1. Computer problem? Tech Support Guy is completely free -- paid for by advertisers and donations. Click here to join today! If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members.

df394b.tmp removal? and ctmbha.dll issue

Discussion in 'Virus & Other Malware Removal' started by mobbgrease, Nov 4, 2011.

Thread Status:
Not open for further replies.
Advertisement
  1. mobbgrease

    mobbgrease Thread Starter

    Joined:
    Oct 14, 2004
    Messages:
    92
    Hello....

    I just started up my system today and logged in. Avast picked up a potential threat and move it to the virus chest. The file is listed as folder C:\DOCUME~1\PATRIC~1\LOCALS~1\Temp\clclean.0001.dir0002 and file name ~df394b.tmp

    On the same startup I have a new error message as well "Error Loading CTMBHA.DLL" Invalid Access to memeory location. Not sure if this is related but since it appeared at the same time...there's a good chance.

    Attached is an HJT log.....

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 5:36:43 PM, on 04/11/2011
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v8.00 (8.00.6001.18702)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
    C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
    C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
    C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
    C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
    C:\WINDOWS\system32\CTsvcCDA.exe
    C:\WINDOWS\system32\dlcgcoms.exe
    C:\WINDOWS\eHome\ehRecvr.exe
    C:\WINDOWS\eHome\ehSched.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
    C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrSvc.exe
    C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exe
    C:\WINDOWS\ehome\ehtray.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\WINDOWS\system32\hkcmd.exe
    C:\WINDOWS\system32\igfxpers.exe
    C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
    C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
    C:\Program Files\Dell\QuickSet\quickset.exe
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe
    C:\WINDOWS\system32\Rundll32.exe
    C:\WINDOWS\system32\dla\tfswctrl.exe
    C:\Program Files\Dell\MediaDirect\PCMService.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\QuickTime\QTTask.exe
    C:\Program Files\Common Files\Pure Networks Shared\Platform\nmctxth.exe
    C:\Program Files\Pure Networks\Network Magic\nmapp.exe
    C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrUI.exe
    C:\WINDOWS\system32\igfxsrvc.exe
    C:\Program Files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
    C:\Program Files\Alwil Software\Avast5\avastUI.exe
    C:\Program Files\Common Files\Java\Java Update\jusched.exe
    C:\DOCUME~1\PATRIC~1\LOCALS~1\Temp\clclean.0001
    C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\googsystray\googsystray.exe
    C:\Program Files\DAEMON Tools Lite\DTLite.exe
    C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
    C:\WINDOWS\system32\dllhost.exe
    C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
    C:\Program Files\Digital Line Detect\DLG.exe
    C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe
    C:\WINDOWS\eHome\ehmsas.exe
    C:\WINDOWS\System32\svchost.exe
    C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
    C:\Program Files\Mozilla Firefox\firefox.exe
    C:\Program Files\Mozilla Firefox\plugin-container.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = my.daemon-search.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://us.mcafee.com/root/learnmore/learnmore.asp?close=true&lcode=en-us
    O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
    O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
    O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    O3 - Toolbar: DAEMON Tools Toolbar - {32099AAC-C132-4136-9E9A-4E364A424E17} - C:\Program Files\DAEMON Tools Toolbar\DTToolbar.dll
    O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
    O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
    O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
    O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
    O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
    O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe /r
    O4 - HKLM\..\Run: [MBMon] Rundll32 CTMBHA.DLL,MBMon
    O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
    O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
    O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
    O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\MediaDirect\PCMService.exe"
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
    O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
    O4 - HKLM\..\Run: [nmctxth] "C:\Program Files\Common Files\Pure Networks Shared\Platform\nmctxth.exe"
    O4 - HKLM\..\Run: [nmapp] "C:\Program Files\Pure Networks\Network Magic\nmapp.exe" -autorun -nosplash
    O4 - HKLM\..\Run: [WD Drive Manager] C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrUI.exe
    O4 - HKLM\..\Run: [RIMBBLaunchAgent.exe] C:\Program Files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
    O4 - HKLM\..\Run: [avast] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
    O4 - HKLM\..\Run: [DLCGCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCGtime.dll,[email protected]
    O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exe
    O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
    O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_1_0
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [googsystray] C:\Program Files\googsystray\googsystray.exe
    O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
    O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files\DAEMON Tools Lite\DTLite.exe" -autorun
    O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
    O4 - Global Startup: Bluetooth.lnk = ?
    O4 - Global Startup: Digital Line Detect.lnk = ?
    O4 - Global Startup: McAfee Security Scan Plus.lnk = ?
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\Office10\EXCEL.EXE/3000
    O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
    O9 - Extra button: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O9 - Extra 'Tools' menuitem: Skype Plug-In - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
    O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} -
    O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O18 - Protocol: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - C:\PROGRA~1\COMMON~1\Skype\SKYPE4~1.DLL
    O23 - Service: McAfee Application Installer Cleanup (0205601216983591) (0205601216983591mcinstcleanup) - Unknown owner - C:\WINDOWS\TEMP\020560~1.EXE
    O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
    O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
    O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
    O23 - Service: Creative Labs Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
    O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
    O23 - Service: dlcg_device - - C:\WINDOWS\system32\dlcgcoms.exe
    O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
    O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
    O23 - Service: McAfee Security Scan Component Host Service (McComponentHostService) - McAfee, Inc. - C:\Program Files\McAfee Security Scan\2.0.181\McCHSvc.exe
    O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
    O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
    O23 - Service: Pure Networks Platform Service (nmservice) - Cisco Systems, Inc. - C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exe
    O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
    O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
    O23 - Service: WD Drive Manager Service (WDBtnMgrSvc.exe) - WDC - C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrSvc.exe
    O23 - Service: Intel(R) PROSet/Wireless SSO Service (WLANKEEPER) - Intel(R) Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe

    --
    End of file - 12646 bytes

    Thanks for any help you may be able to offer. Cheers.
     
  2. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    80,955
    First Name:
    Frank
    Besides the HiJackThis log showing that computer is infected, it has a severely-bloated startup load.

    You need to read here and provide the other necessary logs.

    A trained and qualified gold/blue shield member will need to assist you with the DDS and GMER logs.

    ------------------------------------------------------
     
  3. mobbgrease

    mobbgrease Thread Starter

    Joined:
    Oct 14, 2004
    Messages:
    92
    Sorry here are the other logs. The ark.txt is as an attachment as well....it was really long. It wouldn't let me reply to the post. Thanks again

