Welcome to Tech Support Forum home to more then 136,000 problems solved. Issues have included: Spyware, Malware, Virus Issues, Windows, Microsoft, Linux, Networking, Security, Hardware, and Gaming Getting your problem solved is as easy as:
1. Registering for a free account
2. Asking your question
3. Receiving an answer

Registered members:
* Get free support
* Communicate privately with other members (PM).
* Removal of this message
* See fewer ads.
* And much more..

 



Want to know how to post a question? click here Having problems with spyware and pop-ups? First Steps
Go Back   Tech Support Forum > Security Center > Virus/Trojan/Spyware Help > Resolved HJT Threads
User Name
Password
Site Map Register Donate Rules Blogs Mark Forums Read


Resolved HJT Threads Resolved spyware and popup issues.

 
 
LinkBack Thread Tools
Old 05-18-2006, 11:47 AM   #1 (permalink)
Registered User
 
Join Date: May 2006
Posts: 9
OS: Win Xp


Lots of outgoing emails .....

Hello there. First message for me on this forum.
Yesterday I got huge problems with my PC as it started to behave strangely. After a while I discovered that my email-scanner was scanning hundreds of outgoing emails "sent" from my machine. And in reply I get hundreds of "User unknown"-emails from various email-servers around the world.
After consulting som "experts" they told me to use "HiJack This", and post the log file on this forum.

PS ! I have now installed NIS 2006, and on the first scan this program found a couple of hijackers/Trojans.

So, is there any salvation for me :-)
svesa is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Important Information
Join the #1 Tech Support Forum Today - It's Totally Free!

TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free.

Join TechSupportforum.com Today - Click Here

Old 05-18-2006, 11:49 AM   #2 (permalink)
Registered User
 
Join Date: May 2006
Posts: 9
OS: Win Xp


Logfile of HijackThis v1.99.1
Scan saved at 19:11:48, on 18.05.2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS2\System32\smss.exe
C:\WINDOWS2\system32\winlogon.exe
C:\WINDOWS2\system32\services.exe
C:\WINDOWS2\system32\lsass.exe
C:\WINDOWS2\system32\svchost.exe
C:\Programfiler\Ahead\InCD\InCDsrv.exe
C:\Programfiler\Fellesfiler\Symantec Shared\ccSetMgr.exe
C:\WINDOWS2\Explorer.EXE
C:\Programfiler\Fellesfiler\Symantec Shared\ccEvtMgr.exe
C:\Programfiler\Fellesfiler\Symantec Shared\ccProxy.exe
C:\Programfiler\Fellesfiler\Symantec Shared\SNDSrvc.exe
C:\Programfiler\Fellesfiler\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Programfiler\Fellesfiler\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS2\system32\spoolsv.exe
C:\Programfiler\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Programfiler\Diskeeper Corporation\Diskeeper\DkService.exe
C:\Programfiler\LogMeIn\RaMaint.exe
C:\Programfiler\LogMeIn\LogMeIn.exe
C:\Programfiler\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\Programfiler\LogMeIn\LogMeInSystray.exe
C:\WINDOWS2\system32\nvsvc32.exe
C:\WINDOWS2\System32\svchost.exe
C:\WINDOWS2\system32\wwSecure.exe
C:\WINDOWS2\System32\dmadmin.exe
C:\Programfiler\D4\D4.exe
C:\Programfiler\TweakMASTER\TwMaster.exe
C:\Programfiler\TweakNow PowerPack 2006\RAM2_XP.exe
C:\Programfiler\Microsoft IntelliType Pro\type32.exe
C:\Programfiler\Microsoft IntelliPoint\point32.exe
C:\WINDOWS2\system32\RUNDLL32.EXE
C:\WINDOWS2\SOUNDMAN.EXE
C:\Programfiler\Fellesfiler\Symantec Shared\ccApp.exe
C:\WINDOWS2\system32\ctfmon.exe
C:\Programfiler\MSN Messenger\msnmsgr.exe
C:\Programfiler\Yagoon\Time\Time.exe
C:\Programfiler\Fellesfiler\Symantec Shared\Security Console\NSCSRVCE.EXE
E:\PROGRA~1\MAGICM~1\Magic.exe
C:\Programfiler\GetRight\GetRight.exe
C:\Programfiler\GetRight\GetRight.exe
C:\WINDOWS2\System32\svchost.exe
C:\WINDOWS2\System32\msiexec.exe
E:\Privat\unzipped\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.liverpool.no/CDA/homepg.aspx
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.liverpool.no/CDA/homepg.aspx
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Sveins datamaskin
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.mimer.no:8080
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koblinger
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programfiler\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: bho2gr Class - {31FF080D-12A3-439A-A2EF-4BA95A3148E8} - C:\Programfiler\GetRight\xx2gr.dll
O2 - BHO: Norton Internet Security 2006 - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Programfiler\Fellesfiler\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Programfiler\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programfiler\google\googletoolbar2.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Programfiler\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programfiler\google\googletoolbar2.dll
O3 - Toolbar: Norton Internet Security 2006 - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Programfiler\Fellesfiler\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Programfiler\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [Dimension4] C:\Programfiler\D4\D4.exe
O4 - HKLM\..\Run: [TweakMASTER] "C:\Programfiler\TweakMASTER\TwMaster.exe" /auto
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS2\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [DiskeeperSystray] "C:\Programfiler\Diskeeper Corporation\Diskeeper\DkIcon.exe"
O4 - HKLM\..\Run: [RAM Idle Professional] C:\Programfiler\TweakNow PowerPack 2006\RAM2_XP.exe
O4 - HKLM\..\Run: [type32] "C:\Programfiler\Microsoft IntelliType Pro\type32.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Programfiler\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Programfiler\LogMeIn\LogMeInSystray.exe"
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS2\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [ccApp] "C:\Programfiler\Fellesfiler\Symantec Shared\ccApp.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS2\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Programfiler\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Yagoon Time] "C:\Programfiler\Yagoon\Time\Time.exe" min
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &Google-søk - res://c:\programfiler\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Oversett engelsk ord - res://c:\programfiler\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Download with GetRight - C:\Programfiler\GetRight\GRdownload.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Koblinger bakover - res://c:\programfiler\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Lignende sider - res://c:\programfiler\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Open Link Target in Firefox - file://C:\Documents and Settings\Svein Saure\Programdata\Mozilla\Firefox\Profiles\xfsm7tqt.default\extensions\{5D558C43-550F-4b12-84AB-0D8ABDA9F975}\firefoxviewlink.html
O8 - Extra context menu item: Open with GetRight Browser - C:\Programfiler\GetRight\GRbrowse.htm
O8 - Extra context menu item: View This Page in Firefox - file://C:\Documents and Settings\Svein Saure\Programdata\Mozilla\Firefox\Profiles\xfsm7tqt.default\extensions\{5D558C43-550F-4b12-84AB-0D8ABDA9F975}\firefoxviewpage.html
O8 - Extra context menu item: Øyeblikksbilde av siden i hurtigbufferen - res://c:\programfiler\google\GoogleToolbar2.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_02\bin\npjpi150_02.dll
O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} - http://support.asus.com/common/asusTek_sys_ctrl.cab
O16 - DPF: {106E49CF-797A-11D2-81A2-00E02C015623} - http://www.alternatiff.com/install/00/alttiff.cab
O16 - DPF: {39D420B3-E0EB-424C-89AA-C24F8DE7EF79} - http://www.tvkoo.com/update/KooPlayer.ocx
O16 - DPF: {6BD88D94-03D2-4ABF-99A3-78E9C87DFCA5} (aComp Class) - http://agresso.eltelnetworks.com/agr...m/axmlcomp.cab
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://nettbank.fokus.no/html/activ.../e-Safekey.cab
O16 - DPF: {FA945BB6-9D37-43FC-9B2A-AF09F56CBBF0} (moDiagCollectionActiveX Object) - http://www.musicmatch.com/form/suppo...ionControl.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: LMIinit - C:\WINDOWS2\SYSTEM32\LMIinit.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS2\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)
O23 - Service: Adobe LM Service - Adobe Systems - C:\Programfiler\Fellesfiler\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Automatisk LiveUpdate-planlegging - Symantec Corporation - C:\Programfiler\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Symantec Corporation - C:\Programfiler\Norton Internet Security\ccPwdSvc.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccSetMgr.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Programfiler\Norton Internet Security\comHost.exe
O23 - Service: Diskeeper - Diskeeper Corporation - C:\Programfiler\Diskeeper Corporation\Diskeeper\DkService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programfiler\Fellesfiler\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Programfiler\Ahead\InCD\InCDsrv.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - C:\Programfiler\LogMeIn\RaMaint.exe
O23 - Service: LogMeIn - LogMeIn, Inc. - C:\Programfiler\LogMeIn\LogMeIn.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Programfiler\Fellesfiler\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: Norton AntiVirus Auto-Protect-tjeneste (navapsvc) - Symantec Corporation - C:\Programfiler\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS2\system32\nvsvc32.exe
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Programfiler\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: V2i Protector - PowerQuest Corporation - C:\Programfiler\PowerQuest\Drive Image 7.0\Agent\PQV2iSvc.exe
O23 - Service: Washer AutoComplete (wwSecSvc) - Webroot Software, Inc. - C:\WINDOWS2\system32\wwSecure.exe
svesa is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 05-18-2006, 08:46 PM   #3 (permalink)
Analyst, Security Team
 
