2
Contributors
9
Replies
10
Views
11 Years
Discussion Span
Last Post by crunchie
0

Hi and welcome to Daniweb forums :).

Download HijackThis self-extracting zip version from here. Once downloaded, double click on the file & it will install into it's own, permanent folder.
Start HJT & press the "Do a system scan and save a log file" button. When the scan is finished a window will pop up giving you the option of where to save it. Save it to desktop where it is easy to access. Open the log file and copy the entire contents of the file & paste it into the body of your post. DO NOT FIX ANYTHING YET. Most of what is there is necessary for the running of your system.

0

Thank you crunchie. Here is my log file :

Logfile of HijackThis v1.99.1
Scan saved at 6:52:45 PM, on 1/10/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\WINDOWS\System32\cisvc.exe
C:\Program Files\Executive Software\DiskeeperWorkstation\DKService.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\pctspk.exe
C:\Program Files\Common Files\Logitech\QCDriver3\LVCOMS.EXE
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
C:\WINDOWS\System32\spool\DRIVERS\W32X86\hpoopm07.exe
C:\Program Files\Common Files\AOL\1103629124\ee\AOLSoftware.exe
C:\Program Files\Logitech\MouseWare\system\em_exec.exe
C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\DIGStream\digstream.exe
C:\Program Files\ESPNRunTime\DIGServices.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Common Files\AOL\1103629124\ee\services\sscAntiSpywarePlugin\ver1_10_3_1\AOLSP Scheduler.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\WINDOWS\neted32.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\netqo32.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\cidaemon.exe
c:\program files\common files\aol\1103629124\ee\aolssc.exe
C:\Program Files\Yahoo!\Messenger\YPager.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\Program Files\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\sakqc.dll/sp.html#87649%resultposition.net
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\sakqc.dll/sp.html#87649%resultposition.net
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = res://C:\WINDOWS\sakqc.dll/sp.html#87649%resultposition.net
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\sakqc.dll/sp.html#87649%resultposition.net
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\sakqc.dll/sp.html#87649%resultposition.net
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = res://C:\WINDOWS\sakqc.dll/sp.html#87649%resultposition.net
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = res://C:\WINDOWS\sakqc.dll/sp.html#87649%resultposition.net
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R3 - Default URLSearchHook is missing
N3 - Netscape 7: user_pref("browser.startup.homepage", "http://home.netscape.com/bookmark/7_1/home.html"); (C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\prefs.js)
N3 - Netscape 7: user_pref("browser.search.defaultengine", "engine://C%3A%5CPROGRA%7E1%5CNetscape%5CNetscape%5Csearchplugins%5CSBWeb_01.src"); (C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\prefs.js)
O2 - BHO: Class - {008602DA-BF96-4343-F9AA-6322853BD842} - C:\WINDOWS\syswi.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Class - {15F6DF51-80DA-2FBF-3DB3-4BC956825654} - C:\WINDOWS\d3jx32.dll
O2 - BHO: UberButton Class - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: YahooTaggedBM Class - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - C:\Program Files\Yahoo!\Common\YIeTagBm.dll
O2 - BHO: Class - {6BFD4FF9-22B6-A8BC-8348-E8EF313969E1} - C:\WINDOWS\system32\crvs32.dll
O2 - BHO: Class - {824CB85E-8849-F5FF-50D8-97E69A69E394} - C:\WINDOWS\addex.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O2 - BHO: Class - {D04FEDA4-D7C0-3150-02FF-AD27F54D4CA1} - C:\WINDOWS\mfchw32.dll
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll (file missing)
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll
O3 - Toolbar: &ESPN - {AE6F2894-AF10-4C9C-B16E-1DFC6FF8C0C6} - C:\Program Files\ESPN\Toolbar\DIGToolBar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [WildTangent CDA] "C:\Program Files\WildTangent\Apps\CDA\GameDrvr.exe" /startup "C:\Program Files\WildTangent\Apps\CDA\cdaEngine0500.dll"
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [PCTVOICE] pctspk.exe
O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Common Files\Logitech\QCDriver3\LVCOMS.EXE
O4 - HKLM\..\Run: [LogitechGalleryRepair] C:\Program Files\Logitech\ImageStudio\ISStart.exe
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [HPAIO_PrintFolderMgr] C:\WINDOWS\System32\spool\DRIVERS\W32X86\hpoopm07.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1103629124\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [DDCM] "C:\Program Files\WildTangent\DDC\DDCManager\DDCMan.exe" -Background
O4 - HKLM\..\Run: [DDCActiveMenu] "C:\Program Files\WildTangent\DDC\ActiveMenu\DDCActiveMenu.exe" -boot
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [PRISMSVR.EXE] "C:\WINDOWS\system32\PRISMSVR.EXE" /APPLY
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [DIGStream] C:\Program Files\DIGStream\digstream.exe
O4 - HKLM\..\Run: [DIGServices] C:\Program Files\ESPNRunTime\DIGServices.exe /brand=ESPN /priority=0 /poll=24
O4 - HKLM\..\Run: [AOLSPScheduler] C:\Program Files\Common Files\AOL\1103629124\ee\services\sscAntiSpywarePlugin\ver1_10_3_1\AOLSP Scheduler.exe
O4 - HKLM\..\Run: [sscRun] C:\Program Files\Common Files\AOL\1103629124\ee\services\sscFirewallPlugin\ver1_10_3_1\SSCRun.exe
O4 - HKLM\..\Run: [neted32.exe] C:\WINDOWS\neted32.exe
O4 - HKLM\..\Run: [1B.tmp] C:\DOCUME~1\marqus\LOCALS~1\Temp\1B.tmp.exe
O4 - HKLM\..\RunOnce: [Pest Cleaning] "C:\Documents and Settings\All Users\Application Data\AOL\UserProfiles\All Users\antiSpyware\dat\ppclean.exe" "clean" "silent" "smartfinder" "2"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: palstart.exe
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .pps: C:\Program Files\Netscape\Netscape Browser\PLUGINS\npTrident.dll
O12 - Plugin for .xml: C:\Program Files\Netscape\Netscape Browser\PLUGINS\npTrident.dll
O16 - DPF: {01CA75F1-054B-4A63-9221-C6926369EC52} (HS_live Control) - http://install.homestead.com/~site/InstallFiles/SIFiles/lpxlive/HS_live.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\common\yinsthelper.dll
O16 - DPF: {3DA5D23B-EFE1-4181-ADB7-7D457567AACA} (TGOnlineCtrl Class) - http://zone.msn.com/bingame/pacz/default/pandaonline.cab
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - http://aolcc.aol.com/computercheckup/qdiagcc.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.pw.aol.com/molbin/shared/mcinsctl/en-us/4,0,0,77/mcinsctl.cab
O16 - DPF: {528C14CD-CF9E-489C-A365-5999F17B69B9} (LightSurfUploadCtl Class) - http://pictures.sprintpcs.com/activex/LightSurfUploadControl.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1134744444778
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.3.1) -
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10/ZIntro.cab34246.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.pw.aol.com/molbin/shared/mcgdmgr/en-us/1,0,0,18/mcgdmgr.cab
O16 - DPF: {BDF9A7C7-F4DC-455D-B5C2-045D74788295} (AOLRegistrationWizard Control) - https://free.aol.com/tryaolfree/wr6_pcbackup/AOLRegistrationWizard.cab
O16 - DPF: {CAFEEFAC-0014-0001-0002-ABCDEFFEDCBA} (Java Runtime Environment 1.4.1_02) -
O16 - DPF: {D18F962A-3722-4B59-B08D-28BB9EB2281E} (PhotosCtrl Class) - http://photos.yahoo.com/ocx/us/yexplorer1_9us.cab
O16 - DPF: {DAF5D9A2-D982-4671-83E4-0398706A5F6A} (SCEWebLauncherCtl Object) - http://zone.msn.com/bingame/hsol/default/SCEWebLauncher.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://download.games.yahoo.com/games/popcap/zuma/popcaploader_v6.cab
O16 - DPF: {F54C1137-5E34-4B95-95A5-BA56D4D8D743} (Secure Delivery) - http://www.gamespot.com/KDX/kdx.cab
O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) - http://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab
O18 - Protocol: bw+0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {B5AEDB39-2B3B-4C5C-9899-2805A484D808} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AOL Spyware Protection Service (AOLService) - Unknown owner - C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\\aolserv.exe (file missing)
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Proxy Service (ccPxySvc) - Unknown owner - C:\Program Files\Norton Internet Security\ccPxySvc.exe (file missing)
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\DiskeeperWorkstation\DKService.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - Networks Associates Technology, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Internet Security Accounts Manager (NISUM) - Unknown owner - C:\Program Files\Norton Internet Security\NISUM.EXE (file missing)
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: PCTEL Speaker Phone (Pctspk) - Unknown owner - C:\WINDOWS\system32\pctspk.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe

Hi and welcome to Daniweb forums :).

Download HijackThis self-extracting zip version from here. Once downloaded, double click on the file & it will install into it's own, permanent folder.
Start HJT & press the "Do a system scan and save a log file" button. When the scan is finished a window will pop up giving you the option of where to save it. Save it to desktop where it is easy to access. Open the log file and copy the entire contents of the file & paste it into the body of your post. DO NOT FIX ANYTHING YET. Most of what is there is necessary for the running of your system.

0

Hi again. First of all run hijackthis again and do a scan. Place a check next to all the 018 entries then hit the 'Add checked to ignorelist.'

==

Download CWShredder 2.19 from here.

Download\'SpSeHjfix\' to the desktop and then
right click a blank part of the desktop and select new folder, call it spfix
unzip the file into that folder.

Disconnect from the net and Close ALL OPEN PROGRAMS.
Run 'SpSeHjfix'. and click on "Start Disinfection".
When it's finished it will reboot your machine to finish the cleaning process.
The tool creates a log of the fix which will appear in the folder.

If it doesn't find any of the SE files or any hidden reinstallers it will say system clean and not go on to next stage.

Run the shredder and press the *fix,* not scan and allow it to clean the infection. Close all browser and explorer windows before hitting the fix button.

Reboot.

==

Please download the trial version of Ewido Security Suite here:
http://www.ewido.net/en/download/
Install it, and update the definitions to the newest files. Do NOT run a scan yet.

===============

Download AboutBuster 5:

http://www.besttechie.net/tools/AboutBuster5.zip
http://www.malwarebytes.biz/AboutBuster5.zip

Once downloaded, unzip it, and put the folder on your desktop. Then double-click on the AboutBuster icon to start the program.

Click Update. This will start updating AboutBuster with the latest definition database.

Once it's done updating and you see that dialog, click Ok.

Close AboutBuster.

Reboot into safe mode following the instructions here.

Start AboutBuster and click Begin Removal.

When the scan is done, click Ok.


Run Ewido, and do a full scan. During the scan it will prompt you to clean files, click OK.

Save the logfile from the scan.
Restart your computer in normal mode.

Download CCleaner and install, then run it.

  1. Uncheck "Cookies" under "Internet Explorer".
  2. Click on Run Cleaner in the lower right-hand corner. This can take quite a while to run.
  3. Close when finished.

Post a fresh HJT log and the log that was created by 'SpSeHjfix' as well as the log from the Ewido scan.

0

Ok I finally finished. Here are the logs as followed.

HJT:

Logfile of HijackThis v1.99.1
Scan saved at 8:37:20 AM, on 1/11/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\pctspk.exe
C:\Program Files\Common Files\Logitech\QCDriver3\LVCOMS.EXE
C:\WINDOWS\System32\spool\DRIVERS\W32X86\hpoopm07.exe
C:\Program Files\Common Files\AOL\1103629124\ee\AOLSoftware.exe
C:\Program Files\Logitech\MouseWare\system\em_exec.exe
C:\WINDOWS\System32\cisvc.exe
C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Executive Software\DiskeeperWorkstation\DKService.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\ewido anti-malware\ewidoguard.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\wanmpsvc.exe
C:\Program Files\ESPNRunTime\DIGServices.exe
C:\Program Files\Common Files\AOL\1103629124\ee\services\sscAntiSpywarePlugin\ver1_10_3_1\AOLSP Scheduler.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\wuauclt.exe
C:\WINDOWS\system32\wuauclt.exe
c:\program files\common files\aol\1103629124\ee\aolssc.exe
C:\WINDOWS\system32\cidaemon.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
R3 - Default URLSearchHook is missing
N3 - Netscape 7: user_pref("browser.startup.homepage", "http://home.netscape.com/bookmark/7_1/home.html"); (C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\prefs.js)
N3 - Netscape 7: user_pref("browser.search.defaultengine", "engine://C%3A%5CPROGRA%7E1%5CNetscape%5CNetscape%5Csearchplugins%5CSBWeb_01.src"); (C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\prefs.js)
O2 - BHO: Class - {008602DA-BF96-4343-F9AA-6322853BD842} - C:\WINDOWS\syswi.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Class - {15F6DF51-80DA-2FBF-3DB3-4BC956825654} - C:\WINDOWS\d3jx32.dll (file missing)
O2 - BHO: UberButton Class - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: YahooTaggedBM Class - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - C:\Program Files\Yahoo!\Common\YIeTagBm.dll
O2 - BHO: Class - {6BFD4FF9-22B6-A8BC-8348-E8EF313969E1} - C:\WINDOWS\system32\crvs32.dll (file missing)
O2 - BHO: Class - {824CB85E-8849-F5FF-50D8-97E69A69E394} - C:\WINDOWS\addex.dll (file missing)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O2 - BHO: Class - {D04FEDA4-D7C0-3150-02FF-AD27F54D4CA1} - C:\WINDOWS\mfchw32.dll (file missing)
O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll (file missing)
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll
O3 - Toolbar: &ESPN - {AE6F2894-AF10-4C9C-B16E-1DFC6FF8C0C6} - C:\Program Files\ESPN\Toolbar\DIGToolBar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [WildTangent CDA] "C:\Program Files\WildTangent\Apps\CDA\GameDrvr.exe" /startup "C:\Program Files\WildTangent\Apps\CDA\cdaEngine0500.dll"
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [PCTVOICE] pctspk.exe
O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Common Files\Logitech\QCDriver3\LVCOMS.EXE
O4 - HKLM\..\Run: [LogitechGalleryRepair] C:\Program Files\Logitech\ImageStudio\ISStart.exe
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [HPAIO_PrintFolderMgr] C:\WINDOWS\System32\spool\DRIVERS\W32X86\hpoopm07.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1103629124\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [DDCM] "C:\Program Files\WildTangent\DDC\DDCManager\DDCMan.exe" -Background
O4 - HKLM\..\Run: [DDCActiveMenu] "C:\Program Files\WildTangent\DDC\ActiveMenu\DDCActiveMenu.exe" -boot
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [PRISMSVR.EXE] "C:\WINDOWS\system32\PRISMSVR.EXE" /APPLY
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [DIGStream] C:\Program Files\DIGStream\digstream.exe
O4 - HKLM\..\Run: [DIGServices] C:\Program Files\ESPNRunTime\DIGServices.exe   /brand=ESPN   /priority=0   /poll=24
O4 - HKLM\..\Run: [AOLSPScheduler] C:\Program Files\Common Files\AOL\1103629124\ee\services\sscAntiSpywarePlugin\ver1_10_3_1\AOLSP Scheduler.exe
O4 - HKLM\..\Run: [sscRun] C:\Program Files\Common Files\AOL\1103629124\ee\services\sscFirewallPlugin\ver1_10_3_1\SSCRun.exe
O4 - HKLM\..\Run: [1B.tmp] C:\DOCUME~1\marqus\LOCALS~1\Temp\1B.tmp.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: palstart.exe
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .pps: C:\Program Files\Netscape\Netscape Browser\PLUGINS\npTrident.dll
O12 - Plugin for .xml: C:\Program Files\Netscape\Netscape Browser\PLUGINS\npTrident.dll
O16 - DPF: {01CA75F1-054B-4A63-9221-C6926369EC52} (HS_live Control) - [url]http://install.homestead.com/~site/InstallFiles/SIFiles/lpxlive/HS_live.cab[/url]
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\common\yinsthelper.dll
O16 - DPF: {3DA5D23B-EFE1-4181-ADB7-7D457567AACA} (TGOnlineCtrl Class) - [url]http://zone.msn.com/bingame/pacz/default/pandaonline.cab[/url]
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - [url]http://aolcc.aol.com/computercheckup/qdiagcc.cab[/url]
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - [url]http://download.pw.aol.com/molbin/shared/mcinsctl/en-us/4,0,0,77/mcinsctl.cab[/url]
O16 - DPF: {528C14CD-CF9E-489C-A365-5999F17B69B9} (LightSurfUploadCtl Class) - [url]http://pictures.sprintpcs.com/activex/LightSurfUploadControl.cab[/url]
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - [url]http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1134744444778[/url]
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.3.1) - 
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - [url]http://zone.msn.com/binFramework/v10/ZIntro.cab34246.cab[/url]
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - [url]http://download.pw.aol.com/molbin/shared/mcgdmgr/en-us/1,0,0,18/mcgdmgr.cab[/url]
O16 - DPF: {BDF9A7C7-F4DC-455D-B5C2-045D74788295} (AOLRegistrationWizard Control) - [url]https://free.aol.com/tryaolfree/wr6_pcbackup/AOLRegistrationWizard.cab[/url]
O16 - DPF: {CAFEEFAC-0014-0001-0002-ABCDEFFEDCBA} (Java Runtime Environment 1.4.1_02) - 
O16 - DPF: {D18F962A-3722-4B59-B08D-28BB9EB2281E} (PhotosCtrl Class) - [url]http://photos.yahoo.com/ocx/us/yexplorer1_9us.cab[/url]
O16 - DPF: {DAF5D9A2-D982-4671-83E4-0398706A5F6A} (SCEWebLauncherCtl Object) - [url]http://zone.msn.com/bingame/hsol/default/SCEWebLauncher.cab[/url]
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - [url]http://download.games.yahoo.com/games/popcap/zuma/popcaploader_v6.cab[/url]
O16 - DPF: {F54C1137-5E34-4B95-95A5-BA56D4D8D743} (Secure Delivery) - [url]http://www.gamespot.com/KDX/kdx.cab[/url]
O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) - [url]http://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab[/url]
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AOL Spyware Protection Service (AOLService) - Unknown owner - C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\\aolserv.exe (file missing)
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Proxy Service (ccPxySvc) - Unknown owner - C:\Program Files\Norton Internet Security\ccPxySvc.exe (file missing)
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\DiskeeperWorkstation\DKService.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - Networks Associates Technology, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Internet Security Accounts Manager (NISUM) - Unknown owner - C:\Program Files\Norton Internet Security\NISUM.EXE (file missing)
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: PCTEL Speaker Phone (Pctspk) - Unknown owner - C:\WINDOWS\system32\pctspk.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe

SpSeHjfix:

(1/11/06 5:21:01 AM) SPSeHjFix started v1.1.2
(1/11/06 5:21:01 AM) OS: WinXP Service Pack 2 (5.1.2600)
(1/11/06 5:21:01 AM) Language: english
(1/11/06 5:21:01 AM) Win-Path: C:\WINDOWS
(1/11/06 5:21:01 AM) System-Path: C:\WINDOWS\system32
(1/11/06 5:21:01 AM) Temp-Path: C:\DOCUME~1\laaiqa\LOCALS~1\Temp\
(1/11/06 5:21:04 AM) Disinfection started
(1/11/06 5:21:04 AM) UBF: 7 - UBB: 9 - UBR: 30
(1/11/06 5:21:04 AM) UBF: 7 - UBB: 9 - UBR: 30
(1/11/06 5:21:04 AM) Stealth-String not found
(1/11/06 5:21:04 AM) Not infected->END 


(1/11/06 8:39:20 AM) SPSeHjFix started v1.1.2
(1/11/06 8:39:20 AM) OS: WinXP Service Pack 2 (5.1.2600)
(1/11/06 8:39:20 AM) Language: english
(1/11/06 8:39:20 AM) Win-Path: C:\WINDOWS
(1/11/06 8:39:20 AM) System-Path: C:\WINDOWS\system32
(1/11/06 8:39:20 AM) Temp-Path: C:\DOCUME~1\laaiqa\LOCALS~1\Temp\

Ewido:

---------------------------------------------------------
 ewido anti-malware - Scan report
---------------------------------------------------------

 + Created on:          8:12:14 AM, 1/11/2006
 + Report-Checksum:     8168435B

 + Scan result:

    HKLM\SOFTWARE\Classes\CLSID\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} -> Spyware.MiniBug : Cleaned with backup
    HKLM\SOFTWARE\Classes\CLSID\{C21C6790-58A0-81BD-58F6-11EF55D9BADF} -> Spyware.CoolWebSearch : Cleaned with backup
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{1A00C40B-DA85-4aa3-A67F-582D9347EECD} -> Spyware.iSearch : Cleaned with backup
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{5886A6DC-AAF4-45E9-979A-8E5E6DEE30E7} -> Spyware.TotalVelocity : Cleaned with backup
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\{BC3BBF86-E4EC-4412-9676-8355468B3B05} -> Spyware.Maxspeed : Cleaned with backup
    HKU\S-1-5-21-1482476501-1078145449-1957994488-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{15AD4789-CDB4-47E1-A9DA-992EE8E6BAD6} -> Spyware.WinFavorites : Cleaned with backup
    HKU\S-1-5-21-1482476501-1078145449-1957994488-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{58F9B276-E1CC-458E-8159-21CBC021874B} -> Spyware.DailyToolbar : Cleaned with backup
    HKU\S-1-5-21-1482476501-1078145449-1957994488-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7C559105-9ECF-42B8-B3F7-832E75EDD959} -> Spyware.ISTBar : Cleaned with backup
    HKU\S-1-5-21-1482476501-1078145449-1957994488-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{87067F04-DE4C-4688-BC3C-4FCF39D609E7} -> Spyware.WebSearch : Cleaned with backup
    HKU\S-1-5-21-1482476501-1078145449-1957994488-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{D714A94F-123A-45CC-8F03-040BCAF82AD6} -> Spyware.SideStep : Cleaned with backup
    HKU\S-1-5-21-1482476501-1078145449-1957994488-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E0CE16CB-741C-4B24-8D04-A817856E07F4} -> Spyware.Roimoi : Cleaned with backup
    HKU\S-1-5-21-1482476501-1078145449-1957994488-1007\Software\TimeSynchonization -> Spyware.DealHelper : Cleaned with backup
    HKU\S-1-5-21-1482476501-1078145449-1957994488-1007\Software\TimeSynchonization\Time Synchronize -> Spyware.DealHelper : Cleaned with backup
    :mozilla.6:C:\Documents and Settings\ADMIN\Application Data\Mozilla\Profiles\default\mq2y88uq.slt\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    :mozilla.7:C:\Documents and Settings\ADMIN\Application Data\Mozilla\Profiles\default\mq2y88uq.slt\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    :mozilla.9:C:\Documents and Settings\ADMIN\Application Data\Mozilla\Profiles\default\mq2y88uq.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.10:C:\Documents and Settings\ADMIN\Application Data\Mozilla\Profiles\default\mq2y88uq.slt\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    :mozilla.11:C:\Documents and Settings\ADMIN\Application Data\Mozilla\Profiles\default\mq2y88uq.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.12:C:\Documents and Settings\ADMIN\Application Data\Mozilla\Profiles\default\mq2y88uq.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.13:C:\Documents and Settings\ADMIN\Application Data\Mozilla\Profiles\default\mq2y88uq.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.14:C:\Documents and Settings\ADMIN\Application Data\Mozilla\Profiles\default\mq2y88uq.slt\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    :mozilla.16:C:\Documents and Settings\ADMIN\Application Data\Mozilla\Profiles\default\mq2y88uq.slt\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    :mozilla.22:C:\Documents and Settings\ADMIN\Application Data\Mozilla\Profiles\default\mq2y88uq.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.23:C:\Documents and Settings\ADMIN\Application Data\Mozilla\Profiles\default\mq2y88uq.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.24:C:\Documents and Settings\ADMIN\Application Data\Mozilla\Profiles\default\mq2y88uq.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.25:C:\Documents and Settings\ADMIN\Application Data\Mozilla\Profiles\default\mq2y88uq.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.27:C:\Documents and Settings\ADMIN\Application Data\Mozilla\Profiles\default\mq2y88uq.slt\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
    :mozilla.45:C:\Documents and Settings\ADMIN\Application Data\Mozilla\Profiles\default\mq2y88uq.slt\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
    :mozilla.54:C:\Documents and Settings\ADMIN\Application Data\Mozilla\Profiles\default\mq2y88uq.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
    :mozilla.55:C:\Documents and Settings\ADMIN\Application Data\Mozilla\Profiles\default\mq2y88uq.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
    :mozilla.56:C:\Documents and Settings\ADMIN\Application Data\Mozilla\Profiles\default\mq2y88uq.slt\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
    :mozilla.61:C:\Documents and Settings\ADMIN\Application Data\Mozilla\Profiles\default\mq2y88uq.slt\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
    :mozilla.62:C:\Documents and Settings\ADMIN\Application Data\Mozilla\Profiles\default\mq2y88uq.slt\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
    :mozilla.63:C:\Documents and Settings\ADMIN\Application Data\Mozilla\Profiles\default\mq2y88uq.slt\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
    :mozilla.13:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    :mozilla.14:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    :mozilla.15:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    :mozilla.21:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.22:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.23:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.24:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.25:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.26:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.27:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.28:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.29:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.30:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.31:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.32:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.33:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.34:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.35:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.36:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.37:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.38:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.39:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.40:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.41:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.45:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
    :mozilla.46:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
    :mozilla.47:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
    :mozilla.48:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
    :mozilla.66:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
    :mozilla.185:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
    :mozilla.191:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
    :mozilla.213:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
    :mozilla.214:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
    :mozilla.215:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
    :mozilla.216:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
    :mozilla.232:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.233:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.250:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
    :mozilla.261:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
    :mozilla.278:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Pro-market : Cleaned with backup
    :mozilla.301:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Pro-market : Cleaned with backup
    :mozilla.304:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
    :mozilla.311:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
    :mozilla.313:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
    :mozilla.316:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
    :mozilla.458:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
    :mozilla.459:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
    :mozilla.462:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
    :mozilla.464:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
    :mozilla.468:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
    :mozilla.474:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
    :mozilla.533:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
    :mozilla.548:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
    :mozilla.550:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    :mozilla.559:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
    :mozilla.569:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
    :mozilla.575:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
    :mozilla.584:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
    :mozilla.588:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
    :mozilla.590:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
    :mozilla.609:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
    :mozilla.610:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
    :mozilla.611:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
    :mozilla.612:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
    :mozilla.613:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
    :mozilla.618:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    :mozilla.619:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    :mozilla.620:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    :mozilla.625:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    :mozilla.627:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    :mozilla.632:C:\Documents and Settings\ADMIN\Application Data\Netscape\NSB\Profiles\de93af0a.default\cookies.txt -> Spyware.Cookie.247realmedia : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@247realmedia[1].txt -> Spyware.Cookie.247realmedia : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@ad.yieldmanager[2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@ad1.clickhype[1].txt -> Spyware.Cookie.Clickhype : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@adopt.specificclick[1].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@ads.pointroll[1].txt -> Spyware.Cookie.Pointroll : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@ads12.bpath[2].txt -> Spyware.Cookie.Bpath : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@ads18.bpath[2].txt -> Spyware.Cookie.Bpath : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@ads32.bpath[2].txt -> Spyware.Cookie.Bpath : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@bluestreak[1].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@bs.serving-sys[2].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@burstnet[1].txt -> Spyware.Cookie.Burstnet : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@casalemedia[2].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@cbs.112.2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@centrport[2].txt -> Spyware.Cookie.Centrport : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@citi.bridgetrack[1].txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@cnn.122.2o7[2].txt -> Spyware.Cookie.2o7 : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@com[1].txt -> Spyware.Cookie.Com : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@cs.sexcounter[2].txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@e-2dj6wfloand5obq.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@e-2dj6wjlyamcjelq.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@edge.ru4[1].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@fastclick[2].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@northwestairlines.112.2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@overture[2].txt -> Spyware.Cookie.Overture : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@perf.overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@polo.112.2o7[2].txt -> Spyware.Cookie.2o7 : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@pro-market[1].txt -> Spyware.Cookie.Pro-market : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@qksrv[2].txt -> Spyware.Cookie.Qksrv : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@redcats.122.2o7[2].txt -> Spyware.Cookie.2o7 : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@revenue[2].txt -> Spyware.Cookie.Revenue : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@rotator.adjuggler[1].txt -> Spyware.Cookie.Adjuggler : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@sales.liveperson[2].txt -> Spyware.Cookie.Liveperson : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@server.iad.liveperson[2].txt -> Spyware.Cookie.Liveperson : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@serving-sys[2].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@statcounter[1].txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@trafficmp[2].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@tribalfusion[2].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@www.burstbeacon[1].txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup
    C:\Documents and Settings\ADMIN\Cookies\admin@z1.adserver[1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
    C:\Documents and Settings\ADMIN\Local Settings\Application Data\AOL\UserProfilesTmp\All Users\antiSpyware\dat\Quarantine\20050926210144.zip/WINDOWS/system32/drivers/etc/hosts -> Trojan.Qhost.ex : Cleaned with backup
    C:\Documents and Settings\ADMIN\Local Settings\Application Data\AOL\UserProfilesTmp\All Users\antiSpyware\dat\Quarantine\20050928030449.zip/WINDOWS/system32/drivers/etc/hosts -> Trojan.Qhost.ex : Cleaned with backup
    C:\Documents and Settings\ADMIN\Local Settings\Application Data\AOL\UserProfilesTmp\All Users\antiSpyware\dat\Quarantine\20050928212208.zip/WINDOWS/system32/drivers/etc/hosts -> Trojan.Qhost.ex : Cleaned with backup
    C:\Documents and Settings\ADMIN\Local Settings\Application Data\AOL\UserProfilesTmp\All Users\antiSpyware\dat\Quarantine\20050930190213.zip/WINDOWS/system32/drivers/etc/hosts -> Trojan.Qhost.ex : Cleaned with backup
    C:\Documents and Settings\ADMIN\Local Settings\Application Data\AOL\UserProfilesTmp\All Users\antiSpyware\dat\Quarantine\20051001082655.zip/WINDOWS/system32/drivers/etc/hosts -> Trojan.Qhost.ex : Cleaned with backup
    C:\Documents and Settings\ADMIN\Local Settings\Temp\BarMan.exe -> Adware.MegaSearch : Cleaned with backup
    C:\Documents and Settings\All Users\Application Data\AOL\UserProfiles\All Users\antiSpyware\dat\Quarantine\20050926210144.zip/WINDOWS/system32/drivers/etc/hosts -> Trojan.Qhost.ex : Cleaned with backup
    C:\Documents and Settings\All Users\Application Data\AOL\UserProfiles\All Users\antiSpyware\dat\Quarantine\20050928030449.zip/WINDOWS/system32/drivers/etc/hosts -> Trojan.Qhost.ex : Cleaned with backup
    C:\Documents and Settings\All Users\Application Data\AOL\UserProfiles\All Users\antiSpyware\dat\Quarantine\20050928212208.zip/WINDOWS/system32/drivers/etc/hosts -> Trojan.Qhost.ex : Cleaned with backup
    C:\Documents and Settings\All Users\Application Data\AOL\UserProfiles\All Users\antiSpyware\dat\Quarantine\20050930190213.zip/WINDOWS/system32/drivers/etc/hosts -> Trojan.Qhost.ex : Cleaned with backup
    C:\Documents and Settings\All Users\Application Data\AOL\UserProfiles\All Users\antiSpyware\dat\Quarantine\20051001082655.zip/WINDOWS/system32/drivers/etc/hosts -> Trojan.Qhost.ex : Cleaned with backup
    C:\Documents and Settings\All Users\Application Data\AOL\UserProfiles\All Users\antiSpyware\dat\Quarantine\20051007012536.zip/WINDOWS/system32/drivers/etc/hosts -> Trojan.Qhost.ex : Cleaned with backup
    C:\Documents and Settings\All Users\Application Data\AOL\UserProfiles\All Users\antiSpyware\dat\Quarantine\20051010200112.zip/WINDOWS/system32/drivers/etc/hosts -> Trojan.Qhost.ex : Cleaned with backup
    C:\Documents and Settings\All Users\Application Data\AOL\UserProfiles\All Users\antiSpyware\dat\Quarantine\20051018085130.zip/WINDOWS/system32/drivers/etc/hosts -> Trojan.Qhost.ex : Cleaned with backup
    C:\Documents and Settings\All Users\Application Data\AOL\UserProfiles\All Users\antiSpyware\dat\Quarantine\20051018085135.zip/WINDOWS/system32/drivers/etc/hosts -> Trojan.Qhost.ex : Cleaned with backup
    C:\Documents and Settings\All Users\Application Data\AOL\UserProfiles\All Users\antiSpyware\dat\Quarantine\20051018163653.zip/WINDOWS/system32/drivers/etc/hosts -> Trojan.Qhost.ex : Cleaned with backup
    C:\Documents and Settings\All Users\Application Data\AOL\UserProfiles\All Users\antiSpyware\dat\Quarantine\20051020165845.zip/WINDOWS/system32/drivers/etc/hosts -> Trojan.Qhost.ex : Cleaned with backup
    C:\Documents and Settings\All Users\Application Data\AOL\UserProfiles\All Users\antiSpyware\dat\Quarantine\20051027002438.zip/WINDOWS/system32/drivers/etc/hosts -> Trojan.Qhost.ex : Cleaned with backup
    :mozilla.12:C:\Documents and Settings\annie\Application Data\Mozilla\Profiles\default\fvbiinos.slt\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
    :mozilla.19:C:\Documents and Settings\annie\Application Data\Mozilla\Profiles\default\fvbiinos.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.20:C:\Documents and Settings\annie\Application Data\Mozilla\Profiles\default\fvbiinos.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.21:C:\Documents and Settings\annie\Application Data\Mozilla\Profiles\default\fvbiinos.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.22:C:\Documents and Settings\annie\Application Data\Mozilla\Profiles\default\fvbiinos.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.26:C:\Documents and Settings\annie\Application Data\Mozilla\Profiles\default\fvbiinos.slt\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
    :mozilla.27:C:\Documents and Settings\annie\Application Data\Mozilla\Profiles\default\fvbiinos.slt\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
    :mozilla.28:C:\Documents and Settings\annie\Application Data\Mozilla\Profiles\default\fvbiinos.slt\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
    :mozilla.29:C:\Documents and Settings\annie\Application Data\Mozilla\Profiles\default\fvbiinos.slt\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
    :mozilla.38:C:\Documents and Settings\annie\Application Data\Mozilla\Profiles\default\fvbiinos.slt\cookies.txt -> Spyware.Cookie.Pro-market : Cleaned with backup
    :mozilla.40:C:\Documents and Settings\annie\Application Data\Mozilla\Profiles\default\fvbiinos.slt\cookies.txt -> Spyware.Cookie.Pro-market : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@ad.yieldmanager[1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@ads.addynamix[2].txt -> Spyware.Cookie.Addynamix : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@ads.pointroll[2].txt -> Spyware.Cookie.Pointroll : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@as-us.falkag[1].txt -> Spyware.Cookie.Falkag : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@bluestreak[1].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@bs.serving-sys[1].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@burstnet[2].txt -> Spyware.Cookie.Burstnet : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@casalemedia[1].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@centrport[2].txt -> Spyware.Cookie.Centrport : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@com[2].txt -> Spyware.Cookie.Com : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@edge.ru4[1].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@fastclick[1].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@gator[2].txt -> Spyware.Cookie.Gator : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@msnportal.112.2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@server.iad.liveperson[1].txt -> Spyware.Cookie.Liveperson : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@serving-sys[2].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@trafficmp[2].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@tribalfusion[2].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@web4.realtracker[1].txt -> Spyware.Cookie.Realtracker : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@www.burstbeacon[1].txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup
    C:\Documents and Settings\annie\Cookies\annie@z1.adserver[1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
    C:\Documents and Settings\Guest\Cookies\guest@2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
    C:\Documents and Settings\Guest\Cookies\guest@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
    C:\Documents and Settings\Guest\Cookies\guest@ehg-communityconnect.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\Guest\Cookies\guest@hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\Guest\Cookies\guest@overture[2].txt -> Spyware.Cookie.Overture : Cleaned with backup
    C:\Documents and Settings\Guest\Cookies\guest@perf.overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
    :mozilla.6:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.7:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.10:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.11:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.12:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.13:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.14:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.15:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.16:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.17:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.18:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.19:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.20:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.21:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.22:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.23:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.24:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.26:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.30:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.31:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.33:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
    :mozilla.34:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
    :mozilla.35:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.36:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.37:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.46:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.47:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.48:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.58:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    :mozilla.59:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
    :mozilla.60:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
    :mozilla.94:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Pro-market : Cleaned with backup
    :mozilla.98:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
    :mozilla.99:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
    :mozilla.102:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
    :mozilla.106:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
    :mozilla.112:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
    :mozilla.113:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Clickagents : Cleaned with backup
    :mozilla.116:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
    :mozilla.118:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
    :mozilla.122:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
    :mozilla.123:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
    :mozilla.124:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
    :mozilla.125:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
    :mozilla.6:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.7:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.8:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.9:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.10:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.11:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.12:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.13:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.14:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.15:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.16:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.17:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.18:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.19:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.20:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.21:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.22:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.23:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.24:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.25:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.33:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
    :mozilla.35:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
    :mozilla.37:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.38:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.39:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.40:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
    :mozilla.49:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    :mozilla.54:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
    :mozilla.55:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
    :mozilla.56:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
    :mozilla.75:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.76:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.151:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
    :mozilla.152:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
    :mozilla.153:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
    :mozilla.154:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
    :mozilla.155:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
    :mozilla.166:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
    :mozilla.173:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.174:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.175:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.217:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Adjuggler : Cleaned with backup
