1. This site uses cookies. By continuing to use this site, you are agreeing to our use of cookies. Learn More.

topsecuritysite infestation. Please help.

Discussion in 'Windows - Virus and spyware problems' started by TIL8472, Jun 16, 2006.

  1. cyberbobx

    cyberbobx Member

    Joined:
    Jun 29, 2006
    Messages:
    4
    Likes Received:
    0
    Trophy Points:
    11
    Logfile of HijackThis v1.99.1
    Scan saved at 16:23:55, on 29/06/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe
    C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    C:\Program Files\ewido anti-spyware 4.0\guard.exe
    C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
    C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
    C:\Program Files\Microsoft SQL Server\MSSQL$INVENTORCONTENT\Binn\sqlservr.exe
    C:\Program Files\Adobe\Adobe Version Cue CS2\data\database\bin\mysqld-nt.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Analog Devices\Core\smax4pnp.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
    C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
    C:\WINDOWS\System32\DLA\DLACTRLW.EXE
    C:\Program Files\Common Files\AOL\1142108150\ee\AOLSoftware.exe
    C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
    C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
    C:\Program Files\DAEMON Tools\daemon.exe
    C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb04.exe
    C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe
    C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe
    C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe
    C:\WINDOWS\system32\hkcmd.exe
    C:\WINDOWS\system32\igfxpers.exe
    c:\program files\common files\aol\1142108150\ee\services\antiSpywareApp\ver2_0_25_1\AOLSP Scheduler.exe
    C:\Program Files\PowerISO\PWRISOVM.EXE
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\WINDOWS\system32\5c01245f.exe
    C:\Program Files\12018SC Multimedia Mouse Driver\MouseDrv.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\YourWare Solutions\FreeRAM XP Pro\FreeRAM XP Pro.exe
    c:\program files\common files\aol\1142108150\ee\aolsoftware.exe
    C:\Program Files\AOL 9.0\aoltray.exe
    C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
    C:\Program Files\NETGEAR\WG111T Configuration Utility\wlan111t.exe
    C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
    C:\Program Files\UltimateZip 2.7\uzqkst.exe
    C:\Program Files\MSN Messenger\msnmsgr.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\Soulseek\slsk.exe
    C:\Documents and Settings\BobakJ\Desktop\HijackThis_v1.99.1.exe

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www1.euro.dell.com/content/default.aspx?c=uk&l=en&s=gen
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://www1.euro.dell.com/content/default.aspx?c=uk&l=en&s=gen
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://192.168.0.1/
    R3 - Default URLSearchHook is missing
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Adobe Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: (no name) - {1C503CD6-1728-4E78-8A00-AF931296BA09} - C:\WINDOWS\system32\ssqro.dll (file missing)
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
    O2 - BHO: Nothing - {686a161d-5bd1-4999-8832-6393f41e564c} - C:\WINDOWS\system32\hp100.tmp
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O2 - BHO: CVirtualDNSObj Object - {86C510E9-97EF-4749-914F-0280247BE3A6} - C:\WINDOWS\VirtualDNS.dll (file missing)
    O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
    O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
    O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
    O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
    O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
    O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
    O4 - HKLM\..\Run: [MSKDetectorExe] C:\Program Files\McAfee\SpamKiller\MSKDetct.exe /uninstall
    O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1142108150\ee\AOLSoftware.exe
    O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
    O4 - HKLM\..\Run: [GhostSurf Reminder] "C:\Program Files\GhostSurf 2005\Privacy Control Center.exe" reminder
    O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
    O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
    O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb04.exe
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [H2O] C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe
    O4 - HKLM\..\Run: [Adobe Version Cue CS2] "C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe"
    O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe"
    O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
    O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [WireLessMouse] C:\Program Files\12018SC Multimedia Mouse Driver\StartAutorun.exe MouseDrv.exe
    O4 - HKLM\..\Run: [c4ec0416.exe] C:\WINDOWS\system32\c4ec0416.exe
    O4 - HKLM\..\Run: [5c01245f.exe] C:\WINDOWS\system32\5c01245f.exe
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [FreeRAM XP] "C:\Program Files\YourWare Solutions\FreeRAM XP Pro\FreeRAM XP Pro.exe" -win
    O4 - HKCU\..\Run: [5c01245f.exe] C:\Documents and Settings\BobakJ\Local Settings\Application Data\5c01245f.exe
    O4 - Startup: Scheduler.lnk = C:\Program Files\GhostSurf 2005\Scheduler daemon.exe
    O4 - Startup: UltimateZip Quick Start.lnk = C:\Program Files\UltimateZip 2.7\uzqkst.exe
    O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
    O4 - Global Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Global Startup: AOL 9.0 Tray Icon.lnk = C:\Program Files\AOL 9.0\aoltray.exe
    O4 - Global Startup: Check Local Printer.lnk = C:\Program Files\KXP6X00\Chkpnt.exe
    O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
    O4 - Global Startup: NETGEAR WG111T Smart Wizard.lnk = ?
    O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
    O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
    O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
    O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
    O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
    O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
    O20 - Winlogon Notify: ssqro - C:\WINDOWS\system32\ssqro.dll (file missing)
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O20 - Winlogon Notify: winjyp32 - winjyp32.dll (file missing)
    O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
    O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
    O23 - Service: Adobe Version Cue CS2 - Unknown owner - C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe" -win32service (file missing)
    O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
    O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
    O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
    O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
    O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
    O23 - Service: Sandra Data Service (SandraDataSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2005\RpcDataSrv.exe
    O23 - Service: Sandra Service (SandraTheSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2005\RpcSandraSrv.exe

