Jump to content

Build Theme!
  •  
  • Infected?

WE'RE SURE THAT YOU'LL LOVE US!

Hey there! :wub: Looks like you're enjoying the discussion, but you're not signed up for an account. When you create an account, we remember exactly what you've read, so you always come right back where you left off. You also get notifications, here and via email, whenever new posts are made. You can like posts to share the love. :D Join 91983 other members! Anybody can ask, anybody can answer. Consistently helpful members may be invited to become staff. Here's how it works. Virus cleanup? Start here -> Malware Removal Forum.

Try What the Tech -- It's free!


Photo

Please help, start up has slowed to a crawl!


  • This topic is locked This topic is locked
8 replies to this topic

#1 howgain

howgain

    Authentic Member

  • Authentic Member
  • PipPip
  • 83 posts

Posted 12 March 2007 - 06:36 PM

Hello,

I'm on a laptop running Windows XP. Until recently this computer started up in a flash. Over the past week or so, it's slowed considerably often taking nearly 10 minutes. I've tried disabling programs that weren't needed at start up and doing other basic maintenance, but it hasn't helped much. Please take a look at the Hijack This log when you have a chance - any help would be appreciated.

Logfile of HijackThis v1.99.1
Scan saved at 8:22:12 PM, on 3/12/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\WLTRYSVC.EXE
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Dell Network Assistant\hnm_svc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\system32\WLTRAY.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\system32\dllhost.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Mediafour\MacDrive\MDDiskProtect.exe
C:\Program Files\Common Files\Mediafour\MACVNTFY.EXE
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2H1.EXE
C:\Program Files\NetWaiting\netWaiting.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\ZoneLabs\isafe.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\PROGRA~1\ZONELA~1\ZONEAL~1\MAILFR~1\mantispm.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\DOCUME~1\Danny\LOCALS~1\Temp\Temporary Directory 1 for hijackthis.zip\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk-rel&channel=us&ibd=6061207
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk-rel&channel=us&ibd=6061207
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [SynTPEnh] "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [MDDiskProtect.exe] "C:\Program Files\Mediafour\MacDrive\MDDiskProtect.exe"
O4 - HKLM\..\Run: [MediafourGettingStartedWithMacDrive6] "C:\Program Files\Mediafour\MacDrive\MacDrive.exe" /runonce
O4 - HKLM\..\Run: [Mediafour Mac Volume Notifications] "C:\Program Files\Common Files\Mediafour\MACVNTFY.EXE" /auto
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [EPSON Stylus Photo R200 Series] "C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2H1.EXE" /P30 "EPSON Stylus Photo R200 Series" /O6 "USB001" /M "Stylus Photo R200"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [ModemOnHold] C:\Program Files\NetWaiting\netWaiting.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O8 - Extra context menu item: &ieSpell Options - res://C:\Program Files\ieSpell\iespell.dll/SPELLOPTION.HTM
O8 - Extra context menu item: Check &Spelling - res://C:\Program Files\ieSpell\iespell.dll/SPELLCHECK.HTM
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Lookup on Merriam Webster - file://C:\Program Files\ieSpell\Merriam Webster.HTM
O8 - Extra context menu item: Lookup on Wikipedia - file://C:\Program Files\ieSpell\wikipedia.HTM
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll
O9 - Extra 'Tools' menuitem: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll
O9 - Extra button: (no name) - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - C:\Program Files\ieSpell\iespell.dll
O9 - Extra 'Tools' menuitem: ieSpell Options - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - C:\Program Files\ieSpell\iespell.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {2E12FB00-546B-4EE3-9CC2-057BF02E1C17} (Webshots Multiple Media Uploader - Container) - http://community.web...wsaxcontrol.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.micros...b?1167443345828
O20 - Winlogon Notify: MacDrive-iTunes compatibility - C:\Program Files\Common Files\Mediafour\MacDriveiTunesPatch.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati2evxx.exe
O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
O23 - Service: CA ISafe (CAISafe) - Computer Associates International, Inc. - C:\WINDOWS\system32\ZoneLabs\isafe.exe
O23 - Service: Advanced Networking Service (hnmsvc) - SingleClick Systems - C:\Program Files\Dell Network Assistant\hnm_svc.exe
O23 - Service: iPod Service - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: MSSQL$MICROSOFTSMLBIZ - Unknown owner - C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe" -sMICROSOFTSMLBIZ (file missing)
O23 - Service: ptssvc - Unknown owner - C:\Program Files\KODAK\KODAK Picture Transfer Software\PTSsvc.exe (file missing)
O23 - Service: SQLAgent$MICROSOFTSMLBIZ - Unknown owner - C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlagent.EXE" -i MICROSOFTSMLBIZ (file missing)
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - C:\WINDOWS\system32\ZoneLabs\vsmon.exe
O23 - Service: Webroot Spy Sweeper Engine (WebrootSpySweeperService) - Webroot Software, Inc. - C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
O23 - Service: Dell Wireless WLAN Tray Service (wltrysvc) - Unknown owner - C:\WINDOWS\System32\WLTRYSVC.EXE

