Welcome to MalwareRemoval.com,
What if we told you that you could get malware removal help from experts, and that it was 100% free? MalwareRemoval.com provides free support for people with infected computers. Our help, and the tools we use are always 100% free. No hidden catch. We simply enjoy helping others. You enjoy a clean, safe computer.

Malware Removal Instructions

Computer Slowing Down...

MalwareRemoval.com provides free support for people with infected computers. Using plain language that anyone can understand, our community of volunteer experts will walk you through each step.

Computer Slowing Down...

Unread postby DakotaFloydfD » November 13th, 2006, 8:14 pm

Alright, I keep getting a system alert that says I am infected with Malware and that my computer's speed has decreased by 47% and my internet speed has decreased by 36%. I've done several scans with the recommended software and the problem is still occurring. He is my hijackthis log, any help would be appreciated.




Logfile of HijackThis v1.99.1
Scan saved at 7:08:30 PM, on 11/13/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\Explorer.EXE
C:\Program Files\QualityCodec\isamonitor.exe
C:\Program Files\QualityCodec\pmsngr.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\BCMSMMSG.exe
C:\Program Files\McAfee.com\Agent\mcagent.exe
C:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
C:\Program Files\Dell AIO Printer A940\dlbabmgr.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\mobile PhoneTools\WatchDog.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\Dell AIO Printer A940\dlbabmon.exe
C:\Program Files\QualityCodec\pmmon.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\SurfAccuracy\SAcc.exe
C:\Program Files\QualityCodec\isamini.exe
C:\WINDOWS\aioscikc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\MySpace\IM\MySpaceIM.exe
C:\WINDOWS\system32\cisvc.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\WINDOWS\system32\LxrJD31s.exe
c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\Program Files\Mozilla Firefox\firefox.exe
c:\PROGRA~1\mcafee.com\vso\mcshield.exe
C:\WINDOWS\system32\cidaemon.exe
C:\Program Files\Winamp\Winamp.exe
C:\Program Files\AIM95\aim.exe
C:\Program Files\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dellnet.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.absolutepunk.net/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dellnet.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://red.clientapps.yahoo.com/customi ... .yahoo.com
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.dellnet.com/
R1 - HKCU\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\SearchURL,(Default) = about:blank
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = "C:\Program Files\Outlook Express\msimn.exe"
R3 - Default URLSearchHook is missing
O2 - BHO: Band Class - {01F44A8A-8C97-4325-A378-76E68DC4AB2E} - C:\WINDOWS\systb.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {192c5b4a-3efd-40c7-9f99-c472deb8efc0} - C:\Program Files\QualityCodec\isaddon.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Viewpoint Toolbar BHO - {A7327C09-B521-4EDB-8509-7D2660C9EC98} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBarBHO.dll
O3 - Toolbar: (no name) - {2CDE1A7D-A478-4291-BF31-E1B4C16F92EB} - (no file)
O3 - Toolbar: Viewpoint Toolbar - {F8AD5AA5-D966-4667-9DAF-2561D68B2012} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll
O3 - Toolbar: Protection Bar - {bf1ced2c-4b3f-4079-a330-864eda5a4cff} - C:\Program Files\QualityCodec\iesplugin.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [BCMSMMSG] BCMSMMSG.exe
O4 - HKLM\..\Run: [MCAgentExe] C:\Program Files\McAfee.com\Agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\McAfee.com\Agent\McUpdate.exe
O4 - HKLM\..\Run: [VirusScan Online] c:\PROGRA~1\mcafee.com\vso\mcvsshld.exe
O4 - HKLM\..\Run: [Dell AIO Printer A940] "C:\Program Files\Dell AIO Printer A940\dlbabmgr.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [NaviSearch] C:\Program Files\NaviSearch\bin\nls.exe
O4 - HKLM\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKLM\..\Run: [version] C:\WINDOWS\system32\Irplyn.exe
O4 - HKLM\..\Run: [secure] C:\WINDOWS\system32\Rmmcbm.exe
O4 - HKLM\..\Run: [WatchDog] C:\Program Files\mobile PhoneTools\WatchDog.exe
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [SurfAccuracy] C:\Program Files\SurfAccuracy\SAcc.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [DeadAIM] rundll32.exe "C:\Program Files\AIM95\\DeadAIM.ocm",ExportedCheckODLs
O4 - HKLM\..\Run: [ReJf5vH] C:\WINDOWS\aioscikc.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\ypager.exe" -quiet
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [googletalk] "C:\Program Files\Google\Google Talk\googletalk.exe" /autostart
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe
O4 - Startup: desktop weather.lnk = C:\Program Files\desktop weather\desktopweather_920613.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: *.line6.net
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/200 ... taller.exe
O16 - DPF: {4B9F2C37-C0CF-42BC-BB2D-DCFA8B25CABF} (PopCapLoaderCtrl Class) - http://zone.msn.com/bingame/rock/defaul ... oader1.cab
O16 - DPF: {4C226336-4032-489F-9674-67E74225979B} - http://otx.ifilm.com/OTXMedia/OTXMedia.dll
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://207.188.7.150/085dc24b3947146335 ... xIE601.cab
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://oldglory.ninesystems.com/AxisCamControl.ocx
O16 - DPF: {A93D84FD-641F-43AE-B963-E6FA84BE7FE7} (LinkSys Content Update) - http://www.linksysfix.com/check/netset/ ... downls.cab
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} (YAddBook Class) - http://us.dl1.yimg.com/download.yahoo.c ... mplete.cab
O16 - DPF: {D68217F4-1DF9-45C1-BFA6-61DBD5464527} (Genealogy Browser) - http://66.119.139.74/cabs/zinst.cab
O16 - DPF: {D719897A-B07A-4C0C-AEA9-9B663A28DFCB} - http://ax.phobos.apple.com.edgesuite.ne ... tector.cab
O16 - DPF: {DBA230D1-8467-4e69-987E-5FAE815A3B45} -
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - http://us.dl1.yimg.com/download.yahoo.c ... _1_3_0.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: bonspells - {11853d5f-f894-4cc7-bbc3-fc7a9dcfd896} - C:\WINDOWS\system32\okkmtv.dll (file missing)
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Lexar JD31 (LxrJD31s) - Unknown owner - C:\WINDOWS\SYSTEM32\LxrJD31s.exe
O23 - Service: McAfee.com McShield (McShield) - Unknown owner - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
O23 - Service: McAfee.com VirusScan Online Realtime Engine (MCVSRte) - Mcafee.com Corporation - c:\PROGRA~1\mcafee.com\vso\mcvsrte.exe
DakotaFloydfD
Active Member
 
Posts: 12
Joined: November 13th, 2006, 7:27 pm
Advertisement
Register to Remove

Unread postby Navigator » November 13th, 2006, 11:22 pm

Hello DakotaFloyd....welcome to Malware Removal!

