Limewire Virus HELP!

Discussion in 'Malware Help (A Specialist Will Reply)' started by TPATiffan, Jan 31, 2008.

  1. TPATiffan

    TPATiffan Private E-2

    Okay...I made the huge mistake of downloading LimeWire onto my Dell XPS. Now, I have a virus because my laptop will freeze up so bad I can not use it at this point. Even the startup menu takes like 20 minutes to open. I did go to the control panel and add/remove and and uninstalled LimeWire, but as soon as I turn my computer on now it says:

    IMPORTANT- Potential Errors found in system
    During a scan of files at system startup, potential errors in system registry were found.
    p-07-0100 irql: If SYSVER 0xff00024
    NT_Kernel error 1256
    KMODE_EXCEPTION_NOT_HANDLED

    Then LimeWire starts up (somehow) whch I already un-installed!!!!!

    Then a message box opens and reads:

    Your system could become unstable
    A potential problem has been detected and Windows has been shutdown buggy application to prevent damages to your computer.
    ****WXYZ.SYS. Address F73120AE base at C000000, Date stamp 36b072A3
    Kernel Debugger Using: COM2 (Port 0x28f, Beaud rate 192000)

    I am currently using a different computer at this point. I tried to install Norton 360, but it keeps saying I have another program trying to install and it will not let me. Also, 100's of files keep popping up.

    What steps should I take to get rid of LimeWire for GOOD and to make my computer run normal? Or am I screwed??? I am scared to use it at this point. Please Help!

    Oh, and I want to mention I am as computer illiterate as they come. :confused:cry
     
  2. abri

    abri MajorGeek

    Hi TPATiffin!
    Welcome to Major Geeks!

    Did you try going back to a restore point prior to installing LImewire? Before you go into a lengthy clean-up process, try that first. To go back to a previous restore point, go to Start / All Programs / Accessories / System Tools / System Restore, check the box to restore my computer to an earlier time and click next. A calendar will appear with some of the dates highlighted. Select one of the dates from before you did the scan and allow it to run.

    Let me know if this is possible and if it does anything helpful.
    Thanks.
    abri
     
  3. TPATiffan

    TPATiffan Private E-2

    Thanks for your help! I followed the steps you gave, but the only date that was bold was yesterday. It wouldn't let me click on any dates earlier that were not bold. I even tried to go to December to see if any days were bold for that month, but it wouldn't go to past January. I went ahead and restored it with yesterday, ( I had no other options) but of course it didn't really make a difference at all. The same messages came up when it automatically restarted.

    Also, I found a bunch of files (like 500) that will not let me delete in a folder under my documents???
     
  4. abri

    abri MajorGeek

    Hi TPATiffin,
    It's not clear if this is malware. Have you tried booting in Safe Mode by clicking on the F8 button about once every second during bootup until you get the menu which allows you to select boot in safe mode?

    Also, have you tried getting anything from the READ & RUN ME FIRST. In particular, it would help us help you if you can get the MGTools to run. The instructions for these can be found by going to the bottom of the READ & RUN ME page and clicking on the link that applies to your operating system. You'll find the instructions for the MGTools on the page that opens up.

    abri
     
  5. TPATiffan

    TPATiffan Private E-2

    Thanks abri, Sorry about the other thread. I am obviously new to this and I appreciate your time and help!

    I put the computer in safe mode and re-ran the Spyware Doctor scan and the results are:

    There are 14 threats and 483 infections in my computer

    Low Application.TrackngCookies (141 infections)
    Elevated Trojan.Virtumonde (63 infections)
    Low Adware.Advertising (104 infectons)
    Low Spyware.Known_and_Sites (11 infections)
    Low Adware.Mirar (76 infections)
    Low RogueAntiSpyware.AVSystemCare (12 infections)
    Low Adware.LeosrvBar (7 infections)
    Info & PUA's Adware.NewdotNet (2 infections)
    Medum Adware.PlayMP3z (16 nfections)
    High Adware.Maxfiles (17 infections)
    Elevated Trojan-Downloader.VB.AWJ (1 infections)
    Medium Trojan.Agent.AOY (28 infections)
    Medium Trojan-Downloader.ConHook ( 2 infections)
    Medium Trojan-Generc (3 infections)

    I am not sure how much help that is or what it means besides...major issues! I am currently looking at the READ & RUN ME FIRST, but I don't know what the MGTools are or if I can get that to run in safe mode???
     
