Go Back   Tech Support Forum > Security Center > Virus/Trojan/Spyware Help > Inactive Malware Help Topics

User Tag List

IE6 broken, Norton broken, other programs broken

This is a discussion on IE6 broken, Norton broken, other programs broken within the Inactive Malware Help Topics forums, part of the Tech Support Forum category. Log: Logfile of HijackThis v1.99.1 Scan saved at 11:15:47 PM, on 9/28/2007 Platform: Windows XP SP2 (WinNT 5.01.2600) MSIE: Internet


 
 
Thread Tools Search this Thread
Old 09-28-2007, 11:51 PM   #1
Guest
 
Join Date: Sep 2007
Posts: 25
OS:



Log:
Logfile of HijackThis v1.99.1
Scan saved at 11:15:47 PM, on 9/28/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\Program Files\Stanford\PC-Leland\krbcc32s.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\PROGRA~1\SYMNET~1\SNDMon.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\YPOPs\YPOPs.exe
C:\Program Files\BigFix Enterprise\BES Client\BESClient.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE
C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE
C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\OpenAFS\Client\Program\afsd_service.exe
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\WINDOWS\system32\taskmgr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Symantec AntiVirus\VPC32.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Documents and Settings\Steve Sha\My Documents\Downloads\HJT\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://ie.redirect.hp.com/svs/rdr?TY...lion&pf=laptop
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.comcast.net/
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://ie.redirect.hp.com/svs/rdr?TY...lion&pf=laptop
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - (no file)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Enterprise
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - Startup: YPOPs.lnk = ?
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O8 - Extra context menu item: Save Flash - res://C:\Program Files\UnH Solutions\Flash Saving Plugin\FlashSButton.dll/210
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra button: Flash - {43CF38F3-5AEC-45a3-AD31-04EB06E9C6CA} - C:\Program Files\UnH Solutions\Flash Saving Plugin\FlashSButton.dll (HKCU)
O14 - IERESET.INF: START_PAGE_URL=https://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=Q105&bd=pavilion&pf=laptop
O15 - Trusted Zone: *.doginhispen.com
O15 - Trusted Zone: *.whataboutadog.com
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - https://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {26BFFB87-5B07-4611-82BB-AF3947013FDD} - https://www.lexis.com/dl/IEDAP.cab
O16 - DPF: {4CCA4E80-9259-11D9-AC6E-444553544200} (FixController Control) - https://h30155.www3.hp.com/ediags/dd/...lMgr_v01_5.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - https://upload.facebook.com/controls/...toUploader.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - https://go.divx.com/plugin/DivXBrowserPlugin.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: AfsLogon - C:\WINDOWS\system32\afslogon.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O20 - Winlogon Notify: KFWLogon - C:\WINDOWS\system32\afslogon.dll
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\system32\NavLogon.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: BES Client (BESClient) - BigFix Inc. - C:\Program Files\BigFix Enterprise\BES Client\BESClient.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\SHARED\HPQWMI.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: OpenAFS Client (TransarcAFSDaemon) - OpenAFS Project - C:\Program Files\OpenAFS\Client\Program\afsd_service.exe



Hi there,

Some weird stuff has been happening starting today. It started when I was video chatting on Skype and then the video stopped working (I use a Logitech webcam). After restarting, the Logitech webcam software would not load when I opened the executible. (I had a similar problem last week when I Skype crashed and I tried to reload it, but it would not open--the task manager said that Skype was running, but I could not end that task using the task manager; I could only resolve the problem by restarting the computer.) Then, IE6 would not load when I tried to open it--the IE window would open, and the page would say it was loading, but it would never load. I had to shut it down using the task manager (I am now using Firefox). I left the task manager open and noticed that after I shut down IE, it would appear again later in the task manager even when I did not open it; after ending the task it would again re-appear later. Upon restarting the computer, I noticed that IE also started with the computer without me opening it, but that was only visible in the task manager, now internet explorer window actually opened.

I then noticed that my anti-virus program (Symantec Norton Corporate Ed.) was no longer appearing in my system tray and seemed not to be running in the background. I could open it manually, though, and I ran a full system scan but it did not find anything. I then ran Spybot (nothing found), Ewido Anti-malware (some tracking cookies removed), CCleaner, Spyblaster. I tried running PandaScan but Firefox is not supported--and my IE is still busted.

I thought that there might be a startup item as a cause and examined my startup items--there was one item: rundll32 (Command: rundll32.exe bthprops.cpl,,BluetoothAuthenticationAgent) that I did not recognize and I saw on some sites that it could be a worm so I stopped it from starting up. Since then, I've noticed that even though IE does not work still, after I end the instance of it after restarting through the task manager, it no longer re-appears after a while. However, when I try to open it, it still fails as before (no error, just does not load and freezes--you cannot click on any of the buttons etc.).

Anyway, I haven't noticed any other symptoms yet, but I will add amendments if things come up. Please let me know if you can help! Thank you so very much!

Best,
Steve
ssha16 is offline  
Sponsored Links
Advertisement
 
Old 09-29-2007, 03:47 PM   #2
Guest
 
Join Date: Sep 2007
Posts: 25
OS:



Hi again,

I think I may have semi-repaired the problem. I re-installed Norton, and now it is no longer broken I think--the system tray icon is there and auto-protect works. No viruses were detected however. IEXPLORER.exe no longer runs with start-up, and it no longer re-appears as well, BUT internet explorer STILL does not work. Basically, I open it, the browser window opens, it tries to load, but then it just simply stops trying to load and effectively freezes. I have to close it through the task manager. No error message pops up, it's just a blank browser window.

I just tried installing IE7 to perhaps fix the problem, but IE7 would not install all the way so it's still broken. Here's an updated HJT log; thank you!

Logfile of HijackThis v1.99.1
Scan saved at 3:47:18 PM, on 9/29/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\QuickTime\qttask.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\YPOPs\YPOPs.exe
C:\Program Files\BigFix Enterprise\BES Client\BESClient.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\Program Files\Common Files\Logitech\KHAL\KHALMNPR.EXE
C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE
C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\OpenAFS\Client\Program\afsd_service.exe
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Documents and Settings\Steve Sha\My Documents\Downloads\HJT\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://ie.redirect.hp.com/svs/rdr?TY...lion&pf=laptop
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = https://www.comcast.net/
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://ie.redirect.hp.com/svs/rdr?TY...lion&pf=laptop
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - (no file)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Enterprise
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\bak\qttask.exe" -atboottime
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - Startup: YPOPs.lnk = ?
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=https://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=Q105&bd=pavilion&pf=laptop
O15 - Trusted Zone: *.doginhispen.com
O15 - Trusted Zone: *.whataboutadog.com
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - https://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {26BFFB87-5B07-4611-82BB-AF3947013FDD} - https://www.lexis.com/dl/IEDAP.cab
O16 - DPF: {4CCA4E80-9259-11D9-AC6E-444553544200} (FixController Control) - https://h30155.www3.hp.com/ediags/dd/...lMgr_v01_5.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - https://upload.facebook.com/controls/...toUploader.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - https://go.divx.com/plugin/DivXBrowserPlugin.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: AfsLogon - C:\WINDOWS\system32\afslogon.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O20 - Winlogon Notify: KFWLogon - C:\WINDOWS\system32\afslogon.dll
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\system32\NavLogon.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: BES Client (BESClient) - BigFix Inc. - C:\Program Files\BigFix Enterprise\BES Client\BESClient.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\SHARED\HPQWMI.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: OpenAFS Client (TransarcAFSDaemon) - OpenAFS Project - C:\Program Files\OpenAFS\Client\Program\afsd_service.exe
ssha16 is offline  
Old 09-29-2007, 04:46 PM   #3
Guest
 
Join Date: Sep 2007
Posts: 25
OS:



Hi again,

I've just restarted, and the IE problem still is there actually (it starts with the system start as a task). Thanks,
Steve
ssha16 is offline  
Sponsored Links
Advertisement
 
Old 10-01-2007, 04:14 PM   #4
Security Team
Analyst
 
forhockey's Avatar
 
Join Date: Sep 2006
Location: Ontario, Canada
Posts: 3,025
OS: Windows 7 Ultimate



Hi and welcome to TSF.

Please subscribe to this thread so that you are notified when you receive a reply. To do this click Thread Tools, then click Subscribe to this Thread. Make sure it is set to Instant Notification, then click Add Subscription.

--------------------------------------------------------------

Before beginning the proposed fix, read this post completely. Any questions should be kindly asked before proceeding. Ensure that there are no open browsers when carrying out the procedures below. Save the following instructions in Notepad as this webpage would not be available when you're carrying out the fix.

It is IMPORTANT that you don't miss a step & perform everything in the correct order/sequence.

--------------------------------------------------------------

Please download FindAWF to your Desktop.

Double-click FindAWF.exe to start the tool.
Select option #1 - Scan for bak folders by typing 1 and press "Enter"
When the tool has completed, a report will open up in notepad. Please post the results of the awf.txt here.

**Do not run any other option unless instructed to**
__________________


Proud Member of ASAP
Proud Member of UNITE

Microsoft MVP - Consumer Security 2009
forhockey is offline  
Old 10-01-2007, 04:38 PM   #5
Guest
 
Join Date: Sep 2007
Posts: 25
OS:



Hi!

Thanks, here's the AWF report:


Find AWF report by noahdfear ©2006
Version 1.40

The current date is: Mon 10/01/2007
The current time is: 16:29:31.70


bak folders found
~~~~~~~~~~~


Directory of C:\PROGRA~1\ITUNES\BAK

06/14/2006 04:24 PM 278,528 iTunesHelper.exe
1 File(s) 278,528 bytes

Directory of C:\PROGRA~1\QUICKT~1\BAK

06/07/2006 08:58 PM 282,624 qttask.exe
1 File(s) 282,624 bytes

Directory of C:\PROGRA~1\SYMANT~1\BAK

03/14/2007 07:49 PM 125,632 VPTray.exe
1 File(s) 125,632 bytes

Directory of C:\PROGRA~1\SYMNET~1\BAK

08/09/2006 05:08 AM 104,128 SNDMon.exe
1 File(s) 104,128 bytes

Directory of C:\PROGRA~1\WINDOW~1\BAK

10/18/2006 06:05 PM 204,288 WMPNSCFG.exe
1 File(s) 204,288 bytes

Directory of C:\WINDOWS\SYSTEM32\BAK

08/04/2004 01:00 AM 15,360 ctfmon.exe
08/24/2005 12:47 PM 77,824 hkcmd.exe
08/24/2005 12:51 PM 114,688 igfxpers.exe
08/24/2005 12:50 PM 94,208 igfxtray.exe
4 File(s) 302,080 bytes

Directory of C:\PROGRA~1\COMMON~1\SYMANT~1\BAK

02/17/2006 11:05 AM 59,040 ccApp.exe
1 File(s) 59,040 bytes

Directory of C:\PROGRA~1\GOOGLE\GOOGLE~1\BAK

06/30/2007 08:48 PM 68,856

GoogleToolbarNotifier.exe
1 File(s) 68,856 bytes

Directory of C:\PROGRA~1\HPQ\QUICKL~1\BAK

09/17/2004 05:19 PM 290,816 EabServr.exe
1 File(s) 290,816 bytes

Directory of C:\PROGRA~1\SYNAPT~1\SYNTP\BAK

11/04/2004 06:38 PM 688,218 SynTPEnh.exe
11/04/2004 06:40 PM 98,394 SynTPLpr.exe
2 File(s) 786,612 bytes

Directory of C:\WINDOWS\IME\IMJP8_1\BAK

08/04/2004 06:00 AM 208,952 IMJPMIG.EXE
1 File(s) 208,952 bytes

Directory of C:\PROGRA~1\COMMON~1\LOGISHRD\LCOMMGR\BAK

05/11/2007 05:25 PM 505,368

Communications_Helper.exe
1 File(s) 505,368 bytes

Directory of C:\WINDOWS\SYSTEM32\IME\PINTLGNT\BAK

08/04/2004 06:00 AM 59,392 ImScInst.exe
1 File(s) 59,392 bytes

Directory of C:\WINDOWS\SYSTEM32\IME\TINTLGNT\BAK

08/04/2004 06:00 AM 455,168 TINTSETP.EXE
1 File(s) 455,168 bytes


Duplicate files of bak directory contents
~~~~~~~~~~~~~~~~~~~~~~~