    Thanks, Bob
     
  2. JaPK

    JaPK Regular member

    Joined:
    Feb 23, 2006
    Messages:
    1,269
    Likes Received:
    0
    Trophy Points:
    46
    Ok cyberbobx, you got some infections on your computer....

    You have two antivirusses running, AVG and McAfee, this is not recommended and may cause serious conflicts. You should remove one of these two and leave only one.
    So Go to Control Panel -> Add/Remove programs -> Remove AVG or McAfee

    Cleaning instructions:

    Move HijackThis into its own folder C:\HJT

    -> Open Ewido Anti-Spyware
    -> Click the Update icon at the top of the window
    -> Click the Start update button
    -> Wait for the update to download and install
    -> Quit the program, we'll use this later.

    Download ATF Cleaner by Atribune to your desktop -> http://www.atribune.org/ccount/click.php?id=1
    Do NOT run yet.

    Download VundoFix.exe to your desktop -> http://www.atribune.org/ccount/click.php?id=4

    * Double-click VundoFix.exe to run it.
    * Put a check next to Run VundoFix as a task.
    * You will receive a message saying vundofix will close and re-open in a minute or less. Click OK
    * When VundoFix re-opens, click the Scan for Vundo button.
    * Once it's done scanning, click the Remove Vundo button.
    * You will receive a prompt asking if you want to remove the files, click YES
    * Once you click yes, your desktop will go blank as it starts removing Vundo.
    * When completed, it will prompt that it will shutdown your computer, click OK.
    * Turn your computer back on

    Run HijackThis. Press Do a system scan only, then close all other windows, checkmark the following entries and press Fix checked

    R3 - Default URLSearchHook is missing
    O2 - BHO: (no name) - {1C503CD6-1728-4E78-8A00-AF931296BA09} - C:\WINDOWS\system32\ssqro.dll (file missing)
    O2 - BHO: CVirtualDNSObj Object - {86C510E9-97EF-4749-914F-0280247BE3A6} - C:\WINDOWS\VirtualDNS.dll (file missing)
    O4 - HKLM\..\Run: [c4ec0416.exe] C:\WINDOWS\system32\c4ec0416.exe
    O4 - HKLM\..\Run: [5c01245f.exe] C:\WINDOWS\system32\5c01245f.exe
    O4 - HKCU\..\Run: [5c01245f.exe] C:\Documents and Settings\BobakJ\Local Settings\Application Data\5c01245f.exe
    O20 - Winlogon Notify: ssqro - C:\WINDOWS\system32\ssqro.dll (file missing)
    O20 - Winlogon Notify: winjyp32 - winjyp32.dll (file missing)

    Make your hidden files visible -> http://www.bleepingcomputer.com/tutorials/tutorial62.html
    Restart your computer to the safemode -> http://www.pchell.com/support/safemode.shtml

    Delete these files (if found):
    C:\WINDOWS\system32\c4ec0416.exe
    C:\WINDOWS\system32\5c01245f.exe
    C:\Documents and Settings\BobakJ\Local Settings\Application Data\5c01245f.exe
    C:\Documents and Settings\BobakJ\Local Settings\Application Data\c4ec0416.exe

    Run ATF Cleaner -> Check select all -> Press Empty selected

    -> Open Ewido Anti-Spyware
    -> Click the Scanner icon at the top of the window
    -> Click the Settings tab then select Recommended Options and choose Quarantine
    -> Click the Scan tab
    -> Select Complete System Scan. The scanning begins.
    -> When the scan has completed, click on the Save Scan Report button and save the scan to your Desktop.
    -> Copy and paste the scan results into your next post

    When in safemode, open SmitfraudFix folder and doubleclick the file smitfraudfix.cmd
    Choose option #2 - Clean by typing 2 and pressing "Enter" in order to remove the infected files.

    You are asked: "Registry cleaning - Do you want to clean the registry ?"; answer "Yes" by typing Y and press "Enter" in order to remove your desktop wallpaper and the infected registry keys.