    .
    DDS (Ver_2011-08-26.01) - NTFSx86
    Internet Explorer: 8.0.6001.18702 BrowserJavaVersion: 1.6.0_26
    Run by Patrick Mather at 20:27:37 on 2011-11-04
    Microsoft Windows XP Professional 5.1.2600.3.1252.1.1033.18.1014.409 [GMT -3:00]
    .
    AV: avast! Antivirus *Enabled/Updated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
    .
    ============== Running Processes ===============
    .
    C:\WINDOWS\system32\svchost -k DcomLaunch
    svchost.exe
    C:\WINDOWS\System32\svchost.exe -k netsvcs
    C:\WINDOWS\system32\svchost.exe -k WudfServiceGroup
    C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
    C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
    C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
    svchost.exe
    svchost.exe
    C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
    C:\WINDOWS\system32\spoolsv.exe
    svchost.exe
    C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
    C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
    C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
    C:\WINDOWS\system32\CTsvcCDA.exe
    C:\WINDOWS\system32\dlcgcoms.exe
    C:\WINDOWS\eHome\ehRecvr.exe
    C:\WINDOWS\eHome\ehSched.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
    C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
    svchost.exe
    C:\WINDOWS\system32\svchost.exe -k imgsvc
    C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrSvc.exe
    C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\ehome\ehtray.exe
    C:\WINDOWS\system32\hkcmd.exe
    C:\WINDOWS\system32\igfxpers.exe
    C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
    C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
    C:\Program Files\Dell\QuickSet\quickset.exe
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe
    C:\WINDOWS\system32\dla\tfswctrl.exe
    C:\Program Files\Dell\MediaDirect\PCMService.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\QuickTime\QTTask.exe
    C:\Program Files\Common Files\Pure Networks Shared\Platform\nmctxth.exe
    C:\Program Files\Pure Networks\Network Magic\nmapp.exe
    C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrUI.exe
    C:\WINDOWS\system32\igfxsrvc.exe
    C:\Program Files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
    C:\Program Files\Alwil Software\Avast5\avastUI.exe
    C:\Program Files\Common Files\Java\Java Update\jusched.exe
    C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\googsystray\googsystray.exe
    C:\WINDOWS\system32\dllhost.exe
    C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
    C:\Program Files\Digital Line Detect\DLG.exe
    C:\Program Files\McAfee Security Scan\2.0.181\SSScheduler.exe
    C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
    C:\WINDOWS\eHome\ehmsas.exe
    C:\WINDOWS\System32\svchost.exe -k HTTPFilter
    C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
    C:\Program Files\Common Files\Java\Java Update\jucheck.exe
    .
    ============== Pseudo HJT Report ===============
    .
    uStart Page = my.daemon-search.com
    uInternet Connection Wizard,ShellNext = hxxp://us.mcafee.com/root/learnmore/learnmore.asp?close=true&lcode=en-us
    BHO: Adobe PDF Reader Link Helper: {06849e9f-c8d7-4d59-b87d-784b7d6be0b3} - c:\program files\adobe\acrobat 7.0\activex\AcroIEHelper.dll
    BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - c:\program files\real\realplayer\rpbrowserrecordplugin.dll
    BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
    BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
    BHO: Skype Plug-In: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
    BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
    BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    TB: DAEMON Tools Toolbar: {32099aac-c132-4136-9e9a-4e364a424e17} - c:\program files\daemon tools toolbar\DTToolbar.dll
    TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
    EB: Real.com: {fe54fa40-d68c-11d2-98fa-00c0f0318afe} - c:\windows\system32\Shdocvw.dll
    uRun: [SetDefaultMIDI] MIDIDef.exe
    uRun: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "c:\program files\common files\ahead\lib\NMBgMonitor.exe"
    uRun: [updateMgr] c:\program files\adobe\acrobat 7.0\reader\AdobeUpdateManager.exe AcRdB7_1_0
    uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
    uRun: [googsystray] c:\program files\googsystray\googsystray.exe
    uRun: [ISUSPM] "c:\program files\common files\installshield\updateservice\ISUSPM.exe" -scheduler
    mRun: [ehTray] c:\windows\ehome\ehtray.exe
    mRun: [igfxtray] c:\windows\system32\igfxtray.exe
    mRun: [igfxhkcmd] c:\windows\system32\hkcmd.exe
    mRun: [igfxpers] c:\windows\system32\igfxpers.exe
    mRun: [IntelZeroConfig] "c:\program files\intel\wireless\bin\ZCfgSvc.exe"
    mRun: [IntelWireless] "c:\program files\intel\wireless\bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
    mRun: [Dell QuickSet] c:\program files\dell\quickset\quickset.exe
    mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
    mRun: [CTSysVol] c:\program files\creative\sbaudigy\surround mixer\CTSysVol.exe /r
    mRun: [MBMon] Rundll32 CTMBHA.DLL,MBMon
    mRun: [UpdReg] c:\windows\UpdReg.EXE
    mRun: [dla] c:\windows\system32\dla\tfswctrl.exe
    mRun: [ISUSPM Startup] c:\progra~1\common~1\instal~1\update~1\ISUSPM.exe -startup
    mRun: [ISUSScheduler] "c:\program files\common files\installshield\updateservice\issch.exe" -start
    mRun: [PCMService] "c:\program files\dell\mediadirect\PCMService.exe"
    mRun: [TkBellExe] "c:\program files\common files\real\update_ob\realsched.exe" -osboot
    mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
    mRun: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
    mRun: [nmctxth] "c:\program files\common files\pure networks shared\platform\nmctxth.exe"
    mRun: [nmapp] "c:\program files\pure networks\network magic\nmapp.exe" -autorun -nosplash
    mRun: [WD Drive Manager] c:\program files\western digital\wd drive manager\WDBtnMgrUI.exe
    mRun: [RIMBBLaunchAgent.exe] c:\program files\common files\research in motion\usb drivers\RIMBBLaunchAgent.exe
    mRun: [avast] "c:\program files\alwil software\avast5\avastUI.exe" /nogui
    mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
    mRun: [DLCGCATS] rundll32 c:\windows\system32\spool\drivers\w32x86\3\DLCGtime.dll,[email protected]
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\adober~1.lnk - c:\program files\adobe\acrobat 7.0\reader\reader_sl.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\blueto~1.lnk - c:\program files\widcomm\bluetooth software\BTTray.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\digita~1.lnk - c:\program files\digital line detect\DLG.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\mcafee~1.lnk - c:\program files\mcafee security scan\2.0.181\SSScheduler.exe
    StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\micros~1.lnk - c:\program files\microsoft office\office10\OSA.EXE
    IE: E&xport to Microsoft Excel - c:\progra~1\mi1933~1\office10\EXCEL.EXE/3000
    IE: Send to &Bluetooth Device... - c:\program files\widcomm\bluetooth software\btsendto_ie_ctx.htm
    IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
    IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
    IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
    IE: {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - {552781AF-37E4-4FEE-920A-CED9E648EADD} - c:\program files\common files\microsoft shared\encarta search bar\ENCSBAR.DLL
    IE: {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - {FE54FA40-D68C-11d2-98FA-00C0F0318AFE} - c:\windows\system32\Shdocvw.dll
    DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
    DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} - hxxp://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
    DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/ultrashim.cab
    DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} - hxxp://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
    DPF: {CAFEEFAC-0015-0000-0006-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_06-windows-i586.cab
    DPF: {CAFEEFAC-0015-0000-0010-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.5.0/jinstall-1_5_0_10-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0002-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_02-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0005-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_05-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
    DPF: {CAFEEFAC-0016-0000-0026-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
    DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_26-windows-i586.cab
    DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} - hxxps://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} -
    TCP: DhcpNameServer = 24.222.0.94 24.222.0.95
    TCP: Interfaces\{2B432469-00F5-47DF-A0DE-857E08882DBD} : DhcpNameServer = 24.222.0.94 24.222.0.95
    Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - c:\program files\common files\microsoft shared\web folders\PKMCDO.DLL
    Handler: pure-go - {4746C79A-2042-4332-8650-48966E44ABA8} - c:\program files\common files\pure networks shared\platform\puresp4.dll
    Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
    Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
    Notify: igfxcui - igfxdev.dll
    SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
    .
    ================= FIREFOX ===================
    .
    FF - ProfilePath - c:\documents and settings\patrick mather\application data\mozilla\firefox\profiles\of1m0iux.default\
    FF - prefs.js: browser.startup.homepage - hxxp://staff.ednet.ns.ca/imp/login.php
    FF - component: c:\program files\mozilla firefox\extensions\{ab2ce124-6272-4b12-94a9-7303c7397bd1}\components\SkypeFfComponent.dll
    FF - plugin: c:\documents and settings\patrick mather\application data\mozilla\firefox\profiles\of1m0iux.default\extensions\{195a3098-0bd5-4e90-ae22-ba1c540afd1e}\plugins\npGarmin.dll
    FF - plugin: c:\program files\common files\research in motion\bbwebsllauncher\NPWebSLLauncher.dll
    FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
    FF - plugin: c:\program files\microsoft silverlight\4.0.60831.0\npctrlui.dll
    FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll
    FF - plugin: c:\program files\research in motion limited\blackberry app world browser plugin\npappworld.dll
    FF - plugin: c:\program files\veetle\player\npvlc.dll
    FF - plugin: c:\program files\veetle\plugins\npVeetle.dll
    FF - plugin: c:\program files\veetle\vlcbroadcast\npvbp.dll
    FF - plugin: c:\program files\viewpoint\viewpoint experience technology\npViewpoint.dll
    .
    ============= SERVICES / DRIVERS ===============
    .
    R1 aswSnx;aswSnx;c:\windows\system32\drivers\aswSnx.sys [2011-5-11 442200]
    R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [2009-11-30 320856]
    R1 mfehidk;McAfee Inc. mfehidk;c:\windows\system32\drivers\mfehidk.sys [2007-2-22 214664]
    R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [2009-11-30 20568]
    R2 avast! Antivirus;avast! Antivirus;c:\program files\alwil software\avast5\AvastSvc.exe [2010-4-8 44768]
    R2 McrdSvc;Media Center Extender Service;c:\windows\ehome\mcrdsvc.exe [2005-8-5 99328]
    R2 WDBtnMgrSvc.exe;WD Drive Manager Service;c:\program files\western digital\wd drive manager\WDBtnMgrSvc.exe [2008-7-24 102400]
    S2 0205601216983591mcinstcleanup;McAfee Application Installer Cleanup (0205601216983591);c:\windows\temp\020560~1.exe c:\progra~1\common~1\mcafee\instal~1\cleanup.ini -cleanup -nolog -service --> c:\windows\temp\020560~1.exe c:\progra~1\common~1\mcafee\instal~1\cleanup.ini -cleanup -nolog -service [?]
    S3 McComponentHostService;McAfee Security Scan Component Host Service;c:\program files\mcafee security scan\2.0.181\McCHSvc.exe [2010-1-15 227232]
    S3 mfeavfk;McAfee Inc. mfeavfk;c:\windows\system32\drivers\mfeavfk.sys [2007-2-22 79816]
    S3 mfebopk;McAfee Inc. mfebopk;c:\windows\system32\drivers\mfebopk.sys [2007-2-22 35272]
    S3 mferkdk;McAfee Inc. mferkdk;c:\windows\system32\drivers\mferkdk.sys [2007-2-22 34248]
    S3 mfesmfk;McAfee Inc. mfesmfk;c:\windows\system32\drivers\mfesmfk.sys [2007-2-22 40552]
    S3 pbfilter;pbfilter;c:\program files\peerblock\pbfilter.sys [2010-4-2 14424]
    .
    =============== Created Last 30 ================
    .
    2011-11-01 21:10:19 -------- d-----w- c:\documents and settings\patrick mather\application data\Azureus
    2011-11-01 21:09:03 -------- d-----w- c:\documents and settings\patrick mather\.frostwire5
    2011-11-01 21:07:55 -------- d-----w- c:\program files\FrostWire 5
    .
    ==================== Find3M ====================
    .
    2011-09-26 14:41:20 611328 ----a-w- c:\windows\system32\uiautomationcore.dll
    2011-09-26 14:41:20 220160 ----a-w- c:\windows\system32\oleacc.dll
    2011-09-26 14:41:14 20480 ----a-w- c:\windows\system32\oleaccrc.dll
    2011-09-16 21:16:13 404640 ----a-w- c:\windows\system32\FlashPlayerCPLApp.cpl
    2011-09-09 09:12:13 599040 ----a-w- c:\windows\system32\crypt32.dll
    2011-09-06 20:45:29 41184 ----a-w- c:\windows\avastSS.scr
    2011-09-06 20:38:05 442200 ----a-w- c:\windows\system32\drivers\aswSnx.sys
    2011-09-06 13:20:51 1858944 ----a-w- c:\windows\system32\win32k.sys
    2011-08-22 23:48:55 916480 ----a-w- c:\windows\system32\wininet.dll
    2011-08-22 23:48:54 43520 ------w- c:\windows\system32\licmgr10.dll
    2011-08-22 23:48:54 1469440 ------w- c:\windows\system32\inetcpl.cpl
    2011-08-22 11:56:39 385024 ------w- c:\windows\system32\html.iec
    2011-08-17 13:49:54 138496 ----a-w- c:\windows\system32\drivers\afd.sys
    .
    ============= FINISH: 20:30:01.10 ===============
     