    Advertisements

Register to Remove


#2 ken545

ken545

    Forum God

  • Classroom Teacher
  • 23,207 posts
  • Interests:Fighting Malware and cooking some great Italian and TexMex food
  • MVP

Posted 18 March 2007 - 04:30 PM

howgain :D

Welcome to Tom Coyote . Sorry about the delay in responding but we are as most times just overwhelmed with logs.

I am not looking at anything bad on your log , not to say something could be hidden and not showing up.

Hijackthis 1.99.1
Its important that Hijackthis is installed in its own permanent folder for backup purposes.
  • Go to where you currently have HJT installed and delete the whole folder.
  • Use the link above or the links in my signature to download HJT 1.99.1 setup to your desktop
  • Double Click on the Setup icon and by defaut it will unzip to C:\Program Files\Hijackthis


  • Your Java is out of date and leaving your system vulnerable.
  • Go to your Add-Remove Programs in the Control Panel and uninstall any previous versions of Java (J2SE Runtime Environment)
  • It should have an icon next to it:
    Posted Image
    Select it and click Remove.
  • Reboot your system.
  • Then go to the Sun Microsystems and install the update
  • Java Runtime Environment (JRE) 5.0 Update 11 <--This is what you need to download and install.
  • If you chose the online installation, it will prompt you to run the program.
  • If you chose the offline installation, you will be prompted to save the file and you can run it from wherever you saved it.
  • Then after install you can verify your installation here Sun Java Verify
I like to to do the offline installation and save the setup file in case I may need it in the future



AVG will give us an extensive report and if anything bad is on your system it may show up on the log so be sure to save it and post it into your next reply.

Download and install the 30 day trial of AVG Anti-Spyware 7.5 to your desktop.
  • Once you have downloaded AVG Anti-Spyware 7.5, locate the icon on the desktop and double-click it to launch the set up program.
  • Once the setup is complete you will need run AVG and update the definition files.
  • On the main screen select the icon Update then select the Update now link.
  • Next select the Start Update button, the update will start and a progress bar will show the updates being installed.
  • Once the update has completed select the Scanner icon at the top of the screen, then select the Settings tab.
  • Once in the Settings screen click on Recommended actions and then select Quarantine <-- Dont forget this
  • Under Reports
  • Select Automatically generate report after every scan
  • Un-Select Only if threats were found
  • Close AVG Anti-Spyware 7.5 <-- Do not run the scan yet.
Boot your computer into Safemode
  • Go to Start> Shut Off your Computer> Restart
  • As the computer starts to boot-up, Tap the F8 KEY somewhat rapidly.
  • This will bring up a menu.
  • Use the Up and Down Arrow Keys to scroll up to SAFEMODE
  • Then press the Enter on your Keyboard
Tutorial if you need it How to boot into Safemode


IMPORTANT: Do not open any other windows or programs while ewido is scanning, it may interfere with the scanning process:
  • Launch AVG Anti-Spyware 7.5 by double-clicking the icon on your desktop.
  • Select the Scanner icon at the top and then the Scan tab then click on Complete System Scan.
  • AVG will now begin the scanning process, be patient this may take a little time.
  • Once the scan is complete do the following:
  • If you have any infections you will prompted, then select Apply all actions
  • Next select the Reports icon at the top.
  • Select the Save report as button in the lower left hand of the screen and save it to a text file on your system
  • make sure to remember where you saved that file, this is important
  • Close AVG Anti-Spyware 7.5


Run this system cleaner.

