Hi Andrei,
Thank you very much for all your efforts to help me; I really appreciate it, and I am very happy to report that whatever it was is now sorted :0)
I was unable to unregister the wingsa32.dll - sorry, I can't remember the exact error message, something like: dll found but unable to find install start point?
Of course, the batch file couldn't do its thing with the dll still registered...
However, that Ewido is really great and managed to find the nasty without unregistering and deleting the dll (and winlogon.exe). After a full scan and fix, the dll is gone, and I was able to manually delete all win*.tmp.exe files in the windows/temp folder.
Here are the logfiles, just in case they can help you to identify what exactly it was:
Logfile of HijackThis v1.99.1
Scan saved at 3:56:04 p.m., on 27/02/2006
Platform: Windows XP SP1 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP1 (6.00.2800.1106)
Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Sygate\SPF\smc.exe
C:\WINDOWS\system32\spoolsv.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
C:\Program Files\ewido anti-malware\ewidoctrl.exe
C:\Program Files\Common Files\Microsoft Shared\VS7Debug\mdm.exe
C:\WINDOWS\System32\nvsvc32.exe
C:\WINDOWS\System32\oodag.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\Explorer.EXE
C:\WINDOWS\SOUNDMAN.EXE
C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe
C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
C:\Program Files\Skype\Phone\Skype.exe
C:\WINDOWS\System32\ctfmon.exe
C:\Documents and Settings\Ged\Desktop\HijackThis.exe
O2 - BHO: HelperObject Class - {00C6482D-C502-44C8-8409-FCE54AD9C208} - C:\Program Files\TechSmith\SnagIt 7\SnagItBHO.dll
O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Acrobat\ActiveX\AcroIEHelper.ocx
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O3 - Toolbar: &Radio - {8E718888-423F-11D2-876E-00A0C9082467} - C:\WINDOWS\system32\msdxm.ocx
O4 - HKLM\..\Run: [IMJPMIG8.1] C:\WINDOWS\IME\imjp8_1\IMJPMIG.EXE /Spoil /RemAdvDef /Migration32
O4 - HKLM\..\Run: [PHIME2002ASync] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /SYNC
O4 - HKLM\..\Run: [PHIME2002A] C:\WINDOWS\System32\IME\TINTLGNT\TINTSETP.EXE /IMEName
O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\System32\NvCpl.dll,NvStartup
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [SmcService] C:\PROGRA~1\Sygate\SPF\smc.exe -startgui
O4 - HKLM\..\Run: [AVG7_CC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [AVG7_EMC] C:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O4 - HKCU\..\Run: [Skype] "C:\Program Files\Skype\Phone\Skype.exe" /nosplash /minimized
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\System32\ctfmon.exe
O8 - Extra context menu item: &Save Flash In This Page - C:\PROGRA~1\FLASHS~1.0\save.htm
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~1\MICROS~2\OFFICE11\EXCEL.EXE/3000
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Flash Saver - {09EA1F80-F40A-11D1-B792-444553540001} - C:\PROGRA~1\FLASHS~1.0\save.htm
O9 - Extra 'Tools' menuitem: Flash Saver - {09EA1F80-F40A-11D1-B792-444553540001} - C:\PROGRA~1\FLASHS~1.0\save.htm
O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
O20 - Winlogon Notify: wingsa32 - wingsa32.dll (file missing)
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - C:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: Macromedia Licensing Service - Unknown owner - C:\Program Files\Common Files\Macromedia Shared\Service\Macromedia Licensing.exe
O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: O&O Defrag - O&O Software GmbH - C:\WINDOWS\System32\oodag.exe
O23 - Service: Sygate Personal Firewall Pro (SmcService) - Sygate Technologies, Inc. - C:\Program Files\Sygate\SPF\smc.exe
O23 - Service: MS Software Generic Host Process for Win32 Services (svchost) - Unknown owner - C:\WINDOWS\SYSTEM\svchost.exe (file missing)
---------------------------------------------------------
ewido anti-malware - Scan report
---------------------------------------------------------
+ Created on: 3:26:29 p.m., 27/02/2006
+ Report-Checksum: 8E1ABE4D
+ Scan result:
HKLM\SOFTWARE\Classes\LaunchInIE.Launch -> Adware.Ezula : Cleaned with backup
HKLM\SOFTWARE\Classes\LaunchInIE.Launch\CLSID -> Adware.Ezula : Cleaned with backup
HKLM\SOFTWARE\Classes\LaunchInIE.Launch\CurVer -> Adware.Ezula : Cleaned with backup
HKLM\SOFTWARE\Classes\LaunchInIE.Launch.1 -> Adware.Ezula : Cleaned with backup
HKLM\SOFTWARE\Classes\WinRes.WindowsResources -> Adware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\WinRes.WindowsResources\CLSID -> Adware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\WinRes.WindowsResources\CurVer -> Adware.CoolWebSearch : Cleaned with backup
HKLM\SOFTWARE\Classes\WinRes.WindowsResources.1 -> Adware.CoolWebSearch : Cleaned with backup
[600] C:\WINDOWS\system32\wingsa32.dll -> Hijacker.Small.kb : Cleaned with backup
[1728] C:\WINDOWS\SYSTEM\svchost.exe -> Logger.AdvancedKeyLogger.b : Cleaned with backup
:mozilla.7:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.247realmedia : Cleaned with backup
:mozilla.13:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
:mozilla.14:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
:mozilla.15:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
:mozilla.16:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Sexlist : Cleaned with backup