    :mozilla.218:C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\Default User\i4nn59ur.slt\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@180solutions[1].txt -> Spyware.Cookie.180solutions : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@247realmedia[1].txt -> Spyware.Cookie.247realmedia : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@2o7[2].txt -> Spyware.Cookie.2o7 : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@a-1shz2prbmdj6wvny-1sez2pra2dj6wjmiwldjsapw-1dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ad-logics[1].txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ad.yieldmanager[2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@adopt.euroclick[1].txt -> Spyware.Cookie.Euroclick : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@adopt.specificclick[2].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ads.addynamix[1].txt -> Spyware.Cookie.Addynamix : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ads.pointroll[1].txt -> Spyware.Cookie.Pointroll : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ads08.bpath[1].txt -> Spyware.Cookie.Bpath : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ads12.bpath[2].txt -> Spyware.Cookie.Bpath : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ads16.bpath[1].txt -> Spyware.Cookie.Bpath : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ads18.bpath[2].txt -> Spyware.Cookie.Bpath : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ads32.bpath[1].txt -> Spyware.Cookie.Bpath : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ads39.hyperbanner[2].txt -> Spyware.Cookie.Hyperbanner : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@advertising[2].txt -> Spyware.Cookie.Advertising : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@as-us.falkag[1].txt -> Spyware.Cookie.Falkag : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@bfast[1].txt -> Spyware.Cookie.Bfast : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@bluestreak[1].txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@bs.serving-sys[1].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@burstnet[1].txt -> Spyware.Cookie.Burstnet : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@casalemedia[1].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@centrport[1].txt -> Spyware.Cookie.Centrport : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@citi.bridgetrack[1].txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@cj[2].txt -> Spyware.Cookie.Cj : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@clickagents[2].txt -> Spyware.Cookie.Clickagents : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@commission-junction[1].txt -> Spyware.Cookie.Commission-junction : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@com[2].txt -> Spyware.Cookie.Com : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@counter.hitslink[2].txt -> Spyware.Cookie.Hitslink : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@counter1.sextracker[1].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@counter11.sextracker[1].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@counter2.hitslink[2].txt -> Spyware.Cookie.Hitslink : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@counter8.sextracker[1].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@cs.sexcounter[2].txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@cz3.clickzs[2].txt -> Spyware.Cookie.Clickzs : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@cz5.clickzs[1].txt -> Spyware.Cookie.Clickzs : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@cz6.clickzs[1].txt -> Spyware.Cookie.Clickzs : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@cz7.clickzs[1].txt -> Spyware.Cookie.Clickzs : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@data.coremetrics[1].txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@data3.perf.overture[2].txt -> Spyware.Cookie.Overture : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@data4.perf.overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@dbbsrv[2].txt -> Spyware.Cookie.Dbbsrv : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@doubleclick[1].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@edge.ru4[1].txt -> Spyware.Cookie.Ru4 : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-accuweather.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-airtran.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-ampubunivsys.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-attworldnet.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-bcstore.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-buyseasons.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-cbs.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-cdma.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-chrysler.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-classifiedventures.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-communityconnect.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-cygnusbm.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-dig.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-directv.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-eline.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-elisabeth.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-enotes.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-findlaw.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-foxsports.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-fredericks.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-guess.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-inforspaceinc.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-j2.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-jigsaw.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-knightridder.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-maniatv.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-mtv.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-nestleusainc.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-netquote.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-newsinternational.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-realtytrac.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-salonmedia.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-sierratradingpost.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-simon.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-studentuniverse.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-summitpublishing.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-theviptour.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-traderelectronicmedia.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-travelweb.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-viacom.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ehg-warnerbrothers.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@estat[1].txt -> Spyware.Cookie.Estat : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@excite[2].txt -> Spyware.Cookie.Excite : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@fastclick[1].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@findwhat[1].txt -> Spyware.Cookie.Findwhat : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@hotlog[1].txt -> Spyware.Cookie.Hotlog : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@hypertracker[2].txt -> Spyware.Cookie.Hypertracker : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@image.masterstats[2].txt -> Spyware.Cookie.Masterstats : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@installs.180solutions[1].txt -> Spyware.Cookie.180solutions : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@ivwbox[1].txt -> Spyware.Cookie.Ivwbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@linksynergy[1].txt -> Spyware.Cookie.Linksynergy : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@mediaplex[1].txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@overture[2].txt -> Spyware.Cookie.Overture : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@oz.valueclick[1].txt -> Spyware.Cookie.Valueclick : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@paycounter[1].txt -> Spyware.Cookie.Paycounter : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@paypopup[1].txt -> Spyware.Cookie.Paypopup : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@perf.overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@phg.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@pro-market[1].txt -> Spyware.Cookie.Pro-market : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@programs.wegcash[2].txt -> Spyware.Cookie.Wegcash : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@qksrv[2].txt -> Spyware.Cookie.Qksrv : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@questionmarket[2].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@rccl.bridgetrack[2].txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@reduxads.valuead[1].txt -> Spyware.Cookie.Valuead : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@revenue[2].txt -> Spyware.Cookie.Revenue : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@rotator.adjuggler[2].txt -> Spyware.Cookie.Adjuggler : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@rotator.dex.adjuggler[2].txt -> Spyware.Cookie.Adjuggler : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@sales.liveperson[1].txt -> Spyware.Cookie.Liveperson : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@sel.as-us.falkag[2].txt -> Spyware.Cookie.Falkag : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@servedby.advertising[2].txt -> Spyware.Cookie.Advertising : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@server.iad.liveperson[1].txt -> Spyware.Cookie.Liveperson : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@serving-sys[1].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@sexlist[1].txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@sextracker[1].txt -> Spyware.Cookie.Sextracker : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@spinbox[1].txt -> Spyware.Cookie.Spinbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@spylog[1].txt -> Spyware.Cookie.Spylog : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@stat.onestat[2].txt -> Spyware.Cookie.Onestat : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@statcounter[2].txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@statse.webtrendslive[2].txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@test.coremetrics[1].txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@tradedoubler[2].txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@trafficmp[1].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@tribalfusion[2].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@twci.coremetrics[1].txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@valueclick[1].txt -> Spyware.Cookie.Valueclick : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@valueclick[2].txt -> Spyware.Cookie.Valueclick : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@vip.clickzs[2].txt -> Spyware.Cookie.Clickzs : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@w103.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@web4.realtracker[2].txt -> Spyware.Cookie.Realtracker : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@www.burstbeacon[1].txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@www.marketscore[2].txt -> Spyware.Cookie.Marketscore : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@www.myaffiliateprogram[1].txt -> Spyware.Cookie.Myaffiliateprogram : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@www.sugardaddy.com.18345.fb.dbbsrv[2].txt -> Spyware.Cookie.Dbbsrv : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@y-1shz2prbmdj6wvny-1sez2pra2dj6wjkoqjdzmkoa2dj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@y-1shz2prbmdj6wvny-1sez2pra2dj6wjloekc5aloaudj6x9ny-1seq-2-2.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@yieldmanager[2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    C:\Documents and Settings\laaiqa\Cookies\laaiqa@z1.adserver[1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
    C:\Documents and Settings\laaiqa\Local Settings\Application Data\Wildtangent\Cdacache\00\00\0F.dat/files\wtvh.dll -> Spyware.WildTangent : Cleaned with backup
    C:\Program Files\AWS\WeatherBug\MiniBugTransporter.dll -> Spyware.Wheaterbug : Cleaned with backup
    C:\Program Files\DIGStream\digstream.exe -> Not-A-Virus.Downloader.Win32.DigStream.a : Cleaned with backup
    C:\WINDOWS\system32\biI.exe/bi.dll -> Trojan.Bispy.A : Cleaned with backup
    C:\WINDOWS\system32\biI.exe/biprep.exe -> Trojan.Bispy.B : Cleaned with backup
    C:\WINDOWS\system32\biI.exe/bi.dll -> Trojan.Bispy.A : Cleaned with backup
    C:\WINDOWS\system32\biI.exe/biprep.exe -> Trojan.Bispy.B : Cleaned with backup
    C:\WINDOWS\system32\BO2802040113.dll -> Spyware.BargainBuddy : Cleaned with backup
    C:\WINDOWS\wt\wtupdates\webd\4.1.1\files\wtvh.dll -> Spyware.WildTangent : Cleaned with backup
    C:\WINDOWS\wt\wtvh.dll -> Spyware.WildTangent : Cleaned with backup
    C:\winstall.exe -> Not-A-Virus.Hoax.Win32.Renos.al : Cleaned with backup