Download and Install CCleaner
If you don't want the Yahoo Toolbar, be sure to uncheck it during installation
* Click on Run Cleaner
* Run the Issues Scan < -- After it scans your system, when you click on the Fix button and it asks you to backup the Registry..Say Yes
Tutorial for CCleaner


Let me see the AVG report and a New HJT log please.

Jeffce_zpsa19ee2e6.png

 

 

 

Want to help others, Join our Malware Removal Classroom  HERE

The forum is staffed by volunteers who donate their time and expertise.
If you feel you have been helped, please consider a donation.
donate.gif

 

Find us on Facebook
Please LIKE and SHARE

 

 

Just a reminder that threads will be closed if no reply in 3 days.


#3 howgain

howgain

    Authentic Member

  • Authentic Member
  • PipPip
  • 83 posts

Posted 19 March 2007 - 02:06 PM

Thanks for getting back to me. I followed your instructions and the AVG and New Hijack This Log can be found below. Once again, thank you.

---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------

+ Created at: 1:00:10 PM 3/19/2007

+ Scan result:



C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP43\A0059829.exe -> Not-A-Virus.Downloader.Win32.DigStream : No action taken.
:mozilla.10:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.10:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.116:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.11:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.11:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.12:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.12:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.13:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.13:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.14:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.151:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.15:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.16:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.17:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.17:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.18:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.18:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.19:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.20:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.331:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.504:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.8:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.9:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\Kelly\Cookies\kelly@aavalue[2].txt -> TrackingCookie.Aavalue : No action taken.
C:\Documents and Settings\Kelly\Cookies\kelly@psu.aavalue[2].txt -> TrackingCookie.Aavalue : No action taken.
:mozilla.251:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.252:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
C:\Documents and Settings\Alicia\Cookies\alicia@adbrite[2].txt -> TrackingCookie.Adbrite : No action taken.
C:\Documents and Settings\Kelly\Cookies\kelly@adbrite[2].txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.68:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Adobe : No action taken.
C:\Documents and Settings\Alicia\Cookies\alicia@idg.adocean[2].txt -> TrackingCookie.Adocean : No action taken.
:mozilla.124:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
:mozilla.125:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
:mozilla.49:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
:mozilla.52:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
:mozilla.53:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
:mozilla.54:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
:mozilla.55:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
:mozilla.60:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
:mozilla.42:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.43:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.44:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.45:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.46:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.60:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.61:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.62:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.63:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.64:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.65:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Atdmt : No action taken.
:mozilla.79:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Atdmt : No action taken.
:mozilla.92:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Bluestreak : No action taken.
C:\Documents and Settings\Kelly\Cookies\kelly@citi.bridgetrack[2].txt -> TrackingCookie.Bridgetrack : No action taken.
:mozilla.156:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.157:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.162:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.163:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.164:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.165:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.376:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Clickbank : No action taken.
C:\Documents and Settings\Kelly\Cookies\kelly@ad1.clickhype[1].txt -> TrackingCookie.Clickhype : No action taken.
:mozilla.192:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Com : No action taken.
:mozilla.310:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Com : No action taken.
C:\Documents and Settings\Alicia\Cookies\alicia@com[2].txt -> TrackingCookie.Com : No action taken.
:mozilla.458:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Coremetrics : No action taken.
:mozilla.462:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Dealtime : No action taken.
:mozilla.463:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Dealtime : No action taken.
:mozilla.464:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Dealtime : No action taken.
:mozilla.465:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Dealtime : No action taken.
:mozilla.255:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
:mozilla.33:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
:mozilla.39:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
:mozilla.77:C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\itgh30xf.default\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
C:\Documents and Settings\Alicia\Cookies\alicia@doubleclick[1].txt -> TrackingCookie.Doubleclick : No action taken.
C:\Documents and Settings\Guest\Cookies\guest@doubleclick[1].txt -> TrackingCookie.Doubleclick : No action taken.
C:\Documents and Settings\Henry\Cookies\henry@doubleclick[2].txt -> TrackingCookie.Doubleclick : No action taken.
C:\Documents and Settings\Karen\Cookies\karen@doubleclick[1].txt -> TrackingCookie.Doubleclick : No action taken.
C:\Documents and Settings\Kelly\Cookies\kelly@doubleclick[2].txt -> TrackingCookie.Doubleclick : No action taken.
:mozilla.269:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
:mozilla.400:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
:mozilla.401:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
