0

Hey all,

Found this site through Google. I've been browsing the threads and it seems like this is the new May fun surprise.

My Dad's up in Rhode Island and I'm in DC -- he called down to say that he's got this and doesn't know what to do with it.

At the risk of becoming the billionth person to post this, heh -- here's the log produced when I had him run HiJackThis.

I'm not used to reading the logs generated by this program, but based on reading the other threads, it seems a person needs to run CCleaner, then Ewido, run HJT again and clear the checkboxes on programs that are unfamiliar or undefined?

I was going to try giving him instructions on my own, but I was wary that I might not get everything checked off HJT and might inadvertantly nail a few things that shouldn't be killed. :o I figured I should ask the experts... thanks so much in advance.

Logfile of HijackThis v1.99.1
Scan saved at 8:23:42 PM, on 5/7/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\DSentry.exe
C:\WINDOWS\SM1BG.EXE
C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\Roxio\Easy Media Creator 7\Drag to Disc\DrgToDsc.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\AOL\1101065473\ee\AOLHostManager.exe
C:\Program Files\The Weather Channel FW\Desktop Weather\DesktopWeather.exe
C:\Program Files\BOINC\boincmgr.exe
C:\Program Files\Palm\HOTSYNC.EXE
C:\WINDOWS\FSScrCtl.exe
C:\Program Files\Common Files\AOL\1101065473\ee\AOLServiceHost.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\BOINC\boinc.exe
C:\WINDOWS\system32\winsrv32.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\AcroRd32.exe
C:\Program Files\America Online 9.0a\waol.exe
C:\Program Files\America Online 9.0a\shellmon.exe
C:\WINDOWS\explorer.exe
C:\Program Files\BOINC\projects\setiathome.berkeley.edu\setiathome_5.12_windows_intelx86.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\BOINC\projects\setiathome.berkeley.edu\setiathome_5.12_windows_intelx86.exe
C:\Eudora\Eudora.exe
C:\Documents and Settings\Gary\Desktop\Hijackthis\HijackThis.exe
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell.com
O2 - BHO: (no name) - {00000000-59D4-4008-9058-080011001200} - (no file)
O2 - BHO: (no name) - {00000000-C1EC-0345-6EC2-4D0300000000} - (no file)
O2 - BHO: (no name) - {00000000-F09C-02B4-6EC2-AD0300000000} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {3ceff6cd-6f08-4e4d-bccd-ff7415288c3b} - (no file)
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: winapi32.MyBHO - {62E2E094-F989-48C6-B947-6E79DA2294F9} - C:\WINDOWS\system32\winapi32.dll
O2 - BHO: (no name) - {77701e16-9bfe-4b63-a5b4-7bd156758a37} - (no file)
O2 - BHO: (no name) - {7b55bb05-0b4d-44fd-81a6-b136188f5deb} - (no file)
O2 - BHO: (no name) - {8333c319-0669-4893-a418-f56d9249fca6} - (no file)
O2 - BHO: (no name) - {9c691a33-7dda-4c2f-be4c-c176083f35cf} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O2 - BHO: (no name) - {e52dedbb-d168-4bdb-b229-c48160800e81} - (no file)
O2 - BHO: (no name) - {ffd2825e-0785-40c5-9a41-518f53a8261f} - (no file)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe
O4 - HKLM\..\Run: [SM1BG] C:\WINDOWS\SM1BG.EXE
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1101065473\ee\AOLHostManager.exe
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [Pure Networks Port Magic] "C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe" -Run
O4 - HKLM\..\Run: [mmtask] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
O4 - HKLM\..\Run: [.msfupdate] C:\WINDOWS\System\msveup.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Easy Media Creator 7\Drag to Disc\DrgToDsc.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKLM\..\Run: [Adware.Srv32] C:\WINDOWS\system32\runsrv32.exe
O4 - HKLM\..\Run: [Transponder] C:\WINDOWS\system32\susp.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - HKCU\..\Run: [AOL Fast Start] "C:\Program Files\America Online 9.0a\AOL.EXE" -b
O4 - HKCU\..\Run: [DW4] "C:\Program Files\The Weather Channel FW\Desktop Weather\DesktopWeather.exe"
O4 - HKCU\..\Run: [taskdir] C:\WINDOWS\system32\taskdir.exe
O4 - Startup: BOINC Manager.lnk = C:\Program Files\BOINC\boincmgr.exe
O4 - Startup: HotSync Manager.lnk = C:\Program Files\Palm\HOTSYNC.EXE
O4 - Startup: Screen Saver Control.lnk = C:\WINDOWS\FSScrCtl.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: MsUpdate.exe
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: Download with GetRight - C:\Program Files\GetRight\GRdownload.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Open with GetRight Browser - C:\Program Files\GetRight\GRbrowse.htm
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\Program Files\AWS\WeatherBug\Weather.exe (file missing) (HKCU)
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O15 - Trusted Zone: *.musicmatch.com
O15 - Trusted Zone: *.musicmatch.com (HKLM)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1120415641500
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://www.napster.com/client/isetup.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} (ActiveDataInfo Class) - http://www.symantec.com/techsupp/activedata/SymAData.cab
O16 - DPF: {E77C0D62-882A-456F-AD8F-7C6C9569B8C7} (ActiveDataObj Class) - https://www-secure.symantec.com/techsupp/activedata/ActiveData.cab
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\System32\NavLogon.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: IAA Event Monitor (IAANTMon) - Intel - C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe

Thanks much for your help.