::Report End

Edited by mike_2000_17: Fixed formatting

0

Can you please do the following.

===============

Scan with HiJackThis, click "Scan", then check(tick) the following, if present:


R3 - Default URLSearchHook is missing

O2 - BHO: Class - {008602DA-BF96-4343-F9AA-6322853BD842} - C:\WINDOWS\syswi.dll (file missing)
O2 - BHO: Class - {15F6DF51-80DA-2FBF-3DB3-4BC956825654} - C:\WINDOWS\d3jx32.dll (file missing)
O2 - BHO: Class - {6BFD4FF9-22B6-A8BC-8348-E8EF313969E1} - C:\WINDOWS\system32\crvs32.dll (file missing)
O2 - BHO: Class - {824CB85E-8849-F5FF-50D8-97E69A69E394} - C:\WINDOWS\addex.dll (file missing)
O2 - BHO: Class - {D04FEDA4-D7C0-3150-02FF-AD27F54D4CA1} - C:\WINDOWS\mfchw32.dll (file missing)

O3 - Toolbar: AOL Toolbar - {4982D40A-C53B-4615-B15B-B5B5E98D167C} - C:\Program Files\AOL Toolbar\toolbar.dll (file missing)

O4 - HKLM\..\Run: [1B.tmp] C:\DOCUME~1\marqus\LOCALS~1\Temp\1B.tmp.exe


Now, close all instances of Internet Explorer and any other windows you have open except HiJackThis, click "Fix checked".

===============


When your done, rescan your system and make sure the following isn't present:

N3 - Netscape ... 5CSBWeb_01.src (or) 5CSBWeb_02.src

If it is, then fix that entry again; sometimes it'll take more than one pass. The actual entry is ok, and won't be deleted, it's the java wrapper marked in red that needs to be removed.

===============

Locate and delete the following item(s), if present. Make sure you are able to view system and hidden files/ folders:

files...

C:\DOCUME~1\marqus\LOCALS~1\Temp\1B.tmp.exe

-

Note that some of these file(s)/folder(s) may or may not be present. If present, and cannot be deleted because they're 'in use', try deleting them in "Safe Mode".

-

Reboot.

===============

After rebooting, rescan with hijackthis and post back a new log. Please let me know how your pc is now.

0

New log.