    The tool checks if wininet.dll file is infected. You might be asked to replace the infected .dll (if found); answer "Yes" by typing Y and press "Enter".

    The tool might have to restart your computer; if it won't do it, restart your computer back to normal mode.
    A textfile will appear after the cleaning process, copy this file and paste it to here.

    Tha log is saved to your local diskdrive, usually C:\rapport.txt.

    Warning : Running option 2 in a clean computer will delete your desktop wallpaper.

    Clean the Recycle bin.

    Restart your computer normally.

    Post the following logs to here:
    ->a fresh HijackThis log
    -> Ewido's log
    -> contents of C:\vundofix.txt
    -> contents of C:\rapport.txt
     
    Last edited: Jun 29, 2006
  3. cyberbobx

    cyberbobx Member

    Joined:
    Jun 29, 2006
    Messages:
    4
    Likes Received:
    0
    Trophy Points:
    11
    Hey
    Logfile of HijackThis v1.99.1
    Scan saved at 19:47:19, on 29/06/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe
    C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    C:\Program Files\Analog Devices\Core\smax4pnp.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
    C:\Program Files\ewido anti-spyware 4.0\guard.exe
    C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
    C:\WINDOWS\System32\DLA\DLACTRLW.EXE
    C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    C:\Program Files\Common Files\AOL\1142108150\ee\AOLSoftware.exe
    C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
    C:\Program Files\DAEMON Tools\daemon.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
    C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb04.exe
    C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
    C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe
    C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe
    C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe
    C:\Program Files\Microsoft SQL Server\MSSQL$INVENTORCONTENT\Binn\sqlservr.exe
    C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
    C:\WINDOWS\system32\hkcmd.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\system32\igfxpers.exe
    C:\Program Files\PowerISO\PWRISOVM.EXE
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\12018SC Multimedia Mouse Driver\MouseDrv.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\QuickTime\qttask.exe
    c:\program files\common files\aol\1142108150\ee\services\antiSpywareApp\ver2_0_25_1\AOLSP Scheduler.exe
    C:\Program Files\ewido anti-spyware 4.0\ewido.exe
    c:\program files\common files\aol\1142108150\ee\aolsoftware.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\YourWare Solutions\FreeRAM XP Pro\FreeRAM XP Pro.exe
    C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\acrobat_sl.exe
    C:\Program Files\AOL 9.0\aoltray.exe
    C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
    C:\Program Files\NETGEAR\WG111T Configuration Utility\wlan111t.exe
    C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
    C:\Program Files\Adobe\Adobe Version Cue CS2\data\database\bin\mysqld-nt.exe
    C:\Program Files\UltimateZip 2.7\uzqkst.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\HJT\HijackThis_v1.99.1.exe

    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://192.168.0.1/
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Adobe Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
    O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
    O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
    O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
    O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
    O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
    O4 - HKLM\..\Run: [MSKDetectorExe] C:\Program Files\McAfee\SpamKiller\MSKDetct.exe /uninstall
    O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1142108150\ee\AOLSoftware.exe
    O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
    O4 - HKLM\..\Run: [GhostSurf Reminder] "C:\Program Files\GhostSurf 2005\Privacy Control Center.exe" reminder
    O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
    O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
    O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb04.exe
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [H2O] C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe
    O4 - HKLM\..\Run: [Adobe Version Cue CS2] "C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe"
    O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe"
    O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
    O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [WireLessMouse] C:\Program Files\12018SC Multimedia Mouse Driver\StartAutorun.exe MouseDrv.exe
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [FreeRAM XP] "C:\Program Files\YourWare Solutions\FreeRAM XP Pro\FreeRAM XP Pro.exe" -win
    O4 - Startup: Scheduler.lnk = C:\Program Files\GhostSurf 2005\Scheduler daemon.exe
    O4 - Startup: UltimateZip Quick Start.lnk = C:\Program Files\UltimateZip 2.7\uzqkst.exe
    O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
    O4 - Global Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Global Startup: AOL 9.0 Tray Icon.lnk = C:\Program Files\AOL 9.0\aoltray.exe
    O4 - Global Startup: Check Local Printer.lnk = C:\Program Files\KXP6X00\Chkpnt.exe
    O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
    O4 - Global Startup: NETGEAR WG111T Smart Wizard.lnk = ?
    O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
    O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
    O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
    O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
    O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
    O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
    O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
    O23 - Service: Adobe Version Cue CS2 - Unknown owner - C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe" -win32service (file missing)
    O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
    O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
    O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
    O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
    O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
    O23 - Service: Sandra Data Service (SandraDataSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2005\RpcDataSrv.exe
    O23 - Service: Sandra Service (SandraTheSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2005\RpcSandraSrv.exe






    ---------------------------------------------------------
    ewido anti-spyware - Scan Report
    ---------------------------------------------------------

    + Created at: 19:32:32 29/06/2006

    + Scan result:



    HKU\S-1-5-21-3089254658-1086958249-218296358-1005\Software\Microsoft\Internet Explorer\URLSearchHooks\{944864A5-3916-46E2-96A9-A2E84F3F1208} -> Adware.Accoona : No action taken.
    HKU\S-1-5-21-3089254658-1086958249-218296358-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{364B6276-C6C1-40B6-A6D7-6C48871FD707} -> Adware.Accoona : No action taken.
    HKU\S-1-5-21-3089254658-1086958249-218296358-1005\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{944864A5-3916-46E2-96A9-A2E84F3F1208} -> Adware.Accoona : No action taken.
    C:\Documents and Settings\BobakJ\Local Settings\Temp\SHNTK.exe -> Adware.NewDotNet : No action taken.
    C:\WINDOWS\system32\efcbxwu.dll -> Adware.Virtumonde : No action taken.
    C:\Documents and Settings\BobakJ\Local Settings\Temp\cppn23wv.exe -> Downloader.Small : No action taken.
    C:\WINDOWS\system32\ld100.tmp -> Downloader.Zlob.sd : No action taken.
    :mozilla.170:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.171:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.172:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.173:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.174:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.175:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.176:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.177:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.178:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.179:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.180:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.186:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.187:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.189:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.190:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.191:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.192:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.193:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.194:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.195:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.196:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.197:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.198:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.199:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.200:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.201:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.202:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.203:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.204:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.205:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.206:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.330:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.331:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.332:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.333:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.666:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.2o7 : No action taken.
    :mozilla.100:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
    :mozilla.630:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
    :mozilla.96:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
    :mozilla.97:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
    :mozilla.98:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
    :mozilla.99:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Adbrite : No action taken.
    :mozilla.343:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Addynamix : No action taken.
    :mozilla.344:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Addynamix : No action taken.
    :mozilla.530:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Adjuggler : No action taken.
    :mozilla.531:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Adjuggler : No action taken.
    :mozilla.532:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Adjuggler : No action taken.
    :mozilla.533:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Adjuggler : No action taken.
    :mozilla.534:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Adjuggler : No action taken.
    :mozilla.535:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Adjuggler : No action taken.
    :mozilla.228:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
    :mozilla.229:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
    :mozilla.230:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
    :mozilla.231:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
    :mozilla.232:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Adrevolver : No action taken.
    :mozilla.136:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Adtech : No action taken.
    :mozilla.137:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Adtech : No action taken.
    :mozilla.131:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
    :mozilla.132:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
    :mozilla.133:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
    :mozilla.134:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
    :mozilla.135:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Advertising : No action taken.
    :mozilla.452:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Adviva : No action taken.
    :mozilla.117:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Atdmt : No action taken.
    :mozilla.329:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Bluestreak : No action taken.
    :mozilla.974:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Bridgetrack : No action taken.
    :mozilla.975:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Bridgetrack : No action taken.
    :mozilla.976:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Bridgetrack : No action taken.
    :mozilla.537:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Burstbeacon : No action taken.
    :mozilla.466:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Burstnet : No action taken.
    :mozilla.467:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Burstnet : No action taken.
    :mozilla.468:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Burstnet : No action taken.
    :mozilla.233:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
    :mozilla.234:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
    :mozilla.235:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
    :mozilla.236:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
    :mozilla.237:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
    :mozilla.238:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
    :mozilla.239:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
    :mozilla.240:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
    :mozilla.241:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Casalemedia : No action taken.
    :mozilla.285:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Clickbank : No action taken.
    :mozilla.304:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Clickhype : No action taken.
    :mozilla.305:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Clickhype : No action taken.
    :mozilla.306:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Clickhype : No action taken.
    :mozilla.572:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Clickzs : No action taken.
    :mozilla.574:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Clickzs : No action taken.
    :mozilla.575:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Clickzs : No action taken.
    :mozilla.576:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Clickzs : No action taken.
    :mozilla.669:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Com : No action taken.
    :mozilla.79:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Doubleclick : No action taken.
    :mozilla.152:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.169:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.453:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.454:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.458:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.461:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.462:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.463:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.470:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.566:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.567:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.568:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.569:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.570:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.571:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.584:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.611:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.612:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.613:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.706:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.707:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.708:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.709:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.710:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.711:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.712:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.713:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.714:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.715:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.716:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.717:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.718:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.719:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.720:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.721:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.722:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.723:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.724:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.725:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.726:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.727:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.728:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.729:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.730:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.731:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.732:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.733:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.734:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.735:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.736:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.737:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.738:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.739:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.740:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.741:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.742:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.743:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.744:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.745:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.746:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.747:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.748:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.749:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.750:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.751:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.752:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.753:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.754:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.755:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.756:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.757:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.758:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.759:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.760:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.761:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.762:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.763:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.764:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.765:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.766:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.767:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.768:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.769:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.770:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.771:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.772:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.773:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.774:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.775:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.776:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.777:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.778:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.779:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Esomniture : No action taken.
