
  • Click on the Settings tab.
    • Under How to act?
      • Click on Recommended Action and choose Quarantine from the popup menu.
    • Under How to scan?
      • All checkboxes should be ticked.
    • Under Possibly unwanted software:
      • All checkboxes should be ticked.
    • Under Reports:
      • Select Automatically generate report after every scan and uncheck Only if threats were found.
    • Under What to scan?
      • Select Scan every file.
  • Click on the Scan tab.
  • Click on Complete System Scan to start the scan process.
  • Let the program scan the machine.
  • When the scan has finished, follow the instructions below.
    IMPORTANT : Don't click on the "Save Scan Report" button before you did hit the "Apply all Actions" button.
    • Make sure that Set all elements to: shows Quarantine (1), if not click on the link and choose Quarantine from the popup menu. (2)
    • At the bottom of the window click on the Apply all Actions button. (3)
      [external image: Posted Image]
  • When done, click the Save Scan Report button. (4)
    • Click the Save Report as button.
    • Save the report to your Desktop.
  • Right-click the AVG Anti-Spyware Tray Icon and select Exit. Confirm by clicking Yes.
Reboot in Normal Mode.

Post a fresh HijackThis log and the AVG Anti-Spyware Report into this same topic and also let me know how your system is doing.
Here's the Hijack This log.


Logfile of HijackThis v1.99.1
Scan saved at 1:53:16 AM, on 2/21/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\RTHDCPL.EXE
C:\Program Files\DISC\DISCover.exe
C:\Program Files\DISC\DiscUpdMgr.exe
C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe
C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
C:\Program Files\Winamp\winampa.exe
C:\HP\KBD\KBD.EXE
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Java\jre1.6.0\bin\jusched.exe
C:\program files\steam\steam.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\Compaq Connections\5577497\Program\Compaq Connections.exe
C:\WINDOWS\arservice.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Common Files\LightScribe\LSSrvc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\nvsvc32.exe
C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\eHome\ehmsas.exe
C:\Program Files\DISC\DiscStreamHub.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Winamp\winamp.exe
C:\Program Files\Last.fm\LastFM.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Compaq_Administrator\Desktop\Random\hijack this\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a…&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a…&pf=desktop
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a…&pf=desktop
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a…&pf=desktop
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&a…&pf=desktop
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0\bin\ssv.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: HpWebHelper - {AAAE832A-5FFF-4661-9C8F-369692D1DCB9} - C:\WINDOWS\pchealth\helpctr\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\plugin\WebHelper.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
O4 - HKLM\..\Run: [AlwaysReady Power Message APP] ARPWRMSG.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [DISCover] C:\Program Files\DISC\DISCover.exe
O4 - HKLM\..\Run: [DiscUpdateManager] C:\Program Files\DISC\DiscUpdMgr.exe
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [HPBootOp] "C:\Program Files\Hewlett-Packard\HP Boot Optimizer\HPBootOp.exe" /run
O4 - HKLM\..\Run: [Reminder] "C:\Windows\Creator\Remind_XP.exe"
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\HP\HP Software Update\HPwuSchd2.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [KBD] C:\HP\KBD\KBD.EXE
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [ISUSPM Startup] c:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\isuspm.exe -startup
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0\bin\jusched.exe"
O4 - HKCU\..\Run: [Steam] "c:\program files\steam\steam.exe" -silent
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [STYLEXP] C:\Program Files\TGTSoft\StyleXP\StyleXP.exe -Hide
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [updateMgr] "C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe" AcRdB7_0_7 -reboot 1
O4 - HKCU\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Compaq Connections.lnk = C:\Program Files\Compaq Connections\5577497\Program\Compaq Connections.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0\bin\npjpi160.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Internet Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra 'Tools' menuitem: Internet Connection Help - {E2D4D26B-0180-43a4-B05F-462D6D54C789} - C:\WINDOWS\PCHEALTH\HELPCTR\Vendors\CN=Hewlett-Packard,L=Cupertino,S=Ca,C=US\IEButton\support.htm
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: InstallShield Licensing Service - Macrovision - C:\Program Files\Common Files\InstallShield Shared\Service\InstallShield Licensing Service.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: StarWind iSCSI Service (StarWindService) - Rocket Division Software - C:\Program Files\Alcohol Soft\Alcohol 120\StarWind\StarWindService.exe
O23 - Service: StyleXPService - Unknown owner - C:\Program Files\TGTSoft\StyleXP\StyleXPService.exe (file missing)