    Attached Files:

  4. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    80,955
    First Name:
    Frank
    Click Start - Run, then type in

    %temp%

    then click OK.

    Click Start - Run, then type in

    c:\windows\temp

    then click OK.

    Once those 2 temp folders appear and you can view their contents, select and delete EVERYTHING that's inside them.

    If a few files resist being deleted, that's normal behavior. Leave them alone and delete EVERYTHING else.

    After you're done, restart the computer.

    -------------------------------------------------------

    Start HiJackThis, but don't run a scan.

    Click on the "Open The Misc Tools Section" button.

    Click on the "Open Uninstall Manager" button.

    Click on the "Save List" button.

    Save the "uninstall_list.txt" file somewhere.

    It'll then open in Notepad.

    Return here to your thread, then copy-and-paste the entire file here.

    ---------------------------------------------------------
     
  5. mobbgrease

    mobbgrease Thread Starter

    Joined:
    Oct 14, 2004
    Messages:
    92
    Done....
    - Only left a couple of files in the temp folders after deleting...
    - One of them was the clclean folder that contained the avast identified threat ~df394b.tmp file...it wouldn't delete.

    Here is the uninstall list hjt

    µTorrent
    Adobe Flash Player 10 ActiveX
    Adobe Flash Player 10 Plugin
    Adobe Reader 7.1.0
    All Stats Basketball Coach
    America Online (Choose which version to remove)
    Andrea VoiceCenter
    AOL Spyware Protection
    Apple Application Support
    Apple Software Update
    avast! Free Antivirus
    BlackBerry App World Browser Plugin
    BlackBerry Desktop Software 6.1
    BlackBerry Desktop Software 6.1
    Broadcom Management Programs
    Cisco Connect
    Compatibility Pack for the 2007 Office system
    Conexant HDA D110 MDC V.92 Modem
    ConvertHelper 2.1
    Corel Snapfire Plus
    Creative Audio Pack
    Creative Jukebox Driver
    Creative MediaSource 5
    Creative NOMAD Jukebox Zen Xtra
    DAEMON Tools Toolbar
    Data Lifeguard Diagnostic for Windows
    Dell Digital Jukebox Driver
    Dell Support 3.2
    Digital Line Detect
    DivX Content Uploader
    DivX Web Player
    DVD Decrypter (Remove Only)
    DVD Shrink 3.2
    EclipseCrossword
    FrostWire 5.2.3
    Garmin USB Drivers
    googsystray (remove only)
    High Definition Audio Driver Package - KB835221
    HijackThis 2.0.2
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
    Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
    Hotfix for Windows Internet Explorer 7 (KB947864)
    Hotfix for Windows Media Format 11 SDK (KB929399)
    Hotfix for Windows Media Player 10 (KB903157)
    Hotfix for Windows XP (KB2158563)
    Hotfix for Windows XP (KB2443685)
    Hotfix for Windows XP (KB2570791)
    Hotfix for Windows XP (KB942288-v3)
    Hotfix for Windows XP (KB952287)
    Hotfix for Windows XP (KB961118)
    Hotfix for Windows XP (KB970653-v3)
    Hotfix for Windows XP (KB976098-v2)
    Hotfix for Windows XP (KB979306)
    Hotfix for Windows XP (KB981793)
    Intel(R) Graphics Media Accelerator Driver
    Intel(R) PROSet/Wireless Software
    J2SE Runtime Environment 5.0 Update 10
    J2SE Runtime Environment 5.0 Update 6
    Java(TM) 6 Update 2
    Java(TM) 6 Update 26
    Java(TM) 6 Update 3
    Java(TM) 6 Update 5
    Java(TM) 6 Update 7
    Macromedia Shockwave Player
    McAfee Security Scan Plus
    mCore
    MCU
    mDrWiFi
    MediaDirect
    mHlpDell
    Microsoft .NET Framework 1.0 Hotfix (KB2572066)
    Microsoft .NET Framework 1.0 Hotfix (KB953295)
    Microsoft .NET Framework 1.0 Hotfix (KB979904)
    Microsoft .NET Framework 1.1
    Microsoft .NET Framework 1.1
    Microsoft .NET Framework 1.1 Security Update (KB2572067)
    Microsoft .NET Framework 1.1 Security Update (KB979906)
    Microsoft .NET Framework 2.0 Service Pack 2
    Microsoft .NET Framework 3.0 Service Pack 2
    Microsoft .NET Framework 3.5 SP1
    Microsoft .NET Framework 3.5 SP1
    Microsoft Choice Guard
    Microsoft Digital Image Standard 2006
    Microsoft Encarta Encyclopedia Standard 2006
    Microsoft Internationalized Domain Names Mitigation APIs
    Microsoft Kernel-Mode Driver Framework Feature Pack 1.9
    Microsoft Money 2006
    Microsoft National Language Support Downlevel APIs
    Microsoft Office PowerPoint Viewer 2007 (English)
    Microsoft Office XP Media Content
    Microsoft Office XP Professional with FrontPage
    Microsoft Plus! Digital Media Edition Installer
    Microsoft Plus! Photo Story 2 LE
    Microsoft Silverlight
    Microsoft User-Mode Driver Framework Feature Pack 1.0
    Microsoft Visual C++ 2005 Redistributable
    Microsoft Visual C++ 2008 Redistributable - KB2467174 - x86 9.0.30729.5570
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.21022
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.4148
    Microsoft Visual C++ 2008 Redistributable - x86 9.0.30729.6161
    Microsoft Word 2002
    Microsoft Works
    Microsoft Works Suite 2006 Setup Launcher
    Microsoft Works Suite Add-in for Microsoft Word
    mIWA
    mLogView
    mMHouse
    Modem Helper
    Mozilla Firefox 7.0.1 (x86 en-US)
    mPfMgr
    mPfWiz
    mProSafe
    mSSO
    MSVCRT
    MSXML 4.0 SP2 (KB927978)
    MSXML 4.0 SP2 (KB936181)
    MSXML 4.0 SP2 (KB954430)
    MSXML 4.0 SP2 (KB973688)
    mWlsSafe
    mWMI
    mXML
    mZConfig
    Nero 7
    NetWaiting
    Network Magic
    Otto
    OutlookAddinSetup
    Paint.NET v3.36
    PeerBlock 1.0.0 (r181)
    Personal Ancestral File 5
    Pivot Stickfigure Animator
    QuickSet
    QuickTime
    RealPlayer
    Rhapsody Player Engine
    Rosetta Stone Version 3
    Security Task Manager 1.7h
    Security Update for CAPICOM (KB931906)
    Security Update for CAPICOM (KB931906)
    Security Update for Microsoft .NET Framework 2.0 (KB928365)
    Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)
    Security Update for Microsoft Windows (KB2564958)
    Security Update for Windows Internet Explorer 7 (KB2183461)
    Security Update for Windows Internet Explorer 7 (KB2360131)
    Security Update for Windows Internet Explorer 7 (KB2416400)
    Security Update for Windows Internet Explorer 7 (KB2482017)
    Security Update for Windows Internet Explorer 7 (KB2497640)
    Security Update for Windows Internet Explorer 7 (KB2530548)
    Security Update for Windows Internet Explorer 7 (KB2544521)
    Security Update for Windows Internet Explorer 7 (KB928090)
    Security Update for Windows Internet Explorer 7 (KB931768)
    Security Update for Windows Internet Explorer 7 (KB933566)
    Security Update for Windows Internet Explorer 7 (KB937143)
    Security Update for Windows Internet Explorer 7 (KB938127)
    Security Update for Windows Internet Explorer 7 (KB939653)
    Security Update for Windows Internet Explorer 7 (KB942615)
    Security Update for Windows Internet Explorer 7 (KB944533)
    Security Update for Windows Internet Explorer 7 (KB950759)
    Security Update for Windows Internet Explorer 7 (KB953838)
    Security Update for Windows Internet Explorer 7 (KB956390)
    Security Update for Windows Internet Explorer 7 (KB958215)
    Security Update for Windows Internet Explorer 7 (KB960714)
    Security Update for Windows Internet Explorer 7 (KB961260)
    Security Update for Windows Internet Explorer 7 (KB969897)
    Security Update for Windows Internet Explorer 7 (KB972260)
    Security Update for Windows Internet Explorer 7 (KB974455)
    Security Update for Windows Internet Explorer 7 (KB976325)
    Security Update for Windows Internet Explorer 7 (KB978207)
    Security Update for Windows Internet Explorer 7 (KB982381)
    Security Update for Windows Internet Explorer 8 (KB2510531)
    Security Update for Windows Internet Explorer 8 (KB2544521)
    Security Update for Windows Internet Explorer 8 (KB2559049)
    Security Update for Windows Internet Explorer 8 (KB2586448)
    Security Update for Windows Internet Explorer 8 (KB982381)
    Security Update for Windows Media Player (KB2378111)
    Security Update for Windows Media Player (KB952069)
    Security Update for Windows Media Player (KB954155)
    Security Update for Windows Media Player (KB968816)
    Security Update for Windows Media Player (KB973540)
    Security Update for Windows Media Player (KB975558)
    Security Update for Windows Media Player (KB978695)
    Security Update for Windows Media Player 10 (KB917734)
    Security Update for Windows Media Player 10 (KB936782)
    Security Update for Windows XP (KB2079403)
    Security Update for Windows XP (KB2115168)
    Security Update for Windows XP (KB2121546)
    Security Update for Windows XP (KB2160329)
    Security Update for Windows XP (KB2229593)
    Security Update for Windows XP (KB2259922)
    Security Update for Windows XP (KB2279986)
    Security Update for Windows XP (KB2286198)
    Security Update for Windows XP (KB2296011)
    Security Update for Windows XP (KB2296199)
    Security Update for Windows XP (KB2347290)