    :mozilla.272:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
    :mozilla.273:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
    :mozilla.274:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
    :mozilla.275:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
    :mozilla.88:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
    :mozilla.95:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Falkag : No action taken.
    :mozilla.138:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
    :mozilla.140:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
    :mozilla.142:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
    :mozilla.143:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
    :mozilla.144:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
    :mozilla.145:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
    :mozilla.146:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Fastclick : No action taken.
    :mozilla.248:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
    :mozilla.287:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
    :mozilla.291:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Googleadservices : No action taken.
    :mozilla.245:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Hitbox : No action taken.
    :mozilla.246:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Hitbox : No action taken.
    :mozilla.247:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Hitbox : No action taken.
    :mozilla.536:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Hitbox : No action taken.
    :mozilla.437:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Hotlog : No action taken.
    :mozilla.397:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Liveperson : No action taken.
    :mozilla.398:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Liveperson : No action taken.
    :mozilla.399:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Liveperson : No action taken.
    :mozilla.573:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Masterstats : No action taken.
    :mozilla.165:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Mediaplex : No action taken.
    :mozilla.166:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Mediaplex : No action taken.
    :mozilla.260:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Onestat : No action taken.
    :mozilla.261:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Onestat : No action taken.
    :mozilla.89:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Overture : No action taken.
    :mozilla.90:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Overture : No action taken.
    :mozilla.861:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Paycounter : No action taken.
    :mozilla.635:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
    :mozilla.636:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
    :mozilla.637:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
    :mozilla.638:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Pointroll : No action taken.
    :mozilla.167:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Qksrv : No action taken.
    :mozilla.168:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Qksrv : No action taken.
    :mozilla.367:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Questionmarket : No action taken.
    :mozilla.368:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Questionmarket : No action taken.
    :mozilla.369:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Questionmarket : No action taken.
    :mozilla.473:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
    :mozilla.474:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
    :mozilla.475:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
    :mozilla.476:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
    :mozilla.477:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
    :mozilla.478:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
    :mozilla.479:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
    :mozilla.480:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Reliablestats : No action taken.
    :mozilla.221:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
    :mozilla.222:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
    :mozilla.223:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
    :mozilla.224:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
    :mozilla.225:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
    :mozilla.226:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
    :mozilla.227:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Revenue : No action taken.
    :mozilla.789:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Ru4 : No action taken.
    :mozilla.790:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Ru4 : No action taken.
    :mozilla.791:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Ru4 : No action taken.
    :mozilla.216:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
    :mozilla.217:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
    :mozilla.218:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
    :mozilla.219:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
    :mozilla.220:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Serving-sys : No action taken.
    :mozilla.676:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
    :mozilla.677:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
    :mozilla.678:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
    :mozilla.679:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
    :mozilla.680:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
    :mozilla.681:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
    :mozilla.682:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
    :mozilla.683:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
    :mozilla.684:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
    :mozilla.685:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
    :mozilla.686:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
    :mozilla.687:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
    :mozilla.688:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
    :mozilla.689:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Sexcounter : No action taken.
    :mozilla.528:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Spylog : No action taken.
    :mozilla.892:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.893:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.894:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.895:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.896:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.897:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.898:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.899:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.900:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.901:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.902:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.903:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.904:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.905:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.906:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.907:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.908:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.909:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.910:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.911:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.912:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.913:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.914:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.915:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.916:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.917:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.918:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.919:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.920:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.921:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.922:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.923:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.924:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Statcounter : No action taken.
    :mozilla.148:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
    :mozilla.149:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
    :mozilla.150:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
    :mozilla.151:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Tacoda : No action taken.
    :mozilla.518:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
    :mozilla.520:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
    :mozilla.522:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
    :mozilla.523:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
    :mozilla.524:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
    :mozilla.525:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Tradedoubler : No action taken.
    :mozilla.263:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
    :mozilla.264:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
    :mozilla.265:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
    :mozilla.266:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
    :mozilla.267:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
    :mozilla.268:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
    :mozilla.269:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
    :mozilla.270:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Trafficmp : No action taken.
    :mozilla.929:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Trafic : No action taken.
    :mozilla.16:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Tribalfusion : No action taken.
    :mozilla.17:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Tribalfusion : No action taken.
    :mozilla.139:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Valueclick : No action taken.
    :mozilla.141:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Valueclick : No action taken.
    :mozilla.866:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Valueclick : No action taken.
    :mozilla.867:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Valueclick : No action taken.
    :mozilla.868:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Valueclick : No action taken.
    :mozilla.937:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Valueclick : No action taken.
    :mozilla.324:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Webtrendslive : No action taken.
    :mozilla.436:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Yadro : No action taken.
    :mozilla.438:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Yadro : No action taken.
    :mozilla.64:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
    :mozilla.65:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
    :mozilla.66:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
    :mozilla.67:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
    :mozilla.68:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
    :mozilla.69:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
    :mozilla.70:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
    :mozilla.71:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
    :mozilla.960:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
    :mozilla.961:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Yieldmanager : No action taken.
    :mozilla.252:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
    :mozilla.253:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
    :mozilla.254:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
    :mozilla.256:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
    :mozilla.257:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Zedo : No action taken.
    :mozilla.271:C:\Documents and Settings\BobakJ\Application Data\Mozilla\Firefox\Profiles\6spg8uef.default\cookies.txt -> TrackingCookie.Zedo : No action taken.


