MyTechSupport.ca :: Your Computer Technical Resource Headquarters! MyTechSupport.ca :: Your Computer Technical Resource Headquarters!
HOME FORUMS RESOURCES & TOOLS ARTICLES ONLINE STORE ABOUT US
Computer Support Forums arrow Internet & Network Support arrow Security & Viruses arrow Topic: PLEASE HELP WITH HIJACK THIS
December 11, 2019, 05:52:37 PM
 

Home Forum Rules Help Search Mobile Version Login Register

Welcome, Guest. Please login or register.
Did you miss your activation email?
December 11, 2019, 05:52:37 PM

Login with username, password and session length
 Featured Sites:
News
Article Writers We are looking for quality, informational articles to add to our Computer Articles
Please contact us if you are interested in submitting some....
  0 Members and 1 Guest are viewing this topic.
Pages: [1] Go Down Print
Author Topic: PLEASE HELP WITH HIJACK THIS  (Read 1138 times)
redhawk6
Newbie
*

Karma: +0/-0
Offline Offline

Gender: Male
Posts: 4


Bookmark and Share

View Profile
« on: October 04, 2005, 12:43:56 AM »

CAN ANYBODY HELP ME OUT WITH HIJACK THIS?



Here is the logfile for my scan:

Logfile of HijackThis v1.99.1
Scan saved at 8:33:40 PM, on 10/3/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
c:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
c:\program files\comcast\security manager\app\CurtainsSysSvcNt.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\pgdvexb.exe
c:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\Explorer.EXE
c:\Program Files\Common Files\Symantec Shared\Security Center\SymSCUI.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\windows\system\hpsysdrv.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\hphmon06.exe
C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\ps2.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\ALCWZRD.EXE
C:\WINDOWS\ALCMTR.EXE
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\sjxapyt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\winCMAPP\wincmapp.exe
C:\Program Files\FCEngine\FCEngine.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\iTunes\iTunes.exe
C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Directory 1 for hijackthis.zip\HijackThis.exe
C:\Program Files\Internet Explorer\IEXPLORE.EXE
C:\Program Files\Messenger\msmsgs.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://my.msn.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=Q105&bd=pavilion&pf=desktop
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: ts - {4006DCA3-433D-4FC8-AC36-42DA7797DCB7} - C:\WINDOWS\system32\bho.dll
O2 - BHO: PicShow Class - {4487598C-2EC7-43A2-870E-6D8D720FDD9F} - C:\WINDOWS\system32\pkshrdop.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: TalMgr Class - {70230839-555C-4862-8D42-BB1E2352502C} - C:\WINDOWS\system32\italposg.dll
O2 - BHO: MSEvents Object - {827DC836-DD9F-4A68-A602-5812EB50A834} - C:\WINDOWS\RegisteredPackages\imgbak.dll
O2 - BHO: ohb - {9ADE0443-2AB2-4B23-A3F8-AC520773DE12} - C:\WINDOWS\system32\nso19.dll
O2 - BHO: AuthBHO.cBHO - {A4D90779-6CB2-4752-83C2-A2AB4D9A672D} - C:\Program Files\Comcast\Security Manager\app\AuthBHO.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Security Manager Popup Blocker - {64634180-B0EA-48B6-82B7-9620D33362C1} - C:\Program Files\Comcast\Security Manager\app\AuthBHO.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [HPHUPD06] c:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe
O4 - HKLM\..\Run: [HPHmon06] C:\WINDOWS\system32\hphmon06.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [LSBWatcher] c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe
O4 - HKLM\..\Run: [zgd] C:\WINDOWS\zgd.exe
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\McUpdate.exe
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [sjxapyt] C:\WINDOWS\sjxapyt.exe
O4 - HKCU\..\Run: [do3mRUd7g] tsc71kor.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [pshower] C:\WINDOWS\system32\pshwr.exe
O4 - HKCU\..\Run: [wincmap] "C:\Program Files\winCMAPP\wincmapp.exe"
O4 - HKCU\..\Run: [ichckupd] C:\WINDOWS\system32\ichckupd.exe
O4 - HKCU\..\Run: [CMSystem] "C:\Program Files\CMSystem\CMSystem.exe"
O4 - HKCU\..\Run: [FCEngine] "C:\Program Files\FCEngine\FCEngine.exe"
O4 - Startup: MSDEVRC.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Updates from HP.lnk = C:\Program Files\Updates from HP\309731\Program\Updates from HP.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Add To HP Organize... - C:\PROGRA~1\HEWLET~1\HPORGA~1\bin/module.main/favorites\ie_add_to.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O18 - Protocol: bw+0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Filter: text/html - {724D478A-2BD0-4DB4-AE42-288B1E346EF7} - C:\Program Files\FCEngine\Plugin.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O20 - Winlogon Notify: imgbak - C:\WINDOWS\RegisteredPackages\imgbak.dll
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Curtains for Windows System Service (CurtainsSysSvc) - Authentium, Inc. - c:\program files\comcast\security manager\app\CurtainsSysSvcNt.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: Windows Overlay Components - Unknown owner - C:\WINDOWS\pgdvexb.exe


please help
« Last Edit: October 04, 2005, 12:45:43 AM by redhawk6 » Logged

 
Pancake
Global Moderator
Hero Member
*****

Karma: +78/-0
Offline Offline

Gender: Male
Posts: 3915


Bookmark and Share

View Profile
« Reply #1 on: October 04, 2005, 02:46:09 AM »

Lets start here first.We will do this in two halfs.


Please print these instructions out for use in Safe Mode.

Please download VundoFix.exe to your desktop.
Double-click VundoFix.exe to extract the files
This will create a VundoFix folder on your desktop.
After the files are extracted, please reboot your computer into Safe Mode. You can do this by restarting your computer and continually tapping the F8 key until a menu appears. Use your up arrow key to highlight Safe Mode then hit enter.
Once in safe mode open the VundoFix folder and doubleclick on KillVundo.bat
You will first be presented with a warning.
It should look like this


 
quote:
VundoFix V2.13 by Atri
By using VundoFix you agree that you are doing so at your own risk
Press enter to continue....