greyknight17's Avatar
 
Join Date: Jul 2004
Location: New York
Posts: 14,331
OS: Windows 98 & Windows XP Home/Pro

My System

Ugh...another Norton....What did you use before?

Please print out or copy this page to Notepad. Make sure to work through the fixes in the exact order it is mentioned below. If there's anything that you don't understand, ask your question(s) before proceeding with the fixes. You should 'not' have any open browsers when you are following the procedures below.

Please download Ewido Security Suite at http://www.ewido.net/en/download/.

1. Install Ewido Security Suite.
2. When installing, under 'Additional Options' uncheck:
* Install background guard
* Install scan via context menu
3. Launch Ewido, there should be an icon on your desktop, double click it.
4. The program will now open to the main screen.
5. When you run Ewido for the first time, you might get a warning 'Database could not be found!'. Click OK. We will fix this in a moment.
6. You will need to update Ewido to the latest definition files.
* On the left hand side of the main screen click update.
* Then click on start update.
7. The update will start and a progress bar will show the updates being installed. The status bar at the bottom will display 'Update successful'.
8. Exit Ewido. DO NOT scan yet.

If you are having problems with the updater, you can go to http://www.ewido.net/en/download/updates/ to update manually.

Download CleanUp! http://cleanup.stevengould.org/ (Alternate Link if main link don't work - http://www.greyknight17.com/spy/CleanUp.exe ) and install it. Don't run it yet.

Restart your computer and boot into Safe Mode (if you don't know how, go to http://www.bleepingcomputer.com/foru...howtutorial=61 ).

CleanUp! deletes EVERYTHING out of your temp/temporary folders, it does not make backups. If you have any documents or programs that are saved in any Temporary Folders, please make a backup of these before running CleanUp!. Run CleanUp! and click on the Options button. Uncheck 'Scan local drives for temporary files'. Also uncheck those two Newsgroup entries if you don't want to delete them. Click OK and then click on the CleanUp! button. Let it run. After it's done, choose Yes to logoff.

Run Ewido now:
* Click on scanner and then Settings. Under 'What to scan' select 'Scan every file' and hit OK.
* Click on 'Complete System Scan' and the scan will begin.
* While the scan is in progress you will be prompted to clean the first infected file it finds. Choose 'Remove', then put a check next to 'Perform action with all infections' in the left corner of the box so you don't have to sit and watch Ewido the whole time. Click OK.
* Once the scan has completed, there will be a button located on the bottom of the screen named 'Save report'.
* Click 'Save report'. Save it to your desktop.

Restart your computer to get back to Normal Mode. Post the Ewido report and a new HijackThis log here.
__________________
Please do NOT PM me. Post whatever questions you may have in the forum and we will take a look at it when we get to it. If you have waited for more than 3 days, you may then and ONLY then PM me for assistance. I will take a look at it.

greyknight17 is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 05-19-2006, 08:48 AM   #4 (permalink)
Registered User
 
Join Date: May 2006
Posts: 9
OS: Win Xp


Done as you requested. Thankx a lot so far !:-)
The new logfile from Hijack This :
Logfile of HijackThis v1.99.1
Scan saved at 16:42:21, on 19.05.2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS2\System32\smss.exe
C:\WINDOWS2\system32\winlogon.exe
C:\WINDOWS2\system32\services.exe
C:\WINDOWS2\system32\lsass.exe
C:\WINDOWS2\system32\svchost.exe
C:\WINDOWS2\System32\svchost.exe
C:\Programfiler\Ahead\InCD\InCDsrv.exe
C:\Programfiler\Fellesfiler\Symantec Shared\ccSetMgr.exe
C:\Programfiler\Fellesfiler\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS2\Explorer.EXE
C:\Programfiler\Fellesfiler\Symantec Shared\ccProxy.exe
C:\Programfiler\Fellesfiler\Symantec Shared\SNDSrvc.exe
C:\Programfiler\Fellesfiler\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Programfiler\Fellesfiler\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS2\system32\spoolsv.exe
C:\Programfiler\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Programfiler\Diskeeper Corporation\Diskeeper\DkService.exe
C:\Programfiler\ewido anti-malware\ewidoctrl.exe
C:\Programfiler\Norton SystemWorks\Norton GoBack\GBPoll.exe
C:\Programfiler\LogMeIn\RaMaint.exe
C:\Programfiler\LogMeIn\LogMeIn.exe
C:\Programfiler\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE
C:\Programfiler\LogMeIn\LogMeInSystray.exe
C:\WINDOWS2\system32\nvsvc32.exe
C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE
C:\WINDOWS2\System32\svchost.exe
C:\WINDOWS2\system32\wwSecure.exe
C:\WINDOWS2\System32\dmadmin.exe
C:\Programfiler\D4\D4.exe
C:\Programfiler\TweakMASTER\TwMaster.exe
C:\Programfiler\TweakNow PowerPack 2006\RAM2_XP.exe
C:\Programfiler\Microsoft IntelliType Pro\type32.exe
C:\Programfiler\Microsoft IntelliPoint\point32.exe
C:\WINDOWS2\system32\RUNDLL32.EXE
C:\WINDOWS2\SOUNDMAN.EXE
C:\Programfiler\Fellesfiler\Symantec Shared\ccApp.exe
C:\WINDOWS2\system32\ctfmon.exe
C:\Programfiler\MSN Messenger\msnmsgr.exe
C:\Programfiler\Yagoon\Time\Time.exe
C:\Programfiler\Norton SystemWorks\Norton GoBack\GBTray.exe
C:\Programfiler\Norton SystemWorks\Norton GoBack\GBTray.exe
C:\WINDOWS2\system32\wuauclt.exe
C:\Programfiler\Fellesfiler\Symantec Shared\Security Console\NSCSRVCE.EXE
E:\Privat\Div. småprogram\Hijack This\HijackThis.exe
C:\Programfiler\Fellesfiler\Symantec Shared\NMain.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.liverpool.no/CDA/homepg.aspx
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.liverpool.no/CDA/homepg.aspx
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Sveins datamaskin
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.mimer.no:8080
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koblinger
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programfiler\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: bho2gr Class - {31FF080D-12A3-439A-A2EF-4BA95A3148E8} - C:\Programfiler\GetRight\xx2gr.dll
O2 - BHO: Norton Internet Security 2006 - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Programfiler\Fellesfiler\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Programfiler\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programfiler\google\googletoolbar2.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Programfiler\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programfiler\google\googletoolbar2.dll
O3 - Toolbar: Norton Internet Security 2006 - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Programfiler\Fellesfiler\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Programfiler\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [Dimension4] C:\Programfiler\D4\D4.exe
O4 - HKLM\..\Run: [TweakMASTER] "C:\Programfiler\TweakMASTER\TwMaster.exe" /auto
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS2\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [DiskeeperSystray] "C:\Programfiler\Diskeeper Corporation\Diskeeper\DkIcon.exe"
O4 - HKLM\..\Run: [RAM Idle Professional] C:\Programfiler\TweakNow PowerPack 2006\RAM2_XP.exe
O4 - HKLM\..\Run: [type32] "C:\Programfiler\Microsoft IntelliType Pro\type32.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Programfiler\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Programfiler\LogMeIn\LogMeInSystray.exe"
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS2\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [ccApp] "C:\Programfiler\Fellesfiler\Symantec Shared\ccApp.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS2\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Programfiler\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Yagoon Time] "C:\Programfiler\Yagoon\Time\Time.exe" min
O4 - Startup: Norton GoBack.lnk = C:\Programfiler\Norton SystemWorks\Norton GoBack\GBTray.exe
O4 - Global Startup: Norton GoBack.lnk = C:\Programfiler\Norton SystemWorks\Norton GoBack\GBTray.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &Google-søk - res://c:\programfiler\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Oversett engelsk ord - res://c:\programfiler\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Download with GetRight - C:\Programfiler\GetRight\GRdownload.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Koblinger bakover - res://c:\programfiler\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Lignende sider - res://c:\programfiler\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Open Link Target in Firefox - file://C:\Documents and Settings\Svein Saure\Programdata\Mozilla\Firefox\Profiles\xfsm7tqt.default\extensions\{5D558C43-550F-4b12-84AB-0D8ABDA9F975}\firefoxviewlink.html
O8 - Extra context menu item: Open with GetRight Browser - C:\Programfiler\GetRight\GRbrowse.htm
O8 - Extra context menu item: View This Page in Firefox - file://C:\Documents and Settings\Svein Saure\Programdata\Mozilla\Firefox\Profiles\xfsm7tqt.default\extensions\{5D558C43-550F-4b12-84AB-0D8ABDA9F975}\firefoxviewpage.html
O8 - Extra context menu item: Øyeblikksbilde av siden i hurtigbufferen - res://c:\programfiler\google\GoogleToolbar2.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Programfiler\Norton SystemWorks\Norton Cleanup\WCQuick.lnk
O9 - Extra 'Tools' menuitem: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Programfiler\Norton SystemWorks\Norton Cleanup\WCQuick.lnk
O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} - http://support.asus.com/common/asusTek_sys_ctrl.cab
O16 - DPF: {106E49CF-797A-11D2-81A2-00E02C015623} - http://www.alternatiff.com/install/00/alttiff.cab
O16 - DPF: {39D420B3-E0EB-424C-89AA-C24F8DE7EF79} - http://www.tvkoo.com/update/KooPlayer.ocx
O16 - DPF: {6BD88D94-03D2-4ABF-99A3-78E9C87DFCA5} (aComp Class) - http://agresso.eltelnetworks.com/agr...m/axmlcomp.cab
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://nettbank.fokus.no/html/activ.../e-Safekey.cab
O16 - DPF: {FA945BB6-9D37-43FC-9B2A-AF09F56CBBF0} (moDiagCollectionActiveX Object) - http://www.musicmatch.com/form/suppo...ionControl.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: LMIinit - C:\WINDOWS2\SYSTEM32\LMIinit.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS2\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)
O23 - Service: Adobe LM Service - Adobe Systems - C:\Programfiler\Fellesfiler\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Automatisk LiveUpdate-planlegging - Symantec Corporation - C:\Programfiler\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Symantec Corporation - C:\Programfiler\Norton Internet Security\ccPwdSvc.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccSetMgr.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Programfiler\Norton Internet Security\comHost.exe
O23 - Service: Diskeeper - Diskeeper Corporation - C:\Programfiler\Diskeeper Corporation\Diskeeper\DkService.exe
O23 - Service: ewido security suite control - ewido networks - C:\Programfiler\ewido anti-malware\ewidoctrl.exe
O23 - Service: GoBack Polling Service (GBPoll) - Symantec Corporation - C:\Programfiler\Norton SystemWorks\Norton GoBack\GBPoll.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programfiler\Fellesfiler\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Programfiler\Ahead\InCD\InCDsrv.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - C:\Programfiler\LogMeIn\RaMaint.exe
O23 - Service: LogMeIn - LogMeIn, Inc. - C:\Programfiler\LogMeIn\LogMeIn.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Programfiler\Fellesfiler\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: Norton AntiVirus Auto-Protect-tjeneste (navapsvc) - Symantec Corporation - C:\Programfiler\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton UnErase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS2\system32\nvsvc32.exe
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Programfiler\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: V2i Protector - PowerQuest Corporation - C:\Programfiler\PowerQuest\Drive Image 7.0\Agent\PQV2iSvc.exe
O23 - Service: Washer AutoComplete (wwSecSvc) - Webroot Software, Inc. - C:\WINDOWS2\system32\wwSecure.exe

And the logfile from Ewido :
ewido anti-malware - Scan report
---------------------------------------------------------

+ Created on: 16:38:52, 19.05.2006
+ Report-Checksum: 784660DA

+ Scan result:

:mozilla.9:C:\RECYCLER\NPROTECT\00000739.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00000739.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00000743.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.11:C:\RECYCLER\NPROTECT\00000743.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.12:C:\RECYCLER\NPROTECT\00000746.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.13:C:\RECYCLER\NPROTECT\00000746.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.13:C:\RECYCLER\NPROTECT\00000757.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.14:C:\RECYCLER\NPROTECT\00000757.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.13:C:\RECYCLER\NPROTECT\00000759.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.14:C:\RECYCLER\NPROTECT\00000759.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.13:C:\RECYCLER\NPROTECT\00000763.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.14:C:\RECYCLER\NPROTECT\00000763.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.13:C:\RECYCLER\NPROTECT\00000766.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.14:C:\RECYCLER\NPROTECT\00000766.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.13:C:\RECYCLER\NPROTECT\00000770.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.14:C:\RECYCLER\NPROTECT\00000770.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.13:C:\RECYCLER\NPROTECT\00000772.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.14:C:\RECYCLER\NPROTECT\00000772.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.13:C:\RECYCLER\NPROTECT\00000774.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.14:C:\RECYCLER\NPROTECT\00000774.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.13:C:\RECYCLER\NPROTECT\00000795.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.14:C:\RECYCLER\NPROTECT\00000795.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.12:C:\RECYCLER\NPROTECT\00000797.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.13:C:\RECYCLER\NPROTECT\00000797.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.12:C:\RECYCLER\NPROTECT\00000799.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.13:C:\RECYCLER\NPROTECT\00000799.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.16:C:\RECYCLER\NPROTECT\00000804.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.17:C:\RECYCLER\NPROTECT\00000804.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.16:C:\RECYCLER\NPROTECT\00000818.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.17:C:\RECYCLER\NPROTECT\00000818.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.16:C:\RECYCLER\NPROTECT\00000826.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.17:C:\RECYCLER\NPROTECT\00000826.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.18:C:\RECYCLER\NPROTECT\00000828.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.19:C:\RECYCLER\NPROTECT\00000828.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.18:C:\RECYCLER\NPROTECT\00000853.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.19:C:\RECYCLER\NPROTECT\00000853.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.20:C:\RECYCLER\NPROTECT\00000869.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.21:C:\RECYCLER\NPROTECT\00000869.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.20:C:\RECYCLER\NPROTECT\00000875.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.21:C:\RECYCLER\NPROTECT\00000875.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.23:C:\RECYCLER\NPROTECT\00000903.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.24:C:\RECYCLER\NPROTECT\00000903.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.23:C:\RECYCLER\NPROTECT\00000906.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.24:C:\RECYCLER\NPROTECT\00000906.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.23:C:\RECYCLER\NPROTECT\00000940.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.24:C:\RECYCLER\NPROTECT\00000940.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.6:C:\RECYCLER\NPROTECT\00000944.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.24:C:\RECYCLER\NPROTECT\00000944.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.25:C:\RECYCLER\NPROTECT\00000944.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.7:C:\RECYCLER\NPROTECT\00000947.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00000947.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.26:C:\RECYCLER\NPROTECT\00000947.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.27:C:\RECYCLER\NPROTECT\00000947.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.7:C:\RECYCLER\NPROTECT\00000949.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00000949.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.27:C:\RECYCLER\NPROTECT\00000949.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.28:C:\RECYCLER\NPROTECT\00000949.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.6:C:\RECYCLER\NPROTECT\00001003.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.7:C:\RECYCLER\NPROTECT\00001003.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.27:C:\RECYCLER\NPROTECT\00001003.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.28:C:\RECYCLER\NPROTECT\00001003.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.6:C:\RECYCLER\NPROTECT\00001008.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.7:C:\RECYCLER\NPROTECT\00001008.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.27:C:\RECYCLER\NPROTECT\00001008.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.28:C:\RECYCLER\NPROTECT\00001008.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.6:C:\RECYCLER\NPROTECT\00001017.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.7:C:\RECYCLER\NPROTECT\00001017.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.27:C:\RECYCLER\NPROTECT\00001017.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.28:C:\RECYCLER\NPROTECT\00001017.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001022.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001022.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.29:C:\RECYCLER\NPROTECT\00001022.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.30:C:\RECYCLER\NPROTECT\00001022.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001026.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001026.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.30:C:\RECYCLER\NPROTECT\00001026.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.31:C:\RECYCLER\NPROTECT\00001026.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.7:C:\RECYCLER\NPROTECT\00001029.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001029.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001029.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.32:C:\RECYCLER\NPROTECT\00001029.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.33:C:\RECYCLER\NPROTECT\00001029.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001032.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001032.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001032.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.33:C:\RECYCLER\NPROTECT\00001032.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.34:C:\RECYCLER\NPROTECT\00001032.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001035.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001035.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001035.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.33:C:\RECYCLER\NPROTECT\00001035.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.34:C:\RECYCLER\NPROTECT\00001035.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001037.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001037.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001037.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.33:C:\RECYCLER\NPROTECT\00001037.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.34:C:\RECYCLER\NPROTECT\00001037.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001040.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001040.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001040.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.33:C:\RECYCLER\NPROTECT\00001040.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.34:C:\RECYCLER\NPROTECT\00001040.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001042.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001042.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001042.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.33:C:\RECYCLER\NPROTECT\00001042.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.34:C:\RECYCLER\NPROTECT\00001042.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001045.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001045.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001045.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.33:C:\RECYCLER\NPROTECT\00001045.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.34:C:\RECYCLER\NPROTECT\00001045.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001049.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001049.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001049.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.33:C:\RECYCLER\NPROTECT\00001049.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.34:C:\RECYCLER\NPROTECT\00001049.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001103.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.11:C:\RECYCLER\NPROTECT\00001103.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.12:C:\RECYCLER\NPROTECT\00001103.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.34:C:\RECYCLER\NPROTECT\00001103.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.35:C:\RECYCLER\NPROTECT\00001103.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001139.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.11:C:\RECYCLER\NPROTECT\00001139.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.12:C:\RECYCLER\NPROTECT\00001139.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.34:C:\RECYCLER\NPROTECT\00001139.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.35:C:\RECYCLER\NPROTECT\00001139.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.6:C:\RECYCLER\NPROTECT\00001141.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.7:C:\RECYCLER\NPROTECT\00001141.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001141.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001141.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.35:C:\RECYCLER\NPROTECT\00001141.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.36:C:\RECYCLER\NPROTECT\00001141.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.6:C:\RECYCLER\NPROTECT\00001143.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.7:C:\RECYCLER\NPROTECT\00001143.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001143.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001143.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.35:C:\RECYCLER\NPROTECT\00001143.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.36:C:\RECYCLER\NPROTECT\00001143.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.6:C:\RECYCLER\NPROTECT\00001146.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.7:C:\RECYCLER\NPROTECT\00001146.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001146.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001146.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.35:C:\RECYCLER\NPROTECT\00001146.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.36:C:\RECYCLER\NPROTECT\00001146.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.6:C:\RECYCLER\NPROTECT\00001151.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.7:C:\RECYCLER\NPROTECT\00001151.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001151.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001151.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.35:C:\RECYCLER\NPROTECT\00001151.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.36:C:\RECYCLER\NPROTECT\00001151.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.6:C:\RECYCLER\NPROTECT\00001166.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.7:C:\RECYCLER\NPROTECT\00001166.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001166.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001166.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.35:C:\RECYCLER\NPROTECT\00001166.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.36:C:\RECYCLER\NPROTECT\00001166.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.7:C:\RECYCLER\NPROTECT\00001175.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001175.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001175.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001175.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.36:C:\RECYCLER\NPROTECT\00001175.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.37:C:\RECYCLER\NPROTECT\00001175.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001178.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001178.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001178.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.11:C:\RECYCLER\NPROTECT\00001178.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.37:C:\RECYCLER\NPROTECT\00001178.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.38:C:\RECYCLER\NPROTECT\00001178.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001180.MOZ -> TrackingCookie.Realtracker : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001180.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.11:C:\RECYCLER\NPROTECT\00001180.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.12:C:\RECYCLER\NPROTECT\00001180.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.13:C:\RECYCLER\NPROTECT\00001180.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.39:C:\RECYCLER\NPROTECT\00001180.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.40:C:\RECYCLER\NPROTECT\00001180.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.6:C:\RECYCLER\NPROTECT\00001185.MOZ -> TrackingCookie.Realtracker : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001185.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.11:C:\RECYCLER\NPROTECT\00001185.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.12:C:\RECYCLER\NPROTECT\00001185.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.13:C:\RECYCLER\NPROTECT\00001185.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.39:C:\RECYCLER\NPROTECT\00001185.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.40:C:\RECYCLER\NPROTECT\00001185.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.6:C:\RECYCLER\NPROTECT\00001186.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.7:C:\RECYCLER\NPROTECT\00001186.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001186.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001186.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001186.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.11:C:\RECYCLER\NPROTECT\00001186.MOZ -> TrackingCookie.Realtracker : Cleaned with backup
:mozilla.40:C:\RECYCLER\NPROTECT\00001186.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.41:C:\RECYCLER\NPROTECT\00001186.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.6:C:\RECYCLER\NPROTECT\00001191.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.7:C:\RECYCLER\NPROTECT\00001191.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001191.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001191.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001191.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.11:C:\RECYCLER\NPROTECT\00001191.MOZ -> TrackingCookie.Realtracker : Cleaned with backup
:mozilla.40:C:\RECYCLER\NPROTECT\00001191.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.41:C:\RECYCLER\NPROTECT\00001191.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.7:C:\RECYCLER\NPROTECT\00001193.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001193.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001193.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001193.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.11:C:\RECYCLER\NPROTECT\00001193.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.12:C:\RECYCLER\NPROTECT\00001193.MOZ -> TrackingCookie.Realtracker : Cleaned with backup
:mozilla.41:C:\RECYCLER\NPROTECT\00001193.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.42:C:\RECYCLER\NPROTECT\00001193.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.7:C:\RECYCLER\NPROTECT\00001199.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001199.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001199.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001199.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.11:C:\RECYCLER\NPROTECT\00001199.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.12:C:\RECYCLER\NPROTECT\00001199.MOZ -> TrackingCookie.Realtracker : Cleaned with backup
:mozilla.41:C:\RECYCLER\NPROTECT\00001199.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.42:C:\RECYCLER\NPROTECT\00001199.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.7:C:\RECYCLER\NPROTECT\00001201.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001201.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001201.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001201.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.11:C:\RECYCLER\NPROTECT\00001201.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.12:C:\RECYCLER\NPROTECT\00001201.MOZ -> TrackingCookie.Realtracker : Cleaned with backup
:mozilla.41:C:\RECYCLER\NPROTECT\00001201.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.42:C:\RECYCLER\NPROTECT\00001201.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.6:C:\RECYCLER\NPROTECT\00001204.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.7:C:\RECYCLER\NPROTECT\00001204.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001204.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001204.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001204.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.11:C:\RECYCLER\NPROTECT\00001204.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.13:C:\RECYCLER\NPROTECT\00001204.MOZ -> TrackingCookie.Realtracker : Cleaned with backup
:mozilla.42:C:\RECYCLER\NPROTECT\00001204.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.43:C:\RECYCLER\NPROTECT\00001204.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.6:C:\RECYCLER\NPROTECT\00001218.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.7:C:\RECYCLER\NPROTECT\00001218.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.8:C:\RECYCLER\NPROTECT\00001218.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.9:C:\RECYCLER\NPROTECT\00001218.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001218.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.11:C:\RECYCLER\NPROTECT\00001218.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.13:C:\RECYCLER\NPROTECT\00001218.MOZ -> TrackingCookie.Realtracker : Cleaned with backup
:mozilla.42:C:\RECYCLER\NPROTECT\00001218.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.43:C:\RECYCLER\NPROTECT\00001218.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001225.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.11:C:\RECYCLER\NPROTECT\00001225.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.12:C:\RECYCLER\NPROTECT\00001225.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.13:C:\RECYCLER\NPROTECT\00001225.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.14:C:\RECYCLER\NPROTECT\00001225.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.15:C:\RECYCLER\NPROTECT\00001225.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.17:C:\RECYCLER\NPROTECT\00001225.MOZ -> TrackingCookie.Realtracker : Cleaned with backup
:mozilla.46:C:\RECYCLER\NPROTECT\00001225.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.47:C:\RECYCLER\NPROTECT\00001225.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001245.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.11:C:\RECYCLER\NPROTECT\00001245.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.12:C:\RECYCLER\NPROTECT\00001245.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.13:C:\RECYCLER\NPROTECT\00001245.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.14:C:\RECYCLER\NPROTECT\00001245.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.15:C:\RECYCLER\NPROTECT\00001245.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.17:C:\RECYCLER\NPROTECT\00001245.MOZ -> TrackingCookie.Realtracker : Cleaned with backup
:mozilla.46:C:\RECYCLER\NPROTECT\00001245.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.47:C:\RECYCLER\NPROTECT\00001245.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001247.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.11:C:\RECYCLER\NPROTECT\00001247.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.12:C:\RECYCLER\NPROTECT\00001247.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.13:C:\RECYCLER\NPROTECT\00001247.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.14:C:\RECYCLER\NPROTECT\00001247.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.15:C:\RECYCLER\NPROTECT\00001247.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.17:C:\RECYCLER\NPROTECT\00001247.MOZ -> TrackingCookie.Realtracker : Cleaned with backup
:mozilla.46:C:\RECYCLER\NPROTECT\00001247.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.47:C:\RECYCLER\NPROTECT\00001247.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001249.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.11:C:\RECYCLER\NPROTECT\00001249.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.12:C:\RECYCLER\NPROTECT\00001249.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.13:C:\RECYCLER\NPROTECT\00001249.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.14:C:\RECYCLER\NPROTECT\00001249.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.15:C:\RECYCLER\NPROTECT\00001249.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.17:C:\RECYCLER\NPROTECT\00001249.MOZ -> TrackingCookie.Realtracker : Cleaned with backup
:mozilla.46:C:\RECYCLER\NPROTECT\00001249.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.47:C:\RECYCLER\NPROTECT\00001249.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.10:C:\RECYCLER\NPROTECT\00001267.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.11:C:\RECYCLER\NPROTECT\00001267.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.12:C:\RECYCLER\NPROTECT\00001267.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.13:C:\RECYCLER\NPROTECT\00001267.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.14:C:\RECYCLER\NPROTECT\00001267.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.15:C:\RECYCLER\NPROTECT\00001267.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.17:C:\RECYCLER\NPROTECT\00001267.MOZ -> TrackingCookie.Realtracker : Cleaned with backup
:mozilla.46:C:\RECYCLER\NPROTECT\00001267.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.47:C:\RECYCLER\NPROTECT\00001267.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.11:C:\RECYCLER\NPROTECT\00001269.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.12:C:\RECYCLER\NPROTECT\00001269.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.13:C:\RECYCLER\NPROTECT\00001269.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.14:C:\RECYCLER\NPROTECT\00001269.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.15:C:\RECYCLER\NPROTECT\00001269.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.16:C:\RECYCLER\NPROTECT\00001269.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.18:C:\RECYCLER\NPROTECT\00001269.MOZ -> TrackingCookie.Realtracker : Cleaned with backup
:mozilla.46:C:\RECYCLER\NPROTECT\00001269.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.47:C:\RECYCLER\NPROTECT\00001269.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.15:C:\RECYCLER\NPROTECT\00001273.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.16:C:\RECYCLER\NPROTECT\00001273.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.17:C:\RECYCLER\NPROTECT\00001273.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.18:C:\RECYCLER\NPROTECT\00001273.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.19:C:\RECYCLER\NPROTECT\00001273.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.20:C:\RECYCLER\NPROTECT\00001273.MOZ -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.22:C:\RECYCLER\NPROTECT\00001273.MOZ -> TrackingCookie.Realtracker : Cleaned with backup
:mozilla.46:C:\RECYCLER\NPROTECT\00001273.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.47:C:\RECYCLER\NPROTECT\00001273.MOZ -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.16:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Casalemedia : Error during cleaning
:mozilla.17:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Advertising : Error during cleaning
:mozilla.18:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Advertising : Error during cleaning
:mozilla.19:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Advertising : Error during cleaning
:mozilla.20:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Advertising : Error during cleaning
:mozilla.21:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Casalemedia : Error during cleaning
:mozilla.22:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Casalemedia : Error during cleaning
:mozilla.23:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Com : Error during cleaning
:mozilla.24:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Tribalfusion : Error during cleaning
:mozilla.25:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Com : Error during cleaning
:mozilla.26:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Tribalfusion : Error during cleaning
:mozilla.35:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Doubleclick : Error during cleaning
:mozilla.36:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.2o7 : Error during cleaning
:mozilla.38:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Tradedoubler : Error during cleaning
:mozilla.39:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Tradedoubler : Error during cleaning
:mozilla.40:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Tradedoubler : Error during cleaning
:mozilla.41:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Tradedoubler : Error during cleaning
:mozilla.63:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Atdmt : Error during cleaning
:mozilla.67:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning
:mozilla.72:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning
:mozilla.73:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning
:mozilla.76:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning
:mozilla.79:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Adtech : Error during cleaning
:mozilla.80:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Adtech : Error during cleaning
:mozilla.84:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Onestat : Error during cleaning
:mozilla.85:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Onestat : Error during cleaning
:mozilla.97:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Sextracker : Error during cleaning
:mozilla.98:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Sextracker : Error during cleaning
:mozilla.99:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Mediaplex : Error during cleaning
:mozilla.12:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.13:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.14:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.15:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.16:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.17:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.18:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.19:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.20:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
:mozilla.21:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
:mozilla.22:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.23:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.24:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.25:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.26:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.33:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
:mozilla.38:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
:mozilla.44:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
:mozilla.48:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.49:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.50:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.51:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.57:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup
:mozilla.58:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup
:mozilla.74:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.75:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.76:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.78:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.80:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.87:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.91:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.92:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.93:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.94:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.95:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.96:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.97:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.98:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.99:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.109:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned with backup
:mozilla.110:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned with backup
:mozilla.138:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup
:mozilla.139:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup
:mozilla.155:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Bfast : Cleaned with backup
:mozilla.159:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Myaffiliateprogram : Cleaned with backup
:mozilla.165:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup
:mozilla.173:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.187:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.188:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.189:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.190:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.191:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.192:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.193:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.201:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.202:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.203:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.206:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup
:mozilla.207:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup
:mozilla.210:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup
:mozilla.211:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup
:mozilla.212:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.213:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.214:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.215:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.216:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.223:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.230:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Overture : Cleaned with backup
:mozilla.232:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Overture : Cleaned with backup
:mozilla.233:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned with backup
:mozilla.234:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.235:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.257:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup
:mozilla.276:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup


::Report End

Any comments ? I thought Firefox was "safe" !:-)
svesa is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 05-20-2006, 08:46 PM   #5 (permalink)
Assistant Manager, TSF Academy; Moderator/Analyst Security Team
 
Ried's Avatar
 
Join Date: Jan 2005
Location: Ohio
Posts: 26,962
OS: WinXP and Vista


Hello svesa,

Are you still getting warnings from Norton?

Run a scan with HijackThis. 'Check' the following entries:

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank


Close any open browsers and click 'Fix Checked'. Close HijackThis.

-----------------------------------------------

Please perform an online scan with Internet Explorer at Kaspersky Online Scanner

Answer Yes, when prompted to install an ActiveX component.
  • The program will then begin downloading the latest definition files.
  • Once the files have been downloaded click on NEXT
  • Locate the Scan Settings button & configure to:
    • Scan using the following Anti-Virus database:
      • Extended
    • Scan Options:
      • Scan Archives
      • Scan Mail Bases
  • Click OK & have it scan My Computer
  • Once the scan is complete, it will display if your system has been infected. It does not provide an option to clean/disinfect. We only require a report from it.
  • Click the Save as Text button to save the file to your desktop so that you may post it in your next reply along with a new HijackThis log.
* Turn off the real time scanner of any existing antivirus program while performing the online scan
__________________

Member of ASAP since 2005
Member of UNITE since 2006

"It is one life whether we spend it laughing or weeping." "Take the time to laugh--it is the music of the soul."
Ried is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 05-24-2006, 01:15 PM   #6 (permalink)
Registered User
 
Join Date: May 2006
Posts: 9
OS: Win Xp


I get no more warnings .....

Done as you suggested, and the results are :

Logfile of HijackThis v1.99.1
Scan saved at 19:26:27, on 24.05.2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS2\System32\smss.exe
C:\WINDOWS2\system32\winlogon.exe
C:\WINDOWS2\system32\services.exe
C:\WINDOWS2\system32\lsass.exe
C:\WINDOWS2\system32\svchost.exe
C:\WINDOWS2\System32\svchost.exe
C:\Programfiler\Ahead\InCD\InCDsrv.exe
C:\Programfiler\Fellesfiler\Symantec Shared\ccSetMgr.exe
C:\WINDOWS2\Explorer.EXE
C:\Programfiler\Fellesfiler\Symantec Shared\ccEvtMgr.exe
C:\Programfiler\Fellesfiler\Symantec Shared\ccProxy.exe
C:\Programfiler\Fellesfiler\Symantec Shared\SNDSrvc.exe
C:\Programfiler\Fellesfiler\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\Programfiler\Fellesfiler\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS2\system32\spoolsv.exe
C:\Programfiler\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Programfiler\Diskeeper Corporation\Diskeeper\DkService.exe
C:\Programfiler\ewido anti-malware\ewidoctrl.exe
C:\Programfiler\Norton SystemWorks\Norton GoBack\GBPoll.exe
C:\Programfiler\LogMeIn\RaMaint.exe
C:\Programfiler\LogMeIn\LogMeIn.exe
C:\Programfiler\Norton Internet Security\Norton AntiVirus\navapsvc.exe
C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE
C:\Programfiler\LogMeIn\LogMeInSystray.exe
C:\WINDOWS2\system32\nvsvc32.exe
C:\WINDOWS2\System32\svchost.exe
C:\WINDOWS2\system32\wwSecure.exe
C:\WINDOWS2\System32\dmadmin.exe
C:\Programfiler\D4\D4.exe
C:\Programfiler\TweakMASTER\TwMaster.exe
C:\Programfiler\TweakNow PowerPack 2006\RAM2_XP.exe
C:\Programfiler\Microsoft IntelliType Pro\type32.exe
C:\Programfiler\Microsoft IntelliPoint\point32.exe
C:\WINDOWS2\system32\RUNDLL32.EXE
C:\WINDOWS2\SOUNDMAN.EXE
C:\Programfiler\Fellesfiler\Symantec Shared\ccApp.exe
C:\WINDOWS2\system32\ctfmon.exe
C:\Programfiler\Fellesfiler\Symantec Shared\Security Console\NSCSRVCE.EXE
C:\Programfiler\Norton SystemWorks\Norton GoBack\GBTray.exe
E:\PROGRA~1\MAGICM~1\Magic.exe
C:\Programfiler\GetRight\GetRight.exe
C:\Programfiler\GetRight\GetRight.exe
C:\Programfiler\MUSICMATCH\MUSICMATCH Jukebox\MMDiag.exe
C:\Programfiler\MUSICMATCH\MUSICMATCH Jukebox\mim.exe
C:\Programfiler\MSN Messenger\msnmsgr.exe
C:\Programfiler\Internet Explorer\iexplore.exe
E:\Privat\Div. småprogram\Hijack This\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.liverpool.no/CDA/homepg.aspx
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.liverpool.no/CDA/homepg.aspx
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Sveins datamaskin
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.mimer.no:8080
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koblinger
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programfiler\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: bho2gr Class - {31FF080D-12A3-439A-A2EF-4BA95A3148E8} - C:\Programfiler\GetRight\xx2gr.dll
O2 - BHO: Norton Internet Security 2006 - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Programfiler\Fellesfiler\Symantec Shared\AdBlocking\NISShExt.dll
O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Programfiler\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programfiler\google\googletoolbar2.dll
O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Programfiler\Canon\Easy-WebPrint\Toolband.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programfiler\google\googletoolbar2.dll
O3 - Toolbar: Norton Internet Security 2006 - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Programfiler\Fellesfiler\Symantec Shared\AdBlocking\NISShExt.dll
O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Programfiler\Norton Internet Security\Norton AntiVirus\NavShExt.dll
O4 - HKLM\..\Run: [Dimension4] C:\Programfiler\D4\D4.exe
O4 - HKLM\..\Run: [TweakMASTER] "C:\Programfiler\TweakMASTER\TwMaster.exe" /auto
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS2\system32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [nwiz] nwiz.exe /install
O4 - HKLM\..\Run: [DiskeeperSystray] "C:\Programfiler\Diskeeper Corporation\Diskeeper\DkIcon.exe"
O4 - HKLM\..\Run: [RAM Idle Professional] C:\Programfiler\TweakNow PowerPack 2006\RAM2_XP.exe
O4 - HKLM\..\Run: [type32] "C:\Programfiler\Microsoft IntelliType Pro\type32.exe"
O4 - HKLM\..\Run: [IntelliPoint] "C:\Programfiler\Microsoft IntelliPoint\point32.exe"
O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Programfiler\LogMeIn\LogMeInSystray.exe"
O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS2\system32\NvMcTray.dll,NvTaskbarInit
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k
O4 - HKLM\..\Run: [ccApp] "C:\Programfiler\Fellesfiler\Symantec Shared\ccApp.exe"
O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS2\system32\ctfmon.exe
O4 - HKCU\..\Run: [msnmsgr] "C:\Programfiler\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [Yagoon Time] "C:\Programfiler\Yagoon\Time\Time.exe" min
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &Google-søk - res://c:\programfiler\google\GoogleToolbar2.dll/cmsearch.html
O8 - Extra context menu item: &Oversett engelsk ord - res://c:\programfiler\google\GoogleToolbar2.dll/cmwordtrans.html
O8 - Extra context menu item: Download with GetRight - C:\Programfiler\GetRight\GRdownload.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000
O8 - Extra context menu item: Koblinger bakover - res://c:\programfiler\google\GoogleToolbar2.dll/cmbacklinks.html
O8 - Extra context menu item: Lignende sider - res://c:\programfiler\google\GoogleToolbar2.dll/cmsimilar.html
O8 - Extra context menu item: Open Link Target in Firefox - file://C:\Documents and Settings\Svein Saure\Programdata\Mozilla\Firefox\Profiles\xfsm7tqt.default\extensions\{5D558C43-550F-4b12-84AB-0D8ABDA9F975}\firefoxviewlink.html
O8 - Extra context menu item: Open with GetRight Browser - C:\Programfiler\GetRight\GRbrowse.htm
O8 - Extra context menu item: View This Page in Firefox - file://C:\Documents and Settings\Svein Saure\Programdata\Mozilla\Firefox\Profiles\xfsm7tqt.default\extensions\{5D558C43-550F-4b12-84AB-0D8ABDA9F975}\firefoxviewpage.html
O8 - Extra context menu item: Øyeblikksbilde av siden i hurtigbufferen - res://c:\programfiler\google\GoogleToolbar2.dll/cmcache.html
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_02\bin\npjpi150_02.dll
O9 - Extra button: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Programfiler\Norton SystemWorks\Norton Cleanup\WCQuick.lnk
O9 - Extra 'Tools' menuitem: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Programfiler\Norton SystemWorks\Norton Cleanup\WCQuick.lnk
O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} - http://support.asus.com/common/asusTek_sys_ctrl.cab
O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english...an_unicode.cab
O16 - DPF: {106E49CF-797A-11D2-81A2-00E02C015623} - http://www.alternatiff.com/install/00/alttiff.cab
O16 - DPF: {39D420B3-E0EB-424C-89AA-C24F8DE7EF79} - http://www.tvkoo.com/update/KooPlayer.ocx
O16 - DPF: {6BD88D94-03D2-4ABF-99A3-78E9C87DFCA5} (aComp Class) - http://agresso.eltelnetworks.com/agr...m/axmlcomp.cab
O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://nettbank.fokus.no/html/activ.../e-Safekey.cab
O16 - DPF: {FA945BB6-9D37-43FC-9B2A-AF09F56CBBF0} (moDiagCollectionActiveX Object) - http://www.musicmatch.com/form/suppo...ionControl.cab
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: LMIinit - C:\WINDOWS2\SYSTEM32\LMIinit.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS2\SYSTEM32\WgaLogon.dll
O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing)
O23 - Service: Adobe LM Service - Adobe Systems - C:\Programfiler\Fellesfiler\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Automatisk LiveUpdate-planlegging - Symantec Corporation - C:\Programfiler\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Symantec Corporation - C:\Programfiler\Norton Internet Security\ccPwdSvc.exe
O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccProxy.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccSetMgr.exe
O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Programfiler\Norton Internet Security\comHost.exe
O23 - Service: Diskeeper - Diskeeper Corporation - C:\Programfiler\Diskeeper Corporation\Diskeeper\DkService.exe
O23 - Service: ewido security suite control - ewido networks - C:\Programfiler\ewido anti-malware\ewidoctrl.exe
O23 - Service: GoBack Polling Service (GBPoll) - Symantec Corporation - C:\Programfiler\Norton SystemWorks\Norton GoBack\GBPoll.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programfiler\Fellesfiler\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Programfiler\Ahead\InCD\InCDsrv.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - C:\Programfiler\LogMeIn\RaMaint.exe
O23 - Service: LogMeIn - LogMeIn, Inc. - C:\Programfiler\LogMeIn\LogMeIn.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Programfiler\Fellesfiler\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: Norton AntiVirus Auto-Protect-tjeneste (navapsvc) - Symantec Corporation - C:\Programfiler\Norton Internet Security\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton UnErase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE
O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\Security Console\NSCSRVCE.EXE
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS2\system32\nvsvc32.exe
O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Programfiler\Norton Internet Security\Norton AntiVirus\SAVScan.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: V2i Protector - PowerQuest Corporation - C:\Programfiler\PowerQuest\Drive Image 7.0\Agent\PQV2iSvc.exe
O23 - Service: Washer AutoComplete (wwSecSvc) - Webroot Software, Inc. - C:\WINDOWS2\system32\wwSecure.exe

-------------------------------------------------------------------------------
KASPERSKY ON-LINE SCANNER REPORT
Wednesday, May 24, 2006 9:11:21 PM
Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600)
Kaspersky On-line Scanner version: 5.0.78.0
Kaspersky Anti-Virus database last update: 24/05/2006
Kaspersky Anti-Virus database records: 196052
-------------------------------------------------------------------------------

Scan Settings:
Scan using the following antivirus database: extended
Scan Archives: true
Scan Mail Bases: true

Scan Target - My Computer:
A:\
C:\
D:\
E:\
F:\
G:\
H:\

Scan Statistics:
Total number of scanned objects: 84755
Number of viruses found: 13
Number of infected objects: 33
Number of suspicious objects: 0
Duration of the scan process: 01:03:01

Infected Object Name / Virus Name / Last Action
C:\Documents and Settings\All Users\Programdata\Symantec\Norton AntiVirus\Quarantine\248E2DF7.zip/Matrix.class Infected: Trojan-Downloader.Java.OpenStream.c skipped
C:\Documents and Settings\All Users\Programdata\Symantec\Norton AntiVirus\Quarantine\248E2DF7.zip ZIP: infected - 1 skipped
C:\Documents and Settings\All Users\Programdata\Symantec\Norton AntiVirus\Quarantine\248E2DF7.zip CryptFF: infected - 1 skipped
C:\Documents and Settings\Svein Saure\.housecall\Quarantine\keyfinder.exe.bac_a00632/data.rar/xpkey.exe Infected: not-a-virus:PSWTool.Win32.RAS.a skipped
C:\Documents and Settings\Svein Saure\.housecall\Quarantine\keyfinder.exe.bac_a00632/data.rar/officekey.exe Infected: not-a-virus:PSWTool.Win32.RAS.a skipped
C:\Documents and Settings\Svein Saure\.housecall\Quarantine\keyfinder.exe.bac_a00632/data.rar Infected: not-a-virus:PSWTool.Win32.RAS.a skipped
C:\Documents and Settings\Svein Saure\.housecall\Quarantine\keyfinder.exe.bac_a00632 RarSFX: infected - 3 skipped
C:\Documents and Settings\Svein Saure\.housecall\Quarantine\keyfinder.exe.bac_a00632 CryptFF.b: infected - 3 skipped
C:\Documents and Settings\Svein Saure\.housecall\Quarantine\ms1.exe.bac_a03944 Infected: Trojan-Downloader.Win32.Agent.aea skipped
C:\Documents and Settings\Svein Saure\.housecall\Quarantine\paytime.exe.bac_a03944 Infected: Trojan.Win32.StartPage.adi skipped
C:\Documents and Settings\Svein Saure\.housecall\Quarantine\toolbar.exe.bac_a00632 Infected: Trojan-Downloader.Win32.Adload.q skipped
C:\Documents and Settings\Svein Saure\.housecall\Quarantine\toolbar.exe.bac_a03944 Infected: Trojan-Downloader.Win32.Adload.q skipped
C:\Documents and Settings\Svein Saure\Programdata\Sun\Java\Deployment\cache\javapi\v1.0\jar\loaderadv408.jar-2fa90dc9-48c288ee.zip/Matrix.class Infected: Trojan-Downloader.Java.OpenStream.c skipped
C:\Documents and Settings\Svein Saure\Programdata\Sun\Java\Deployment\cache\javapi\v1.0\jar\loaderadv408.jar-2fa90dc9-48c288ee.zip ZIP: infected - 1 skipped
C:\Programfiler\BearShare\Installer\BSInstall5.2.1.2.exe/WISE0024.BIN Infected: not-a-virus:AdWare.Win32.SaveNow.bo skipped
C:\Programfiler\BearShare\Installer\BSInstall5.2.1.2.exe WiseSFX: infected - 1 skipped
C:\Programfiler\BearShare\Installer\BSInstall5.2.1.2.exe WiseSFX Dropper: infected - 1 skipped
C:\System Volume Information\_restore{EA9C3A3A-E679-46A3-8B99-F3395F819CE7}\RP54\A0005678.sys Infected: SpamTool.Win32.Mailbot.aq skipped
C:\System Volume Information\_restore{EA9C3A3A-E679-46A3-8B99-F3395F819CE7}\RP57\A0005794.exe Infected: not-virus:Hoax.Win32.Renos.bm skipped
C:\System Volume Information\_restore{EA9C3A3A-E679-46A3-8B99-F3395F819CE7}\RP57\A0005795.exe Infected: Trojan-Downloader.Win32.Tiny.bi skipped
C:\System Volume Information\_restore{EA9C3A3A-E679-46A3-8B99-F3395F819CE7}\RP57\A0005796.exe Infected: Trojan-Dropper.Win32.Small.amd skipped
C:\System Volume Information\_restore{EA9C3A3A-E679-46A3-8B99-F3395F819CE7}\RP63\A0006936.exe Infected: Trojan-Spy.Win32.Goldun.hw skipped
E:\Privat\Div. småprogram\keyfinder.exe/data.rar/xpkey.exe Infected: not-a-virus:PSWTool.Win32.RAS.a skipped
E:\Privat\Div. småprogram\keyfinder.exe/data.rar/officekey.exe Infected: not-a-virus:PSWTool.Win32.RAS.a skipped
E:\Privat\Div. småprogram\keyfinder.exe/data.rar Infected: not-a-virus:PSWTool.Win32.RAS.a skipped
E:\Privat\Div. småprogram\keyfinder.exe RarSFX: infected - 3 skipped
E:\Privat\Div. småprogram\VIVIPLAY\viviplay.exe Infected: Trojan-Dropper.Win32.Agent.ams skipped
E:\Privat\Setups\CCleaner\ccsetup126.exe/stream/data0006 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
E:\Privat\Setups\CCleaner\ccsetup126.exe/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
E:\Privat\Setups\CCleaner\ccsetup126.exe NSIS: infected - 2 skipped
E:\Privat\Setups\CCleaner\ccsetup128.exe/stream/data0006 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
E:\Privat\Setups\CCleaner\ccsetup128.exe/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped
E:\Privat\Setups\CCleaner\ccsetup128.exe NSIS: infected - 2 skipped

Scan process completed.

Waiting for your instructions :-)

Svein
svesa is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 05-24-2006, 06:53 PM   #7 (permalink)
Assistant Manager, TSF Academy; Moderator/Analyst Security Team
 
Ried's Avatar
 
Join Date: Jan 2005
Location: Ohio
Posts: 26,962
OS: WinXP and Vista


Hello Svein,

P2P - I see you have P2P software (BearShare) installed on your machine. We are not here to pass judgment on file-sharing as a concept. However, we will warn you that engaging in this activity and having this kind of software installed on your machine will always make you more susceptible to re-infections. It may be contributing to your current situation. This page will give you further information.

-----------------------------------------

Viviplay is reported as being infected. Upload this file E:\Privat\Div. småprogram\VIVIPLAY\viviplay.exe to http://virusscan.jotti.org/ and submit it. Wait for the analysis and post it here.
__________________

Member of ASAP since 2005
Member of UNITE since 2006

"It is one life whether we spend it laughing or weeping." "Take the time to laugh--it is the music of the soul."
Ried is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 05-25-2006, 03:59 AM   #8 (permalink)
Registered User
 
Join Date: May 2006
Posts: 9
OS: Win Xp


Results from Jotti on the viviplay.exe :
File: viviplay.exe
Status:
INFECTED/MALWARE (Note: this file has been scanned before. Therefore, this file's scan results will not be stored in the database)
MD5 aa3f58497488af1d282b1abcdcfd4f18
Packers detected:
PEBUNDLE, UPX
Scanner results
AntiVir
Found nothing
ArcaVir
Found nothing
Avast
Found nothing
AVG Antivirus
Found nothing
BitDefender
Found nothing
ClamAV
Found nothing
Dr.Web
Found nothing
F-Prot Antivirus
Found nothing
Fortinet
Found PossibleThreat!01836
Kaspersky Anti-Virus
Found Trojan-Dropper.Win32.Agent.ams
NOD32
Found nothing
Norman Virus Control
Found nothing
UNA
Found nothing
VirusBuster
Found nothing
VBA32
Found nothing

The Viviplay is a program I never use, so I have uninstalled it /deleted this program form my computer now.

Svein
svesa is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 05-25-2006, 07:18 AM   #9 (permalink)
Assistant Manager, TSF Academy; Moderator/Analyst Security Team
 
Ried's Avatar
 
Join Date: Jan 2005
Location: Ohio
Posts: 26,962
OS: WinXP and Vista


Hello Svein,

That would have been my recommendation as well.

Your logs are clean. If there aren't any more problems, please continue with these final instructions and helpful links.


Reset hidden/system files and folders
Windows XP
===============
Click Start.
* Open My Computer.
* Select the Tools menu and click Folder Options.
* Select the View tab.
* Deselect the Show hidden files and folders option.
* Select the Hide file extensions for known types option.
* Select the Hide protected operating system files option.
Click Yes to confirm.
Click OK.

Enable Windows Auto Update
*Go to Start>Run - type wuaucpl.cpl
*Tick on the checkbox - "Keep my computer up to date"
*Under Settings, choose "Automatically download the updates, and install them on the schedule that I specify".
Click on "OK".

Create a new System Restore point
Click Start >> Run - type SYSDM.CPL & press Enter
* Select the System Restore Tab
* Tick on the checkbox - "Turn off System Restore on all drives"
Click Apply
* Then untick the same checkbox & click OK
This will prevent any reinfection from previous restore points.

In light of your recent issue, I'm sure you'll like to avoid any future infections. Please take a look at these well written articles:

HOW DID I GET INFECTED IN THE FIRST PLACE? by Tony Klein
THE ANTI-SPYWARE TUTORIAL
MAKING INTERNET EXPLORER SAFER
Understanding and Using Firewalls

**Be very wary with any security software that is advertised in popups or in other ways. They are not only usually of no use, but often have malware in them.

More information and free downloads are available at the following links:

Download SpywareBlaster 3.5.1 to help prevent spyware from installing in the first place. Install & update SpywareBlaster with the latest definitions. After you have updated, click the button - enable protection for all unprotected items .

Download Spyware Guard to catch and block spyware before it can execute.

Download IE-SPYAD.EXE to block access to malicious websites so you cannot be redirected to them from an infected site or email. This is a self-extracting .ZIP file, and save it to your desktop. Once downloaded, double-click on it to extract the files inside (default dir is C:\IE-SPYAD)
From within the folder, double-click install.bat
Select Option #2 - Install the new IE-SPYAD list, by typing 2
Then return to the main menu.
Select option #4 - Add the old porn sites domain, by typing 4


Update all these programs regularly. Without regular updates you will not be protected when new malicious programs are released.

Follow this list and your potential for being infected again will reduce dramatically.
__________________

Member of ASAP since 2005
Member of UNITE since 2006

"It is one life whether we spend it laughing or weeping." "Take the time to laugh--it is the music of the soul."
Ried is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
Old 05-28-2006, 04:41 AM   #10 (permalink)
Registered User
 
Join Date: May 2006
Posts: 9
OS: Win Xp


Thanks a lot for great help ! I will follow your suggestions in the future, but I know where to go if I get security problems again :-)

Svein
svesa is offline  
Digg this Post!Add Post to del.icio.usBookmark Post in TechnoratiFurl this Post!Reddit!
 


Thread Tools

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off




All times are GMT -7. The time now is 10:00 PM.



Copyright 2001 - 2009, Tech Support Forum
Home Tips Plus | Outdoor Basecamp | Automotive Support Forum

1 2 3 4 5 6 7 8 9 10 11 12 13 14 15 16 17 18 19 20 21 22 23 24 25 26 27 28 29 30 31 32 33 34 35 36 37 38 39 40 41 42 43 44 45 46 47 48 49 50 51 52 53 54 55 56 57 58 59 60 61 62 63 64 65 66 67 68 69 70 71 72 73 74 75 76 77 78 79 80 81 82 83 84 85