:mozilla.26:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Masterstats : Cleaned with backup
:mozilla.41:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned with backup
:mozilla.44:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
:mozilla.45:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned with backup
:mozilla.54:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup
:mozilla.56:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.58:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.59:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Sexcounter : Cleaned with backup
:mozilla.69:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Paycounter : Cleaned with backup
:mozilla.74:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.75:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned with backup
:mozilla.76:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned with backup
:mozilla.77:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned with backup
:mozilla.78:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned with backup
:mozilla.86:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup
:mozilla.87:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned with backup
:mozilla.91:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Centrport : Cleaned with backup
:mozilla.92:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Centrport : Cleaned with backup
:mozilla.93:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.94:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.96:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned with backup
:mozilla.97:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned with backup
:mozilla.105:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Bfast : Cleaned with backup
:mozilla.106:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup
:mozilla.118:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned with backup
:mozilla.119:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned with backup
:mozilla.120:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned with backup
:mozilla.121:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned with backup
:mozilla.123:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.124:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.125:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
:mozilla.130:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.131:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup
:mozilla.133:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup
:mozilla.134:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.136:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.138:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.139:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.140:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.141:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.142:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.144:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.146:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Kmpads : Cleaned with backup
:mozilla.147:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Kmpads : Cleaned with backup
:mozilla.165:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup
:mozilla.172:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.189:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Targetnet : Cleaned with backup
:mozilla.195:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.196:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.216:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
:mozilla.222:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.223:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
:mozilla.225:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Spylog : Cleaned with backup
:mozilla.226:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.227:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.229:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Valueclick : Cleaned with backup
:mozilla.233:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Overture : Cleaned with backup
:mozilla.237:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Yadro : Cleaned with backup
:mozilla.239:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
:mozilla.240:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Adserver : Cleaned with backup
:mozilla.242:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.243:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.248:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup
:mozilla.249:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup
:mozilla.258:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Bluestreak : Cleaned with backup
:mozilla.270:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup
:mozilla.271:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Onestat : Cleaned with backup
:mozilla.272:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Roispy : Cleaned with backup
:mozilla.273:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Roispy : Cleaned with backup
:mozilla.274:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Roispy : Cleaned with backup
:mozilla.283:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup
:mozilla.284:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup
:mozilla.285:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned with backup