    ::Report end





    -------------------------------------------------------------------

    VundoFix V4.2.84

    Running as SYSTEM
    from c:\windows\system32\VundoFix.exe

    Checking Java version...

    Java version is 1.4.2.3

    Java version is 1.5.0.3

    Java version is 1.5.0.6

    Scan started at 16:55:02 29/06/2006

    Listing files found while scanning....


    C:\WINDOWS\system32\orqss.bak1
    C:\WINDOWS\system32\orqss.bak2
    C:\WINDOWS\system32\orqss.ini
    Attempting to delete C:\WINDOWS\system32\orqss.bak1
    C:\WINDOWS\system32\orqss.bak1 Has been deleted!

    Attempting to delete C:\WINDOWS\system32\orqss.bak2
    C:\WINDOWS\system32\orqss.bak2 Has been deleted!

    Attempting to delete C:\WINDOWS\system32\orqss.ini
    C:\WINDOWS\system32\orqss.ini Has been deleted!

    Performing Repairs to the registry.
    Done!




    -----------------------------------

    SmitFraudFix v2.65

    Scan done at 19:36:08.56, 29/06/2006
    Run from C:\Documents and Settings\BobakJ\Desktop\SmitfraudFix\SmitfraudFix
    OS: Microsoft Windows XP [Version 5.1.2600] - Windows_NT
    Fix ran in safe mode

    »»»»»»»»»»»»»»»»»»»»»»»» Before SmitFraudFix
    !!!Attention, following keys are not inevitably infected!!!

    SrchSTS.exe by S!Ri
    Search SharedTaskScheduler's .dll

    [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\SharedTaskScheduler]
    "{315f73fc-a7b1-49e6-a3c4-cc00cf8a3fdb}"="fossilage"

    [HKEY_CLASSES_ROOT\CLSID\{315f73fc-a7b1-49e6-a3c4-cc00cf8a3fdb}\InProcServer32]
    @="C:\WINDOWS\system32\erxbx.dll"

    [HKEY_CURRENT_USER\Software\Classes\CLSID\{315f73fc-a7b1-49e6-a3c4-cc00cf8a3fdb}\InProcServer32]
    @="C:\WINDOWS\system32\erxbx.dll"


    »»»»»»»»»»»»»»»»»»»»»»»» Killing process


    »»»»»»»»»»»»»»»»»»»»»»»» Generic Renos Fix

    GenericRenosFix by S!Ri

    C:\WINDOWS\system32\erxbx.dll -> Missing File


    »»»»»»»»»»»»»»»»»»»»»»»» Deleting infected files

    C:\WINDOWS\system32\hp???.tmp Deleted
    C:\WINDOWS\system32\ld????.tmp Deleted
    C:\WINDOWS\system32\ot.ico Deleted
    C:\WINDOWS\system32\stdole3.tlb Deleted
    C:\DOCUME~1\BobakJ\FAVORI~1\Antivirus Test Online.url Deleted

    »»»»»»»»»»»»»»»»»»»»»»»» Deleting Temp Files


    »»»»»»»»»»»»»»»»»»»»»»»» Registry Cleaning

    Registry Cleaning done.

    »»»»»»»»»»»»»»»»»»»»»»»» After SmitFraudFix
    !!!Attention, following keys are not inevitably infected!!!

    SrchSTS.exe by S!Ri
    Search SharedTaskScheduler's .dll


    »»»»»»»»»»»»»»»»»»»»»»»» End


    Thanks, Bob
     
  4. JaPK

    JaPK Regular member

    Joined:
    Feb 23, 2006
    Messages:
    1,269
    Likes Received:
    0
    Trophy Points:
    46
    Hi cyberbobx, not clean yet.

    Please rename HijackThis.exe to Scanner.exe

    Then run Scanner.exe (HijackThis) and post its log to here.
     