267064 Sep 14 2007 "C:\Program

Files\iTunes\iTunesHelper.exe1190939531"
278528 Jun 14 2006 "C:\Program

Files\iTunes\bak\iTunesHelper.exe"
102400 Sep 29 2007 "C:\WINDOWS\Installer\{B045B608-4A47-

4C77-9EAD-06C394503306}\iTunesIco.exe"
116024 Sep 29 2007 "C:\WINDOWS\Temp\Temporary Internet

Files\Content.IE5\0TQN0LQR\iTunesSetupAdmin[1].exe"
116024 Sep 29 2007 "C:\Documents and Settings\All

Users\Application Data\Apple Computer\Installer Cache\iTunes

7.4.3.1\iTunesSetupAdmin.exe"
24592 Sep 27 2007 "C:\Program Files\QuickTime\qttask.exe"
282624 Jun 7 2006 "C:\Program

Files\QuickTime\bak\qttask.exe"
125632 Mar 14 2007 "C:\Program Files\Symantec

AntiVirus\VPTray.exe"
125632 Mar 14 2007 "C:\Program Files\Symantec

AntiVirus\bak\VPTray.exe"
104080 Sep 29 2007 "C:\Program Files\SymNetDrv\SNDMon.exe"
104128 Aug 9 2006 "C:\Program

Files\SymNetDrv\bak\SNDMon.exe"
24592 Sep 27 2007 "C:\Program Files\Windows Media

Player\WMPNSCFG.exe"
204288 Oct 18 2006 "C:\Program Files\Windows Media

Player\bak\WMPNSCFG.exe"
15360 Aug 4 2004 "C:\WINDOWS\system32\ctfmon.exe"
15360 Aug 4 2004 "C:\WINDOWS\system32\bak\ctfmon.exe"
118784 Jun 17 2004 "C:\swsetup\SP28484\hkcmd.exe"
118784 Jun 17 2004 "C:\swsetup\Video\hkcmd.exe"
118784 Jun 17 2004 "C:\swsetup\SP28484\Win2000\hkcmd.exe"
118784 Jun 17 2004 "C:\swsetup\Video\Win2000\hkcmd.exe"
77824 Aug 24 2005 "C:\WINDOWS\system32\bak\hkcmd.exe"
118784 Jun 17 2004

"C:\WINDOWS\Drivers\Intel\Graphics\win2000\hkcmd.exe"
118784 Jun 17 2004 "C:\WINDOWS\system32

\ReinstallBackups\0014\DriverFiles\hkcmd.exe"
118784 Jun 17 2004 "C:\WINDOWS\system32

\ReinstallBackups\0015\DriverFiles\hkcmd.exe"
118784 Jun 17 2004 "C:\WINDOWS\system32

\ReinstallBackups\0016\DriverFiles\hkcmd.exe"
114688 Aug 24 2005 "C:\WINDOWS\system32\bak\igfxpers.exe"
155648 Jun 17 2004 "C:\swsetup\SP28484\igfxtray.exe"
155648 Jun 17 2004 "C:\swsetup\Video\igfxtray.exe"
155648 Jun 17 2004 "C:\swsetup\SP28484\Win2000

\igfxtray.exe"
155648 Jun 17 2004 "C:\swsetup\Video\Win2000\igfxtray.exe"
94208 Aug 24 2005 "C:\WINDOWS\system32\bak\igfxtray.exe"
155648 Jun 17 2004

"C:\WINDOWS\Drivers\Intel\Graphics\win2000\igfxtray.exe"
155648 Jun 17 2004 "C:\WINDOWS\system32

\ReinstallBackups\0014\DriverFiles\igfxtray.exe"
155648 Jun 17 2004 "C:\WINDOWS\system32

\ReinstallBackups\0015\DriverFiles\igfxtray.exe"
155648 Jun 17 2004 "C:\WINDOWS\system32

\ReinstallBackups\0016\DriverFiles\igfxtray.exe"
52840 Nov 21 2006 "C:\Program Files\Common Files\Symantec

Shared\ccApp.exe"
59040 Feb 17 2006 "C:\Program Files\Common Files\Symantec

Shared\bak\ccApp.exe"
58488 Aug 14 2004 "C:\swsetup\NAV05\02

\Support\ccCommon\ccCommon\ccApp.exe"
58488 Aug 14 2004 "C:\swsetup\NAV05\37

\Support\ccCommon\ccCommon\ccApp.exe"
58488 Aug 14 2004 "C:\swsetup\NAV05

\US\Support\ccCommon\ccCommon\ccApp.exe"
52272 Jan 27 2007 "C:\Program

Files\Google\googletoolbar3user.exe"
24592 Sep 27 2007 "C:\Program

Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe119

0940358"
138168 Jan 27 2007 "C:\Program Files\Google\Common\Google

Updater\GoogleUpdaterService.exe"
68856 Jun 30 2007 "C:\Program

Files\Google\GoogleToolbarNotifier\bak\GoogleToolbarNotifier.ex

e"
290816 Sep 17 2004 "C:\Program Files\HPQ\Quick Launch

Buttons\bak\EabServr.exe"
688218 Nov 4 2004 "C:\swsetup\SP29294\SynTPEnh.exe"
688218 Oct 5 2004 "C:\swsetup\Touchpad\SynTPEnh.exe"
827392 Jun 8 2007 "C:\Program

Files\Synaptics\SynTP\SynTPEnh.exe"
688218 Nov 4 2004 "C:\Program

Files\Synaptics\SynTP\bak\SynTPEnh.exe"
688218 Nov 4 2004 "C:\Program

Files\Synaptics\SynTP\Media\SynTPEnh.exe"
688218 Nov 4 2004 "C:\WINDOWS\system32

\ReinstallBackups\0011\DriverFiles\SynTPEnh.exe"
98394 Nov 4 2004 "C:\swsetup\SP29294\SynTPLpr.exe"
98394 Oct 5 2004 "C:\swsetup\Touchpad\SynTPLpr.exe"
24592 Sep 27 2007 "C:\Program

Files\Synaptics\SynTP\SynTPLpr.exe"
98394 Nov 4 2004 "C:\Program

Files\Synaptics\SynTP\bak\SynTPLpr.exe"
98394 Nov 4 2004 "C:\Program

Files\Synaptics\SynTP\Media\SynTPLpr.exe"
24592 Sep 27 2007 "C:\WINDOWS\system32

\ReinstallBackups\0011\DriverFiles\SynTPLpr.exe"
208952 Aug 4 2004 "C:\WINDOWS\ime\imjp8_1\imjpmig.exe"
208952 Aug 4 2004 "C:\WINDOWS\ime\imjp8_1\bak\IMJPMIG.EXE"
563984 Jul 25 2007 "C:\Program Files\Common

Files\LogiShrd\LComMgr\Communications_Helper.exe"
505368 May 11 2007 "C:\Program Files\Common

Files\LogiShrd\LComMgr\bak\Communications_Helper.exe"
59392 Aug 4 2004 "C:\WINDOWS\system32

\IME\PINTLGNT\imscinst.exe"
59392 Aug 4 2004 "C:\WINDOWS\system32

\IME\PINTLGNT\bak\ImScInst.exe"
455168 Aug 4 2004 "C:\WINDOWS\system32

\IME\TINTLGNT\tintsetp.exe"
455168 Aug 4 2004 "C:\WINDOWS\system32

\IME\TINTLGNT\bak\TINTSETP.EXE"


end of report


Thanks!
ssha16 is offline  
Old 10-01-2007, 06:00 PM   #6
Security Team
Analyst
 
forhockey's Avatar
 
Join Date: Sep 2006
Location: Ontario, Canada
Posts: 3,025
OS: Windows 7 Ultimate



Before beginning the proposed fix, read this post completely. Any questions should be kindly asked before proceeding. Ensure that there are no open browsers when carrying out the procedures below. Save the following instructions in Notepad as this webpage would not be available when you're carrying out the fix.

It is IMPORTANT that you don't miss a step & perform everything in the correct order/sequence.

--------------------------------------------------------------------

Please make sure wordwrap is OFF when posting the logs.

Format Menu -> Word Wrap (No Check mark)

--------------------------------------------------------------------

Download ResetProtocolDefaults.reg. Save it to your desktop, but do not run it yet.

--------------------------------------------------------------------

Please reboot your computer in Safe Mode by doing the following:
1) Restart your computer
2) After hearing your computer beep once during startup, but before the Windows icon appears, press F8.
3) Instead of Windows loading as normal, a menu should appear
4) Use the up arrow key to highlight Safe Mode and press Enter.
5) Login with your usual account. Make sure to close any open browsers.

--------------------------------------------------------------------

Double-click FindAWF.exe to start the tool.
  • Select option #2 - Restore files from bak folders bu typing 2 and press 'Enter'
  • A text file will open up. Please copy/paste the following bolded text into the text file:


    "C:\Program Files\QuickTime\bak\qttask.exe"
    "C:\Program Files\SymNetDrv\bak\SNDMon.exe"
    "C:\Program Files\Windows Media Player\bak\WMPNSCFG.exe"
    "C:\Program Files\Common Files\Symantec Shared\bak\ccApp.exe"
    "C:\Program Files\HPQ\Quick Launch Buttons\bak\EabServr.exe"
    "C:\Program Files\Synaptics\SynTP\bak\SynTPEnh.exe"
    "C:\Program Files\Synaptics\SynTP\bak\SynTPLpr.exe"
    "C:\Program Files\Common Files\LogiShrd\LComMgr\bak\Communications_Helper.exe"


  • Close the .txt file and click 'Yes' to save the changes.
  • When the tool has completed, a report will open up in notepad. Please post the results of the awf.txt in your next reply.
------------------------------------------------------------

Next, double-click FindAWF.exe to start the tool once again.
  • Select option #4 - Reset Domain Zones by typing 4 and press 'Enter'
  • You will be prompted to answer "Reset the domain zones?" Type 1 and press Enter.
  • After completion, then type E and press 'Enter'
Note: if you use SpywareBlaster and/or IE-SPYAD, it will be necessary to re-install the protection both afford. For SpywareBlaster, run the program and re-protect all items. For IE-SPYAD, run the batch file and reinstall the protection.

------------------------------------------------------------

Locate "ResetProtocolDefaults.reg". Right-click and select: Merge (Ok the prompt)

------------------------------------------------------------

Reboot into Normal Mode.

------------------------------------------------------------

Please run this online scan to search for any remnants. It can take some time, so please be patient and allow it to run it's full course:

Perform an online scan with Internet Explorer with Panda ActiveScan
  1. Click on located at the bottom of the page.
  2. A "pop up" window will appear. * Please ensure that your pop up blocker doesn't block it *
  3. Enter your e-mail address, country, and state & click "Free Online Scan" *The download of the 8 MB Panda's ActiveX control will take place*
Begin the scan by selecting
  • If it finds any malware, it will offer you a report.
  • Please ignore any entry it finds and the offer to buy the program to remove the entry, as we will address this later.
  • Click on then click
* You needn't remain online while it's doing the scan but you have to re-connect after it has finished to see the report.
* Turn off the real time scanner of any existing antivirus program while performing the online scan


------------------------------------------------------------

Please run HiJackThis again, and post a fresh log

------------------------------------------------------------

Please reply back with the following logs:

awf.txt
Panda Online Scan Results
Fresh HiJackThis Log
__________________


Proud Member of ASAP
Proud Member of UNITE

Microsoft MVP - Consumer Security 2009
forhockey is offline  
Old 10-02-2007, 08:02 AM   #7
Guest
 
Join Date: Sep 2007
Posts: 25
OS:



Hi thanks!

Below are the three logs you requested. Also, after I restarted in normal mode, I noticed that IE still started with the computer as a task before I opened it--I'm not sure if that's normal or not. Activescan did find a virus still...