    Security Update for Windows XP (KB2360937)
    Security Update for Windows XP (KB2387149)
    Security Update for Windows XP (KB2393802)
    Security Update for Windows XP (KB2412687)
    Security Update for Windows XP (KB2419632)
    Security Update for Windows XP (KB2423089)
    Security Update for Windows XP (KB2436673)
    Security Update for Windows XP (KB2440591)
    Security Update for Windows XP (KB2443105)
    Security Update for Windows XP (KB2476490)
    Security Update for Windows XP (KB2476687)
    Security Update for Windows XP (KB2478960)
    Security Update for Windows XP (KB2478971)
    Security Update for Windows XP (KB2479628)
    Security Update for Windows XP (KB2481109)
    Security Update for Windows XP (KB2483185)
    Security Update for Windows XP (KB2485376)
    Security Update for Windows XP (KB2485663)
    Security Update for Windows XP (KB2491683)
    Security Update for Windows XP (KB2503658)
    Security Update for Windows XP (KB2503665)
    Security Update for Windows XP (KB2506212)
    Security Update for Windows XP (KB2506223)
    Security Update for Windows XP (KB2507618)
    Security Update for Windows XP (KB2507938)
    Security Update for Windows XP (KB2508272)
    Security Update for Windows XP (KB2508429)
    Security Update for Windows XP (KB2509553)
    Security Update for Windows XP (KB2510581)
    Security Update for Windows XP (KB2511455)
    Security Update for Windows XP (KB2524375)
    Security Update for Windows XP (KB2535512)
    Security Update for Windows XP (KB2536276)
    Security Update for Windows XP (KB2536276-v2)
    Security Update for Windows XP (KB2544893)
    Security Update for Windows XP (KB2555917)
    Security Update for Windows XP (KB2562937)
    Security Update for Windows XP (KB2566454)
    Security Update for Windows XP (KB2567053)
    Security Update for Windows XP (KB2567680)
    Security Update for Windows XP (KB2570222)
    Security Update for Windows XP (KB2570947)
    Security Update for Windows XP (KB2592799)
    Security Update for Windows XP (KB923561)
    Security Update for Windows XP (KB938464)
    Security Update for Windows XP (KB938464-v2)
    Security Update for Windows XP (KB941569)
    Security Update for Windows XP (KB946648)
    Security Update for Windows XP (KB950760)
    Security Update for Windows XP (KB950762)
    Security Update for Windows XP (KB950974)
    Security Update for Windows XP (KB951066)
    Security Update for Windows XP (KB951376)
    Security Update for Windows XP (KB951376-v2)
    Security Update for Windows XP (KB951698)
    Security Update for Windows XP (KB951748)
    Security Update for Windows XP (KB952004)
    Security Update for Windows XP (KB952954)
    Security Update for Windows XP (KB953839)
    Security Update for Windows XP (KB954211)
    Security Update for Windows XP (KB954459)
    Security Update for Windows XP (KB954600)
    Security Update for Windows XP (KB955069)
    Security Update for Windows XP (KB956391)
    Security Update for Windows XP (KB956572)
    Security Update for Windows XP (KB956744)
    Security Update for Windows XP (KB956802)
    Security Update for Windows XP (KB956803)
    Security Update for Windows XP (KB956841)
    Security Update for Windows XP (KB956844)
    Security Update for Windows XP (KB957095)
    Security Update for Windows XP (KB957097)
    Security Update for Windows XP (KB958644)
    Security Update for Windows XP (KB958687)
    Security Update for Windows XP (KB958690)
    Security Update for Windows XP (KB958869)
    Security Update for Windows XP (KB959426)
    Security Update for Windows XP (KB960225)
    Security Update for Windows XP (KB960715)
    Security Update for Windows XP (KB960803)
    Security Update for Windows XP (KB960859)
    Security Update for Windows XP (KB961371)
    Security Update for Windows XP (KB961373)
    Security Update for Windows XP (KB961501)
    Security Update for Windows XP (KB968537)
    Security Update for Windows XP (KB969059)
    Security Update for Windows XP (KB969898)
    Security Update for Windows XP (KB969947)
    Security Update for Windows XP (KB970238)
    Security Update for Windows XP (KB970430)
    Security Update for Windows XP (KB971468)
    Security Update for Windows XP (KB971486)
    Security Update for Windows XP (KB971557)
    Security Update for Windows XP (KB971633)
    Security Update for Windows XP (KB971657)
    Security Update for Windows XP (KB971961)
    Security Update for Windows XP (KB972270)
    Security Update for Windows XP (KB973346)
    Security Update for Windows XP (KB973354)
    Security Update for Windows XP (KB973507)
    Security Update for Windows XP (KB973525)
    Security Update for Windows XP (KB973869)
    Security Update for Windows XP (KB973904)
    Security Update for Windows XP (KB974112)
    Security Update for Windows XP (KB974318)
    Security Update for Windows XP (KB974392)
    Security Update for Windows XP (KB974571)
    Security Update for Windows XP (KB975025)
    Security Update for Windows XP (KB975467)
    Security Update for Windows XP (KB975560)
    Security Update for Windows XP (KB975561)
    Security Update for Windows XP (KB975562)
    Security Update for Windows XP (KB975713)
    Security Update for Windows XP (KB977165)
    Security Update for Windows XP (KB977816)
    Security Update for Windows XP (KB977914)
    Security Update for Windows XP (KB978037)
    Security Update for Windows XP (KB978251)
    Security Update for Windows XP (KB978262)
    Security Update for Windows XP (KB978338)
    Security Update for Windows XP (KB978542)
    Security Update for Windows XP (KB978601)
    Security Update for Windows XP (KB978706)
    Security Update for Windows XP (KB979309)
    Security Update for Windows XP (KB979482)
    Security Update for Windows XP (KB979559)
    Security Update for Windows XP (KB979683)
    Security Update for Windows XP (KB979687)
    Security Update for Windows XP (KB980195)
    Security Update for Windows XP (KB980218)
    Security Update for Windows XP (KB980232)
    Security Update for Windows XP (KB980436)
    Security Update for Windows XP (KB981322)
    Security Update for Windows XP (KB981349)
    Security Update for Windows XP (KB981852)
    Security Update for Windows XP (KB981957)
    Security Update for Windows XP (KB981997)
    Security Update for Windows XP (KB982132)
    Security Update for Windows XP (KB982214)
    Security Update for Windows XP (KB982665)
    Security Update for Windows XP (KB982802)
    Segoe UI
    Skype Toolbars
    Skype™ 5.1
    Sonic DLA
    Sonic Encoders
    Sonic MyDVD LE
    Sonic RecordNow Audio
    Sonic RecordNow Copy
    Sonic RecordNow Data
    SopCast 3.0.3
    Sound Blaster ADVANCED MB Drivers
    Sound Blaster Audigy ADVANCED MB
    Sound Blaster Audigy ADVANCED MB Product Registration
    StreamTorrent 1.0
    Synaptics Pointing Device Driver
    TeamSpeak 3 Client
    Tiger Gaming
    TVUPlayer 2.3.5.4
    Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
    Update for Windows Internet Explorer 7 (KB976749)
    Update for Windows Internet Explorer 7 (KB980182)
    Update for Windows Internet Explorer 8 (KB2447568)
    Update for Windows Media Player 10 (KB913800)
    Update for Windows Media Player 10 (KB926251)
    Update for Windows XP (KB2141007)
    Update for Windows XP (KB2345886)
    Update for Windows XP (KB2467659)
    Update for Windows XP (KB2541763)
    Update for Windows XP (KB2607712)
    Update for Windows XP (KB2616676)
    Update for Windows XP (KB951072-v2)
    Update for Windows XP (KB951978)
    Update for Windows XP (KB955759)
    Update for Windows XP (KB955839)
    Update for Windows XP (KB961503)
    Update for Windows XP (KB967715)
    Update for Windows XP (KB968389)
    Update for Windows XP (KB971029)
    Update for Windows XP (KB971737)
    Update for Windows XP (KB973687)
    Update for Windows XP (KB973815)
    Update Rollup 2 for Windows XP Media Center Edition 2005
    Veetle TV 0.9.18
    VideoLAN VLC media player 0.8.6
    Viewpoint Media Player
    Visual C++ 2008 x86 Runtime - (v9.0.30729)
    Visual C++ 2008 x86 Runtime - v9.0.30729.01
    WD Drive Manager (x86)
    WebEx Support Manager for Internet Explorer
    WIDCOMM Bluetooth Software
    Windows Driver Package - Garmin (grmnusb) GARMIN Devices (06/03/2009 2.3.0.0)
    Windows Internet Explorer 8
    Windows Live Call
    Windows Live Communications Platform
    Windows Live Essentials
    Windows Live Essentials
    Windows Live Messenger
    Windows Live Sign-in Assistant
    Windows Live Upload Tool
    Windows Media Format 11 runtime
    Windows Media Format 11 runtime
    Windows Media Player 10
    Windows Media Player 10 Hotfix [See EmeraldQFE2 for more information]
    Windows Media Player Firefox Plugin
    Windows XP Media Center Edition 2005 KB2502898
    Windows XP Media Center Edition 2005 KB908246
    Windows XP Media Center Edition 2005 KB908250
    Windows XP Media Center Edition 2005 KB973768
    Windows XP Service Pack 3
    WinRAR archiver
    WinZip
     