With regard to your systems performance, the first thing I notice is that you have two AV programs installed and running.

Anti-Virus programs take up an enormous amount of your computer's resources when they are actively scanning your computer. Having two anti-virus programs running at the same time can cause your computer to run very slow, become unstable and even, in rare cases, crash.

If you choose to install more than one Anti-Virus program on your computer, then only one of them should be active in memory at a time.

I would recommend that you choose one AV program between McAfee and AVG, and either disable of uninstall the other. I would fix this problem first and see if it resolves your 'slow' issues...

With regard to the malware on your system, please do this:

1. Please download SmitfraudFix (by S!Ri)
Alternate download site if the above link does not work: SmitfraudFix
Extract the content (a folder named SmitfraudFix) to your Desktop.

Open the SmitfraudFix folder and double-click smitfraudfix.cmd
Select option #1 - Search by typing 1 and press "Enter"; a text file will appear, which lists infected files (if present).
Please copy/paste the content of that report into your next reply.

IMPORTANT: Do NOT run option #2 OR any other option until you are directed to do so!

Note : process.exe is detected by some antivirus programs (AntiVir, Dr.Web, Kaspersky) as a "RiskTool"; it is not a virus, but a program used to stop system processes. Antivirus programs cannot distinguish between "good" and "malicious" use of such programs, therefore they may alert the user.
http://www.beyondlogic.org/consulting/proc...processutil.htm
User avatar
Navigator
MRU Honors Grad Emeritus
 
Posts: 1237
Joined: December 21st, 2005, 8:35 pm
Location: Missouri

Unread postby DakotaFloydfD » November 13th, 2006, 11:40 pm

Thank you very much! I wasn't aware that I had more than one AV installed. I'm not quite sure if that will fix the slowing down problem, however, because it was flashing those message before I installed any AV programs.

I'll definitely try though. Thanks again.
DakotaFloydfD
Active Member
 
Posts: 12
Joined: November 13th, 2006, 7:27 pm

Unread postby DakotaFloydfD » November 13th, 2006, 11:54 pm

SmitFraudFix v2.120

Scan done at 22:54:05.50, Mon 11/13/2006
Run from C:\Documents and Settings\Dakota\Desktop\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
Fix run in normal mode

»»»»»»»»»»»»»»»»»»»»»»»» C:\


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\Web


»»»»»»»»»»»»»»»»»»»»»»»» C:\WINDOWS\system32


»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Dakota


»»»»»»»»»»»»»»»»»»»»»»»» C:\Documents and Settings\Dakota\Application Data


»»»»»»»»»»»»»»»»»»»»»»»» Start Menu

C:\DOCUME~1\ALLUSE~1\STARTM~1\Online Security Guide.url FOUND !
C:\DOCUME~1\ALLUSE~1\STARTM~1\Security Troubleshooting.url FOUND !

»»»»»»»»»»»»»»»»»»»»»»»» C:\DOCUME~1\Dakota\FAVORI~1


»»»»»»»»»»»»»»»»»»»»»»»» Desktop


»»»»»»»»»»»»»»»»»»»»»»»» C:\Program Files

C:\Program Files\QualityCodec\ FOUND !
C:\Program Files\VirusBursters\ FOUND !

»»»»»»»»»»»»»»»»»»»»»»»» Corrupted keys


»»»»»»»»»»»»»»»»»»»»»»»» Desktop Components

[HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\0]
"Source"="About:Home"
"SubscribedURL"="About:Home"
"FriendlyName"="My Current Home Page"


»»»»»»»»»»»»»»»»»»»»»»»» Sharedtaskscheduler
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{11853d5f-f894-4cc7-bbc3-fc7a9dcfd896}"="bonspells"

[HKEY_CLASSES_ROOT\CLSID\{11853d5f-f894-4cc7-bbc3-fc7a9dcfd896}\InProcServer32]
@="C:\WINDOWS\system32\okkmtv.dll"

[HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{11853d5f-f894-4cc7-bbc3-fc7a9dcfd896}\InProcServer32]
@="C:\WINDOWS\system32\okkmtv.dll"



»»»»»»»»»»»»»»»»»»»»»»»» AppInit_DLLs
!!!Attention, following keys are not inevitably infected!!!

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows]
"AppInit_DLLs"=""


»»»»»»»»»»»»»»»»»»»»»»»» pe386-msguard-lzx32


»»»»»»»»»»»»»»»»»»»»»»»» Scanning wininet.dll infection


»»»»»»»»»»»»»»»»»»»»»»»» End
DakotaFloydfD
Active Member
 
Posts: 12
Joined: November 13th, 2006, 7:27 pm

Unread postby Navigator » November 14th, 2006, 12:01 am

Good job....

You should print out these instructions, or copy them to a NotePad file for reading while in Safe Mode, because you will not be able to connect to the Internet to read from this site.

Next, please reboot your computer in Safe Mode by doing the following :
  • Restart your computer
  • After hearing your computer beep once during startup, but before the Windows icon appears, tap the F8 key continually;
  • Instead of Windows loading as normal, a menu with options should appear;
  • Select the first option, to run Windows in Safe Mode, then press "Enter".
  • Choose your usual account.
Once in Safe Mode, open the SmitfraudFix folder again and double-click smitfraudfix.cmd
Select option #2 - Clean by typing 2 and press "Enter" to delete infected files.

You will be prompted : "Registry cleaning - Do you want to clean the registry ?"; answer "Yes" by typing Y and press "Enter" in order to remove the Desktop background and clean registry keys associated with the infection.

The tool will now check if wininet.dll is infected. You may be prompted to replace the infected file (if found); answer "Yes" by typing Y and press "Enter".

The tool may need to restart your computer to finish the cleaning process; if it doesn't, please restart it into Normal Windows.
A text file will appear onscreen, with results from the cleaning process; please copy/paste the content of that report into your next reply.
The report can also be found at the root of the system drive, usually at C:\rapport.txt

Post back with the C:\rapport.txt file contents and a new HJT log and we can continue...
User avatar
Navigator
MRU Honors Grad Emeritus
 
Posts: 1237
Joined: December 21st, 2005, 8:35 pm
Location: Missouri

Unread postby DakotaFloydfD » November 14th, 2006, 12:45 am

SmitFraudFix v2.120

Scan done at 23:33:12.35, Mon 11/13/2006
Run from C:\Documents and Settings\Dakota\Desktop\SmitfraudFix
OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
Fix run in safe mode

»»»»»»»»»»»»»»»»»»»»»»»» Before SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll

[HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
"{11853d5f-f894-4cc7-bbc3-fc7a9dcfd896}"="bonspells"

[HKEY_CLASSES_ROOT\CLSID\{11853d5f-f894-4cc7-bbc3-fc7a9dcfd896}\InProcServer32]
@="C:\WINDOWS\system32\okkmtv.dll"

[HKEY_LOCAL_MACHINE\Software\Classes\CLSID\{11853d5f-f894-4cc7-bbc3-fc7a9dcfd896}\InProcServer32]
@="C:\WINDOWS\system32\okkmtv.dll"


»»»»»»»»»»»»»»»»»»»»»»»» Killing process


»»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix

GenericRenosFix by S!Ri


»»»»»»»»»»»»»»»»»»»»»»»» Deleting infected files

C:\DOCUME~1\ALLUSE~1\STARTM~1\Online Security Guide.url Deleted
C:\DOCUME~1\ALLUSE~1\STARTM~1\Security Troubleshooting.url Deleted
C:\Program Files\QualityCodec\ Deleted
C:\Program Files\VirusBursters\ Deleted

»»»»»»»»»»»»»»»»»»»»»»»» Deleting Temp Files


»»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning

Registry Cleaning done.