AWF:

Find AWF report by noahdfear ©2006
Version 1.40
Option 2 run successfully

The current date is: Mon 10/01/2007
The current time is: 21:39:27.65


bak folders found
~~~~~~~~~~~


Directory of C:\PROGRA~1\ITUNES\BAK

06/14/2006 04:24 PM 278,528 iTunesHelper.exe
1 File(s) 278,528 bytes

Directory of C:\PROGRA~1\QUICKT~1\BAK

06/07/2006 08:58 PM 282,624 qttask.exe
1 File(s) 282,624 bytes

Directory of C:\PROGRA~1\SYMANT~1\BAK

03/14/2007 07:49 PM 125,632 VPTray.exe
1 File(s) 125,632 bytes

Directory of C:\PROGRA~1\SYMNET~1\BAK

08/09/2006 05:08 AM 104,128 SNDMon.exe
1 File(s) 104,128 bytes

Directory of C:\PROGRA~1\WINDOW~1\BAK

10/18/2006 06:05 PM 204,288 WMPNSCFG.exe
1 File(s) 204,288 bytes

Directory of C:\WINDOWS\SYSTEM32\BAK

08/04/2004 01:00 AM 15,360 ctfmon.exe
08/24/2005 12:47 PM 77,824 hkcmd.exe
08/24/2005 12:51 PM 114,688 igfxpers.exe
08/24/2005 12:50 PM 94,208 igfxtray.exe
4 File(s) 302,080 bytes

Directory of C:\PROGRA~1\COMMON~1\SYMANT~1\BAK

02/17/2006 11:05 AM 59,040 ccApp.exe
1 File(s) 59,040 bytes

Directory of C:\PROGRA~1\GOOGLE\GOOGLE~1\BAK

06/30/2007 08:48 PM 68,856 GoogleToolbarNotifier.exe
1 File(s) 68,856 bytes

Directory of C:\PROGRA~1\HPQ\QUICKL~1\BAK

09/17/2004 05:19 PM 290,816 EabServr.exe
1 File(s) 290,816 bytes

Directory of C:\PROGRA~1\SYNAPT~1\SYNTP\BAK

11/04/2004 06:38 PM 688,218 SynTPEnh.exe
11/04/2004 06:40 PM 98,394 SynTPLpr.exe
2 File(s) 786,612 bytes

Directory of C:\WINDOWS\IME\IMJP8_1\BAK

08/04/2004 06:00 AM 208,952 IMJPMIG.EXE
1 File(s) 208,952 bytes

Directory of C:\PROGRA~1\COMMON~1\LOGISHRD\LCOMMGR\BAK

05/11/2007 05:25 PM 505,368 Communications_Helper.exe
1 File(s) 505,368 bytes

Directory of C:\WINDOWS\SYSTEM32\IME\PINTLGNT\BAK

08/04/2004 06:00 AM 59,392 ImScInst.exe
1 File(s) 59,392 bytes

Directory of C:\WINDOWS\SYSTEM32\IME\TINTLGNT\BAK

08/04/2004 06:00 AM 455,168 TINTSETP.EXE
1 File(s) 455,168 bytes


Duplicate files of bak directory contents
~~~~~~~~~~~~~~~~~~~~~~~

267064 Sep 14 2007 "C:\Program Files\iTunes\iTunesHelper.exe1190939531"
278528 Jun 14 2006 "C:\Program Files\iTunes\bak\iTunesHelper.exe"
102400 Sep 29 2007 "C:\WINDOWS\Installer\{B045B608-4A47-4C77-9EAD-06C394503306}\iTunesIco.exe"
116024 Sep 29 2007 "C:\WINDOWS\Temp\Temporary Internet Files\Content.IE5\0TQN0LQR\iTunesSetupAdmin[1].exe"
116024 Sep 29 2007 "C:\Documents and Settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 7.4.3.1\iTunesSetupAdmin.exe"
282624 Jun 7 2006 "C:\Program Files\QuickTime\qttask.exe"
282624 Jun 7 2006 "C:\Program Files\QuickTime\bak\qttask.exe"
125632 Mar 14 2007 "C:\Program Files\Symantec AntiVirus\VPTray.exe"
125632 Mar 14 2007 "C:\Program Files\Symantec AntiVirus\bak\VPTray.exe"
104128 Aug 9 2006 "C:\Program Files\SymNetDrv\SNDMon.exe"
104128 Aug 9 2006 "C:\Program Files\SymNetDrv\bak\SNDMon.exe"
204288 Oct 18 2006 "C:\Program Files\Windows Media Player\WMPNSCFG.exe"
204288 Oct 18 2006 "C:\Program Files\Windows Media Player\bak\WMPNSCFG.exe"
15360 Aug 4 2004 "C:\WINDOWS\system32\ctfmon.exe"
15360 Aug 4 2004 "C:\WINDOWS\system32\bak\ctfmon.exe"
118784 Jun 17 2004 "C:\swsetup\SP28484\hkcmd.exe"
118784 Jun 17 2004 "C:\swsetup\Video\hkcmd.exe"
118784 Jun 17 2004 "C:\swsetup\SP28484\Win2000\hkcmd.exe"
118784 Jun 17 2004 "C:\swsetup\Video\Win2000\hkcmd.exe"
77824 Aug 24 2005 "C:\WINDOWS\system32\bak\hkcmd.exe"
118784 Jun 17 2004 "C:\WINDOWS\Drivers\Intel\Graphics\win2000\hkcmd.exe"
118784 Jun 17 2004 "C:\WINDOWS\system32\ReinstallBackups\0014\DriverFiles\hkcmd.exe"
118784 Jun 17 2004 "C:\WINDOWS\system32\ReinstallBackups\0015\DriverFiles\hkcmd.exe"
118784 Jun 17 2004 "C:\WINDOWS\system32\ReinstallBackups\0016\DriverFiles\hkcmd.exe"
114688 Aug 24 2005 "C:\WINDOWS\system32\bak\igfxpers.exe"
155648 Jun 17 2004 "C:\swsetup\SP28484\igfxtray.exe"
155648 Jun 17 2004 "C:\swsetup\Video\igfxtray.exe"
155648 Jun 17 2004 "C:\swsetup\SP28484\Win2000\igfxtray.exe"
155648 Jun 17 2004 "C:\swsetup\Video\Win2000\igfxtray.exe"
94208 Aug 24 2005 "C:\WINDOWS\system32\bak\igfxtray.exe"
155648 Jun 17 2004 "C:\WINDOWS\Drivers\Intel\Graphics\win2000\igfxtray.exe"
155648 Jun 17 2004 "C:\WINDOWS\system32\ReinstallBackups\0014\DriverFiles\igfxtray.exe"
155648 Jun 17 2004 "C:\WINDOWS\system32\ReinstallBackups\0015\DriverFiles\igfxtray.exe"
155648 Jun 17 2004 "C:\WINDOWS\system32\ReinstallBackups\0016\DriverFiles\igfxtray.exe"
59040 Feb 17 2006 "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
59040 Feb 17 2006 "C:\Program Files\Common Files\Symantec Shared\bak\ccApp.exe"
58488 Aug 14 2004 "C:\swsetup\NAV05\02\Support\ccCommon\ccCommon\ccApp.exe"
58488 Aug 14 2004 "C:\swsetup\NAV05\37\Support\ccCommon\ccCommon\ccApp.exe"
58488 Aug 14 2004 "C:\swsetup\NAV05\US\Support\ccCommon\ccCommon\ccApp.exe"
52272 Jan 27 2007 "C:\Program Files\Google\googletoolbar3user.exe"
24592 Sep 27 2007 "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe1190940358"
138168 Jan 27 2007 "C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe"
68856 Jun 30 2007 "C:\Program Files\Google\GoogleToolbarNotifier\bak\GoogleToolbarNotifier.exe"
290816 Sep 17 2004 "C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe"
290816 Sep 17 2004 "C:\Program Files\HPQ\Quick Launch Buttons\bak\EabServr.exe"
688218 Nov 4 2004 "C:\swsetup\SP29294\SynTPEnh.exe"
688218 Oct 5 2004 "C:\swsetup\Touchpad\SynTPEnh.exe"
688218 Nov 4 2004 "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
688218 Nov 4 2004 "C:\Program Files\Synaptics\SynTP\bak\SynTPEnh.exe"
688218 Nov 4 2004 "C:\Program Files\Synaptics\SynTP\Media\SynTPEnh.exe"
688218 Nov 4 2004 "C:\WINDOWS\system32\ReinstallBackups\0011\DriverFiles\SynTPEnh.exe"
98394 Nov 4 2004 "C:\swsetup\SP29294\SynTPLpr.exe"
98394 Oct 5 2004 "C:\swsetup\Touchpad\SynTPLpr.exe"
98394 Nov 4 2004 "C:\Program Files\Synaptics\SynTP\SynTPLpr.exe"
98394 Nov 4 2004 "C:\Program Files\Synaptics\SynTP\bak\SynTPLpr.exe"
98394 Nov 4 2004 "C:\Program Files\Synaptics\SynTP\Media\SynTPLpr.exe"
24592 Sep 27 2007 "C:\WINDOWS\system32\ReinstallBackups\0011\DriverFiles\SynTPLpr.exe"
208952 Aug 4 2004 "C:\WINDOWS\ime\imjp8_1\imjpmig.exe"
208952 Aug 4 2004 "C:\WINDOWS\ime\imjp8_1\bak\IMJPMIG.EXE"
505368 May 11 2007 "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
505368 May 11 2007 "C:\Program Files\Common Files\LogiShrd\LComMgr\bak\Communications_Helper.exe"
59392 Aug 4 2004 "C:\WINDOWS\system32\IME\PINTLGNT\imscinst.exe"
59392 Aug 4 2004 "C:\WINDOWS\system32\IME\PINTLGNT\bak\ImScInst.exe"
455168 Aug 4 2004 "C:\WINDOWS\system32\IME\TINTLGNT\tintsetp.exe"
455168 Aug 4 2004 "C:\WINDOWS\system32\IME\TINTLGNT\bak\TINTSETP.EXE"


end of report


HJT:

Logfile of HijackThis v1.99.1
Scan saved at 7:54:59 AM, on 10/2/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\BigFix Enterprise\BES Client\BESClient.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE
C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\OpenAFS\Client\Program\afsd_service.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\YPOPs\YPOPs.exe
C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.EXE
C:\Program Files\Google\GoogleToolbarNotifier\bak\GoogleToolbarNotifier.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\Documents and Settings\Steve Sha\My Documents\Downloads\HJT\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://ie.redirect.hp.com/svs/rdr?TY...lion&pf=laptop
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://ie.redirect.hp.com/svs/rdr?TY...lion&pf=laptop
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - (no file)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Enterprise
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\bak\qttask.exe" -atboottime
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - Startup: YPOPs.lnk = ?
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe (file missing)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=https://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=Q105&bd=pavilion&pf=laptop
O15 - Trusted Zone: *.doginhispen.com
O15 - Trusted Zone: *.whataboutadog.com
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - https://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {26BFFB87-5B07-4611-82BB-AF3947013FDD} - https://www.lexis.com/dl/IEDAP.cab
O16 - DPF: {4CCA4E80-9259-11D9-AC6E-444553544200} (FixController Control) - https://h30155.www3.hp.com/ediags/dd/...lMgr_v01_5.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - https://upload.facebook.com/controls/...toUploader.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - https://go.divx.com/plugin/DivXBrowserPlugin.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - https://acs.pandasoftware.com/actives...ree/asinst.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: AfsLogon - C:\WINDOWS\system32\afslogon.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O20 - Winlogon Notify: KFWLogon - C:\WINDOWS\system32\afslogon.dll
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\system32\NavLogon.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: BES Client (BESClient) - BigFix Inc. - C:\Program Files\BigFix Enterprise\BES Client\BESClient.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\SHARED\HPQWMI.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: OpenAFS Client (TransarcAFSDaemon) - OpenAFS Project - C:\Program Files\OpenAFS\Client\Program\afsd_service.exe


Thanks!

I unchecked wordwrap in notepad, but I'm not sure it's reflected here...I wasn't sure how to make it not wrap in the box...

Thanks for all your help!

