1. Computer problem? Tech Support Guy is completely free -- paid for by advertisers and donations. Click here to join today! If you're new to Tech Support Guy, we highly recommend that you visit our Guide for New Members.

See Hijack/Ewido Log At Bottom!!!

Discussion in 'Virus & Other Malware Removal' started by cherrybelle, May 19, 2006.

Thread Status:
Not open for further replies.
  1. cherrybelle

    cherrybelle Thread Starter

    Joined:
    Aug 6, 2005
    Messages:
    80
    IVE COPIED AND PASTED THIS INFO FROM MY PREVIOUS POST. IVE RUN EWIDO SCAN IN SAFE MODE AS INSTRUCTED. PLEASE SEE NEW HIJACK/EWIDO LOG, SCROLL TO BOTTOM OF PAGE.
    THANKS.X



    #1 18-May-2006 08:55 AM - Hijack This Log- Pls Have A Look!
    cherrybelle

    Member Posts: 35
    Join Date: Aug 2005

    Please save me from losing my mind. I've had so many problems with my pc- check this log and tell me what to do.
    MANY many thanks.x

    Logfile of HijackThis v1.99.1
    Scan saved at 14:53:57, on 18/05/2006
    Platform: Windows XP SP1 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\WINDOWS\Explorer.EXE
    C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    C:\Program Files\McAfee.com\VSO\mcvsshld.exe
    C:\Program Files\McAfee.com\VSO\oasclnt.exe
    c:\program files\mcafee.com\agent\mcdetect.exe
    C:\PROGRA~1\mcafee.com\agent\mcagent.exe
    c:\progra~1\mcafee.com\vso\mcvsescn.exe
    c:\PROGRA~1\mcafee.com\vso\mcshield.exe
    C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
    C:\PROGRA~1\mcafee.com\mps\mscifapp.exe
    C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
    c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\WINDOWS\System32\ctfmon.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
    C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
    C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
    C:\WINDOWS\system32\sistray.exe
    C:\WINDOWS\system32\slserv.exe
    C:\WINDOWS\System32\svchost.exe
    C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
    C:\Program Files\Outlook Express\msimn.exe
    C:\Program Files\Messenger\msmsgs.exe
    c:\progra~1\mcafee.com\vso\mcvsftsn.exe
    C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
    C:\Program Files\Avant Browser\avant.exe
    C:\Program Files\Hijackthis\HijackThis.exe