:mozilla.286:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Hitslink : Cleaned with backup
:mozilla.287:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Hitslink : Cleaned with backup
:mozilla.288:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Hitslink : Cleaned with backup
:mozilla.289:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned with backup
:mozilla.290:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Hitslink : Cleaned with backup
:mozilla.298:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup
:mozilla.299:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup
:mozilla.307:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup
:mozilla.313:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup
:mozilla.314:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup
:mozilla.322:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned with backup
:mozilla.323:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Realtracker : Cleaned with backup
:mozilla.324:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Realtracker : Cleaned with backup
:mozilla.337:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup
:mozilla.338:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup
:mozilla.344:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.368:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.369:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\19eume44.default\cookies.txt -> TrackingCookie.Cj : Cleaned with backup
:mozilla.36:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Com : Cleaned with backup
:mozilla.37:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Com : Cleaned with backup
:mozilla.42:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
:mozilla.46:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Coremetrics : Cleaned with backup
:mozilla.47:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Ivwbox : Cleaned with backup
:mozilla.49:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Spylog : Cleaned with backup
:mozilla.50:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Hotlog : Cleaned with backup
:mozilla.51:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Yadro : Cleaned with backup
:mozilla.55:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.56:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.57:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.58:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.59:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.60:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.61:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned with backup
:mozilla.68:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup
:mozilla.81:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup
:mozilla.82:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Tradedoubler : Cleaned with backup
:mozilla.85:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup
:mozilla.96:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
:mozilla.103:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Mediaplex : Cleaned with backup
:mozilla.104:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Qksrv : Cleaned with backup
:mozilla.105:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Qksrv : Cleaned with backup
:mozilla.107:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Valueclick : Cleaned with backup
:mozilla.110:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.247realmedia : Cleaned with backup
:mozilla.114:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup
:mozilla.115:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup
:mozilla.116:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Liveperson : Cleaned with backup
:mozilla.132:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup
:mozilla.184:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup
:mozilla.190:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.191:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.192:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Advertising : Cleaned with backup
:mozilla.209:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup
:mozilla.214:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.215:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.216:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Zedo : Cleaned with backup
:mozilla.221:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup
:mozilla.225:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.226:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.227:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.228:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
:mozilla.236:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup
:mozilla.240:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.241:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.242:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.243:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.244:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.245:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
:mozilla.247:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Fastclick : Cleaned with backup
:mozilla.248:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.249:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.250:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