I'm putting ht pandascan in a different post becuase it's too long
ssha16 is offline  
Old 10-02-2007, 08:04 AM   #8
Guest
 
Join Date: Sep 2007
Posts: 25
OS:



PandaScan Report:



Incident Status Location

Adware:Adware/XSRemover Not disinfected C:\avenger\backup.zip[avenger/warnhp.html]
Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Guest\Cookies\[email protected][3].txt
Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Guest\Cookies\[email protected][1].txt
Spyware:Cookie/Belnk Not disinfected C:\Documents and Settings\Guest\Cookies\[email protected][2].txt
Spyware:Cookie/Rn11 Not disinfected C:\Documents and Settings\Guest\Cookies\[email protected][2].txt
Spyware:Cookie/Adrevolver Not disinfected C:\Documents and Settings\Steve Sha\Application Data\Mozilla\Firefox\Profiles\ok8qwarq.default\cookies.txt[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Steve Sha\Application Data\Mozilla\Firefox\Profiles\ok8qwarq.default\cookies.txt[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\Steve Sha\Application Data\Mozilla\Firefox\Profiles\ok8qwarq.default\cookies.txt[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\Documents and Settings\Steve Sha\Application Data\Mozilla\Firefox\Profiles\ok8qwarq.default\cookies.txt[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\Documents and Settings\Steve Sha\Application Data\Mozilla\Firefox\Profiles\ok8qwarq.default\cookies.txt[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\Documents and Settings\Steve Sha\Application Data\Mozilla\Firefox\Profiles\ok8qwarq.default\cookies.txt[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\Documents and Settings\Steve Sha\Application Data\Mozilla\Firefox\Profiles\ok8qwarq.default\cookies.txt[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\Documents and Settings\Steve Sha\Application Data\Mozilla\Firefox\Profiles\ok8qwarq.default\cookies.txt[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\Documents and Settings\Steve Sha\Application Data\Mozilla\Firefox\Profiles\ok8qwarq.default\cookies.txt[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\Documents and Settings\Steve Sha\Application Data\Mozilla\Firefox\Profiles\ok8qwarq.default\cookies.txt[.yadro.ru/]
Spyware:Cookie/Atwola Not disinfected C:\Documents and Settings\Steve Sha\Cookies\steve [email protected][1].txt
Virus:Generic Malware Disinfected C:\Program Files\Online Services\PeoplePC\Utilities\AtlBrowser.exe
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829653.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829653.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829653.MOZ[.casalemedia.com/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829653.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829653.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829653.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829653.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829653.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829653.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829653.MOZ[.yadro.ru/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829655.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829655.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829655.MOZ[.casalemedia.com/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829655.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829655.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829655.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829655.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829655.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829655.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829655.MOZ[.yadro.ru/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829672.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829672.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829672.MOZ[.casalemedia.com/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829672.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829672.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829672.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829672.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829672.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829672.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829672.MOZ[.yadro.ru/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829676.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829676.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829676.MOZ[.casalemedia.com/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829676.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829676.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829676.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829676.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829676.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829676.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829676.MOZ[.yadro.ru/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829678.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829678.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829678.MOZ[.casalemedia.com/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829678.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829678.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829678.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829678.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829678.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829678.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829678.MOZ[.yadro.ru/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829682.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829682.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829682.MOZ[.casalemedia.com/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829682.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829682.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829682.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829682.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829682.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829682.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829682.MOZ[.yadro.ru/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829685.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829685.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829685.MOZ[.casalemedia.com/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829685.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829685.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829685.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829685.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829685.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829685.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829685.MOZ[.yadro.ru/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829688.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829688.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829688.MOZ[.casalemedia.com/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829688.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829688.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829688.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829688.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829688.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829688.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829688.MOZ[.yadro.ru/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829701.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829701.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829701.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829701.MOZ[.casalemedia.com/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829701.MOZ[.adrevolver.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829701.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829701.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829701.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829701.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829701.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829778.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829778.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829778.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829778.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829778.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829778.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829778.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829778.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829778.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829778.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829782.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829782.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829782.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829782.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829782.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829782.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829782.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829782.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829782.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829782.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829783.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829783.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829783.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829783.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829783.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829783.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829783.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829783.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829783.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829783.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829786.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829786.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829786.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829786.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829786.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829786.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829786.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829786.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829786.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829786.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829791.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829791.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829791.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829791.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829791.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829791.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829791.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829791.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829791.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829791.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829805.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829805.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829805.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829805.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829805.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829805.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829805.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829805.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829805.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829805.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829809.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829809.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829809.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829809.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829809.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829809.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829809.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829809.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829809.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829809.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829811.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829811.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829811.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829811.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829811.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829811.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829811.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829811.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829811.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829811.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829834.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829834.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829834.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829834.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829834.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829834.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829834.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829834.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829834.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829834.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829837.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829837.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829837.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829837.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829837.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829837.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829837.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829837.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829837.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829837.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829859.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829859.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829859.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829859.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829859.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829859.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829859.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829859.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829859.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829859.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829877.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829877.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829877.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829877.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829877.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829877.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829877.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829877.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829877.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829877.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829886.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829886.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829886.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829886.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829886.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829886.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829886.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829886.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829886.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829886.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829915.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829915.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829915.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829915.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829915.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829915.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829915.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829915.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829915.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829915.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829920.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829920.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829920.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829920.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829920.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829920.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829920.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829920.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829920.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829920.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829922.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected
ssha16 is offline  
Old 10-02-2007, 08:05 AM   #9
Guest
 
Join Date: Sep 2007
Posts: 25
OS:



C:\RECYCLER\NPROTECT\00829922.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829922.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829922.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829922.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829922.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829922.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829922.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829922.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829922.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829926.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829926.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829926.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829926.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829926.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829926.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829926.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829926.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829926.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829926.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829929.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829929.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829929.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829929.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829929.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829929.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829929.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829929.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829929.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829929.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829934.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829934.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829934.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829934.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829934.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829934.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829934.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829934.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829934.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829934.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829937.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829937.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829937.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829937.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829937.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829937.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829937.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829937.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected
C:\RECYCLER\NPROTECT\00829937.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829937.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829939.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829939.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829939.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829939.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829939.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829939.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829939.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829939.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829939.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829939.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829943.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829943.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829943.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829943.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829943.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829943.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829943.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829943.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829943.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829943.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829945.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829945.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829945.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829945.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829945.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829945.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829945.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829945.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829945.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829945.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829948.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829948.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829948.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829948.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829948.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829948.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829948.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829948.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829948.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829948.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829950.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829950.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829950.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829950.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829950.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829950.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829950.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829950.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829950.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829950.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829952.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829952.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829952.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829952.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829952.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829952.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829952.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829952.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829952.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829952.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829954.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829954.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829954.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829954.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829954.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829954.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829954.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829954.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829954.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829954.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829957.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829957.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829957.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829957.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829957.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829957.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829957.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829957.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829957.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829957.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829959.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829959.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829959.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829959.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829959.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829959.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829959.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829959.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829959.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829959.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829963.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829963.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829963.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829963.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829963.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829963.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829963.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829963.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829963.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829963.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829964.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829964.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829964.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829964.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829964.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829964.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829964.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829964.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829964.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829964.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00829966.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00829966.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829966.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00829966.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00829966.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00829966.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00829966.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00829966.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00829966.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00829966.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830397.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830397.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830397.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830397.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830397.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830397.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830397.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830397.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830397.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830397.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830400.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830400.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830400.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830400.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830400.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830400.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830400.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830400.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830400.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830400.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830403.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830403.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830403.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830403.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830403.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830403.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830403.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830403.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830403.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830403.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830405.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830405.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830405.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830405.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830405.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830405.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected
ssha16 is offline  
Old 10-02-2007, 08:08 AM   #10
Guest
 
Join Date: Sep 2007
Posts: 25
OS:



So the rest is a LOT of spyware. I'm not sure if you want to look at the log, it'll be about three more posts--let me know and I will post them-
ssha16 is offline  
Old 10-02-2007, 09:47 AM   #11
Security Team
Analyst
 
forhockey's Avatar
 
Join Date: Sep 2006
Location: Ontario, Canada
Posts: 3,025
OS: Windows 7 Ultimate



To be on the safe side, please post the complete results from Panda.

Thank you
__________________


Proud Member of ASAP
Proud Member of UNITE

Microsoft MVP - Consumer Security 2009
forhockey is offline  
Old 10-02-2007, 09:58 AM   #12
Guest
 
Join Date: Sep 2007
Posts: 25
OS:



Okay, continuing the list:

C:\RECYCLER\NPROTECT\00830405.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830405.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830405.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830405.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830408.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830408.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830408.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830408.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830408.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830408.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830408.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830408.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830408.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830408.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830423.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830423.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830423.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830423.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830423.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830423.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830423.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830423.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830423.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830423.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830426.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830426.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830426.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830426.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830426.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830426.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830426.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830426.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830426.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830426.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830429.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830429.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830429.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830429.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830429.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830429.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830429.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830429.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830429.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830429.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830494.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830494.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830494.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830494.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830494.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830494.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830494.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830494.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830494.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830494.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830556.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830556.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830556.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830556.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830556.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830556.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830556.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830556.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830556.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830556.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830558.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830558.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830558.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830558.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830558.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830558.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830558.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830558.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830558.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830558.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830601.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830601.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830601.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830601.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830601.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830601.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830601.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830601.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830601.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830601.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830606.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830606.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830606.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830606.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830606.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830606.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830606.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830606.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830606.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830606.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830608.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830608.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830608.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830608.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830608.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830608.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830608.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830608.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830608.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830608.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830610.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830610.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830610.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830610.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830610.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830610.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830610.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830610.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830610.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830610.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830732.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830732.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830732.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830732.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830732.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830732.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830732.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830732.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830732.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830732.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830734.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830734.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830734.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830734.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830734.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830734.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830734.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830734.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830734.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830734.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830783.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830783.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830783.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830783.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830783.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830783.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830783.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830783.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830783.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830783.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830788.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830788.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830788.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830788.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830788.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830788.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830788.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830788.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830788.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830788.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830790.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830790.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830790.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830790.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830790.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830790.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830790.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830790.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830790.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830790.MOZ[.yadro.ru/]
Potentially unwanted tool:Application/Processor Not disinfected C:\RECYCLER\NPROTECT\00830824.exe
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830832.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830832.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830832.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830832.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830832.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830832.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830832.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830832.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830832.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830832.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830846.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830846.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830846.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830846.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830846.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830846.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830846.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830846.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830846.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830846.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830848.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830848.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830848.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830848.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830848.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830848.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830848.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830848.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830848.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830848.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830852.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830852.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830852.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830852.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830852.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830852.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830852.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830852.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830852.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830852.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830855.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830855.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830855.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830855.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830855.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830855.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830855.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830855.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830855.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830855.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830857.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830857.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830857.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830857.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830857.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830857.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830857.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830857.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830857.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830857.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830915.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830915.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830915.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830915.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830915.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830915.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830915.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830915.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830915.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830915.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830917.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830917.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830917.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830917.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830917.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830917.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830917.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830917.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830917.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830917.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830921.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830921.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830921.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830921.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830921.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830921.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830921.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830921.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830921.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830921.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00830923.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00830923.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830923.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00830923.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00830923.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00830923.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00830923.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00830923.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00830923.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00830923.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831001.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831001.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831001.MOZ[.casalemedia.com/]
ssha16 is offline  
Old 10-02-2007, 10:06 AM   #13
Guest
 
Join Date: Sep 2007
Posts: 25
OS:



Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831001.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831001.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831001.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831001.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831001.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831001.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831001.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831057.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831057.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831057.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831057.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831057.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831057.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831057.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831057.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831057.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831057.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831061.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831061.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831061.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831061.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831061.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831061.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831061.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831061.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831061.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831061.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831065.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831065.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831065.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831065.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831065.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831065.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831065.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831065.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831065.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831065.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831067.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831067.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831067.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831067.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831067.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831067.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831067.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831067.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831067.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831067.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831072.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831072.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831072.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831072.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831072.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831072.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831072.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831072.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831072.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831072.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831075.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831075.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831075.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831075.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831075.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831075.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831075.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831075.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831075.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831075.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831080.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831080.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831080.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831080.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831080.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831080.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831080.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831080.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831080.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831080.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831082.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831082.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831082.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831082.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831082.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831082.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831082.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831082.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831082.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831082.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831094.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831094.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831094.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831094.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831094.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831094.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831094.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831094.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831094.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831094.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831098.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831098.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831098.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831098.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831098.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831098.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831098.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831098.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831098.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831098.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831101.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831101.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831101.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831101.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831101.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831101.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831101.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831101.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831101.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831101.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831103.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831103.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831103.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831103.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831103.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831103.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831103.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831103.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831103.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831103.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831106.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831106.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831106.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831106.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831106.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831106.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831106.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831106.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831106.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831106.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831108.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831108.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831108.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831108.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831108.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831108.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831108.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831108.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831108.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831108.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831111.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831111.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831111.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831111.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831111.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831111.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831111.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831111.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831111.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831111.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831113.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831113.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831113.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831113.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831113.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831113.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831113.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831113.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831113.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831113.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831115.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831115.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831115.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831115.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831115.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831115.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831115.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831115.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831115.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831115.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831118.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831118.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831118.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831118.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831118.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831118.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831118.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831118.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831118.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831118.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831120.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831120.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831120.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831120.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831120.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831120.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831120.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831120.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831120.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831120.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831122.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831122.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831122.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831122.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831122.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831122.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831122.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831122.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831122.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831122.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831124.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831124.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831124.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831124.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831124.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831124.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831124.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831124.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831124.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831124.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831179.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831179.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831179.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831179.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831179.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831179.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831179.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831179.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831179.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831179.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831192.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831192.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831192.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831192.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831192.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831192.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831192.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831192.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831192.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831192.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831205.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831205.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831205.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831205.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831205.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831205.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831205.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831205.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831205.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831205.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831208.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831208.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831208.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831208.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831208.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831208.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831208.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831208.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831208.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831208.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831210.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831210.MOZ[ad.yieldmanager.com/]
ssha16 is offline  
Old 10-02-2007, 10:07 AM   #14
Guest
 
Join Date: Sep 2007
Posts: 25
OS:



Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831210.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831210.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831210.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831210.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831210.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831210.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831210.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831210.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831212.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831212.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831212.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831212.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831212.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831212.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831212.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831212.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831212.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831212.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831214.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831214.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831214.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831214.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831214.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831214.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831214.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831214.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831214.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831214.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831216.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831216.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831216.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831216.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831216.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831216.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831216.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831216.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831216.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831216.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831218.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831218.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831218.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831218.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831218.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831218.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831218.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831218.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831218.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831218.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831222.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831222.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831222.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831222.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831222.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831222.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831222.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831222.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831222.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831222.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831225.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831225.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831225.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831225.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831225.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831225.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831225.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831225.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831225.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831225.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831239.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831239.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831239.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831239.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831239.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831239.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831239.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831239.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831239.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831239.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831244.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831244.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831244.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831244.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831244.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831244.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831244.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831244.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831244.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831244.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831246.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831246.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831246.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831246.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831246.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831246.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831246.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831246.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831246.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831246.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831248.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831248.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831248.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831248.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831248.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831248.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831248.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831248.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831248.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831248.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831250.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831250.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831250.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831250.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831250.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831250.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831250.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831250.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831250.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831250.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831254.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831254.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831254.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831254.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831254.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831254.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831254.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831254.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831254.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831254.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831257.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831257.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831257.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831257.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831257.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831257.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831257.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831257.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831257.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831257.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831287.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831287.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831287.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831287.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831287.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831287.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831287.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831287.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831287.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831287.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831289.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831289.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831289.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831289.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831289.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831289.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831289.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831289.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831289.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831289.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831292.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831292.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831292.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831292.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831292.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831292.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831292.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831292.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831292.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831292.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831294.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831294.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831294.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831294.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831294.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831294.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831294.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831294.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831294.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831294.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831295.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831295.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831295.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831295.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831295.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831295.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831295.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831295.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831295.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831295.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831300.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831300.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831300.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831300.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831300.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831300.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831300.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831300.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831300.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831300.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831314.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831314.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831314.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831314.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831314.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831314.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831314.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831314.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831314.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831314.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831316.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831316.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831316.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831316.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831316.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831316.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831316.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831316.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831316.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831316.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831318.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831318.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831318.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831318.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831318.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831318.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831318.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831318.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831318.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831318.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831324.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831324.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831324.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831324.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831324.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831324.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831324.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831324.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831324.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831324.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831486.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831486.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831486.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831486.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831486.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831486.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831486.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831486.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831486.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831486.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831516.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831516.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831516.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831516.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831516.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831516.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831516.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831516.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831516.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831516.MOZ[.yadro.ru/]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00831518.MOZ[.adrevolver.com/]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00831518.MOZ[ad.yieldmanager.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831518.MOZ[.casalemedia.com/]
Spyware:Cookie/BurstNet Not disinfected C:\RECYCLER\NPROTECT\00831518.MOZ[.burstnet.com/]
Spyware:Cookie/Casalemedia Not disinfected C:\RECYCLER\NPROTECT\00831518.MOZ[.casalemedia.com/]
Spyware:Cookie/RealMedia Not disinfected C:\RECYCLER\NPROTECT\00831518.MOZ[.realmedia.com/]
Spyware:Cookie/Com.com Not disinfected C:\RECYCLER\NPROTECT\00831518.MOZ[.com.com/]
Spyware:Cookie/Statcounter Not disinfected C:\RECYCLER\NPROTECT\00831518.MOZ[.statcounter.com/]
Spyware:Cookie/Zedo Not disinfected C:\RECYCLER\NPROTECT\00831518.MOZ[.zedo.com/]
Spyware:Cookie/Yadro Not disinfected C:\RECYCLER\NPROTECT\00831518.MOZ[.yadro.ru/]

That's it, thanks!
ssha16 is offline  
Old 10-02-2007, 07:09 PM   #15
Security Team
Analyst
 
forhockey's Avatar
 
Join Date: Sep 2006
Location: Ontario, Canada
Posts: 3,025
OS: Windows 7 Ultimate



Hi ssha16,

Everything is starting to look brighter. Your Internet Explorer wasn't working before, but now is, which is great news. We are going to try and fix a few files that were infected by this nasty virus. Also, did you run have any problems running AWF option #4 in my previous post? Don't worry we will be running it again, so please follow my instructions below.
--------------------------------------------------------------------

Please empty out your Recycling Bin as it contains a lot of spyware cookies.

--------------------------------------------------------------------

Before beginning the proposed fix, read this post completely. Any questions should be kindly asked before proceeding. Ensure that there are no open browsers when carrying out the procedures below. Save the following instructions in Notepad as this webpage would not be available when you're carrying out the fix.

It is IMPORTANT that you don't miss a step & perform everything in the correct order/sequence.

--------------------------------------------------------------------

If you don't have the following file on your computer anymore:

Download ResetProtocolDefaults.reg. Save it to your desktop, but do not run it yet.

--------------------------------------------------------------------

Please reboot your computer in Safe Mode by doing the following:
1) Restart your computer
2) After hearing your computer beep once during startup, but before the Windows icon appears, press F8.
3) Instead of Windows loading as normal, a menu should appear
4) Use the up arrow key to highlight Safe Mode and press Enter.
5) Login with your usual account. Make sure to close any open browsers.

--------------------------------------------------------------------

Double-click FindAWF.exe to start the tool.
  • Select option #2 - Restore files from bak folders bu typing 2 and press 'Enter'
  • A text file will open up. Please copy/paste the following bolded text into the text file:


    "C:\Program Files\iTunes\bak\iTunesHelper.exe"
    "C:\Program Files\Google\GoogleToolbarNotifier\bak\GoogleToolbarNotifier.exe"
    "C:\WINDOWS\system32\bak\hkcmd.exe"


  • Close the .txt file and click 'Yes' to save the changes.
  • When the tool has completed, a report will open up in notepad. Please post the results of the awf.txt in your next reply.
------------------------------------------------------------

Next, double-click FindAWF.exe to start the tool once again.
  • Select option #4 - Reset Domain Zones by typing 4 and press 'Enter'
  • You will be prompted to answer "Reset the domain zones?" Type 1 and press Enter.
  • After completion, then type E and press 'Enter'
Note: if you use SpywareBlaster and/or IE-SPYAD, it will be necessary to re-install the protection both afford. For SpywareBlaster, run the program and re-protect all items. For IE-SPYAD, run the batch file and reinstall the protection.

------------------------------------------------------------

Locate "ResetProtocolDefaults.reg". Right-click and select: Merge (Ok the prompt)

------------------------------------------------------------

Reboot into Normal Mode.

------------------------------------------------------------

Please run HiJackThis again, and post a fresh log

------------------------------------------------------------

Please reply back with the following logs:

awf.txt
Fresh HiJackThis Log


Also, how is your system having now?
__________________


Proud Member of ASAP
Proud Member of UNITE

Microsoft MVP - Consumer Security 2009
forhockey is offline  
Old 10-02-2007, 09:50 PM   #16
Guest
 
Join Date: Sep 2007
Posts: 25
OS:



Thank you!! I think everything *may* be back to normal now! Let me post the logs first then tell you about it:

AWF:

Find AWF report by noahdfear ©2006
Version 1.40
Option 2 run successfully

The current date is: Tue 10/02/2007
The current time is: 19:41:58.78


bak folders found
~~~~~~~~~~~


Directory of C:\PROGRA~1\ITUNES\BAK

06/14/2006 04:24 PM 278,528 iTunesHelper.exe
1 File(s) 278,528 bytes

Directory of C:\PROGRA~1\QUICKT~1\BAK

10/02/2007 01:10 PM 27,664 qttask.exe
1 File(s) 27,664 bytes

Directory of C:\PROGRA~1\SYMANT~1\BAK

03/14/2007 07:49 PM 125,632 VPTray.exe
1 File(s) 125,632 bytes

Directory of C:\PROGRA~1\SYMNET~1\BAK

08/09/2006 05:08 AM 104,128 SNDMon.exe
1 File(s) 104,128 bytes

Directory of C:\PROGRA~1\WINDOW~1\BAK

10/18/2006 06:05 PM 204,288 WMPNSCFG.exe
1 File(s) 204,288 bytes

Directory of C:\WINDOWS\SYSTEM32\BAK

08/04/2004 01:00 AM 15,360 ctfmon.exe
08/24/2005 12:47 PM 77,824 hkcmd.exe
08/24/2005 12:51 PM 114,688 igfxpers.exe
08/24/2005 12:50 PM 94,208 igfxtray.exe
4 File(s) 302,080 bytes

Directory of C:\PROGRA~1\COMMON~1\SYMANT~1\BAK

02/17/2006 11:05 AM 59,040 ccApp.exe
1 File(s) 59,040 bytes

Directory of C:\PROGRA~1\GOOGLE\GOOGLE~1\BAK

06/30/2007 08:48 PM 68,856 GoogleToolbarNotifier.exe
1 File(s) 68,856 bytes

Directory of C:\PROGRA~1\HPQ\QUICKL~1\BAK

09/17/2004 05:19 PM 290,816 EabServr.exe
1 File(s) 290,816 bytes

Directory of C:\PROGRA~1\QUICKT~1\BAK\BAK

06/07/2006 08:58 PM 282,624 qttask.exe
1 File(s) 282,624 bytes

Directory of C:\PROGRA~1\SYNAPT~1\SYNTP\BAK

11/04/2004 06:38 PM 688,218 SynTPEnh.exe
11/04/2004 06:40 PM 98,394 SynTPLpr.exe
2 File(s) 786,612 bytes

Directory of C:\WINDOWS\IME\IMJP8_1\BAK

08/04/2004 06:00 AM 208,952 IMJPMIG.EXE
1 File(s) 208,952 bytes

Directory of C:\PROGRA~1\COMMON~1\LOGISHRD\LCOMMGR\BAK

05/11/2007 05:25 PM 505,368 Communications_Helper.exe
1 File(s) 505,368 bytes

Directory of C:\WINDOWS\SYSTEM32\IME\PINTLGNT\BAK

08/04/2004 06:00 AM 59,392 ImScInst.exe
1 File(s) 59,392 bytes

Directory of C:\WINDOWS\SYSTEM32\IME\TINTLGNT\BAK

08/04/2004 06:00 AM 455,168 TINTSETP.EXE
1 File(s) 455,168 bytes


Duplicate files of bak directory contents
~~~~~~~~~~~~~~~~~~~~~~~

267064 Sep 14 2007 "C:\Program Files\iTunes\iTunesHelper.exe1190939531"
278528 Jun 14 2006 "C:\Program Files\iTunes\bak\iTunesHelper.exe"
102400 Sep 29 2007 "C:\WINDOWS\Installer\{B045B608-4A47-4C77-9EAD-06C394503306}\iTunesIco.exe"
116024 Sep 29 2007 "C:\WINDOWS\Temp\Temporary Internet Files\Content.IE5\0TQN0LQR\iTunesSetupAdmin[1].exe"
116024 Sep 29 2007 "C:\Documents and Settings\All Users\Application Data\Apple Computer\Installer Cache\iTunes 7.4.3.1\iTunesSetupAdmin.exe"
282624 Jun 7 2006 "C:\Program Files\QuickTime\qttask.exe"
27664 Oct 2 2007 "C:\Program Files\QuickTime\bak\qttask.exe"
282624 Jun 7 2006 "C:\Program Files\QuickTime\bak\bak\qttask.exe"
282624 Jun 7 2006 "C:\Program Files\QuickTime\qttask.exe"
27664 Oct 2 2007 "C:\Program Files\QuickTime\bak\qttask.exe"
282624 Jun 7 2006 "C:\Program Files\QuickTime\bak\bak\qttask.exe"
125632 Mar 14 2007 "C:\Program Files\Symantec AntiVirus\VPTray.exe"
125632 Mar 14 2007 "C:\Program Files\Symantec AntiVirus\bak\VPTray.exe"
104080 Oct 2 2007 "C:\Program Files\SymNetDrv\SNDMon.exe"
104128 Aug 9 2006 "C:\Program Files\SymNetDrv\bak\SNDMon.exe"
204288 Oct 18 2006 "C:\Program Files\Windows Media Player\WMPNSCFG.exe"
204288 Oct 18 2006 "C:\Program Files\Windows Media Player\bak\WMPNSCFG.exe"
15360 Aug 4 2004 "C:\WINDOWS\system32\ctfmon.exe"
15360 Aug 4 2004 "C:\WINDOWS\system32\bak\ctfmon.exe"
118784 Jun 17 2004 "C:\swsetup\SP28484\hkcmd.exe"
118784 Jun 17 2004 "C:\swsetup\Video\hkcmd.exe"
77824 Aug 24 2005 "C:\WINDOWS\system32\hkcmd.exe"
118784 Jun 17 2004 "C:\swsetup\SP28484\Win2000\hkcmd.exe"
118784 Jun 17 2004 "C:\swsetup\Video\Win2000\hkcmd.exe"
77824 Aug 24 2005 "C:\WINDOWS\system32\bak\hkcmd.exe"
118784 Jun 17 2004 "C:\WINDOWS\Drivers\Intel\Graphics\win2000\hkcmd.exe"
118784 Jun 17 2004 "C:\WINDOWS\system32\ReinstallBackups\0014\DriverFiles\hkcmd.exe"
118784 Jun 17 2004 "C:\WINDOWS\system32\ReinstallBackups\0015\DriverFiles\hkcmd.exe"
118784 Jun 17 2004 "C:\WINDOWS\system32\ReinstallBackups\0016\DriverFiles\hkcmd.exe"
114688 Aug 24 2005 "C:\WINDOWS\system32\bak\igfxpers.exe"
155648 Jun 17 2004 "C:\swsetup\SP28484\igfxtray.exe"
155648 Jun 17 2004 "C:\swsetup\Video\igfxtray.exe"
155648 Jun 17 2004 "C:\swsetup\SP28484\Win2000\igfxtray.exe"
155648 Jun 17 2004 "C:\swsetup\Video\Win2000\igfxtray.exe"
94208 Aug 24 2005 "C:\WINDOWS\system32\bak\igfxtray.exe"
155648 Jun 17 2004 "C:\WINDOWS\Drivers\Intel\Graphics\win2000\igfxtray.exe"
155648 Jun 17 2004 "C:\WINDOWS\system32\ReinstallBackups\0014\DriverFiles\igfxtray.exe"
155648 Jun 17 2004 "C:\WINDOWS\system32\ReinstallBackups\0015\DriverFiles\igfxtray.exe"
155648 Jun 17 2004 "C:\WINDOWS\system32\ReinstallBackups\0016\DriverFiles\igfxtray.exe"
52840 Nov 21 2006 "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
59040 Feb 17 2006 "C:\Program Files\Common Files\Symantec Shared\bak\ccApp.exe"
58488 Aug 14 2004 "C:\swsetup\NAV05\02\Support\ccCommon\ccCommon\ccApp.exe"
58488 Aug 14 2004 "C:\swsetup\NAV05\37\Support\ccCommon\ccCommon\ccApp.exe"
58488 Aug 14 2004 "C:\swsetup\NAV05\US\Support\ccCommon\ccCommon\ccApp.exe"
52272 Jan 27 2007 "C:\Program Files\Google\googletoolbar3user.exe"
24592 Sep 27 2007 "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe1190940358"
138168 Jan 27 2007 "C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe"
68856 Jun 30 2007 "C:\Program Files\Google\GoogleToolbarNotifier\bak\GoogleToolbarNotifier.exe"
290816 Sep 17 2004 "C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe"
290816 Sep 17 2004 "C:\Program Files\HPQ\Quick Launch Buttons\bak\EabServr.exe"
282624 Jun 7 2006 "C:\Program Files\QuickTime\qttask.exe"
27664 Oct 2 2007 "C:\Program Files\QuickTime\bak\qttask.exe"
282624 Jun 7 2006 "C:\Program Files\QuickTime\bak\bak\qttask.exe"
688218 Nov 4 2004 "C:\swsetup\SP29294\SynTPEnh.exe"
688218 Oct 5 2004 "C:\swsetup\Touchpad\SynTPEnh.exe"
27664 Oct 2 2007 "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
688218 Nov 4 2004 "C:\Program Files\Synaptics\SynTP\bak\SynTPEnh.exe"
688218 Nov 4 2004 "C:\Program Files\Synaptics\SynTP\Media\SynTPEnh.exe"
688218 Nov 4 2004 "C:\WINDOWS\system32\ReinstallBackups\0011\DriverFiles\SynTPEnh.exe"
98394 Nov 4 2004 "C:\swsetup\SP29294\SynTPLpr.exe"
98394 Oct 5 2004 "C:\swsetup\Touchpad\SynTPLpr.exe"
27664 Oct 2 2007 "C:\Program Files\Synaptics\SynTP\SynTPLpr.exe"
98394 Nov 4 2004 "C:\Program Files\Synaptics\SynTP\bak\SynTPLpr.exe"
98394 Nov 4 2004 "C:\Program Files\Synaptics\SynTP\Media\SynTPLpr.exe"
24592 Sep 27 2007 "C:\WINDOWS\system32\ReinstallBackups\0011\DriverFiles\SynTPLpr.exe"
208952 Aug 4 2004 "C:\WINDOWS\ime\imjp8_1\imjpmig.exe"
208952 Aug 4 2004 "C:\WINDOWS\ime\imjp8_1\bak\IMJPMIG.EXE"
505368 May 11 2007 "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe1191356013"
505368 May 11 2007 "C:\Program Files\Common Files\LogiShrd\LComMgr\bak\Communications_Helper.exe"
59392 Aug 4 2004 "C:\WINDOWS\system32\IME\PINTLGNT\imscinst.exe"
59392 Aug 4 2004 "C:\WINDOWS\system32\IME\PINTLGNT\bak\ImScInst.exe"
455168 Aug 4 2004 "C:\WINDOWS\system32\IME\TINTLGNT\tintsetp.exe"
455168 Aug 4 2004 "C:\WINDOWS\system32\IME\TINTLGNT\bak\TINTSETP.EXE"


end of report


HJT:
Logfile of HijackThis v1.99.1
Scan saved at 9:19:10 PM, on 10/2/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\BigFix Enterprise\BES Client\BESClient.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE
C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe
C:\Program Files\OpenAFS\Client\Program\afsd_service.exe
C:\Program Files\Logitech\QuickCam\Quickcam.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\YPOPs\YPOPs.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.EXE
C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Documents and Settings\Steve Sha\My Documents\Downloads\HJT\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://ie.redirect.hp.com/svs/rdr?TY...lion&pf=laptop
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://ie.redirect.hp.com/svs/rdr?TY...lion&pf=laptop
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: TB Class - {0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2} - C:\Program Files\WinBudget\bin\matrix.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - (no file)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Enterprise
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\bak\qttask.exe" -atboottime
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - Startup: YPOPs.lnk = ?
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=https://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=Q105&bd=pavilion&pf=laptop
O15 - Trusted Zone: *.whataboutadog.com
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - https://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {26BFFB87-5B07-4611-82BB-AF3947013FDD} - https://www.lexis.com/dl/IEDAP.cab
O16 - DPF: {4CCA4E80-9259-11D9-AC6E-444553544200} (FixController Control) - https://h30155.www3.hp.com/ediags/dd/...lMgr_v01_5.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - https://upload.facebook.com/controls/...toUploader.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - https://go.divx.com/plugin/DivXBrowserPlugin.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - https://acs.pandasoftware.com/actives...ree/asinst.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: AfsLogon - C:\WINDOWS\system32\afslogon.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O20 - Winlogon Notify: KFWLogon - C:\WINDOWS\system32\afslogon.dll
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\system32\NavLogon.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: BES Client (BESClient) - BigFix Inc. - C:\Program Files\BigFix Enterprise\BES Client\BESClient.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\SHARED\HPQWMI.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: OpenAFS Client (TransarcAFSDaemon) - OpenAFS Project - C:\Program Files\OpenAFS\Client\Program\afsd_service.exe


I emptied the recycle bin, and I had to reinstall a few programs (spyware blaster, norton, webcam...), but everything seems to be running fine now! IEXPLORER is NO LONGER opening as a task during startup, AND it works!! thank you so much! Let me know if you still think there is a problem though. I'd hate for this to re-start all over again. Did I have the virus that is being written up about recently? Do you know how I got it in the first place? I think I've been pretty careful about keeping all my antivirus software, and spyware software up-to-date and actively protecting my system...
ssha16 is offline  
Old 10-03-2007, 03:32 PM   #17
Security Team
Analyst
 
forhockey's Avatar
 
Join Date: Sep 2006
Location: Ontario, Canada
Posts: 3,025
OS: Windows 7 Ultimate



Hi ssha16,

This trojan has been around for awhile now, and normally can be caught from p2p software like Kazaa, Limewire, etc. We are getting closer to finishing off this infection, so please stick with me. This trojan replaces legit files with its own copy, which is why some of your programs have stopped working. We are having a difficult time fixing the iTunes program, so I'm going to ask you during the fix to uninstall it. You can re-install iTunes once I say your machine is clean.

--------------------------------------------------------------------

Everything is starting to look brighter. We are going to try and fix a few files that were infected by this nasty virus. Also, did you run have any problems running option #4 in my previous post? Don't worry we will be running it again, so please follow my instructions below.

--------------------------------------------------------------------

Before beginning the proposed fix, read this post completely. Any questions should be kindly asked before proceeding. Ensure that there are no open browsers when carrying out the procedures below. Save the following instructions in Notepad as this webpage would not be available when you're carrying out the fix.

It is IMPORTANT that you don't miss a step & perform everything in the correct order/sequence.

--------------------------------------------------------------------

Click > Start > Control Panel > Add / Remove Programs and uninstall the following programs (if they exist):

iTunes

--------------------------------------------------------------------

Download and install CleanUp! but do not run it yet.

*WARNING* Cleanup deletes EVERYTHING out of temp/temporary folders and does not make backups.

--------------------------------------------------------------

Download ResetProtocolDefaults.reg. Save it to your desktop, but do not run it yet.

