![]() |
![]() |
![]() |
|||||
![]() |
![]() |
![]() |
![]() |
![]() |
|||
| Welcome
to Tech Support Forum home to more then 136,000 problems solved. Issues
have included: Spyware, Malware, Virus Issues, Windows, Microsoft,
Linux, Networking, Security, Hardware, and Gaming Getting your
problem solved is as easy as: 1. Registering for a free account 2. Asking your question 3. Receiving an answer Registered members: * See fewer ads. * And much more..
|
| Want to know how to post a question? click here | Having problems with spyware and pop-ups? First Steps |
|
|||||||
| Resolved HJT Threads Resolved spyware and popup issues. |
|
|
LinkBack | Thread Tools |
|
|
#1 (permalink) |
|
Registered User
Join Date: May 2006
Posts: 9
OS: Win Xp
|
Lots of outgoing emails .....
Hello there. First message for me on this forum.
Yesterday I got huge problems with my PC as it started to behave strangely. After a while I discovered that my email-scanner was scanning hundreds of outgoing emails "sent" from my machine. And in reply I get hundreds of "User unknown"-emails from various email-servers around the world. After consulting som "experts" they told me to use "HiJack This", and post the log file on this forum. PS ! I have now installed NIS 2006, and on the first scan this program found a couple of hijackers/Trojans. So, is there any salvation for me :-) |
|
|
| Important Information |
|
Join the #1 Tech Support Forum Today - It's Totally Free!
TechSupportForum.com is a leading support website for your computer needs. We offer free, friendly and personalized computer support. Why pay to have your computer fixed when you can do it for free. Join TechSupportforum.com Today - Click Here |
|
|
#2 (permalink) |
|
Registered User
Join Date: May 2006
Posts: 9
OS: Win Xp
|
Logfile of HijackThis v1.99.1
Scan saved at 19:11:48, on 18.05.2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS2\System32\smss.exe C:\WINDOWS2\system32\winlogon.exe C:\WINDOWS2\system32\services.exe C:\WINDOWS2\system32\lsass.exe C:\WINDOWS2\system32\svchost.exe C:\Programfiler\Ahead\InCD\InCDsrv.exe C:\Programfiler\Fellesfiler\Symantec Shared\ccSetMgr.exe C:\WINDOWS2\Explorer.EXE C:\Programfiler\Fellesfiler\Symantec Shared\ccEvtMgr.exe C:\Programfiler\Fellesfiler\Symantec Shared\ccProxy.exe C:\Programfiler\Fellesfiler\Symantec Shared\SNDSrvc.exe C:\Programfiler\Fellesfiler\Symantec Shared\SPBBC\SPBBCSvc.exe C:\Programfiler\Fellesfiler\Symantec Shared\CCPD-LC\symlcsvc.exe C:\WINDOWS2\system32\spoolsv.exe C:\Programfiler\Symantec\LiveUpdate\ALUSchedulerSvc.exe C:\Programfiler\Diskeeper Corporation\Diskeeper\DkService.exe C:\Programfiler\LogMeIn\RaMaint.exe C:\Programfiler\LogMeIn\LogMeIn.exe C:\Programfiler\Norton Internet Security\Norton AntiVirus\navapsvc.exe C:\Programfiler\LogMeIn\LogMeInSystray.exe C:\WINDOWS2\system32\nvsvc32.exe C:\WINDOWS2\System32\svchost.exe C:\WINDOWS2\system32\wwSecure.exe C:\WINDOWS2\System32\dmadmin.exe C:\Programfiler\D4\D4.exe C:\Programfiler\TweakMASTER\TwMaster.exe C:\Programfiler\TweakNow PowerPack 2006\RAM2_XP.exe C:\Programfiler\Microsoft IntelliType Pro\type32.exe C:\Programfiler\Microsoft IntelliPoint\point32.exe C:\WINDOWS2\system32\RUNDLL32.EXE C:\WINDOWS2\SOUNDMAN.EXE C:\Programfiler\Fellesfiler\Symantec Shared\ccApp.exe C:\WINDOWS2\system32\ctfmon.exe C:\Programfiler\MSN Messenger\msnmsgr.exe C:\Programfiler\Yagoon\Time\Time.exe C:\Programfiler\Fellesfiler\Symantec Shared\Security Console\NSCSRVCE.EXE E:\PROGRA~1\MAGICM~1\Magic.exe C:\Programfiler\GetRight\GetRight.exe C:\Programfiler\GetRight\GetRight.exe C:\WINDOWS2\System32\svchost.exe C:\WINDOWS2\System32\msiexec.exe E:\Privat\unzipped\HijackThis.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.liverpool.no/CDA/homepg.aspx R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.liverpool.no/CDA/homepg.aspx R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Sveins datamaskin R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.mimer.no:8080 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koblinger O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programfiler\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: bho2gr Class - {31FF080D-12A3-439A-A2EF-4BA95A3148E8} - C:\Programfiler\GetRight\xx2gr.dll O2 - BHO: Norton Internet Security 2006 - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Programfiler\Fellesfiler\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Programfiler\Norton Internet Security\Norton AntiVirus\NavShExt.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programfiler\google\googletoolbar2.dll O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Programfiler\Canon\Easy-WebPrint\Toolband.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programfiler\google\googletoolbar2.dll O3 - Toolbar: Norton Internet Security 2006 - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Programfiler\Fellesfiler\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Programfiler\Norton Internet Security\Norton AntiVirus\NavShExt.dll O4 - HKLM\..\Run: [Dimension4] C:\Programfiler\D4\D4.exe O4 - HKLM\..\Run: [TweakMASTER] "C:\Programfiler\TweakMASTER\TwMaster.exe" /auto O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS2\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [DiskeeperSystray] "C:\Programfiler\Diskeeper Corporation\Diskeeper\DkIcon.exe" O4 - HKLM\..\Run: [RAM Idle Professional] C:\Programfiler\TweakNow PowerPack 2006\RAM2_XP.exe O4 - HKLM\..\Run: [type32] "C:\Programfiler\Microsoft IntelliType Pro\type32.exe" O4 - HKLM\..\Run: [IntelliPoint] "C:\Programfiler\Microsoft IntelliPoint\point32.exe" O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Programfiler\LogMeIn\LogMeInSystray.exe" O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS2\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKLM\..\Run: [ccApp] "C:\Programfiler\Fellesfiler\Symantec Shared\ccApp.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS2\system32\ctfmon.exe O4 - HKCU\..\Run: [msnmsgr] "C:\Programfiler\MSN Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [Yagoon Time] "C:\Programfiler\Yagoon\Time\Time.exe" min O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O8 - Extra context menu item: &Google-søk - res://c:\programfiler\google\GoogleToolbar2.dll/cmsearch.html O8 - Extra context menu item: &Oversett engelsk ord - res://c:\programfiler\google\GoogleToolbar2.dll/cmwordtrans.html O8 - Extra context menu item: Download with GetRight - C:\Programfiler\GetRight\GRdownload.htm O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O8 - Extra context menu item: Koblinger bakover - res://c:\programfiler\google\GoogleToolbar2.dll/cmbacklinks.html O8 - Extra context menu item: Lignende sider - res://c:\programfiler\google\GoogleToolbar2.dll/cmsimilar.html O8 - Extra context menu item: Open Link Target in Firefox - file://C:\Documents and Settings\Svein Saure\Programdata\Mozilla\Firefox\Profiles\xfsm7tqt.default\extensions\{5D558C43-550F-4b12-84AB-0D8ABDA9F975}\firefoxviewlink.html O8 - Extra context menu item: Open with GetRight Browser - C:\Programfiler\GetRight\GRbrowse.htm O8 - Extra context menu item: View This Page in Firefox - file://C:\Documents and Settings\Svein Saure\Programdata\Mozilla\Firefox\Profiles\xfsm7tqt.default\extensions\{5D558C43-550F-4b12-84AB-0D8ABDA9F975}\firefoxviewpage.html O8 - Extra context menu item: Øyeblikksbilde av siden i hurtigbufferen - res://c:\programfiler\google\GoogleToolbar2.dll/cmcache.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_02\bin\npjpi150_02.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_02\bin\npjpi150_02.dll O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} - http://support.asus.com/common/asusTek_sys_ctrl.cab O16 - DPF: {106E49CF-797A-11D2-81A2-00E02C015623} - http://www.alternatiff.com/install/00/alttiff.cab O16 - DPF: {39D420B3-E0EB-424C-89AA-C24F8DE7EF79} - http://www.tvkoo.com/update/KooPlayer.ocx O16 - DPF: {6BD88D94-03D2-4ABF-99A3-78E9C87DFCA5} (aComp Class) - http://agresso.eltelnetworks.com/agr...m/axmlcomp.cab O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://nettbank.fokus.no/html/activ.../e-Safekey.cab O16 - DPF: {FA945BB6-9D37-43FC-9B2A-AF09F56CBBF0} (moDiagCollectionActiveX Object) - http://www.musicmatch.com/form/suppo...ionControl.cab O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O20 - Winlogon Notify: LMIinit - C:\WINDOWS2\SYSTEM32\LMIinit.dll O20 - Winlogon Notify: WgaLogon - C:\WINDOWS2\SYSTEM32\WgaLogon.dll O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing) O23 - Service: Adobe LM Service - Adobe Systems - C:\Programfiler\Fellesfiler\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Automatisk LiveUpdate-planlegging - Symantec Corporation - C:\Programfiler\Symantec\LiveUpdate\ALUSchedulerSvc.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Symantec Corporation - C:\Programfiler\Norton Internet Security\ccPwdSvc.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccProxy.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccSetMgr.exe O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Programfiler\Norton Internet Security\comHost.exe O23 - Service: Diskeeper - Diskeeper Corporation - C:\Programfiler\Diskeeper Corporation\Diskeeper\DkService.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programfiler\Fellesfiler\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Programfiler\Ahead\InCD\InCDsrv.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - C:\Programfiler\LogMeIn\RaMaint.exe O23 - Service: LogMeIn - LogMeIn, Inc. - C:\Programfiler\LogMeIn\LogMeIn.exe O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Programfiler\Fellesfiler\Macromedia Shared\Service\Macromedia Licensing.exe O23 - Service: Norton AntiVirus Auto-Protect-tjeneste (navapsvc) - Symantec Corporation - C:\Programfiler\Norton Internet Security\Norton AntiVirus\navapsvc.exe O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\Security Console\NSCSRVCE.EXE O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS2\system32\nvsvc32.exe O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Programfiler\Norton Internet Security\Norton AntiVirus\SAVScan.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: Symantec Core LC - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\CCPD-LC\symlcsvc.exe O23 - Service: V2i Protector - PowerQuest Corporation - C:\Programfiler\PowerQuest\Drive Image 7.0\Agent\PQV2iSvc.exe O23 - Service: Washer AutoComplete (wwSecSvc) - Webroot Software, Inc. - C:\WINDOWS2\system32\wwSecure.exe |
|
|
|
|
#3 (permalink) |
|
Analyst, Security Team
|
Ugh...another Norton....What did you use before?
Please print out or copy this page to Notepad. Make sure to work through the fixes in the exact order it is mentioned below. If there's anything that you don't understand, ask your question(s) before proceeding with the fixes. You should 'not' have any open browsers when you are following the procedures below. Please download Ewido Security Suite at http://www.ewido.net/en/download/. 1. Install Ewido Security Suite. 2. When installing, under 'Additional Options' uncheck: * Install background guard * Install scan via context menu 3. Launch Ewido, there should be an icon on your desktop, double click it. 4. The program will now open to the main screen. 5. When you run Ewido for the first time, you might get a warning 'Database could not be found!'. Click OK. We will fix this in a moment. 6. You will need to update Ewido to the latest definition files. * On the left hand side of the main screen click update. * Then click on start update. 7. The update will start and a progress bar will show the updates being installed. The status bar at the bottom will display 'Update successful'. 8. Exit Ewido. DO NOT scan yet. If you are having problems with the updater, you can go to http://www.ewido.net/en/download/updates/ to update manually. Download CleanUp! http://cleanup.stevengould.org/ (Alternate Link if main link don't work - http://www.greyknight17.com/spy/CleanUp.exe ) and install it. Don't run it yet. Restart your computer and boot into Safe Mode (if you don't know how, go to http://www.bleepingcomputer.com/foru...howtutorial=61 ). CleanUp! deletes EVERYTHING out of your temp/temporary folders, it does not make backups. If you have any documents or programs that are saved in any Temporary Folders, please make a backup of these before running CleanUp!. Run CleanUp! and click on the Options button. Uncheck 'Scan local drives for temporary files'. Also uncheck those two Newsgroup entries if you don't want to delete them. Click OK and then click on the CleanUp! button. Let it run. After it's done, choose Yes to logoff. Run Ewido now: * Click on scanner and then Settings. Under 'What to scan' select 'Scan every file' and hit OK. * Click on 'Complete System Scan' and the scan will begin. * While the scan is in progress you will be prompted to clean the first infected file it finds. Choose 'Remove', then put a check next to 'Perform action with all infections' in the left corner of the box so you don't have to sit and watch Ewido the whole time. Click OK. * Once the scan has completed, there will be a button located on the bottom of the screen named 'Save report'. * Click 'Save report'. Save it to your desktop. Restart your computer to get back to Normal Mode. Post the Ewido report and a new HijackThis log here.
__________________
Please do NOT PM me. Post whatever questions you may have in the forum and we will take a look at it when we get to it. If you have waited for more than 3 days, you may then and ONLY then PM me for assistance. I will take a look at it. |
|
|
|
|
#4 (permalink) |
|
Registered User
Join Date: May 2006
Posts: 9
OS: Win Xp
|
Done as you requested. Thankx a lot so far !:-)
The new logfile from Hijack This : Logfile of HijackThis v1.99.1 Scan saved at 16:42:21, on 19.05.2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS2\System32\smss.exe C:\WINDOWS2\system32\winlogon.exe C:\WINDOWS2\system32\services.exe C:\WINDOWS2\system32\lsass.exe C:\WINDOWS2\system32\svchost.exe C:\WINDOWS2\System32\svchost.exe C:\Programfiler\Ahead\InCD\InCDsrv.exe C:\Programfiler\Fellesfiler\Symantec Shared\ccSetMgr.exe C:\Programfiler\Fellesfiler\Symantec Shared\ccEvtMgr.exe C:\WINDOWS2\Explorer.EXE C:\Programfiler\Fellesfiler\Symantec Shared\ccProxy.exe C:\Programfiler\Fellesfiler\Symantec Shared\SNDSrvc.exe C:\Programfiler\Fellesfiler\Symantec Shared\SPBBC\SPBBCSvc.exe C:\Programfiler\Fellesfiler\Symantec Shared\CCPD-LC\symlcsvc.exe C:\WINDOWS2\system32\spoolsv.exe C:\Programfiler\Symantec\LiveUpdate\ALUSchedulerSvc.exe C:\Programfiler\Diskeeper Corporation\Diskeeper\DkService.exe C:\Programfiler\ewido anti-malware\ewidoctrl.exe C:\Programfiler\Norton SystemWorks\Norton GoBack\GBPoll.exe C:\Programfiler\LogMeIn\RaMaint.exe C:\Programfiler\LogMeIn\LogMeIn.exe C:\Programfiler\Norton Internet Security\Norton AntiVirus\navapsvc.exe C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE C:\Programfiler\LogMeIn\LogMeInSystray.exe C:\WINDOWS2\system32\nvsvc32.exe C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE C:\WINDOWS2\System32\svchost.exe C:\WINDOWS2\system32\wwSecure.exe C:\WINDOWS2\System32\dmadmin.exe C:\Programfiler\D4\D4.exe C:\Programfiler\TweakMASTER\TwMaster.exe C:\Programfiler\TweakNow PowerPack 2006\RAM2_XP.exe C:\Programfiler\Microsoft IntelliType Pro\type32.exe C:\Programfiler\Microsoft IntelliPoint\point32.exe C:\WINDOWS2\system32\RUNDLL32.EXE C:\WINDOWS2\SOUNDMAN.EXE C:\Programfiler\Fellesfiler\Symantec Shared\ccApp.exe C:\WINDOWS2\system32\ctfmon.exe C:\Programfiler\MSN Messenger\msnmsgr.exe C:\Programfiler\Yagoon\Time\Time.exe C:\Programfiler\Norton SystemWorks\Norton GoBack\GBTray.exe C:\Programfiler\Norton SystemWorks\Norton GoBack\GBTray.exe C:\WINDOWS2\system32\wuauclt.exe C:\Programfiler\Fellesfiler\Symantec Shared\Security Console\NSCSRVCE.EXE E:\Privat\Div. småprogram\Hijack This\HijackThis.exe C:\Programfiler\Fellesfiler\Symantec Shared\NMain.exe R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.liverpool.no/CDA/homepg.aspx R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.liverpool.no/CDA/homepg.aspx R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Sveins datamaskin R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.mimer.no:8080 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koblinger O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programfiler\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: bho2gr Class - {31FF080D-12A3-439A-A2EF-4BA95A3148E8} - C:\Programfiler\GetRight\xx2gr.dll O2 - BHO: Norton Internet Security 2006 - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Programfiler\Fellesfiler\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Programfiler\Norton Internet Security\Norton AntiVirus\NavShExt.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programfiler\google\googletoolbar2.dll O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Programfiler\Canon\Easy-WebPrint\Toolband.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programfiler\google\googletoolbar2.dll O3 - Toolbar: Norton Internet Security 2006 - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Programfiler\Fellesfiler\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Programfiler\Norton Internet Security\Norton AntiVirus\NavShExt.dll O4 - HKLM\..\Run: [Dimension4] C:\Programfiler\D4\D4.exe O4 - HKLM\..\Run: [TweakMASTER] "C:\Programfiler\TweakMASTER\TwMaster.exe" /auto O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS2\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [DiskeeperSystray] "C:\Programfiler\Diskeeper Corporation\Diskeeper\DkIcon.exe" O4 - HKLM\..\Run: [RAM Idle Professional] C:\Programfiler\TweakNow PowerPack 2006\RAM2_XP.exe O4 - HKLM\..\Run: [type32] "C:\Programfiler\Microsoft IntelliType Pro\type32.exe" O4 - HKLM\..\Run: [IntelliPoint] "C:\Programfiler\Microsoft IntelliPoint\point32.exe" O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Programfiler\LogMeIn\LogMeInSystray.exe" O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS2\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKLM\..\Run: [ccApp] "C:\Programfiler\Fellesfiler\Symantec Shared\ccApp.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS2\system32\ctfmon.exe O4 - HKCU\..\Run: [msnmsgr] "C:\Programfiler\MSN Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [Yagoon Time] "C:\Programfiler\Yagoon\Time\Time.exe" min O4 - Startup: Norton GoBack.lnk = C:\Programfiler\Norton SystemWorks\Norton GoBack\GBTray.exe O4 - Global Startup: Norton GoBack.lnk = C:\Programfiler\Norton SystemWorks\Norton GoBack\GBTray.exe O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O8 - Extra context menu item: &Google-søk - res://c:\programfiler\google\GoogleToolbar2.dll/cmsearch.html O8 - Extra context menu item: &Oversett engelsk ord - res://c:\programfiler\google\GoogleToolbar2.dll/cmwordtrans.html O8 - Extra context menu item: Download with GetRight - C:\Programfiler\GetRight\GRdownload.htm O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O8 - Extra context menu item: Koblinger bakover - res://c:\programfiler\google\GoogleToolbar2.dll/cmbacklinks.html O8 - Extra context menu item: Lignende sider - res://c:\programfiler\google\GoogleToolbar2.dll/cmsimilar.html O8 - Extra context menu item: Open Link Target in Firefox - file://C:\Documents and Settings\Svein Saure\Programdata\Mozilla\Firefox\Profiles\xfsm7tqt.default\extensions\{5D558C43-550F-4b12-84AB-0D8ABDA9F975}\firefoxviewlink.html O8 - Extra context menu item: Open with GetRight Browser - C:\Programfiler\GetRight\GRbrowse.htm O8 - Extra context menu item: View This Page in Firefox - file://C:\Documents and Settings\Svein Saure\Programdata\Mozilla\Firefox\Profiles\xfsm7tqt.default\extensions\{5D558C43-550F-4b12-84AB-0D8ABDA9F975}\firefoxviewpage.html O8 - Extra context menu item: Øyeblikksbilde av siden i hurtigbufferen - res://c:\programfiler\google\GoogleToolbar2.dll/cmcache.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_02\bin\npjpi150_02.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_02\bin\npjpi150_02.dll O9 - Extra button: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Programfiler\Norton SystemWorks\Norton Cleanup\WCQuick.lnk O9 - Extra 'Tools' menuitem: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Programfiler\Norton SystemWorks\Norton Cleanup\WCQuick.lnk O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} - http://support.asus.com/common/asusTek_sys_ctrl.cab O16 - DPF: {106E49CF-797A-11D2-81A2-00E02C015623} - http://www.alternatiff.com/install/00/alttiff.cab O16 - DPF: {39D420B3-E0EB-424C-89AA-C24F8DE7EF79} - http://www.tvkoo.com/update/KooPlayer.ocx O16 - DPF: {6BD88D94-03D2-4ABF-99A3-78E9C87DFCA5} (aComp Class) - http://agresso.eltelnetworks.com/agr...m/axmlcomp.cab O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://nettbank.fokus.no/html/activ.../e-Safekey.cab O16 - DPF: {FA945BB6-9D37-43FC-9B2A-AF09F56CBBF0} (moDiagCollectionActiveX Object) - http://www.musicmatch.com/form/suppo...ionControl.cab O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O20 - Winlogon Notify: LMIinit - C:\WINDOWS2\SYSTEM32\LMIinit.dll O20 - Winlogon Notify: WgaLogon - C:\WINDOWS2\SYSTEM32\WgaLogon.dll O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing) O23 - Service: Adobe LM Service - Adobe Systems - C:\Programfiler\Fellesfiler\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Automatisk LiveUpdate-planlegging - Symantec Corporation - C:\Programfiler\Symantec\LiveUpdate\ALUSchedulerSvc.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Symantec Corporation - C:\Programfiler\Norton Internet Security\ccPwdSvc.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccProxy.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccSetMgr.exe O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Programfiler\Norton Internet Security\comHost.exe O23 - Service: Diskeeper - Diskeeper Corporation - C:\Programfiler\Diskeeper Corporation\Diskeeper\DkService.exe O23 - Service: ewido security suite control - ewido networks - C:\Programfiler\ewido anti-malware\ewidoctrl.exe O23 - Service: GoBack Polling Service (GBPoll) - Symantec Corporation - C:\Programfiler\Norton SystemWorks\Norton GoBack\GBPoll.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programfiler\Fellesfiler\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Programfiler\Ahead\InCD\InCDsrv.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - C:\Programfiler\LogMeIn\RaMaint.exe O23 - Service: LogMeIn - LogMeIn, Inc. - C:\Programfiler\LogMeIn\LogMeIn.exe O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Programfiler\Fellesfiler\Macromedia Shared\Service\Macromedia Licensing.exe O23 - Service: Norton AntiVirus Auto-Protect-tjeneste (navapsvc) - Symantec Corporation - C:\Programfiler\Norton Internet Security\Norton AntiVirus\navapsvc.exe O23 - Service: Norton UnErase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\Security Console\NSCSRVCE.EXE O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS2\system32\nvsvc32.exe O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Programfiler\Norton Internet Security\Norton AntiVirus\SAVScan.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE O23 - Service: Symantec Core LC - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\CCPD-LC\symlcsvc.exe O23 - Service: V2i Protector - PowerQuest Corporation - C:\Programfiler\PowerQuest\Drive Image 7.0\Agent\PQV2iSvc.exe O23 - Service: Washer AutoComplete (wwSecSvc) - Webroot Software, Inc. - C:\WINDOWS2\system32\wwSecure.exe And the logfile from Ewido : ewido anti-malware - Scan report --------------------------------------------------------- + Created on: 16:38:52, 19.05.2006 + Report-Checksum: 784660DA + Scan result: :mozilla.9:C:\RECYCLER\NPROTECT\00000739.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00000739.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00000743.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.11:C:\RECYCLER\NPROTECT\00000743.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.12:C:\RECYCLER\NPROTECT\00000746.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.13:C:\RECYCLER\NPROTECT\00000746.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.13:C:\RECYCLER\NPROTECT\00000757.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.14:C:\RECYCLER\NPROTECT\00000757.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.13:C:\RECYCLER\NPROTECT\00000759.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.14:C:\RECYCLER\NPROTECT\00000759.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.13:C:\RECYCLER\NPROTECT\00000763.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.14:C:\RECYCLER\NPROTECT\00000763.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.13:C:\RECYCLER\NPROTECT\00000766.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.14:C:\RECYCLER\NPROTECT\00000766.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.13:C:\RECYCLER\NPROTECT\00000770.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.14:C:\RECYCLER\NPROTECT\00000770.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.13:C:\RECYCLER\NPROTECT\00000772.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.14:C:\RECYCLER\NPROTECT\00000772.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.13:C:\RECYCLER\NPROTECT\00000774.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.14:C:\RECYCLER\NPROTECT\00000774.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.13:C:\RECYCLER\NPROTECT\00000795.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.14:C:\RECYCLER\NPROTECT\00000795.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.12:C:\RECYCLER\NPROTECT\00000797.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.13:C:\RECYCLER\NPROTECT\00000797.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.12:C:\RECYCLER\NPROTECT\00000799.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.13:C:\RECYCLER\NPROTECT\00000799.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.16:C:\RECYCLER\NPROTECT\00000804.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.17:C:\RECYCLER\NPROTECT\00000804.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.16:C:\RECYCLER\NPROTECT\00000818.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.17:C:\RECYCLER\NPROTECT\00000818.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.16:C:\RECYCLER\NPROTECT\00000826.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.17:C:\RECYCLER\NPROTECT\00000826.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.18:C:\RECYCLER\NPROTECT\00000828.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.19:C:\RECYCLER\NPROTECT\00000828.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.18:C:\RECYCLER\NPROTECT\00000853.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.19:C:\RECYCLER\NPROTECT\00000853.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.20:C:\RECYCLER\NPROTECT\00000869.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.21:C:\RECYCLER\NPROTECT\00000869.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.20:C:\RECYCLER\NPROTECT\00000875.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.21:C:\RECYCLER\NPROTECT\00000875.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.23:C:\RECYCLER\NPROTECT\00000903.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.24:C:\RECYCLER\NPROTECT\00000903.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.23:C:\RECYCLER\NPROTECT\00000906.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.24:C:\RECYCLER\NPROTECT\00000906.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.23:C:\RECYCLER\NPROTECT\00000940.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.24:C:\RECYCLER\NPROTECT\00000940.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.6:C:\RECYCLER\NPROTECT\00000944.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.24:C:\RECYCLER\NPROTECT\00000944.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.25:C:\RECYCLER\NPROTECT\00000944.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.7:C:\RECYCLER\NPROTECT\00000947.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00000947.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.26:C:\RECYCLER\NPROTECT\00000947.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.27:C:\RECYCLER\NPROTECT\00000947.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.7:C:\RECYCLER\NPROTECT\00000949.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00000949.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.27:C:\RECYCLER\NPROTECT\00000949.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.28:C:\RECYCLER\NPROTECT\00000949.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.6:C:\RECYCLER\NPROTECT\00001003.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.7:C:\RECYCLER\NPROTECT\00001003.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.27:C:\RECYCLER\NPROTECT\00001003.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.28:C:\RECYCLER\NPROTECT\00001003.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.6:C:\RECYCLER\NPROTECT\00001008.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.7:C:\RECYCLER\NPROTECT\00001008.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.27:C:\RECYCLER\NPROTECT\00001008.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.28:C:\RECYCLER\NPROTECT\00001008.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.6:C:\RECYCLER\NPROTECT\00001017.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.7:C:\RECYCLER\NPROTECT\00001017.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.27:C:\RECYCLER\NPROTECT\00001017.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.28:C:\RECYCLER\NPROTECT\00001017.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001022.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001022.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.29:C:\RECYCLER\NPROTECT\00001022.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.30:C:\RECYCLER\NPROTECT\00001022.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001026.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001026.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.30:C:\RECYCLER\NPROTECT\00001026.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.31:C:\RECYCLER\NPROTECT\00001026.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.7:C:\RECYCLER\NPROTECT\00001029.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001029.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001029.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.32:C:\RECYCLER\NPROTECT\00001029.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.33:C:\RECYCLER\NPROTECT\00001029.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001032.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001032.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001032.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.33:C:\RECYCLER\NPROTECT\00001032.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.34:C:\RECYCLER\NPROTECT\00001032.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001035.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001035.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001035.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.33:C:\RECYCLER\NPROTECT\00001035.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.34:C:\RECYCLER\NPROTECT\00001035.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001037.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001037.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001037.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.33:C:\RECYCLER\NPROTECT\00001037.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.34:C:\RECYCLER\NPROTECT\00001037.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001040.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001040.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001040.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.33:C:\RECYCLER\NPROTECT\00001040.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.34:C:\RECYCLER\NPROTECT\00001040.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001042.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001042.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001042.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.33:C:\RECYCLER\NPROTECT\00001042.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.34:C:\RECYCLER\NPROTECT\00001042.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001045.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001045.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001045.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.33:C:\RECYCLER\NPROTECT\00001045.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.34:C:\RECYCLER\NPROTECT\00001045.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001049.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001049.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001049.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.33:C:\RECYCLER\NPROTECT\00001049.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.34:C:\RECYCLER\NPROTECT\00001049.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001103.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.11:C:\RECYCLER\NPROTECT\00001103.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.12:C:\RECYCLER\NPROTECT\00001103.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.34:C:\RECYCLER\NPROTECT\00001103.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.35:C:\RECYCLER\NPROTECT\00001103.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001139.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.11:C:\RECYCLER\NPROTECT\00001139.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.12:C:\RECYCLER\NPROTECT\00001139.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.34:C:\RECYCLER\NPROTECT\00001139.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.35:C:\RECYCLER\NPROTECT\00001139.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.6:C:\RECYCLER\NPROTECT\00001141.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.7:C:\RECYCLER\NPROTECT\00001141.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001141.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001141.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.35:C:\RECYCLER\NPROTECT\00001141.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.36:C:\RECYCLER\NPROTECT\00001141.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.6:C:\RECYCLER\NPROTECT\00001143.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.7:C:\RECYCLER\NPROTECT\00001143.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001143.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001143.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.35:C:\RECYCLER\NPROTECT\00001143.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.36:C:\RECYCLER\NPROTECT\00001143.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.6:C:\RECYCLER\NPROTECT\00001146.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.7:C:\RECYCLER\NPROTECT\00001146.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001146.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001146.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.35:C:\RECYCLER\NPROTECT\00001146.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.36:C:\RECYCLER\NPROTECT\00001146.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.6:C:\RECYCLER\NPROTECT\00001151.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.7:C:\RECYCLER\NPROTECT\00001151.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001151.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001151.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.35:C:\RECYCLER\NPROTECT\00001151.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.36:C:\RECYCLER\NPROTECT\00001151.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.6:C:\RECYCLER\NPROTECT\00001166.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.7:C:\RECYCLER\NPROTECT\00001166.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001166.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001166.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.35:C:\RECYCLER\NPROTECT\00001166.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.36:C:\RECYCLER\NPROTECT\00001166.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.7:C:\RECYCLER\NPROTECT\00001175.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001175.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001175.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001175.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.36:C:\RECYCLER\NPROTECT\00001175.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.37:C:\RECYCLER\NPROTECT\00001175.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001178.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001178.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001178.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.11:C:\RECYCLER\NPROTECT\00001178.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.37:C:\RECYCLER\NPROTECT\00001178.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.38:C:\RECYCLER\NPROTECT\00001178.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001180.MOZ -> TrackingCookie.Realtracker : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001180.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.11:C:\RECYCLER\NPROTECT\00001180.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.12:C:\RECYCLER\NPROTECT\00001180.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.13:C:\RECYCLER\NPROTECT\00001180.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.39:C:\RECYCLER\NPROTECT\00001180.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.40:C:\RECYCLER\NPROTECT\00001180.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.6:C:\RECYCLER\NPROTECT\00001185.MOZ -> TrackingCookie.Realtracker : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001185.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.11:C:\RECYCLER\NPROTECT\00001185.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.12:C:\RECYCLER\NPROTECT\00001185.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.13:C:\RECYCLER\NPROTECT\00001185.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.39:C:\RECYCLER\NPROTECT\00001185.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.40:C:\RECYCLER\NPROTECT\00001185.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.6:C:\RECYCLER\NPROTECT\00001186.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.7:C:\RECYCLER\NPROTECT\00001186.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001186.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001186.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001186.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.11:C:\RECYCLER\NPROTECT\00001186.MOZ -> TrackingCookie.Realtracker : Cleaned with backup :mozilla.40:C:\RECYCLER\NPROTECT\00001186.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.41:C:\RECYCLER\NPROTECT\00001186.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.6:C:\RECYCLER\NPROTECT\00001191.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.7:C:\RECYCLER\NPROTECT\00001191.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001191.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001191.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001191.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.11:C:\RECYCLER\NPROTECT\00001191.MOZ -> TrackingCookie.Realtracker : Cleaned with backup :mozilla.40:C:\RECYCLER\NPROTECT\00001191.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.41:C:\RECYCLER\NPROTECT\00001191.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.7:C:\RECYCLER\NPROTECT\00001193.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001193.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001193.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001193.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.11:C:\RECYCLER\NPROTECT\00001193.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.12:C:\RECYCLER\NPROTECT\00001193.MOZ -> TrackingCookie.Realtracker : Cleaned with backup :mozilla.41:C:\RECYCLER\NPROTECT\00001193.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.42:C:\RECYCLER\NPROTECT\00001193.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.7:C:\RECYCLER\NPROTECT\00001199.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001199.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001199.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001199.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.11:C:\RECYCLER\NPROTECT\00001199.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.12:C:\RECYCLER\NPROTECT\00001199.MOZ -> TrackingCookie.Realtracker : Cleaned with backup :mozilla.41:C:\RECYCLER\NPROTECT\00001199.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.42:C:\RECYCLER\NPROTECT\00001199.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.7:C:\RECYCLER\NPROTECT\00001201.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001201.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001201.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001201.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.11:C:\RECYCLER\NPROTECT\00001201.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.12:C:\RECYCLER\NPROTECT\00001201.MOZ -> TrackingCookie.Realtracker : Cleaned with backup :mozilla.41:C:\RECYCLER\NPROTECT\00001201.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.42:C:\RECYCLER\NPROTECT\00001201.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.6:C:\RECYCLER\NPROTECT\00001204.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.7:C:\RECYCLER\NPROTECT\00001204.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001204.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001204.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001204.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.11:C:\RECYCLER\NPROTECT\00001204.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.13:C:\RECYCLER\NPROTECT\00001204.MOZ -> TrackingCookie.Realtracker : Cleaned with backup :mozilla.42:C:\RECYCLER\NPROTECT\00001204.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.43:C:\RECYCLER\NPROTECT\00001204.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.6:C:\RECYCLER\NPROTECT\00001218.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.7:C:\RECYCLER\NPROTECT\00001218.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.8:C:\RECYCLER\NPROTECT\00001218.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.9:C:\RECYCLER\NPROTECT\00001218.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001218.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.11:C:\RECYCLER\NPROTECT\00001218.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.13:C:\RECYCLER\NPROTECT\00001218.MOZ -> TrackingCookie.Realtracker : Cleaned with backup :mozilla.42:C:\RECYCLER\NPROTECT\00001218.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.43:C:\RECYCLER\NPROTECT\00001218.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001225.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.11:C:\RECYCLER\NPROTECT\00001225.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.12:C:\RECYCLER\NPROTECT\00001225.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.13:C:\RECYCLER\NPROTECT\00001225.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.14:C:\RECYCLER\NPROTECT\00001225.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.15:C:\RECYCLER\NPROTECT\00001225.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.17:C:\RECYCLER\NPROTECT\00001225.MOZ -> TrackingCookie.Realtracker : Cleaned with backup :mozilla.46:C:\RECYCLER\NPROTECT\00001225.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.47:C:\RECYCLER\NPROTECT\00001225.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001245.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.11:C:\RECYCLER\NPROTECT\00001245.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.12:C:\RECYCLER\NPROTECT\00001245.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.13:C:\RECYCLER\NPROTECT\00001245.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.14:C:\RECYCLER\NPROTECT\00001245.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.15:C:\RECYCLER\NPROTECT\00001245.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.17:C:\RECYCLER\NPROTECT\00001245.MOZ -> TrackingCookie.Realtracker : Cleaned with backup :mozilla.46:C:\RECYCLER\NPROTECT\00001245.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.47:C:\RECYCLER\NPROTECT\00001245.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001247.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.11:C:\RECYCLER\NPROTECT\00001247.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.12:C:\RECYCLER\NPROTECT\00001247.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.13:C:\RECYCLER\NPROTECT\00001247.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.14:C:\RECYCLER\NPROTECT\00001247.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.15:C:\RECYCLER\NPROTECT\00001247.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.17:C:\RECYCLER\NPROTECT\00001247.MOZ -> TrackingCookie.Realtracker : Cleaned with backup :mozilla.46:C:\RECYCLER\NPROTECT\00001247.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.47:C:\RECYCLER\NPROTECT\00001247.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001249.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.11:C:\RECYCLER\NPROTECT\00001249.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.12:C:\RECYCLER\NPROTECT\00001249.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.13:C:\RECYCLER\NPROTECT\00001249.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.14:C:\RECYCLER\NPROTECT\00001249.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.15:C:\RECYCLER\NPROTECT\00001249.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.17:C:\RECYCLER\NPROTECT\00001249.MOZ -> TrackingCookie.Realtracker : Cleaned with backup :mozilla.46:C:\RECYCLER\NPROTECT\00001249.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.47:C:\RECYCLER\NPROTECT\00001249.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.10:C:\RECYCLER\NPROTECT\00001267.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.11:C:\RECYCLER\NPROTECT\00001267.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.12:C:\RECYCLER\NPROTECT\00001267.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.13:C:\RECYCLER\NPROTECT\00001267.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.14:C:\RECYCLER\NPROTECT\00001267.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.15:C:\RECYCLER\NPROTECT\00001267.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.17:C:\RECYCLER\NPROTECT\00001267.MOZ -> TrackingCookie.Realtracker : Cleaned with backup :mozilla.46:C:\RECYCLER\NPROTECT\00001267.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.47:C:\RECYCLER\NPROTECT\00001267.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.11:C:\RECYCLER\NPROTECT\00001269.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.12:C:\RECYCLER\NPROTECT\00001269.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.13:C:\RECYCLER\NPROTECT\00001269.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.14:C:\RECYCLER\NPROTECT\00001269.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.15:C:\RECYCLER\NPROTECT\00001269.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.16:C:\RECYCLER\NPROTECT\00001269.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.18:C:\RECYCLER\NPROTECT\00001269.MOZ -> TrackingCookie.Realtracker : Cleaned with backup :mozilla.46:C:\RECYCLER\NPROTECT\00001269.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.47:C:\RECYCLER\NPROTECT\00001269.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.15:C:\RECYCLER\NPROTECT\00001273.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.16:C:\RECYCLER\NPROTECT\00001273.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.17:C:\RECYCLER\NPROTECT\00001273.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.18:C:\RECYCLER\NPROTECT\00001273.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.19:C:\RECYCLER\NPROTECT\00001273.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.20:C:\RECYCLER\NPROTECT\00001273.MOZ -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.22:C:\RECYCLER\NPROTECT\00001273.MOZ -> TrackingCookie.Realtracker : Cleaned with backup :mozilla.46:C:\RECYCLER\NPROTECT\00001273.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.47:C:\RECYCLER\NPROTECT\00001273.MOZ -> TrackingCookie.Zedo : Cleaned with backup :mozilla.16:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Casalemedia : Error during cleaning :mozilla.17:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Advertising : Error during cleaning :mozilla.18:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Advertising : Error during cleaning :mozilla.19:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Advertising : Error during cleaning :mozilla.20:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Advertising : Error during cleaning :mozilla.21:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Casalemedia : Error during cleaning :mozilla.22:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Casalemedia : Error during cleaning :mozilla.23:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Com : Error during cleaning :mozilla.24:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Tribalfusion : Error during cleaning :mozilla.25:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Com : Error during cleaning :mozilla.26:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Tribalfusion : Error during cleaning :mozilla.35:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Doubleclick : Error during cleaning :mozilla.36:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.2o7 : Error during cleaning :mozilla.38:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Tradedoubler : Error during cleaning :mozilla.39:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Tradedoubler : Error during cleaning :mozilla.40:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Tradedoubler : Error during cleaning :mozilla.41:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Tradedoubler : Error during cleaning :mozilla.63:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Atdmt : Error during cleaning :mozilla.67:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Statcounter : Error during cleaning :mozilla.72:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning :mozilla.73:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning :mozilla.76:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Hitbox : Error during cleaning :mozilla.79:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Adtech : Error during cleaning :mozilla.80:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Adtech : Error during cleaning :mozilla.84:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Onestat : Error during cleaning :mozilla.85:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Onestat : Error during cleaning :mozilla.97:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Sextracker : Error during cleaning :mozilla.98:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Sextracker : Error during cleaning :mozilla.99:E:\Privat\Backup\Firefox\Firefox 1.5 nb-NO - 2006-01-09.pcv/cookies.txt -> TrackingCookie.Mediaplex : Error during cleaning :mozilla.12:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup :mozilla.13:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup :mozilla.14:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup :mozilla.15:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup :mozilla.16:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup :mozilla.17:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup :mozilla.18:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup :mozilla.19:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup :mozilla.20:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup :mozilla.21:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup :mozilla.22:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup :mozilla.23:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup :mozilla.24:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup :mozilla.25:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup :mozilla.26:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup :mozilla.33:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup :mozilla.38:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup :mozilla.44:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup :mozilla.48:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup :mozilla.49:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup :mozilla.50:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup :mozilla.51:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup :mozilla.57:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup :mozilla.58:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup :mozilla.74:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.75:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.76:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.78:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.80:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.87:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.91:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.92:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup :mozilla.93:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup :mozilla.94:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup :mozilla.95:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup :mozilla.96:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup :mozilla.97:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup :mozilla.98:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup :mozilla.99:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup :mozilla.109:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned with backup :mozilla.110:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned with backup :mozilla.138:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup :mozilla.139:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup :mozilla.155:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Bfast : Cleaned with backup :mozilla.159:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Myaffiliateprogram : Cleaned with backup :mozilla.165:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup :mozilla.173:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.187:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.188:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.189:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.190:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.191:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.192:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.193:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.201:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.202:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.203:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup :mozilla.206:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup :mozilla.207:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup :mozilla.210:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup :mozilla.211:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup :mozilla.212:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup :mozilla.213:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup :mozilla.214:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup :mozilla.215:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup :mozilla.216:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup :mozilla.223:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup :mozilla.230:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Overture : Cleaned with backup :mozilla.232:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Overture : Cleaned with backup :mozilla.233:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned with backup :mozilla.234:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup :mozilla.235:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup :mozilla.257:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup :mozilla.276:E:\Privat\Backup\Firefox\Profiles\qxo8yz5e.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup ::Report End Any comments ? I thought Firefox was "safe" !:-) |
|
|
|
|
#5 (permalink) |
|
Assistant Manager, TSF Academy; Moderator/Analyst Security Team
Join Date: Jan 2005
Location: Ohio
Posts: 26,962
OS: WinXP and Vista
|
Hello svesa,
Are you still getting warnings from Norton? Run a scan with HijackThis. 'Check' the following entries: R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = about:blank Close any open browsers and click 'Fix Checked'. Close HijackThis. ----------------------------------------------- Please perform an online scan with Internet Explorer at Kaspersky Online Scanner Answer Yes, when prompted to install an ActiveX component.
|
|
|
|
|
#6 (permalink) |
|
Registered User
Join Date: May 2006
Posts: 9
OS: Win Xp
|
I get no more warnings .....
Done as you suggested, and the results are : Logfile of HijackThis v1.99.1 Scan saved at 19:26:27, on 24.05.2006 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180) Running processes: C:\WINDOWS2\System32\smss.exe C:\WINDOWS2\system32\winlogon.exe C:\WINDOWS2\system32\services.exe C:\WINDOWS2\system32\lsass.exe C:\WINDOWS2\system32\svchost.exe C:\WINDOWS2\System32\svchost.exe C:\Programfiler\Ahead\InCD\InCDsrv.exe C:\Programfiler\Fellesfiler\Symantec Shared\ccSetMgr.exe C:\WINDOWS2\Explorer.EXE C:\Programfiler\Fellesfiler\Symantec Shared\ccEvtMgr.exe C:\Programfiler\Fellesfiler\Symantec Shared\ccProxy.exe C:\Programfiler\Fellesfiler\Symantec Shared\SNDSrvc.exe C:\Programfiler\Fellesfiler\Symantec Shared\SPBBC\SPBBCSvc.exe C:\Programfiler\Fellesfiler\Symantec Shared\CCPD-LC\symlcsvc.exe C:\WINDOWS2\system32\spoolsv.exe C:\Programfiler\Symantec\LiveUpdate\ALUSchedulerSvc.exe C:\Programfiler\Diskeeper Corporation\Diskeeper\DkService.exe C:\Programfiler\ewido anti-malware\ewidoctrl.exe C:\Programfiler\Norton SystemWorks\Norton GoBack\GBPoll.exe C:\Programfiler\LogMeIn\RaMaint.exe C:\Programfiler\LogMeIn\LogMeIn.exe C:\Programfiler\Norton Internet Security\Norton AntiVirus\navapsvc.exe C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE C:\Programfiler\LogMeIn\LogMeInSystray.exe C:\WINDOWS2\system32\nvsvc32.exe C:\WINDOWS2\System32\svchost.exe C:\WINDOWS2\system32\wwSecure.exe C:\WINDOWS2\System32\dmadmin.exe C:\Programfiler\D4\D4.exe C:\Programfiler\TweakMASTER\TwMaster.exe C:\Programfiler\TweakNow PowerPack 2006\RAM2_XP.exe C:\Programfiler\Microsoft IntelliType Pro\type32.exe C:\Programfiler\Microsoft IntelliPoint\point32.exe C:\WINDOWS2\system32\RUNDLL32.EXE C:\WINDOWS2\SOUNDMAN.EXE C:\Programfiler\Fellesfiler\Symantec Shared\ccApp.exe C:\WINDOWS2\system32\ctfmon.exe C:\Programfiler\Fellesfiler\Symantec Shared\Security Console\NSCSRVCE.EXE C:\Programfiler\Norton SystemWorks\Norton GoBack\GBTray.exe E:\PROGRA~1\MAGICM~1\Magic.exe C:\Programfiler\GetRight\GetRight.exe C:\Programfiler\GetRight\GetRight.exe C:\Programfiler\MUSICMATCH\MUSICMATCH Jukebox\MMDiag.exe C:\Programfiler\MUSICMATCH\MUSICMATCH Jukebox\mim.exe C:\Programfiler\MSN Messenger\msnmsgr.exe C:\Programfiler\Internet Explorer\iexplore.exe E:\Privat\Div. småprogram\Hijack This\HijackThis.exe R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.liverpool.no/CDA/homepg.aspx R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.liverpool.no/CDA/homepg.aspx R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Window Title = Sveins datamaskin R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = proxy.mimer.no:8080 R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Koblinger O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Programfiler\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll O2 - BHO: bho2gr Class - {31FF080D-12A3-439A-A2EF-4BA95A3148E8} - C:\Programfiler\GetRight\xx2gr.dll O2 - BHO: Norton Internet Security 2006 - {9ECB9560-04F9-4bbc-943D-298DDF1699E1} - C:\Programfiler\Fellesfiler\Symantec Shared\AdBlocking\NISShExt.dll O2 - BHO: NAV Helper - {A8F38D8D-E480-4D52-B7A2-731BB6995FDD} - C:\Programfiler\Norton Internet Security\Norton AntiVirus\NavShExt.dll O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\programfiler\google\googletoolbar2.dll O3 - Toolbar: Easy-WebPrint - {327C2873-E90D-4c37-AA9D-10AC9BABA46C} - C:\Programfiler\Canon\Easy-WebPrint\Toolband.dll O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\programfiler\google\googletoolbar2.dll O3 - Toolbar: Norton Internet Security 2006 - {0B53EAC3-8D69-4b9e-9B19-A37C9A5676A7} - C:\Programfiler\Fellesfiler\Symantec Shared\AdBlocking\NISShExt.dll O3 - Toolbar: Norton AntiVirus - {C4069E3A-68F1-403E-B40E-20066696354B} - C:\Programfiler\Norton Internet Security\Norton AntiVirus\NavShExt.dll O4 - HKLM\..\Run: [Dimension4] C:\Programfiler\D4\D4.exe O4 - HKLM\..\Run: [TweakMASTER] "C:\Programfiler\TweakMASTER\TwMaster.exe" /auto O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS2\system32\NvCpl.dll,NvStartup O4 - HKLM\..\Run: [nwiz] nwiz.exe /install O4 - HKLM\..\Run: [DiskeeperSystray] "C:\Programfiler\Diskeeper Corporation\Diskeeper\DkIcon.exe" O4 - HKLM\..\Run: [RAM Idle Professional] C:\Programfiler\TweakNow PowerPack 2006\RAM2_XP.exe O4 - HKLM\..\Run: [type32] "C:\Programfiler\Microsoft IntelliType Pro\type32.exe" O4 - HKLM\..\Run: [IntelliPoint] "C:\Programfiler\Microsoft IntelliPoint\point32.exe" O4 - HKLM\..\Run: [LogMeIn GUI] "C:\Programfiler\LogMeIn\LogMeInSystray.exe" O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS2\system32\NvMcTray.dll,NvTaskbarInit O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE O4 - HKLM\..\Run: [KernelFaultCheck] %systemroot%\system32\dumprep 0 -k O4 - HKLM\..\Run: [ccApp] "C:\Programfiler\Fellesfiler\Symantec Shared\ccApp.exe" O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS2\system32\ctfmon.exe O4 - HKCU\..\Run: [msnmsgr] "C:\Programfiler\MSN Messenger\msnmsgr.exe" /background O4 - HKCU\..\Run: [Yagoon Time] "C:\Programfiler\Yagoon\Time\Time.exe" min O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present O8 - Extra context menu item: &Google-søk - res://c:\programfiler\google\GoogleToolbar2.dll/cmsearch.html O8 - Extra context menu item: &Oversett engelsk ord - res://c:\programfiler\google\GoogleToolbar2.dll/cmwordtrans.html O8 - Extra context menu item: Download with GetRight - C:\Programfiler\GetRight\GRdownload.htm O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\Office10\EXCEL.EXE/3000 O8 - Extra context menu item: Koblinger bakover - res://c:\programfiler\google\GoogleToolbar2.dll/cmbacklinks.html O8 - Extra context menu item: Lignende sider - res://c:\programfiler\google\GoogleToolbar2.dll/cmsimilar.html O8 - Extra context menu item: Open Link Target in Firefox - file://C:\Documents and Settings\Svein Saure\Programdata\Mozilla\Firefox\Profiles\xfsm7tqt.default\extensions\{5D558C43-550F-4b12-84AB-0D8ABDA9F975}\firefoxviewlink.html O8 - Extra context menu item: Open with GetRight Browser - C:\Programfiler\GetRight\GRbrowse.htm O8 - Extra context menu item: View This Page in Firefox - file://C:\Documents and Settings\Svein Saure\Programdata\Mozilla\Firefox\Profiles\xfsm7tqt.default\extensions\{5D558C43-550F-4b12-84AB-0D8ABDA9F975}\firefoxviewpage.html O8 - Extra context menu item: Øyeblikksbilde av siden i hurtigbufferen - res://c:\programfiler\google\GoogleToolbar2.dll/cmcache.html O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_02\bin\npjpi150_02.dll O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Programfiler\Java\jre1.5.0_02\bin\npjpi150_02.dll O9 - Extra button: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Programfiler\Norton SystemWorks\Norton Cleanup\WCQuick.lnk O9 - Extra 'Tools' menuitem: Express Cleanup - {5E638779-1818-4754-A595-EF1C63B87A56} - C:\Programfiler\Norton SystemWorks\Norton Cleanup\WCQuick.lnk O16 - DPF: {0D41B8C5-2599-4893-8183-00195EC8D5F9} - http://support.asus.com/common/asusTek_sys_ctrl.cab O16 - DPF: {0EB0E74A-2A76-4AB3-A7FB-9BD8C29F7F75} (CKAVWebScan Object) - http://www.kaspersky.com/kos/english...an_unicode.cab O16 - DPF: {106E49CF-797A-11D2-81A2-00E02C015623} - http://www.alternatiff.com/install/00/alttiff.cab O16 - DPF: {39D420B3-E0EB-424C-89AA-C24F8DE7EF79} - http://www.tvkoo.com/update/KooPlayer.ocx O16 - DPF: {6BD88D94-03D2-4ABF-99A3-78E9C87DFCA5} (aComp Class) - http://agresso.eltelnetworks.com/agr...m/axmlcomp.cab O16 - DPF: {D8575CE3-3432-4540-88A9-85A1325D3375} (e-Safekey) - https://nettbank.fokus.no/html/activ.../e-Safekey.cab O16 - DPF: {FA945BB6-9D37-43FC-9B2A-AF09F56CBBF0} (moDiagCollectionActiveX Object) - http://www.musicmatch.com/form/suppo...ionControl.cab O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing) O20 - Winlogon Notify: LMIinit - C:\WINDOWS2\SYSTEM32\LMIinit.dll O20 - Winlogon Notify: WgaLogon - C:\WINDOWS2\SYSTEM32\WgaLogon.dll O20 - Winlogon Notify: WRNotifier - WRLogonNTF.dll (file missing) O23 - Service: Adobe LM Service - Adobe Systems - C:\Programfiler\Fellesfiler\Adobe Systems Shared\Service\Adobelmsvc.exe O23 - Service: Automatisk LiveUpdate-planlegging - Symantec Corporation - C:\Programfiler\Symantec\LiveUpdate\ALUSchedulerSvc.exe O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccEvtMgr.exe O23 - Service: Symantec Internet Security Password Validation (ccISPwdSvc) - Symantec Corporation - C:\Programfiler\Norton Internet Security\ccPwdSvc.exe O23 - Service: Symantec Network Proxy (ccProxy) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccProxy.exe O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\ccSetMgr.exe O23 - Service: COM Host (comHost) - Symantec Corporation - C:\Programfiler\Norton Internet Security\comHost.exe O23 - Service: Diskeeper - Diskeeper Corporation - C:\Programfiler\Diskeeper Corporation\Diskeeper\DkService.exe O23 - Service: ewido security suite control - ewido networks - C:\Programfiler\ewido anti-malware\ewidoctrl.exe O23 - Service: GoBack Polling Service (GBPoll) - Symantec Corporation - C:\Programfiler\Norton SystemWorks\Norton GoBack\GBPoll.exe O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Programfiler\Fellesfiler\InstallShield\Driver\11\Intel 32\IDriverT.exe O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Programfiler\Ahead\InCD\InCDsrv.exe O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE O23 - Service: LogMeIn Maintenance Service (LMIMaint) - LogMeIn, Inc. - C:\Programfiler\LogMeIn\RaMaint.exe O23 - Service: LogMeIn - LogMeIn, Inc. - C:\Programfiler\LogMeIn\LogMeIn.exe O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Programfiler\Fellesfiler\Macromedia Shared\Service\Macromedia Licensing.exe O23 - Service: Norton AntiVirus Auto-Protect-tjeneste (navapsvc) - Symantec Corporation - C:\Programfiler\Norton Internet Security\Norton AntiVirus\navapsvc.exe O23 - Service: Norton UnErase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE O23 - Service: Norton Protection Center Service (NSCService) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\Security Console\NSCSRVCE.EXE O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS2\system32\nvsvc32.exe O23 - Service: Symantec AVScan (SAVScan) - Symantec Corporation - C:\Programfiler\Norton Internet Security\Norton AntiVirus\SAVScan.exe O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\SNDSrvc.exe O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\SPBBC\SPBBCSvc.exe O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE O23 - Service: Symantec Core LC - Symantec Corporation - C:\Programfiler\Fellesfiler\Symantec Shared\CCPD-LC\symlcsvc.exe O23 - Service: V2i Protector - PowerQuest Corporation - C:\Programfiler\PowerQuest\Drive Image 7.0\Agent\PQV2iSvc.exe O23 - Service: Washer AutoComplete (wwSecSvc) - Webroot Software, Inc. - C:\WINDOWS2\system32\wwSecure.exe ------------------------------------------------------------------------------- KASPERSKY ON-LINE SCANNER REPORT Wednesday, May 24, 2006 9:11:21 PM Operating System: Microsoft Windows XP Home Edition, Service Pack 2 (Build 2600) Kaspersky On-line Scanner version: 5.0.78.0 Kaspersky Anti-Virus database last update: 24/05/2006 Kaspersky Anti-Virus database records: 196052 ------------------------------------------------------------------------------- Scan Settings: Scan using the following antivirus database: extended Scan Archives: true Scan Mail Bases: true Scan Target - My Computer: A:\ C:\ D:\ E:\ F:\ G:\ H:\ Scan Statistics: Total number of scanned objects: 84755 Number of viruses found: 13 Number of infected objects: 33 Number of suspicious objects: 0 Duration of the scan process: 01:03:01 Infected Object Name / Virus Name / Last Action C:\Documents and Settings\All Users\Programdata\Symantec\Norton AntiVirus\Quarantine\248E2DF7.zip/Matrix.class Infected: Trojan-Downloader.Java.OpenStream.c skipped C:\Documents and Settings\All Users\Programdata\Symantec\Norton AntiVirus\Quarantine\248E2DF7.zip ZIP: infected - 1 skipped C:\Documents and Settings\All Users\Programdata\Symantec\Norton AntiVirus\Quarantine\248E2DF7.zip CryptFF: infected - 1 skipped C:\Documents and Settings\Svein Saure\.housecall\Quarantine\keyfinder.exe.bac_a00632/data.rar/xpkey.exe Infected: not-a-virus:PSWTool.Win32.RAS.a skipped C:\Documents and Settings\Svein Saure\.housecall\Quarantine\keyfinder.exe.bac_a00632/data.rar/officekey.exe Infected: not-a-virus:PSWTool.Win32.RAS.a skipped C:\Documents and Settings\Svein Saure\.housecall\Quarantine\keyfinder.exe.bac_a00632/data.rar Infected: not-a-virus:PSWTool.Win32.RAS.a skipped C:\Documents and Settings\Svein Saure\.housecall\Quarantine\keyfinder.exe.bac_a00632 RarSFX: infected - 3 skipped C:\Documents and Settings\Svein Saure\.housecall\Quarantine\keyfinder.exe.bac_a00632 CryptFF.b: infected - 3 skipped C:\Documents and Settings\Svein Saure\.housecall\Quarantine\ms1.exe.bac_a03944 Infected: Trojan-Downloader.Win32.Agent.aea skipped C:\Documents and Settings\Svein Saure\.housecall\Quarantine\paytime.exe.bac_a03944 Infected: Trojan.Win32.StartPage.adi skipped C:\Documents and Settings\Svein Saure\.housecall\Quarantine\toolbar.exe.bac_a00632 Infected: Trojan-Downloader.Win32.Adload.q skipped C:\Documents and Settings\Svein Saure\.housecall\Quarantine\toolbar.exe.bac_a03944 Infected: Trojan-Downloader.Win32.Adload.q skipped C:\Documents and Settings\Svein Saure\Programdata\Sun\Java\Deployment\cache\javapi\v1.0\jar\loaderadv408.jar-2fa90dc9-48c288ee.zip/Matrix.class Infected: Trojan-Downloader.Java.OpenStream.c skipped C:\Documents and Settings\Svein Saure\Programdata\Sun\Java\Deployment\cache\javapi\v1.0\jar\loaderadv408.jar-2fa90dc9-48c288ee.zip ZIP: infected - 1 skipped C:\Programfiler\BearShare\Installer\BSInstall5.2.1.2.exe/WISE0024.BIN Infected: not-a-virus:AdWare.Win32.SaveNow.bo skipped C:\Programfiler\BearShare\Installer\BSInstall5.2.1.2.exe WiseSFX: infected - 1 skipped C:\Programfiler\BearShare\Installer\BSInstall5.2.1.2.exe WiseSFX Dropper: infected - 1 skipped C:\System Volume Information\_restore{EA9C3A3A-E679-46A3-8B99-F3395F819CE7}\RP54\A0005678.sys Infected: SpamTool.Win32.Mailbot.aq skipped C:\System Volume Information\_restore{EA9C3A3A-E679-46A3-8B99-F3395F819CE7}\RP57\A0005794.exe Infected: not-virus:Hoax.Win32.Renos.bm skipped C:\System Volume Information\_restore{EA9C3A3A-E679-46A3-8B99-F3395F819CE7}\RP57\A0005795.exe Infected: Trojan-Downloader.Win32.Tiny.bi skipped C:\System Volume Information\_restore{EA9C3A3A-E679-46A3-8B99-F3395F819CE7}\RP57\A0005796.exe Infected: Trojan-Dropper.Win32.Small.amd skipped C:\System Volume Information\_restore{EA9C3A3A-E679-46A3-8B99-F3395F819CE7}\RP63\A0006936.exe Infected: Trojan-Spy.Win32.Goldun.hw skipped E:\Privat\Div. småprogram\keyfinder.exe/data.rar/xpkey.exe Infected: not-a-virus:PSWTool.Win32.RAS.a skipped E:\Privat\Div. småprogram\keyfinder.exe/data.rar/officekey.exe Infected: not-a-virus:PSWTool.Win32.RAS.a skipped E:\Privat\Div. småprogram\keyfinder.exe/data.rar Infected: not-a-virus:PSWTool.Win32.RAS.a skipped E:\Privat\Div. småprogram\keyfinder.exe RarSFX: infected - 3 skipped E:\Privat\Div. småprogram\VIVIPLAY\viviplay.exe Infected: Trojan-Dropper.Win32.Agent.ams skipped E:\Privat\Setups\CCleaner\ccsetup126.exe/stream/data0006 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped E:\Privat\Setups\CCleaner\ccsetup126.exe/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped E:\Privat\Setups\CCleaner\ccsetup126.exe NSIS: infected - 2 skipped E:\Privat\Setups\CCleaner\ccsetup128.exe/stream/data0006 Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped E:\Privat\Setups\CCleaner\ccsetup128.exe/stream Infected: not-a-virus:RiskTool.Win32.PsKill.n skipped E:\Privat\Setups\CCleaner\ccsetup128.exe NSIS: infected - 2 skipped Scan process completed. Waiting for your instructions :-) Svein |
|
|
|
|
#7 (permalink) |
|
Assistant Manager, TSF Academy; Moderator/Analyst Security Team
Join Date: Jan 2005
Location: Ohio
Posts: 26,962
OS: WinXP and Vista
|
Hello Svein,
P2P - I see you have P2P software (BearShare) installed on your machine. We are not here to pass judgment on file-sharing as a concept. However, we will warn you that engaging in this activity and having this kind of software installed on your machine will always make you more susceptible to re-infections. It may be contributing to your current situation. This page will give you further information. ----------------------------------------- Viviplay is reported as being infected. Upload this file E:\Privat\Div. småprogram\VIVIPLAY\viviplay.exe to http://virusscan.jotti.org/ and submit it. Wait for the analysis and post it here. |
|
|
|
|
#8 (permalink) |
|
Registered User
Join Date: May 2006
Posts: 9
OS: Win Xp
|
Results from Jotti on the viviplay.exe :
File: viviplay.exe Status: INFECTED/MALWARE (Note: this file has been scanned before. Therefore, this file's scan results will not be stored in the database) MD5 aa3f58497488af1d282b1abcdcfd4f18 Packers detected: PEBUNDLE, UPX Scanner results AntiVir Found nothing ArcaVir Found nothing Avast Found nothing AVG Antivirus Found nothing BitDefender Found nothing ClamAV Found nothing Dr.Web Found nothing F-Prot Antivirus Found nothing Fortinet Found PossibleThreat!01836 Kaspersky Anti-Virus Found Trojan-Dropper.Win32.Agent.ams NOD32 Found nothing Norman Virus Control Found nothing UNA Found nothing VirusBuster Found nothing VBA32 Found nothing The Viviplay is a program I never use, so I have uninstalled it /deleted this program form my computer now. Svein |
|
|
|
|
#9 (permalink) |
|
Assistant Manager, TSF Academy; Moderator/Analyst Security Team
Join Date: Jan 2005
Location: Ohio
Posts: 26,962
OS: WinXP and Vista
|
Hello Svein,
That would have been my recommendation as well. Your logs are clean. If there aren't any more problems, please continue with these final instructions and helpful links. Reset hidden/system files and folders Windows XP =============== Click Start. * Open My Computer. * Select the Tools menu and click Folder Options. * Select the View tab. * Deselect the Show hidden files and folders option. * Select the Hide file extensions for known types option. * Select the Hide protected operating system files option. Click Yes to confirm. Click OK. Enable Windows Auto Update *Go to Start>Run - type wuaucpl.cpl *Tick on the checkbox - "Keep my computer up to date" *Under Settings, choose "Automatically download the updates, and install them on the schedule that I specify". Click on "OK". Create a new System Restore point Click Start >> Run - type SYSDM.CPL & press Enter * Select the System Restore Tab * Tick on the checkbox - "Turn off System Restore on all drives" Click Apply * Then untick the same checkbox & click OK This will prevent any reinfection from previous restore points. In light of your recent issue, I'm sure you'll like to avoid any future infections. Please take a look at these well written articles: HOW DID I GET INFECTED IN THE FIRST PLACE? by Tony Klein THE ANTI-SPYWARE TUTORIAL MAKING INTERNET EXPLORER SAFER Understanding and Using Firewalls **Be very wary with any security software that is advertised in popups or in other ways. They are not only usually of no use, but often have malware in them. More information and free downloads are available at the following links: Download SpywareBlaster 3.5.1 to help prevent spyware from installing in the first place. Install & update SpywareBlaster with the latest definitions. After you have updated, click the button - enable protection for all unprotected items . Download Spyware Guard to catch and block spyware before it can execute. Download IE-SPYAD.EXE to block access to malicious websites so you cannot be redirected to them from an infected site or email. This is a self-extracting .ZIP file, and save it to your desktop. Once downloaded, double-click on it to extract the files inside (default dir is C:\IE-SPYAD) From within the folder, double-click install.bat Select Option #2 - Install the new IE-SPYAD list, by typing 2 Then return to the main menu. Select option #4 - Add the old porn sites domain, by typing 4 Update all these programs regularly. Without regular updates you will not be protected when new malicious programs are released. Follow this list and your potential for being infected again will reduce dramatically.
|
|
|
| Thread Tools | |
|
|