  6. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    80,955
    First Name:
    Frank
    Go to Control Panel - Add Or Remove Programs, then make sure "Show Updates" is NOT checked, then make sure "Sort By - Name" is selected.

    Doing this will reduce the clutter in the list and will sort everything alphabetically.

    After that's done, do the following in the order listed - which is going to take you awhile.

    -----------------------------------------------------------

    Uninstall/remove the following:

    uTorrent

    Adobe Reader 7.1.0

    AOL Spyware Protection

    FrostWire 5.2.3

    J2SE Runtime Environment 5.0 Update 6

    J2SE Runtime Environment 5.0 Update 10

    Java(TM) 6 Update 2

    Java(TM) 6 Update 3

    Java(TM) 6 Update 5

    Java(TM) 6 Update 7

    Macromedia Shockwave Player

    McAfee Security Scan Plus

    Microsoft Plus! Digital Media Edition Installer

    Microsoft Plus! Photo Story 2 LE

    StreamTorrent 1.0

    VideoLAN VLC Media Player 0.8.6

    Viewpoint Media Player


    If you're prompted to restart the computer to complete the uninstall/removal of any of them, do so.

    After you're done with the entire list, restart the computer again.

    -----------------------------------------------------------

    Download and save the following:

    Adobe Flash Player ActiveX 11.0.1.152

    Adobe Flash Player Plugin 11.0.1.152

    Adobe Reader 10.1.1

    Java Runtime Environment 1.6.0.29(6 Update 29)

    Malwarebytes Anti-Malware 1.51.2.1300

    SUPERAntiSpyware Free Edition 5.0.0.1134

    Skype 5.5.0.124

    After that's done, close all open windows first.

    Install the 2 Adobe Flash Players and Adobe Reader and Java Runtime Environment and Skype programs and add-ons.

    They will overwrite and replace the outdated versions you currently have.

    Restart the computer to complete the install of any of them, if prompted to.

    After that's done, install Malwarebytes Anti-Malware and SUPERAntiSpyware.

    Restart the computer to complete the install of any of them, if prompted to.

    Just install them and DON'T run any scans with them yet.

    -----------------------------------------------------------
     
  7. mobbgrease

    mobbgrease Thread Starter

    Joined:
    Oct 14, 2004
    Messages:
    92
    Alright...that's all finished up.

    -Add/Remove Programs list....cleaned up
    -New Progs downloaded and installed

    I love this feeling of progress... :)
     
  8. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    80,955
    First Name:
    Frank
    :) (y)

    -------------------------------------------------------

    Start Malwarebytes Anti-Malware.

    Click "Updates(tab) - Check for Updates".

    When the definition files have updated, click "OK".

    Click "Scanner(tab) - Perform quick scan - Scan".

    If infections or problems are found during the scan, the number of them will be highlighted in red.

    When the scan is finished, click "Show Results".

    Make sure that EVERYTHING is selected, then click "Remove Selected".

    If you're prompted to restart to finish the removal process, click "Yes".

    Start Malwarebytes Anti-Malware again.

    Click "Logs"(tab).

    Highlight the scan log entry, then click "Open".

    When the scan log appears in Notepad, copy-and-paste it here.

    -------------------------------------------------------

    Start SUPERAntiSpyware.

    Click "Check for Updates".

    When the definition files have updated, click "Close".

    Select the "Quick Scan" option, then click "Scan your Computer".

    If infections or problems are found during the scan, a list will appear and the number of them will be highlighted in red.

    When the scan is finished and the scan summary window appears, click "Continue".

    Make sure that EVERYTHING in the list is selected, then click "Remove Threats".

    Click "OK - Finish".

    If you're prompted to restart to finish the removal process, do so.

    Start SUPERAntiSpyware again.

    Click "View Scan Logs".

    Highlight the scan log entry, then click "View Selected Log".

    When the scan log appears in Notepad, copy-and-paste it here.

    -------------------------------------------------------
     
  9. mobbgrease

    mobbgrease Thread Starter

    Joined:
    Oct 14, 2004
    Messages:
    92
    Two scan logs...


    Malwarebytes' Anti-Malware 1.51.2.1300
    www.malwarebytes.org

    Database version: 8093

    Windows 5.1.2600 Service Pack 3
    Internet Explorer 8.0.6001.18702

    05/11/2011 6:24:30 PM
    mbam-log-2011-11-05 (18-24-30).txt

    Scan type: Quick scan
    Objects scanned: 221500
    Time elapsed: 15 minute(s), 22 second(s)

    Memory Processes Infected: 0
    Memory Modules Infected: 0
    Registry Keys Infected: 1
    Registry Values Infected: 0
    Registry Data Items Infected: 1
    Folders Infected: 0
    Files Infected: 3

    Memory Processes Infected:
    (No malicious items detected)

    Memory Modules Infected:
    (No malicious items detected)

    Registry Keys Infected:
    HKEY_CURRENT_USER\SOFTWARE\Microsoft\contim (Trojan.Vundo) -> Quarantined and deleted successfully.

    Registry Values Infected:
    (No malicious items detected)

    Registry Data Items Infected:
    HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.

    Folders Infected:
    (No malicious items detected)

    Files Infected:
    c:\documents and settings\patrick mather\application data\wiaserva.log (Malware.Trace) -> Quarantined and deleted successfully.
    c:\WINDOWS\bm6b31a17b.txt (Trojan.Vundo) -> Quarantined and deleted successfully.
    c:\WINDOWS\bm6b31a17b.xml (Trojan.Vundo) -> Quarantined and deleted successfully.


    SUPERAntiSpyware Scan Log
    http://www.superantispyware.com

    Generated 11/05/2011 at 06:47 PM

    Application Version : 5.0.1134

    Core Rules Database Version : 7904
    Trace Rules Database Version: 5716

    Scan type : Quick Scan
    Total Scan Time : 00:14:15

    Operating System Information
    Windows XP Professional 32-bit, Service Pack 3 (Build 5.01.2600)
    Administrator

    Memory items scanned : 713
    Memory threats detected : 0
    Registry items scanned : 32487
    Registry threats detected : 3
    File items scanned : 10447
    File threats detected : 298

    Rogue.Component/Trace
    HKLM\Software\Microsoft\68028069
    HKLM\Software\Microsoft\68028069#68028069
    HKLM\Software\Microsoft\68028069#Version