3
Contributors
10
Replies
11
Views
11 Years
Discussion Span
Last Post by 'Stein
0

Start by getting rid of the following files
O4 - HKCU\..\Run: [taskdir] C:\WINDOWS\system32\taskdir.exe
C:\WINDOWS\system32\winsrv32.exe this is the ADUENT VIRUS
now check all the entries that look like this
O2 - BHO: (no name) - {00000000-59D4-4008-9058-080011001200} - (no file )

you have a number of them, update and scan for virus infection, then post a new log

0

Haha welcome (you and your father) to Daniweb :)

First, lemme clear up some of the confusion

...it seems a person needs to run CCleaner, then Ewido...

Well, that's generally my advice for several reasons. Oftentimes, many minor trojans, tracking cookies, cookies in general, viruses etc, live in *.tmp folders. CCleaner (full name CrapCleaner) does more or less just this. It empties, (if directions are followed correctly) the majority of the places where minor viruses reside. Also, it cleans up many of the junk stored in a computer after time.

Ewido is a well-known anti-malware software used to predominantly clean out small infections not seen by HijackThis.

For these reasons, I personally assign this fix (first Ewido/CCleaner, then new log) most often. However, based on what I see in the HJT log, my next plan of action is different.

_____________

run HJT again and clear the checkboxes on programs that are unfamiliar or undefined?

Well, this one is alittle harder to explain, sorta because it goes into how HijackThis works and such. But, here's the short and easy version :)

The first thing to look at is the prefix (O2, O3, etc). This prefix shows what type of list it is. CastleCops is a good site for help with learning them.

However, it's sorta more difficult then how CC explains it.

The other thing to remember is that, often it says "File Missing". The majority of the time, the file is really there, except, due to a complication, it didn't register. Ya would still need to check the file anyways.

Anyways, I'm done rambling :cheesy: I've included the fix below.
______________

First off, I'm going to mention that you're pretty infected. This fix will take several posts.

Ok, let's begin by uninstalling the following programs via the Add/Remove Programs list:

Weatherbug (a.k.a. Desktop Weather)

After doing this, begin by downloading Ewido Security Suite.

  • Install ewido security suite
  • When installing, under "Additional Options" uncheck..
    • Install background guard
    • Install scan via context menu
  • Launch ewido, there should be an icon on your desktop, double-click it.
  • The program will now open to the main screen.
  • When you run ewido for the first time, you will get a warning "Database could not be found!". Click OK. We will fix this in a moment.
  • You will need to update ewido to the latest definition files.
    • On the left hand side of the main screen click Update.
    • Then click on Start Update.
  • The update will start and a progress bar will show the updates being installed. The status bar at the bottom will display "Update successful"
  • Click on Scanner
  • Click on Complete System Scan and the scan will begin.
  • You will be prompted to clean the first infection.
  • Select "Perform action on all infections", then proceed.
  • Once the scan has completed, there will be a button located on the bottom of the screen named Save report
  • Click Save report.
  • Save the report .txt file to your desktop or a location where you can find it easily.

After doing this, continue by downloading CCleaner, and specifically choosing the most recent version.

Then, follow these steps:

1. Close all programs so that you are at your desktop.
2. Double-click on the "My Computer" icon.
3. Select the "Tools" menu and click "Folder Options".
4. After the new window appears select the "View" tab.
5. Place a checkmark in the checkbox labeled "Display the contents of system folders".
6. Under the "Hidden files and folders" section select the radio button labeled "Show hidden files and folders".
7. Remove the checkmark from the checkbox labeled "Hide file extensions for known file types".
8. Remove the checkmark from the checkbox labeled "Hide protected operating system files". 9. Press the "Apply" button and then the "OK" button and shutdown My Computer.
10. Now your computer is configured to show all hidden files.

Now, install the program. Open it, and choose the 'Options' tab. Inside, hit the 'Custom' tab, and add the following folders (Note: Not all of these files are on every computer. If one of these isn't present, skip it):

C:\Windows\Temp
C:\Temp
C:\Documents and Settings\<Every user listed>\Local Settings\Temp
C:\Documents and Settings\<Every user listed>\Local Settings\Temporary Internet Files\Content.IE5
C:\Documents and Settings\<Every user listed>\Local Settings\History
C:\Documents and Settings\<Every user listed>\Cookies
C:\Windows\Prefetch

After doing this, move back to the 'Cleaner' tab, and inside this, be sure your open to the 'Windows' tab. Inside, check the box labeled 'Custom Files and Folders'.

Next, after following all of these steps, you're ready to scan. Run scans in both the 'Cleaner' and 'Issues'. Note: It might take several scans in each to remove all of the junk.

After doing this, restart the computer.

Now, open HJT and place checks next to the following:

O2 - BHO: (no name) - {00000000-59D4-4008-9058-080011001200} - (no file)
O2 - BHO: (no name) - {00000000-C1EC-0345-6EC2-4D0300000000} - (no file)
O2 - BHO: (no name) - {00000000-F09C-02B4-6EC2-AD0300000000} - (no file)
O2 - BHO: (no name) - {3ceff6cd-6f08-4e4d-bccd-ff7415288c3b} - (no file)
O2 - BHO: winapi32.MyBHO - {62E2E094-F989-48C6-B947-6E79DA2294F9} - C:\WINDOWS\system32\winapi32.dll
O2 - BHO: (no name) - {77701e16-9bfe-4b63-a5b4-7bd156758a37} - (no file)
O2 - BHO: (no name) - {7b55bb05-0b4d-44fd-81a6-b136188f5deb} - (no file)
O2 - BHO: (no name) - {8333c319-0669-4893-a418-f56d9249fca6} - (no file)
O2 - BHO: (no name) - {9c691a33-7dda-4c2f-be4c-c176083f35cf} - (no file)
O2 - BHO: (no name) - {e52dedbb-d168-4bdb-b229-c48160800e81} - (no file)
O2 - BHO: (no name) - {ffd2825e-0785-40c5-9a41-518f53a8261f} - (no file)
O4 - HKLM\..\Run: [.msfupdate] C:\WINDOWS\System\msveup.exe
O4 - HKLM\..\Run: [Adware.Srv32] C:\WINDOWS\system32\runsrv32.exe
O4 - HKLM\..\Run: [Transponder] C:\WINDOWS\system32\susp.exe
O4 - HKCU\..\Run: [DW4] "C:\Program Files\The Weather Channel FW\Desktop Weather\DesktopWeather.exe"
O4 - HKCU\..\Run: [taskdir] C:\WINDOWS\system32\taskdir.exe
O4 - Global Startup: MsUpdate.exe
O9 - Extra button: WeatherBug - {AF6CABAB-61F9-4f12-A198-B7D41EF1CB52} - C:\Program Files\AWS\WeatherBug\Weather.exe (file missing) (HKCU)

After placing checks, close ALL windows (including this one) and hit 'Fix Checked'.

Now, we need KillBox.

Copy this advise to a Notepad file. Save it to your desktop. We will use it later.

1) Please download the Killbox.
Unzip it to the desktop but do NOT run it yet.

2) Then please reboot into Safe Mode by restarting your computer and pressing F8 as your computer is booting up. Then select the Safe Mode option.

3) Once in Safe Mode, please run Killbox.

4) Select "delete on reboot" and put a check in the "unregister dll.

5) Open the text file with these instructions in it, and copy the file names below to the clipboard by highlighting them and pressing Control-C:

C:\WINDOWS\system32\winapi32.dll

6) Return to Killbox, go to the File menu, and choose "Paste from Clipboard".

7) Click the red-and-white "Delete File" button. Click "Yes" at the Delete on Reboot prompt. Click "No" at the Pending Operations prompt.

If you receive a message such as: "Component 'MsComCtl.ocx' or one of its dependencies not correctly registered: a file is missing or invalid." when trying to run TheKillbox, click here to download and run missingfilesetup.exe. Then try TheKillbox again..

Let the system reboot.
________________________________

Now, after rebooting to normal mode, reboot into safe again.

1) Please reboot into Safe Mode by restarting your computer and pressing F8 as your computer is booting up. Then select the Safe Mode option.

2) Once in Safe Mode, please run Killbox.

3) Select "Delete on Reboot".

4) Open the text file with these instructions in it, and copy the file names below to the clipboard by highlighting them and pressing Control-C:

C:\WINDOWS\System\msveup.exe
C:\WINDOWS\system32\runsrv32.exe
C:\WINDOWS\system32\susp.exe
C:\WINDOWS\system32\taskdir.exe

5) Return to Killbox, go to the File menu, and choose "Paste from Clipboard".

6) Click the red-and-white "Delete File" button. Click "Yes" at the Delete on Reboot prompt. Click "No" at the Pending Operations prompt.

If you receive a message such as: "Component 'MsComCtl.ocx' or one of its dependencies not correctly registered: a file is missing or invalid." when trying to run TheKillbox, click here to download and run missingfilesetup.exe. Then try TheKillbox again..

Let the system reboot.

Now, rerun HJT and post back here with a new HJT log, and the Ewido scan log.

Thanks.

0

Wow, thanks so much for the detailed instructions! I forwarded the details up to Dad and gave him a list of my free times so we can hopefully sit down over the phone and give this a shot.

Have to say thanks again - I'm stunned by the responsiveness and details here.

I'll be back soon.

0

Heh and to think some of us are still underclassmen in High School and can't drive yet :mrgreen:

But ya, I'm ready whenever ya got the logs lol.

0

Part Deux! Just heard back from the dad. Thanks in advance!

HJT:

Logfile of HijackThis v1.99.1
Scan saved at 10:40:36 PM, on 5/8/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\System32\DSentry.exe
C:\WINDOWS\SM1BG.EXE
C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\Roxio\Easy Media Creator 7\Drag to Disc\DrgToDsc.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\Palm\HOTSYNC.EXE
C:\WINDOWS\FSScrCtl.exe
C:\Program Files\Common Files\AOL\1101065473\ee\AOLHostManager.exe
C:\Program Files\Common Files\AOL\1101065473\ee\AOLServiceHost.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\Gary\Desktop\Hijackthis\HijackThis.exe
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell.com
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: (no name) - {62E2E094-F989-48C6-B947-6E79DA2294F9} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\yt.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe
O4 - HKLM\..\Run: [SM1BG] C:\WINDOWS\SM1BG.EXE
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1101065473\ee\AOLHostManager.exe
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [Pure Networks Port Magic] "C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe" -Run
O4 - HKLM\..\Run: [mmtask] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Easy Media Creator 7\Drag to Disc\DrgToDsc.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - Startup: BOINC Manager.lnk = C:\Program Files\BOINC\boincmgr.exe
O4 - Startup: HotSync Manager.lnk = C:\Program Files\Palm\HOTSYNC.EXE
O4 - Startup: Screen Saver Control.lnk = C:\WINDOWS\FSScrCtl.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: Download with GetRight - C:\Program Files\GetRight\GRdownload.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Open with GetRight Browser - C:\Program Files\GetRight\GRbrowse.htm
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O15 - Trusted Zone: *.musicmatch.com
O15 - Trusted Zone: *.musicmatch.com (HKLM)
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1120415641500
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://www.napster.com/client/isetup.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} (ActiveDataInfo Class) - http://www.symantec.com/techsupp/activedata/SymAData.cab
O16 - DPF: {E77C0D62-882A-456F-AD8F-7C6C9569B8C7} (ActiveDataObj Class) - https://www-secure.symantec.com/techsupp/activedata/ActiveData.cab
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\System32\NavLogon.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: IAA Event Monitor (IAANTMon) - Intel - C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe

Ewido:

---------------------------------------------------------
 ewido anti-malware - Scan report
---------------------------------------------------------
 + Created on:   6:26:21 PM, 5/8/2006
 + Report-Checksum:  B41D37C3
 + Scan result:
 HKLM\SOFTWARE\Alexa Internet -> Adware.Alexa : Cleaned with backup
 HKLM\SOFTWARE\Classes\AlxTB.BHO -> Adware.Alexa : Cleaned with backup
 HKLM\SOFTWARE\Classes\AppID\DailyToolbar.DLL -> Adware.DailyToolbar : Cleaned with backup
 HKLM\SOFTWARE\Classes\Bridge.brdg -> Adware.BlazeFind : Cleaned with backup
 HKLM\SOFTWARE\Classes\CLSID\{E52DEDBB-D168-4BDB-B229-C48160800E81} -> Hijacker.Generic : Cleaned with backup
 HKLM\SOFTWARE\Classes\DailyToolbar.IEBand -> Adware.DailyToolbar : Cleaned with backup
 HKLM\SOFTWARE\Classes\DailyToolbar.SysMgr -> Adware.DailyToolbar : Cleaned with backup
 HKLM\SOFTWARE\Classes\IEToolbar.AffiliateCtl -> Adware.DailyToolbar : Cleaned with backup
 HKLM\SOFTWARE\Classes\jao.jao -> Adware.BlazeFind : Cleaned with backup
 HKLM\SOFTWARE\Classes\PopMenu.Menu -> Adware.Alexa : Cleaned with backup
 HKLM\SOFTWARE\Classes\Popup.PopupKiller -> Adware.Alexa : Cleaned with backup
 HKLM\SOFTWARE\DailyToolbar -> Adware.DailyToolbar : Cleaned with backup
 HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{e52dedbb-d168-4bdb-b229-c48160800e81} -> Hijacker.Generic : Cleaned with backup
 HKLM\SOFTWARE\NIX Solutions -> Adware.DailyToolbar : Cleaned with backup
 HKLM\SOFTWARE\NIX Solutions\DailyToolbar -> Adware.DailyToolbar : Cleaned with backup
 HKLM\SOFTWARE\RespondMiter -> Adware.VX2 : Cleaned with backup
 HKU\S-1-5-21-1711749058-2532895777-3572696738-1006\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{E52DEDBB-D168-4BDB-B229-C48160800E81} -> Hijacker.Generic : Cleaned with backup
 :mozilla.8:C:\Documents and Settings\Gary\Application Data\Mozilla\Firefox\Profiles\wgbrcvtn.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.9:C:\Documents and Settings\Gary\Application Data\Mozilla\Firefox\Profiles\wgbrcvtn.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.10:C:\Documents and Settings\Gary\Application Data\Mozilla\Firefox\Profiles\wgbrcvtn.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
 :mozilla.11:C:\Documents and Settings\Gary\Application Data\Mozilla\Firefox\Profiles\wgbrcvtn.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.12:C:\Documents and Settings\Gary\Application Data\Mozilla\Firefox\Profiles\wgbrcvtn.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup
 :mozilla.14:C:\Documents and Settings\Gary\Application Data\Mozilla\Firefox\Profiles\wgbrcvtn.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
 :mozilla.15:C:\Documents and Settings\Gary\Application Data\Mozilla\Firefox\Profiles\wgbrcvtn.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
 :mozilla.19:C:\Documents and Settings\Gary\Application Data\Mozilla\Firefox\Profiles\wgbrcvtn.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup
 :mozilla.27:C:\Documents and Settings\Gary\Application Data\Mozilla\Firefox\Profiles\wgbrcvtn.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.28:C:\Documents and Settings\Gary\Application Data\Mozilla\Firefox\Profiles\wgbrcvtn.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.6:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
 :mozilla.7:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
 :mozilla.8:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
 :mozilla.9:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
 :mozilla.10:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
 :mozilla.11:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.12:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.13:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.14:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.15:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.16:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.17:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.18:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.19:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.20:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.21:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.22:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.23:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.24:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.25:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.26:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.27:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.28:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.29:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.30:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.31:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
 :mozilla.32:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
 :mozilla.33:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
 :mozilla.34:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
 :mozilla.35:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
 :mozilla.36:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
 :mozilla.37:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
 :mozilla.38:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
 :mozilla.39:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
 :mozilla.40:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
 :mozilla.41:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
 :mozilla.42:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
 :mozilla.43:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
 :mozilla.44:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
 :mozilla.48:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
 :mozilla.49:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup
 :mozilla.57:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
 :mozilla.58:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
 :mozilla.59:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
 :mozilla.60:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
 :mozilla.61:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
 :mozilla.62:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
 :mozilla.63:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
 :mozilla.74:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
 :mozilla.75:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Overture : Cleaned with backup
 :mozilla.76:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Overture : Cleaned with backup
 :mozilla.77:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
 :mozilla.78:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
 :mozilla.79:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
 :mozilla.80:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
 :mozilla.81:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
 :mozilla.82:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
 :mozilla.83:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
 :mozilla.87:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
 :mozilla.88:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
 :mozilla.89:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
 :mozilla.93:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.94:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.95:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.96:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.97:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.98:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.99:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.100:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.101:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.102:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.103:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.104:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.105:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.106:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.107:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.108:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.109:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.110:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.111:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.112:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.113:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Paycounter : Cleaned with backup
 :mozilla.114:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup
 :mozilla.115:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup
 :mozilla.116:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup
 :mozilla.119:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.120:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.121:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.122:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.123:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.124:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.125:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.126:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.127:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.128:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.129:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.130:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.131:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.132:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.133:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.134:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.135:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.137:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Sextracker : Cleaned with backup
 :mozilla.141:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
 :mozilla.142:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
 :mozilla.143:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
 :mozilla.147:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
 :mozilla.148:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
 :mozilla.149:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
 :mozilla.150:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
 :mozilla.151:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
 :mozilla.152:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
 :mozilla.162:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
 :mozilla.163:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
 :mozilla.164:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Mediaplex : Cleaned with backup
 :mozilla.166:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Qksrv : Cleaned with backup
 :mozilla.167:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Qksrv : Cleaned with backup
 :mozilla.169:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.170:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.171:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.172:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.173:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.174:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.175:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.176:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.177:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.178:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.179:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.180:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.181:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.182:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.183:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.184:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.185:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.186:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.187:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.188:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.189:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.190:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
 :mozilla.208:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Com : Cleaned with backup
 :mozilla.209:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Com : Cleaned with backup
 :mozilla.216:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
 :mozilla.217:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
 :mozilla.218:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
 :mozilla.219:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
 :mozilla.221:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
 :mozilla.234:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Bluestreak : Cleaned with backup
 :mozilla.242:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned with backup
 :mozilla.257:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Ad-logics : Cleaned with backup
 :mozilla.260:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
 :mozilla.261:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
 :mozilla.269:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Euniverseads : Cleaned with backup
 :mozilla.270:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Euniverseads : Cleaned with backup
 :mozilla.274:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Valueclick : Cleaned with backup
 :mozilla.275:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Valueclick : Cleaned with backup
 :mozilla.283:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Hitslink : Cleaned with backup
 :mozilla.284:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Hitslink : Cleaned with backup
 :mozilla.285:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Hitslink : Cleaned with backup
 :mozilla.286:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Hitslink : Cleaned with backup
 :mozilla.299:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup
 :mozilla.300:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\default\rmtdyh4o.slt\cookies.txt -> TrackingCookie.Bfast : Cleaned with backup
 :mozilla.9:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.10:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.11:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.12:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.13:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.14:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.15:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.16:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.17:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.18:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.19:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.20:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
 :mozilla.21:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
 :mozilla.22:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
 :mozilla.23:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
 :mozilla.24:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
 :mozilla.25:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
 :mozilla.26:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.27:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.28:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.29:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.30:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.31:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.32:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.33:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.34:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.35:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.36:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.37:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.38:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.39:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.40:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.41:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.42:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.43:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.44:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.45:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.46:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.47:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.48:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.49:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.50:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.51:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.52:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.53:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.54:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.55:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.56:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.57:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.58:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.59:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.60:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.61:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.62:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.63:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.64:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.65:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.66:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.67:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.68:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.69:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.70:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.71:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.72:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.73:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.74:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.75:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
 :mozilla.76:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.77:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.78:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.79:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.80:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.81:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.82:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.83:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.84:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.85:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
 :mozilla.87:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
 :mozilla.91:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup
 :mozilla.92:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Masterstats : Cleaned with backup
 :mozilla.94:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup
 :mozilla.95:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup
 :mozilla.96:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
 :mozilla.97:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
 :mozilla.98:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
 :mozilla.99:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Mediaplex : Cleaned with backup
 :mozilla.100:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Mediaplex : Cleaned with backup
 :mozilla.101:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
 :mozilla.102:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
 :mozilla.103:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
 :mozilla.104:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
 :mozilla.105:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
 :mozilla.106:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
 :mozilla.107:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
 :mozilla.108:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
 :mozilla.144:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.145:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.146:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.147:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
 :mozilla.148:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Paycounter : Cleaned with backup
 :mozilla.149:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
 :mozilla.150:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
 :mozilla.152:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
 :mozilla.153:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
 :mozilla.164:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
 :mozilla.165:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
 :mozilla.166:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
 :mozilla.167:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
 :mozilla.170:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 :mozilla.174:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
 :mozilla.175:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
 :mozilla.176:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
 :mozilla.177:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
 :mozilla.181:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Revenue : Cleaned with backup
 :mozilla.182:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Revenue : Cleaned with backup
 :mozilla.183:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Revenue : Cleaned with backup
 :mozilla.184:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Revenue : Cleaned with backup
 :mozilla.185:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Revenue : Cleaned with backup
 :mozilla.186:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Revenue : Cleaned with backup
 :mozilla.187:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Revenue : Cleaned with backup
 :mozilla.188:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Revenue : Cleaned with backup
 :mozilla.189:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Revenue : Cleaned with backup
 :mozilla.192:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Bluemountain : Cleaned with backup
 :mozilla.194:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup
 :mozilla.195:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup
 :mozilla.200:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Dbbsrv : Cleaned with backup
 :mozilla.209:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup
 :mozilla.210:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup
 :mozilla.216:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned with backup
 :mozilla.217:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned with backup
 :mozilla.218:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned with backup
 :mozilla.219:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned with backup
 :mozilla.220:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned with backup
 :mozilla.221:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned with backup
 :mozilla.222:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned with backup
 :mozilla.223:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned with backup
 :mozilla.224:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned with backup
 :mozilla.225:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned with backup
 :mozilla.226:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Aavalue : Cleaned with backup
 :mozilla.233:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
 :mozilla.234:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
 :mozilla.235:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
 :mozilla.236:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
 :mozilla.237:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
 :mozilla.244:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Overture : Cleaned with backup
 :mozilla.247:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
 :mozilla.248:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
 :mozilla.249:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
 :mozilla.250:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
 :mozilla.253:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned with backup
 :mozilla.284:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
 :mozilla.285:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
 :mozilla.289:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Bfast : Cleaned with backup
 :mozilla.292:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Centrport : Cleaned with backup
 :mozilla.293:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Centrport : Cleaned with backup
 :mozilla.296:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Valueclick : Cleaned with backup
 :mozilla.299:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
 :mozilla.301:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
 :mozilla.310:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned with backup
 :mozilla.311:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Bridgetrack : Cleaned with backup
 :mozilla.313:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
 :mozilla.314:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
 :mozilla.315:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
 :mozilla.316:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
 :mozilla.317:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
 :mozilla.324:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Bluestreak : Cleaned with backup
 :mozilla.331:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
 :mozilla.332:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.Valueclick : Cleaned with backup
 :mozilla.335:C:\Documents and Settings\Gary\Application Data\Mozilla\Profiles\Gary\equ1y9sb.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
 C:\Documents and Settings\Gary\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\loaderadv527.jar-4f16b062-17c7b8da.zip/Dummy.class -> Not-A-Virus.Exploit.ByteVerify : Cleaned with backup
 C:\Documents and Settings\Gary\Cookies\gary@2o7[2].txt -> TrackingCookie.2o7 : Cleaned with backup
 C:\Documents and Settings\Gary\Cookies\gary@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned with backup
 C:\Documents and Settings\Gary\Local Settings\Temp\Cookies\gary@2o7[2].txt -> TrackingCookie.2o7 : Cleaned with backup
 C:\Documents and Settings\Gary\Local Settings\Temp\Cookies\gary@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned with backup
 C:\Documents and Settings\Gary\Local Settings\Temp\Cookies\gary@ads.pointroll[1].txt -> TrackingCookie.Pointroll : Cleaned with backup
 C:\Documents and Settings\Gary\Local Settings\Temp\Cookies\gary@advertising[1].txt -> TrackingCookie.Advertising : Cleaned with backup
 C:\Documents and Settings\Gary\Local Settings\Temp\Cookies\gary@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned with backup
 C:\Documents and Settings\Gary\Local Settings\Temp\Cookies\gary@bs.serving-sys[1].txt -> TrackingCookie.Serving-sys : Cleaned with backup
 C:\Documents and Settings\Gary\Local Settings\Temp\Cookies\gary@centrport[1].txt -> TrackingCookie.Centrport : Cleaned with backup
 C:\Documents and Settings\Gary\Local Settings\Temp\Cookies\gary@doubleclick[2].txt -> TrackingCookie.Doubleclick : Cleaned with backup
 C:\Documents and Settings\Gary\Local Settings\Temp\Cookies\gary@edge.ru4[2].txt -> TrackingCookie.Ru4 : Cleaned with backup
 C:\Documents and Settings\Gary\Local Settings\Temp\Cookies\gary@fastclick[2].txt -> TrackingCookie.Fastclick : Cleaned with backup
 C:\Documents and Settings\Gary\Local Settings\Temp\Cookies\gary@media.fastclick[1].txt -> TrackingCookie.Fastclick : Cleaned with backup
 C:\Documents and Settings\Gary\Local Settings\Temp\Cookies\gary@mediaplex[1].txt -> TrackingCookie.Mediaplex : Cleaned with backup
 C:\Documents and Settings\Gary\Local Settings\Temp\Cookies\gary@perf.overture[1].txt -> TrackingCookie.Overture : Cleaned with backup
 C:\Documents and Settings\Gary\Local Settings\Temp\Cookies\gary@questionmarket[1].txt -> TrackingCookie.Questionmarket : Cleaned with backup
 C:\Documents and Settings\Gary\Local Settings\Temp\Cookies\gary@serving-sys[1].txt -> TrackingCookie.Serving-sys : Cleaned with backup
 C:\Documents and Settings\Gary\Local Settings\Temp\Cookies\gary@tribalfusion[2].txt -> TrackingCookie.Tribalfusion : Cleaned with backup
 C:\Documents and Settings\Gary\Local Settings\Temp\Cookies\gary@z1.adserver[1].txt -> TrackingCookie.Adserver : Cleaned with backup
 C:\Program Files\AWS\WeatherBug\MiniBugTransporter.dll -> Adware.Aws : Cleaned with backup
 C:\WINDOWS\SYSTEM32\rzsvqxui.seu -> Hijacker.Small.js : Cleaned with backup
 C:\WINDOWS\SYSTEM32\winapi32.dll -> Downloader.VB.aan : Cleaned with backup
 C:\WINDOWS\SYSTEM32\winsrv32.exe -> Downloader.Adload.aq : Cleaned with backup
 