  5. cyberbobx

    cyberbobx Member

    Joined:
    Jun 29, 2006
    Messages:
    4
    Likes Received:
    0
    Trophy Points:
    11
    Logfile of HijackThis v1.99.1
    Scan saved at 23:14:48, on 30/06/2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe
    C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    C:\Program Files\ewido anti-spyware 4.0\guard.exe
    C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
    C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
    C:\Program Files\Microsoft SQL Server\MSSQL$INVENTORCONTENT\Binn\sqlservr.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Adobe\Adobe Version Cue CS2\data\database\bin\mysqld-nt.exe
    C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
    C:\Program Files\Analog Devices\Core\smax4pnp.exe
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
    C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
    C:\WINDOWS\System32\DLA\DLACTRLW.EXE
    C:\Program Files\Common Files\AOL\1142108150\ee\AOLSoftware.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
    C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
    C:\Program Files\DAEMON Tools\daemon.exe
    C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb04.exe
    C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe
    c:\program files\common files\aol\1142108150\ee\services\antiSpywareApp\ver2_0_25_1\AOLSP Scheduler.exe
    C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe
    C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe
    C:\WINDOWS\system32\hkcmd.exe
    c:\program files\common files\aol\1142108150\ee\aolsoftware.exe
    C:\WINDOWS\system32\igfxpers.exe
    C:\Program Files\PowerISO\PWRISOVM.EXE
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\ewido anti-spyware 4.0\ewido.exe
    C:\Program Files\YourWare Solutions\FreeRAM XP Pro\FreeRAM XP Pro.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\12018SC Multimedia Mouse Driver\MouseDrv.exe
    C:\Program Files\AOL 9.0\aoltray.exe
    C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
    C:\Program Files\NETGEAR\WG111T Configuration Utility\wlan111t.exe
    C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
    C:\Program Files\UltimateZip 2.7\uzqkst.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\igfxsrvc.exe
    C:\Program Files\Azureus\Azureus.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\Windows Media Player\wmplayer.exe
    C:\HJT\Scanner.exe

    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://192.168.0.1/
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Adobe Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O2 - BHO: Adobe PDF Conversion Toolbar Helper - {AE7CD045-E861-484f-8273-0445EE161910} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
    O3 - Toolbar: Adobe PDF - {47833539-D0C5-4125-9FA8-0819E2EAAC93} - C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll
    O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
    O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
    O4 - HKLM\..\Run: [AOLDialer] C:\Program Files\Common Files\AOL\ACS\AOLDial.exe
    O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
    O4 - HKLM\..\Run: [MSKDetectorExe] C:\Program Files\McAfee\SpamKiller\MSKDetct.exe /uninstall
    O4 - HKLM\..\Run: [HostManager] C:\Program Files\Common Files\AOL\1142108150\ee\AOLSoftware.exe
    O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
    O4 - HKLM\..\Run: [GhostSurf Reminder] "C:\Program Files\GhostSurf 2005\Privacy Control Center.exe" reminder
    O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
    O4 - HKLM\..\Run: [DAEMON Tools] "C:\Program Files\DAEMON Tools\daemon.exe" -lang 1033
    O4 - HKLM\..\Run: [HPDJ Taskbar Utility] C:\WINDOWS\system32\spool\drivers\w32x86\3\hpztsb04.exe
    O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
    O4 - HKLM\..\Run: [H2O] C:\Program Files\SyncroSoft\Pos\H2O\cledx.exe
    O4 - HKLM\..\Run: [Adobe Version Cue CS2] "C:\Program Files\Adobe\Adobe Version Cue CS2\ControlPanel\VersionCueCS2Tray.exe"
    O4 - HKLM\..\Run: [Acrobat Assistant 7.0] "C:\Program Files\Adobe\Adobe Acrobat 7.0\Distillr\Acrotray.exe"
    O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
    O4 - HKLM\..\Run: [PWRISOVM.EXE] C:\Program Files\PowerISO\PWRISOVM.EXE
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [WireLessMouse] C:\Program Files\12018SC Multimedia Mouse Driver\StartAutorun.exe MouseDrv.exe
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [!ewido] "C:\Program Files\ewido anti-spyware 4.0\ewido.exe" /minimized
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [FreeRAM XP] "C:\Program Files\YourWare Solutions\FreeRAM XP Pro\FreeRAM XP Pro.exe" -win
    O4 - Startup: Scheduler.lnk = C:\Program Files\GhostSurf 2005\Scheduler daemon.exe
    O4 - Startup: UltimateZip Quick Start.lnk = C:\Program Files\UltimateZip 2.7\uzqkst.exe
    O4 - Global Startup: Adobe Acrobat Speed Launcher.lnk = ?
    O4 - Global Startup: Adobe Gamma.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
    O4 - Global Startup: AOL 9.0 Tray Icon.lnk = C:\Program Files\AOL 9.0\aoltray.exe
    O4 - Global Startup: Check Local Printer.lnk = C:\Program Files\KXP6X00\Chkpnt.exe
    O4 - Global Startup: InterVideo WinCinema Manager.lnk = C:\Program Files\InterVideo\Common\Bin\WinCinemaMgr.exe
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
    O4 - Global Startup: NETGEAR WG111T Smart Wizard.lnk = ?
    O4 - Global Startup: Service Manager.lnk = C:\Program Files\Microsoft SQL Server\80\Tools\Binn\sqlmangr.exe
    O8 - Extra context menu item: Convert link target to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Convert link target to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: Convert selected links to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECaptureSelLinks.html
    O8 - Extra context menu item: Convert selected links to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppendSelLinks.html
    O8 - Extra context menu item: Convert selection to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Convert selection to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: Convert to Adobe PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIECapture.html
    O8 - Extra context menu item: Convert to existing PDF - res://C:\Program Files\Adobe\Adobe Acrobat 7.0\Acrobat\AcroIEFavClient.dll/AcroIEAppend.html
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~4\Office10\EXCEL.EXE/3000
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
    O16 - DPF: {B38870E4-7ECB-40DA-8C6A-595F0A5519FF} (MsnMessengerSetupDownloadControl Class) - http://messenger.msn.com/download/MsnMessengerSetupDownloader.cab
    O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
    O16 - DPF: {E6187999-9FEC-46A1-A20F-F4CA977D5643} (ZoneChess Object) - http://messenger.zone.msn.com/binary/Chess.cab31267.cab
    O18 - Protocol: livecall - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - C:\PROGRA~1\MSNMES~1\MSGRAP~1.DLL
    O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxdev.dll
    O20 - Winlogon Notify: WgaLogon - C:\WINDOWS\SYSTEM32\WgaLogon.dll
    O21 - SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - C:\WINDOWS\system32\WPDShServiceObj.dll
    O23 - Service: Adobe LM Service - Adobe Systems - C:\Program Files\Common Files\Adobe Systems Shared\Service\Adobelmsvc.exe
    O23 - Service: Adobe Version Cue CS2 - Unknown owner - C:\Program Files\Adobe\Adobe Version Cue CS2\bin\VersionCueCS2.exe" -win32service (file missing)
    O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\Program Files\Common Files\AOL\ACS\AOLAcsd.exe
    O23 - Service: Autodesk Licensing Service - Autodesk - C:\Program Files\Common Files\Autodesk Shared\Service\AdskScSrv.exe
    O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
    O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
    O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
    O23 - Service: ewido anti-spyware 4.0 guard - Anti-Malware Development a.s. - C:\Program Files\ewido anti-spyware 4.0\guard.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: LightScribeService Direct Disc Labeling Service (LightScribeService) - Hewlett-Packard Company - C:\Program Files\Common Files\LightScribe\LSSrvc.exe
    O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
    O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MPFSERVICE.exe
    O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
    O23 - Service: Sandra Data Service (SandraDataSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2005\RpcDataSrv.exe
    O23 - Service: Sandra Service (SandraTheSrv) - SiSoftware - C:\Program Files\SiSoftware\SiSoftware Sandra Lite 2005\RpcSandraSrv.exe