 

At this point press enter one time.
Next you will see:


 
quote:
Type in the filepath as instructed by the forum staff
Then Press Enter, Then F6, Then Enter Again to continue with the fix.  


At this point please type the following file path (make sure to enter it exactly as below!):

C:\WINDOWS\RegisteredPackages\imgbak.dll

Press Enter, then press the F6 key, then press Enter one more time to continue with the fix.
Next you will see:


 
quote:
Please type in the second filepath as instructed by the forum staff
Then Press Enter, Then F6, Then Enter Again to continue with the fix.  


At this point please type the following file path (make sure to enter it exactly as below!):

C:\WINDOWS\RegisteredPackages\kabgmi.dll

This will be the vundo filename spelt backwards.
Press Enter, then press the F6 key, then press Enter one more time to continue with the fix.

The fix will run then HijackThis will open.
In HiJackThis, please place a check next to the following items and click FIX CHECKED:

O2 - BHO: MSEvents Object - {827DC836-DD9F-4A68-A602-5812EB50A834} - C:\WINDOWS\RegisteredPackages\imgbak.dll
O2 - BHO: ts - {4006DCA3-433D-4FC8-AC36-42DA7797DCB7} - C:\WINDOWS\system32\bho.dll
O2 - BHO: PicShow Class - {4487598C-2EC7-43A2-870E-6D8D720FDD9F} - C:\WINDOWS\system32\pkshrdop.dll
O2 - BHO: TalMgr Class - {70230839-555C-4862-8D42-BB1E2352502C} - C:\WINDOWS\system32\italposg.dll
O2 - BHO: MSEvents Object - {827DC836-DD9F-4A68-A602-5812EB50A834} - C:\WINDOWS\RegisteredPackages\imgbak.dll
O2 - BHO: ohb - {9ADE0443-2AB2-4B23-A3F8-AC520773DE12} - C:\WINDOWS\system32\nso19.dll
O20 - Winlogon Notify: imgbak -C:\WINDOWS\RegisteredPackages\imgbak.dll


After you have fixed these items, close Hijackthis and Press any key to Force a reboot of your computer.
Pressing any key will cause a "Blue Screen of Death" this is normal, do not worry!
Once your machine reboots please continue with the instructions below.
 
---------------------------------
Please download Ewido Security Suite and do a scan in Safe Mode.

 Install Ewido Security Suite.
 When installing, under 'Additional Options' uncheck: "Install background guard" and  "Install scan via context menu"

To open the main screen double click the icon on the desktop.
 
 You will get a warning 'Database could not be found!'.(only if no updated have first been installed) Click OK.

 Update to the latest definition files.On the left of the main screen click Update.Then click on Start Update.Let it complete the updates.

Now Click on Scanner and Click on Complete System Scan and the scan will start.

During some scans  it may find cases of false positives so you will need to step through the process of cleaning files one-by-one.

If a file is detected you KNOW to be legitimate, select None as the action. Do NOT select 'Perform action on all infections'
 
If you are unsure of any entry found play safe and select None as the action.
Press the button marked Save Report

Save the report .txt file to your desktop or somewhere you can find it.Post it back with your next HJT log.
Logged

An Australian Member of

EDDY
redhawk6
Newbie
*

Karma: +0/-0
Offline Offline

Gender: Male
Posts: 4


Bookmark and Share

View Profile
« Reply #2 on: October 04, 2005, 11:42:15 PM »

HERE IS THE EWIDO SCAN REPORT:


---------------------------------------------------------
 ewido security suite - Scan report
---------------------------------------------------------

 + Created on:         7:21:37 PM, 10/4/2005
 + Report-Checksum:      36CC9373

 + Scan result:

   HKLM\SOFTWARE\Classes\AdStatServX.Installer\CLSID\\ -> Spyware.WinFavorites : Cleaned with backup
   HKLM\SOFTWARE\Classes\CLSID\{2B96D5CC-C5B5-49A5-A69D-CC0A30F9028C} -> Spyware.MiniBug : Cleaned with backup
   HKLM\SOFTWARE\Classes\CLSID\{771A1334-6B08-4a6b-AEDC-CF994BA2CEBE} -> Spyware.YourSiteBar : Cleaned with backup
   HKLM\SOFTWARE\Classes\MediaAccX.Installer -> Spyware.WinAd : Cleaned with backup
   HKLM\SOFTWARE\Classes\MediaAccX.Installer\CLSID -> Spyware.WinAd : Cleaned with backup
   HKLM\SOFTWARE\Classes\TopSearch.TSLink -> Spyware.Altnet : Cleaned with backup
   HKLM\SOFTWARE\Classes\TopSearch.TSLink\CLSID -> Spyware.Altnet : Cleaned with backup
   HKLM\SOFTWARE\Classes\TopSearch.TSLink\CurVer -> Spyware.Altnet : Cleaned with backup
   HKLM\SOFTWARE\Classes\TopSearch.TSLink.1 -> Spyware.Altnet : Cleaned with backup
   HKLM\SOFTWARE\Classes\WinStatX.Installer\CLSID\\ -> Spyware.WinFavorites : Cleaned with backup
   HKLM\SOFTWARE\Classes\YSBactivex.Installer.1 -> Spyware.YourSiteBar : Cleaned with backup
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/AdStatServX.dll\\.Owner -> Spyware.WinFavorites : Cleaned with backup
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/AdStatServX.dll\\{15AD4789-CDB4-47E1-A9DA-992EE8E6BAD6} -> Spyware.WinFavorites : Cleaned with backup
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/WinStatX.dll\\.Owner -> Spyware.WinFavorites : Cleaned with backup
   HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\ModuleUsage\C:/WINDOWS/Downloaded Program Files/WinStatX.dll\\{15AD4789-CDB4-47E1-A9DA-992EE8E6BAD6} -> Spyware.WinFavorites : Cleaned with backup
   HKU\S-1-5-21-2997384393-389825382-4168861897-1010\Software\RX Toolbar -> Spyware.RXToolbar : Cleaned with backup
   [1488] C:\Program Files\winCMAPP\wincmapp.exe -> Spyware.CASClient : Cleaned with backup
   C:\Documents and Settings\All Users\Application Data\Authentium\Curtains150\Quarantine\Quarantine\ppq13C.tmp -> TrojanDownloader.Dyfuca.ei : Cleaned with backup
   C:\Documents and Settings\All Users\Application Data\Authentium\Curtains150\Quarantine\Quarantine\ppq13D.tmp -> TrojanDownloader.Dyfuca.ei : Cleaned with backup
   C:\Documents and Settings\All Users\Application Data\Authentium\Curtains150\Quarantine\Quarantine\ppq13E.tmp -> TrojanDownloader.Dyfuca.ei : Cleaned with backup
   C:\Documents and Settings\All Users\Application Data\Authentium\Curtains150\Quarantine\Quarantine\ppq13F.tmp -> TrojanDownloader.IstBar.gi : Cleaned with backup
   C:\Documents and Settings\All Users\Application Data\Authentium\Curtains150\Quarantine\Quarantine\ppq5F.tmp -> Spyware.Cookie.Serving-sys : Cleaned with backup
   C:\Documents and Settings\All Users\Application Data\Authentium\Curtains150\Quarantine\Quarantine\ppq60.tmp -> Spyware.Cookie.Serving-sys : Cleaned with backup
   C:\Documents and Settings\All Users\Application Data\Authentium\Curtains150\Quarantine\Quarantine\ppq64.tmp\uninstall.exe -> TrojanSpy.Perfectkeylogger.10 : Cleaned with backup
   C:\Documents and Settings\All Users\Application Data\Authentium\Curtains150\Quarantine\Quarantine\ppqDD.tmp -> Spyware.Cookie.Burstnet : Cleaned with backup
   C:\Documents and Settings\All Users\Application Data\Authentium\Curtains150\Quarantine\Quarantine\ppqDE.tmp -> Spyware.Cookie.Burstnet : Cleaned with backup
   C:\Documents and Settings\All Users\Application Data\Authentium\Curtains150\Quarantine\Quarantine\ppqEC.tmp -> Spyware.Cookie.Abetterinternet : Cleaned with backup
   C:\Documents and Settings\All Users\Application Data\Authentium\Curtains150\Quarantine\Quarantine\ppqED.tmp -> Spyware.Cookie.Abetterinternet : Cleaned with backup
   C:\Documents and Settings\All Users\Application Data\Authentium\Curtains150\Quarantine\Quarantine\ppqEE.tmp -> Spyware.Cookie.Abetterinternet : Cleaned with backup
   C:\Documents and Settings\All Users\Application Data\Authentium\Curtains150\Quarantine\Quarantine\ppqEF.tmp -> Spyware.Cookie.Abetterinternet : Cleaned with backup
   C:\Documents and Settings\Eric\Cookies\eric@perf.overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
   C:\Documents and Settings\Eric\Cookies\eric@qksrv[2].txt -> Spyware.Cookie.Qksrv : Cleaned with backup
   C:\Documents and Settings\Eric\Cookies\eric@trafficmp[2].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
   C:\Documents and Settings\Eric\Local Settings\Temp\temp.frE833 -> Adware.SAHA : Cleaned with backup
   :mozilla.15:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
   :mozilla.16:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
   :mozilla.17:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
   :mozilla.18:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
   :mozilla.19:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
   :mozilla.20:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.21:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.22:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.23:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.24:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.25:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.26:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.27:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.28:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
   :mozilla.29:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.30:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.31:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.32:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
   :mozilla.33:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
   :mozilla.34:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
   :mozilla.35:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
   :mozilla.42:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.43:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.44:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.45:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.46:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.47:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.48:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.49:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.50:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.51:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.52:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.53:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.67:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Bluemountain : Cleaned with backup
   :mozilla.68:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Bluemountain : Cleaned with backup
   :mozilla.69:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Bluemountain : Cleaned with backup
   :mozilla.76:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Trafic : Cleaned with backup
   :mozilla.79:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
   :mozilla.80:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
   :mozilla.81:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
   :mozilla.82:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
   :mozilla.83:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
   :mozilla.84:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
   :mozilla.85:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
   :mozilla.86:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
   :mozilla.87:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
   :mozilla.88:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
   :mozilla.89:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
   :mozilla.90:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
   :mozilla.91:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
   :mozilla.92:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
   :mozilla.93:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
   :mozilla.94:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
   :mozilla.95:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
   :mozilla.96:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
   :mozilla.97:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
   :mozilla.98:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
   :mozilla.99:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
   :mozilla.113:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
   :mozilla.120:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
   :mozilla.121:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
   :mozilla.122:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
   :mozilla.123:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
   :mozilla.124:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
   :mozilla.125:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
   :mozilla.126:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
   :mozilla.131:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.247realmedia : Cleaned with backup
   :mozilla.141:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
   :mozilla.144:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
   :mozilla.151:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
   :mozilla.155:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
   :mozilla.156:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
   :mozilla.165:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
   :mozilla.166:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
   :mozilla.167:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
   :mozilla.168:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
   :mozilla.169:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
   :mozilla.170:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
   :mozilla.174:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup
   :mozilla.175:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
   :mozilla.179:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
   :mozilla.180:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
   :mozilla.202:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
   :mozilla.203:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
   :mozilla.204:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
   :mozilla.250:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
   :mozilla.251:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
   :mozilla.252:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
   :mozilla.253:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
   :mozilla.278:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
   :mozilla.287:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
   :mozilla.288:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
   :mozilla.295:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
   :mozilla.296:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
   :mozilla.300:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
   :mozilla.301:C:\Documents and Settings\Greg\Application Data\Mozilla\Firefox\Profiles\wd8roly0.default\cookies.txt -> Spyware.Cookie.Esomniture : Cleaned with backup
   C:\Documents and Settings\Greg\Cookies\greg@247realmedia[1].txt -> Spyware.Cookie.247realmedia : Cleaned with backup
   C:\Documents and Settings\Greg\Cookies\greg@2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
   C:\Documents and Settings\Greg\Cookies\greg@abetterinternet[1].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
   C:\Documents and Settings\Greg\Cookies\greg@ad.yieldmanager[2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
   C:\Documents and Settings\Greg\Cookies\greg@adopt.specificclick[2].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
   C:\Documents and Settings\Greg\Cookies\greg@advertising[1].txt -> Spyware.Cookie.Advertising : Cleaned with backup
   C:\Documents and Settings\Greg\Cookies\greg@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
   C:\Documents and Settings\Greg\Cookies\greg@bfast[2].txt -> Spyware.Cookie.Bfast : Cleaned with backup
   C:\Documents and Settings\Greg\Cookies\greg@citi.bridgetrack[1].txt -> Spyware.Cookie.Bridgetrack : Cleaned with backup
   C:\Documents and Settings\Greg\Cookies\greg@doubleclick[1].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
   C:\Documents and Settings\Greg\Cookies\greg@fastclick[1].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
   C:\Documents and Settings\Greg\Cookies\greg@findwhat[1].txt -> Spyware.Cookie.Findwhat : Cleaned with backup
   C:\Documents and Settings\Greg\Cookies\greg@mediaplex[1].txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
   C:\Documents and Settings\Greg\Cookies\greg@msnportal.112.2o7[2].txt -> Spyware.Cookie.2o7 : Cleaned with backup
   C:\Documents and Settings\Greg\Cookies\greg@perf.overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
   C:\Documents and Settings\Greg\Cookies\greg@qksrv[2].txt -> Spyware.Cookie.Qksrv : Cleaned with backup
   C:\Documents and Settings\Greg\Cookies\greg@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
   C:\Documents and Settings\Greg\Cookies\greg@servedby.advertising[2].txt -> Spyware.Cookie.Advertising : Cleaned with backup
   C:\Documents and Settings\Greg\Cookies\greg@trafficmp[2].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
   C:\Documents and Settings\Greg\Cookies\greg@www.burstbeacon[2].txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup
   C:\Documents and Settings\Greg\Cookies\greg@z1.adserver[1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
   C:\Documents and Settings\Greg\Local Settings\Temp\nsc264.tmp -> Spyware.SafeSurfing : Cleaned with backup
   C:\Documents and Settings\Greg\Local Settings\Temp\nsf31B.tmp -> Spyware.SafeSurfing : Cleaned with backup
   C:\Documents and Settings\Greg\Local Settings\Temp\nso2B.tmp -> Spyware.SafeSurfing : Cleaned with backup
   C:\Documents and Settings\Greg\Local Settings\Temp\nsp297.tmp -> Spyware.SafeSurfing : Cleaned with backup
   C:\Documents and Settings\Greg\Local Settings\Temp\nsq2D.tmp -> Spyware.SafeSurfing : Cleaned with backup
   :mozilla.18:C:\Documents and Settings\Katie\Application Data\Mozilla\Firefox\Profiles\3lodfsav.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
   :mozilla.41:C:\Documents and Settings\Katie\Application Data\Mozilla\Firefox\Profiles\3lodfsav.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
   :mozilla.43:C:\Documents and Settings\Katie\Application Data\Mozilla\Firefox\Profiles\3lodfsav.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
   :mozilla.44:C:\Documents and Settings\Katie\Application Data\Mozilla\Firefox\Profiles\3lodfsav.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
   :mozilla.45:C:\Documents and Settings\Katie\Application Data\Mozilla\Firefox\Profiles\3lodfsav.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.46:C:\Documents and Settings\Katie\Application Data\Mozilla\Firefox\Profiles\3lodfsav.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.47:C:\Documents and Settings\Katie\Application Data\Mozilla\Firefox\Profiles\3lodfsav.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.48:C:\Documents and Settings\Katie\Application Data\Mozilla\Firefox\Profiles\3lodfsav.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.49:C:\Documents and Settings\Katie\Application Data\Mozilla\Firefox\Profiles\3lodfsav.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.50:C:\Documents and Settings\Katie\Application Data\Mozilla\Firefox\Profiles\3lodfsav.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.51:C:\Documents and Settings\Katie\Application Data\Mozilla\Firefox\Profiles\3lodfsav.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.53:C:\Documents and Settings\Katie\Application Data\Mozilla\Firefox\Profiles\3lodfsav.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
   :mozilla.63:C:\Documents and Settings\Katie\Application Data\Mozilla\Firefox\Profiles\3lodfsav.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
   :mozilla.64:C:\Documents and Settings\Katie\Application Data\Mozilla\Firefox\Profiles\3lodfsav.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
   :mozilla.65:C:\Documents and Settings\Katie\Application Data\Mozilla\Firefox\Profiles\3lodfsav.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
   :mozilla.66:C:\Documents and Settings\Katie\Application Data\Mozilla\Firefox\Profiles\3lodfsav.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.67:C:\Documents and Settings\Katie\Application Data\Mozilla\Firefox\Profiles\3lodfsav.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.68:C:\Documents and Settings\Katie\Application Data\Mozilla\Firefox\Profiles\3lodfsav.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.91:C:\Documents and Settings\Katie\Application Data\Mozilla\Firefox\Profiles\3lodfsav.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
   :mozilla.99:C:\Documents and Settings\Katie\Application Data\Mozilla\Firefox\Profiles\3lodfsav.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
   C:\Documents and Settings\Katie\Cookies\katie@abetterinternet[1].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
   C:\Documents and Settings\Katie\Cookies\katie@ad.yieldmanager[2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
   C:\Documents and Settings\Katie\Cookies\katie@data.coremetrics[1].txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
   C:\Documents and Settings\Katie\Cookies\katie@doubleclick[2].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
   C:\Documents and Settings\Katie\Cookies\katie@ehg-cbs.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
   C:\Documents and Settings\Katie\Cookies\katie@ehg-comcast.hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
   C:\Documents and Settings\Katie\Cookies\katie@fastclick[1].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
   C:\Documents and Settings\Katie\Cookies\katie@findwhat[1].txt -> Spyware.Cookie.Findwhat : Cleaned with backup
   C:\Documents and Settings\Katie\Cookies\katie@hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
   C:\Documents and Settings\Katie\Cookies\katie@overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
   C:\Documents and Settings\Katie\Cookies\katie@rotator.adjuggler[2].txt -> Spyware.Cookie.Adjuggler : Cleaned with backup
   C:\Documents and Settings\Katie\Cookies\katie@www.burstbeacon[2].txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup
   C:\Documents and Settings\Katie\Local Settings\Temp\6jtza48b.exe -> Not-A-Virus.Downloader.Agent.c : Cleaned with backup
   C:\Documents and Settings\Katie\Local Settings\Temp\nsa265.tmp -> Spyware.SafeSurfing : Cleaned with backup
   C:\Documents and Settings\Katie\Local Settings\Temp\nsb21A.tmp -> Spyware.SafeSurfing : Cleaned with backup
   C:\Documents and Settings\Katie\Local Settings\Temp\nsf34.tmp -> Spyware.SafeSurfing : Cleaned with backup
   C:\Documents and Settings\Katie\Local Settings\Temp\nss70.tmp -> Spyware.SafeSurfing : Cleaned with backup
   C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\Cache\851A1E9Bd01 -> Not-A-Virus.Downloader.Agent.d : Cleaned with backup
   :mozilla.6:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.10:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.11:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.12:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.13:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.14:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.20:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.21:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.22:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.23:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.24:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.25:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.26:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.27:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.28:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.29:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.30:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.31:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.32:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.33:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.34:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.35:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.36:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.37:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.38:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.39:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.40:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.41:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.42:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.43:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.44:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.45:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.46:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.47:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.48:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
   :mozilla.49:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.50:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.51:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.52:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
   :mozilla.53:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
   :mozilla.54:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Pointroll : Cleaned with backup
   :mozilla.62:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
   :mozilla.63:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
   :mozilla.64:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
   :mozilla.65:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
   :mozilla.69:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
   :mozilla.70:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
   :mozilla.74:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup
   :mozilla.75:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
   :mozilla.76:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
   :mozilla.77:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
   :mozilla.81:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
   :mozilla.89:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
   :mozilla.90:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
   :mozilla.91:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
   :mozilla.119:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
   :mozilla.120:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
   :mozilla.132:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Spylog : Cleaned with backup
   :mozilla.133:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
   :mozilla.139:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
   :mozilla.144:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
   :mozilla.153:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
   :mozilla.156:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
   :mozilla.157:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
   :mozilla.158:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
   :mozilla.163:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
   :mozilla.164:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
   :mozilla.165:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
   :mozilla.166:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
   :mozilla.167:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
   :mozilla.168:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
   :mozilla.169:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
   :mozilla.170:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
   :mozilla.171:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
   :mozilla.174:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
   :mozilla.177:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
   :mozilla.178:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
   :mozilla.182:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
   :mozilla.183:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Ru4 : Cleaned with backup
   :mozilla.189:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
   :mozilla.200:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
   :mozilla.206:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
   :mozilla.208:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Euniverseads : Cleaned with backup
   :mozilla.209:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Euniverseads : Cleaned with backup
   :mozilla.212:C:\Documents and Settings\Mary\Application Data\Mozilla\Firefox\Profiles\630qagfa.default\cookies.txt -> Spyware.Cookie.Ad-logics : Cleaned with backup
   C:\Documents and Settings\Mary\Cookies\mary@2o7[2].txt -> Spyware.Cookie.2o7 : Cleaned with backup
   C:\Documents and Settings\Mary\Cookies\mary@abetterinternet[2].txt -> Spyware.Cookie.Abetterinternet : Cleaned with backup
   C:\Documents and Settings\Mary\Cookies\mary@ad.yieldmanager[1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
   C:\Documents and Settings\Mary\Cookies\mary@adopt.specificclick[2].txt -> Spyware.Cookie.Specificclick : Cleaned with backup
   C:\Documents and Settings\Mary\Cookies\mary@ads.pointroll[2].txt -> Spyware.Cookie.Pointroll : Cleaned with backup
   C:\Documents and Settings\Mary\Cookies\mary@advertising[2].txt -> Spyware.Cookie.Advertising : Cleaned with backup
   C:\Documents and Settings\Mary\Cookies\mary@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
   C:\Documents and Settings\Mary\Cookies\mary@data.coremetrics[1].txt -> Spyware.Cookie.Coremetrics : Cleaned with backup
   C:\Documents and Settings\Mary\Cookies\mary@doubleclick[1].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
   C:\Documents and Settings\Mary\Cookies\mary@fastclick[1].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
   C:\Documents and Settings\Mary\Cookies\mary@findwhat[2].txt -> Spyware.Cookie.Findwhat : Cleaned with backup
   C:\Documents and Settings\Mary\Cookies\mary@linksynergy[2].txt -> Spyware.Cookie.Linksynergy : Cleaned with backup
   C:\Documents and Settings\Mary\Cookies\mary@mediaplex[1].txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
   C:\Documents and Settings\Mary\Cookies\mary@overture[1].txt -> Spyware.Cookie.Overture : Cleaned with backup
   C:\Documents and Settings\Mary\Cookies\mary@qksrv[2].txt -> Spyware.Cookie.Qksrv : Cleaned with backup
   C:\Documents and Settings\Mary\Cookies\mary@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
   C:\Documents and Settings\Mary\Cookies\mary@sales.liveperson[2].txt -> Spyware.Cookie.Liveperson : Cleaned with backup
   C:\Documents and Settings\Mary\Cookies\mary@servedby.advertising[1].txt -> Spyware.Cookie.Advertising : Cleaned with backup
   C:\Documents and Settings\Mary\Local Settings\Temp\nso1F7.tmp -> Spyware.SafeSurfing : Cleaned with backup
   C:\Documents and Settings\Mary\Local Settings\Temp\nsr233.tmp -> Spyware.SafeSurfing : Cleaned with backup
   C:\Documents and Settings\Mary\Local Settings\Temp\nss1FB.tmp -> Spyware.SafeSurfing : Cleaned with backup
   C:\Documents and Settings\Mary\Local Settings\Temp\nsu120.tmp -> Spyware.SafeSurfing : Cleaned with backup
   C:\Documents and Settings\Mary\Local Settings\Temporary Internet Files\Content.IE5\2JI3CVI5\Poller[1].exe -> Trojan.Pakes : Cleaned with backup
   C:\Documents and Settings\Mary\Local Settings\Temporary Internet Files\Content.IE5\O5UTSDWV\svcproc[1].exe -> Trojan.Stervis.d : Cleaned with backup
   C:\Documents and Settings\Mary\Local Settings\Temporary Internet Files\Content.IE5\OPC3AXIX\DrPMon[1].dll -> Trojan.Agent.db : Cleaned with backup
   C:\Documents and Settings\Mary\Local Settings\Temporary Internet Files\Content.IE5\WFCPUDIF\aurora[1].exe -> Adware.BetterInternet : Cleaned with backup
   C:\Documents and Settings\Mary\Local Settings\Temporary Internet Files\Content.IE5\WFCPUDIF\Nail[1].exe -> Adware.BetterInternet : Cleaned with backup
   C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\Cache\851A1E9Bd01 -> Not-A-Virus.Downloader.Agent.d : Cleaned with backup
   :mozilla.18:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.21:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.22:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.23:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
   :mozilla.25:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
   :mozilla.31:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.32:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.33:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.34:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.35:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.36:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.37:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.38:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.39:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.40:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.41:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.42:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.43:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.44:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.45:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.46:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.47:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.48:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.49:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.50:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.51:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.52:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.53:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.54:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.55:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.56:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.57:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.58:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.59:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.60:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.61:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.62:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.63:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.64:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.65:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.66:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.67:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.68:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.69:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.70:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.71:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.72:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.73:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.74:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.75:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.76:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.77:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.78:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.79:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.80:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
   :mozilla.95:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
   :mozilla.110:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
   :mozilla.113:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
   :mozilla.114:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
   :mozilla.115:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
   :mozilla.118:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
   :mozilla.119:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
   :mozilla.120:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
   :mozilla.125:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
   :mozilla.126:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
   :mozilla.127:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
   :mozilla.128:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
   :mozilla.129:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
   :mozilla.130:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
   :mozilla.138:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
   :mozilla.139:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
   :mozilla.140:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
   :mozilla.141:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
   :mozilla.145:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
   :mozilla.146:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
   :mozilla.147:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
   :mozilla.148:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
   :mozilla.149:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
   :mozilla.150:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
   :mozilla.151:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
   :mozilla.160:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
   :mozilla.161:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
   :mozilla.162:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
   :mozilla.163:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
   :mozilla.172:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
   :mozilla.176:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
   :mozilla.177:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
   :mozilla.178:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
   :mozilla.179:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Specificclick : Cleaned with backup
   :mozilla.182:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
   :mozilla.183:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Excite : Cleaned with backup
   :mozilla.184:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Excite : Cleaned with backup
   :mozilla.185:C:\Documents and Settings\Mike\Application Data\Mozilla\Firefox\Profiles\kupgc4nt.default\cookies.txt -> Spyware.Cookie.Excite : Cleaned with backup
   C:\Documents and Settings\Mike\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\file\Gummy.class-231ef0f5-47ffff6c.class -> Trojan.Java.Femad : Cleaned with backup
   C:\Documents and Settings\Mike\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\file\G
Logged

 
redhawk6
Newbie
*

Karma: +0/-0
Offline Offline

Gender: Male
Posts: 4


Bookmark and Share

View Profile
« Reply #3 on: October 04, 2005, 11:43:49 PM »

And here is the hijackthis logfile:



Logfile of HijackThis v1.99.1
Scan saved at 7:38:43 PM, on 10/4/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
c:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
c:\program files\comcast\security manager\app\CurtainsSysSvcNt.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
C:\WINDOWS\pgdvexb.exe
c:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\Explorer.EXE
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\windows\system\hpsysdrv.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\hphmon06.exe
C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\ps2.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\ALCWZRD.EXE
C:\WINDOWS\ALCMTR.EXE
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\sjxapyt.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\Program Files\FCEngine\FCEngine.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Updates from HP\309731\Program\Updates from HP.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\PROGRA~1\MOZILL~1\FIREFOX.EXE
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\iTunes\iTunes.exe
C:\Program Files\AIM\aim.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\Program Files\Messenger\msmsgs.exe
C:\DOCUME~1\Mike\LOCALS~1\Temp\Temporary Directory 2 for hijackthis.zip\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://my.msn.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=Q105&bd=pavilion&pf=desktop
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: AuthBHO.cBHO - {A4D90779-6CB2-4752-83C2-A2AB4D9A672D} - C:\Program Files\Comcast\Security Manager\app\AuthBHO.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Security Manager Popup Blocker - {64634180-B0EA-48B6-82B7-9620D33362C1} - C:\Program Files\Comcast\Security Manager\app\AuthBHO.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [HPHUPD06] c:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe
O4 - HKLM\..\Run: [HPHmon06] C:\WINDOWS\system32\hphmon06.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [LSBWatcher] c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe
O4 - HKLM\..\Run: [zgd] C:\WINDOWS\zgd.exe
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\McUpdate.exe
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [sjxapyt] C:\WINDOWS\sjxapyt.exe
O4 - HKCU\..\Run: [do3mRUd7g] tsc71kor.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [FCEngine] "C:\Program Files\FCEngine\FCEngine.exe"
O4 - Startup: MSDEVRC.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Updates from HP.lnk = C:\Program Files\Updates from HP\309731\Program\Updates from HP.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Add To HP Organize... - C:\PROGRA~1\HEWLET~1\HPORGA~1\bin/module.main/favorites\ie_add_to.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) - http://housecall60.trendmicro.com/housecall/xscan60.cab
O18 - Protocol: bw+0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Curtains for Windows System Service (CurtainsSysSvc) - Authentium, Inc. - c:\program files\comcast\security manager\app\CurtainsSysSvcNt.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
O23 - Service: Windows Overlay Components - Unknown owner - C:\WINDOWS\pgdvexb.exe

---------------------------------------------------------------------------------------

hows it look?
Logged

 
Pancake
Global Moderator
Hero Member
*****

Karma: +78/-0
Offline Offline

Gender: Male
Posts: 3915


Bookmark and Share

View Profile
« Reply #4 on: October 05, 2005, 12:14:49 AM »



Hi
It may help you if you print out or copy this page for easy reference.. Make sure to work through the fixes in the exact order its listed. Please Keep your browser and all open programs closed (except firewalls and antivirus) when you are carrying out the fixes



Download any of the required programs before attempting to start any of the fixes.

Please do NOT run Hijack This  in a TEMPorary folder or on the Desktop. I recommend c:/program files/HJT/




SHOW HIDDEN FILES AND FOLDERS.
To show hidden files instructions (WinXP)
Doubleclick My Computer | Tools | Folder Options | View tab
Select Show Hidden Files and Folders
Uncheck Hide extensions for known file types
Uncheck Hide protected operating system files (Recommended)
Select Apply to All Folders | Yes | Apply | OK
------------------------------------------------------------------

Files highlighted in BLACK  will need to be removed from your hard drive.
 Folders that have been highlighted RED will need to be uninstalled.
-------------------------------------------------------------------------


Please start by putting your computer in SAFE MODE.  During reboot, tap the F8 key. Select Safe Mode and then run HJT.
--------------------------------------------------------------


Uninstall the following programs (if they still exist) Go into HijackThis->Config->Misc.Tools->Open Uninstall manager

PartyPoker

-----------------------------------------------------------------


Go into HijackThis->Config->Misc. Tools->Open process manager. Select the following and click End Process for each one if they are still listed.

tsc71kor.exe
pgdvexb.exe
zgd.exe
sjxapyt.exe

-----------------------------------------------------------------


Have "Hijack This" fix all the following items in the list below by placing a check in the appropriate boxes.Confirm that you have only the listed ones checked, then press <Fix checked> and Close HJT.

O4 - HKLM\..\Run: [sjxapyt] C:\WINDOWS\sjxapyt.exe
O4 - HKCU\..\Run: [do3mRUd7g] tsc71kor.exe
O4 - HKLM\..\Run: [zgd] C:\WINDOWS\zgd.exe
O9 - Extra button: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe
O9 - Extra 'Tools' menuitem: PartyPoker.com - {B7FE5D70-9AA2-40F1-9C6B-12A255F085E1} - C:\Program Files\PartyPoker\PartyPoker.exe
O23 - Service: Windows Overlay Components - Unknown owner - C:\WINDOWS\pgdvexb.exe




 ---------------------------------------------------------------------------
Open Windows Explorer and delete the following highlighted file/s (or delete the whole folder (Red) if no specific file is given)

C:\Program Files\PartyPoker
C:\WINDOWS\pgdvexb.exe
C:\WINDOWS\zgd.exe
C:\WINDOWS\sjxapyt.exe
------------------------------------------------------------------------
Check that you have carried out all the above steps/fixes and then reboot into Normal Mode and download Cleanup This will  clean out your tempory files.

 
Restart your computer and post a new HijackThis log



Logged

An Australian Member of

EDDY
redhawk6
Newbie
*

Karma: +0/-0
Offline Offline

Gender: Male
Posts: 4


Bookmark and Share

View Profile
« Reply #5 on: October 05, 2005, 09:44:30 PM »

Heres the new logfile:

Logfile of HijackThis v1.99.1
Scan saved at 5:39:39 PM, on 10/5/2005
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
c:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
C:\WINDOWS\system32\spoolsv.exe
c:\program files\comcast\security manager\app\CurtainsSysSvcNt.exe
C:\Program Files\ewido\security suite\ewidoctrl.exe
C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\MDM.EXE
C:\Program Files\Norton AntiVirus\navapsvc.exe
C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
c:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe
C:\WINDOWS\Explorer.EXE
c:\Program Files\Common Files\Symantec Shared\Security Center\SymSCUI.exe
C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
C:\windows\system\hpsysdrv.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\hphmon06.exe
C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe
C:\Program Files\Common Files\Symantec Shared\ccApp.exe
C:\WINDOWS\AGRSMMSG.exe
C:\WINDOWS\system32\ps2.exe
C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
C:\WINDOWS\SOUNDMAN.EXE
C:\WINDOWS\ALCWZRD.EXE
C:\WINDOWS\ALCMTR.EXE
C:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\PROGRA~1\mcafee.com\agent\McUpdate.exe
C:\WINDOWS\system32\LVCOMSX.EXE
C:\Program Files\Logitech\Video\LogiTray.exe
C:\Program Files\iTunes\iTunesHelper.exe
C:\Program Files\QuickTime\qttask.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\FCEngine\FCEngine.exe
C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
C:\Program Files\Updates from HP\309731\Program\Updates from HP.exe
C:\Program Files\Logitech\Video\FxSvr2.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\HPZipm12.exe
C:\Program Files\Messenger\msmsgs.exe
C:\Program Files\HJT\HijackThis.exe