»»»»»»»»»»»»»»»»»»»»»»»» After SmitFraudFix
!!!Attention, following keys are not inevitably infected!!!

SrchSTS.exe by S!Ri
Search SharedTaskScheduler's .dll


»»»»»»»»»»»»»»»»»»»»»»»» End
DakotaFloydfD
Active Member
 
Posts: 12
Joined: November 13th, 2006, 7:27 pm

Unread postby Navigator » November 14th, 2006, 1:13 am

Great.....

But I need another HJT log now to continue....
User avatar
Navigator
MRU Honors Grad Emeritus
 
Posts: 1237
Joined: December 21st, 2005, 8:35 pm
Location: Missouri

Unread postby DakotaFloydfD » November 14th, 2006, 1:38 am

Oh, whoops. I'm sorry.




Logfile of HijackThis v1.99.1
Scan saved at 12:38:36 AM, on 11/14/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\BCMSMMSG.exe
C:\Program Files\Dell AIO Printer A940\dlbabmgr.exe
C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\mobile PhoneTools\WatchDog.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\Program Files\Dell AIO Printer A940\dlbabmon.exe
C:\Program Files\Winamp\winampa.exe
C:\Program Files\SurfAccuracy\SAcc.exe
C:\WINDOWS\aioscikc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\system32\LxrJD31s.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\Program Files\MySpace\IM\MySpaceIM.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\AIM95\aim.exe
C:\WINDOWS\system32\cidaemon.exe
C:\Program Files\Winamp\Winamp.exe
C:\Program Files\Soulseek\slsk.exe
C:\Program Files\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = "C:\Program Files\Outlook Express\msimn.exe"
R3 - Default URLSearchHook is missing
O2 - BHO: Band Class - {01F44A8A-8C97-4325-A378-76E68DC4AB2E} - C:\WINDOWS\systb.dll (file missing)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {192c5b4a-3efd-40c7-9f99-c472deb8efc0} - C:\Program Files\QualityCodec\isaddon.dll (file missing)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O2 - BHO: Viewpoint Toolbar BHO - {A7327C09-B521-4EDB-8509-7D2660C9EC98} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBarBHO.dll
O3 - Toolbar: (no name) - {2CDE1A7D-A478-4291-BF31-E1B4C16F92EB} - (no file)
O3 - Toolbar: Viewpoint Toolbar - {F8AD5AA5-D966-4667-9DAF-2561D68B2012} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll
O3 - Toolbar: Protection Bar - {bf1ced2c-4b3f-4079-a330-864eda5a4cff} - C:\Program Files\QualityCodec\iesplugin.dll (file missing)
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [BCMSMMSG] BCMSMMSG.exe
O4 - HKLM\..\Run: [Dell AIO Printer A940] "C:\Program Files\Dell AIO Printer A940\dlbabmgr.exe"
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [NaviSearch] C:\Program Files\NaviSearch\bin\nls.exe
O4 - HKLM\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKLM\..\Run: [version] C:\WINDOWS\system32\Irplyn.exe
O4 - HKLM\..\Run: [secure] C:\WINDOWS\system32\Rmmcbm.exe
O4 - HKLM\..\Run: [WatchDog] C:\Program Files\mobile PhoneTools\WatchDog.exe
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [SurfAccuracy] C:\Program Files\SurfAccuracy\SAcc.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [DeadAIM] rundll32.exe "C:\Program Files\AIM95\\DeadAIM.ocm",ExportedCheckODLs
O4 - HKLM\..\Run: [ReJf5vH] C:\WINDOWS\aioscikc.exe
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\ypager.exe" -quiet
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [googletalk] "C:\Program Files\Google\Google Talk\googletalk.exe" /autostart
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe
O4 - Startup: desktop weather.lnk = C:\Program Files\desktop weather\desktopweather_920613.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: *.line6.net
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/200 ... taller.exe
O16 - DPF: {4B9F2C37-C0CF-42BC-BB2D-DCFA8B25CABF} (PopCapLoaderCtrl Class) - http://zone.msn.com/bingame/rock/defaul ... oader1.cab
O16 - DPF: {4C226336-4032-489F-9674-67E74225979B} - http://otx.ifilm.com/OTXMedia/OTXMedia.dll
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://207.188.7.150/085dc24b3947146335 ... xIE601.cab
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://oldglory.ninesystems.com/AxisCamControl.ocx
O16 - DPF: {A93D84FD-641F-43AE-B963-E6FA84BE7FE7} (LinkSys Content Update) - http://www.linksysfix.com/check/netset/ ... downls.cab
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} (YAddBook Class) - http://us.dl1.yimg.com/download.yahoo.c ... mplete.cab
O16 - DPF: {D68217F4-1DF9-45C1-BFA6-61DBD5464527} (Genealogy Browser) - http://66.119.139.74/cabs/zinst.cab
O16 - DPF: {D719897A-B07A-4C0C-AEA9-9B663A28DFCB} - http://ax.phobos.apple.com.edgesuite.ne ... tector.cab
O16 - DPF: {DBA230D1-8467-4e69-987E-5FAE815A3B45} -
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - http://us.dl1.yimg.com/download.yahoo.c ... _1_3_0.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Lexar JD31 (LxrJD31s) - Unknown owner - C:\WINDOWS\SYSTEM32\LxrJD31s.exe
DakotaFloydfD
Active Member
 
Posts: 12
Joined: November 13th, 2006, 7:27 pm

Unread postby Navigator » November 14th, 2006, 9:46 am

OK....

Looking at that HJT log makes me want to see an uninstall list first:

Open HijackThis, click Open Misc Tools
Click "Open Uninstall Manager"
Click "Save List" (generates uninstall_list.txt)
Click Save, copy and paste the results in your next post.

Then we can try a 'big clean'...
User avatar
Navigator
MRU Honors Grad Emeritus
 
Posts: 1237
Joined: December 21st, 2005, 8:35 pm
Location: Missouri

Unread postby DakotaFloydfD » November 14th, 2006, 8:25 pm

ABC (remove only)
Acoustica Beatcraft
Acoustica Effects Pack
Adobe Download Manager 1.2 (Remove Only)
Adobe Reader 6.0.1
AltoMP3 Maker 3.12
AOL Instant Messenger
Audacity 1.2.3
Audio CD Ripper
Avanquest update
AVG Free Edition
BCM V.92 56K Modem
Broadcom Advanced Control Suite
CDex extraction audio
Chords v1.1
Classic PhoneTools
Collab
DC++ (remove only)
DeadAIM
DeadAIM
Dell AIO Printer A940
Dell Modem-On-Hold
Dell Picture Studio - Dell Image Expert
Dell Solution Center
Dell Support 5.0.0 (756)
Digital Line Detect
FLV Player 1.3.3
Free&Easy Font Viewer
GuitarPort
HijackThis 1.99.1
Image Resizer Powertoy for Windows XP
Intel(R) Extreme Graphics Driver
iRATE radio 0.2
IrfanView (remove only)
J2SE Runtime Environment 5.0 Update 6
Java 2 Runtime Environment, SE v1.4.2_02
Java 2 Runtime Environment, SE v1.4.2_03
JD Secure 3.1
KaZaA Lite v2.1.0 [K++ Edition]
Macromedia Shockwave Player
Microsoft .NET Framework (English)
Microsoft .NET Framework (English) v1.0.3705
Microsoft Data Access Components KB870669
Mihov Image Resizer (remove only)
mIRC
Modem Helper
Motorola Phone Tools
Mozilla Firefox (0.8.)
Mozilla Firefox (2.0)
My Web Search (Outlook, Outlook Express, and IncrediMail)
MySpaceIM
Nero 7 Demo
Picasa 2
Power Tab Editor 1.7
Real Alternative 1.41
RealPlayer
Security Update for Step By Step Interactive Training (KB898458)
Security Update for Windows Media Player (KB911564)
Security Update for Windows Media Player 9 (KB911565)
Security Update for Windows Media Player 9 (KB917734)
Security Update for Windows XP (KB883939)
Security Update for Windows XP (KB890046)
Security Update for Windows XP (KB893756)
Security Update for Windows XP (KB896358)
Security Update for Windows XP (KB896422)
Security Update for Windows XP (KB896423)
Security Update for Windows XP (KB896424)
Security Update for Windows XP (KB896428)
Security Update for Windows XP (KB896688)
Security Update for Windows XP (KB899587)
Security Update for Windows XP (KB899588)
Security Update for Windows XP (KB899591)
Security Update for Windows XP (KB900725)
Security Update for Windows XP (KB901017)
Security Update for Windows XP (KB901190)
Security Update for Windows XP (KB901214)
Security Update for Windows XP (KB902400)
Security Update for Windows XP (KB903235)
Security Update for Windows XP (KB904706)
Security Update for Windows XP (KB905414)
Security Update for Windows XP (KB905749)
Security Update for Windows XP (KB905915)
Security Update for Windows XP (KB908519)
Security Update for Windows XP (KB908531)
Security Update for Windows XP (KB911280)
Security Update for Windows XP (KB911562)
Security Update for Windows XP (KB911567)
Security Update for Windows XP (KB911927)
Security Update for Windows XP (KB912812)
Security Update for Windows XP (KB912919)
Security Update for Windows XP (KB913446)
Security Update for Windows XP (KB913580)
Security Update for Windows XP (KB914388)
Security Update for Windows XP (KB914389)
Security Update for Windows XP (KB916281)
Security Update for Windows XP (KB917159)
Security Update for Windows XP (KB917344)
Security Update for Windows XP (KB917422)
Security Update for Windows XP (KB917953)
Security Update for Windows XP (KB918439)
Security Update for Windows XP (KB918899)
Security Update for Windows XP (KB919007)
Security Update for Windows XP (KB920214)
Security Update for Windows XP (KB920670)
Security Update for Windows XP (KB920683)
Security Update for Windows XP (KB920685)
Security Update for Windows XP (KB921398)
Security Update for Windows XP (KB921883)
Security Update for Windows XP (KB922616)
Security Update for Windows XP (KB922819)
Security Update for Windows XP (KB923191)
Security Update for Windows XP (KB923414)
Security Update for Windows XP (KB924191)
Security Update for Windows XP (KB924496)
Security Update for Windows XP (KB925486)
Shockwave
SHOUTcast Source DSP 1.8.2 (remove only)
Skype 2.5
SoulSeek Client 156b
Spybot - Search & Destroy 1.4
Surf Accuracy
The Cleaner
TopFiveSearch.com Search Assistant
Universal Media Player
Update for Windows XP (KB894391)
Update for Windows XP (KB896727)
Update for Windows XP (KB898461)
Update for Windows XP (KB900485)
Update for Windows XP (KB910437)
Update for Windows XP (KB916595)
Update for Windows XP (KB920872)
Update for Windows XP (KB922582)
Viewpoint Manager (Remove Only)
Viewpoint Media Player
Viewpoint Toolbar (Remove Only)
WaveReader Ver 3-0 S
Winamp (remove only)
WinAVIVideoConverter
Win-dh
Windows Blaster Worm Removal Tool (KB833330)
Windows Installer 3.1 (KB893803)
Windows Installer 3.1 (KB893803)
Windows XP Hotfix - KB834707
Windows XP Hotfix - KB867282
Windows XP Hotfix - KB873333
Windows XP Hotfix - KB873339
Windows XP Hotfix - KB885250
Windows XP Hotfix - KB885835
Windows XP Hotfix - KB885836
Windows XP Hotfix - KB886185
Windows XP Hotfix - KB887472
Windows XP Hotfix - KB887742
Windows XP Hotfix - KB888113
Windows XP Hotfix - KB888302
Windows XP Hotfix - KB890047
Windows XP Hotfix - KB890175
Windows XP Hotfix - KB890859
Windows XP Hotfix - KB890923
Windows XP Hotfix - KB891781
Windows XP Hotfix - KB893066
Windows XP Hotfix - KB893086
Windows XP Service Pack 2
WinRAR archiver
WinZip
WordPerfect Office 2002
WordPerfect Office 2002
Yahoo! Address AutoComplete
Yahoo! extras
Yahoo! Internet Mail
Yahoo! Messenger
Yahoo! Messenger Explorer Bar
DakotaFloydfD
Active Member
 
Posts: 12
Joined: November 13th, 2006, 7:27 pm

Unread postby Navigator » November 14th, 2006, 9:34 pm

Hey Dakota...good job. Let's keep going:

A few points need mentioning.

While it is not my place to tell you what to do, you have multiple P2P/file sharing programs installed on your computer. P2P apps can be a source of malware (if not in the program itself, it can be in the files that shared). You'll be doing yourself a favor if you remove them.

References for the risk of these programs are here: http://www.microsoft.com/windows/ie/com ... ction.mspx here: http://www.techweb.com/wire/160500554 and here: http://www.internetworldstats.com/articles/art053.htm

You have line6.net in your trusted zone (see the O15 entry in HJT). While I love my Pod, Line6 and my Fender Strat, I'm not a big fan of things residing in the trusted zone of my computer as this can potentially give unfettered access to your system in terms of allowing downloads etc. I would recommend that you 'fix' that O15 entry in HJT if the line6 is not required to be in the trusted zone....but it is marked as Optional below...your choice. 'Fixing' this in HJT does not mean you cannot use line6.net, only that it will no longer be in the trusted zone and therefore subject to your computer's usual security demands.

1. First, we need to Reveal Hidden Files
  • Click Start.
  • Open My Computer.
  • SelectTools menu
  • Click Folder Options.
  • Select the View Tab.
  • Check Show hidden files and foldersin the Hidden files and folders section.
  • Uncheck Hide protected operating system files (recommended) option.
  • Uncheck the Hide file extensions for known file types option.
  • Click Yes.
  • Click OK.

2. Next, download AVG anti-spyware (previously Ewido) from HERE and save that file to your desktop.
This is a 30 day trial of the program
  • Once you have downloaded AVG anti-spyware, locate the icon on the desktop and double-click it to launch the set up program.
  • Once the setup is complete you will need run AVG and update the definition files.
  • On the main screen select the icon "Update" then select the "Update now" link.
    • Next select the "Start Update" button, the update will start and a progress bar will show the updates being installed.
  • Once the update has completed select the "Scanner" icon at the top of the screen, then select the "Settings" tab.
  • Once in the Settings screen click on "Recommended actions" and then select "Quarantine".
  • Under "Reports"
    • Select "Automatically generate report after every scan"
    • Un-Select "Only if threats were found"
Close AVG anti-spyware, Do Not run a scan just yet, we will shortly.

3. Please download ATF Cleaner by Atribune.
This program is for XP and Windows 2000 only

Save it to your desktop, we will use it later.

4. Please re-open HiJackThis and choose scan only. Check the boxes next to all the entries listed below.

R3 - Default URLSearchHook is missing
O2 - BHO: Band Class - {01F44A8A-8C97-4325-A378-76E68DC4AB2E} - C:\WINDOWS\systb.dll (file missing)
O2 - BHO: (no name) - {192c5b4a-3efd-40c7-9f99-c472deb8efc0} - C:\Program Files\QualityCodec\isaddon.dll (file missing)
O2 - BHO: Viewpoint Toolbar BHO - {A7327C09-B521-4EDB-8509-7D2660C9EC98} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBarBHO.dll
O3 - Toolbar: (no name) - {2CDE1A7D-A478-4291-BF31-E1B4C16F92EB} - (no file)
O3 - Toolbar: Viewpoint Toolbar - {F8AD5AA5-D966-4667-9DAF-2561D68B2012} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll
O3 - Toolbar: Protection Bar - {bf1ced2c-4b3f-4079-a330-864eda5a4cff} - C:\Program Files\QualityCodec\iesplugin.dll (file missing)
O4 - HKLM\..\Run: [NaviSearch] C:\Program Files\NaviSearch\bin\nls.exe
O4 - HKLM\..\Run: [version] C:\WINDOWS\system32\Irplyn.exe
O4 - HKLM\..\Run: [secure] C:\WINDOWS\system32\Rmmcbm.exe
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [SurfAccuracy] C:\Program Files\SurfAccuracy\SAcc.exe
O4 - HKLM\..\Run: [ReJf5vH] C:\WINDOWS\aioscikc.exe
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O15 - Trusted Zone: *.line6.net<<--Optional
O16 - DPF: {4C226336-4032-489F-9674-67E74225979B} - http://otx.ifilm.com/OTXMedia/OTXMedia.dll
O16 - DPF: {56336BCB-3D8A-11D6-A00B-0050DA18DE71} (RdxIE Class) - http://207.188.7.150/085dc24b3947146335 ... xIE601.cab


Now close all windows other than HiJackThis, then click Fix Checked.

Reboot into safe mode by restarting your computer and as soon as it starts booting up again continuously tap F8. A menu should come up where you will be given the option to enter Safe Mode.

5. Please remove these entries from Add/Remove Programs in the Control Panel(if present). Click start>>control panel>>add/remove programs:

Viewpoint Toolbar
Viewpoint Manager
Viewpoint Media Player
TopFiveSearch.Com Search Assistant
SurfAccuracy
My Web Search (Outlook, Outlook Express, and IncrediMail)


6. Please delete these folders using Windows Explorer(if present):
  • Click Start>>All Programs>>Accessories>>Windows Explorer
  • Navigate to the listed folders, then right-click to select them and click delete


C:\Program Files\Viewpoint
C:\Program Files\NaviSearch
C:\Program Files\SurfAccuracy


7. Please delete these files using Windows Explorer(if present):
  • Click Start>>All Programs>>Accessories>>Windows Explorer
  • Navigate to the listed files, then right-click to select them and click delete:


C:\WINDOWS\system32\Irplyn.exe
C:\WINDOWS\system32\Rmmcbm.exe
C:\WINDOWS\aioscikc.exe


8. Double-click ATF-Cleaner.exe to run the program.
    Under Main choose: Select All
    Click the Empty Selected button.
If you use Firefox browser
    Click Firefox at the top and choose: Select All
    Click the Empty Selected button.
    NOTE: If you would like to keep your saved passwords, please click No at the prompt.
If you use Opera browser
    Click Opera at the top and choose: Select All
    Click the Empty Selected button.
    NOTE: If you would like to keep your saved passwords, please click No at the prompt.
Click Exit on the Main menu to close the program.

9. IMPORTANT: Do not open any other windows or programs while AVG Anti-Spyware is scanning, it may interfere with the scanning proccess:
  • Lauch AVG-anti-spyware by double-clicking the icon on your desktop.
  • Select the "Scanner" icon at the top and then the "Scan" tab then click on "Complete System Scan".
  • ewido will now begin the scanning process, be patient this may take a little time.
    Once the scan is complete do the following:
  • If you have any infections you will prompted, then select "Apply all actions"
  • Next select the "Reports" icon at the top.
  • Select the "Save report as" button in the lower left hand of the screen and save it to a text file on your system (make sure to remember where you saved that file, this is important).
  • Close AVG and reboot your system back into Normal Mode.

10. Update Java and Remove old Java Versions
  • Download the latest version of Java Runtime Environment (JRE) 5.0 Update 9.<== scroll down the list to find THIS entry
  • Click the "Download" button to the right.
  • Check the box that says: "Accept License Agreement".
  • The page will refresh.
  • Click on the link to download Windows Offline Installation with or without Multi-language and save to your desktop.
Remove older Java Versions:
  • Close any programs you may have running - especially your web browser.
  • Go to Start >> Control Panel double-click on Add/Remove Programs and remove all older versions of Java.
  • Check any item with Java Runtime Environment (JRE or J2SE) in the name.
  • Click the Remove or Change/Remove button.
  • Repeat as many times as necessary to remove each Java versions.
  • Reboot your computer once all Java components are removed.
Install latest Java Version:
  • From your desktop, double-click on jre-1_5_0_09-windows-i586-p to install the newest version.


11. Post the results of the AVG report scan and a new HJT log for me to review. Also let me know how your computer is running....
User avatar
Navigator
MRU Honors Grad Emeritus
 
Posts: 1237
Joined: December 21st, 2005, 8:35 pm
Location: Missouri

Unread postby DakotaFloydfD » November 15th, 2006, 5:09 pm

"TopFiveSearch.Com Search Assistant" said it wasn't installed when I tried to remove it.

"My Web Search (Outlook, Outlook Express, and IncrediMail)" just popped up with a blank window and would not delete when I attempted to do so.



"C:\Program Files\NaviSearch" and "C:\Program Files\SurfAccuracy" could not be found. I searched several times.



"C:\WINDOWS\aioscikc.exe" could not be found either.
DakotaFloydfD
Active Member
 
Posts: 12
Joined: November 13th, 2006, 7:27 pm

Unread postby Navigator » November 15th, 2006, 6:05 pm

DakotaFloydfD wrote:"TopFiveSearch.Com Search Assistant" said it wasn't installed when I tried to remove it.

"My Web Search (Outlook, Outlook Express, and IncrediMail)" just popped up with a blank window and would not delete when I attempted to do so.



"C:\Program Files\NaviSearch" and "C:\Program Files\SurfAccuracy" could not be found. I searched several times.



"C:\WINDOWS\aioscikc.exe" could not be found either.


That's why the instructions said: (if present)... :D

Just continue on and post the AVG scan results and a new HJT log when you are done with the instructions....
User avatar
Navigator
MRU Honors Grad Emeritus
 
Posts: 1237
Joined: December 21st, 2005, 8:35 pm
Location: Missouri

Unread postby DakotaFloydfD » November 15th, 2006, 9:17 pm

Whoops...Didn't even notice that.

Anyway, here ya go:



---------------------------------------------------------
AVG Anti-Spyware - Scan Report
---------------------------------------------------------

+ Created at: 11:38:07 PM 11/14/2006

+ Scan result:



C:\Program Files\Kazaa Lite\TopSearch.dll -> Adware.Altnet : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\AppID\Altnet Signing Module.EXE -> Adware.Altnet : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\AppID\adm.EXE -> Adware.Altnet : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084102.vxd -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084107.exe -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084108.exe -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084109.exe -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084110.exe -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084111.exe -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084112.exe -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084113.dll -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084114.exe -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084115.exe -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084229.srg -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\WINDOWS\SYSTEM32\apuc.dll -> Adware.BargainBuddy : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\App Management\ARPCache\Bargain Buddy -> Adware.BargainBuddy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084230.exe -> Adware.DealHelper : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP857\A0084827.exe -> Adware.DealHelper : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\WinDH -> Adware.DealHelper : Cleaned with backup (quarantined).
HKLM\SOFTWARE\dealhelper -> Adware.DealHelper : Cleaned with backup (quarantined).
HKLM\SOFTWARE\dealhelper\KeyWord -> Adware.DealHelper : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084226.DLL -> Adware.Funweb : Cleaned with backup (quarantined).
C:\WINDOWS\SYSTEM32\gtdownls_95.ocx -> Adware.Gdown : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\Wbho.Band -> Adware.IEPlugin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\Wbho.Band.1 -> Adware.IEPlugin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\Wbho.Band\CLSID -> Adware.IEPlugin : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\Wbho.Band\CurVer -> Adware.IEPlugin : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084125.dll -> Adware.ImiBar : Cleaned with backup (quarantined).
HKLM\SOFTWARE\PerfectNav -> Adware.KeenValue : Cleaned with backup (quarantined).
C:\WINDOWS\pxckdlauninstall.exe -> Adware.NoName : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\OTXMedia.dll -> Adware.OTX : Cleaned with backup (quarantined).
C:\Program Files\PerfectNav -> Adware.PerfectNav : Cleaned with backup (quarantined).
C:\Program Files\PerfectNav\BHO -> Adware.PerfectNav : Cleaned with backup (quarantined).
C:\Program Files\PerfectNav\BHO\PerfectNav150.dll -> Adware.PerfectNav : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084128.exe -> Adware.PowerScan : Cleaned with backup (quarantined).
C:\Documents and Settings\Derek\Start Menu\Programs\WeatherCast -> Adware.SaveNow : Cleaned with backup (quarantined).
C:\Documents and Settings\Derek\Start Menu\Programs\WeatherCast\WeatherCast.lnk -> Adware.SaveNow : Cleaned with backup (quarantined).
C:\Program Files\Common Files\WhenU\EmbedSE.dll -> Adware.SaveNow : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\WhenU.EmbedSE -> Adware.SaveNow : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\WhenU.EmbedSE.1 -> Adware.SaveNow : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\WhenU.EmbedSE\CLSID -> Adware.SaveNow : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Classes\WhenU.EmbedSE\CurVer -> Adware.SaveNow : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084130.dll -> Adware.SideFind : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084131.dll -> Adware.SideFind : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP857\A0084823.exe -> Adware.SurfAcc : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP825\A0082355.exe -> Adware.SurfAccuracy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP825\A0082356.exe -> Adware.SurfAccuracy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP857\A0084820.exe -> Adware.SurfAccuracy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP857\A0084821.exe -> Adware.SurfAccuracy : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084082.exe -> Adware.VirusBursters : Cleaned with backup (quarantined).
HKLM\SOFTWARE\Microsoft\Internet Explorer\Main\ins -> Adware.WebRebates : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084133.dll -> Adware.YourSiteBar : Cleaned with backup (quarantined).
C:\Documents and Settings\Derek\Local Settings\Temporary Internet Files\Content.IE5\UFMVEX2R\ysb_prompt[1].htm -> Downloader.IstBar.j : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084069.dll -> Downloader.Zlob.akn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084389.dll -> Downloader.Zlob.akn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084436.dll -> Downloader.Zlob.akn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP857\A0084484.dll -> Downloader.Zlob.akn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP857\A0084526.dll -> Downloader.Zlob.akn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP857\A0084652.dll -> Downloader.Zlob.akn : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084071.exe -> Downloader.Zlob.awb : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084390.exe -> Downloader.Zlob.awb : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084438.exe -> Downloader.Zlob.awb : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP857\A0084486.exe -> Downloader.Zlob.awb : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP857\A0084528.exe -> Downloader.Zlob.awb : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP857\A0084653.exe -> Downloader.Zlob.awb : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP857\A0084654.exe -> Downloader.Zlob.awc : Cleaned with backup (quarantined).
C:\finger\finger.exe -> Not-A-Virus.BadJoke.Win32.Finger.b : Cleaned with backup (quarantined).
C:\System Volume Information\_restore{B37680B2-BA0A-4E5D-BF30-83E44C588624}\RP856\A0084123.DLL -> Not-A-Virus.Downloader.Win32.FunWeb : Cleaned with backup (quarantined).
C:\WINDOWS\Downloaded Program Files\popcaploader.dll -> Not-A-Virus.Downloader.Win32.PopCap.c : Cleaned with backup (quarantined).
:mozilla.436:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.513:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.846:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.247realmedia : Cleaned.
:mozilla.131:C:\Documents and Settings\Derek\Application Data\Phoenix\Profiles\default\9hbxre0q.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.132:C:\Documents and Settings\Derek\Application Data\Phoenix\Profiles\default\9hbxre0q.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.133:C:\Documents and Settings\Derek\Application Data\Phoenix\Profiles\default\9hbxre0q.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.134:C:\Documents and Settings\Derek\Application Data\Phoenix\Profiles\default\9hbxre0q.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.135:C:\Documents and Settings\Derek\Application Data\Phoenix\Profiles\default\9hbxre0q.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.136:C:\Documents and Settings\Derek\Application Data\Phoenix\Profiles\default\9hbxre0q.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.149:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.151:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.437:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.438:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.439:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.440:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.441:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.442:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.443:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.444:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.445:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.446:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.447:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.447:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.448:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.448:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.449:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.450:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.450:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.451:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.451:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.452:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.452:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.453:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.453:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.454:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.454:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.455:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.455:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.455:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.456:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.456:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.456:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.457:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.457:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.457:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.458:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.458:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.458:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.459:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.459:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.459:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.460:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.460:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.460:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.461:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.461:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.461:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.462:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.462:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.462:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.463:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.463:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.463:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.464:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.464:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.464:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.465:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.465:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.465:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.466:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.466:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.466:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.467:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.467:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.467:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.468:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.468:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.468:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.469:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.469:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.469:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.470:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.470:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.470:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.471:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.471:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.471:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.472:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.472:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.472:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.473:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.473:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.473:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.474:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.474:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.474:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.475:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.475:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.475:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.476:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.476:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.476:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.477:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.477:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.477:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.478:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.478:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.478:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.479:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.479:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.479:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.480:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.480:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.480:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.481:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.481:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.481:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.482:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.482:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.482:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.483:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.483:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.483:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.484:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.484:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.484:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.485:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.485:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.485:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.486:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.486:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.486:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.487:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.487:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.488:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.488:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.489:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.490:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.491:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.492:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.493:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.494:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.495:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.496:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.497:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.498:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.499:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.500:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.501:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.502:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.503:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.507:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.508:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.527:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.528:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.529:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.530:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.531:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.532:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.533:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.534:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.535:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.536:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.537:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.538:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.539:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.540:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.541:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.542:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.543:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.544:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.545:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.546:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.547:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.548:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.549:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.550:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.551:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.552:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.553:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.554:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.555:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.556:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.557:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.558:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.559:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.560:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.561:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.562:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.563:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.564:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.565:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.566:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.567:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.568:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.569:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.570:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.571:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.572:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.573:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.574:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.575:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.733:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.906:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.910:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.2o7 : Cleaned.
:mozilla.221:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.Abetterinternet : Cleaned.
:mozilla.278:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.492:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.526:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.547:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.726:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.774:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.775:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.776:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.78:C:\Documents and Settings\Derek\Application Data\Mozilla\Firefox\Profiles\cakm7q5l.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.79:C:\Documents and Settings\Derek\Application Data\Mozilla\Firefox\Profiles\cakm7q5l.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.818:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adbrite : Cleaned.
:mozilla.10:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\default\4bfljf6m.slt\cookies.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.11:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\default\4bfljf6m.slt\cookies.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.173:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.174:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.175:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.376:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.377:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.378:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.379:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.380:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.414:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.415:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.554:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.555:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.609:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.610:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.9:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\default\4bfljf6m.slt\cookies.txt -> TrackingCookie.Addynamix : Cleaned.
:mozilla.103:C:\Documents and Settings\Derek\Application Data\Phoenix\Profiles\default\9hbxre0q.slt\cookies.txt -> TrackingCookie.Admarketplace : Cleaned.
:mozilla.181:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Admarketplace : Cleaned.
:mozilla.188:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Admarketplace : Cleaned.
:mozilla.315:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Admarketplace : Cleaned.
:mozilla.316:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Admarketplace : Cleaned.
:mozilla.423:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Admarketplace : Cleaned.
:mozilla.426:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Admarketplace : Cleaned.
:mozilla.622:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Admarketplace : Cleaned.
:mozilla.641:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Admarketplace : Cleaned.
:mozilla.642:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Admarketplace : Cleaned.
:mozilla.742:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Admarketplace : Cleaned.
:mozilla.11:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\Dakota\o1y6lhex.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.170:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\Dakota\o1y6lhex.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.171:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\Dakota\o1y6lhex.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.172:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\Dakota\o1y6lhex.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.173:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\Dakota\o1y6lhex.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.174:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\Dakota\o1y6lhex.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.175:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\Dakota\o1y6lhex.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.218:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.219:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.220:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.224:C:\Documents and Settings\Derek\Application Data\Mozilla\Firefox\Profiles\cakm7q5l.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.225:C:\Documents and Settings\Derek\Application Data\Mozilla\Firefox\Profiles\cakm7q5l.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.253:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.254:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.255:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.256:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.257:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.258:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.329:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.330:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.331:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.332:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.333:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.334:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.367:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.368:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.369:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.370:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.371:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.372:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.442:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.443:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.444:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.445:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.446:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.447:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.787:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Adrevolver : Cleaned.
:mozilla.100:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.101:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.108:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\default\4bfljf6m.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.109:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\default\4bfljf6m.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.122:C:\Documents and Settings\Derek\Application Data\Phoenix\Profiles\default\9hbxre0q.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.123:C:\Documents and Settings\Derek\Application Data\Phoenix\Profiles\default\9hbxre0q.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.124:C:\Documents and Settings\Derek\Application Data\Phoenix\Profiles\default\9hbxre0q.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.134:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\Dakota\o1y6lhex.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.135:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\Dakota\o1y6lhex.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.136:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\Dakota\o1y6lhex.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.137:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\Dakota\o1y6lhex.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.138:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\Dakota\o1y6lhex.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.139:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\Dakota\o1y6lhex.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.181:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.184:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.185:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.186:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.230:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.231:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.232:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.233:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.234:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.235:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.236:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.237:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.238:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.239:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.240:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.261:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.262:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.263:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.264:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.265:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.266:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.267:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.268:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.269:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.270:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-1.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.383:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.384:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.385:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.386:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.387:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.388:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.389:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.390:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.391:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.392:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.393:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.91:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.92:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.93:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.94:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.95:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.96:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.97:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.98:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.99:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-2.txt -> TrackingCookie.Adserver : Cleaned.
:mozilla.796:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.797:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.798:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-4.txt -> TrackingCookie.Adtech : Cleaned.
:mozilla.100:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.101:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.102:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.103:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.104:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.105:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.106:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.107:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.108:C:\Documents and Settings\Dakota\Application Data\Phoenix\Profiles\dakota2\pegmvty9.slt\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.109:C:\Documents and Settings\Dakota\Application Data\Mozilla\Firefox\Profiles\irljuyzk.default\cookies-3.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.10:C:\Documents and Settings\Derek\Application Data\Mozilla\Firefox\Profiles\cakm7q5l.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
:mozilla.112:C:\Documents and Settings\Dakota\Application Data\Mo
DakotaFloydfD
Active Member
 
Posts: 12
Joined: November 13th, 2006, 7:27 pm

Unread postby DakotaFloydfD » November 15th, 2006, 9:20 pm

Aaaaaand the whole thing wouldn't fit in one post, obviously...

Here's the HJT log though:


Logfile of HijackThis v1.99.1
Scan saved at 8:17:17 PM, on 11/15/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\WINDOWS\system32\cisvc.exe
C:\WINDOWS\system32\LxrJD31s.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\MsPMSPSv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\BCMSMMSG.exe
C:\Program Files\Dell AIO Printer A940\dlbabmgr.exe
C:\Program Files\Common Files\Real\Update_OB\realsched.exe
C:\Program Files\Dell AIO Printer A940\dlbabmon.exe
C:\Program Files\Picasa2\PicasaMediaDetector.exe
C:\Program Files\mobile PhoneTools\WatchDog.exe
C:\Program Files\Winamp\winampa.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe
C:\Program Files\Dell Support\DSAgnt.exe
C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\Program Files\MySpace\IM\MySpaceIM.exe
C:\Program Files\Digital Line Detect\DLG.exe
C:\Program Files\WinZip\WZQKPICK.EXE
C:\Program Files\Yahoo!\Messenger\ymsgr_tray.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\cidaemon.exe
C:\Program Files\AIM95\aim.exe
C:\Program Files\HijackThis\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = "C:\Program Files\Outlook Express\msimn.exe"
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [BCMSMMSG] BCMSMMSG.exe
O4 - HKLM\..\Run: [Dell AIO Printer A940] "C:\Program Files\Dell AIO Printer A940\dlbabmgr.exe"
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [Picasa Media Detector] C:\Program Files\Picasa2\PicasaMediaDetector.exe
O4 - HKLM\..\Run: [WatchDog] C:\Program Files\mobile PhoneTools\WatchDog.exe
O4 - HKLM\..\Run: [WinampAgent] C:\Program Files\Winamp\winampa.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\Program Files\Common Files\Ahead\Lib\NeroCheck.exe
O4 - HKLM\..\Run: [DeadAIM] rundll32.exe "C:\Program Files\AIM95\\DeadAIM.ocm",ExportedCheckODLs
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [!AVG Anti-Spyware] "C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe" /minimized
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.5.0_09\bin\jusched.exe"
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\ypager.exe" -quiet
O4 - HKCU\..\Run: [DellSupport] "C:\Program Files\Dell Support\DSAgnt.exe" /startup
O4 - HKCU\..\Run: [googletalk] "C:\Program Files\Google\Google Talk\googletalk.exe" /autostart
O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\lib\NMBgMonitor.exe"
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [MySpaceIM] C:\Program Files\MySpace\IM\MySpaceIM.exe
O4 - Startup: desktop weather.lnk = C:\Program Files\desktop weather\desktopweather_920613.exe
O4 - Global Startup: Digital Line Detect.lnk = ?
O4 - Global Startup: WinZip Quick Pick.lnk = C:\Program Files\WinZip\WZQKPICK.EXE
O8 - Extra context menu item: &Yahoo! Search - file:///C:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Yahoo! &Dictionary - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///C:\Program Files\Yahoo!\Common/ycdict.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\npjpi150_09.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_09\bin\npjpi150_09.dll
O9 - Extra button: Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra 'Tools' menuitem: Yahoo! Messenger - {4528BBE0-4E08-11D5-AD55-00010333D0AD} - C:\Program Files\Yahoo!\Messenger\yhexbmes0521.dll
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM95\aim.exe
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O15 - Trusted Zone: *.line6.net
O16 - DPF: {41F17733-B041-4099-A042-B518BB6A408C} - http://a1540.g.akamai.net/7/1540/52/200 ... taller.exe
O16 - DPF: {4B9F2C37-C0CF-42BC-BB2D-DCFA8B25CABF} (PopCapLoaderCtrl Class) - http://zone.msn.com/bingame/rock/defaul ... oader1.cab
O16 - DPF: {917623D1-D8E5-11D2-BE8B-00104B06BDE3} (CamImage Class) - http://oldglory.ninesystems.com/AxisCamControl.ocx
O16 - DPF: {A93D84FD-641F-43AE-B963-E6FA84BE7FE7} (LinkSys Content Update) - http://www.linksysfix.com/check/netset/ ... downls.cab
O16 - DPF: {B9191F79-5613-4C76-AA2A-398534BB8999} (YAddBook Class) - http://us.dl1.yimg.com/download.yahoo.c ... mplete.cab
O16 - DPF: {D68217F4-1DF9-45C1-BFA6-61DBD5464527} (Genealogy Browser) - http://66.119.139.74/cabs/zinst.cab
O16 - DPF: {D719897A-B07A-4C0C-AEA9-9B663A28DFCB} - http://ax.phobos.apple.com.edgesuite.ne ... tector.cab
O16 - DPF: {DBA230D1-8467-4e69-987E-5FAE815A3B45} -
O16 - DPF: {EF99BD32-C1FB-11D2-892F-0090271D4F88} - http://us.dl1.yimg.com/download.yahoo.c ... _1_3_0.cab
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O23 - Service: AVG Anti-Spyware Guard - Anti-Malware Development a.s. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: Lexar JD31 (LxrJD31s) - Unknown owner - C:\WINDOWS\SYSTEM32\LxrJD31s.exe
DakotaFloydfD
Active Member
 
Posts: 12
Joined: November 13th, 2006, 7:27 pm
Advertisement
Register to Remove

Next

  • Similar Topics
    Replies
    Views
    Last post

Return to Infected? Virus, malware, adware, ransomware, oh my!



Who is online

Users browsing this forum: No registered users and 30 guests

Contact us:

Advertisements do not imply our endorsement of that product or service. Register to remove all ads. The forum is run by volunteers who donate their time and expertise. We make every attempt to ensure that the help and advice posted is accurate and will not cause harm to your computer. However, we do not guarantee that they are accurate and they are to be used at your own risk. All trademarks are the property of their respective owners.

Member site: UNITE Against Malware