Solved: win32res.exe

Status
This thread has been Locked and is not open to further replies. Please start a New Thread if you're having a similar issue. View our Welcome Guide to learn how to use this site.

ebytes

Thread Starter
Joined
Jul 27, 2005
Messages
73
A friend of mine called me moments ago to tell me that she got a message from Windows Security Center on her desktop that the computer has been infected with spyware and to take necessary actions by downloading the latest Windows updates. She told me she saw win32res.exe was the cause of this.

I saw a fix here

I'm planning on stopping by her place to take a look at it. She currently has Adaware, Spybot, SpywareBlaster, CWShredder and Microsoft Anti-Spyware Beta installed and all are up to date. She's using F-Prot Anti-Virus and that's up to date too. Asides from the link to the fix I posted above, anyone else has ever dealt with win32res.exe:confused: ?

I just instructed her to turn her computer off and wait til I get there before doing anything else.

Thanks!
 

ebytes

Thread Starter
Joined
Jul 27, 2005
Messages
73
I ran a log file using HiJackThis and this was what I got:

Logfile of HijackThis v1.99.1
Scan saved at 1:18:04 PM, on 1/7/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\Microsoft AntiSpyware\gcasServ.exe
C:\Program Files\FSI\F-Prot\F-StopW.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\FreeMem Professional\fmempro.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\EarthLink TotalAccess\TaskPanl.exe
C:\Program Files\EarthLink TotalAccess\WENGINE\wmonitor.exe
C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
C:\Program Files\FSI\F-Prot\fpavupdm.exe
C:\Program Files\Microsoft AntiSpyware\gcasDtServ.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\Kenny\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.earthlink.net
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.earthlink.net/partner/more/msie/button/search.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://start.earthlink.net/AL/Search
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.earthlink.net/partner/more/msie/button/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/mywaybiz
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.earthlink.net/partner/more/msie/button/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://start.earthlink.net/AL/Search
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.earthlink.net/partner/more/msie/button/search.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://start.earthlink.net/AL/Search
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.dell4me.com/mywaybiz
R3 - URLSearchHook: SrchHook Class - {44F9B173-041C-4825-A9B9-D914BD9DCBB3} - C:\Program Files\EarthLink TotalAccess\ElnIE.dll
R3 - URLSearchHook: (no name) - ~4D25F926-B9FE-4682-BF72-8AB8210D6D75} - (no file)
R3 - URLSearchHook: (no name) - ~CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: ATLDistrib Object - {2353FCBC-012D-487B-8BF3-865C0929FBEB} - C:\WINDOWS\system32\awtqr.dll
O2 - BHO: (no name) - {2E8A34D9-F267-40C6-AC08-BFF97A83A056} - (no file)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [F-StopW] C:\Program Files\FSI\F-Prot\F-StopW.EXE
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [FreeMem Pro] "C:\Program Files\FreeMem Professional\fmempro.exe" autostart
O4 - HKCU\..\Run: [Weather] C:\PROGRA~1\AWS\WEATHE~1\Weather.exe 1
O4 - HKCU\..\Run: [E6TaskPanel] "C:\Program Files\EarthLink TotalAccess\TaskPanl.exe" -winstart
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1136431148031
O20 - AppInit_DLLs: C:\WINDOWS\system32\wmfhotfix.dll
O20 - Winlogon Notify: awtqr - C:\WINDOWS\system32\awtqr.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: st3i - C:\WINDOWS\q21643031.dll (file missing)
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
O23 - Service: EarthLink Monitor Service (EarthLinkMonitor) - Boingo Wireless, Inc. - C:\Program Files\EarthLink TotalAccess\WENGINE\wmonitor.exe
O23 - Service: F-Prot Antivirus Update Monitor - FRISK Software - C:\Program Files\FSI\F-Prot\fpavupdm.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
 

Cheeseball81

Retired Moderator
Joined
Mar 3, 2004
Messages
84,315
** Before you proceed with the removal directions below you need to turn off MS Anti-Spyware's realtime protection as it will interfere with the changes we are trying to make.

Open MS Anti-Spyware and click on Options>Settings.
Click on "Realtime Protection" in the left pane.
Remove the check by these:
Enable the Microsoft Security Agents on startup. (recommended)
Enable real-time spyware threat protection. (recommended)
Click "Save".
Now right click the MS Anti-spyware icon in your system tray and choose "Shutdown Microsoft Anti-Spyware".
You should re-enable these when we are finished here.

* Copy these instructions to notepad and save them to your desktop. You will need them to refer to.

*
Click here to download Please download VundoFix.exe.
  • Save the VundoFix.exe file to your desktop.
  • Double-click VundoFix.exe to extract the files.
  • This will create a VundoFix folder on your desktop.
  • After the files are extracted, please reboot your computer into Safe Mode. You can do this by restarting your computer and continually tapping the F8 key until a menu appears. Use your up arrow key to highlight Safe Mode then hit enter.
  • Once in safe mode open the VundoFix folder and doubleclick on KillVundo.bat
  • You will first be presented with a warning that should look like this
    VundoFix V2.13 by Atri
    By using VundoFix you agree that you are doing so at your own risk
    Press enter to continue....
  • At this point press the Enter key on your keyboard one time.
  • Next you will see:
    Please Type in the filepath as instructed by the forum staff and then press enter:
  • At this point please type the following file path (make sure to enter it exactly as below!):
    • C:\WINDOWS\system32\awtqr.dll
  • Press Enter to continue with the fix.
  • Next you will see:
    Please type in the second filepath as instructed by
    the forum staff then press enter:
  • At this point please type the following file path (make sure to enter it exactly as below!):
    • C:\WINDOWS\system32\rqtwa.*
  • Press Enter to continue with the fix.

  • If you have a script blocker running, you may get a warning about a malicious script. Allow the script to run. It is not malicious.

  • The fix will run then HijackThis will open, if it does not open automatically please open it manually.

  • In HiJackThis, please place a check next to the following items and
    click FIX CHECKED:

    • O2 - BHO: ATLDistrib Object - {2353FCBC-012D-487B-8BF3-865C0929FBEB} - C:\WINDOWS\system32\awtqr.dll



      [*]O20 - Winlogon Notify: awtqr - C:\WINDOWS\system32\awtqr.dll

  • After you have fixed these items, close Hijackthis.

  • Press enter to exit the program then manually reboot your computer.

  • Once your machine reboots please continue with the instructions below.

*Download Cleanup from Here
  • Open Cleanup! by double-clicking the icon on your desktop (or from the Start > All Programs menu).
  • Click the Options... button on the right.
  • Move the arrow down to "Custom CleanUp!"
  • Put a check next to the following (Make sure nothing else is checked!):
    • Empty Recycle Bins
    • Delete Cookies
    • Cleanup! All Users
    Click OK
  • Press the CleanUp! button to start the program.
  • It may ask you to reboot at the end, click NO.

* Run ActiveScan online virus scan here
  • When the scan is finished, anything that it cannot clean have it delete it.
  • Save the results from the scan!
  • Copy the results of the ActiveScan and paste them here along with a new HiJackThis log and the vundofix.txt file from the vundofix folder into this topic.
 

ebytes

Thread Starter
Joined
Jul 27, 2005
Messages
73
ActiveScan Report

Incident Status Location

Spyware:Cookie/2o7.net Not disinfected C:\Documents and Settings\Jessica\Application Data\Mozilla\Firefox\Profiles\tedn108b.default\cookies.txt[]
Spyware:Cookie/Statcounter Not disinfected C:\Documents and Settings\Kenny\Application Data\Mozilla\Firefox\Profiles\s0nn0urw.default\cookies.txt[]
Potentially unwanted tool:Application/Processor Not disinfected C:\Documents and Settings\Kenny\Desktop\VundoFix\VundoFix\VundoFix\process.exe
Spyware:Cookie/YieldManager Not disinfected C:\Documents and Settings\Yudi\Application Data\Mozilla\Firefox\Profiles\z2actlqm.default\cookies.txt[]
Virus:Eicar.Mod Not disinfected C:\Program Files\FSI\F-Prot\fpav-help.chm[prob-scan-ok.html]
Virus:Eicar.Mod Not disinfected C:\Program Files\InstallShield Installation Information\{9FD12630-1991-46F5-8479-92DE1EAE87DA}\data1.cab[prob-scan-ok.html]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00091806.MOZ[]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00091836.MOZ[]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00091942.MOZ[]
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00092434.TXT
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00092435.TXT
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00092436.TXT
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00092437.TXT
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00092438.TXT
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00092441.TXT
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00092447.TXT
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00092448.TXT
Spyware:Cookie/YieldManager Not disinfected C:\RECYCLER\NPROTECT\00092449.TXT
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00092474.MOZ[]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00092531.MOZ[]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00092538.MOZ[]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00093083.MOZ[]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00093148.MOZ[]
Spyware:Cookie/Adrevolver Not disinfected C:\RECYCLER\NPROTECT\00093176.MOZ[]
Spyware:Cookie/Target Not disinfected C:\RECYCLER\NPROTECT\00093515.MOZ[]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\RECYCLER\NPROTECT\00093515.MOZ[63152693]
Spyware:Cookie/BurstBeacon Not disinfected C:\RECYCLER\NPROTECT\00093515.MOZ[]
Spyware:Cookie/Target Not disinfected C:\RECYCLER\NPROTECT\00093519.MOZ[]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\RECYCLER\NPROTECT\00093519.MOZ[63152693]
Spyware:Cookie/BurstBeacon Not disinfected C:\RECYCLER\NPROTECT\00093519.MOZ[]
Spyware:Cookie/Target Not disinfected C:\RECYCLER\NPROTECT\00093520.MOZ[]
 

ebytes

Thread Starter
Joined
Jul 27, 2005
Messages
73
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\RECYCLER\NPROTECT\00093520.MOZ[63152693]
Spyware:Cookie/BurstBeacon Not disinfected C:\RECYCLER\NPROTECT\00093520.MOZ[]
Spyware:Cookie/Target Not disinfected C:\RECYCLER\NPROTECT\00093521.MOZ[]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\RECYCLER\NPROTECT\00093521.MOZ[63152693]
Spyware:Cookie/BurstBeacon Not disinfected C:\RECYCLER\NPROTECT\00093521.MOZ[]
Spyware:Cookie/Target Not disinfected C:\RECYCLER\NPROTECT\00093522.MOZ[]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\RECYCLER\NPROTECT\00093522.MOZ[63152693]
Spyware:Cookie/BurstBeacon Not disinfected C:\RECYCLER\NPROTECT\00093522.MOZ[]
Spyware:Cookie/Target Not disinfected C:\RECYCLER\NPROTECT\00093523.MOZ[]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\RECYCLER\NPROTECT\00093523.MOZ[63152693]
Spyware:Cookie/BurstBeacon Not disinfected C:\RECYCLER\NPROTECT\00093523.MOZ[]
Spyware:Cookie/Target Not disinfected C:\RECYCLER\NPROTECT\00093524.MOZ[]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\RECYCLER\NPROTECT\00093524.MOZ[63152693]
Spyware:Cookie/BurstBeacon Not disinfected C:\RECYCLER\NPROTECT\00093524.MOZ[]
Spyware:Cookie/Target Not disinfected C:\RECYCLER\NPROTECT\00093526.MOZ[]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\RECYCLER\NPROTECT\00093526.MOZ[63152693]
Spyware:Cookie/BurstBeacon Not disinfected C:\RECYCLER\NPROTECT\00093526.MOZ[]
Spyware:Cookie/Target Not disinfected C:\RECYCLER\NPROTECT\00093527.MOZ[]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\RECYCLER\NPROTECT\00093527.MOZ[63152693]
Spyware:Cookie/BurstBeacon Not disinfected C:\RECYCLER\NPROTECT\00093527.MOZ[]
Spyware:Cookie/Target Not disinfected C:\RECYCLER\NPROTECT\00093528.MOZ[]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\RECYCLER\NPROTECT\00093528.MOZ[63152693]
Spyware:Cookie/BurstBeacon Not disinfected C:\RECYCLER\NPROTECT\00093528.MOZ[]
Spyware:Cookie/Target Not disinfected C:\RECYCLER\NPROTECT\00093529.MOZ[]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\RECYCLER\NPROTECT\00093529.MOZ[63152693]
Spyware:Cookie/BurstBeacon Not disinfected C:\RECYCLER\NPROTECT\00093529.MOZ[]
Spyware:Cookie/Serving-sys Not disinfected C:\RECYCLER\NPROTECT\00093531.MOZ[]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\RECYCLER\NPROTECT\00093531.MOZ[63152693]
Spyware:Cookie/BurstBeacon Not disinfected C:\RECYCLER\NPROTECT\00093531.MOZ[]
Spyware:Cookie/Serving-sys Not disinfected C:\RECYCLER\NPROTECT\00093532.MOZ[]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\RECYCLER\NPROTECT\00093532.MOZ[63152693]
Spyware:Cookie/BurstBeacon Not disinfected C:\RECYCLER\NPROTECT\00093532.MOZ[]
Spyware:Cookie/Bs.serving-sys Not disinfected C:\RECYCLER\NPROTECT\00093533.MOZ[]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\RECYCLER\NPROTECT\00093533.MOZ[63152693]
Spyware:Cookie/BurstBeacon Not disinfected C:\RECYCLER\NPROTECT\00093533.MOZ[]
Spyware:Cookie/Serving-sys Not disinfected C:\RECYCLER\NPROTECT\00093534.MOZ[]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\RECYCLER\NPROTECT\00093534.MOZ[63152693]
Spyware:Cookie/BurstBeacon Not disinfected C:\RECYCLER\NPROTECT\00093534.MOZ[]
Spyware:Cookie/Bs.serving-sys Not disinfected C:\RECYCLER\NPROTECT\00093535.MOZ[]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\RECYCLER\NPROTECT\00093535.MOZ[63152693]
Spyware:Cookie/BurstBeacon Not disinfected C:\RECYCLER\NPROTECT\00093535.MOZ[]
Spyware:Cookie/Serving-sys Not disinfected C:\RECYCLER\NPROTECT\00093536.MOZ[]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\RECYCLER\NPROTECT\00093536.MOZ[63152693]
Spyware:Cookie/BurstBeacon Not disinfected C:\RECYCLER\NPROTECT\00093536.MOZ[]
Spyware:Cookie/Serving-sys Not disinfected C:\RECYCLER\NPROTECT\00093537.MOZ[]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\RECYCLER\NPROTECT\00093537.MOZ[63152693]
Spyware:Cookie/BurstBeacon Not disinfected C:\RECYCLER\NPROTECT\00093537.MOZ[]
Spyware:Cookie/Serving-sys Not disinfected C:\RECYCLER\NPROTECT\00093539.MOZ[]
Spyware:Cookie/Server.iad.Liveperson Not disinfected C:\RECYCLER\NPROTECT\00093539.MOZ[63152693]
 

ebytes

Thread Starter
Joined
Jul 27, 2005
Messages
73
The ActiveScan Report is huge. Should I paste it in separate replies? Thanks!
 

ebytes

Thread Starter
Joined
Jul 27, 2005
Messages
73
Logfile of HijackThis v1.99.1
Scan saved at 5:20:18 PM, on 1/7/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\Program Files\Analog Devices\Core\smax4pnp.exe
C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
C:\Program Files\HP\hpcoretech\hpcmpmgr.exe
C:\WINDOWS\system32\hkcmd.exe
C:\Program Files\FSI\F-Prot\F-StopW.EXE
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\FreeMem Professional\fmempro.exe
C:\PROGRA~1\AWS\WEATHE~1\Weather.exe
C:\Program Files\EarthLink TotalAccess\TaskPanl.exe
C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
C:\Program Files\EarthLink TotalAccess\WENGINE\wmonitor.exe
C:\Program Files\FSI\F-Prot\fpavupdm.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Documents and Settings\Kenny\Desktop\HijackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://start.earthlink.net
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.earthlink.net/partner/more/msie/button/search.html
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Bar = http://start.earthlink.net/AL/Search
R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.earthlink.net/partner/more/msie/button/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://www.dell4me.com/mywaybiz
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://www.earthlink.net/partner/more/msie/button/search.html
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = http://start.earthlink.net/AL/Search
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://www.earthlink.net/partner/more/msie/button/search.html
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = http://start.earthlink.net/AL/Search
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www.dell4me.com/mywaybiz
R3 - URLSearchHook: SrchHook Class - {44F9B173-041C-4825-A9B9-D914BD9DCBB3} - C:\Program Files\EarthLink TotalAccess\ElnIE.dll
R3 - URLSearchHook: (no name) - ~4D25F926-B9FE-4682-BF72-8AB8210D6D75} - (no file)
R3 - URLSearchHook: (no name) - ~CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {2E8A34D9-F267-40C6-AC08-BFF97A83A056} - (no file)
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O3 - Toolbar: (no name) - {BA52B914-B692-46c4-B683-905236F6F655} - (no file)
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [SoundMAXPnP] C:\Program Files\Analog Devices\Core\smax4pnp.exe
O4 - HKLM\..\Run: [NeroFilterCheck] C:\WINDOWS\system32\NeroCheck.exe
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HP Software Update] C:\Program Files\Hewlett-Packard\HP Software Update\HPWuSchd2.exe
O4 - HKLM\..\Run: [HP Component Manager] "C:\Program Files\HP\hpcoretech\hpcmpmgr.exe"
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [gcasServ] "C:\Program Files\Microsoft AntiSpyware\gcasServ.exe"
O4 - HKLM\..\Run: [F-StopW] C:\Program Files\FSI\F-Prot\F-StopW.EXE
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [FreeMem Pro] "C:\Program Files\FreeMem Professional\fmempro.exe" autostart
O4 - HKCU\..\Run: [Weather] C:\PROGRA~1\AWS\WEATHE~1\Weather.exe 1
O4 - HKCU\..\Run: [E6TaskPanel] "C:\Program Files\EarthLink TotalAccess\TaskPanl.exe" -winstart
O4 - Global Startup: Adobe Reader Speed Launch.lnk = C:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~3\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MICROS~3\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: (no name) - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - (no file)
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://www.pcpitstop.com/pcpitstop/PCPitStop.CAB
O16 - DPF: {17492023-C23A-453E-A040-C7C580BBF700} (Windows Genuine Advantage Validation Tool) - http://go.microsoft.com/fwlink/?linkid=39204
O16 - DPF: {6E32070A-766D-4EE6-879C-DC1FA91D2FC3} (MUWebControl Class) - http://update.microsoft.com/microsoftupdate/v6/V5Controls/en/x86/client/muweb_site.cab?1136431148031
O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://acs.pandasoftware.com/activescan/as5free/asinst.cab
O20 - AppInit_DLLs: C:\WINDOWS\system32\wmfhotfix.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: st3i - C:\WINDOWS\q21643031.dll (file missing)
O23 - Service: AOL Connectivity Service (AOL ACS) - America Online, Inc. - C:\PROGRA~1\COMMON~1\AOL\ACS\AOLacsd.exe
O23 - Service: EarthLink Monitor Service (EarthLinkMonitor) - Boingo Wireless, Inc. - C:\Program Files\EarthLink TotalAccess\WENGINE\wmonitor.exe
O23 - Service: F-Prot Antivirus Update Monitor - FRISK Software - C:\Program Files\FSI\F-Prot\fpavupdm.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: Intel NCS NetService (NetSvc) - Intel(R) Corporation - C:\Program Files\Intel\PROSetWired\NCS\Sync\NetSvc.exe
 

ebytes

Thread Starter
Joined
Jul 27, 2005
Messages
73
VundoFix V2.15 by Atri
--------------------------------------------------------------------------------------

Listing files contained in the vundofix folder.
--------------------------------------------------------------------------------------

killvundo.bat
process.exe
ReadMe.txt
vundo.reg
vundofix.txt

--------------------------------------------------------------------------------------

Filepaths entered
--------------------------------------------------------------------------------------

The filepath entered was C:\WINDOWS\system32\awtqr.dll

The second filepath entered was C:\WINDOWS\system32\rqtwa.*

--------------------------------------------------------------------------------------

Log from Process
--------------------------------------------------------------------------------------


Killing PID 132 'smss.exe'

Killing PID 732 'explorer.exe'
Killing PID 732 'explorer.exe'


Killing PID 204 'winlogon.exe'
--------------------------------------------------------------------------------------

C:\WINDOWS\system32\awtqr.dll Deleted sucessfully.
C:\WINDOWS\system32\rqtwa.* Deleted sucessfully.

Fixing Registry
--------------------------------------------------------------------------------------
 

Cheeseball81

Retired Moderator
Joined
Mar 3, 2004
Messages
84,315
Click here to download the trial version of Ewido Security Suite:
http://www.ewido.net/en/download/

· Install Ewido.
· During the installation, under "Additional Options" uncheck "Install background guard" and "Install scan via context menu".
· Launch ewido.
· It will prompt you to update click the OK button and it will go to the main screen.
· On the left side of the main screen click update.
· Click on Start and let it update.
· DO NOT run a scan yet.

Restart your computer into Safe Mode now.
(Start tapping the F8 key at Startup, before the Windows logo screen).
Perform the following steps in Safe Mode:

* Run Ewido:
Click on scanner
Click Complete System Scan and the scan will begin.
During the scan it will prompt you to clean files, click OK.
When the scan is finished, look at the bottom of the screen and click the Save report button.
Save the report to your desktop.

Reboot.

Post a new Hijack This log and the results of the Ewido scan.
 

ebytes

Thread Starter
Joined
Jul 27, 2005
Messages
73
---------------------------------------------------------
ewido anti-malware - Scan report
---------------------------------------------------------

+ Created on: 9:21:11 PM, 1/7/2006
+ Report-Checksum: E631F6D1

+ Scan result:

HKU\S-1-5-21-2873597656-2572006757-781748747-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00000010-6F7D-442C-93E3-4A4827C2E4C8} -> Spyware.InternetOptimizer : Cleaned with backup
HKU\S-1-5-21-2873597656-2572006757-781748747-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{00A6FAF1-072E-44CF-8957-5838F569A31D} -> Spyware.MyWebSearch : Cleaned with backup
HKU\S-1-5-21-2873597656-2572006757-781748747-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{07B18EA1-A523-4961-B6BB-170DE4475CCA} -> Spyware.MyWebSearch : Cleaned with backup
HKU\S-1-5-21-2873597656-2572006757-781748747-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{10E42047-DEB9-4535-A118-B3F6EC39B807} -> Spyware.SideFind : Cleaned with backup
HKU\S-1-5-21-2873597656-2572006757-781748747-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} -> Spyware.MiniBug : Cleaned with backup
HKU\S-1-5-21-2873597656-2572006757-781748747-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{7C559105-9ECF-42B8-B3F7-832E75EDD959} -> Spyware.ISTBar : Cleaned with backup
HKU\S-1-5-21-2873597656-2572006757-781748747-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{86227D9C-0EFE-4F8A-AA55-30386A3F5686} -> Spyware.YourSiteBar : Cleaned with backup
HKU\S-1-5-21-2873597656-2572006757-781748747-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{A3FDD654-A057-4971-9844-4ED8E67DBBB8} -> Spyware.ISTBar : Cleaned with backup
HKU\S-1-5-21-2873597656-2572006757-781748747-1007\Software\Microsoft\Windows\CurrentVersion\Ext\Stats\{F4E04583-354E-4076-BE7D-ED6A80FD66DA} -> Spyware.BargainBuddy : Cleaned with backup
:mozilla.6:C:\Documents and Settings\Kenny\Application Data\Mozilla\Firefox\Profiles\s0nn0urw.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
:mozilla.21:C:\Documents and Settings\Kenny\Application Data\Mozilla\Firefox\Profiles\s0nn0urw.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
:mozilla.22:C:\Documents and Settings\Kenny\Application Data\Mozilla\Firefox\Profiles\s0nn0urw.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
C:\Documents and Settings\Kenny\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\count3.jar-7d2c9337-41bb487d.zip/Beyond.class -> Not-A-Virus.Exploit.Java.Bytverify : Cleaned with backup
C:\Documents and Settings\Kenny\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\jar\count3.jar-7d2c9337-41bb487d.zip/BlackBox.class -> Not-A-Virus.Exploit.Java.Bytverify : Cleaned with backup
:mozilla.12:C:\Documents and Settings\Yudi\Application Data\Mozilla\Firefox\Profiles\z2actlqm.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Yudi\Application Data\Mozilla\Firefox\Profiles\z2actlqm.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Yudi\Application Data\Mozilla\Firefox\Profiles\z2actlqm.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
:mozilla.159:C:\Documents and Settings\Yudi\Application Data\Mozilla\Firefox\Profiles\z2actlqm.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.160:C:\Documents and Settings\Yudi\Application Data\Mozilla\Firefox\Profiles\z2actlqm.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
C:\Documents and Settings\Yudi\Local Settings\Application Data\Wildtangent\Cdacache\00\00\0D.dat/files\wtvh.dll -> Spyware.WildTangent : Cleaned with backup
C:\Program Files\BitComet\Downloads\ACDSee.v8.0.41.Incl.PatchFile.Whit.Serial.Multilenguaje[www.ToroBT.Com.Ar]\Patch.rar/Patch.exe -> Downloader.VB.ts : Cleaned with backup
:mozilla.52:C:\RECYCLER\NPROTECT\00091806.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.121:C:\RECYCLER\NPROTECT\00091806.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.122:C:\RECYCLER\NPROTECT\00091806.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.141:C:\RECYCLER\NPROTECT\00091806.MOZ -> Spyware.Cookie.Popularix : Cleaned with backup
:mozilla.52:C:\RECYCLER\NPROTECT\00091836.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.121:C:\RECYCLER\NPROTECT\00091836.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.122:C:\RECYCLER\NPROTECT\00091836.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.141:C:\RECYCLER\NPROTECT\00091836.MOZ -> Spyware.Cookie.Popularix : Cleaned with backup
:mozilla.52:C:\RECYCLER\NPROTECT\00091942.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.121:C:\RECYCLER\NPROTECT\00091942.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.122:C:\RECYCLER\NPROTECT\00091942.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.141:C:\RECYCLER\NPROTECT\00091942.MOZ -> Spyware.Cookie.Popularix : Cleaned with backup
C:\RECYCLER\NPROTECT\00092461.TXT -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.52:C:\RECYCLER\NPROTECT\00092474.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.121:C:\RECYCLER\NPROTECT\00092474.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.122:C:\RECYCLER\NPROTECT\00092474.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.141:C:\RECYCLER\NPROTECT\00092474.MOZ -> Spyware.Cookie.Popularix : Cleaned with backup
:mozilla.52:C:\RECYCLER\NPROTECT\00092531.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.121:C:\RECYCLER\NPROTECT\00092531.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.122:C:\RECYCLER\NPROTECT\00092531.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.141:C:\RECYCLER\NPROTECT\00092531.MOZ -> Spyware.Cookie.Popularix : Cleaned with backup
 

ebytes

Thread Starter
Joined
Jul 27, 2005
Messages
73
:mozilla.52:C:\RECYCLER\NPROTECT\00092538.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.121:C:\RECYCLER\NPROTECT\00092538.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.122:C:\RECYCLER\NPROTECT\00092538.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.141:C:\RECYCLER\NPROTECT\00092538.MOZ -> Spyware.Cookie.Popularix : Cleaned with backup
:mozilla.52:C:\RECYCLER\NPROTECT\00093083.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.121:C:\RECYCLER\NPROTECT\00093083.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.122:C:\RECYCLER\NPROTECT\00093083.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.141:C:\RECYCLER\NPROTECT\00093083.MOZ -> Spyware.Cookie.Popularix : Cleaned with backup
:mozilla.52:C:\RECYCLER\NPROTECT\00093148.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.121:C:\RECYCLER\NPROTECT\00093148.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.122:C:\RECYCLER\NPROTECT\00093148.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.141:C:\RECYCLER\NPROTECT\00093148.MOZ -> Spyware.Cookie.Popularix : Cleaned with backup
:mozilla.52:C:\RECYCLER\NPROTECT\00093176.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.121:C:\RECYCLER\NPROTECT\00093176.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.122:C:\RECYCLER\NPROTECT\00093176.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.141:C:\RECYCLER\NPROTECT\00093176.MOZ -> Spyware.Cookie.Popularix : Cleaned with backup
:mozilla.58:C:\RECYCLER\NPROTECT\00093515.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.65:C:\RECYCLER\NPROTECT\00093515.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.146:C:\RECYCLER\NPROTECT\00093515.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.147:C:\RECYCLER\NPROTECT\00093515.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.148:C:\RECYCLER\NPROTECT\00093515.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.149:C:\RECYCLER\NPROTECT\00093515.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.150:C:\RECYCLER\NPROTECT\00093515.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.151:C:\RECYCLER\NPROTECT\00093515.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.152:C:\RECYCLER\NPROTECT\00093515.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.153:C:\RECYCLER\NPROTECT\00093515.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.154:C:\RECYCLER\NPROTECT\00093515.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.155:C:\RECYCLER\NPROTECT\00093515.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.177:C:\RECYCLER\NPROTECT\00093515.MOZ -> Spyware.Cookie.Hypertracker : Cleaned with backup
:mozilla.294:C:\RECYCLER\NPROTECT\00093515.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.344:C:\RECYCLER\NPROTECT\00093515.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.345:C:\RECYCLER\NPROTECT\00093515.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.346:C:\RECYCLER\NPROTECT\00093515.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.58:C:\RECYCLER\NPROTECT\00093519.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.65:C:\RECYCLER\NPROTECT\00093519.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.146:C:\RECYCLER\NPROTECT\00093519.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.147:C:\RECYCLER\NPROTECT\00093519.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.148:C:\RECYCLER\NPROTECT\00093519.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.149:C:\RECYCLER\NPROTECT\00093519.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.150:C:\RECYCLER\NPROTECT\00093519.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.151:C:\RECYCLER\NPROTECT\00093519.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.152:C:\RECYCLER\NPROTECT\00093519.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.153:C:\RECYCLER\NPROTECT\00093519.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.154:C:\RECYCLER\NPROTECT\00093519.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.155:C:\RECYCLER\NPROTECT\00093519.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.177:C:\RECYCLER\NPROTECT\00093519.MOZ -> Spyware.Cookie.Hypertracker : Cleaned with backup
:mozilla.294:C:\RECYCLER\NPROTECT\00093519.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.343:C:\RECYCLER\NPROTECT\00093519.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.344:C:\RECYCLER\NPROTECT\00093519.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.345:C:\RECYCLER\NPROTECT\00093519.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.58:C:\RECYCLER\NPROTECT\00093520.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.65:C:\RECYCLER\NPROTECT\00093520.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.146:C:\RECYCLER\NPROTECT\00093520.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.147:C:\RECYCLER\NPROTECT\00093520.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.148:C:\RECYCLER\NPROTECT\00093520.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.149:C:\RECYCLER\NPROTECT\00093520.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.150:C:\RECYCLER\NPROTECT\00093520.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.151:C:\RECYCLER\NPROTECT\00093520.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.152:C:\RECYCLER\NPROTECT\00093520.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.153:C:\RECYCLER\NPROTECT\00093520.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.154:C:\RECYCLER\NPROTECT\00093520.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.155:C:\RECYCLER\NPROTECT\00093520.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.177:C:\RECYCLER\NPROTECT\00093520.MOZ -> Spyware.Cookie.Hypertracker : Cleaned with backup
:mozilla.294:C:\RECYCLER\NPROTECT\00093520.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.343:C:\RECYCLER\NPROTECT\00093520.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.344:C:\RECYCLER\NPROTECT\00093520.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.345:C:\RECYCLER\NPROTECT\00093520.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.57:C:\RECYCLER\NPROTECT\00093521.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.64:C:\RECYCLER\NPROTECT\00093521.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.145:C:\RECYCLER\NPROTECT\00093521.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.146:C:\RECYCLER\NPROTECT\00093521.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.147:C:\RECYCLER\NPROTECT\00093521.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.148:C:\RECYCLER\NPROTECT\00093521.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.149:C:\RECYCLER\NPROTECT\00093521.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.150:C:\RECYCLER\NPROTECT\00093521.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.151:C:\RECYCLER\NPROTECT\00093521.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.152:C:\RECYCLER\NPROTECT\00093521.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.153:C:\RECYCLER\NPROTECT\00093521.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.154:C:\RECYCLER\NPROTECT\00093521.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.176:C:\RECYCLER\NPROTECT\00093521.MOZ -> Spyware.Cookie.Hypertracker : Cleaned with backup
:mozilla.293:C:\RECYCLER\NPROTECT\00093521.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.342:C:\RECYCLER\NPROTECT\00093521.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.343:C:\RECYCLER\NPROTECT\00093521.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.344:C:\RECYCLER\NPROTECT\00093521.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.57:C:\RECYCLER\NPROTECT\00093522.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
 

ebytes

Thread Starter
Joined
Jul 27, 2005
Messages
73
:mozilla.64:C:\RECYCLER\NPROTECT\00093522.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.145:C:\RECYCLER\NPROTECT\00093522.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.146:C:\RECYCLER\NPROTECT\00093522.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.147:C:\RECYCLER\NPROTECT\00093522.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.148:C:\RECYCLER\NPROTECT\00093522.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.149:C:\RECYCLER\NPROTECT\00093522.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.150:C:\RECYCLER\NPROTECT\00093522.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.151:C:\RECYCLER\NPROTECT\00093522.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.152:C:\RECYCLER\NPROTECT\00093522.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.153:C:\RECYCLER\NPROTECT\00093522.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.154:C:\RECYCLER\NPROTECT\00093522.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.176:C:\RECYCLER\NPROTECT\00093522.MOZ -> Spyware.Cookie.Hypertracker : Cleaned with backup
:mozilla.293:C:\RECYCLER\NPROTECT\00093522.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.342:C:\RECYCLER\NPROTECT\00093522.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.343:C:\RECYCLER\NPROTECT\00093522.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.344:C:\RECYCLER\NPROTECT\00093522.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.57:C:\RECYCLER\NPROTECT\00093523.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.64:C:\RECYCLER\NPROTECT\00093523.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.145:C:\RECYCLER\NPROTECT\00093523.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.146:C:\RECYCLER\NPROTECT\00093523.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.147:C:\RECYCLER\NPROTECT\00093523.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.148:C:\RECYCLER\NPROTECT\00093523.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.149:C:\RECYCLER\NPROTECT\00093523.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.150:C:\RECYCLER\NPROTECT\00093523.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.151:C:\RECYCLER\NPROTECT\00093523.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.152:C:\RECYCLER\NPROTECT\00093523.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.153:C:\RECYCLER\NPROTECT\00093523.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.154:C:\RECYCLER\NPROTECT\00093523.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.176:C:\RECYCLER\NPROTECT\00093523.MOZ -> Spyware.Cookie.Hypertracker : Cleaned with backup
:mozilla.293:C:\RECYCLER\NPROTECT\00093523.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.342:C:\RECYCLER\NPROTECT\00093523.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.343:C:\RECYCLER\NPROTECT\00093523.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.344:C:\RECYCLER\NPROTECT\00093523.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.57:C:\RECYCLER\NPROTECT\00093524.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.64:C:\RECYCLER\NPROTECT\00093524.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.145:C:\RECYCLER\NPROTECT\00093524.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.146:C:\RECYCLER\NPROTECT\00093524.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.147:C:\RECYCLER\NPROTECT\00093524.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.148:C:\RECYCLER\NPROTECT\00093524.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.149:C:\RECYCLER\NPROTECT\00093524.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.150:C:\RECYCLER\NPROTECT\00093524.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.151:C:\RECYCLER\NPROTECT\00093524.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.152:C:\RECYCLER\NPROTECT\00093524.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.153:C:\RECYCLER\NPROTECT\00093524.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.154:C:\RECYCLER\NPROTECT\00093524.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.176:C:\RECYCLER\NPROTECT\00093524.MOZ -> Spyware.Cookie.Hypertracker : Cleaned with backup
:mozilla.293:C:\RECYCLER\NPROTECT\00093524.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.342:C:\RECYCLER\NPROTECT\00093524.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.343:C:\RECYCLER\NPROTECT\00093524.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.344:C:\RECYCLER\NPROTECT\00093524.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.58:C:\RECYCLER\NPROTECT\00093526.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.65:C:\RECYCLER\NPROTECT\00093526.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.146:C:\RECYCLER\NPROTECT\00093526.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.147:C:\RECYCLER\NPROTECT\00093526.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.148:C:\RECYCLER\NPROTECT\00093526.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.149:C:\RECYCLER\NPROTECT\00093526.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.150:C:\RECYCLER\NPROTECT\00093526.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.151:C:\RECYCLER\NPROTECT\00093526.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.152:C:\RECYCLER\NPROTECT\00093526.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.153:C:\RECYCLER\NPROTECT\00093526.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.154:C:\RECYCLER\NPROTECT\00093526.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.155:C:\RECYCLER\NPROTECT\00093526.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.177:C:\RECYCLER\NPROTECT\00093526.MOZ -> Spyware.Cookie.Hypertracker : Cleaned with backup
:mozilla.294:C:\RECYCLER\NPROTECT\00093526.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.343:C:\RECYCLER\NPROTECT\00093526.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.344:C:\RECYCLER\NPROTECT\00093526.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.345:C:\RECYCLER\NPROTECT\00093526.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.58:C:\RECYCLER\NPROTECT\00093527.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.65:C:\RECYCLER\NPROTECT\00093527.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.146:C:\RECYCLER\NPROTECT\00093527.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.147:C:\RECYCLER\NPROTECT\00093527.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.148:C:\RECYCLER\NPROTECT\00093527.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.149:C:\RECYCLER\NPROTECT\00093527.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.150:C:\RECYCLER\NPROTECT\00093527.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.151:C:\RECYCLER\NPROTECT\00093527.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.152:C:\RECYCLER\NPROTECT\00093527.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.153:C:\RECYCLER\NPROTECT\00093527.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.154:C:\RECYCLER\NPROTECT\00093527.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.155:C:\RECYCLER\NPROTECT\00093527.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.177:C:\RECYCLER\NPROTECT\00093527.MOZ -> Spyware.Cookie.Hypertracker : Cleaned with backup
:mozilla.294:C:\RECYCLER\NPROTECT\00093527.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.343:C:\RECYCLER\NPROTECT\00093527.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.344:C:\RECYCLER\NPROTECT\00093527.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.345:C:\RECYCLER\NPROTECT\00093527.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.58:C:\RECYCLER\NPROTECT\00093528.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.65:C:\RECYCLER\NPROTECT\00093528.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.146:C:\RECYCLER\NPROTECT\00093528.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.147:C:\RECYCLER\NPROTECT\00093528.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.148:C:\RECYCLER\NPROTECT\00093528.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.149:C:\RECYCLER\NPROTECT\00093528.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.150:C:\RECYCLER\NPROTECT\00093528.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.151:C:\RECYCLER\NPROTECT\00093528.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.152:C:\RECYCLER\NPROTECT\00093528.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.153:C:\RECYCLER\NPROTECT\00093528.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.154:C:\RECYCLER\NPROTECT\00093528.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.155:C:\RECYCLER\NPROTECT\00093528.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.177:C:\RECYCLER\NPROTECT\00093528.MOZ -> Spyware.Cookie.Hypertracker : Cleaned with backup