:mozilla.289:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Euroclick : No action taken.
:mozilla.290:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Euroclick : No action taken.
:mozilla.319:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Euroclick : No action taken.
C:\Documents and Settings\Kelly\Cookies\kelly@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : No action taken.
:mozilla.135:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.136:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.137:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.138:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
:mozilla.123:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.219:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.220:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.61:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.62:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.63:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.64:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
C:\Documents and Settings\Alicia\Cookies\alicia@fastclick[2].txt -> TrackingCookie.Fastclick : No action taken.
C:\Documents and Settings\Guest\Cookies\guest@fastclick[1].txt -> TrackingCookie.Fastclick : No action taken.
C:\Documents and Settings\Guest\Cookies\guest@media.fastclick[2].txt -> TrackingCookie.Fastclick : No action taken.
C:\Documents and Settings\Kelly\Cookies\kelly@fastclick[2].txt -> TrackingCookie.Fastclick : No action taken.
C:\Documents and Settings\Alicia\Cookies\alicia@hit.gemius[1].txt -> TrackingCookie.Gemius : No action taken.
:mozilla.301:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.369:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.378:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.434:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.440:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.443:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.444:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.63:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
:mozilla.26:C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\itgh30xf.default\cookies.txt -> TrackingCookie.Hitbox : No action taken.
:mozilla.27:C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\itgh30xf.default\cookies.txt -> TrackingCookie.Hitbox : No action taken.
:mozilla.28:C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\itgh30xf.default\cookies.txt -> TrackingCookie.Hitbox : No action taken.
:mozilla.410:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Hitbox : No action taken.
:mozilla.411:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Hitbox : No action taken.
:mozilla.412:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\Alicia\Cookies\alicia@ehg-knightridder.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\Alicia\Cookies\alicia@hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\Henry\Cookies\henry@ehg-warnerbrothers.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\Henry\Cookies\henry@hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\Kelly\Cookies\kelly@ehg-dig.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\Kelly\Cookies\kelly@ehg-emmiscommunications.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\Kelly\Cookies\kelly@ehg-hollywood.hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\Kelly\Cookies\kelly@ehg-knightridder.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\Kelly\Cookies\kelly@ehg-uniontrib.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\Kelly\Cookies\kelly@ehg-verizon.hitbox[2].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\Kelly\Cookies\kelly@hitbox[1].txt -> TrackingCookie.Hitbox : No action taken.
C:\Documents and Settings\Kelly\Cookies\kelly@searchportal.information[1].txt -> TrackingCookie.Information : No action taken.
:mozilla.33:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Live : No action taken.
:mozilla.34:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Live : No action taken.
:mozilla.35:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Live : No action taken.
C:\Documents and Settings\Kelly\Cookies\kelly@search.live[2].txt -> TrackingCookie.Live : No action taken.
:mozilla.193:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Liveperson : No action taken.
:mozilla.194:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Liveperson : No action taken.
:mozilla.195:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Liveperson : No action taken.
:mozilla.231:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Liveperson : No action taken.
:mozilla.76:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Liveperson : No action taken.
:mozilla.77:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Liveperson : No action taken.
:mozilla.78:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Liveperson : No action taken.
:mozilla.79:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Liveperson : No action taken.
:mozilla.80:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Liveperson : No action taken.
C:\Documents and Settings\Kelly\Cookies\kelly@sales.liveperson[4].txt -> TrackingCookie.Liveperson : No action taken.
:mozilla.196:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Mediaplex : No action taken.
C:\Documents and Settings\Alicia\Cookies\alicia@search.msn[1].txt -> TrackingCookie.Msn : No action taken.
:mozilla.134:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.148:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.97:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.96:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Paypal : No action taken.
:mozilla.102:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.116:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.120:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.125:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.126:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.171:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.172:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.173:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.174:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.154:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Questionmarket : No action taken.
:mozilla.156:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Questionmarket : No action taken.
:mozilla.39:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Questionmarket : No action taken.
:mozilla.40:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Questionmarket : No action taken.
:mozilla.281:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Realmedia : No action taken.
:mozilla.272:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Realtracker : No action taken.