:mozilla.253:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Opentracker : Cleaned with backup
:mozilla.258:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Overture : Cleaned with backup
:mozilla.264:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
:mozilla.265:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
:mozilla.266:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
:mozilla.267:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
:mozilla.283:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup
:mozilla.284:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Burstnet : Cleaned with backup
:mozilla.294:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
:mozilla.295:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
:mozilla.299:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Specificclick : Cleaned with backup
:mozilla.300:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup
:mozilla.313:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Googleadservices : Cleaned with backup
:mozilla.324:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup
:mozilla.325:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Clickzs : Cleaned with backup
:mozilla.331:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.341:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Hitbox : Cleaned with backup
:mozilla.352:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned with backup
:mozilla.353:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Webtrendslive : Cleaned with backup
:mozilla.359:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.360:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.361:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.362:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.363:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.364:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Trafficmp : Cleaned with backup
:mozilla.366:C:\Documents and Settings\Ged\Application Data\Mozilla\Firefox\Profiles\ehywi64q.Dave\cookies.txt -> TrackingCookie.Revenue : Cleaned with backup
C:\Documents and Settings\Ged\Cookies\ged@perf.overture[1].txt -> TrackingCookie.Overture : Cleaned with backup
C:\Documents and Settings\Ged\Cookies\ged@statcounter[1].txt -> TrackingCookie.Statcounter : Cleaned with backup
C:\Documents and Settings\Ged\Local Settings\Temp\ddl13.tmp.exe -> Dialer.Agent.z : Cleaned with backup
C:\Documents and Settings\Ged\Local Settings\Temp\ddl15.tmp.exe -> Dialer.Agent.z : Cleaned with backup
C:\Documents and Settings\Ged\Local Settings\Temp\ddl9.tmp.exe -> Dialer.Agent.z : Cleaned with backup
C:\Documents and Settings\Ged\Local Settings\Temp\ddlF.tmp.exe -> Dialer.Agent.z : Cleaned with backup
C:\Documents and Settings\Ged\Local Settings\Temporary Internet Files\Content.IE5\UDE1GLM5\mullbin2[1].exe -> Downloader.Small.ckr : Cleaned with backup
C:\Documents and Settings\Ged\Local Settings\Temporary Internet Files\Content.IE5\UDE1GLM5\rdgUS2405[1].exe -> Downloader.Small.ayl : Cleaned with backup
C:\Program Files\BitLord\Downloads\FINISHED\APPZ\ActMon Computer Monitoring v5.2.exe/wskrnl.exe -> Not-A-Virus.Monitor.Win32.ActMon.511 : Error during cleaning
C:\Program Files\BitLord\Downloads\FINISHED\APPZ\Handy Keylogger v3.24.032 [Crack].exe -> Not-A-Virus.Monitor.Win32.QuickKeyLogger.a : Cleaned with backup
C:\Program Files\BitLord\Downloads\FINISHED\APPZ\Spy SHOP 2005\Spytech SpyAgent5-lucid.rar/Spytech SpyAgent5-lucid\fixed.exe -> Not-A-Virus.Monitor.Win32.SpyAgent.k : Error during cleaning
C:\Program Files\BitLord\Downloads\Serial Key\Craagle.exe -> Adware.Craagle : Cleaned with backup
C:\Program Files\BitLord\Downloads\Serial Key.rar/Serial Key\Craagle & Crackdown.rar/Craagle.exe -> Adware.Craagle : Error during cleaning
C:\Program Files\BitLord\Downloads\Sex Game - Virtua Girl 2 desktop stripper + 18 models with activation & crac!.rar.bc!/Complete - Virtua Girl 2 desktop stripper + 18 models\activation.exe -> Adware.WinAD : Error during cleaning
C:\Program Files\BitLord\Downloads\Sex Game - Virtua Girl 2 desktop stripper + 18 models with activation & crac!.rar.bc!/Complete - Virtua Girl 2 desktop stripper + 18 models\crack.exe -> Adware.WinAD : Error during cleaning
C:\Program Files\BPK\d12.exe -> Not-A-Virus.Monitor.Win32.Perflogger.ad : Cleaned with backup
C:\WINDOWS\ASK\ScrCap.exe -> Not-A-Virus.Monitor.Win32.Amplusnet.c : Cleaned with backup
C:\WINDOWS\Downloaded Program Files\rdgUS2405.exe -> Downloader.Small.ayl : Cleaned with backup
C:\WINDOWS\system\svchost.exe -> Logger.AdvancedKeyLogger.b : Cleaned with backup
C:\WINDOWS\system32\AdCache -> Adware.Cydoor : Cleaned with backup
C:\WINDOWS\system32\qlib.dll -> Not-A-Virus.Monitor.Win32.QuickKeyLogger.c : Cleaned with backup
C:\WINDOWS\system32\qpanel.exe -> Not-A-Virus.Monitor.Win32.QuickKeyLogger.a : Cleaned with backup
C:\WINDOWS\system32\TMUtils.dll -> Logger.AdvancedKeyLogger.16 : Cleaned with backup
C:\WINDOWS\system32\wingsa32.dll -> Hijacker.Small.kb : Cleaned with backup
C:\WINDOWS\Temp\winFC.tmp.exe -> Trojan.Dialer.u : Cleaned with backup
F:\CRACK\CRC\pwdspy.zip/bin/i386r/PwdSpyHk.dll -> Backdoor.PowerSpider.b : Cleaned with backup
F:\CRACK\CRC\pwdspy.zip/bin/i386ur/PwdSpyHk.dll -> Backdoor.PowerSpider.b : Cleaned with backup
F:\CRACK\Gamez - Serials\Gamez - Keygens\Warhammer 40000 [Keygen-Vengeance].exe -> Trojan.Steam.a : Cleaned with backup
::Report End
Thanks again,
Dave