R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://my.msn.com/
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://ie.redirect.hp.com/svs/rdr?TYPE=3&tp=iehome&locale=EN_US&c=Q105&bd=pavilion&pf=desktop
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
O2 - BHO: AuthBHO.cBHO - {A4D90779-6CB2-4752-83C2-A2AB4D9A672D} - C:\Program Files\Comcast\Security Manager\app\AuthBHO.dll
O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
O3 - Toolbar: Security Manager Popup Blocker - {64634180-B0EA-48B6-82B7-9620D33362C1} - C:\Program Files\Comcast\Security Manager\app\AuthBHO.dll
O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\j2re1.4.2_03\bin\jusched.exe
O4 - HKLM\..\Run: [hpsysdrv] c:\windows\system\hpsysdrv.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [HPHUPD06] c:\Program Files\HP\{AAC4FC36-8F89-4587-8DD3-EBC57C83374D}\hphupd06.exe
O4 - HKLM\..\Run: [HPHmon06] C:\WINDOWS\system32\hphmon06.exe
O4 - HKLM\..\Run: [UpdateManager] "C:\Program Files\Common Files\Sonic\Update Manager\sgtray.exe" /r
O4 - HKLM\..\Run: [Recguard] C:\WINDOWS\SMINST\RECGUARD.EXE
O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
O4 - HKLM\..\Run: [AlcxMonitor] ALCXMNTR.EXE
O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKLM\..\Run: [PS2] C:\WINDOWS\system32\ps2.exe
O4 - HKLM\..\Run: [LSBWatcher] c:\hp\drivers\hplsbwatcher\lsburnwatcher.exe
O4 - HKLM\..\Run: [ViewMgr] C:\Program Files\Viewpoint\Viewpoint Manager\ViewMgr.exe
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [AlcWzrd] ALCWZRD.EXE
O4 - HKLM\..\Run: [Alcmtr] ALCMTR.EXE
O4 - HKLM\..\Run: [MCAgentExe] c:\PROGRA~1\mcafee.com\agent\mcagent.exe
O4 - HKLM\..\Run: [MCUpdateExe] C:\PROGRA~1\mcafee.com\agent\McUpdate.exe
O4 - HKLM\..\Run: [LVCOMSX] C:\WINDOWS\system32\LVCOMSX.EXE
O4 - HKLM\..\Run: [LogitechVideoRepair] C:\Program Files\Logitech\Video\ISStart.exe
O4 - HKLM\..\Run: [LogitechVideoTray] C:\Program Files\Logitech\Video\LogiTray.exe
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [LogitechSoftwareUpdate] "C:\Program Files\Logitech\Video\ManifestEngine.exe" boot
O4 - HKCU\..\Run: [FCEngine] "C:\Program Files\FCEngine\FCEngine.exe"
O4 - Startup: MSDEVRC.exe
O4 - Global Startup: HP Digital Imaging Monitor.lnk = C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
O4 - Global Startup: Logitech Desktop Messenger.lnk = C:\Program Files\Logitech\Desktop Messenger\8876480\Program\LDMConf.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office10\OSA.EXE
O4 - Global Startup: Updates from HP.lnk = C:\Program Files\Updates from HP\309731\Program\Updates from HP.exe
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Restrictions present
O6 - HKCU\Software\Policies\Microsoft\Internet Explorer\Control Panel present
O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
O8 - Extra context menu item: Add To HP Organize... - C:\PROGRA~1\HEWLET~1\HPORGA~1\bin/module.main/favorites\ie_add_to.html
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MI1933~1\Office10\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\j2re1.4.2_03\bin\npjpi142_03.dll
O9 - Extra button: Research - {92780B25-18CC-41C8-B9BE-3C9C571A8263} - C:\PROGRA~1\MI1933~1\OFFICE11\REFIEBAR.DLL
O9 - Extra button: AIM - {AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} - C:\Program Files\AIM\aim.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O16 - DPF: {04E214E5-63AF-4236-83C6-A7ADCBF9BD02} (HouseCall Control) - http://housecall60.trendmicro.com/housecall/xscan60.cab
O18 - Protocol: bw+0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw+0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw-0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw00s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw10s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw20s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw30s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw40s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw50s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw60s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw70s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw80s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bw90s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwa0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwb0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwc0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwd0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwe0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwf0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwfile-8876480 - {9462A756-7B47-47BC-8C80-C34B9B80B32B} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\GAPlugProtocol-8876480.dll
O18 - Protocol: bwg0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwg0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwh0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwi0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwj0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwk0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwl0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwm0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwn0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwo0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwp0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwq0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwr0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bws0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwt0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwu0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwv0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bww0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwx0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwy0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: bwz0s - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O18 - Protocol: offline-8876480 - {E2C658F1-3D7A-418F-89E5-5A7DC680C933} - C:\Program Files\Logitech\Desktop Messenger\8876480\Program\BWPlugProtocol-8876480.dll
O20 - Winlogon Notify: igfxcui - C:\WINDOWS\SYSTEM32\igfxsrvc.dll
O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
O23 - Service: Curtains for Windows System Service (CurtainsSysSvc) - Authentium, Inc. - c:\program files\comcast\security manager\app\CurtainsSysSvcNt.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido\security suite\ewidoctrl.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: Norton AntiVirus Auto-Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
O23 - Service: Norton AntiVirus Firewall Monitor Service (NPFMntor) - Symantec Corporation - C:\Program Files\Norton AntiVirus\IWP\NPFMntor.exe
O23 - Service: Pml Driver HPZ12 - HP - C:\WINDOWS\system32\HPZipm12.exe
O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
O23 - Service: Symantec SPBBCSvc (SPBBCSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SPBBC\SPBBCSvc.exe
O23 - Service: Symantec Core LC - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\CCPD-LC\symlcsvc.exe
O23 - Service: SymWMI Service (SymWSC) - Symantec Corporation - c:\Program Files\Common Files\Symantec Shared\Security Center\SymWSC.exe

what now?
Logged

 
Pancake
Global Moderator
Hero Member
*****

Karma: +78/-0
Offline Offline

Gender: Male
Posts: 3915


Bookmark and Share

View Profile
« Reply #6 on: October 05, 2005, 11:52:25 PM »

Thats all looking fine.Your log is now clean.

Please use this as   Your Guide to Spyware Prevention and use the tools provided.
Logged

An Australian Member of

EDDY
Pages: [1] Go Up Print 
 
Jump to:  

Powered by MySQL Powered by PHP

Powered by SMF 1.1.21 | SMF © 2015, Simple Machines

Valid XHTML 1.0! Valid CSS!

Disclaimer
This site is NOT responsible for any damage that the information on this site may cause to your system. Everything you try, whether inspired by the response given from this site or not, is entirely at your own risk. All product names and company names used herein are for identification purpose only and may be trademarks or registered trademarks of their respective owners. We are in no way affiliated or representing any of the companies on this site unless specified.
Back to Top
Stop Spam Harvesters, Join Project Honey Pot Fight Back Against Spammers! Get Firefox! Get Thunderbird! View Sylvain Amyots profile on LinkedIn
Back to Top
Google visited last this page October 04, 2016, 05:33:42 AM