:mozilla.126:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.135:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.136:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.137:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.138:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.139:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.140:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.141:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.36:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.37:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.38:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.39:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.40:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.41:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.41:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.42:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.43:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.44:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.45:C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\itgh30xf.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.45:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.46:C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\itgh30xf.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
C:\Documents and Settings\Alicia\Cookies\alicia@revsci[1].txt -> TrackingCookie.Revsci : No action taken.
C:\Documents and Settings\Henry\Cookies\henry@revsci[2].txt -> TrackingCookie.Revsci : No action taken.
C:\Documents and Settings\Karen\Cookies\karen@revsci[1].txt -> TrackingCookie.Revsci : No action taken.
C:\Documents and Settings\Kelly\Cookies\kelly@revsci[1].txt -> TrackingCookie.Revsci : No action taken.
:mozilla.164:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Ru4 : No action taken.
:mozilla.165:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Ru4 : No action taken.
:mozilla.47:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Ru4 : No action taken.
:mozilla.48:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Ru4 : No action taken.
:mozilla.50:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Ru4 : No action taken.
:mozilla.51:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Ru4 : No action taken.
:mozilla.103:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.104:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.105:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.106:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.107:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.108:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.413:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.414:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.415:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.416:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.417:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.418:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.158:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.159:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.332:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.333:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.334:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.335:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.169:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.170:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.261:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.262:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.263:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.264:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.265:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.266:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.268:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
:mozilla.143:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.144:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.145:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.146:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.147:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.86:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.93:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.94:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.95:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.96:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.215:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.217:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.218:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.219:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.220:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.221:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.222:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.223:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.224:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.66:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.67:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.68:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.69:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.70:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.71:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.73:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.74:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.497:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Trafic : No action taken.
:mozilla.160:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Tribalfusion : No action taken.
:mozilla.277:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Web-stat : No action taken.
:mozilla.278:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Web-stat : No action taken.
:mozilla.279:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Web-stat : No action taken.
:mozilla.134:C:\Documents and Settings\Karen\Application Data\Mozilla\Firefox\Profiles\ggx384cr.default\cookies.txt -> TrackingCookie.Webtrends : No action taken.
:mozilla.341:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Webtrends : No action taken.
:mozilla.348:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Webtrends : No action taken.
:mozilla.52:C:\Documents and Settings\Henry\Application Data\Mozilla\Firefox\Profiles\itgh30xf.default\cookies.txt -> TrackingCookie.Webtrends : No action taken.
C:\Documents and Settings\Alicia\Cookies\alicia@m.webtrends[1].txt -> TrackingCookie.Webtrends : No action taken.
C:\Documents and Settings\Guest\Cookies\guest@m.webtrends[2].txt -> TrackingCookie.Webtrends : No action taken.
C:\Documents and Settings\Henry\Cookies\henry@m.webtrends[1].txt -> TrackingCookie.Webtrends : No action taken.
:mozilla.134:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Webtrendslive : No action taken.
:mozilla.142:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Webtrendslive : No action taken.
:mozilla.89:C:\Documents and Settings\Kelly\Application Data\Mozilla\Firefox\Profiles\em8tlvuy.default\cookies.txt -> TrackingCookie.Webtrendslive : No action taken.
:mozilla.57:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.58:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.59:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.250:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.251:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.252:C:\Documents and Settings\Danny\Application Data\Mozilla\Firefox\Profiles\tp26p8y8.default\cookies.txt -> TrackingCookie.Zedo : No action taken.