    Thankz, Bob
     
  6. JaPK

    JaPK Regular member

    Joined:
    Feb 23, 2006
    Messages:
    1,269
    Likes Received:
    0
    Trophy Points:
    46
    Ok cyberbobx, lets get you cleaned then...

    Download VundoFix.exe to your desktop -> http://www.atribune.org/ccount/click.php?id=4

    * Double-click VundoFix.exe to run it.
    * Put a check next to Run VundoFix as a task.
    * You will receive a message saying vundofix will close and re-open in a minute or less. Click OK
    * When VundoFix re-opens, click the Scan for Vundo button.
    * Once the scan is ready, rightclick list box (white box that lists the found files) and choose Add more files
    * Copy/Paste the following two lines to the upper field:

    C:\WINDOWS\SYSTEM32\efcbxwu.dll
    C:\WINDOWS\system32\uwxbcfe.*

    * Click Add Files and click Close Window
    * Click the Remove Vundo button.
    * You will receive a prompt asking if you want to remove the files, click YES
    * Once you click yes, your desktop will go blank as it starts removing Vundo.
    * When completed, it will prompt that it will shutdown your computer, click OK.
    * Turn your computer back on

    Rescan with Ewido, please follow my instructions carefully!

    -> Open Ewido Anti-Spyware
    -> Click the Update icon at the top of the window
    -> Click the Start update button
    -> Wait for the update to download and install
    -> Click the Scanner icon at the top of the window
    -> Click the Settings tab then select Recommended Options and choose Quarantine
    -> Click the Scan tab
    -> Select Complete System Scan. The scanning begins.
    -> When the scan has completed, click on the Save Scan Report button and save the scan to your Desktop.
    -> Copy and paste the scan results into your next post

    Post a fresh HijackThislog, Ewidos report and the contents of C:\vundofix.txt to here
     
    Last edited: Jun 30, 2006

Share This Page