And the AVG

———————————————————
AVG Anti-Spyware - Scan Report
———————————————————

+ Created at: 1:49:40 AM 2/21/2007

+ Scan result:



C:\Program Files\AWS\WeatherBug\MiniBugTransporter.dll -> Adware.Aws : Cleaned with backup (quarantined).
C:\Documents and Settings\Compaq_Administrator\Desktop\Installation Files\uninstall6_90.exe -> Adware.NewDotNet : Cleaned with backup (quarantined).
C:\Program Files\filesubmit\scarletvs.exe\NNWDAC638.EXE -> Adware.NewDotNet : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{106CF321-99A3-4E3A-9103-1BD027606A99}\RP128\A0015720.exe -> Adware.NewDotNet : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{106CF321-99A3-4E3A-9103-1BD027606A99}\RP130\A0015918.dll -> Adware.NewDotNet : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{106CF321-99A3-4E3A-9103-1BD027606A99}\RP167\A0021356.exe -> Adware.NewDotNet : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{106CF321-99A3-4E3A-9103-1BD027606A99}\RP167\A0021357.exe -> Adware.NewDotNet : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{106CF321-99A3-4E3A-9103-1BD027606A99}\RP194\A0027398.dll -> Adware.NewDotNet : Cleaned with backup (quarantined).
C:\WINDOWS\NDNuninstall6_38.exe -> Adware.NewDotNet : Cleaned with backup (quarantined).
C:\WINDOWS\NDNuninstall7_22.exe -> Adware.NewDotNet : Cleaned with backup (quarantined).
C:\WINDOWS\NDNuninstall7_48.exe -> Adware.NewDotNet : Cleaned with backup (quarantined).
HKU\S-1-5-21-699407381-2175476830-2651802825-1008\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{4A2AACF3-ADF6-11D5-98A9-00E018981B9E} -> Adware.NewDotNet : Cleaned with backup (quarantined).
C:\Program Files\DAEMON Tools\SetupDTSB.exe -> Adware.SaveNow : Cleaned with backup (quarantined).
:mozilla.436:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.21:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.22:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.23:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.24:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.25:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.26:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.27:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.28:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.29:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.30:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.31:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.32:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.33:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.34:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.35:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.36:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.37:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.38:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.39:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.40:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.41:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.42:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.43:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.44:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.45:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.46:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.47:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.48:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.49:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.502:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.50:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.51:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.52:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.53:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.54:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.55:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.56:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.57:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.58:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.59:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.60:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.61:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.62:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.63:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.64:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.65:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.66:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.67:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.68:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.69:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.70:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.771:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.77:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.78:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.79:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.80:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.834:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.862:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.262:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.263:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.264:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.265:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.266:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.267:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.268:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.269:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.270:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.400:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.461:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.495:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.565:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.573:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.583:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.595:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.623:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.664:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.699:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.766:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.791:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.810:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.820:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.835:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.860:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.878:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.879:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.880:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.881:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.882:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.883:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.884:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.885:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.886:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.887:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.888:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.889:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.890:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.891:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.892:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.893:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.894:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.895:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.348:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.349:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.350:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.351:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.352:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.353:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.85:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.86:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.87:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.88:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.89:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.90:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.784:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.785:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.168:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.169:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.170:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.171:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.172:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.17:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.18:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.19:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.20:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.21:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.177:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.60:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
:mozilla.780:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Bfast : Cleaned.
:mozilla.622:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned.
:mozilla.510:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned.
:mozilla.135:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.136:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.137:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.512:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.514:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.515:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
:mozilla.61:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.62:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.63:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.64:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.65:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.80:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.81:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.82:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.83:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.84:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.85:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.87:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.88:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.89:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.90:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
:mozilla.685:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Clickhype : Cleaned.
:mozilla.378:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.379:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.380:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.381:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.382:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.383:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.767:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Com : Cleaned.
:mozilla.325:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.48:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
:mozilla.804:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.806:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
:mozilla.226:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.227:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.228:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.229:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.230:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
:mozilla.398:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.399:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Falkag : Cleaned.
:mozilla.16:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.178:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.179:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.180:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.181:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.182:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.183:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.184:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.31:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.32:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.33:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.34:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
:mozilla.616:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
:mozilla.574:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.575:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.576:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.600:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.601:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.772:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.847:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
:mozilla.117:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.415:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.416:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
:mozilla.133:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.134:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Onestat : Cleaned.
:mozilla.555:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.621:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
:mozilla.660:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.661:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.662:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.663:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
:mozilla.391:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.392:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
:mozilla.173:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.174:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.175:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.176:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.185:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.186:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.187:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.67:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.68:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.69:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.70:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.71:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
:mozilla.837:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Realtracker : Cleaned.
:mozilla.109:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.110:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.111:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.112:C:\Documents and Settings\Guest\Application Data\Mozilla\Firefox\Profiles\klcxsexq.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.568:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.569:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.570:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.571:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.572:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
:mozilla.423:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.424:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.425:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.426:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.427:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.428:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned.
:mozilla.607:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.608:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.609:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.610:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned.
:mozilla.503:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
:mozilla.504:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Sitestat : Cleaned.
:mozilla.629:C:\Documents and Settings\Compaq_Administrator\Application Data\Mozilla\Firefox\Profiles\grxwnioq.default\cookies.txt -> TrackingCookie.Specificclick : Cleaned.
:mozilla.630:C:\Documents and Settings
Although your HijackThis log now appears to be clean, I note that you have apparently opted not to install and run a resident antivirus as suggested.

Please note that your system did have New.Net and many tracking cookies. Although these are not regarded as serious risks, what that tells me is this: If your system can be easily accessed by something as relatively simplistic and easy to get rid of as New.Net, and all those remnants and tracking cookies that AVG Anti-Spyware removed, then it's a sitting duck for today's more sophisticated and extremely malevolent forms of malware and your system isn't protected enough to fight them off.


Since your system seems clean now, this is a good time to clear your existing system restore points and establish a new clean restore point:
  • Go to Start > All Programs > Accessories > System Tools > System Restore
  • Select Create a restore point, and Ok it.
  • Next, go to Start > Run and type in cleanmgr
  • Select the More options tab
  • Choose the option to clean up system restore and OK it.

    This will remove all restore points except the new one you just created.

I do hope that you are keeping XP updated with the monthly security patches issued by Microsoft. Also, your Adobe Reader is in need up updating, and you may have others in need of updating as well. I suggest you may want to take advantage of a free scan to help you see what updates may be missing. I recommend the Secunia Software Inspector:

http://secunia.com/software_inspector/

For information on protecting your system, please read Tony Klein's short article So how did I get infected in the first place? for valuable tips on how to keep your system clean in the future.

Surf safely.
Ah, sorry about the Antivirus thing. I thought AVG was the antivirus program, but there seems to be 2 versions of AVG. I'll download the anti-virus version right now. Thanks for the help. Oh yeah, by the way. How would you suggest I keep my system from being a 'Sitting Duck'? Just keep AVG Antivirus/spyware running at all times?
I can understand your confusion. Yes, AVG Anti-Virus and AVG Anti-Spyware are different products. Both are very good and each have a free for personal use version. It is extremely important that you have an updated antivirus product residing on your system at all times and that it be kept up to date. AVG Anti-Virus should be set to automatically update its definitions.

I suggest you also keep the AVG Anti-Spyware. The free version requires that it be manually updated prior to a scan as it does not automatically update. The paid version does automatically update.

Should you have questions about the above, I believe that Grisoft maintains forums for their AVG products, the link for which may be found at the download site.

Looking over your log, it seems you have no evidence of a third party firewall.