::Report end




Logfile of HijackThis v1.99.1
Scan saved at 3:58:32 PM, on 3/19/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16414)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\System32\WLTRYSVC.EXE
C:\WINDOWS\System32\bcmwltry.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
C:\WINDOWS\eHome\ehRecvr.exe
C:\WINDOWS\eHome\ehSched.exe
C:\Program Files\Dell Network Assistant\hnm_svc.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Microsoft SQL Server\MSSQL$MICROSOFTSMLBIZ\Binn\sqlservr.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\ZoneLabs\vsmon.exe
C:\Program Files\Webroot\Spy Sweeper\SpySweeper.exe
C:\WINDOWS\system32\dllhost.exe
C:\WINDOWS\system32\ZoneLabs\isafe.exe
C:\WINDOWS\system32\Ati2evxx.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\ehome\ehtray.exe
C:\WINDOWS\system32\WLTRAY.exe
C:\WINDOWS\stsystra.exe
C:\Program Files\Dell\QuickSet\quickset.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\Program Files\Mediafour\MacDrive\MDDiskProtect.exe
C:\Program Files\Common Files\Mediafour\MACVNTFY.EXE
C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2H1.EXE
C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\NetWaiting\netWaiting.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
C:\PROGRA~1\ZONELA~1\ZONEAL~1\MAILFR~1\mantispm.exe
C:\Program Files\ATI Technologies\ATI.ACE\cli.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk-rel&channel=us&ibd=6061207
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft....k/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft....k/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft....k/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk-rel&channel=us&ibd=6061207
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_11\bin\ssv.dll
O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\BAE\BAE.dll
O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
O4 - HKLM\..\Run: [Broadcom Wireless Manager UI] C:\WINDOWS\system32\WLTRAY.exe
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
O4 - HKLM\..\Run: [SynTPEnh] "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
O4 - HKLM\..\Run: [ATICCC] "C:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe" -startup
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [MDDiskProtect.exe] "C:\Program Files\Mediafour\MacDrive\MDDiskProtect.exe"
O4 - HKLM\..\Run: [MediafourGettingStartedWithMacDrive6] "C:\Program Files\Mediafour\MacDrive\MacDrive.exe" /runonce
O4 - HKLM\..\Run: [Mediafour Mac Volume Notifications] "C:\Program Files\Common Files\Mediafour\MACVNTFY.EXE" /auto
O4 - HKLM\..\Run: [Zone Labs Client] "C:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [EPSON Stylus Photo R200 Series] "C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_S4I2H1.EXE" /P30 "EPSON Stylus Photo R200 Series" /O6 "USB001" /M "Stylus Photo R200"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_11\bin\jusched.exe"
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [ModemOnHold] C:\Program Files\NetWaiting\netWaiting.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
O8 - Extra context menu item: &ieSpell Options - res://C:\Program Files\ieSpell\iespell.dll/SPELLOPTION.HTM
O8 - Extra context menu item: Check &Spelling - res://C:\Program Files\ieSpell\iespell.dll/SPELLCHECK.HTM
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Lookup on Merriam Webster - file://C:\Program Files\ieSpell\Merriam Webster.HTM
O8 - Extra context menu item: Lookup on Wikipedia - file://C:\Program Files\ieSpell\wikipedia.HTM
O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\npjpi150_11.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_11\bin\npjpi150_11.dll
O9 - Extra button: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll
O9 - Extra 'Tools' menuitem: ieSpell - {0E17D5B7-9F5D-4fee-9DF6-CA6EE38B68A8} - C:\Program Files\ieSpell\iespell.dll
O9 - Extra button: (no name) - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - C:\Program Files\ieSpell\iespell.dll
O9 - Extra 'Tools' menuitem: ieSpell Options - {1606D6F9-9D3B-4aea-A025-ED5B2FD488E7} - C:\Program Files\ieSpell\iespell.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O11 - Options group: [INTERNATIONAL] International*
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {2E12FB00-546B-4EE3-9CC2-057BF02E1C17} (Webshots Multiple Media Uploader - Container) - http://community.web...wsaxcontrol.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.micros...b?1167443345828
O20 - Winlogon Notify: MacDrive-iTunes compatibility - C:\Program Files\Common Files\Mediafour\MacDriveiTunesPatch.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: WRNotifier - C:\WINDOWS\SYSTEM32\WRLogonNTF.dll
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - C:\WINDOWS\system32\Ati

#4 ken545

ken545

    Forum God

  • Classroom Teacher
  • 23,207 posts
  • Interests:Fighting Malware and cooking some great Italian and TexMex food
  • MVP

Posted 19 March 2007 - 02:32 PM

howgain :D

How are ya doing? If you had something bad on your system , almost 99.9% of the time AVG would have found it but all it found where cookies and one bad file in your System Restore Program, so do this.

Open AVG and have it delete everything it found if you have not done so already. Then lets clean out your old Restore Points and I can't stress enough how important it is to Create A New Restore Point.

System Restore makes regular backups of all your settings, if you ever had to use this program to restore your system to a previous date, you will be infected all over again so we need to clean out the previous Restore Points

Turn off System Restore.
  • Right-click My Computer.
  • Click Properties.
  • Click the System Restore tab.
  • Check Turn off System Restore on all Drives.
  • Click Apply, and then click OK.
Reboot your System

Turn ON System Restore.
  • Right-click My Computer.
  • ClickProperties.
  • Click the System Restore tab.
  • UN-Check Turn off System Restore on all Drives.
  • Click Apply, and then click OK.
Create a new Restore Point <-- Very Important
  • Go to Start/ Control Panel/ Performance and Maintenance/ System Restore/ Create a New Restore Point
    You can name the restore point anything you like, something that you can remember, You will have to be in Catagory View to see this
System Restore Tutorial <-- If you need it



Lets run these programs, Blacklight is a quick scan that will check for Rootkits.

Download and Save Blacklight to your desktop:
  • Double-click blbeta.exe
  • Then accept the agreement
  • Click > scan then > next
  • You'll see a list of all items found. There will also be a log on your desktop with the name fsbl.xxxxxxx.log (the xxxxxxx stand for numbers).
  • Copy and paste this log in your next reply.
  • Don't choose the rename option yet! I want to see the log first, because legitimate items can also be present there, such as "wbemtest.exe"

Then run this free online virus scanner from Panda, it will give you a very detailed log so be sure to save it and post it along with the Blacklight log. It will only run with Internet Explorer.

Run Panda's ActiveScan from here and perform a full system scan.
  • Once you are on the Panda site click the "Scan your PC" button
  • A new window will open...click the big "Check Now" button
  • Enter your Country
  • Enter your State/Province
  • Enter your e-mail address and click send
  • Select either Home User or Company
  • Click the big Scan Now button
  • If it wants to install an ActiveX component allow it
  • It will start downloading the files it requires for the scan (Note: It will take a couple minutes)
  • If you are on a slow connection it will take about 15 minuites for the scanner to load.
  • Click on "Local Disks" to start the scan
  • Once scan is done, click "see report" then "save report"
  • Save the log someplace you can find
  • 12. Reboot
  • Post the Panda scan results in your next reply

Jeffce_zpsa19ee2e6.png

 

 

 

Want to help others, Join our Malware Removal Classroom  HERE

The forum is staffed by volunteers who donate their time and expertise.
If you feel you have been helped, please consider a donation.
donate.gif

 

Find us on Facebook
Please LIKE and SHARE

 

 

Just a reminder that threads will be closed if no reply in 3 days.


#5 howgain

howgain

    Authentic Member

  • Authentic Member
  • PipPip
  • 83 posts

Posted 20 March 2007 - 05:14 AM

Thanks again Ken. Here's the results of the scans: Activescan: Incident Status Location Adware:Adware/Comet Not disinfected C:\RECYCLER\S-1-5-21-2578236995-2168395722-476901853-1010\Dc2.exe 03/19/07 20:03:37 [Info]: BlackLight Engine 1.0.55 initialized 03/19/07 20:03:37 [Info]: OS: 5.1 build 2600 (Service Pack 2) 03/19/07 20:03:38 [Note]: 7019 4 03/19/07 20:03:38 [Note]: 7005 0 03/19/07 20:04:04 [Note]: 7006 0 03/19/07 20:04:04 [Note]: 7011 3540 03/19/07 20:04:04 [Note]: 7026 0 03/19/07 20:04:04 [Note]: 7026 0 03/19/07 20:04:14 [Note]: FSRAW library version 1.7.1021 03/19/07 20:14:14 [Note]: 7007 0

#6 ken545

ken545

    Forum God

  • Classroom Teacher
  • 23,207 posts
  • Interests:Fighting Malware and cooking some great Italian and TexMex food
  • MVP

Posted 20 March 2007 - 05:32 AM

howgain :D

Adware:Adware/Comet Not disinfected C:\RECYCLER\S-1-5-21-2578236995-2168395722-476901853-1010\Dc2.exe <-- This is in your Recycle Bin, right click on it and empty it.