  6. abri

    abri MajorGeek

    Hi TPATiffin,
    If you hit the F8 key while you're booting up, you will get a list of boot options and one of these is safe mode with networking. If you can be in safe mode while you have an internet connection, then you can do a lot. Not everyone has the option, but I would like for you to try that.

    The MGTools are a set of diagnostic scans that allow us to look at certain files on your computer and see if there are some which need to be deleted. The other tools in the READ & RUN ME are tools which actually get rid of things. CCleaner gets rid of temporary files which cause problems and harbor malware. AVG Antispyware looks for certain kinds of viruses and for tracking cookies. Combofix looks for and gets rid of a lot of things. Spybot S&D also looks through your computer for a whole list of known malware and eliminates most of it.

    Instability can be caused in your system if you have too many programs and in particular if you have more than one antivirus program. If you think you might have more than one antivirus program, please go into Safe Mode and get rid of all but one antivirus program. If Spyware Doctor is the trial version, please uninstall it as well via add/remove programs. Then proceed with the READ & RUN ME instructions if you can and if you can't, please tell me what happens that prevents you doing these tasks. If you find you Can do the instructions, I advise NOT running Combofix in Safe Mode. The others are okay.

    Thanks.
    abri
     
  7. TPATiffan

    TPATiffan Private E-2

    Yes, I was able to go into safe mode with networking and uninstall the trial version of the Spyware Program and another anti-virus program I had running. But, I left the Norton 360, which actually expired. I re-purchased it a few days ago and I haven't been able to install it yet, but hopefully after all of this I will be able to.

    I am about to begin the process of the READ & RUN ME now.

    I will keep you posted!! Thank you!
     
  8. TPATiffan

    TPATiffan Private E-2

    Okay, I didn't get very far. I downloaded the new Java and now I am trying to remove my old program and it won't allow me to. It keeps saying Another installation is already in progress. Complete that installation before proceeding with this install. It actually won't even allow me to remove any program???
     
  9. abri

    abri MajorGeek

    Hi TPATiffin,
    Does the error about something else installing refer to the other Java? You can have both Java's. That's not a problem. You can uninstall the old one later. I'm more interested in seeing if you can get the MGTools to install? Those are the ones on the second page. If you scroll down the first page of the READ & RUN ME and choose the link for your operating system, then on the next page that opens up, you'll see a link for the MGTools. We need to see your logs if possible to see what's going on in your computer. Let me know if either of these is possible.
    Thanks.
    abri
     
  10. TPATiffan

    TPATiffan Private E-2

    No, it doesn't refer to Java. It's been saying that for about a week now and I have no clue what it is referring to. I started to follow the steps with the Windows XP Cleaning procedure. I was able to download all the steps listed, and after the Spybot scan I hit Fix and repair these problems and it got the blue screen stating that the computer had to be shut down..I did make sure I unchecked the Teatimer. I am trying the best I can to follow all of the steps even though I have no clue what I am doing??? Since the computer shutdown should I try the Spybot again or start with the next step AVG Anti-spyware? When I turned my computer back on I got the the box saying Spybot- Search and destroy has detected an important registry entry that has been changed

    Category: System Startup global entry
    Change: Value deleted
    Entry: KernelFaultChek
    Old data: %systemroot%\system32\dumprep 0 -k

    Allow change ? Info Deny change

    I am assuming allow change, but like I said before...I have no clue to what I am doing? UGH!!!!!!!! I will just leave it and await your response.
     
  11. abri

    abri MajorGeek

    TPATiffan!
    Do what works and if something causes a crash, skip that and go on. If you can, try to get the MGTools downloaded and run so you can attach the MGlogs.zip to us.
    abri
     
  12. TPATiffan

    TPATiffan Private E-2

    AVG Anti-Spyware - Scan Report
    ---------------------------------------------------------

    + Created at: 12:49:06 AM 2/5/2008

    + Scan result:



    C:\QooBox\Quarantine\C\WINDOWS\b147.exe.vir -> Downloader.Agent.fjn : Cleaned.
    C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP466\A0094683.exe -> Downloader.Agent.fjn : Cleaned.
    C:\QooBox\Quarantine\C\WINDOWS\b122.exe.vir -> Downloader.Agent.hvj : Cleaned.
    C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP463\A0090343.exe -> Downloader.Agent.hvj : Cleaned.
    C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP464\A0091407.exe -> Downloader.Agent.hvj : Cleaned.
    C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP465\A0094650.exe -> Downloader.Agent.hvj : Cleaned.
    C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP466\A0094682.exe -> Downloader.Agent.hvj : Cleaned.
    C:\QooBox\Quarantine\C\WINDOWS\Fonts\a.zip.vir/Setup.exe -> Downloader.VB.bsa : Cleaned.
    C:\QooBox\Quarantine\C\WINDOWS\Fonts\svchost.exe.vir -> Downloader.VB.bsa : Cleaned.
    C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP466\A0094678.exe -> Downloader.VB.bsa : Cleaned.
    C:\WINDOWS\Fonts\Setup.exe -> Downloader.VB.bsa : Cleaned.
    C:\Program Files\PlayMP3z\PlayMP3.exe -> Not-A-Virus.Adware.Agent : Cleaned.
    C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP461\A0090280.exe -> Not-A-Virus.Downloader.Win32.AdvancedCleaner.b : Cleaned.
    C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP464\A0091427.exe -> Not-A-Virus.Downloader.Win32.AdvancedCleaner.b : Cleaned.
    C:\Program Files\DIGStream\digstream.exe -> Not-A-Virus.Downloader.Win32.DigStream : Cleaned.
    C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP464\A0094508.exe -> Not-A-Virus.Downloader.Win32.WinFixer.ba : Cleaned.
    C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP464\A0094509.exe -> Not-A-Virus.Downloader.Win32.WinFixer.ba : Cleaned.
    :mozilla.102:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.103:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.104:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.105:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.106:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.107:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.108:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.109:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.110:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.111:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.112:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.113:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.114:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.115:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.116:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.117:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.118:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.119:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.120:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.121:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.122:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.123:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.124:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.125:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.126:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.127:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.128:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.129:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.130:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.131:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.132:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.133:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.134:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.135:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.136:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.137:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.138:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.139:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.140:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.141:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.142:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.143:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.144:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.145:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.146:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.147:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.27:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\fzpm9mwd.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.37:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\fzpm9mwd.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.38:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\fzpm9mwd.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.39:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\fzpm9mwd.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.40:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\fzpm9mwd.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.504:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.536:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.558:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.620:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.687:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.97:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.98:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.2o7 : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@2o7[2].txt -> TrackingCookie.2o7 : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@brightcove.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@paypal.112.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@timeinc.122.2o7[1].txt -> TrackingCookie.2o7 : Cleaned.
    :mozilla.450:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
    :mozilla.451:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
    :mozilla.452:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
    :mozilla.902:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
    :mozilla.903:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
    :mozilla.904:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
    :mozilla.905:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@4.adbrite[2].txt -> TrackingCookie.Adbrite : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@adbrite[2].txt -> TrackingCookie.Adbrite : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@ads.adbrite[2].txt -> TrackingCookie.Adbrite : Cleaned.
    :mozilla.786:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Adengage : Cleaned.
    :mozilla.789:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Adengage : Cleaned.
    :mozilla.311:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.312:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.313:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.314:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.315:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.316:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.317:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.318:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@adrevolver[1].txt -> TrackingCookie.Adrevolver : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@media.adrevolver[1].txt -> TrackingCookie.Adrevolver : Cleaned.
    :mozilla.290:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.291:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.292:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.293:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.294:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.41:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\fzpm9mwd.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.42:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\fzpm9mwd.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.43:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\fzpm9mwd.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.44:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\fzpm9mwd.default\cookies.txt -> TrackingCookie.Advertising : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@advertising[1].txt -> TrackingCookie.Advertising : Cleaned.
    :mozilla.53:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
    :mozilla.65:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\fzpm9mwd.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@atdmt[2].txt -> TrackingCookie.Atdmt : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@bluestreak[2].txt -> TrackingCookie.Bluestreak : Cleaned.
    :mozilla.688:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned.
    :mozilla.365:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
    :mozilla.366:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
    :mozilla.367:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
    :mozilla.368:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Burstnet : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@burstnet[1].txt -> TrackingCookie.Burstnet : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@www.burstnet[1].txt -> TrackingCookie.Burstnet : Cleaned.
    :mozilla.519:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.520:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.521:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.522:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.523:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.524:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.525:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.526:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.527:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@casalemedia[2].txt -> TrackingCookie.Casalemedia : Cleaned.
    :mozilla.923:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Clickbank : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@clickbank[2].txt -> TrackingCookie.Clickbank : Cleaned.
    :mozilla.882:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Clickhype : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@ad1.clickhype[1].txt -> TrackingCookie.Clickhype : Cleaned.
    :mozilla.249:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Coremetrics : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@data.coremetrics[1].txt -> TrackingCookie.Coremetrics : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@www.directnetadvertising[2].txt -> TrackingCookie.Directnetadvertising : Cleaned.
    :mozilla.15:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\fzpm9mwd.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
    :mozilla.92:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@doubleclick[1].txt -> TrackingCookie.Doubleclick : Cleaned.
    :mozilla.608:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
    :mozilla.609:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
    :mozilla.924:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
    :mozilla.925:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
    :mozilla.926:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
    :mozilla.927:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
    :mozilla.928:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6walyojdjahp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wbkigpcjaap.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wbliwkajkco.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wcl4cnajcdp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wcliuiazahp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wclouhczaao.stats.esomniture[1].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wclysic5ecq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wfk4uod5wbp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wfkisgajgkp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wfkoojdpgfo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wfkygiajsdq.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wfmiciajsdo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wfmiogdpobo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wfmyclazedp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wgmieldzelp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wjk4ggazwlo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wjkoakdjglp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wjkyolc5who.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wjloapc5kdo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wjlykkd5ogo.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wjmiqkd5chp.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wjny-1kd5gg.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wjny-1kdpwf.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@e-2dj6wjnyomd5iho.stats.esomniture[2].txt -> TrackingCookie.Esomniture : Cleaned.
    :mozilla.557:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
    :mozilla.559:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned.
    :mozilla.370:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
    :mozilla.371:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
    :mozilla.372:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
    :mozilla.373:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
    :mozilla.374:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
    :mozilla.375:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Fastclick : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@fastclick[1].txt -> TrackingCookie.Fastclick : Cleaned.
    :mozilla.153:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
    :mozilla.304:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
    :mozilla.54:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Googleadservices : Cleaned.
    :mozilla.470:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
    :mozilla.471:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
    :mozilla.732:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Hitbox : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@ehg-apollogroup.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@ehg-dig.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@ehg-findlaw.hitbox[2].txt -> TrackingCookie.Hitbox : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@hitbox[1].txt -> TrackingCookie.Hitbox : Cleaned.
    :mozilla.468:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
    :mozilla.469:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Imrworldwide : Cleaned.
    :mozilla.646:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Information : Cleaned.
    :mozilla.883:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Masterstats : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@image.masterstats[1].txt -> TrackingCookie.Masterstats : Cleaned.
    :mozilla.174:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
    :mozilla.175:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@mediaplex[2].txt -> TrackingCookie.Mediaplex : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@auto.search.msn[1].txt -> TrackingCookie.Msn : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@www.myaffiliateprogram[1].txt -> TrackingCookie.Myaffiliateprogram : Cleaned.
    :mozilla.537:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Ne : Cleaned.
    :mozilla.176:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Netflame : Cleaned.
    :mozilla.390:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
    :mozilla.391:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
    :mozilla.392:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Overture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@overture[2].txt -> TrackingCookie.Overture : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@perf.overture[1].txt -> TrackingCookie.Overture : Cleaned.
    :mozilla.224:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    :mozilla.225:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    :mozilla.226:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    :mozilla.227:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    :mozilla.228:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    :mozilla.229:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    :mozilla.235:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    :mozilla.236:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    :mozilla.237:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    :mozilla.238:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    :mozilla.239:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@ads.pointroll[2].txt -> TrackingCookie.Pointroll : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@pro-market[1].txt -> TrackingCookie.Pro-market : Cleaned.
    :mozilla.382:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
    :mozilla.383:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@questionmarket[2].txt -> TrackingCookie.Questionmarket : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@real[2].txt -> TrackingCookie.Real : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@realsearch.real[2].txt -> TrackingCookie.Real : Cleaned.
    :mozilla.533:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
    :mozilla.534:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
    :mozilla.535:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Realmedia : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@realmedia[2].txt -> TrackingCookie.Realmedia : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@web4.realtracker[1].txt -> TrackingCookie.Realtracker : Cleaned.
    :mozilla.644:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Revenue : Cleaned.
    :mozilla.645:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Revenue : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@revenue[1].txt -> TrackingCookie.Revenue : Cleaned.
    :mozilla.155:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
    :mozilla.156:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
    :mozilla.159:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
    :mozilla.160:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
    :mozilla.162:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
    :mozilla.163:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
    :mozilla.165:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
    :mozilla.166:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
    :mozilla.52:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\fzpm9mwd.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
    :mozilla.53:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\fzpm9mwd.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
    :mozilla.54:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\fzpm9mwd.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
    :mozilla.773:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Revsci : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@revsci[2].txt -> TrackingCookie.Revsci : Cleaned.
    :mozilla.592:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
    :mozilla.593:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@edge.ru4[2].txt -> TrackingCookie.Ru4 : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@bs.serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@serving-sys[2].txt -> TrackingCookie.Serving-sys : Cleaned.
    :mozilla.474:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.477:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.478:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.479:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.480:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.481:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.482:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.483:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.484:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.485:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.486:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.487:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.488:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.489:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.490:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.491:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.492:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.493:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.494:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.495:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.496:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@statcounter[2].txt -> TrackingCookie.Statcounter : Cleaned.
    :mozilla.377:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.56:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\fzpm9mwd.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.57:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\fzpm9mwd.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.58:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\fzpm9mwd.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.59:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\fzpm9mwd.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.60:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\fzpm9mwd.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.61:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\fzpm9mwd.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.93:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.94:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.95:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.96:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@anad.tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@tacoda[1].txt -> TrackingCookie.Tacoda : Cleaned.
    :mozilla.625:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
    :mozilla.626:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
    :mozilla.627:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
    :mozilla.628:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
    :mozilla.629:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned.
    :mozilla.19:C:\Documents and Settings\Administrator\Application Data\Mozilla\Firefox\Profiles\fzpm9mwd.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
    :mozilla.19:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@tribalfusion[2].txt -> TrackingCookie.Tribalfusion : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@web-stat[2].txt -> TrackingCookie.Web-stat : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@webstat[1].txt -> TrackingCookie.Web-stat : Cleaned.
    :mozilla.253:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Webtrends : Cleaned.
    :mozilla.255:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Webtrends : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@m.webtrends[2].txt -> TrackingCookie.Webtrends : Cleaned.
    :mozilla.319:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.320:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.321:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.322:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.323:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.324:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.325:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.326:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.327:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.328:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.329:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.330:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.331:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.332:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@ad.yieldmanager[1].txt -> TrackingCookie.Yieldmanager : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@yieldmanager[2].txt -> TrackingCookie.Yieldmanager : Cleaned.
    :mozilla.242:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
    :mozilla.243:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
    :mozilla.244:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
    :mozilla.245:C:\Documents and Settings\Tiffany\Application Data\Mozilla\Firefox\Profiles\bkk7dv91.default\cookies.txt -> TrackingCookie.Zedo : Cleaned.
    C:\Documents and Settings\Tiffany\Cookies\tiffany@zedo[2].txt -> TrackingCookie.Zedo : Cleaned.
    C:\QooBox\Quarantine\C\Program Files\Temporary\kernInst.exe.vir -> Trojan.Agent.edq : Cleaned.
    C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP463\A0090344.exe -> Trojan.Agent.edq : Cleaned.
    C:\System Volume Information\_restore{129201FA-B0AC-49B3-96B2-DEB8B91E727B}\RP466\A0094677.exe -> Trojan.Agent.edq : Cleaned.