As the term conveys, a firewall is an extra layer of security installed onto computers, which restricts access to systems from the outside world. Firewalls protect against hackers and malicious intruders. You may download a free (for personal use) firewall from one of these vendors:

1) ZoneAlarm
2) Agnitum
3) Sunbelt/Kerio
4) Comodo

If you are using the built-in Windows XP firewall, please keep in mind that it does not block outgoing connections. This means that if you do get malware on your computer it is free to "phone home" for more instructions. Simply put, Windows XP blocks incoming traffic only. The above listed firewalls block two-way traffic. Remember as with an antivirus, only use one firewall!
  • Make your Internet Explorer more secure - This can be done by following these simple instructions:
  • From within Internet Explorer click on the Tools menu and then click on Options.
  • Click once on the Security tab
  • Click once on the Internet icon so it becomes highlighted.
  • Click once on the Custom Level button.
  • Change the Download signed ActiveX controls to Prompt
  • Change the Download unsigned ActiveX controls to Disable
  • Change the Initialize and script ActiveX controls not marked as safe to Disable
  • Change the Installation of desktop items to Prompt
  • Change the Launching programs and files in an IFRAME to Prompt
  • Change the Navigate sub-frames across different domains to Prompt
  • When all these settings have been made, click on the OK button.
  • If it prompts you as to whether or not you want to save the settings, press the Yes button.
  • Next press the Apply button and then the OK to exit the Internet Properties page.


  • Use an AntiVirus Software - It is very important that your computer has an anti-virus software running on your machine. This alone can save you a lot of trouble with malware in the future.

    See this link for a listing of additional protection resources: Virus, Spyware, and Malware Protection and Removal Resources
  • Update your AntiVirus Software - It is imperative that you update your Antivirus software frequently. Most antivirus software will do this automatically. If your antivirus software is not updating on a daily basis, or close to that frequency, check to make sure that it is still functioning properly. If your antivirus software is not frequently updating its virus definitions then it will not be able to catch the new variants that can and do come out.

  • Visit Microsoft's Update Site Frequently - It is important that you visit Microsoft Updates regularly even if you have your computer set to automatically receive critical updates. There are other important updates available there, and this will help to ensure that you always have the latest security updates available installed on your computer.

  • Install SpywareBlaster - SpywareBlaster will add a large list of programs and sites into your Internet Explorer settings that will help protect you from running and downloading many known malicious programs.

    A tutorial on installing & using this product can be found here:

    Using SpywareBlaster to protect your computer from Spyware and Malware

  • Update all these programs regularly - Make sure you update all the programs I have listed regularly. Without regular updates you WILL NOT be protected when new malicious programs are released.
Follow this list and your potential for being infected again will reduce dramatically.

Here are some additional utilities that will enhance your safety
  • IE/Spyad <= IE/Spyad places over 5000 websites and domains in the IE Restricted list which will severely impair attempts to infect your system.
  • MVPS Hosts file <= The MVPS Hosts file replaces your current HOSTS file with one containing well know ad sites etc. Basically, this prevents your computer from connecting to those sites by redirecting them to 127.0.0.1 which is your local computer. If your computer should exhibit slowness after installing the Hosts file, just follow the simple instructions available at the same site, and that should quickly alleviate the problem.
  • Google Toolbar <= Get the free google toolbar to help stop pop up windows.
The above recommendations should take your system well out of the "sitting duck" category. :D However, your own caution and commonsense are always your best and first line of defense. Be sure to read Tony Klein's article that I recommended in my prior post too.

Happy surfing and stay clean! :wavey:
Glad we could be of assistance. This topic is now closed. If you wish it reopened, please send us an email (Click for address) with a link to your thread.

Do not bother contacting us if you are not the topic starter. A valid, working link to the closed topic is required along with the user name used. If the user name does not match the one in the thread linked, the email will be deleted.
Make sure you use proper prevention to keep from having problems occur to your computer in the future.

Coyote's Installed programs for prevention:

http://forums.tomcoyote.org/index.php?showtopic=31418

The help you receive here is free. If you wish to show your appreciation, then you may donate to help keep us online.

Visit the CoyoteStore http://TomCoyote.org/coyotestore.php

Ask AI

AI can make mistakes. Check the cited posts. Archived advice can be out-of-date

Don't include personal information. Questions and selected public posts go to OpenAI. About Ask AI