    Adware.Tracking Cookie
    C:\Documents and Settings\Patrick Mather\Cookies\[email protected][1].txt [ /2o7 ]
    C:\Documents and Settings\Patrick Mather\Cookies\[email protected][1].txt [ /adbrite ]
    C:\Documents and Settings\Patrick Mather\Cookies\[email protected][2].txt [ /atdmt ]
    C:\Documents and Settings\Patrick Mather\Cookies\[email protected][1].txt [ /doubleclick ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\6LSLWS6L.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\FJ65M8RE.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][2].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][2].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\AXCZJ3OJ.txt [ Cookie:[email protected]nt.yieldmanager.com/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\VWQJIHYK.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\ARFYUKZT.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][3].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\DIAJ3BRE.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][2].txt [ Cookie:[email protected]/cgi-bin ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\TWLGYJZE.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\ZIY50FTU.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/tracking ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\GSULWBYS.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\XPZBHH21.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][2].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][2].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\6IJGJ3Z5.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][2].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][2].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\Q9ML9YJR.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][2].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\9M68DQT2.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\7LB5XQPE.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\HLTVCF8U.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\41SSFTCM.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\2SM1T5R6.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][2].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][2].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][2].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][2].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][2].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/advertising/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][3].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected].112.2o7[1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][3].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\UNGW5MB4.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][2].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\9GQKKJXK.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\09921TE5.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][2].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\UHWAYB5O.txt [ Cookie:[email protected]/pagead/conversion/1052727274/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][2].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\MPIZJ6IN.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\07WWCSNZ.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\3BKZ8E4B.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][2].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/hc/24025546 ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\418AYJ8H.txt [ Cookie:[email protected]/pagead/conversion/1066681946/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\VJY7H4K1.txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][2].txt [ Cookie:[email protected]/ ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\[email protected][3].txt [ Cookie:[email protected]/hc/26719036 ]
    C:\DOCUMENTS AND SETTINGS\SARAH\Cookies\I5TFK3FV.txt [ Cookie:[email protected]/ak/ ]
    ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .imrworldwide.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .imrworldwide.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .atdmt.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .atdmt.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .adbrite.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .apmebf.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    rbc.bridgetrack.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .legolas-media.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .pointroll.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .apmebf.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .mediaplex.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .adxpose.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .yadro.ru [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .yadro.ru [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .adtech.de [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    ads.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    ads.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .networldmedia.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .networldmedia.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .vitamine.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .vitamine.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .networldmedia.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .trafficmp.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .adinterax.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .partypoker.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .partypoker.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .www.partypoker.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    accounts.youtube.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    accounts.google.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    accounts.google.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    accounts.google.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .adserver.adtechus.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .dmtracker.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .r1-ads.ace.advertising.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .2o7.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .hornymatches.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .hornymatches.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .hornymatches.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .hornymatches.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .hornymatches.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .getclicky.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .static.getclicky.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .hornymatches.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .hornymatches.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .hornymatches.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .hornymatches.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    in.getclicky.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .hornymatches.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .histats.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .histats.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    adserver2.exgfnetwork.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    ads.zeusclicks.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    widgets.wisestats.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .adserver.adtechus.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .adserver.adtechus.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .trafficmp.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .trafficmp.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .interclick.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .interclick.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .interclick.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .adlegend.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .adlegend.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .legolas-media.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .247realmedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .kontera.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .adbrite.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .adbrite.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .adbrite.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .adbrite.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .partypoker.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .adbrite.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .yieldmanager.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    rts.pgmediaserve.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    rts.pgmediaserve.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    rts.pgmediaserve.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .partypoker.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .partypoker.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .partypoker.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .partypoker.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .partypoker.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .partypoker.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .partypoker.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    neocounter.neoworx-blog-tools.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    neocounter.neoworx-blog-tools.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    auslieferung.commindo-media-ressourcen.de [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    statse.webtrendslive.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .ru4.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .tacoda.at.atwola.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .ar.atwola.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .adcentriconline.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .at.atwola.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .tacoda.at.atwola.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .tacoda.at.atwola.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .tacoda.at.atwola.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .tacoda.at.atwola.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .at.atwola.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    www.888media.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    www.888media.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    www.888media.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    www.888media.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .intermundomedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .intermundomedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .intermundomedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .247realmedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .viewablemedia.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .pro-market.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .pro-market.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .zedo.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .insightexpressai.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .mm.chitika.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .vitamine.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .lucidmedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .specificclick.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .xm.xtendmedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .tribalfusion.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .advertising.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .collective-media.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .www.burstnet.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .burstnet.