--------------------------------------------------------------------

Please reboot your computer in Safe Mode by doing the following:
1) Restart your computer
2) After hearing your computer beep once during startup, but before the Windows icon appears, press F8.
3) Instead of Windows loading as normal, a menu should appear
4) Use the up arrow key to highlight Safe Mode and press Enter.
5) Login with your usual account. Make sure to close any open browsers.

--------------------------------------------------------------------

Open Cleanup! by double-clicking the icon on your desktop (or from the Start > All Programs menu). Set the program up as follows:
*Click "Options..."
*Move the arrow down to "Custom CleanUp!"
*Put a check next to the following:
  • Empty Recycle Bins
  • Delete Cookies
  • Delete Prefetch files
  • Cleanup! All Users
  • Click on the “Temporary Files” and uncheck the box for “Scan drives for file matching” if it’s checked.
Click OK
Press the CleanUp! button to start the program. Reboot/logoff when prompted.

--------------------------------------------------------------

Enter Safe Mode again

--------------------------------------------------------------

Next, double-click FindAWF.exe to start the tool once again.
  • Select option #4 - Reset Domain Zones by typing 4 and press 'Enter'
  • You will be prompted to answer "Reset the domain zones?" Type 1 and press Enter.
  • After completion, then type E and press 'Enter'
Note: if you use SpywareBlaster and/or IE-SPYAD, it will be necessary to re-install the protection both afford. For SpywareBlaster, run the program and re-protect all items. For IE-SPYAD, run the batch file and reinstall the protection.

------------------------------------------------------------

Locate "ResetProtocolDefaults.reg". Right-click and select: Merge (Ok the prompt)

------------------------------------------------------------

Reboot into Normal Mode.

------------------------------------------------------------

Please run HiJackThis again, and post a fresh log

------------------------------------------------------------

Please reply back with the following logs:

Fresh HiJackThis Log
__________________


Proud Member of ASAP
Proud Member of UNITE

Microsoft MVP - Consumer Security 2009
forhockey is offline  
Old 10-03-2007, 09:11 PM   #18
Guest
 
Join Date: Sep 2007
Posts: 25
OS:



Hi there!

Thanks for all your help. Btw, I haven't had any problems running AWF option 4.

Unfortunately, during my latest restart, I noticed that IEXPLORER.exe was again opened as a task.

Here's my HJT log:

Logfile of HijackThis v1.99.1
Scan saved at 8:53:19 PM, on 10/3/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe
C:\Program Files\Logitech\QuickCam\Quickcam.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\YPOPs\YPOPs.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\Symantec AntiVirus\DoScan.exe
C:\Program Files\BigFix Enterprise\BES Client\BESClient.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE
C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.EXE
C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\OpenAFS\Client\Program\afsd_service.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\WINDOWS\system32\ctfmon.exe
c:\program files\internet explorer\iexplore.exe
C:\WINDOWS\system32\wscntfy.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\Steve Sha\My Documents\Downloads\HJT\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://ie.redirect.hp.com/svs/rdr?TY...lion&pf=laptop
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://ie.redirect.hp.com/svs/rdr?TY...lion&pf=laptop
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: TB Class - {0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2} - C:\Program Files\WinBudget\bin\matrix.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - (no file)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Enterprise
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\bak\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - Startup: YPOPs.lnk = ?
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=https://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=Q105&bd=pavilion&pf=laptop
O15 - Trusted Zone: *.whataboutadog.com
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - https://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {26BFFB87-5B07-4611-82BB-AF3947013FDD} - https://www.lexis.com/dl/IEDAP.cab
O16 - DPF: {4CCA4E80-9259-11D9-AC6E-444553544200} (FixController Control) - https://h30155.www3.hp.com/ediags/dd/...lMgr_v01_5.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - https://upload.facebook.com/controls/...toUploader.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - https://go.divx.com/plugin/DivXBrowserPlugin.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - https://acs.pandasoftware.com/actives...ree/asinst.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: AfsLogon - C:\WINDOWS\system32\afslogon.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O20 - Winlogon Notify: KFWLogon - C:\WINDOWS\system32\afslogon.dll
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\system32\NavLogon.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: BES Client (BESClient) - BigFix Inc. - C:\Program Files\BigFix Enterprise\BES Client\BESClient.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\SHARED\HPQWMI.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: OpenAFS Client (TransarcAFSDaemon) - OpenAFS Project - C:\Program Files\OpenAFS\Client\Program\afsd_service.exe


Thanks!
ssha16 is offline  
Old 10-04-2007, 04:03 PM   #19
Security Team
Analyst
 
forhockey's Avatar
 
Join Date: Sep 2006
Location: Ontario, Canada
Posts: 3,025
OS: Windows 7 Ultimate



Hi ssha16,

We need to do some more investigating, so please stick with me.

Before beginning the proposed fix, read this post completely. Any questions should be kindly asked before proceeding. Ensure that there are no open browsers when carrying out the procedures below. Save the following instructions in Notepad as this webpage would not be available when you're carrying out the fix.

It is IMPORTANT that you don't miss a step & perform everything in the correct order/sequence.

--------------------------------------------------------------

Click > Start > Control Panel > Add / Remove Programs and uninstall the following programs (if they exist):

WinBudget

--------------------------------------------------------------

Enter Safe Mode
  1. Restart your computer
  2. After hearing your computer beep once during startup, but before the Windows icon appears, press F8
  3. Instead of Windows loading as normal, a menu should appear
  4. Use the up arrow key to highlight Safe Mode and press Enter.
  5. Login with your usual account
  6. Once you have logged in, a warning message will appear regarding starting windows in Safe mode, click OK and windows will load your desktop environment

Note: Some systems, this may be the F5 key, so try that if F8 doesn't work.

--------------------------------------------------------------

Open HijackThis and click on 'Do a System Scan Only'. Check the following entries (If they still exist, make sure you do not miss any)

O2 - BHO: TB Class - {0CB66BA8-5E1F-4963-93D1-E1D6B78FE9A2} - C:\Program Files\WinBudget\bin\matrix.dll

Please remember to close all other windows, including browsers then click Fix checked.

--------------------------------------------------------------

Delete the following Folder indicated in BLUE

C:\Program Files\WinBudget

--------------------------------------------------------------

Restart your computer in Normal Mode

--------------------------------------------------------------

Double-click FindAWF.exe to start the tool.
Select option #1 - Scan for bak folders by typing 1 and press "Enter"
When the tool has completed, a report will open up in notepad. Please post the results of the awf.txt here.

**Do not run any other option unless instructed to**

--------------------------------------------------------------

Please run HiJackThis again, and post a Fresh Log

--------------------------------------------------------------

Please reply back with the following:

1) awf.txt
2) New HiJackThis log
__________________


Proud Member of ASAP
Proud Member of UNITE

Microsoft MVP - Consumer Security 2009
forhockey is offline  
Old 10-04-2007, 11:12 PM   #20
Guest
 
Join Date: Sep 2007
Posts: 25
OS:



Hi!

So I performed the steps; it looks like IEXPLORER.exe did NOT open with startup this time--yay!

Here's he AWF:


Find AWF report by noahdfear ©2006
Version 1.40

The current date is: Thu 10/04/2007
The current time is: 22:59:36.93


bak folders found
~~~~~~~~~~~


Directory of C:\PROGRA~1\ITUNES\BAK

06/14/2006 04:24 PM 278,528 iTunesHelper.exe
1 File(s) 278,528 bytes

Directory of C:\PROGRA~1\QUICKT~1\BAK

10/02/2007 01:10 PM 27,664 qttask.exe
1 File(s) 27,664 bytes

Directory of C:\PROGRA~1\SYMANT~1\BAK

03/14/2007 07:49 PM 125,632 VPTray.exe
1 File(s) 125,632 bytes

Directory of C:\PROGRA~1\SYMNET~1\BAK

08/09/2006 05:08 AM 104,128 SNDMon.exe
1 File(s) 104,128 bytes

Directory of C:\PROGRA~1\WINDOW~1\BAK

10/18/2006 06:05 PM 204,288 WMPNSCFG.exe
1 File(s) 204,288 bytes

Directory of C:\WINDOWS\SYSTEM32\BAK

08/04/2004 01:00 AM 15,360 ctfmon.exe
08/24/2005 12:47 PM 77,824 hkcmd.exe
08/24/2005 12:51 PM 114,688 igfxpers.exe
08/24/2005 12:50 PM 94,208 igfxtray.exe
4 File(s) 302,080 bytes

Directory of C:\PROGRA~1\COMMON~1\SYMANT~1\BAK

02/17/2006 11:05 AM 59,040 ccApp.exe
1 File(s) 59,040 bytes

Directory of C:\PROGRA~1\GOOGLE\GOOGLE~1\BAK

06/30/2007 08:48 PM 68,856 GoogleToolbarNotifier.exe
1 File(s) 68,856 bytes

Directory of C:\PROGRA~1\HPQ\QUICKL~1\BAK

09/17/2004 05:19 PM 290,816 EabServr.exe
1 File(s) 290,816 bytes

Directory of C:\PROGRA~1\QUICKT~1\BAK\BAK

06/07/2006 08:58 PM 282,624 qttask.exe
1 File(s) 282,624 bytes

Directory of C:\PROGRA~1\SYNAPT~1\SYNTP\BAK

11/04/2004 06:38 PM 688,218 SynTPEnh.exe
11/04/2004 06:40 PM 98,394 SynTPLpr.exe
2 File(s) 786,612 bytes

Directory of C:\WINDOWS\IME\IMJP8_1\BAK

08/04/2004 06:00 AM 208,952 IMJPMIG.EXE
1 File(s) 208,952 bytes

Directory of C:\PROGRA~1\COMMON~1\LOGISHRD\LCOMMGR\BAK

05/11/2007 05:25 PM 505,368 Communications_Helper.exe
1 File(s) 505,368 bytes

Directory of C:\WINDOWS\SYSTEM32\IME\PINTLGNT\BAK

08/04/2004 06:00 AM 59,392 ImScInst.exe
1 File(s) 59,392 bytes

Directory of C:\WINDOWS\SYSTEM32\IME\TINTLGNT\BAK

08/04/2004 06:00 AM 455,168 TINTSETP.EXE
1 File(s) 455,168 bytes


Duplicate files of bak directory contents
~~~~~~~~~~~~~~~~~~~~~~~

267064 Sep 14 2007 "C:\Program Files\iTunes\iTunesHelper.exe1190939531"
278528 Jun 14 2006 "C:\Program Files\iTunes\bak\iTunesHelper.exe"
282624 Jun 7 2006 "C:\Program Files\QuickTime\qttask.exe"
27664 Oct 2 2007 "C:\Program Files\QuickTime\bak\qttask.exe"
282624 Jun 7 2006 "C:\Program Files\QuickTime\bak\bak\qttask.exe"
282624 Jun 7 2006 "C:\Program Files\QuickTime\qttask.exe"
27664 Oct 2 2007 "C:\Program Files\QuickTime\bak\qttask.exe"
282624 Jun 7 2006 "C:\Program Files\QuickTime\bak\bak\qttask.exe"
125632 Mar 14 2007 "C:\Program Files\Symantec AntiVirus\VPTray.exe"
125632 Mar 14 2007 "C:\Program Files\Symantec AntiVirus\bak\VPTray.exe"
104080 Oct 2 2007 "C:\Program Files\SymNetDrv\SNDMon.exe"
104128 Aug 9 2006 "C:\Program Files\SymNetDrv\bak\SNDMon.exe"
204288 Oct 18 2006 "C:\Program Files\Windows Media Player\WMPNSCFG.exe"
204288 Oct 18 2006 "C:\Program Files\Windows Media Player\bak\WMPNSCFG.exe"
15360 Aug 4 2004 "C:\WINDOWS\system32\ctfmon.exe"
15360 Aug 4 2004 "C:\WINDOWS\system32\bak\ctfmon.exe"
118784 Jun 17 2004 "C:\swsetup\SP28484\hkcmd.exe"
118784 Jun 17 2004 "C:\swsetup\Video\hkcmd.exe"
77824 Aug 24 2005 "C:\WINDOWS\system32\hkcmd.exe"
118784 Jun 17 2004 "C:\swsetup\SP28484\Win2000\hkcmd.exe"
118784 Jun 17 2004 "C:\swsetup\Video\Win2000\hkcmd.exe"
77824 Aug 24 2005 "C:\WINDOWS\system32\bak\hkcmd.exe"
118784 Jun 17 2004 "C:\WINDOWS\Drivers\Intel\Graphics\win2000\hkcmd.exe"
118784 Jun 17 2004 "C:\WINDOWS\system32\ReinstallBackups\0014\DriverFiles\hkcmd.exe"
118784 Jun 17 2004 "C:\WINDOWS\system32\ReinstallBackups\0015\DriverFiles\hkcmd.exe"
118784 Jun 17 2004 "C:\WINDOWS\system32\ReinstallBackups\0016\DriverFiles\hkcmd.exe"
114688 Aug 24 2005 "C:\WINDOWS\system32\bak\igfxpers.exe"
155648 Jun 17 2004 "C:\swsetup\SP28484\igfxtray.exe"
155648 Jun 17 2004 "C:\swsetup\Video\igfxtray.exe"
155648 Jun 17 2004 "C:\swsetup\SP28484\Win2000\igfxtray.exe"
155648 Jun 17 2004 "C:\swsetup\Video\Win2000\igfxtray.exe"
94208 Aug 24 2005 "C:\WINDOWS\system32\bak\igfxtray.exe"
155648 Jun 17 2004 "C:\WINDOWS\Drivers\Intel\Graphics\win2000\igfxtray.exe"
155648 Jun 17 2004 "C:\WINDOWS\system32\ReinstallBackups\0014\DriverFiles\igfxtray.exe"
155648 Jun 17 2004 "C:\WINDOWS\system32\ReinstallBackups\0015\DriverFiles\igfxtray.exe"
155648 Jun 17 2004 "C:\WINDOWS\system32\ReinstallBackups\0016\DriverFiles\igfxtray.exe"
52840 Nov 21 2006 "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
59040 Feb 17 2006 "C:\Program Files\Common Files\Symantec Shared\bak\ccApp.exe"
58488 Aug 14 2004 "C:\swsetup\NAV05\02\Support\ccCommon\ccCommon\ccApp.exe"
58488 Aug 14 2004 "C:\swsetup\NAV05\37\Support\ccCommon\ccCommon\ccApp.exe"
58488 Aug 14 2004 "C:\swsetup\NAV05\US\Support\ccCommon\ccCommon\ccApp.exe"
52272 Jan 27 2007 "C:\Program Files\Google\googletoolbar3user.exe"
24592 Sep 27 2007 "C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe1190940358"
138168 Jan 27 2007 "C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe"
68856 Jun 30 2007 "C:\Program Files\Google\GoogleToolbarNotifier\bak\GoogleToolbarNotifier.exe"
290816 Sep 17 2004 "C:\Program Files\HPQ\Quick Launch Buttons\EabServr.exe"
290816 Sep 17 2004 "C:\Program Files\HPQ\Quick Launch Buttons\bak\EabServr.exe"
282624 Jun 7 2006 "C:\Program Files\QuickTime\qttask.exe"
27664 Oct 2 2007 "C:\Program Files\QuickTime\bak\qttask.exe"
282624 Jun 7 2006 "C:\Program Files\QuickTime\bak\bak\qttask.exe"
688218 Nov 4 2004 "C:\swsetup\SP29294\SynTPEnh.exe"
688218 Oct 5 2004 "C:\swsetup\Touchpad\SynTPEnh.exe"
827392 Jun 8 2007 "C:\Program Files\Synaptics\SynTP\SynTPEnh.exe"
688218 Nov 4 2004 "C:\Program Files\Synaptics\SynTP\bak\SynTPEnh.exe"
688218 Nov 4 2004 "C:\Program Files\Synaptics\SynTP\Media\SynTPEnh.exe"
688218 Nov 4 2004 "C:\WINDOWS\system32\ReinstallBackups\0010\DriverFiles\SynTPEnh.exe"
98394 Nov 4 2004 "C:\swsetup\SP29294\SynTPLpr.exe"
98394 Oct 5 2004 "C:\swsetup\Touchpad\SynTPLpr.exe"
24592 Sep 27 2007 "C:\Program Files\Synaptics\SynTP\SynTPLpr.exe"
98394 Nov 4 2004 "C:\Program Files\Synaptics\SynTP\bak\SynTPLpr.exe"
98394 Nov 4 2004 "C:\Program Files\Synaptics\SynTP\Media\SynTPLpr.exe"
24592 Sep 27 2007 "C:\WINDOWS\system32\ReinstallBackups\0010\DriverFiles\SynTPLpr.exe"
208952 Aug 4 2004 "C:\WINDOWS\ime\imjp8_1\imjpmig.exe"
208952 Aug 4 2004 "C:\WINDOWS\ime\imjp8_1\bak\IMJPMIG.EXE"
505368 May 11 2007 "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe1191356013"
505368 May 11 2007 "C:\Program Files\Common Files\LogiShrd\LComMgr\bak\Communications_Helper.exe"
59392 Aug 4 2004 "C:\WINDOWS\system32\IME\PINTLGNT\imscinst.exe"
59392 Aug 4 2004 "C:\WINDOWS\system32\IME\PINTLGNT\bak\ImScInst.exe"
455168 Aug 4 2004 "C:\WINDOWS\system32\IME\TINTLGNT\tintsetp.exe"
455168 Aug 4 2004 "C:\WINDOWS\system32\IME\TINTLGNT\bak\TINTSETP.EXE"


end of report


And the HJT:

Logfile of HijackThis v1.99.1
Scan saved at 11:11:31 PM, on 10/4/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Ahead\InCD\InCDsrv.exe
C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
C:\Program Files\BigFix Enterprise\BES Client\BESClient.exe
C:\Program Files\Symantec AntiVirus\DefWatch.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE
C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Symantec AntiVirus\Rtvscan.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\Program Files\OpenAFS\Client\Program\afsd_service.exe
C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\Program Files\QuickTime\bak\qttask.exe
C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe
C:\Program Files\Logitech\QuickCam\Quickcam.exe
C:\PROGRA~1\SYMANT~1\VPTray.exe
C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
C:\Program Files\Logitech\SetPoint\SetPoint.exe
C:\Program Files\YPOPs\YPOPs.exe
C:\Program Files\Common Files\Logitech\KhalShared\KHALMNPR.EXE
C:\Program Files\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\Microsoft Office\OFFICE11\OUTLOOK.EXE
C:\Program Files\Microsoft Office\OFFICE11\WINWORD.EXE
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\Documents and Settings\Steve Sha\My Documents\Downloads\HJT\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = https://ie.redirect.hp.com/svs/rdr?TY...lion&pf=laptop
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = https://ie.redirect.hp.com/svs/rdr?TY...lion&pf=laptop
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - (no file)
O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\2.0.301.7164\swg.dll
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
O4 - HKLM\..\Run: [MSPY2002] C:\WINDOWS\system32\IME\PINTLGNT\ImScInst.exe /SYNC
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\system32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Enterprise
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\bak\bak\qttask.exe" -atboottime
O4 - HKLM\..\Run: [Kernel and Hardware Abstraction Layer] KHALMNPR.EXE
O4 - HKLM\..\Run: [LogitechCommunicationsManager] "C:\Program Files\Common Files\LogiShrd\LComMgr\Communications_Helper.exe"
O4 - HKLM\..\Run: [LogitechQuickCamRibbon] "C:\Program Files\Logitech\QuickCam\Quickcam.exe" /hide
O4 - HKLM\..\Run: [vptray] C:\PROGRA~1\SYMANT~1\VPTray.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [swg] C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
O4 - Startup: YPOPs.lnk = ?
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O4 - Global Startup: Logitech SetPoint.lnk = C:\Program Files\Logitech\SetPoint\SetPoint.exe
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_05\bin\npjpi142_05.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~4\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O14 - IERESET.INF: START_PAGE_URL=https://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=Q105&bd=pavilion&pf=laptop
O15 - Trusted Zone: *.whataboutadog.com
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - https://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {26BFFB87-5B07-4611-82BB-AF3947013FDD} - https://www.lexis.com/dl/IEDAP.cab
O16 - DPF: {4CCA4E80-9259-11D9-AC6E-444553544200} (FixController Control) - https://h30155.www3.hp.com/ediags/dd/...lMgr_v01_5.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - https://upload.facebook.com/controls/...toUploader.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - https://go.divx.com/plugin/DivXBrowserPlugin.cab
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - https://acs.pandasoftware.com/actives...ree/asinst.cab
O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
O20 - Winlogon Notify: AfsLogon - C:\WINDOWS\system32\afslogon.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
O20 - Winlogon Notify: KFWLogon - C:\WINDOWS\system32\afslogon.dll
O20 - Winlogon Notify: NavLogon - C:\WINDOWS\system32\NavLogon.dll
O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
O23 - Service: Apple Mobile Device - Apple, Inc. - C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
O23 - Service: Automatic LiveUpdate Scheduler - Symantec Corporation - C:\Program Files\Symantec\LiveUpdate\ALUSchedulerSvc.exe
O23 - Service: AVG Anti-Spyware Guard - GRISOFT s.r.o. - C:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe
O23 - Service: BES Client (BESClient) - BigFix Inc. - C:\Program Files\BigFix Enterprise\BES Client\BESClient.exe
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Symantec AntiVirus Definition Watcher (DefWatch) - Symantec Corporation - C:\Program Files\Symantec AntiVirus\DefWatch.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: HP WMI Interface (hpqwmi) - Hewlett-Packard Development Company, L.P. - C:\Program Files\HPQ\SHARED\HPQWMI.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: InCD Helper (InCDsrv) - Nero AG - C:\Program Files\Ahead\InCD\InCDsrv.exe
O23 - Service: LiveUpdate - Symantec Corporation - C:\PROGRA~1\Symantec\LIVEUP~1\LUCOMS~1.EXE
O23 - Service: LVCOMSer - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVCOMSER\LVComSer.exe
O23 - Service: Process Monitor (LVPrcSrv) - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\LVMVFM\LVPrcSrv.exe
O23 - Service: LVSrvLauncher - Logitech Inc. - C:\Program Files\Common Files\LogiShrd\SrvLnch\SrvLnch.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: Norton Unerase Protection (NProtectService) - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\NPROTECT.EXE
O23 - Service: SAVRoam (SavRoam) - symantec - C:\Program Files\Symantec AntiVirus\SavRoam.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Speed Disk service - Symantec Corporation - C:\PROGRA~1\NORTON~2\NORTON~1\SPEEDD~1\NOPDB.EXE
O23 - Service: Symantec AntiVirus - Symantec Corporation - C:\Program Files\Symantec AntiVirus\Rtvscan.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: OpenAFS Client (TransarcAFSDaemon) - OpenAFS Project - C:\Program Files\OpenAFS\Client\Program\afsd_service.exe


Does it look clean? My system seems to be working pretty smoothly now.
ssha16 is offline  
 

Thread Tools Search this Thread
Search this Thread:

Advanced Search

Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is on
Smilies are on
[IMG] code is on
HTML code is Off
Trackbacks are Off
Pingbacks are Off
Refbacks are Off


Post a Question


» Site Navigation
 > FAQ
  > 10.0.0.2
Powered by vBadvanced CMPS v3.2.3


All times are GMT -7. The time now is 08:22 PM.


Powered by vBulletin® Version 3.8.8
Copyright ©2000 - 2020, vBulletin Solutions, Inc.
vBulletin Security provided by vBSecurity v2.2.2 (Pro) - vBulletin Mods & Addons Copyright © 2020 DragonByte Technologies Ltd.
User Alert System provided by Advanced User Tagging v3.1.0 (Pro) - vBulletin Mods & Addons Copyright © 2020 DragonByte Technologies Ltd.
Copyright 2001 - 2018, Tech Support Forum

Windows 10 - Windows 7 - Windows XP - Windows Vista - Trojan Removal - Spyware Removal - Virus Removal - Networking - Security - Top Web Hosts