:mozilla.294:C:\RECYCLER\NPROTECT\00093528.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.343:C:\RECYCLER\NPROTECT\00093528.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.344:C:\RECYCLER\NPROTECT\00093528.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.345:C:\RECYCLER\NPROTECT\00093528.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.58:C:\RECYCLER\NPROTECT\00093529.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.65:C:\RECYCLER\NPROTECT\00093529.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.146:C:\RECYCLER\NPROTECT\00093529.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.147:C:\RECYCLER\NPROTECT\00093529.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.148:C:\RECYCLER\NPROTECT\00093529.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.149:C:\RECYCLER\NPROTECT\00093529.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.150:C:\RECYCLER\NPROTECT\00093529.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.151:C:\RECYCLER\NPROTECT\00093529.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.152:C:\RECYCLER\NPROTECT\00093529.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.153:C:\RECYCLER\NPROTECT\00093529.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.154:C:\RECYCLER\NPROTECT\00093529.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.155:C:\RECYCLER\NPROTECT\00093529.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.177:C:\RECYCLER\NPROTECT\00093529.MOZ -> Spyware.Cookie.Hypertracker : Cleaned with backup
:mozilla.294:C:\RECYCLER\NPROTECT\00093529.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.343:C:\RECYCLER\NPROTECT\00093529.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.344:C:\RECYCLER\NPROTECT\00093529.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.345:C:\RECYCLER\NPROTECT\00093529.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.61:C:\RECYCLER\NPROTECT\00093531.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.68:C:\RECYCLER\NPROTECT\00093531.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.149:C:\RECYCLER\NPROTECT\00093531.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.150:C:\RECYCLER\NPROTECT\00093531.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.151:C:\RECYCLER\NPROTECT\00093531.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.152:C:\RECYCLER\NPROTECT\00093531.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.153:C:\RECYCLER\NPROTECT\00093531.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.154:C:\RECYCLER\NPROTECT\00093531.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.155:C:\RECYCLER\NPROTECT\00093531.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.156:C:\RECYCLER\NPROTECT\00093531.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.157:C:\RECYCLER\NPROTECT\00093531.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.158:C:\RECYCLER\NPROTECT\00093531.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.180:C:\RECYCLER\NPROTECT\00093531.MOZ -> Spyware.Cookie.Hypertracker : Cleaned with backup
:mozilla.297:C:\RECYCLER\NPROTECT\00093531.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.346:C:\RECYCLER\NPROTECT\00093531.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.347:C:\RECYCLER\NPROTECT\00093531.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.348:C:\RECYCLER\NPROTECT\00093531.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.62:C:\RECYCLER\NPROTECT\00093532.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.69:C:\RECYCLER\NPROTECT\00093532.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.150:C:\RECYCLER\NPROTECT\00093532.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.151:C:\RECYCLER\NPROTECT\00093532.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.152:C:\RECYCLER\NPROTECT\00093532.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.153:C:\RECYCLER\NPROTECT\00093532.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.154:C:\RECYCLER\NPROTECT\00093532.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.155:C:\RECYCLER\NPROTECT\00093532.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.156:C:\RECYCLER\NPROTECT\00093532.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.157:C:\RECYCLER\NPROTECT\00093532.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.158:C:\RECYCLER\NPROTECT\00093532.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.159:C:\RECYCLER\NPROTECT\00093532.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.181:C:\RECYCLER\NPROTECT\00093532.MOZ -> Spyware.Cookie.Hypertracker : Cleaned with backup
:mozilla.298:C:\RECYCLER\NPROTECT\00093532.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.347:C:\RECYCLER\NPROTECT\00093532.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.348:C:\RECYCLER\NPROTECT\00093532.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.349:C:\RECYCLER\NPROTECT\00093532.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.62:C:\RECYCLER\NPROTECT\00093533.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.69:C:\RECYCLER\NPROTECT\00093533.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.150:C:\RECYCLER\NPROTECT\00093533.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.151:C:\RECYCLER\NPROTECT\00093533.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.152:C:\RECYCLER\NPROTECT\00093533.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.153:C:\RECYCLER\NPROTECT\00093533.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.154:C:\RECYCLER\NPROTECT\00093533.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.155:C:\RECYCLER\NPROTECT\00093533.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.156:C:\RECYCLER\NPROTECT\00093533.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.157:C:\RECYCLER\NPROTECT\00093533.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.158:C:\RECYCLER\NPROTECT\00093533.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.159:C:\RECYCLER\NPROTECT\00093533.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.181:C:\RECYCLER\NPROTECT\00093533.MOZ -> Spyware.Cookie.Hypertracker : Cleaned with backup
:mozilla.298:C:\RECYCLER\NPROTECT\00093533.MOZ -> Spyware.Cookie.Yieldmanager : Cleaned with backup
:mozilla.347:C:\RECYCLER\NPROTECT\00093533.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.348:C:\RECYCLER\NPROTECT\00093533.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.349:C:\RECYCLER\NPROTECT\00093533.MOZ -> Spyware.Cookie.Liveperson : Cleaned with backup
:mozilla.62:C:\RECYCLER\NPROTECT\00093534.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.69:C:\RECYCLER\NPROTECT\00093534.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.150:C:\RECYCLER\NPROTECT\00093534.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.151:C:\RECYCLER\NPROTECT\00093534.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.152:C:\RECYCLER\NPROTECT\00093534.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.153:C:\RECYCLER\NPROTECT\00093534.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
:mozilla.154:C:\RECYCLER\NPROTECT\00093534.MOZ -> Spyware.Cookie.Esomniture : Cleaned with backup
 
Status
This thread has been Locked and is not open to further replies. Please start a New Thread if you're having a similar issue. View our Welcome Guide to learn how to use this site.

Users Who Are Viewing This Thread (Users: 0, Guests: 1)

As Seen On
As Seen On...

Welcome to Tech Support Guy!

Are you looking for the solution to your computer problem? Join our site today to ask your question. This site is completely free -- paid for by advertisers and donations.

If you're not already familiar with forums, watch our Welcome Guide to get started.

Join over 807,865 other people just like you!

Latest posts

Staff online

Top