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.charityclicknow.com/partn...yhewAnimalHome
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = ;127.0.0.1;<local>
    F2 - REG:system.ini: UserInit=C:\WINDOWS\System32\Userinit.exe
    O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_18_0.dll
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
    O2 - BHO: McBrwHelper Class - {227B8AA8-DAF2-4892-BD1D-73F568BCB24E} - c:\program files\mcafee.com\mps\mcbrhlpr.dll
    O2 - BHO: McAfee PopupKiller - {3EC8255F-E043-4cae-8B3B-B191550C2A22} - c:\program files\mcafee.com\mps\popupkiller.dll
    O2 - BHO: McAfee AntiPhishing Filter - {41D68ED8-4CFF-4115-88A6-6EBB8AF19000} - c:\program files\mcafee\spamkiller\mcapfbho.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_18_0.dll
    O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
    O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
    O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
    O4 - HKLM\..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvsshld.exe
    O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe
    O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
    O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\McUpdate.exe
    O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
    O4 - HKLM\..\Run: [MPSExe] c:\PROGRA~1\mcafee.com\mps\mscifapp.exe /embedding
    O4 - HKLM\..\Run: [MSKAGENTEXE] C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
    O4 - HKLM\..\Run: [MSKDetectorExe] C:\PROGRA~1\McAfee\SPAMKI~1\MSKDetct.exe /startup
    O4 - HKLM\..\Run: [LXCGCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCGtime.dll,[email protected]
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
    O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares Lite Edition\Ares.exe" -h
    O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
    O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe
    O8 - Extra context menu item: Add to AD Black List - C:\Program Files\Avant Browser\AddToADBlackList.htm
    O8 - Extra context menu item: Block All Images from the Same Server - C:\Program Files\Avant Browser\AddAllToADBlackList.htm
    O8 - Extra context menu item: Highlight - C:\Program Files\Avant Browser\Highlight.htm
    O8 - Extra context menu item: Open All Links in This Page... - C:\Program Files\Avant Browser\OpenAllLinks.htm
    O8 - Extra context menu item: Open In New Avant Browser - C:\Program Files\Avant Browser\OpenInNewBrowser.htm
    O8 - Extra context menu item: Search - C:\Program Files\Avant Browser\Search.htm
    O9 - Extra button: (no name) - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\program files\mcafee\spamkiller\mcapfbho.dll
    O9 - Extra 'Tools' menuitem: McAfee AntiPhishing Filter - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\program files\mcafee\spamkiller\mcapfbho.dll
    O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
    O15 - Trusted Zone: www.hotmail.com
    O15 - Trusted Zone: www.myspace.com
    O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yaho...st20040510.cab
    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by102fd.bay102.hotmail.msn.co...s/MsnPUpld.cab
    O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsof...?1141746386140
    O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    O23 - Service: Kodak Camera Connection Software (KodakCCS) - Unknown owner - C:\WINDOWS\system32\drivers\KodakCCS.exe (file missing)
    O23 - Service: lxcg_device - Unknown owner - C:\WINDOWS\System32\lxcgcoms.exe
    O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
    O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
    O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
    O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
    O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
    O23 - Service: McAfee SpamKiller Server (MskService) - McAfee Inc. - C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
    O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe


    Edit | Quote | Quick Reply

    cherrybelle
    View Public Profile
    Send a private message to cherrybelle
    Find all posts by cherrybelle
    Add cherrybelle to Your Buddy List

    #2 18-May-2006 09:01 AM
    cybertech

    Moderator Posts: 21,574
    Join Date: Apr 2002
    Location: Washington State

    Run HJT again and put a check in the following:

    R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.charityclicknow.com/partn...yhewAnimalHome

    Close all applications and browser windows before you click "fix checked".

    Download the trial version of Ewido Security Suite here.
    Install ewido.
    During the installation, under "Additional Options" uncheck "Install background guard" and "Install scan via context menu".
    Launch ewido
    It will prompt you to update click the OK button and it will go to the main screen
    On the left side of the main screen click update
    Click on Start and let it update.
    DO NOT run a scan yet. You will do that later in safe mode.


    Click here for info on how to boot to safe mode if you don't already know how.


    Now copy these instructions to notepad and save them to your desktop. You will need them to refer to in safe mode.


    Restart your computer into safe mode now. Perform the following steps in safe mode:


    Run Ewido:
    Click on scanner
    Click Complete System Scan and the scan will begin.
    During the scan it will prompt you to clean files, click OK
    When the scan is finished, look at the bottom of the screen and click the Save report button.
    Save the report to your desktop


    Reboot to normal mode.

    Post a new HijackThis log and the log from Ewido.
    __________________
    ASAP member

    If I have helped you, please consider making a donation to TSG!


    Affero | Quote | Quick Reply

    cybertech
    View Public Profile
    Send a private message to cybertech
    Find all posts by cybertech
    Add cybertech to Your Buddy List

    Computer Specifications
    Intel Pentium 933
    320MB RAM
    WD 20GB HD
    NEC 52x CD-RW
    W2K SP4
    McAfee Antivirus
    DELL 1905FP

    #3 1 Hour Ago
    cherrybelle

    Member Posts: 35
    Join Date: Aug 2005

    Thanks!!
    I did what you instructed me to. Here is my Hijack this log, and below, the Ewido log.
    x

    Logfile of HijackThis v1.99.1
    Scan saved at 12:04:02, on 19/05/2006
    Platform: Windows XP SP1 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    C:\Program Files\ewido anti-malware\ewidoctrl.exe
    c:\program files\mcafee.com\agent\mcdetect.exe
    c:\PROGRA~1\mcafee.com\vso\mcshield.exe
    c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
    C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
    C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
    C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
    C:\WINDOWS\system32\slserv.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\Program Files\McAfee.com\VSO\mcvsshld.exe
    C:\Program Files\McAfee.com\VSO\oasclnt.exe
    c:\program files\mcafee.com\agent\mcagent.exe
    c:\progra~1\mcafee.com\vso\mcvsescn.exe
    C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
    C:\PROGRA~1\mcafee.com\mps\mscifapp.exe
    C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
    C:\WINDOWS\System32\ctfmon.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
    C:\PROGRA~1\McAfee.com\PERSON~1\MpfAgent.exe
    C:\WINDOWS\system32\sistray.exe
    C:\Program Files\Hijackthis\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = ;127.0.0.1;<local>
    F2 - REG:system.ini: UserInit=C:\WINDOWS\System32\Userinit.exe
    O2 - BHO: Yahoo! Companion BHO - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_18_0.dll
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 6.0\Reader\ActiveX\AcroIEHelper.dll
    O2 - BHO: McBrwHelper Class - {227B8AA8-DAF2-4892-BD1D-73F568BCB24E} - c:\program files\mcafee.com\mps\mcbrhlpr.dll
    O2 - BHO: McAfee PopupKiller - {3EC8255F-E043-4cae-8B3B-B191550C2A22} - c:\program files\mcafee.com\mps\popupkiller.dll
    O2 - BHO: McAfee AntiPhishing Filter - {41D68ED8-4CFF-4115-88A6-6EBB8AF19000} - c:\program files\mcafee\spamkiller\mcapfbho.dll
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\Program Files\Yahoo!\Companion\Installs\cpn\ycomp5_3_18_0.dll
    O3 - Toolbar: McAfee VirusScan - {BA52B914-B692-46c4-B683-905236F6F655} - c:\progra~1\mcafee.com\vso\mcvsshl.dll
    O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\System32\msdxm.ocx
    O4 - HKLM\..\Run: [SiSUSBRG] C:\WINDOWS\SiSUSBrg.exe
    O4 - HKLM\..\Run: [VSOCheckTask] "C:\PROGRA~1\McAfee.com\VSO\mcmnhdlr.exe" /checktask
    O4 - HKLM\..\Run: [VirusScan Online] C:\Program Files\McAfee.com\VSO\mcvsshld.exe
    O4 - HKLM\..\Run: [OASClnt] C:\Program Files\McAfee.com\VSO\oasclnt.exe
    O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
    O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\mcupdate.exe
    O4 - HKLM\..\Run: [MPFExe] C:\PROGRA~1\McAfee.com\PERSON~1\MpfTray.exe
    O4 - HKLM\..\Run: [MPSExe] c:\PROGRA~1\mcafee.com\mps\mscifapp.exe /embedding
    O4 - HKLM\..\Run: [MSKAGENTEXE] C:\PROGRA~1\McAfee\SPAMKI~1\MskAgent.exe
    O4 - HKLM\..\Run: [MSKDetectorExe] C:\PROGRA~1\McAfee\SPAMKI~1\MSKDetct.exe /startup
    O4 - HKLM\..\Run: [LXCGCATS] rundll32 C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\LXCGtime.dll,[email protected]
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
    O4 - HKCU\..\Run: [ares] "C:\Program Files\Ares Lite Edition\Ares.exe" -h
    O4 - Global Startup: Kodak EasyShare software.lnk = C:\Program Files\Kodak\Kodak EasyShare software\bin\EasyShare.exe
    O4 - Global Startup: Utility Tray.lnk = C:\WINDOWS\system32\sistray.exe
    O8 - Extra context menu item: Add to AD Black List - C:\Program Files\Avant Browser\AddToADBlackList.htm
    O8 - Extra context menu item: Block All Images from the Same Server - C:\Program Files\Avant Browser\AddAllToADBlackList.htm
    O8 - Extra context menu item: Highlight - C:\Program Files\Avant Browser\Highlight.htm
    O8 - Extra context menu item: Open All Links in This Page... - C:\Program Files\Avant Browser\OpenAllLinks.htm
    O8 - Extra context menu item: Open In New Avant Browser - C:\Program Files\Avant Browser\OpenInNewBrowser.htm
    O8 - Extra context menu item: Search - C:\Program Files\Avant Browser\Search.htm
    O9 - Extra button: (no name) - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\program files\mcafee\spamkiller\mcapfbho.dll
    O9 - Extra 'Tools' menuitem: McAfee AntiPhishing Filter - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - c:\program files\mcafee\spamkiller\mcapfbho.dll
    O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
    O15 - Trusted Zone: www.hotmail.com
    O15 - Trusted Zone: www.myspace.com
    O16 - DPF: {30528230-99F7-4BB4-88D8-FA1D4F56A2AB} (YInstStarter Class) - http://us.dl1.yimg.com/download.yaho...st20040510.cab
    O16 - DPF: {4F1E5B1A-2A80-42CA-8532-2D05CB959537} (MSN Photo Upload Tool) - http://by102fd.bay102.hotmail.msn.co...s/MsnPUpld.cab
    O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsof...?1141746386140
    O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
    O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
    O23 - Service: Kodak Camera Connection Software (KodakCCS) - Unknown owner - C:\WINDOWS\system32\drivers\KodakCCS.exe (file missing)
    O23 - Service: lxcg_device - Unknown owner - C:\WINDOWS\System32\lxcgcoms.exe
    O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
    O23 - Service: McAfee.com McShield (McShield) - McAfee Inc. - c:\PROGRA~1\mcafee.com\vso\mcshield.exe
    O23 - Service: McAfee Task Scheduler (McTskshd.exe) - McAfee, Inc - c:\PROGRA~1\mcafee.com\agent\mctskshd.exe
    O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
    O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee Corporation - C:\PROGRA~1\McAfee.com\PERSON~1\MpfService.exe
    O23 - Service: McAfee SpamKiller Server (MskService) - McAfee Inc. - C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
    O23 - Service: SmartLinkService (SLService) - - C:\WINDOWS\SYSTEM32\slserv.exe



