Jump to content

Build Theme!
  •  
  • Infected?

WE'RE SURE THAT YOU'LL LOVE US!

Hey there! :wub: Looks like you're enjoying the discussion, but you're not signed up for an account. When you create an account, we remember exactly what you've read, so you always come right back where you left off. You also get notifications, here and via email, whenever new posts are made. You can like posts to share the love. :D Join 93105 other members! Anybody can ask, anybody can answer. Consistently helpful members may be invited to become staff. Here's how it works. Virus cleanup? Start here -> Malware Removal Forum.

Try What the Tech -- It's free!


Photo

Spycrushremoval


  • This topic is locked This topic is locked
4 replies to this topic

#1 loveda

loveda

    New Member

  • New Member
  • Pip
  • 2 posts

Posted 04 July 2007 - 11:46 AM

I am trying to install a new version of Norton AntiVirus, but it doesn't allow the new version to install over the old version. I have uninstalled the old version, but it continues to see the old installation. I believe this is due to a spycrush infection i have been battling. Thanks for the help!

Logfile of HijackThis v1.99.1
Scan saved at 1:40:06 PM, on 7/4/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
C:\Program Files\Dell\Media Experience\PCMService.exe
C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe
C:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mm_tray.exe
C:\WINDOWS\system32\dla\tfswctrl.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\igfxpers.exe
C:\Program Files\DellSupport\DSAgnt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Spybot - Search & Destroy\TeaTimer.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpohmr08.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\bin\hpoevm08.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\WINDOWS\system32\wscntfy.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\Program Files\Hewlett-Packard\Digital Imaging\Bin\hpoSTS08.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL =
http://www.dell4me.com/myway
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page =
http://login.live.co...s...33&_lang=EN
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page =
http://www.dell4me.com/myway
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext =
http://www.dell4me.com/myway
R3 - URLSearchHook: (no name) - {D73F49B6-B51B-4d32-A3B7-BD04B8342F53} -
C:\Program Files\MorpheusBar\SrchAstt\1.bin\MBSRCAS.DLL
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} -
C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper -
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common
Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: MorpheusToolbar BHO - {3F3714A1-89A4-46be-8AF3-D0C9D1FB03F9} -
C:\Program Files\MorpheusBar\bar\1.bin\MORPHBAR.DLL
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program
Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} -
C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: (no name) - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - (no file)
O2 - BHO: Google Toolbar Notifier BHO -
{AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program
Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll (file missing)
O2 - BHO: (no name) - {BDF3E430-B101-42AD-A544-FADC6B084872} - (no file)
O2 - BHO: (no name) - {D73F49B1-B51B-4d32-A3B7-BD04B8342F53} - C:\Program
Files\MorpheusBar\SrchAstt\1.bin\MBSRCAS.DLL
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} -
C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: Morpheus Toolbar - {3F3714A9-89A4-46be-8AF3-D0C9D1FB03F9} -
C:\Program Files\MorpheusBar\bar\1.bin\MORPHBAR.DLL
O3 - Toolbar: Protection Bar - {DF4E7A0C-E233-4906-B4C1-A404356541FF} -
C:\Program Files\Video ActiveX Access\iesbpl.dll (file missing)
O3 - Toolbar: (no name) - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - (no file)
O3 - Toolbar: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - (no file)
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program
Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [IntelMeM] C:\Program Files\Intel\Modem Event
Monitor\IntelMEM.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media
Experience\PCMService.exe"
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program
Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [URLLSTCK.exe] C:\Program Files\Norton Internet
Security\UrlLstCk.exe
O4 - HKLM\..\Run: [mmtask] c:\Program Files\MusicMatch\MusicMatch
Jukebox\mmtask.exe
O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\Musicmatch
Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common
Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec
Shared\ccApp.exe"
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft
AntiSpyware\gcasServ.exe"
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe"
/startup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe"
/background
O4 - HKCU\..\Run: [swg] C:\Program
Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - HKCU\..\Run: [SpybotSD TeaTimer] C:\Program Files\Spybot - Search &
Destroy\TeaTimer.exe
O4 - Global Startup: hp psc 1000 series.lnk = ?
O8 - Extra context menu item: &Search -
http://edits.mywebse...arch.jhtml?p=ZU
O8 - Extra context menu item: Add to Google Photos Screensa&ver -
res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel -
res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} -
C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console -
{08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program
Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} -
C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} -
C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.com -
{B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program
Files\PartyPoker\PartyPoker.exe (file missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} -
C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: MUSICMATCH MX Web Player -
{d81ca86b-ef63-42af-bee3-4502d9a03c2d} -
http://wwws.musicmat...enWebRadio.html (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} -
%windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 -
{e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network
Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: PartyPoker.net - {F4430FE8-2638-42e5-B849-800749B94EED} -
C:\Program Files\PartyPoker.net\partypokernet.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.net -
{F4430FE8-2638-42e5-B849-800749B94EED} - C:\Program
Files\PartyPoker.net\partypokernet.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} -
C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger -
{FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program
Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage
Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) -
http://by101fd.bay10...es/MsnPUpld.cab
O16 - DPF: {F04A8AE2-A59D-11D2-8792-00C04F8EF29D} (Hotmail Attachments
Control) - http://by101fd.bay10...ex/HMAtchmt.ocx
O18 - Protocol: x-excid - {9D6CC632-1337-4A33-9214-2DA092E776F4} -
c:\WINDOWS\Downloaded Program Files\mimectl.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} -
C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: DSBrokerService - Unknown owner - C:\Program
Files\DellSupport\brkrsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision
Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel
32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program
Files\iPod\bin\iPodService.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation -
C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America
Online, Inc. - C:\WINDOWS\wanmpsvc.exe

    Advertisements

Register to Remove


#2 ken545

ken545

    Forum God

  • Retired Classroom Teacher
  • 23,225 posts
  • Interests:Fighting Malware and cooking some great Italian and TexMex food
  • MVP

Posted 04 July 2007 - 07:13 PM

loveda :D

Welcome to Tom Coyote SpyCrush is a bogus Anti Spyware Program that is in itself a trojan.

Your Hijackthis log is very difficult to read, before you post a new log , when it opens in Notepad, go to FORMAT and UNCHECK Wordwrap.


We need to disable the Tea Timer in Spybot Search and Destroy as to not interfere with the fix.
  • Open Spybot and go to Mode> Advanced Mode> Tools> Resident and take the checkmark out of Tea Timer


You should print out these instructions, or copy them to a Notepad file for reading while in Safe Mode, because you will not be able to connect to the Internet to read from this site.

Download SmitfraudFix
Extract the content (a folder named SmitfraudFix) to your Desktop.


Download and install the 30 day trial of AVG Anti-Spyware 7.5 to your desktop.
  • Once you have downloaded AVG Anti-Spyware 7.5, locate the icon on the desktop and double-click it to launch the set up program.
  • Once the setup is complete you will need run Ewido and update the definition files.
  • On the main screen select the icon Update then select the Update now link.
  • Next select the Start Update button, the update will start and a progress bar will show the updates being installed.
  • Once the update has completed select the Scanner icon at the top of the screen, then select the Settings tab.
  • Once in the Settings screen click on Recommended actions and then select Quarantine <-- Dont forget this
  • Under Reports
  • Select Automatically generate report after every scan
  • Un-Select Only if threats were found
  • Close AVG Anti-Spyware 7.5 <-- Do not run the scan yet.


Boot your computer into Safemode
  • Go to Start> Shut Off your Computer> Restart
  • As the computer starts to boot-up, Tap the F8 KEY somewhat rapidly.
  • This will bring up a menu.
  • Use the Up and Down Arrow Keys to scroll up to SAFEMODE
  • Then press the Enter on your Keyboard
Tutorial if you need it How to boot into Safemode



  • Once in Safe Mode, open the SmitfraudFix folder again and double-click smitfraudfix.cmd
  • Select option #2 - Clean by typing 2 and press "Enter" to delete infected files.
  • You will be prompted : "Registry cleaning - Do you want to clean the registry ?"; answer "Yes" by typing Y and press "Enter" in order to remove the Desktop background and clean registry keys associated with the infection.
  • The tool will now check if wininet.dll is infected. You may be prompted to replace the infected file (if found); answer "Yes" by typing Y and press "Enter".
  • The tool may need to restart your computer to finish the cleaning process; if it doesn't, please restart into normal Windows.
  • A text file will appear onscreen, with results from the cleaning process; please copy/paste the content of that report into your next reply along with a new HijackThis log.
The report can also be found at the root of the system drive, usually at C:\rapport.txt





Clean out your Temporary Internet files. Proceed like this:
  • Quit Internet Explorer and quit any instances of Windows Explorer.
  • Click Start> Control Panel and then double-click Internet Options.
  • On the General tab, click Delete Files under Temporary Internet Files.
  • In the Delete Files dialog box, tick the Delete Offline content check box , and then click OK.
  • On the General tab, click Delete Cookies under Temporary Internet Files, and then click OK.
  • Click on the Programs tab then click the Reset Web Settings button.
  • Click Apply then OK.





  • Launch AVG Anti-Spyware 7.5 by double-clicking the icon on your desktop.
  • Select the Scanner icon at the top and then the Scan tab then click on Complete System Scan.
  • AVG will now begin the scanning process, be patient this may take a little time.
  • Once the scan is complete do the following:
  • If you have any infections you will prompted, then select Apply all actions
  • Next select the Reports icon at the top.
  • Select the Save report as button in the lower left hand of the screen and save it to a text file on your system
  • make sure to remember where you saved that file, this is important
  • Close AVG Anti-Spyware 7.5
IMPORTANT: Do not open any other windows or programs while AVG is scanning, it may interfere with the scanning process:


Reboot normally.

  • Open the SmitfraudFix folder and double-click smitfraudfix.cmd
  • Select option #3 - Delete Trusted zone by typing 3 and press Enter
  • Answer Yes to the question "Restore Trusted Zone ?" by typing Y and hit Enter.
Note, if you use SpywareBlaster and/or IE-SPYAD, it will be necessary to re-install the protection both afford. For SpywareBlaster, run the program and re-protect all items. For IE-SPYAD, run the batch file and reinstall the protection.



Post the log from Smitfraud fix, the AVG Spyware log and a New HJT log please. There may be a little more to do .

 
 
The forum is staffed by volunteers who donate their time and expertise.
If you feel you have been helped, please consider a donation.
donate.gif
 
Find us on Facebook
Please LIKE and SHARE
 
 
Just a reminder that threads will be closed if no reply in 3 days.

#3 loveda

loveda

    New Member

  • New Member
  • Pip
  • 2 posts

Posted 06 July 2007 - 03:09 PM

Thanks for the fast response. Here are the logs. I might have saved the smitfraud log out of sequence.

---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------

+ Created at: 5:01:12 PM 7/6/2007

+ Scan result:



C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0044036.dll -> Adware.Agent : No action taken.
C:\RECYCLER\S-1-5-21-2923048127-3550392422-3484286935-1007\Dc28.url -> Adware.SpywareStormer : No action taken.
C:\RECYCLER\S-1-5-21-2923048127-3550392422-3484286935-1008\Dc13.exe -> Adware.Trymedia : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0044037.exe -> Downloader.Zlob.abw : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0044038.exe -> Downloader.Zlob.awv : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0043829.dll -> Downloader.Zlob.axp : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0043831.exe -> Downloader.Zlob.axp : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0043847.dll -> Downloader.Zlob.axp : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0043849.exe -> Downloader.Zlob.axp : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0043871.dll -> Downloader.Zlob.axp : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0043873.exe -> Downloader.Zlob.axp : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0043892.dll -> Downloader.Zlob.axp : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0043894.exe -> Downloader.Zlob.axp : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0043915.dll -> Downloader.Zlob.axp : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0043917.exe -> Downloader.Zlob.axp : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0043942.dll -> Downloader.Zlob.axp : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0043944.exe -> Downloader.Zlob.axp : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0043985.dll -> Downloader.Zlob.axp : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0043987.exe -> Downloader.Zlob.axp : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0044041.exe -> Downloader.Zlob.axp : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0044039.exe -> Downloader.Zlob.bov : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0043830.exe -> Downloader.Zlob.btq : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0043848.exe -> Downloader.Zlob.btq : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0043872.exe -> Downloader.Zlob.btq : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0043893.exe -> Downloader.Zlob.btq : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0043916.exe -> Downloader.Zlob.btq : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0043943.exe -> Downloader.Zlob.btq : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0043986.exe -> Downloader.Zlob.btq : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP182\A0044183.exe -> Downloader.Zlob.btq : No action taken.
C:\System Volume Information\_restore{202550A8-7A33-4BCA-9586-051D24DDBF8F}\RP187\A0044769.dll -> Hijacker.Agent.jw : No action taken.
C:\Documents and Settings\Dan\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-12bf9d89-222773e4.zip/Dummy.class -> Not-A-Virus.Exploit.ByteVerify : No action taken.
C:\Documents and Settings\Dan\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-15638f2b-440c8277.zip/Dummy.class -> Not-A-Virus.Exploit.ByteVerify : No action taken.
C:\Documents and Settings\Dan\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-3326392d-5329138a.zip/Dummy.class -> Not-A-Virus.Exploit.ByteVerify : No action taken.
C:\Documents and Settings\Dan\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-3ef67ba-101dc328.zip/Dummy.class -> Not-A-Virus.Exploit.ByteVerify : No action taken.
C:\Documents and Settings\Dan\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-638a4d15-4568d36a.zip/Dummy.class -> Not-A-Virus.Exploit.ByteVerify : No action taken.
C:\Documents and Settings\Dan\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\archive.jar-68b966b8-799587fb.zip/Dummy.class -> Not-A-Virus.Exploit.ByteVerify : No action taken.
:mozilla.292:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.293:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.294:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.295:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.296:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.297:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.298:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.299:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.300:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.301:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.302:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.507:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.513:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.6:C:\Documents and Settings\Dan\Application Data\Mozilla\Profiles\default\ecg8u0ci.slt\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.7:C:\Documents and Settings\Dan\Application Data\Mozilla\Profiles\default\ecg8u0ci.slt\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.8:C:\Documents and Settings\Dan\Application Data\Mozilla\Profiles\default\ecg8u0ci.slt\cookies.txt -> TrackingCookie.2o7 : No action taken.
:mozilla.9:C:\Documents and Settings\Dan\Application Data\Mozilla\Profiles\default\ecg8u0ci.slt\cookies.txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\Dan\Cookies\dan@2o7[1].txt -> TrackingCookie.2o7 : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@aavalue[2].txt -> TrackingCookie.Aavalue : No action taken.
:mozilla.314:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.315:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.316:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.317:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.318:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.319:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.334:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\ke1uzze3.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
:mozilla.65:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Addynamix : No action taken.
:mozilla.66:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Addynamix : No action taken.
:mozilla.204:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Adjuggler : No action taken.
:mozilla.205:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Adjuggler : No action taken.
:mozilla.206:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Adjuggler : No action taken.
:mozilla.210:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Adjuggler : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@admarketplace[2].txt -> TrackingCookie.Admarketplace : No action taken.
:mozilla.17:C:\Documents and Settings\Sarah\Application Data\Mozilla\Firefox\Profiles\ij35w32t.default\cookies.txt -> TrackingCookie.Adobe : No action taken.
:mozilla.265:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\ke1uzze3.default\cookies.txt -> TrackingCookie.Adobe : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@www.adobe[1].txt -> TrackingCookie.Adobe : No action taken.
:mozilla.177:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
:mozilla.178:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
:mozilla.179:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
:mozilla.180:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
:mozilla.181:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
:mozilla.182:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
:mozilla.183:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
C:\Documents and Settings\Dan\Cookies\dan@adrevolver[2].txt -> TrackingCookie.Adrevolver : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@adrevolver[2].txt -> TrackingCookie.Adrevolver : No action taken.
:mozilla.322:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Adtech : No action taken.
:mozilla.323:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Adtech : No action taken.
:mozilla.197:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.198:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.199:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.200:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Advertising : No action taken.
:mozilla.201:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Advertising : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@advertising[1].txt -> TrackingCookie.Advertising : No action taken.
:mozilla.70:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Atdmt : No action taken.
C:\Documents and Settings\Dan\Cookies\dan@atdmt[2].txt -> TrackingCookie.Atdmt : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@atdmt[3].txt -> TrackingCookie.Atdmt : No action taken.
:mozilla.225:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Bluestreak : No action taken.
C:\Documents and Settings\Dan\Cookies\dan@bluestreak[2].txt -> TrackingCookie.Bluestreak : No action taken.
:mozilla.218:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Burstbeacon : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@www.burstbeacon[1].txt -> TrackingCookie.Burstbeacon : No action taken.
:mozilla.221:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Burstnet : No action taken.
:mozilla.222:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Burstnet : No action taken.
:mozilla.223:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Burstnet : No action taken.
:mozilla.224:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Burstnet : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@burstnet[2].txt -> TrackingCookie.Burstnet : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@www.burstnet[1].txt -> TrackingCookie.Burstnet : No action taken.
:mozilla.71:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.72:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.73:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.74:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.75:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
:mozilla.380:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Clickzs : No action taken.
:mozilla.381:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Clickzs : No action taken.
:mozilla.382:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Clickzs : No action taken.
:mozilla.383:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Clickzs : No action taken.
:mozilla.384:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Clickzs : No action taken.
:mozilla.385:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Clickzs : No action taken.
:mozilla.386:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Clickzs : No action taken.
:mozilla.387:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Clickzs : No action taken.
:mozilla.388:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Clickzs : No action taken.
:mozilla.389:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Clickzs : No action taken.
:mozilla.390:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Clickzs : No action taken.
:mozilla.391:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Clickzs : No action taken.
:mozilla.662:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Clickzs : No action taken.
:mozilla.663:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Clickzs : No action taken.
:mozilla.664:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Clickzs : No action taken.
:mozilla.665:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Clickzs : No action taken.
:mozilla.342:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\ke1uzze3.default\cookies.txt -> TrackingCookie.Cnn : No action taken.
:mozilla.40:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Com : No action taken.
:mozilla.41:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Com : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@com[1].txt -> TrackingCookie.Com : No action taken.
:mozilla.775:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Cqcounter : No action taken.
:mozilla.12:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
C:\Documents and Settings\Dan\Cookies\dan@doubleclick[2].txt -> TrackingCookie.Doubleclick : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@doubleclick[1].txt -> TrackingCookie.Doubleclick : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@adopt.euroclick[2].txt -> TrackingCookie.Euroclick : No action taken.
:mozilla.22:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.23:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.24:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.27:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.28:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.29:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.30:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Fastclick : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@fastclick[2].txt -> TrackingCookie.Fastclick : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@media.fastclick[1].txt -> TrackingCookie.Fastclick : No action taken.
:mozilla.431:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Fortunecity : No action taken.
:mozilla.432:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Fortunecity : No action taken.
:mozilla.212:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Hitbox : No action taken.
:mozilla.213:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Hitbox : No action taken.
:mozilla.215:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Hitbox : No action taken.
:mozilla.487:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Imrworldwide : No action taken.
:mozilla.488:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Imrworldwide : No action taken.
:mozilla.758:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Information : No action taken.
:mozilla.759:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Liveperson : No action taken.
:mozilla.760:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Liveperson : No action taken.
:mozilla.761:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Liveperson : No action taken.
:mozilla.363:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\ke1uzze3.default\cookies.txt -> TrackingCookie.Masterstats : No action taken.
:mozilla.740:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Masterstats : No action taken.
:mozilla.50:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Mediaplex : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@mediaplex[2].txt -> TrackingCookie.Mediaplex : No action taken.
:mozilla.228:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\ke1uzze3.default\cookies.txt -> TrackingCookie.Msn : No action taken.
:mozilla.229:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\ke1uzze3.default\cookies.txt -> TrackingCookie.Msn : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@search.msn[1].txt -> TrackingCookie.Msn : No action taken.
:mozilla.246:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\ke1uzze3.default\cookies.txt -> TrackingCookie.Netflame : No action taken.
:mozilla.7:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\1unalfsy.default\cookies.txt -> TrackingCookie.Netflame : No action taken.
:mozilla.762:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Onestat : No action taken.
:mozilla.763:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Onestat : No action taken.
:mozilla.764:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Onestat : No action taken.
:mozilla.765:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Onestat : No action taken.
:mozilla.556:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.69:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Overture : No action taken.
:mozilla.152:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Paycounter : No action taken.
:mozilla.153:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Paycounter : No action taken.
:mozilla.459:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\ke1uzze3.default\cookies.txt -> TrackingCookie.Paypal : No action taken.
:mozilla.856:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Paypal : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@www.paypal[1].txt -> TrackingCookie.Paypal : No action taken.
:mozilla.200:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\ke1uzze3.default\cookies.txt -> TrackingCookie.Pocitadlo : No action taken.
:mozilla.235:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Pocitadlo : No action taken.
:mozilla.168:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.169:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.170:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.171:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.172:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Pointroll : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@ads.pointroll[2].txt -> TrackingCookie.Pointroll : No action taken.
:mozilla.175:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Questionmarket : No action taken.
:mozilla.176:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Questionmarket : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@questionmarket[1].txt -> TrackingCookie.Questionmarket : No action taken.
:mozilla.209:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\ke1uzze3.default\cookies.txt -> TrackingCookie.Real : No action taken.
:mozilla.575:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Realmedia : No action taken.
:mozilla.576:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Realmedia : No action taken.
:mozilla.584:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Revenue : No action taken.
:mozilla.215:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\ke1uzze3.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.216:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\ke1uzze3.default\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.32:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.33:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.34:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.35:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.36:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.37:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.38:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.39:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Revsci : No action taken.
:mozilla.714:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Revsci : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@revsci[2].txt -> TrackingCookie.Revsci : No action taken.
:mozilla.17:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Ru4 : No action taken.
:mozilla.18:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Ru4 : No action taken.
:mozilla.19:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Ru4 : No action taken.
:mozilla.20:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Ru4 : No action taken.
:mozilla.604:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.605:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.606:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.607:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.608:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
:mozilla.100:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.101:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.102:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.103:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.104:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.105:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.106:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.107:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.108:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.109:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.110:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.111:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.112:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.113:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.114:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.115:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.116:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.117:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.118:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.119:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.120:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.121:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.122:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.123:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.124:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.125:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.126:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.127:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.128:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.129:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.130:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.131:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.132:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.133:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.134:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.135:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.136:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.87:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.88:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.89:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.90:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.91:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.92:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.93:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.94:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.95:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.96:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.97:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.98:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.99:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
:mozilla.148:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sexlist : No action taken.
:mozilla.143:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sextracker : No action taken.
:mozilla.144:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sextracker : No action taken.
:mozilla.145:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sextracker : No action taken.
:mozilla.146:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Sextracker : No action taken.
:mozilla.878:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Smartadserver : No action taken.
:mozilla.157:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.158:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.159:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.160:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.161:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.162:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.163:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.164:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.165:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.166:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.167:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.616:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.617:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.618:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.619:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.8:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\ke1uzze3.default\cookies.txt -> TrackingCookie.Specificclick : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@adopt.specificclick[2].txt -> TrackingCookie.Specificclick : No action taken.
:mozilla.456:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Starware : No action taken.
:mozilla.457:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Starware : No action taken.
:mozilla.774:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Starware : No action taken.
:mozilla.184:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.185:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.186:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.187:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.188:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.228:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.257:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Tacoda : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@anad.tacoda[1].txt -> TrackingCookie.Tacoda : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@anat.tacoda[2].txt -> TrackingCookie.Tacoda : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@tacoda[2].txt -> TrackingCookie.Tacoda : No action taken.
:mozilla.246:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.247:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
:mozilla.250:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.251:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.252:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.253:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.254:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.255:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.256:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@trafficmp[2].txt -> TrackingCookie.Trafficmp : No action taken.
:mozilla.68:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Tribalfusion : No action taken.
C:\Documents and Settings\Dan\Cookies\dan@tribalfusion[2].txt -> TrackingCookie.Tribalfusion : No action taken.
C:\Documents and Settings\Sarah\Cookies\sarah@tribalfusion[2].txt -> TrackingCookie.Tribalfusion : No action taken.
:mozilla.577:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Valuead : No action taken.
:mozilla.578:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Valuead : No action taken.
:mozilla.579:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Valuead : No action taken.
:mozilla.580:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Valuead : No action taken.
:mozilla.581:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Valuead : No action taken.
:mozilla.257:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\ke1uzze3.default\cookies.txt -> TrackingCookie.Valueclick : No action taken.
:mozilla.424:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Valueclick : No action taken.
:mozilla.654:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Valueclick : No action taken.
:mozilla.673:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Web-stat : No action taken.
:mozilla.674:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Web-stat : No action taken.
:mozilla.60:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Webtrends : No action taken.
:mozilla.701:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Yadro : No action taken.
:mozilla.702:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Yadro : No action taken.
:mozilla.13:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.14:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.15:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.16:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.21:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
:mozilla.76:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.77:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.78:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.79:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Zedo : No action taken.
:mozilla.80:C:\Documents and Settings\Dan\Application Data\Mozilla\Firefox\Profiles\uzruxst5.Default User\cookies.txt -> TrackingCookie.Zedo : No action taken.
C:\Documents and Settings\Dan\Cookies\dan@zedo[1].txt -> TrackingCookie.Zedo : No action taken.
C:\Documents and Settings\Dan\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\proc.jar-4a433b20-3563e75c.zip/MainApp.class -> Trojan.ClassLoader.f : No action taken.


::Report end




SmitFraudFix v2.200

Scan done at 17:03:37.26, Fri 07/06/2007
Run from C:\Documents and Settings\Dan\Desktop\New Folder\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
The filesystem type is NTFS
Fix run in safe mode

»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler Before SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll

»»»»»»»»»»»»»»»»»»»»»»»» Killing process


»»»»»»»»»»»»»»»»»»»»»»»» hosts


127.0.0.1 localhost

»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix

GenericRenosFix by S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» Deleting infected files


»»»»»»»»»»»»»»»»»»»»»»»» DNS

Description: RCA USB Cable Modem - Packet Scheduler Miniport
DNS Server Search Order: 65.24.7.3
DNS Server Search Order: 65.24.7.6

HKLM\SYSTEM\CCS\Services\Tcpip\..\{F0954CE5-2B0A-478D-A544-81E8CD37826D}: DhcpNameServer=65.24.7.3 65.24.7.6
HKLM\SYSTEM\CS1\Services\Tcpip\..\{F0954CE5-2B0A-478D-A544-81E8CD37826D}: DhcpNameServer=65.24.7.3 65.24.7.6
HKLM\SYSTEM\CS3\Services\Tcpip\..\{F0954CE5-2B0A-478D-A544-81E8CD37826D}: DhcpNameServer=65.24.7.3 65.24.7.6


»»»»»»»»»»»»»»»»»»»»»»»» Deleting Temp Files


»»»»»»»»»»»»»»»»»»»»»»»» Winlogon.System
!!!Attention, following keys are not inevitably infected!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon]
"System"=""


»»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning

Registry Cleaning done.

»»»»»»»»»»»»»»»»»»»»»»»» SharedTaskScheduler After SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll


»»»»»»»»»»»»»»»»»»»»»»»» End





Logfile of HijackThis v1.99.1
Scan saved at 5:06:35 PM, on 7/6/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\EXPLORER.EXE
C:\Program Files\Hijackthis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,First Home Page = http://www.dell.com
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: MorpheusToolbar BHO - {3F3714A1-89A4-46be-8AF3-D0C9D1FB03F9} - C:\Program Files\MorpheusBar\bar\1.bin\MORPHBAR.DLL
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: (no name) - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - (no file)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.3558\swg.dll (file missing)
O2 - BHO: (no name) - {BDF3E430-B101-42AD-A544-FADC6B084872} - (no file)
O2 - BHO: (no name) - {D73F49B1-B51B-4d32-A3B7-BD04B8342F53} - C:\Program Files\MorpheusBar\SrchAstt\1.bin\MBSRCAS.DLL
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll
O3 - Toolbar: Morpheus Toolbar - {3F3714A9-89A4-46be-8AF3-D0C9D1FB03F9} - C:\Program Files\MorpheusBar\bar\1.bin\MORPHBAR.DLL
O3 - Toolbar: (no name) - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - (no file)
O3 - Toolbar: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - (no file)
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [IntelMeM] C:\Program Files\Intel\Modem Event Monitor\IntelMEM.exe
O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\Media Experience\PCMService.exe"
O4 - HKLM\..\Run: [DVDLauncher] "C:\Program Files\CyberLink\PowerDVD\DVDLauncher.exe"
O4 - HKLM\..\Run: [URLLSTCK.exe] C:\Program Files\Norton Internet Security\UrlLstCk.exe
O4 - HKLM\..\Run: [mmtask] c:\Program Files\MusicMatch\MusicMatch Jukebox\mmtask.exe
O4 - HKLM\..\Run: [MMTray] C:\Program Files\MUSICMATCH\Musicmatch Jukebox\mm_tray.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\DellSupport\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - Global Startup: hp psc 1000 series.lnk = ?
O8 - Extra context menu item: Add to Google Photos Screensa&ver - res://C:\WINDOWS\system32\GPhotos.scr/200
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~2\OFFICE11\REFIEBAR.DLL
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: MUSICMATCH MX Web Player - {d81ca86b-ef63-42af-bee3-4502d9a03c2d} - http://wwws.musicmat...enWebRadio.html (file missing)
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: PartyPoker.net - {F4430FE8-2638-42e5-B849-800749B94EED} - C:\Program Files\PartyPoker.net\partypokernet.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.net - {F4430FE8-2638-42e5-B849-800749B94EED} - C:\Program Files\PartyPoker.net\partypokernet.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft....k/?linkid=39204
O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by101fd.bay10...es/MsnPUpld.cab
O16 - DPF: {F04A8AE2-A59D-11D2-8792-00C04F8EF29D} (Hotmail Attachments Control) - http://by101fd.bay10...ex/HMAtchmt.ocx
O18 - Protocol: x-excid - {9D6CC632-1337-4A33-9214-2DA092E776F4} - c:\WINDOWS\Downloaded Program Files\mimectl.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: DSBrokerService - Unknown owner - C:\Program Files\DellSupport\brkrsvc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel® Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe

#4 ken545

ken545

    Forum God

  • Retired Classroom Teacher
  • 23,225 posts
  • Interests:Fighting Malware and cooking some great Italian and TexMex food
  • MVP

Posted 06 July 2007 - 04:55 PM

loveda :D

It looks like Spycrush is gone but lets go over a few things.

Your AVG Log shows "NO ACTION TAKEN" when it should have deleted or quanantined those entries as most of them are bad and need to go.

It also looks like you posted your HJT log in safemode and if so it is not showing everything. Always run and post your log in normal windows.


MorpheusToolbar <-- this one right now is under debate, so if you don't use it remove it via the Add-Remove Programs in the Control Panel.
Party Poker <-- is another that may cause problems, this to is your call if you can live without it then uninstall it.


You have no Anti Virus programs running :( In this day and age of all the threats on the internet , its kind of foolish to go online without one. Here are some free ones, just install one because more than one can cause problems.


Open HijackThis > Do a System Scan Only, close your browser and all open windows, the only program or window you should have open is HijackThis, check the following entries and click on Fix Checked.

It looks like you may have had Norton installed at one time so you can remove these.

O2 - BHO: (no name) - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - (no file)
O2 - BHO: (no name) - {BDF3E430-B101-42AD-A544-FADC6B084872} - (no file)
O3 - Toolbar: (no name) - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - (no file)
O3 - Toolbar: (no name) - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - (no file)


If you remove the MorpheusToolbar, then remove these also
O2 - BHO: MorpheusToolbar BHO - {3F3714A1-89A4-46be-8AF3-D0C9D1FB03F9} - C:\Program Files\MorpheusBar\bar\1.bin\MORPHBAR.DLL
O2 - BHO: (no name) - {D73F49B1-B51B-4d32-A3B7-BD04B8342F53} - C:\Program Files\MorpheusBar\SrchAstt\1.bin\MBSRCAS.DLL
O3 - Toolbar: Morpheus Toolbar - {3F3714A9-89A4-46be-8AF3-D0C9D1FB03F9} - C:\Program Files\MorpheusBar\bar\1.bin\MORPHBAR.DLL


If you remove PartyPoker, remove these
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe (file missing)
O9 - Extra button: PartyPoker.net - {F4430FE8-2638-42e5-B849-800749B94EED} - C:\Program Files\PartyPoker.net\partypokernet.exe (file missing)
O9 - Extra 'Tools' menuitem: PartyPoker.net - {F4430FE8-2638-42e5-B849-800749B94EED} - C:\Program Files\PartyPoker.net\partypokernet.exe (file missing)




Your Java being very outdated may be letting these bad guys in.
  • Your Java is out of date and leaving your system vulnerable.
  • Go to your Add-Remove Programs in the Control Panel and uninstall any previous versions of Java (J2SE Runtime Environment)
  • It should have an icon next to it:
    Posted Image
    Select it and click Remove.
  • Reboot your system.
  • Then go to the Sun Microsystems and install the update
  • Java Runtime Environment Version 6 Update 1 <--This is what you need to download and install.
  • If you chose the online installation, it will prompt you to run the program.
  • If you chose the offline installation, you will be prompted to save the file and you can run it from wherever you saved it.
  • Then after install you can verify your installation here Sun Java Verify
I like to to do the offline installation and save the setup file in case I may need it in the future


Mucho bad stuff backed up in System Restore, flush it all out this way and I can't stress enough how important it is to create a new restore point

System Restore makes regular backups of all your settings, if you ever had to use this program to restore your system to a previous date, you will be infected all over again so we need to clean out the previous Restore Points

Turn off System Restore.
  • Right-click My Computer.
  • Click Properties.
  • Click the System Restore tab.
  • Check Turn off System Restore on all Drives.
  • Click Apply, and then click OK.

Reboot your computer


Turn ON System Restore.
  • Right-click My Computer.
  • ClickProperties.
  • Click the System Restore tab.
  • UN-Check Turn off System Restore on all Drives.
  • Click Apply, and then click OK.

Create a new Restore Point <-- Very Important
  • Go to Start/ Control Panel/ Performance and Maintenance/ System Restore/ Create a New Restore Point
    You need to go into the Control Panel and switch to Catagory View to be able to Create a New Restore Point
System Restore Tutorial <-- If you need it





What I would do is to run AVG Anti Spyware again, save the log and make sure you have it set to Quanantine.

Post the AVG log and a New HJT log in normal windows please.

Ken :D

 
 
The forum is staffed by volunteers who donate their time and expertise.
If you feel you have been helped, please consider a donation.
donate.gif
 
Find us on Facebook
Please LIKE and SHARE
 
 
Just a reminder that threads will be closed if no reply in 3 days.

#5 ken545

ken545

    Forum God

  • Retired Classroom Teacher
  • 23,225 posts
  • Interests:Fighting Malware and cooking some great Italian and TexMex food
  • MVP

Posted 17 July 2007 - 02:52 PM

This topic is being closed due to lack of response, if you need this topic reopened, please request this by sending an email to us at the following link
(Click for address)
Include your post user name and detail why you need it reopened with a valid link to your post.
Any bad links or emails that are not from the original poster will be deleted without response.
Any emails without the subject "Reopen" will be deleted without being looked at.

If this is not your thread please start a New Topic.


 
 
The forum is staffed by volunteers who donate their time and expertise.
If you feel you have been helped, please consider a donation.
donate.gif
 
Find us on Facebook
Please LIKE and SHARE
 
 
Just a reminder that threads will be closed if no reply in 3 days.

Related Topics



0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users