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .burstnet.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .media6degrees.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    www.burstnet.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .legolas-media.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .questionmarket.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .doubleclick.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .statcounter.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    trafficking.nabbr.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .networldmedia.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .fastclick.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .c.gigcount.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .revsci.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .invitemedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .adinterax.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .questionmarket.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .questionmarket.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .pointroll.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .ads.pointroll.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .legolas-media.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    ad.yieldmanager.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .casalemedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .doubleclick.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .serving-sys.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    ads.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .analytics.rogersmedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .rogersmedia.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .networldmedia.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    ads.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .networldmedia.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    vitamine.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    vitamine.networldmedia.net [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
    .mediaplex.com [ C:\DOCUMENTS AND SETTINGS\PATRICK MATHER\APPLICATION DATA\MOZILLA\FIREFOX\PROFILES\OF1M0IUX.DEFAULT\COOKIES.SQLITE ]
     
  10. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    80,955
    First Name:
    Frank
    Close all open windows first, then start HiJackThis and click "Do a system scan and save a log file", then save the new log that appears, then submit it here.

    -------------------------------------------------------
     
  11. mobbgrease

    mobbgrease Thread Starter

    Joined:
    Oct 14, 2004
    Messages:
    92
    New HJT log....

    Logfile of Trend Micro HijackThis v2.0.2
    Scan saved at 7:25:01 PM, on 05/11/2011
    Platform: Windows XP SP3 (WinNT 5.01.2600)
    MSIE: Internet Explorer v8.00 (8.00.6001.18702)
    Boot mode: Normal

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
    C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
    C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
    C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\ehome\ehtray.exe
    C:\WINDOWS\system32\hkcmd.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\system32\igfxpers.exe
    C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe
    C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
    C:\Program Files\Dell\QuickSet\quickset.exe
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe
    C:\WINDOWS\system32\igfxsrvc.exe
    C:\WINDOWS\system32\Rundll32.exe
    C:\WINDOWS\system32\dla\tfswctrl.exe
    C:\Program Files\Dell\MediaDirect\PCMService.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\QuickTime\QTTask.exe
    C:\Program Files\Common Files\Pure Networks Shared\Platform\nmctxth.exe
    C:\Program Files\Pure Networks\Network Magic\nmapp.exe
    C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrUI.exe
    C:\Program Files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
    C:\Program Files\Alwil Software\Avast5\avastUI.exe
    C:\Program Files\Common Files\Java\Java Update\jusched.exe
    C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\googsystray\googsystray.exe
    C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
    C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
    C:\DOCUME~1\PATRIC~1\LOCALS~1\Temp\clclean.0001
    C:\Program Files\WIDCOMM\Bluetooth Software\BTTray.exe
    C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
    C:\Program Files\Digital Line Detect\DLG.exe
    C:\Program Files\Common Files\Ahead\Lib\NMIndexStoreSvr.exe
    C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
    C:\WINDOWS\system32\CTsvcCDA.exe
    C:\WINDOWS\system32\dlcgcoms.exe
    C:\WINDOWS\eHome\ehRecvr.exe
    C:\WINDOWS\eHome\ehSched.exe
    C:\Program Files\Java\jre6\bin\jqs.exe
    C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
    C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
    C:\WINDOWS\system32\svchost.exe
    C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrSvc.exe
    C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exe
    C:\WINDOWS\system32\dllhost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\eHome\ehmsas.exe
    C:\PROGRA~1\Intel\Wireless\Bin\Dot1XCfg.exe
    C:\Program Files\Trend Micro\HijackThis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = my.daemon-search.com
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
    R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://us.mcafee.com/root/learnmore/learnmore.asp?close=true&lcode=en-us
    O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
    O2 - BHO: RealPlayer Download and Record Plugin for Internet Explorer - {3049C3E9-B461-4BC5-8870-4C09146192CA} - C:\Program Files\Real\RealPlayer\rpbrowserrecordplugin.dll
    O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
    O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
    O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files\Java\jre6\bin\jp2ssv.dll
    O2 - BHO: JQSIEStartDetectorImpl - {E7E6F031-17CE-4C07-BC86-EABFE594F69C} - C:\Program Files\Java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
    O4 - HKLM\..\Run: [ehTray] C:\WINDOWS\ehome\ehtray.exe
    O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
    O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
    O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
    O4 - HKLM\..\Run: [IntelZeroConfig] "C:\Program Files\Intel\Wireless\bin\ZCfgSvc.exe"
    O4 - HKLM\..\Run: [IntelWireless] "C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe" /tf Intel PROSet/Wireless
    O4 - HKLM\..\Run: [Dell QuickSet] C:\Program Files\Dell\QuickSet\quickset.exe
    O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    O4 - HKLM\..\Run: [CTSysVol] C:\Program Files\Creative\SBAudigy\Surround Mixer\CTSysVol.exe /r
    O4 - HKLM\..\Run: [MBMon] Rundll32 CTMBHA.DLL,MBMon
    O4 - HKLM\..\Run: [UpdReg] C:\WINDOWS\UpdReg.EXE
    O4 - HKLM\..\Run: [dla] C:\WINDOWS\system32\dla\tfswctrl.exe
    O4 - HKLM\..\Run: [ISUSPM Startup] C:\PROGRA~1\COMMON~1\INSTAL~1\UPDATE~1\ISUSPM.exe -startup
    O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
    O4 - HKLM\..\Run: [PCMService] "C:\Program Files\Dell\MediaDirect\PCMService.exe"
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\QTTask.exe" -atboottime
    O4 - HKLM\..\Run: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
    O4 - HKLM\..\Run: [nmctxth] "C:\Program Files\Common Files\Pure Networks Shared\Platform\nmctxth.exe"
    O4 - HKLM\..\Run: [nmapp] "C:\Program Files\Pure Networks\Network Magic\nmapp.exe" -autorun -nosplash
    O4 - HKLM\..\Run: [WD Drive Manager] C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrUI.exe
    O4 - HKLM\..\Run: [RIMBBLaunchAgent.exe] C:\Program Files\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
    O4 - HKLM\..\Run: [avast] "C:\Program Files\Alwil Software\Avast5\avastUI.exe" /nogui
    O4 - HKLM\..\Run: [DLCGCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\DLCGtime.dll,[email protected]
    O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Common Files\Java\Java Update\jusched.exe"
    O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
    O4 - HKCU\..\Run: [SetDefaultMIDI] MIDIDef.exe
    O4 - HKCU\..\Run: [BgMonitor_{79662E04-7C6C-4d9f-84C7-88D8A56B10AA}] "C:\Program Files\Common Files\Ahead\Lib\NMBgMonitor.exe"
    O4 - HKCU\..\Run: [updateMgr] C:\Program Files\Adobe\Acrobat 7.0\Reader\AdobeUpdateManager.exe AcRdB7_1_0
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [googsystray] C:\Program Files\googsystray\googsystray.exe
    O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
    O4 - HKCU\..\Run: [SUPERAntiSpyware] C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
    O4 - Global Startup: Bluetooth.lnk = ?
    O4 - Global Startup: Digital Line Detect.lnk = ?
    O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
    O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\Office10\EXCEL.EXE/3000
    O8 - Extra context menu item: Send to &Bluetooth Device... - C:\Program Files\WIDCOMM\Bluetooth Software\btsendto_ie_ctx.htm
    O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O9 - Extra button: (no name) - {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - C:\Program Files\Common Files\Microsoft Shared\Encarta Search Bar\ENCSBAR.DLL
    O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
    O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
    O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
    O16 - DPF: {E06E2E99-0AA1-11D4-ABA6-0060082AA75C} -
    O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
    O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
    O23 - Service: SAS Core Service (!SASCORE) - SUPERAntiSpyware.com - C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
    O23 - Service: McAfee Application Installer Cleanup (0205601216983591) (0205601216983591mcinstcleanup) - Unknown owner - C:\WINDOWS\TEMP\020560~1.EXE (file missing)
    O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
    O23 - Service: avast! Antivirus - AVAST Software - C:\Program Files\Alwil Software\Avast5\AvastSvc.exe
    O23 - Service: Bluetooth Service (btwdins) - Broadcom Corporation. - C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
    O23 - Service: Creative Labs Licensing Service - Creative Labs - C:\Program Files\Common Files\Creative Labs Shared\Service\CreativeLicensing.exe
    O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
    O23 - Service: dlcg_device - - C:\WINDOWS\system32\dlcgcoms.exe
    O23 - Service: Intel(R) PROSet/Wireless Event Log (EvtEng) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
    O23 - Service: FLEXnet Licensing Service - Acresso Software Inc. - C:\Program Files\Common Files\Macrovision Shared\FLEXnet Publisher\FNPLicensingService.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
    O23 - Service: Java Quick Starter (JavaQuickStarterService) - Sun Microsystems, Inc. - C:\Program Files\Java\jre6\bin\jqs.exe
    O23 - Service: NBService - Nero AG - C:\Program Files\Nero\Nero 7\Nero BackItUp\NBService.exe
    O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\QuickSet\NICCONFIGSVC.exe
    O23 - Service: Pure Networks Platform Service (nmservice) - Cisco Systems, Inc. - C:\Program Files\Common Files\Pure Networks Shared\Platform\nmsrvc.exe
    O23 - Service: Intel(R) PROSet/Wireless Registry Service (RegSrvc) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
    O23 - Service: Intel(R) PROSet/Wireless Service (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
    O23 - Service: WD Drive Manager Service (WDBtnMgrSvc.exe) - WDC - C:\Program Files\Western Digital\WD Drive Manager\WDBtnMgrSvc.exe
    O23 - Service: Intel(R) PROSet/Wireless SSO Service (WLANKEEPER) - Intel(R) Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe

    --
    End of file - 12050 bytes
     
  12. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    80,955
    First Name:
    Frank
    Go here to download and save McAfee Consumer Product Removal Tool 5.0.285.0.

    Close all open windows first, then double-click the saved tool to run it.

    After the removal process is complete, restart the computer.

    -------------------------------------------------------

    Go to Start - Run - MSCONFIG - OK - "Startup" tab.

    Write down the names in the "Startup Item" column that have a checkmark.

    If the column isn't wide enough to see the entire name of any of them, widen it.

    Submit those names here in a vertical list, and make sure to spell them exactly as you see them there.

    -------------------------------------------------------
     
  13. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    80,955
    First Name:
    Frank
    What external devices are you using with that laptop?

    -------------------------------------------------------
     
  14. mobbgrease

    mobbgrease Thread Starter

    Joined:
    Oct 14, 2004
    Messages:
    92
    Startup Items checked

    igfxpers
    ZCfgSvc
    ifrmewrk
    quickset
    SynTPEnh
    CTSysVol
    Rundll32 CTMBHA
    UpdReg
    tfswctrl
    ISUSPM
    issch
    PCMService
    realsched
    QTTask
    dumprep 0 -u
    nmctxth
    nmapp
    WDBtnMgrUI
    RIMBBLaunchAgent
    avastUI
    jusched
    AdobeARM
    MIDIDef
    NMBgMonitor
    AdobeUpdateManager
    ctfmon
    googsystray
    ISUSPM
    SUPERAntiSpyware
    Bluetooth
    DigitalLineDetect
    MicrosoftOffice

    ------------------

    External Devices??

    - Blackberry
    - Creative Labs Zen Jukebox (mp3 player)
    - SansaFuze (mp3 player)
    - WD HD media player

    I think that's it....or perhaps you meant something else as well by "external devices"
     
  15. flavallee

    flavallee Trusted Advisor

    Joined:
    May 12, 2002
    Messages:
    80,955
    First Name:
    Frank
    Go back to Start - Run - MSCONFIG - OK - "Startup" tab.

    Uncheck the startup entries that I've highlighted in bold text.

    Take your time and make sure that you uncheck the correct ones.

    igfxpers

    ZCfgSvc

    ifrmewrk

    quickset

    SynTPEnh

    CTSysVol

    Rundll32 CTMBHA

    UpdReg

    tfswctrl

    ISUSPM

    issch

    PCMService

    realsched

    QTTask

    dumprep 0 -u


    nmctxth

    nmapp

    WDBtnMgrUI

    RIMBBLaunchAgent

    avastUI

    jusched

    AdobeARM


    MIDIDef

    NMBgMonitor

    AdobeUpdateManager

    ctfmon

    googsystray

    ISUSPM

    SUPERAntiSpyware


    Bluetooth

    Digital Line Detect

    Microsoft Office


    After you're done, click Apply - OK - Exit Without Restart.

    Go to Start - Run - SERVICES.MSC - OK.

    Double-click on these service entries, one at a time, to open their properties window:

    McAfee Application Installer Cleanup (if this entry is still present after using the McAfee removal tool)

    Creative Labs Licensing Service

    Creative Service for CDROM Access

    FLEXnet Licensing Service

    InstallDriver Table Manager

    Java Quick Starter

    NBService


    If "Startup Type" is set on Automatic, change it to Manual, then click Apply - OK.

    After you're done, close the window and then restart the computer.

    When the small SCU window appears and advises the computer is in diagnostic/selective startup mode, ignore the message.

    Do NOT change it back to normal startup mode!!!

    Put a checkmark in the lower left of that window, then click OK to close it.

    Start HiJackThis, then click "Do a system scan and save a log file".

    Save the new log that appears, then submit it here.

    ------------------------------------------------------
     
  16. Sponsor

As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 733,556 other people just like you!

Loading...
Thread Status:
Not open for further replies.

Short URL to this thread: https://techguy.org/1025466

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice