hijackthis -logi

Discussion in 'Virukset ja haittaohjelmat' started by just4play, Jan 9, 2006.

  1. just4play

    just4play Regular member

    Joined:
    Dec 31, 2005
    Messages:
    137
    Likes Received:
    0
    Trophy Points:
    26
    tässä olis vielä yksi hjt-logi:

    Logfile of HijackThis v1.99.1
    Scan saved at 21:21:02, on 9.1.2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\F-Secure Internet Security\fswsclds.exe
    C:\Program Files\Norton AntiVirus\navapsvc.exe
    C:\Program Files\Norton AntiVirus\SAVScan.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\SOUNDMAN.EXE
    C:\WINDOWS\AGRSMMSG.exe
    C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
    C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    C:\PROGRA~1\LAUNCH~1\QtZpAcer.EXE
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\WINDOWS\system32\mevedvag.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\iTunes\iTunesHelper.exe
    C:\Program Files\Media Gateway\MediaGateway.exe
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\Program Files\iPod\bin\iPodService.exe
    C:\Program Files\Internet Optimizer\optimize.exe
    C:\Program Files\Qqpsv\Ktwldb.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\program\soffice.exe
    C:\Program Files\Internet Optimizer\actalert.exe
    C:\Program Files\Netscape\Netscape\Netscp.exe
    C:\HJT\HijackThis.exe

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = res://C:\WINDOWS\system32\ptvnx.dll/sp.html#11111
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\system32\ptvnx.dll/sp.html#11111
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\system32\ptvnx.dll/sp.html#11111
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = res://C:\WINDOWS\system32\ptvnx.dll/sp.html#11111
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
    R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
    O2 - BHO: BHObj Class - {00000010-6F7D-442C-93E3-4A4827C2E4C8} - C:\WINDOWS\nem220.dll (file missing)
    O2 - BHO: AcroIEHlprObj Class - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 5.0\Reader\ActiveX\AcroIEHelper.ocx
    O2 - BHO: (no name) - {397FB9F0-460E-EB6D-9E38-BCAECE1DBD48} - C:\WINDOWS\ntyc.dll (file missing)
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O2 - BHO: BHObj Class - {8F4E5661-F99E-4B3E-8D85-0EA71C0748E4} - C:\WINDOWS\wsem303.dll
    O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
    O2 - BHO: Viewpoint Toolbar BHO - {A7327C09-B521-4EDB-8509-7D2660C9EC98} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBarBHO.dll
    O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fi\msntb.dll
    O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fi\msntb.dll
    O3 - Toolbar: Viewpoint Toolbar - {F8AD5AA5-D966-4667-9DAF-2561D68B2012} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll
    O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
    O4 - HKLM\..\Run: [LaunchApp] Alaunch
    O4 - HKLM\..\Run: [VTTimer] VTTimer.exe
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
    O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
    O4 - HKLM\..\Run: [SynTPEnh] C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
    O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\QtZpAcer.EXE
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\F-Secure Internet Security\Common\FSM32.EXE" /splash
    O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\F-Secure Internet Security\TNB\TNBUtil.exe" /CHECKALL
    O4 - HKLM\..\Run: [mevedvag] C:\WINDOWS\system32\mevedvag.exe
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
    O4 - HKLM\..\Run: [Media Gateway] C:\Program Files\Media Gateway\MediaGateway.exe
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
    O4 - HKLM\..\Run: [Internet Optimizer] "C:\Program Files\Internet Optimizer\optimize.exe"
    O4 - HKLM\..\Run: [Mybhabqn] C:\Program Files\Qqpsv\Ktwldb.exe
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - Startup: OpenOffice.org 1.1.4.lnk = C:\Program Files\program\quickstart.exe
    O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O15 - Trusted IP range: 206.161.125.149
    O15 - Trusted IP range: 206.161.125.149 (HKLM)
    O15 - ProtocolDefaults: 'http' protocol is in Trusted Zone, should be Internet Zone (HKLM)
    O16 - DPF: {10000000-1000-0000-1000-000000000000} -
    O16 - DPF: {14A3221B-1678-1982-A355-7263B1281987} -
    O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
    O16 - DPF: {9CCE3B43-4DE0-4236-A84E-108CA848EE6A} (WebCam Control) - http://www.webcamnow.com/broadcast/ActiveXWebCam.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    O16 - DPF: {D719897A-B07A-4C0C-AEA9-9B663A28DFCB} (iTunesDetector Class) - http://ax.phobos.apple.com.edgesuite.net/detection/ITDetector.cab
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\F-Secure Internet Security\Anti-Virus\fsgk32st.exe
    O23 - Service: fsbwsys - Unknown owner - C:\Program Files\F-Secure Internet Security\backweb\4476822\program\fsbwsys.exe (file missing)
    O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - Unknown owner - C:\Program Files\F-Secure Internet Security\FWES\Program\fsdfwd.exe (file missing)
    O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\F-Secure Internet Security\Common\FSMA32.EXE
    O23 - Service: F-Secure Windows Security Center Legacy Detection Service (Fswsclds) - F-Secure Corporation - C:\Program Files\F-Secure Internet Security\fswsclds.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
    O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
    O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe
    O23 - Service: Network Security Service (NSS) (�%AF夶À¨) - Unknown owner - C:\WINDOWS\system32\netdt.exe (file missing)
     
  2. spertti

    spertti Active member

    Joined:
    Jun 1, 2005
    Messages:
    1,222
    Likes Received:
    0
    Trophy Points:
    66
    Poista seuraavat ohjauspaneelin kautta ( lisää/poista sovelluksia ), jos löytyy.
    viewpoint toolbar
    180 solutions
    Internet optimizer
    CoolWebSearch
    Media Gateway
    ( Ja F-secure ja Norton samalla koneella..... Niistäkin toinen pitäisi poistaa, mutta tehdään se myöhemmin. )


    Fixaa seuraavat rivit HjT:lla

    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = about:blank
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = res://C:\WINDOWS\system32\ptvnx.dll/sp.html#11111
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Bar = res://C:\WINDOWS\system32\ptvnx.dll/sp.html#11111
    R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = res://C:\WINDOWS\system32\ptvnx.dll/sp.html#11111
    R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant = res://C:\WINDOWS\system32\ptvnx.dll/sp.html#11111
    R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page =
    R3 - URLSearchHook: (no name) - _{CFBFAE00-17A6-11D0-99CB-00C04FD64497} - (no file)
    O2 - BHO: BHObj Class - {00000010-6F7D-442C-93E3-4A4827C2E4C8} - C:\WINDOWS\nem220.dll (file missing)
    O2 - BHO: (no name) - {397FB9F0-460E-EB6D-9E38-BCAECE1DBD48} - C:\WINDOWS\ntyc.dll (file missing)
    O2 - BHO: BHObj Class - {8F4E5661-F99E-4B3E-8D85-0EA71C0748E4} - C:\WINDOWS\wsem303.dll
    O2 - BHO: Viewpoint Toolbar BHO - {A7327C09-B521-4EDB-8509-7D2660C9EC98} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBarBHO.dll
    O3 - Toolbar: Viewpoint Toolbar - {F8AD5AA5-D966-4667-9DAF-2561D68B2012} - C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll
    O4 - HKLM\..\Run: [mevedvag] C:\WINDOWS\system32\mevedvag.exe
    O4 - HKLM\..\Run: [Media Gateway] C:\Program Files\Media Gateway\MediaGateway.exe
    O4 - HKLM\..\Run: [Internet Optimizer] "C:\Program Files\Internet Optimizer\optimize.exe"
    O4 - HKLM\..\Run: [Mybhabqn] C:\Program Files\Qqpsv\Ktwldb.exe
    O8 - Extra context menu item: &Viewpoint Search - res://C:\Program Files\Viewpoint\Viewpoint Toolbar\ViewBar.dll/CXTSEARCH.HTML
    O15 - Trusted IP range: 206.161.125.149
    O15 - Trusted IP range: 206.161.125.149 (HKLM)
    O15 - ProtocolDefaults: 'http' protocol is in Trusted Zone, should be Internet Zone (HKLM)
    O16 - DPF: {10000000-1000-0000-1000-000000000000} -
    O16 - DPF: {14A3221B-1678-1982-A355-7263B1281987} -
    O23 - Service: Network Security Service (NSS) (�%AF夶À¨) - Unknown owner -
    C:\WINDOWS\system32\netdt.exe (file missing)

    Mene käynnistä > suorita > services.msc > etsi listalta Network Security Service > Tuplaklikkaa sitä >
    valitse seis, ja käynnistystavaksi ei käytössä > ok

    Hae Ewido, asenna ja päivitä, mutta älä vielä käytä sitä.
    http://keskustelu.afterdawn.com/thread_view.cfm/269186

    Hae CWShredder tuolta > http://cwshredder.net/bin/CWShredder.zip
    Asenna se vaikka C:\CWS\CWShredder.exe

    Laita piilotiedostot näkyviin, ohje ->
    http://keskustelu.afterdawn.com/thread_view.cfm/248944

    Käynnistä vikasietotilaan ( F8 käynnistyksen yhteydessä )

    Mene sinne polkuun, jonne asensit CWShredderin, ja tuplaklikkaa > CWShredder.exe
    Paina Fix-->näppäintä.
    Vastaa ohjelman kysymyksiin OK.
    Ohjelman käytyä kohteet läpi paina Next-->näppäintä.

    Skannaa Ewidolla vikasietotilassa, ja tallenna raportti

    Poista seuraavat tiedostot ja kansiot, jos löytyy

    C:\Program Files\Internet Optimizer\====>actalert.exe<====
    C:\WINDOWS\system32\====================>netdt.exe<=======
    C:\Program Files\=======================>Viewpoint<=======
    C:\Program Files\=======================>Qqpsv<===========
    C:\Program Files\=======================>Internet Optimizer<==
    C:\Program Files\=======================>Media Gateway<===
    C:\WINDOWS\system32\====================>mevedvag.exe<====
    C:\WINDOWS\=============================>wsem303.dll<=====
    C:\WINDOWS\=============================>ntyc.dll<========
    C:\WINDOWS\=============================>nem220.dll<======
    C:\WINDOWS\system32\====================>ptvnx.dll<=======

    Laita uusi loki, ja Ewidon raportti. Auttoiko?
     
  3. -kemisti-

    -kemisti- Active member

    Joined:
    Jun 6, 2005
    Messages:
    6,305
    Likes Received:
    0
    Trophy Points:
    96
    Lisätään tämä:

    Hae aboutbuster -> http://koti.mbnet.fi/pattaya1/aboutbuster.htm , päivitä se, mutta älä käytä sitäkään vielä.

    Skannaa sillä siellä vikasietotilassa ennen ewidoa kahteen kertaan ja tallenna loki.

    Lähetä myös aboutbusterin loki.
     
    Last edited: Jan 9, 2006
  4. just4play

    just4play Regular member

    Joined:
    Dec 31, 2005
    Messages:
    137
    Likes Received:
    0
    Trophy Points:
    26
    käytössä on nortonin antivirus ohjelma joten ton f-securen jäänteet kyllä vois poistaa... toivottavasti jotain auttoi noi neuvot ... en tosin niitä kaikkia tiedostoja löytänyt! tässäpä vielä niitä logeja lisää,

    ewido:

    ---------------------------------------------------------
    ewido anti-malware - Scan report
    ---------------------------------------------------------

    + Created on: 23:35:33, 10.1.2006
    + Report-Checksum: 4EF03B4A

    + Scan result:

    HKLM\SOFTWARE\Avenue Media -> Spyware.InternetOptimizer : Cleaned with backup
    HKLM\SOFTWARE\Avenue Media\Internet Optimizer -> Spyware.InternetOptimizer : Cleaned with backup
    HKLM\SOFTWARE\Avenue Media\Internet Optimizer\Active Alert -> Spyware.InternetOptimizer : Cleaned with backup
    HKLM\SOFTWARE\Avenue Media\Internet Optimizer\Active Alert\cf1 -> Spyware.InternetOptimizer : Cleaned with backup
    HKLM\SOFTWARE\Avenue Media\Internet Optimizer\Browser Helper -> Spyware.InternetOptimizer : Cleaned with backup
    HKLM\SOFTWARE\Avenue Media\Internet Optimizer\WSE -> Spyware.InternetOptimizer : Cleaned with backup
    HKLM\SOFTWARE\Avenue Media\Internet Optimizer\WSE\cf1 -> Spyware.InternetOptimizer : Cleaned with backup
    HKLM\SOFTWARE\Avenue Media\Internet Optimizer\WSE\cf2 -> Spyware.InternetOptimizer : Cleaned with backup
    HKLM\SOFTWARE\Avenue Media\Internet Optimizer\WSE\cf3 -> Spyware.InternetOptimizer : Cleaned with backup
    HKLM\SOFTWARE\Avenue Media\Internet Optimizer\WSE\cf4 -> Spyware.InternetOptimizer : Cleaned with backup
    HKLM\SOFTWARE\Avenue Media\Internet Optimizer\WSE\cf5 -> Spyware.InternetOptimizer : Cleaned with backup
    HKLM\SOFTWARE\Classes\CLSID\{286ECE71-3F17-089B-F6BD-0E16D255AE8A} -> Spyware.CoolWebSearch : Cleaned with backup
    HKLM\SOFTWARE\Classes\CLSID\{2D99FD34-F395-DFB0-0852-36D4976F6E3D} -> Spyware.CoolWebSearch : Cleaned with backup
    HKLM\SOFTWARE\Classes\CLSID\{3B9E0A95-3EBA-124F-52D1-033C73734625} -> Spyware.CoolWebSearch : Cleaned with backup
    HKLM\SOFTWARE\Classes\CLSID\{795714A8-C9C0-E8BD-30DB-A0DA3B603993} -> Spyware.CoolWebSearch : Cleaned with backup
    HKLM\SOFTWARE\Classes\CLSID\{BCA234F8-DBE0-1CBE-CE94-63240442E405} -> Spyware.CoolWebSearch : Cleaned with backup
    HKLM\SOFTWARE\Classes\CLSID\{CEA206E8-8057-4A04-ACE9-FF0D69A92297} -> Spyware.SafeSurfing : Cleaned with backup
    HKLM\SOFTWARE\Classes\DyFuCA_BH.BHObj -> Spyware.MoneyTree : Cleaned with backup
    HKLM\SOFTWARE\Classes\DyFuCA_BH.BHObj\CLSID -> Spyware.MoneyTree : Cleaned with backup
    HKLM\SOFTWARE\Classes\DyFuCA_BH.BHObj\CurVer -> Spyware.MoneyTree : Cleaned with backup
    HKLM\SOFTWARE\Classes\DyFuCA_BH.BHObj.1 -> Spyware.MoneyTree : Cleaned with backup
    HKLM\SOFTWARE\Classes\DyFuCA_BH.SinkObj -> Spyware.MoneyTree : Cleaned with backup
    HKLM\SOFTWARE\Classes\DyFuCA_BH.SinkObj\CLSID -> Spyware.MoneyTree : Cleaned with backup
    HKLM\SOFTWARE\Classes\DyFuCA_BH.SinkObj\CurVer -> Spyware.MoneyTree : Cleaned with backup
    HKLM\SOFTWARE\Classes\DyFuCA_BH.SinkObj.1 -> Spyware.MoneyTree : Cleaned with backup
    HKLM\SOFTWARE\Classes\Interface\{1C01D150-91A4-4DE0-9BF8-A35D1BDF1001} -> Spyware.SafeSurfing : Cleaned with backup
    HKLM\SOFTWARE\Classes\Interface\{AA4939C3-DECA-4A48-A454-97CD587C0EF5} -> Spyware.ISTBar : Cleaned with backup
    HKLM\SOFTWARE\Classes\Interface\{EEE4A2E5-9F56-432F-A6ED-F6F625B551E0} -> Dialer.Generic : Cleaned with backup
    HKLM\SOFTWARE\Classes\TypeLib\{0BE10B0D-B4DB-4693-9B1F-9AEAD54D17DC} -> Spyware.SafeSurfing : Cleaned with backup
    HKLM\SOFTWARE\Classes\TypeLib\{40B1D454-9CA4-43CC-86AA-CB175EAC52FB} -> Spyware.MoneyTree : Cleaned with backup
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\AMeOpt -> Spyware.InternetOptimizer : Cleaned with backup
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\DyFuCA -> Spyware.MoneyTree : Cleaned with backup
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Hotbara -> Spyware.HotBar : Cleaned with backup
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Hotbarb -> Spyware.HotBar : Cleaned with backup
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Optimizer -> Spyware.InternetOptimizer : Cleaned with backup
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Optimizer Active Alert -> Spyware.SafeSurfing : Cleaned with backup
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Kapabout -> Spyware.InternetOptimizer : Cleaned with backup
    HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Rotue -> Spyware.InternetOptimizer : Cleaned with backup
    HKLM\SOFTWARE\PerfectNav -> Spyware.KeenValue : Cleaned with backup
    HKLM\SOFTWARE\PerfectNav\BHO -> Spyware.KeenValue : Cleaned with backup
    HKLM\SOFTWARE\PerfectNav\BHO\HomePage -> Spyware.KeenValue : Cleaned with backup
    HKLM\SOFTWARE\PerfectNav\BHO\RedirectURLS -> Spyware.KeenValue : Cleaned with backup
    HKLM\SOFTWARE\Policies\Avenue Media -> Spyware.InternetOptimizer : Cleaned with backup
    C:\HJT\backups\backup-20060110-214423-203.dll -> Downloader.Dyfuca.dt : Cleaned with backup
    C:\WINDOWS\system32\mevedvag.exe -> Adware.Saha : Cleaned with backup
    C:\WINDOWS\system32\lq1n5pm0.dll -> Adware.SAHA : Cleaned with backup
    C:\WINDOWS\stcm520k.exe -> Adware.SAHA : Cleaned with backup
    C:\WINDOWS\wsem303.dll -> Downloader.Dyfuca.dt : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@questionmarket[1].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@ivwbox[1].txt -> Spyware.Cookie.Ivwbox : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@mediaplex[2].txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@ad.yieldmanager[2].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@as1.falkag[1].txt -> Spyware.Cookie.Falkag : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@as-eu.falkag[2].txt -> Spyware.Cookie.Falkag : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@tribalfusion[1].txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@doubleclick[2].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@trafic[1].txt -> Spyware.Cookie.Trafic : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@casalemedia[1].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@fastclick[2].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@ad.yieldmanager[3].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@advertising[2].txt -> Spyware.Cookie.Advertising : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@e-2dj6wjkyoicpoco.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@e-2dj6wjmyapczeap.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@tradedoubler[1].txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@servedby.advertising[1].txt -> Spyware.Cookie.Advertising : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@ads.pointroll[2].txt -> Spyware.Cookie.Pointroll : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@adbrite[1].txt -> Spyware.Cookie.Adbrite : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@statcounter[2].txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@revenue[1].txt -> Spyware.Cookie.Revenue : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@findwhat[1].txt -> Spyware.Cookie.Findwhat : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@burstnet[2].txt -> Spyware.Cookie.Burstnet : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@e-2dj6wfk4eoazgap.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@e-2dj6wjkoknd5sbp.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@trafficmp[2].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@trafficmp[3].txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@statcounter[1].txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@casalemedia[2].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@www.shopathomeselect[2].txt -> Spyware.Cookie.Shopathomeselect : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@ad.yieldmanager[1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@questionmarket[2].txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@z1.adserver[1].txt -> Spyware.Cookie.Adserver : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@b.casalemedia[1].txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@revenue[2].txt -> Spyware.Cookie.Revenue : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@tradedoubler[2].txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@fastclick[3].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@media.fastclick[2].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@qksrv[1].txt -> Spyware.Cookie.Qksrv : Cleaned with backup
    C:\Documents and Settings\user1\Cookies\user1@e-2dj6wjlywkdjoap.stats.esomniture[2].txt -> Spyware.Cookie.Esomniture : Cleaned with backup
    :mozilla.10:C:\Documents and Settings\user1\Application Data\Mozilla\Firefox\Profiles\mkzn0h1b.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
    :mozilla.38:C:\Documents and Settings\user1\Application Data\Mozilla\Firefox\Profiles\mkzn0h1b.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
    :mozilla.41:C:\Documents and Settings\user1\Application Data\Mozilla\Firefox\Profiles\mkzn0h1b.default\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
    :mozilla.42:C:\Documents and Settings\user1\Application Data\Mozilla\Firefox\Profiles\mkzn0h1b.default\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
    :mozilla.57:C:\Documents and Settings\user1\Application Data\Mozilla\Firefox\Profiles\mkzn0h1b.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.58:C:\Documents and Settings\user1\Application Data\Mozilla\Firefox\Profiles\mkzn0h1b.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.59:C:\Documents and Settings\user1\Application Data\Mozilla\Firefox\Profiles\mkzn0h1b.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.60:C:\Documents and Settings\user1\Application Data\Mozilla\Firefox\Profiles\mkzn0h1b.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.66:C:\Documents and Settings\user1\Application Data\Mozilla\Firefox\Profiles\mkzn0h1b.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.67:C:\Documents and Settings\user1\Application Data\Mozilla\Firefox\Profiles\mkzn0h1b.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.68:C:\Documents and Settings\user1\Application Data\Mozilla\Firefox\Profiles\mkzn0h1b.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.70:C:\Documents and Settings\user1\Application Data\Mozilla\Firefox\Profiles\mkzn0h1b.default\cookies.txt -> Spyware.Cookie.Paycounter : Cleaned with backup
    :mozilla.81:C:\Documents and Settings\user1\Application Data\Mozilla\Firefox\Profiles\mkzn0h1b.default\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
    :mozilla.82:C:\Documents and Settings\user1\Application Data\Mozilla\Firefox\Profiles\mkzn0h1b.default\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
    C:\Documents and Settings\user2\Application Data\Sun\Java\Deployment\cache\javapi\v1.0\file\SecurityClassLoader.class-7c728-5dbab591.class -> Downloader.Small.wv : Cleaned with backup
    :mozilla.9:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\default\3q7o4j0e.slt\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
    :mozilla.14:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\default\3q7o4j0e.slt\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.15:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\default\3q7o4j0e.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    :mozilla.17:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\default\3q7o4j0e.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    :mozilla.18:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\default\3q7o4j0e.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    :mozilla.19:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\default\3q7o4j0e.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    :mozilla.20:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\default\3q7o4j0e.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    :mozilla.21:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\default\3q7o4j0e.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    :mozilla.22:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\default\3q7o4j0e.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    :mozilla.24:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\default\3q7o4j0e.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    :mozilla.25:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\default\3q7o4j0e.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    :mozilla.26:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\default\3q7o4j0e.slt\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
    :mozilla.36:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\default\3q7o4j0e.slt\cookies.txt -> Spyware.Cookie.Shopathomeselect : Cleaned with backup
    :mozilla.37:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\default\3q7o4j0e.slt\cookies.txt -> Spyware.Cookie.Shopathomeselect : Cleaned with backup
    :mozilla.38:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\default\3q7o4j0e.slt\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
    :mozilla.39:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\default\3q7o4j0e.slt\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
    :mozilla.16:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
    :mozilla.25:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
    :mozilla.26:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
    :mozilla.28:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
    :mozilla.36:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
    :mozilla.47:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.48:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.49:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.50:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.53:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
    :mozilla.54:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
    :mozilla.59:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Wegcash : Cleaned with backup
    :mozilla.60:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Wegcash : Cleaned with backup
    :mozilla.61:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Wegcash : Cleaned with backup
    :mozilla.81:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.83:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
    :mozilla.84:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
    :mozilla.95:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.96:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.97:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.101:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
    :mozilla.102:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    :mozilla.103:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    :mozilla.104:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    :mozilla.105:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    :mozilla.106:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    :mozilla.107:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    :mozilla.108:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    :mozilla.109:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    :mozilla.110:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    :mozilla.111:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    :mozilla.112:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    :mozilla.113:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    :mozilla.114:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    :mozilla.116:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Euroclick : Cleaned with backup
    :mozilla.125:C:\Documents and Settings\user2\Application Data\Mozilla\Profiles\timo\bpwk3o5k.slt\cookies.txt -> Spyware.Cookie.Googleadservices : Cleaned with backup
    C:\Documents and Settings\user3\Cookies\user3@com[2].txt -> Spyware.Cookie.Com : Cleaned with backup
    C:\Documents and Settings\user3\Cookies\user3@www.shopathomeselect[2].txt -> Spyware.Cookie.Shopathomeselect : Cleaned with backup
    C:\Documents and Settings\user3\Cookies\user3@doubleclick[1].txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
    C:\Documents and Settings\user3\Cookies\user3@adtech[2].txt -> Spyware.Cookie.Adtech : Cleaned with backup
    C:\Documents and Settings\user3\Cookies\user3@www.shopathomeselect[3].txt -> Spyware.Cookie.Shopathomeselect : Cleaned with backup
    C:\Documents and Settings\user3\Cookies\user3@fastclick[2].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    C:\Documents and Settings\user3\Cookies\user3@revenue[2].txt -> Spyware.Cookie.Revenue : Cleaned with backup
    C:\Documents and Settings\user3\Cookies\user3@2o7[1].txt -> Spyware.Cookie.2o7 : Cleaned with backup
    C:\Documents and Settings\user3\Cookies\user3@atdmt[2].txt -> Spyware.Cookie.Atdmt : Cleaned with backup
    C:\Documents and Settings\user3\Cookies\user3@serving-sys[2].txt -> Spyware.Cookie.Serving-sys : Cleaned with backup
    C:\Documents and Settings\user3\Cookies\user3@ad.yieldmanager[1].txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    C:\Documents and Settings\user3\Cookies\user3@media.fastclick[2].txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    C:\Documents and Settings\user3\Cookies\user3@hitbox[2].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\user3\Cookies\user3@ehg-teliasonera.hitbox[1].txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    C:\Documents and Settings\user3\Cookies\user3@tradedoubler[2].txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
    :mozilla.54:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
    :mozilla.55:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
    :mozilla.56:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
    :mozilla.57:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
    :mozilla.64:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
    :mozilla.65:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
    :mozilla.68:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
    :mozilla.70:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
    :mozilla.88:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
    :mozilla.89:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Linksynergy : Cleaned with backup
    :mozilla.90:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Linksynergy : Cleaned with backup
    :mozilla.91:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Shopathomeselect : Cleaned with backup
    :mozilla.92:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Shopathomeselect : Cleaned with backup
    :mozilla.97:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    :mozilla.98:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
    :mozilla.99:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
    :mozilla.101:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.102:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.103:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.104:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.105:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    :mozilla.107:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
    :mozilla.108:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
    :mozilla.115:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.116:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.117:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.247realmedia : Cleaned with backup
    :mozilla.132:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
    :mozilla.133:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
    :mozilla.147:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.148:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.154:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Estat : Cleaned with backup
    :mozilla.157:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
    :mozilla.160:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Weborama : Cleaned with backup
    :mozilla.161:C:\Documents and Settings\user3\Application Data\Mozilla\Profiles\default\z6p7vp1q.slt\cookies.txt -> Spyware.Cookie.Weborama : Cleaned with backup
    :mozilla.6:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Adbrite : Cleaned with backup
    :mozilla.11:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Bluestreak : Cleaned with backup
    :mozilla.20:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
    :mozilla.21:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
    :mozilla.23:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
    :mozilla.31:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Clickhype : Cleaned with backup
    :mozilla.35:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    :mozilla.36:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    :mozilla.37:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    :mozilla.38:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
    :mozilla.39:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
    :mozilla.40:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
    :mozilla.41:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Adtech : Cleaned with backup
    :mozilla.53:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Tribalfusion : Cleaned with backup
    :mozilla.63:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sextracker : Cleaned with backup
    :mozilla.64:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sextracker : Cleaned with backup
    :mozilla.65:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sextracker : Cleaned with backup
    :mozilla.66:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sextracker : Cleaned with backup
    :mozilla.75:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Masterstats : Cleaned with backup
    :mozilla.86:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.87:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.88:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.89:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.90:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.91:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.92:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.2o7 : Cleaned with backup
    :mozilla.96:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sextracker : Cleaned with backup
    :mozilla.101:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.112:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sextracker : Cleaned with backup
    :mozilla.115:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
    :mozilla.116:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Atdmt : Cleaned with backup
    :mozilla.117:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Burstnet : Cleaned with backup
    :mozilla.134:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.135:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.136:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.137:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.138:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.139:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.140:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.141:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.142:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.143:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.144:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.145:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.146:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.147:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.148:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.149:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.150:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.151:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.152:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.153:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.154:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.155:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.156:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.157:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.158:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.159:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.160:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.161:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.162:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.163:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.164:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.165:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.166:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.167:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.168:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.169:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.170:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.171:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Advertising : Cleaned with backup
    :mozilla.175:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.176:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.177:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.178:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.179:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.180:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.181:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.182:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.183:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.184:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.185:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.186:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.187:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.199:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
    :mozilla.200:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Qksrv : Cleaned with backup
    :mozilla.202:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Bfast : Cleaned with backup
    :mozilla.203:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.247realmedia : Cleaned with backup
    :mozilla.211:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    :mozilla.212:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    :mozilla.213:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    :mozilla.215:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    :mozilla.216:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    :mozilla.217:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    :mozilla.218:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Casalemedia : Cleaned with backup
    :mozilla.222:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.223:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.224:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.225:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.226:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.227:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.228:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.229:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.230:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.231:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.232:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.233:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.234:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.235:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.236:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.237:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.238:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.239:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.240:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.241:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.242:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.243:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.244:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.245:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.246:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.247:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.248:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.249:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.250:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.251:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.252:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.253:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.254:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexlist : Cleaned with backup
    :mozilla.255:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
    :mozilla.256:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Targetnet : Cleaned with backup
    :mozilla.261:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Paycounter : Cleaned with backup
    :mozilla.264:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
    :mozilla.265:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
    :mozilla.271:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Belstat : Cleaned with backup
    :mozilla.272:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Belstat : Cleaned with backup
    :mozilla.276:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
    :mozilla.277:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
    :mozilla.278:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
    :mozilla.279:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
    :mozilla.280:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
    :mozilla.281:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
    :mozilla.282:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
    :mozilla.283:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
    :mozilla.284:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
    :mozilla.285:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Onestat : Cleaned with backup
    :mozilla.286:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Cqcounter : Cleaned with backup
    :mozilla.299:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Falkag : Cleaned with backup
    :mozilla.312:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Spylog : Cleaned with backup
    :mozilla.319:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Adengage : Cleaned with backup
    :mozilla.320:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Adengage : Cleaned with backup
    :mozilla.321:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Adengage : Cleaned with backup
    :mozilla.323:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    :mozilla.324:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    :mozilla.325:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Yieldmanager : Cleaned with backup
    :mozilla.343:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
    :mozilla.360:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
    :mozilla.368:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.369:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.370:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.371:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.372:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.373:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.375:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.376:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.377:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.378:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.379:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.380:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.381:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.382:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.383:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.384:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.385:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.386:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.387:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.388:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.389:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.390:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.391:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.392:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.393:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.394:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.395:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.396:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.397:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.398:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.399:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.400:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.401:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.402:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.403:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.404:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.405:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.406:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.407:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.408:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.409:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.410:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.411:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.412:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.413:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.414:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sexcounter : Cleaned with backup
    :mozilla.423:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Burstbeacon : Cleaned with backup
    :mozilla.424:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Questionmarket : Cleaned with backup
    :mozilla.435:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
    :mozilla.458:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
    :mozilla.459:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
    :mozilla.496:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
    :mozilla.497:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
    :mozilla.506:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Hotlog : Cleaned with backup
    :mozilla.540:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Counted : Cleaned with backup
    :mozilla.541:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Counted : Cleaned with backup
    :mozilla.555:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Mediaplex : Cleaned with backup
    :mozilla.559:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
    :mozilla.560:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
    :mozilla.561:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
    :mozilla.562:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Adserver : Cleaned with backup
    :mozilla.563:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Trafficmp : Cleaned with backup
    :mozilla.569:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Ivwbox : Cleaned with backup
    :mozilla.571:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Oewabox : Cleaned with backup
    :mozilla.587:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
    :mozilla.588:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Liveperson : Cleaned with backup
    :mozilla.591:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Xhit : Cleaned with backup
    :mozilla.625:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
    :mozilla.626:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
    :mozilla.662:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
    :mozilla.663:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
    :mozilla.679:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Sitestat : Cleaned with backup
    :mozilla.711:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.712:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Hitbox : Cleaned with backup
    :mozilla.734:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
    :mozilla.735:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
    :mozilla.756:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
    :mozilla.757:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
    :mozilla.758:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
    :mozilla.759:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Hitslink : Cleaned with backup
    :mozilla.770:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Clickzs : Cleaned with backup
    :mozilla.778:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Revenue : Cleaned with backup
    :mozilla.782:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Inet-cash : Cleaned with backup
    :mozilla.783:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Inet-cash : Cleaned with backup
    :mozilla.802:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Overture : Cleaned with backup
    :mozilla.828:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Centrport : Cleaned with backup
    :mozilla.839:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
    :mozilla.844:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
    :mozilla.870:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Valueclick : Cleaned with backup
    :mozilla.922:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Adviva : Cleaned with backup
    :mozilla.924:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\178a33vw.default\cookies.txt -> Spyware.Cookie.Adviva : Cleaned with backup
    :mozilla.8:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\0ytbkzc8.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Doubleclick : Cleaned with backup
    :mozilla.18:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\0ytbkzc8.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
    :mozilla.20:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\0ytbkzc8.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Tradedoubler : Cleaned with backup
    :mozilla.27:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\0ytbkzc8.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.247realmedia : Cleaned with backup
    :mozilla.28:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\0ytbkzc8.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.29:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\0ytbkzc8.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.30:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\0ytbkzc8.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.31:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\0ytbkzc8.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.32:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\0ytbkzc8.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.33:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\0ytbkzc8.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Statcounter : Cleaned with backup
    :mozilla.35:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\0ytbkzc8.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Fastclick : Cleaned with backup
    :mozilla.49:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\0ytbkzc8.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Webtrendslive : Cleaned with backup
    :mozilla.58:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\0ytbkzc8.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
    :mozilla.59:C:\Documents and Settings\user3\Application Data\Mozilla\Firefox\Profiles\0ytbkzc8.Oletuskäyttäjä\cookies.txt -> Spyware.Cookie.Com : Cleaned with backup
    C:\Program Files\Qqpsv\Ktwldb.exe -> Trojan.Small.cy : Cleaned with backup
    C:\Program Files\hbinst\Hbinst.exe -> Spyware.HotBar : Cleaned with backup
    C:\Program Files\180searchassistant -> Adware.180Solutions : Cleaned with backup
    C:\Program Files\180searchassistant\salm_gdf.dat -> Adware.180Solutions : Cleaned with backup
    C:\Program Files\180searchassistant\salm_kyf.dat -> Adware.180Solutions : Cleaned with backup
    C:\Program Files\180searchassistant\salmau.dat -> Adware.180Solutions : Cleaned with backup
    C:\Program Files\Internet Optimizer -> Spyware.InternetOptimizer : Cleaned with backup
    C:\Program Files\Internet Optimizer\optimize.exe -> Spyware.InternetOptimizer : Cleaned with backup
    C:\Program Files\Internet Optimizer\update -> Spyware.InternetOptimizer : Cleaned with backup
    C:\Program Files\Internet Optimizer\actalert.exe -> Spyware.InternetOptimizer : Cleaned with backup
    C:\System Volume Information\_restore{66F4B82B-5647-4136-A005-1DC270388132}\RP120\A0034354.exe -> Downloader.Dyfuca.dp : Cleaned with backup
    C:\System Volume Information\_restore{66F4B82B-5647-4136-A005-1DC270388132}\RP120\A0034355.dll -> Downloader.Dyfuca : Cleaned with backup
    C:\System Volume Information\_restore{66F4B82B-5647-4136-A005-1DC270388132}\RP120\A0034356.exe -> Trojan.Small.cy : Cleaned with backup
    C:\System Volume Information\_restore{66F4B82B-5647-4136-A005-1DC270388132}\RP158\A0038965.dll -> Spyware.WinAD : Cleaned with backup
    C:\System Volume Information\_restore{66F4B82B-5647-4136-A005-1DC270388132}\RP158\A0038966.dll -> Spyware.WinAD : Cleaned with backup
    C:\System Volume Information\_restore{66F4B82B-5647-4136-A005-1DC270388132}\RP158\A0038967.exe -> Spyware.WinAD : Cleaned with backup


    ::Report End
     
  5. just4play

    just4play Regular member

    Joined:
    Dec 31, 2005
    Messages:
    137
    Likes Received:
    0
    Trophy Points:
    26
    sitten aboutbuster,
    jos ymmärsin oikeen niin tässä sen raportti:

    AboutBuster 6.0
    Scan started on [10.1.2006] at [22:23:18]
    -------------------------------------------------------------
    Internet Explorer Instances Terminated!
    HomeSearch Service stopped if present
    -------------------------------------------------------------
    Streams(ADS) not scanned: System not NTFS
    -------------------------------------------------------------
    No Files Found!
    -------------------------------------------------------------
    Scan was COMPLETED SUCCESSFULLY at 22:25:41


    AboutBuster 6.0
    Scan started on [10.1.2006] at [22:27:12]
    -------------------------------------------------------------
    Internet Explorer Instances Terminated!
    HomeSearch Service stopped if present
    -------------------------------------------------------------
    Streams(ADS) not scanned: System not NTFS
    -------------------------------------------------------------
    No Files Found!
    -------------------------------------------------------------
    Scan was COMPLETED SUCCESSFULLY at 22:29:35


     
  6. spertti

    spertti Active member

    Joined:
    Jun 1, 2005
    Messages:
    1,222
    Likes Received:
    0
    Trophy Points:
    66
    Laita myös se HjT-loki

    Poista nuo kansiot. Vikasiedossa, jos ei muuten suostu lähtemään
    C:\Program Files\====>180searchassistant<====
    C:\Program Files\====>Internet Optimizer<====
     
    Last edited: Jan 10, 2006
  7. just4play

    just4play Regular member

    Joined:
    Dec 31, 2005
    Messages:
    137
    Likes Received:
    0
    Trophy Points:
    26
    en ymmärrä mutta en tainnut saada siitä cwshedderistä mitään logii! osasinko tehdä jotain sitten väärin?! en muista mitä se sano tarkastuksen jälkeen.. katsotaan tarviiko sitä ajaa sillä uudelleen... !!
     
  8. spertti

    spertti Active member

    Joined:
    Jun 1, 2005
    Messages:
    1,222
    Likes Received:
    0
    Trophy Points:
    66
    Laita nyt kuitenkin se HjT-loki, niin nähdään lähtikö örkit pelkästään Ewidolla. Ajoitko tuon Aboutbusterin ennen Ewidoa, ja kaksi kertaa niinkuin -kemisti- neuvoi?
     
  9. just4play

    just4play Regular member

    Joined:
    Dec 31, 2005
    Messages:
    137
    Likes Received:
    0
    Trophy Points:
    26
    joo ajoin joo.. kaks kertaa ja yritin löytää noita poistettavia tiedostoja muttei löytyny. laitoin kyllä piilotiedostotkin näkyviin.. mutta huono tsäkä! miten poistan sen f-securen? vikasietotilassa vai miten?


    Logfile of HijackThis v1.99.1
    Scan saved at 3:17:42, on 11.1.2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\ewido anti-malware\ewidoctrl.exe
    C:\Program Files\F-Secure Internet Security\fswsclds.exe
    C:\Program Files\Norton AntiVirus\navapsvc.exe
    C:\Program Files\Norton AntiVirus\SAVScan.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\system32\fxssvc.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\SOUNDMAN.EXE
    C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
    C:\PROGRA~1\LAUNCH~1\QtZpAcer.EXE
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\Netscape\Netscape\Netscp.exe
    C:\Program Files\program\soffice.exe
    C:\HJT\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
    O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fi\msntb.dll
    O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fi\msntb.dll
    O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
    O4 - HKLM\..\Run: [LaunchApp] Alaunch
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
    O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\QtZpAcer.EXE
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\F-Secure Internet Security\Common\FSM32.EXE" /splash
    O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\F-Secure Internet Security\TNB\TNBUtil.exe" /CHECKALL
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - Startup: OpenOffice.org 1.1.4.lnk = C:\Program Files\program\quickstart.exe
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
    O16 - DPF: {9CCE3B43-4DE0-4236-A84E-108CA848EE6A} (WebCam Control) - http://www.webcamnow.com/broadcast/ActiveXWebCam.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    O16 - DPF: {D719897A-B07A-4C0C-AEA9-9B663A28DFCB} (iTunesDetector Class) - http://ax.phobos.apple.com.edgesuite.net/detection/ITDetector.cab
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
    O23 - Service: F-Secure Gatekeeper Handler Starter - F-Secure Corp. - C:\Program Files\F-Secure Internet Security\Anti-Virus\fsgk32st.exe
    O23 - Service: fsbwsys - Unknown owner - C:\Program Files\F-Secure Internet Security\backweb\4476822\program\fsbwsys.exe (file missing)
    O23 - Service: F-Secure Anti-Virus Firewall Daemon (FSDFWD) - Unknown owner - C:\Program Files\F-Secure Internet Security\FWES\Program\fsdfwd.exe (file missing)
    O23 - Service: F-Secure Management Agent (FSMA) - F-Secure Corporation - C:\Program Files\F-Secure Internet Security\Common\FSMA32.EXE
    O23 - Service: F-Secure Windows Security Center Legacy Detection Service (Fswsclds) - F-Secure Corporation - C:\Program Files\F-Secure Internet Security\fswsclds.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
    O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
    O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe

     
  10. spertti

    spertti Active member

    Joined:
    Jun 1, 2005
    Messages:
    1,222
    Likes Received:
    0
    Trophy Points:
    66
    Loki on ainakin nyt puhdas. katson kohta tuon F-securen poiston vielä. Malttia =)

    Doddiin...

    Kokeile ensin poistaa se ihan ohjauspaneelin kautta jos näkyy. Jos ei ole niin tee näin:

    Käynnistä > suorita > services.msc > tuplaklikkaa näitä, valitse seis ja käynnistymistavaksi ei käytössä. Eli siis joudut tekemään nämä kaikki erikseen.

    F-Secure Internet Security
    F-Secure Windows Security Center Legacy Detection Service
    F-Secure Management Agent
    F-Secure Anti-Virus Firewall Daemon
    fsbwsys / F-Secure Internet Security ( voi olla kumman niminen vain )
    F-Secure Gatekeeper Handler Starter

    Käynnistä kone uudelleen, ja laita uusi loki, niin tarkistan lähtivätkö pois.
     
    Last edited: Jan 10, 2006
  11. spertti

    spertti Active member

    Joined:
    Jun 1, 2005
    Messages:
    1,222
    Likes Received:
    0
    Trophy Points:
    66
    Tuli sitten jotenkin älykkäästi laitettua tuplana ohjeet =)
     
    Last edited: Jan 10, 2006
  12. just4play

    just4play Regular member

    Joined:
    Dec 31, 2005
    Messages:
    137
    Likes Received:
    0
    Trophy Points:
    26
    eipä tainnut lähteä tuolla tavalla! näyttää vielä olevan systeemit paikallaan! vai olisko niitä pitänyt tosta hjt:stä poistaa vielä.. ?!


    Logfile of HijackThis v1.99.1
    Scan saved at 4:10:55, on 11.1.2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\ewido anti-malware\ewidoctrl.exe
    C:\Program Files\Norton AntiVirus\navapsvc.exe
    C:\Program Files\Norton AntiVirus\SAVScan.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\SOUNDMAN.EXE
    C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
    C:\PROGRA~1\LAUNCH~1\QtZpAcer.EXE
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\program\soffice.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\HJT\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
    O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fi\msntb.dll
    O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fi\msntb.dll
    O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
    O4 - HKLM\..\Run: [LaunchApp] Alaunch
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
    O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\QtZpAcer.EXE
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [F-Secure Manager] "C:\Program Files\F-Secure Internet Security\Common\FSM32.EXE" /splash
    O4 - HKLM\..\Run: [F-Secure TNB] "C:\Program Files\F-Secure Internet Security\TNB\TNBUtil.exe" /CHECKALL
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - Startup: OpenOffice.org 1.1.4.lnk = C:\Program Files\program\quickstart.exe
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
    O16 - DPF: {9CCE3B43-4DE0-4236-A84E-108CA848EE6A} (WebCam Control) - http://www.webcamnow.com/broadcast/ActiveXWebCam.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    O16 - DPF: {D719897A-B07A-4C0C-AEA9-9B663A28DFCB} (iTunesDetector Class) - http://ax.phobos.apple.com.edgesuite.net/detection/ITDetector.cab
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
    O23 - Service: fsbwsys - Unknown owner - C:\Program Files\F-Secure Internet Security\backweb\4476822\program\fsbwsys.exe (file missing)
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
    O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
    O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe

     
    Last edited: Jan 10, 2006
  13. spertti

    spertti Active member

    Joined:
    Jun 1, 2005
    Messages:
    1,222
    Likes Received:
    0
    Trophy Points:
    66
    Mitä? Kaikki muuthan lähtivät paitsi tämä =)

    O23 - Service: fsbwsys - Unknown owner - C:\Program Files\F-Secure Internet Security\backweb\4476822\program\fsbwsys.exe (file missing)

    Fixaa tuo HjT:lla, ja boottaa kone. Ota uusi loki, ja katso poistuiko?
    Jos ei lähtenyt, niin yritäpä etsiä tuo serviceistä, ja tehdä niinkuin tuossa aiemmin jo neuvoin.

    Löytyikös sieltä ohjauspaneelista muuten niitä F-Securen juttuja?
     
  14. just4play

    just4play Regular member

    Joined:
    Dec 31, 2005
    Messages:
    137
    Likes Received:
    0
    Trophy Points:
    26
    jäihän tonne o4- juttuihin f-secure manageri tai jotain...
    no fixaan sitten noi kaikki f-secure jutut ja kastotaan kuinka käy!!

    ja tossa uudistettu eli fixasin ne 04- whatever - jututkin!

    Logfile of HijackThis v1.99.1
    Scan saved at 4:40:02, on 11.1.2006
    Platform: Windows XP SP2 (WinNT 5.01.2600)
    MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

    Running processes:
    C:\WINDOWS\System32\smss.exe
    C:\WINDOWS\system32\winlogon.exe
    C:\WINDOWS\system32\services.exe
    C:\WINDOWS\system32\lsass.exe
    C:\WINDOWS\system32\svchost.exe
    C:\WINDOWS\System32\svchost.exe
    C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    C:\WINDOWS\system32\spoolsv.exe
    C:\Program Files\ewido anti-malware\ewidoctrl.exe
    C:\Program Files\Norton AntiVirus\navapsvc.exe
    C:\Program Files\Norton AntiVirus\SAVScan.exe
    C:\WINDOWS\System32\svchost.exe
    C:\WINDOWS\Explorer.EXE
    C:\WINDOWS\system32\fxssvc.exe
    C:\WINDOWS\SOUNDMAN.EXE
    C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
    C:\PROGRA~1\LAUNCH~1\QtZpAcer.EXE
    C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    C:\Program Files\Common Files\Real\Update_OB\realsched.exe
    C:\Program Files\QuickTime\qttask.exe
    C:\Program Files\Common Files\Symantec Shared\ccApp.exe
    C:\WINDOWS\system32\ctfmon.exe
    C:\Program Files\Messenger\msmsgs.exe
    C:\Program Files\program\soffice.exe
    C:\WINDOWS\system32\wuauclt.exe
    C:\Program Files\Netscape\Netscape\Netscp.exe
    C:\HJT\HijackThis.exe

    R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = localhost
    R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName = Linkit
    O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - C:\PROGRA~1\SPYBOT~1\SDHelper.dll
    O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O2 - BHO: ST - {9394EDE7-C8B5-483E-8773-474BF36AF6E4} - C:\Program Files\MSN Apps\ST\01.03.0000.1005\en-xu\stmain.dll
    O2 - BHO: MSNToolBandBHO - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fi\msntb.dll
    O2 - BHO: NAV Helper - {BDF3E430-B101-42AD-A544-FADC6B084872} - C:\Program Files\Norton AntiVirus\NavShExt.dll
    O3 - Toolbar: MSN - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - C:\Program Files\MSN Apps\MSN Toolbar\01.02.4000.1001\fi\msntb.dll
    O3 - Toolbar: Norton AntiVirus - {42CDD1BF-3FFB-4238-8AD1-7859DF00B1D6} - C:\Program Files\Norton AntiVirus\NavShExt.dll
    O4 - HKLM\..\Run: [LaunchApp] Alaunch
    O4 - HKLM\..\Run: [SoundMan] SOUNDMAN.EXE
    O4 - HKLM\..\Run: [SynTPLpr] C:\Program Files\Synaptics\SynTP\SynTPLpr.exe
    O4 - HKLM\..\Run: [LManager] C:\PROGRA~1\LAUNCH~1\QtZpAcer.EXE
    O4 - HKLM\..\Run: [SunJavaUpdateSched] C:\Program Files\Java\jre1.5.0_06\bin\jusched.exe
    O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
    O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
    O4 - HKLM\..\Run: [ccApp] "C:\Program Files\Common Files\Symantec Shared\ccApp.exe"
    O4 - HKLM\..\Run: [Symantec NetDriver Monitor] C:\PROGRA~1\SYMNET~1\SNDMon.exe /Consumer
    O4 - HKCU\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\ctfmon.exe
    O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
    O4 - Startup: OpenOffice.org 1.1.4.lnk = C:\Program Files\program\quickstart.exe
    O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
    O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
    O12 - Plugin for .spop: C:\Program Files\Internet Explorer\Plugins\NPDocBox.dll
    O16 - DPF: {9A9307A0-7DA4-4DAF-B042-5009F29E09E1} (ActiveScan Installer Class) - http://www.pandasoftware.com/activescan/as5/asinst.cab
    O16 - DPF: {9CCE3B43-4DE0-4236-A84E-108CA848EE6A} (WebCam Control) - http://www.webcamnow.com/broadcast/ActiveXWebCam.cab
    O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - https://download.macromedia.com/pub/shockwave/cabs/flash/swflash.cab
    O16 - DPF: {D719897A-B07A-4C0C-AEA9-9B663A28DFCB} (iTunesDetector Class) - http://ax.phobos.apple.com.edgesuite.net/detection/ITDetector.cab
    O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "C:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
    O23 - Service: Symantec Event Manager (ccEvtMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccEvtMgr.exe
    O23 - Service: Symantec Password Validation (ccPwdSvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccPwdSvc.exe
    O23 - Service: Symantec Settings Manager (ccSetMgr) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\ccSetMgr.exe
    O23 - Service: ewido security suite control - ewido networks - C:\Program Files\ewido anti-malware\ewidoctrl.exe
    O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
    O23 - Service: iPod Service (iPodService) - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
    O23 - Service: Norton AntiVirus Auto Protect Service (navapsvc) - Symantec Corporation - C:\Program Files\Norton AntiVirus\navapsvc.exe
    O23 - Service: SAVScan - Symantec Corporation - C:\Program Files\Norton AntiVirus\SAVScan.exe
    O23 - Service: ScriptBlocking Service (SBService) - Symantec Corporation - C:\PROGRA~1\COMMON~1\SYMANT~1\SCRIPT~1\SBServ.exe
    O23 - Service: Symantec Network Drivers Service (SNDSrvc) - Symantec Corporation - C:\Program Files\Common Files\Symantec Shared\SNDSrvc.exe

     
    Last edited: Jan 10, 2006
  15. spertti

    spertti Active member

    Joined:
    Jun 1, 2005
    Messages:
    1,222
    Likes Received:
    0
    Trophy Points:
    66
    No. Juu niinpä jäi. Ne lähtee ihan fixaamalla pois. Eipä ole oikein silmä terävimmillään tähän aikaan =) Jos ei lähde fixaamalla, niin näin lähtee:

    Käynnistä > suorita > msconfig > käynnistys välilehti > sieltä otat ne sitten pois


    Jos tuo loki on boottaamisen jälkeen otettu, niin hyvältä näyttää.
     
    Last edited: Jan 10, 2006
  16. just4play

    just4play Regular member

    Joined:
    Dec 31, 2005
    Messages:
    137
    Likes Received:
    0
    Trophy Points:
    26
    voiko tuolta program filesseistä poistaa nyt sen f-secure kansion.. ku sinne sellainenkin on jäänyt?

    mikä menettely jos ei sitä kautta poistu.. vai mistä yleensäkin.. ku ei lisää/poista -sovelluksessa niitä ole!
     
  17. spertti

    spertti Active member

    Joined:
    Jun 1, 2005
    Messages:
    1,222
    Likes Received:
    0
    Trophy Points:
    66
    Suosittelisin mielummin käyttämään F-securen omaan työkalua, jos sellainen on tehty. Itse en sellaista tosin tähän hätään mistään löytänyt. Voit toki poistaa ne kansiot käsin, mutta rekisteriarvot jäävät silti kummittelemaan. Ne voit puhdistaa vaikkapa regcleanerillä manuaalisesti. Jos tähän ratkaisuun päädyt niin muista olla varovainen, ja poista vain ne mistä olet aivan varma.
     
  18. aaxxeell

    aaxxeell Regular member

    Joined:
    Jul 28, 2005
    Messages:
    2,145
    Likes Received:
    0
    Trophy Points:
    46
    Onkohan varmasti Nortonissa lisenssi nyt kunnossa? Kun juuri tuntuu F-Secure lähteneen koneelta mutta siittä huolimatta oli kone pahassa kunnossa.

    Onnittelut tässä samalla spertti Senior Member titlestä =)
     
  19. spertti

    spertti Active member

    Joined:
    Jun 1, 2005
    Messages:
    1,222
    Likes Received:
    0
    Trophy Points:
    66
    No voi kiitoksia =)
     

Share This Page