    ---------------------------------------------------------
    ewido anti-malware - Scan report
    ---------------------------------------------------------

    + Created on: 08:45:51, 19/05/2006
    + Report-Checksum: 359720C1

    + Scan result:

    C:\Documents and Settings\Guest\Cookies\[email protected][2].txt -> TrackingCookie.Yieldmanager : Cleaned with backup
    C:\Documents and Settings\Guest\Cookies\[email protected][2].txt -> TrackingCookie.Euroclick : Cleaned with backup
    C:\Documents and Settings\Guest\Cookies\[email protected][3].txt -> TrackingCookie.Adrevolver : Cleaned with backup
    C:\Documents and Settings\Guest\Cookies\[email protected][2].txt -> TrackingCookie.Advertising : Cleaned with backup
    C:\Documents and Settings\Guest\Cookies\[email protected][1].txt -> TrackingCookie.Falkag : Cleaned with backup
    C:\Documents and Settings\Guest\Cookies\[email protected][2].txt -> TrackingCookie.Atdmt : Cleaned with backup
    C:\Documents and Settings\Guest\Cookies\[email protected][2].txt -> TrackingCookie.Casalemedia : Cleaned with backup
    C:\Documents and Settings\Guest\Cookies\[email protected][1].txt -> TrackingCookie.Doubleclick : Cleaned with backup
    C:\Documents and Settings\Guest\Cookies\[email protected][2].txt -> TrackingCookie.Fastclick : Cleaned with backup
    C:\Documents and Settings\Guest\Cookies\[email protected][1].txt -> TrackingCookie.2o7 : Cleaned with backup
    C:\Documents and Settings\Guest\Cookies\[email protected][1].txt -> TrackingCookie.Tradedoubler : Cleaned with backup
    C:\Documents and Settings\Guest\Cookies\[email protected][1].txt -> TrackingCookie.Tribalfusion : Cleaned with backup
    C:\Documents and Settings\Guest\Cookies\[email protected][1].txt -> TrackingCookie.Valueclick : Cleaned with backup
    :mozilla.5:C:\Documents and Settings\Helena Linder\Application Data\Mozilla\Firefox\Profiles\mcthonpn.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
    :mozilla.6:C:\Documents and Settings\Helena Linder\Application Data\Mozilla\Firefox\Profiles\mcthonpn.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
    :mozilla.7:C:\Documents and Settings\Helena Linder\Application Data\Mozilla\Firefox\Profiles\mcthonpn.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
    :mozilla.8:C:\Documents and Settings\Helena Linder\Application Data\Mozilla\Firefox\Profiles\mcthonpn.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][1].txt -> TrackingCookie.2o7 : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][2].txt -> TrackingCookie.2o7 : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][1].txt -> TrackingCookie.Yieldmanager : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][1].txt -> TrackingCookie.Adrevolver : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][2].txt -> TrackingCookie.Pointroll : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][1].txt -> TrackingCookie.Revenue : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][2].txt -> TrackingCookie.Adtech : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][1].txt -> TrackingCookie.Paypopup : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][1].txt -> TrackingCookie.Bluestreak : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][1].txt -> TrackingCookie.Casalemedia : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][1].txt -> TrackingCookie.Bridgetrack : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][2].txt -> TrackingCookie.Overture : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][1].txt -> TrackingCookie.2o7 : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][1].txt -> TrackingCookie.Itrack : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][1].txt -> TrackingCookie.Overture : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][2].txt -> TrackingCookie.Qksrv : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][2].txt -> TrackingCookie.Valuead : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][1].txt -> TrackingCookie.Revenue : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][2].txt -> TrackingCookie.Serving-sys : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][1].txt -> TrackingCookie.Statcounter : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][1].txt -> TrackingCookie.Tacoda : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][2].txt -> TrackingCookie.Tradedoubler : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][1].txt -> TrackingCookie.Tribalfusion : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Cookies\helena [email protected][1].txt -> TrackingCookie.Burstbeacon : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Local Settings\Temp\Cookies\helena [email protected][1].txt -> TrackingCookie.Yieldmanager : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Local Settings\Temp\Cookies\helena [email protected][3].txt -> TrackingCookie.Adrevolver : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Local Settings\Temp\Cookies\helena [email protected][1].txt -> TrackingCookie.Casalemedia : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Local Settings\Temp\Cookies\helena [email protected][2].txt -> TrackingCookie.Statcounter : Cleaned with backup
    C:\Documents and Settings\Helena Linder\Local Settings\Temp\Cookies\helena [email protected][1].txt -> TrackingCookie.Tribalfusion : Cleaned with backup
    C:\Program Files\Hijackthis\backups\backup-20060307-025458-282.dll -> Proxy.Agent.kc : Cleaned with backup
    C:\Program Files\Hijackthis\backups\backup-20060307-025458-694.dll -> Downloader.VB.uq : Cleaned with backup
    C:\System Volume Information\_restore{98E46F0A-9DA1-4258-92C4-7CCAE5D21E6E}\RP219\A0041155.dll -> Proxy.Agent.kc : Cleaned with backup
    C:\System Volume Information\_restore{98E46F0A-9DA1-4258-92C4-7CCAE5D21E6E}\RP219\A0041156.dll -> Downloader.VB.uq : Cleaned with backup
    C:\WINDOWS\system32\wiper.exe -> Downloader.VB.uq : Cleaned with backup


    ::Report End
     
  2. Flrman1

    Flrman1

    Joined:
    Jul 26, 2002
    Messages:
    46,329
As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 733,556 other people just like you!

Loading...
Thread Status:
Not open for further replies.

Short URL to this thread: https://techguy.org/468512

  1. This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
    By continuing to use this site, you are consenting to our use of cookies.
    Dismiss Notice