::Report End
0

Good good, the log's alot cleaner. Also, Ewido removed a fair amout of junk.

However, couple more things to fix. Fix the following with HJT:

O2 - BHO: (no name) - {62E2E094-F989-48C6-B947-6E79DA2294F9} - (no file)

Also, these 2 below depend on whether your father uses MusicMatch. If he DOES use it, leave them alone. If he doesn't use the program, be sure to check these also:

O15 - Trusted Zone: *.musicmatch.com
O15 - Trusted Zone: *.musicmatch.com (HKLM)

If that O2 entry above is still present in the new log (the one you're gonna send back), we're gonna have to kill it with CWShredder.

Awsome, after fixing these, are ya having any more problems?

Post back with a new HJT log.

Thanks.

Edited for grammar.

0

Here's round three :)

I don't see the O2 line - perhaps this is the end? Dad reports no new problems - and:

Please thank whoever is doing all this work. I haven't had any problems this evening.
I guess the bottom line question here is what should I do to insure that this doesn't happen again?

So many, many thanks from us both!

Logfile of HijackThis v1.99.1
Scan saved at 12:00:28 AM, on 5/9/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Windows Defender\MsMpEng.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\System32\DSentry.exe
C:\WINDOWS\SM1BG.EXE
C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\Roxio\Easy Media Creator 7\Drag to Disc\DrgToDsc.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\Windows Defender\MSASCui.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\BOINC\boincmgr.exe
C:\Program Files\Palm\HOTSYNC.EXE
C:\WINDOWS\FSScrCtl.exe
C:\Program Files\Common Files\AOL\1101065473\ee\AOLHostManager.exe
C:\Program Files\Common Files\AOL\1101065473\ee\AOLServiceHost.exe
C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\WINDOWS\System32\CTsvcCDA.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\WINDOWS\wanmpsvc.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\BOINC\boinc.exe
C:\Program Files\BOINC\projects\setiathome.berkeley.edu\setiathome_5.12_windows_intelx86.exe
C:\Program Files\BOINC\projects\setiathome.berkeley.edu\setiathome_5.12_windows_intelx86.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\Gary\Desktop\Spyware\Hijackthis\HijackThis.exe
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://refdesk.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dell.com
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\system32\dla\tfswshx.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar2.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar2.dll
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [DVDSentry] C:\WINDOWS\System32\DSentry.exe
O4 - HKLM\..\Run: [SM1BG] C:\WINDOWS\SM1BG.EXE
O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1101065473\ee\AOLHostManager.exe
O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
O4 - HKLM\..\Run: [Pure Networks Port Magic] "C:\PROGRA~1\PURENE~1\PORTMA~1\PortAOL.exe" -Run
O4 - HKLM\..\Run: [mmtask] C:\Program Files\MUSICMATCH\MUSICMATCH Jukebox\mmtask.exe
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [RoxioDragToDisc] "C:\Program Files\Roxio\Easy Media Creator 7\Drag to Disc\DrgToDsc.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Windows Defender] "C:\Program Files\Windows Defender\MSASCui.exe" -hide
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe"  -osboot
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [AIM] C:\Program Files\AIM\aim.exe -cnetwait.odl
O4 - Startup: BOINC Manager.lnk = C:\Program Files\BOINC\boincmgr.exe
O4 - Startup: HotSync Manager.lnk = C:\Program Files\Palm\HOTSYNC.EXE
O4 - Startup: Screen Saver Control.lnk = C:\WINDOWS\FSScrCtl.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &AIM Search - res://C:\Program Files\AIM Toolbar\AIMBar.dll/aimsearch.htm
O8 - Extra context menu item: &Google Search - res://c:\program files\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Translate English Word - res://c:\program files\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Backward Links - res://c:\program files\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Cached Snapshot of Page - res://c:\program files\google\GoogleToolbar2.dll/cmcache.html
O8 - Extra context menu item: Download with GetRight - C:\Program Files\GetRight\GRdownload.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Open with GetRight Browser - C:\Program Files\GetRight\GRbrowse.htm
O8 - Extra context menu item: Similar Pages - res://c:\program files\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Translate Page into English - res://c:\program files\google\GoogleToolbar2.dll/cmtrans.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2\bin\npjpi142.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\System32\Shdocvw.dll
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1120415641500
O16 - DPF: {90C9629E-CD32-11D3-BBFB-00105A1F0D68} (InstallShield International Setup Player) - http://www.napster.com/client/isetup.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} (ActiveDataInfo Class) - http://www.symantec.com/techsupp/activedata/SymAData.cab
O16 - DPF: {E77C0D62-882A-456F-AD8F-7C6C9569B8C7} (ActiveDataObj Class) - https://www-secure.symantec.com/techsupp/activedata/ActiveData.cab
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\System32\NavLogon.dll
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: IAA Event Monitor (IAANTMon) - Intel - C:\Program Files\Intel\Intel Application Accelerator\iaantmon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\NCS\Sync\NetSvc.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
O23 - Service: WAN Miniport (ATW) Service (WANMiniportService) - America Online, Inc. - C:\WINDOWS\wanmpsvc.exe
0

Awsome, the log's completely clean :)

O, and be sure to rehide system files if ya havn't done so already:

We need to re hide system files. To do so, please follow the steps below:

  1. Double-click My Computer.
  2. Click the Tools menu, and then click Folder Options.
  3. Click the View tab.
  4. Put a check by "Hide file extensions for known file types."
  5. Under the "Hidden files" folder, select "Show hidden files and folders."
  6. Check "Hide protected operating system files."
  7. Click Apply, and then click OK.

___________

what should I do to insure that this doesn't happen again?

Haha glad ya asked.

Here's what I'd do.

1) Keep Symantec AntiVirus. Run it say, once a week.

2) Keep Ewido. After 14 days the 'Background Guard' and the 'Automatic Updates will expire, but all this basically means is that you'll have to click the 'update' button before ya run a scan. Run a scan about once a week.

3) Keep CCleaner. Run this about once a week.

4) Keep Microsoft Defender. Although this doesn't have a good scan system, it provides excellent 'realtime' service. A scan here wouldn't be that necessary.

Hmm, and that seems about it.

Any questions?

Thanks.

0

I think that is it! Thanks again so much, from both of us. He's thrilled to get the computer back without an fdisk or three. You should charge!

Take care and thanks again.

0

Incredible.

You should charge!

Haha well we sure would make alotta money...

BUT, seeing we all do it for fun...

Haha thanks again, and I'm glad we could help. :)

This question has already been answered. Start a new discussion instead.
Have something to contribute to this discussion? Please be thoughtful, detailed and courteous, and be sure to adhere to our posting rules.