All the scans are coming up clean :thumbup: so you may have a software conflict effecting your system, or it could be something you installed software or hardware wise that has effected it.

http://forums.tomcoy...hp?showforum=83
Why don't you post here and let one of our windows support guys help you out, since this forum is for malware removal only. Be sure you tell them you posted here and the scans that you ran that come up clean along with a clean HJT log so they won't run you through all those scans again.

It's Not Always Malware Speedup Windows Windows Tips

How did I get infected in the first place ? Read these links and find out how to prevent getting infected again.


Here are some free programs to install, don't leave home without them
  • Spybot Search and Destroy 1.4
    Check for Updates/ Immunize and run a Full System Scan on a regular basis.
  • Ad-Aware SE Personal 1.06
    Check for Updates and run a Full System Scan on a regular basis.
  • Spyware Blaster It will prevent most spyware from ever being installed.
  • Spyware Guard It offers realtime protection from spyware installation attempts.
  • Win Patrol This program will warn you when any changes are being made to your system and give you the option to deny the change.
  • IE-Spyad
    IE-Spyad places over 4000 web sites and domains in the IE Restricted list which will severely impair attempts to infect your system. It basically prevents any downloads (cookies etc) from the sites listed, although you will still be able to connect to the sites.
  • Firefox 2.0 It has more features and is a lot more secure than IE. It is a very easy and painless download and install, it will no way interfere with IE, you can use them both.
  • Zone Alarm Here is a free Firewall from Zone Labs, I wouldn't access the internet without it.
Thanks for stopping by Tom Coyote , I'm glad I was able to help you. :D I will keep this thread open for you for a week or so in case you need to post back.

Jeffce_zpsa19ee2e6.png

 

 

 

Want to help others, Join our Malware Removal Classroom  HERE

The forum is staffed by volunteers who donate their time and expertise.
If you feel you have been helped, please consider a donation.
donate.gif

 

Find us on Facebook
Please LIKE and SHARE

 

 

Just a reminder that threads will be closed if no reply in 3 days.


#7 howgain

howgain

    Authentic Member

  • Authentic Member
  • PipPip
  • 83 posts

Posted 20 March 2007 - 06:52 AM

Okay. I appreciate your help Ken. Thanks again.

#8 ken545

ken545

    Forum God

  • Classroom Teacher
  • 23,207 posts
  • Interests:Fighting Malware and cooking some great Italian and TexMex food
  • MVP

Posted 20 March 2007 - 10:59 AM

Your more than welcome :thumbup:

Jeffce_zpsa19ee2e6.png

 

 

 

Want to help others, Join our Malware Removal Classroom  HERE

The forum is staffed by volunteers who donate their time and expertise.
If you feel you have been helped, please consider a donation.
donate.gif

 

Find us on Facebook
Please LIKE and SHARE

 

 

Just a reminder that threads will be closed if no reply in 3 days.


#9 ken545

ken545

    Forum God

  • Classroom Teacher
  • 23,207 posts
  • Interests:Fighting Malware and cooking some great Italian and TexMex food
  • MVP

Posted 25 March 2007 - 12:02 PM

Glad we could be of assistance. This topic is now closed. If you wish it reopened, please send us an email (Click for address) with a link to your thread.

Do not bother contacting us if you are not the topic starter. A valid, working link to the closed topic is required along with the user name used. If the user name does not match the one in the thread linked, the email will be deleted.
Make sure you use proper prevention to keep from having problems occur to your computer in the future.

Coyote's Installed programs for prevention:

http://forums.tomcoy...showtopic=31418

The help you receive here is free. If you wish to show your appreciation, then you may donate to help keep us online.

Visit the CoyoteStore http://TomCoyote.org/coyotestore.php

Jeffce_zpsa19ee2e6.png

 

 

 

Want to help others, Join our Malware Removal Classroom  HERE

The forum is staffed by volunteers who donate their time and expertise.
If you feel you have been helped, please consider a donation.
donate.gif

 

Find us on Facebook
Please LIKE and SHARE

 

 

Just a reminder that threads will be closed if no reply in 3 days.

Related Topics



0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users