hijackthis! log (2)

Status
Not open for further replies.

Anphrax

In Runtime
Messages
378
Reposting using v1.99.1:

Logfile of HijackThis v1.99.1
Scan saved at 11:54:14 AM, on 11/20/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\UAService7.exe
C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe
C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WUSB54Gv2.exe
C:\Program Files\windowsblinds\wbload.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\D-Tools\daemon.exe
C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\InfoMyCa.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\windows\system32\mdms.exe
C:\Program Files\CursorXP\CursorXP.exe
C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
D:\System Mechanic Mobile Toolkit\SysMech5.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\WinRAR\WinRAR.exe
C:\WINDOWS\explorer.exe
C:\Documents and Settings\Andy w\Desktop\Downloads\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NVMixerTray] "C:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [WUSB54Gv2] C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\InvokeSvc3.exe
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [BootSkin Startup Jobs] "C:\PROGRA~1\Stardock\WINCUS~1\BootSkin\BootSkin.exe" /StartupJobs
O4 - HKLM\..\Run: [SysMemory manager] c:\windows\system32\mdms.exe
O4 - HKCU\..\Run: [Steam] "c:\program files\valve\steam\steam.exe" -silent
O4 - HKCU\..\Run: [CursorXP] C:\Program Files\CursorXP\CursorXP.exe
O4 - HKCU\..\Run: [RoboForm] "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: Customize Menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Fill Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: RoboForm Toolbar - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Save Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {D1E7CBDA-E60E-4970-A01C-37301EF7BF98} (Measurement Services Client v.3.7) - http://gameadvisor.futuremark.com/global/msc37.cab
O20 - Winlogon Notify: chk - C:\WINDOWS\SYSTEM32\chke.dll
O20 - Winlogon Notify: msupdate - C:\WINDOWS\SYSTEM32\msupdate32.dll
O20 - Winlogon Notify: WB - C:\PROGRA~1\WI00C2~1\fastload.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Sandra Data Service (SandraDataSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Professional 2005.SR2a\RpcDataSrv.exe
O23 - Service: Sandra Service (SandraTheSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Professional 2005.SR2a\RpcSandraSrv.exe
O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Unknown owner - C:\WINDOWS\system32\UAService7.exe
O23 - Service: WUSB54Gv2SVC - Unknown owner - C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe" "WUSB54Gv2.exe (file missing)
 
Please print out these instructions. You might not be able to access the internet in safe mode.

Download these programs

Ewido Security Suite
  • Install Ewido
    Uncheck these items Install ewido background guard and Install via context menu
    Update Ewido
    If you have a problem updates go here
    Don't run scan yet!!!!
CleanUp


Instruction to boot into safemode
  • Press F8 a couple of times, Windows Advanced Options should appear, Scroll down to safe mode.
Open Cleanup! by double-clicking the icon on your desktop (or from the Start > All Programs menu).
Set the program up as follows:
Click "Options..."
Move the arrow down to "Custom CleanUp!"
Put a check next to the following (Make sure nothing else is checked!):
  • Empty Recycle Bins
  • Delete Cookies
  • Delete Prefetch files
  • Cleanup! All Users
Click OK
Press the CleanUp! button to start the program.

It may ask you to reboot at the end, click NO.

Run Ewido
  • Click on scanner, then click on Complete System Scan
    When Ewido finds something to have ewido automatically delete everything, click on the box little box at the bottom
    When scan completes, click on Save Report, save it to your desktop
Reboot into Normal Mode
Save the Report to your desktop

Post a fresh Hijackthis, ewido, and panda log
 
ewido report:

---------------------------------------------------------
ewido security suite - Scan report
---------------------------------------------------------

+ Created on: 10:12:56 PM, 11/20/2005
+ Report-Checksum: 630BE1E1

+ Scan result:

HKLM\SOFTWARE\Classes\CLSID\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\Classes\MiniBugTransporter.MiniBugTransporterX\CLSID\\ -> Spyware.MiniBug : Cleaned with backup
HKLM\SOFTWARE\Classes\MiniBugTransporter.MiniBugTransporterX.1\CLSID\\ -> Spyware.MiniBug : Cleaned with backup
HKLM\SYSTEM\ControlSet001\Control\Video\{B626CA70-827E-498B-9493-3A2A5D3C4401}\0000\\_moh_spearhead.exe:D3DOGL_67207556 -> Spyware.LZIO : Cleaned with backup
[716] C:\WINDOWS\system32\msupdate32.dll -> TrojanDownloader.Agent.aab : Cleaned with backup
[3940] C:\WINDOWS\system32\child.dll -> TrojanDownloader.Small.bug : Cleaned with backup
:mozilla.34:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.35:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.43:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.48:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Paypopup : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.53:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.56:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.58:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.59:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.60:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.61:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.69:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Addynamix : Cleaned with backup
:mozilla.70:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Addynamix : Cleaned with backup
:mozilla.71:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
:mozilla.74:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.75:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.76:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.77:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.78:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.79:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.80:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.81:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.86:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.92:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.93:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.94:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.95:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
:mozilla.96:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.97:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.98:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.99:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.100:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.101:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.102:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
:mozilla.103:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.104:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.105:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.106:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.107:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.108:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.109:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.110:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.111:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.112:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.113:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.117:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.118:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.119:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.121:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.122:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.123:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.124:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.130:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.131:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.147:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.148:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
:mozilla.153:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Adbrite : Cleaned with backup
:mozilla.173:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.174:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
:mozilla.191:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.192:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.193:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.194:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.195:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.196:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.197:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.227:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.228:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.229:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.232:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.233:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.234:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.235:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.236:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.248:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.249:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.250:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.251:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.272:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.273:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
:mozilla.275:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.276:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.278:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.279:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
:mozilla.313:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.351:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Hypertracker : Cleaned with backup
:mozilla.394:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.395:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.420:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.430:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.442:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.443:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.444:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.445:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.446:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.463:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Spylog : Cleaned with backup
:mozilla.468:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.469:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.470:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.471:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.472:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.473:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Adbrite : Cleaned with backup
:mozilla.493:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
:mozilla.494:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.495:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.496:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.497:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.498:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.499:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.500:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.501:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.502:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Trafic : Cleaned with backup
:mozilla.529:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.530:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.531:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.532:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.533:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.554:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Counted : Cleaned with backup
:mozilla.556:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.557:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.571:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.****-access : Cleaned with backup
:mozilla.601:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.602:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.604:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.605:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.606:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.607:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.608:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.609:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Adition : Cleaned with backup
:mozilla.627:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup
:mozilla.652:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\d5gz6f4y.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
:mozilla.11:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.247realmedia : Cleaned with backup
:mozilla.12:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.13:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.16:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.17:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.18:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.19:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.31:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.32:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.38:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.39:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.40:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.56:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.68:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.69:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.70:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.71:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.72:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.73:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.74:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
:mozilla.76:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.77:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
:mozilla.96:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.97:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.104:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.105:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
:mozilla.215:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
:mozilla.220:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.221:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.222:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.223:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.224:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.225:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.226:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.227:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.228:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
:mozilla.244:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.245:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.246:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.247:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.248:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
:mozilla.251:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Spylog : Cleaned with backup
:mozilla.252:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.253:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.254:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.255:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.256:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.257:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.258:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.259:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.268:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
:mozilla.273:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.274:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.275:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.276:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.277:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.278:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.279:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
:mozilla.280:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.281:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.282:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
:mozilla.289:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.290:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.291:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.292:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Valuead : Cleaned with backup
:mozilla.311:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.312:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.313:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.314:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.315:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
:mozilla.322:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.323:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.324:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.325:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.326:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.334:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.335:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.336:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
:mozilla.365:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.366:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.367:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.368:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
:mozilla.369:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.370:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.371:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.372:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.373:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
:mozilla.383:C:\Documents and Settings\Andy w\Application Data\Mozilla\Firefox\Profiles\gj8qijh3.Default User\cookies.txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup
C:\Documents and Settings\Andy w\Cookies\andy w@advertising[2].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Documents and Settings\Andy w\Cookies\andy w@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Documents and Settings\Andy w\Cookies\andy w@doubleclick[1].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Documents and Settings\Andy w\Local Settings\Temp\Cookies\andy w@ad.yieldmanager[1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
C:\Documents and Settings\Andy w\Local Settings\Temp\Cookies\andy w@advertising[2].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Documents and Settings\Andy w\Local Settings\Temp\Cookies\andy w@as-us.falkag[2].txt -> Spyware.Cookie.Falkag : Cleaned with backup
C:\Documents and Settings\Andy w\Local Settings\Temp\Cookies\andy w@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
C:\Documents and Settings\Andy w\Local Settings\Temp\Cookies\andy w@doubleclick[1].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
C:\Documents and Settings\Andy w\Local Settings\Temp\Cookies\andy w@edge.ru4[2].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
C:\Documents and Settings\Andy w\Local Settings\Temp\Cookies\andy w@fastclick[2].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
C:\Documents and Settings\Andy w\Local Settings\Temp\Cookies\andy w@rotator.adjuggler[2].txt -> Spyware.Cookie.Adjuggler : Cleaned with backup
C:\Documents and Settings\Andy w\Local Settings\Temp\Cookies\andy w@servedby.advertising[2].txt -> Spyware.Cookie.Advertising : Cleaned with backup
C:\Documents and Settings\Andy w\Local Settings\Temp\Cookies\andy w@statcounter[1].txt -> Spyware.Cookie.Statcounter : Cleaned with backup
C:\Documents and Settings\Andy w\Local Settings\Temp\Cookies\andy w@trafficmp[2].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
C:\Documents and Settings\Andy w\Local Settings\Temp\Cookies\andy w@z1.adserver[1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
C:\Program Files\AWS\WeatherBug\MiniBugTransporter.dll -> Spyware.Wheaterbug : Cleaned with backup
C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00001.dll -> TrojanSpy.Small.dg : Cleaned with backup
C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00001.exe -> TrojanSpy.Small.dg : Cleaned with backup
C:\Program Files\Common Files\Microsoft Shared\Web Folders\ibm00002.dll -> TrojanSpy.Small.dg : Cleaned with backup
C:\WINDOWS\hosts -> Trojan.Qhost.el : Cleaned with backup
C:\WINDOWS\system32\child.dll -> TrojanDownloader.Small.bug : Cleaned with backup
C:\WINDOWS\system32\chke.dll -> TrojanDownloader.Small.bxa : Cleaned with backup
C:\WINDOWS\system32\mspostsp.exe -> Trojan.Inject.i : Cleaned with backup
C:\WINDOWS\system32\msupdate32.dll -> TrojanDownloader.Agent.aab : Cleaned with backup
C:\WINDOWS\tool3.exe -> TrojanDownloader.Small.bwr : Cleaned with backup
C:\WINDOWS\tool4.exe -> TrojanDropper.Agent.abu : Cleaned with backup
C:\Winnt\System32\Drivers\Etc\secure.bat -> Backdoor.ServU-based : Cleaned with backup


::Report End

______________________________________________________

Logfile of HijackThis v1.99.1
Scan saved at 10:19:43 PM, on 11/20/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
C:\Program Files\Alwil Software\Avast4\ashServ.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\WINDOWS\system32\nvsvc32.exe
C:\WINDOWS\system32\UAService7.exe
C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe
C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WUSB54Gv2.exe
C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe
C:\Program Files\Alwil Software\Avast4\ashWebSv.exe
C:\Program Files\windowsblinds\wbload.exe
C:\WINDOWS\Explorer.EXE
C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
C:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\RUNDLL32.EXE
C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\InfoMyCa.exe
C:\program files\valve\steam\steam.exe
C:\Program Files\CursorXP\CursorXP.exe
C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe
C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
C:\Program Files\AIM\aim.exe
C:\Program Files\Windows Media Player\wmplayer.exe
C:\Program Files\mIRC\mirc.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Documents and Settings\Andy w\Desktop\Downloads\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\Program Files\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - C:\Program Files\Siber Systems\AI RoboForm\roboform.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [avast!] C:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [NVMixerTray] "C:\Program Files\NVIDIA Corporation\NvMixer\NVMixerTray.exe"
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [WUSB54Gv2] C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\InvokeSvc3.exe
O4 - HKLM\..\Run: [DAEMON Tools-1033] "C:\Program Files\D-Tools\daemon.exe" -lang 1033
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [BootSkin Startup Jobs] "C:\PROGRA~1\Stardock\WINCUS~1\BootSkin\BootSkin.exe" /StartupJobs
O4 - HKCU\..\Run: [Steam] "c:\program files\valve\steam\steam.exe" -silent
O4 - HKCU\..\Run: [CursorXP] C:\Program Files\CursorXP\CursorXP.exe
O4 - HKCU\..\Run: [RoboForm] "C:\Program Files\Siber Systems\AI RoboForm\RoboTaskBarIcon.exe"
O4 - Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: Customize Menu - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Fill Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O8 - Extra context menu item: RoboForm Toolbar - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O8 - Extra context menu item: Save Forms - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComFillForms.html
O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComSavePass.html
O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - file://C:\Program Files\Siber Systems\AI RoboForm\RoboFormComShowToolbar.html
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O16 - DPF: {D1E7CBDA-E60E-4970-A01C-37301EF7BF98} (Measurement Services Client v.3.7) - http://gameadvisor.futuremark.com/global/msc37.cab
O20 - Winlogon Notify: chk - chke.dll (file missing)
O20 - Winlogon Notify: msupdate - msupdate32.dll (file missing)
O20 - Winlogon Notify: WB - C:\PROGRA~1\WI00C2~1\fastload.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - C:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: avast! Antivirus - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - C:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
O23 - Service: Sandra Data Service (SandraDataSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Professional 2005.SR2a\RpcDataSrv.exe
O23 - Service: Sandra Service (SandraTheSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Professional 2005.SR2a\RpcSandraSrv.exe
O23 - Service: SecuROM User Access Service (V7) (UserAccess7) - Unknown owner - C:\WINDOWS\system32\UAService7.exe
O23 - Service: WUSB54Gv2SVC - Unknown owner - C:\Program Files\Linksys Wireless-G USB Wireless Network Monitor\WLService.exe" "WUSB54Gv2.exe (file missing)
 
Open Hijackthis
Click on Do System Scan Only
Fix these items

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page =
O20 - Winlogon Notify: chk - chke.dll (file missing)
O20 - Winlogon Notify: msupdate - msupdate32.dll (file missing)


Save the Report to your desktop

Post a fresh Hijackthis and panda log
 
Status
Not open for further replies.
Back
Top Bottom