Logfile of HijackThis v1.99.1
Scan saved at 5:12:18 PM, on 1/11/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\WINDOWS\System32\cisvc.exe
C:\Program Files\Executive Software\DiskeeperWorkstation\DKService.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\ewido anti-malware\ewidoguard.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\wanmpsvc.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
c:\program files\mcafee.com\agent\mcagent.exe
C:\WINDOWS\system32\pctspk.exe
C:\Program Files\Common Files\Logitech\QCDriver3\LVCOMS.EXE
C:\WINDOWS\System32\spool\DRIVERS\W32X86\hpoopm07.exe
C:\Program Files\Common Files\AOL\1103629124\ee\AOLSoftware.exe
C:\Program Files\Logitech\MouseWare\system\em_exec.exe
C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Program Files\ESPNRunTime\DIGServices.exe
C:\Program Files\Common Files\AOL\1103629124\ee\services\sscAntiSpywarePlugin\ver1_10_3_1\AOLSP Scheduler.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Documents and Settings\All Users\Start Menu\Programs\Startup\palstart.exe
c:\program files\common files\aol\1103629124\ee\aolssc.exe
C:\WINDOWS\system32\cidaemon.exe
C:\Program Files\Internet Explorer\iexplore.exe
C:\PROGRA~1\Yahoo!\browser\ycommon.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
N3 - Netscape 7: user_pref("browser.startup.homepage", "http://home.netscape.com/bookmark/7_1/home.html"); (C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\prefs.js)
N3 - Netscape 7: user_pref("browser.search.defaultengine", "http://www.google.com/"); (C:\Documents and Settings\laaiqa\Application Data\Mozilla\Profiles\default\akv6je7a.slt\prefs.js)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: Class - {15F6DF51-80DA-2FBF-3DB3-4BC956825654} - C:\WINDOWS\d3jx32.dll (file missing)
O2 - BHO: UberButton Class - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O2 - BHO: YahooTaggedBM Class - {65D886A2-7CA7-479B-BB95-14D1EFB7946A} - C:\Program Files\Yahoo!\Common\YIeTagBm.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar1.dll
O2 - BHO: CNavExtBho Class - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn2\yt.dll
O3 - Toolbar: &ESPN - {AE6F2894-AF10-4C9C-B16E-1DFC6FF8C0C6} - C:\Program Files\ESPN\Toolbar\DIGToolBar.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar1.dll
O4 - HKLM\..\Run: [WildTangent CDA] "C:\Program Files\WildTangent\Apps\CDA\GameDrvr.exe" /startup "C:\Program Files\WildTangent\Apps\CDA\cdaEngine0500.dll"
O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [PCTVOICE] pctspk.exe
O4 - HKLM\..\Run: [LVCOMS] C:\Program Files\Common Files\Logitech\QCDriver3\LVCOMS.EXE
O4 - HKLM\..\Run: [LogitechGalleryRepair] C:\Program Files\Logitech\ImageStudio\ISStart.exe
O4 - HKLM\..\Run: [Logitech Utility] Logi_MwX.Exe
O4 - HKLM\..\Run: [InCD] C:\Program Files\Ahead\InCD\InCD.exe
O4 - HKLM\..\Run: [HPAIO_PrintFolderMgr] C:\WINDOWS\System32\spool\DRIVERS\W32X86\hpoopm07.exe
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1103629124\ee\AOLSoftware.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [DDCM] "C:\Program Files\WildTangent\DDC\DDCManager\DDCMan.exe" -Background
O4 - HKLM\..\Run: [DDCActiveMenu] "C:\Program Files\WildTangent\DDC\ActiveMenu\DDCActiveMenu.exe" -boot
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
O4 - HKLM\..\Run: [PRISMSVR.EXE] "C:\WINDOWS\system32\PRISMSVR.EXE" /APPLY
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\mcupdate.exe
O4 - HKLM\..\Run: [DIGStream] C:\Program Files\DIGStream\digstream.exe
O4 - HKLM\..\Run: [DIGServices] C:\Program Files\ESPNRunTime\DIGServices.exe /brand=ESPN /priority=0 /poll=24
O4 - HKLM\..\Run: [AOLSPScheduler] C:\Program Files\Common Files\AOL\1103629124\ee\services\sscAntiSpywarePlugin\ver1_10_3_1\AOLSP Scheduler.exe
O4 - HKLM\..\Run: [sscRun] C:\Program Files\Common Files\AOL\1103629124\ee\services\sscFirewallPlugin\ver1_10_3_1\SSCRun.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: palstart.exe
O8 - Extra context menu item: &AOL Toolbar search - res://C:\Program Files\AOL Toolbar\toolbar.dll/SEARCH.HTML
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar1.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar1.dll/cmwordtrans.html
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar1.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar1.dll/cmcache.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar1.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar1.dll/cmtrans.html
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///C:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - C:\Program Files\Yahoo!\Common\yiesrvc.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .pps: C:\Program Files\Netscape\Netscape Browser\PLUGINS\npTrident.dll
O12 - Plugin for .xml: C:\Program Files\Netscape\Netscape Browser\PLUGINS\npTrident.dll
O16 - DPF: {01CA75F1-054B-4A63-9221-C6926369EC52} (HS_live Control) - http://install.homestead.com/~site/InstallFiles/SIFiles/lpxlive/HS_live.cab
O16 - DPF: {30528230-99f7-4bb4-88d8-fa1d4f56a2ab} (YInstStarter Class) - C:\Program Files\Yahoo!\common\yinsthelper.dll
O16 - DPF: {3DA5D23B-EFE1-4181-ADB7-7D457567AACA} (TGOnlineCtrl Class) - http://zone.msn.com/bingame/pacz/default/pandaonline.cab
O16 - DPF: {4A3CF76B-EC7A-405D-A67D-8DC6B52AB35B} (QDiagAOLCCUpdateObj Class) - http://aolcc.aol.com/computercheckup/qdiagcc.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.pw.aol.com/molbin/shared/mcinsctl/en-us/4,0,0,77/mcinsctl.cab
O16 - DPF: {528C14CD-CF9E-489C-A365-5999F17B69B9} (LightSurfUploadCtl Class) - http://pictures.sprintpcs.com/activex/LightSurfUploadControl.cab
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1134744444778
O16 - DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} (Java Runtime Environment 1.3.1) -
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://zone.msn.com/binFramework/v10/ZIntro.cab34246.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.pw.aol.com/molbin/shared/mcgdmgr/en-us/1,0,0,18/mcgdmgr.cab
O16 - DPF: {BDF9A7C7-F4DC-455D-B5C2-045D74788295} (AOLRegistrationWizard Control) - https://free.aol.com/tryaolfree/wr6_pcbackup/AOLRegistrationWizard.cab
O16 - DPF: {CAFEEFAC-0014-0001-0002-ABCDEFFEDCBA} (Java Runtime Environment 1.4.1_02) -
O16 - DPF: {D18F962A-3722-4B59-B08D-28BB9EB2281E} (PhotosCtrl Class) - http://photos.yahoo.com/ocx/us/yexplorer1_9us.cab
O16 - DPF: {DAF5D9A2-D982-4671-83E4-0398706A5F6A} (SCEWebLauncherCtl Object) - http://zone.msn.com/bingame/hsol/default/SCEWebLauncher.cab
O16 - DPF: {DF780F87-FF2B-4DF8-92D0-73DB16A1543A} (PopCapLoader Object) - http://download.games.yahoo.com/games/popcap/zuma/popcaploader_v6.cab
O16 - DPF: {F54C1137-5E34-4B95-95A5-BA56D4D8D743} (Secure Delivery) - http://www.gamespot.com/KDX/kdx.cab
O16 - DPF: {FE0BD779-44EE-4A4B-AA2E-743C63F2E5E6} (IWinAmpActiveX Class) - http://pdl.stream.aol.com/downloads/aol/unagi/ampx_en_dl.cab
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AOL Spyware Protection Service (AOLService) - Unknown owner - C:\PROGRA~1\COMMON~1\AOL\AOLSPY~1\\aolserv.exe (file missing)
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Proxy Service (ccPxySvc) - Unknown owner - C:\Program Files\Norton Internet Security\ccPxySvc.exe (file missing)
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Diskeeper - Executive Software International, Inc. - C:\Program Files\Executive Software\DiskeeperWorkstation\DKService.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: ewido security suite guard - ewido networks - C:\Program Files\ewido anti-malware\ewidoguard.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - Networks Associates Technology, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Internet Security Accounts Manager (NISUM) - Unknown owner - C:\Program Files\Norton Internet Security\NISUM.EXE (file missing)
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: PCTEL Speaker Phone (Pctspk) - Unknown owner - C:\WINDOWS\system32\pctspk.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe

0

You missed one :). Just fix the following line and you are good to go.

O2 - BHO: Class - {15F6DF51-80DA-2FBF-3DB3-4BC956825654} - C:\WINDOWS\d3jx32.dll (file missing)

0

You are welcome :).

Now that your PC is clean you need to follow these easy steps to keeping it this way:

Secure your Internet Explorer by going here and following the instructions there.

Better yet, use an alternative browser! Download FireFox and give it a run. It is far more secure than Internet Explorer. Or, you can get Opera which in my opinion, is better still.

Use a firewall to help prevent your PC's control being usurped by undesireables. There is a link to a good, free firewall in my signature.

Install and keep updated, Ewido anti-malware, Ad-Aware SE and Spybot S&D.
Run them both on a regular basis, following the manufacturer's recommendations.

Install an anti-virus. There are some good, free AV's available today. Make sure that it is updated regularly and have it scan your system often.

Check for Windows Updates. Microsoft regularly post updates for your systems safe running. Make sure to take advantage of this. Reboot when installed and return to make sure there are no others.


Clear your Temp folders.
Clear out your Temporary internet files and other temp files.
Go to Start > Settings > Control Panel >Internet Options.

Under the General tab click the Delete temporary internet files,
delete all Offline content as well. Clear out Cookies.

Also, go to Start > Find/search > Files or folders > in the named box, type: *.tmp and choose Edit > select all -> File > delete.

Empty/delete the entire contents of the C:\Windows\temp folder and C:\temp folder, if you have one. (Contents but not the folder itself.)

C:\Documents and Settings\username\Local Settings\Temp\

In order to view these files you may have to select 'show hidden files/folders.' Instructions on how to here.

Empty the Recycle Bin.

For XP users.
After something like this it is a good idea to Flush the Restore Points and start fresh.
To flush the XP system Restore Points.

Go to Start>Run and type msconfig. Press enter.

When msconfig opens, click the Launch System Restore Button.
On the next page, click the System Restore Settings link on the left.

Check the box labelled 'Turn off System restore'.

Reboot. Go back in and Turn System Restore Back on. A new Restore Point will be created.

Note that all previous restore points will be lost.

===============

If you have any more problems, post back.

-

Happy surfing,

crunchie.

This topic has been dead for over six months. Start a new discussion instead.
Have something to contribute to this discussion? Please be thoughtful, detailed and courteous, and be sure to adhere to our posting rules.