    going to do the MGTools now...
     
  13. abri

    abri MajorGeek

    Well, that was helpful! Your computer must be feeling a little bit better! Now, can you get the MGlogs.zip to us and if possible Combofix? Then we should be able to give you directions more specific to your particular computer.
    abri
     
  14. TPATiffan

    TPATiffan Private E-2

    Here is the MGlogs.zip , I hope I did this right.
     

    Attached Files:

  15. TPATiffan

    TPATiffan Private E-2

    And here is the Combofix. I hope this helps!
     

    Attached Files:

  16. abri

    abri MajorGeek

    Hi TPATiffan,
    Please do as much of this as you can. If you can run it in normal mode rather than safe boot, please do. Otherwise, just do what you can in safe mode. You may have to disconnect your computer from the internet physically and turn off any antivirus, antispyware if you aren't able to get some things to work. If you end up doing this, be sure to re-enable any programs before you re-connect to the internet. But try it with everything turned on to start with.

    1) To begin with, please disable Spybot's TeaTimer. This can be done two ways.
    First:
    • Right-click the Spybot Icon in the System Tray (looks like a blue/white calendar with a padlock symbol)
    • If you have the new version 1.5, Click once on Resident Protection, then Right click the Spybot icon again and make sure Resident Protection is now Unchecked. The Spybot icon in the System tray should now be now colorless.
    • If you have Version 1.4, Click on Exit Spybot S&D Resident
    or Second, For Either Version :
    • Open Spybot S&D
    • Click Mode, choose Advanced Mode
    • Go To the bottom of the Vertical Panel on the Left, Click Tools
    • then, also in left panel, click Resident shows a red/white shield.
    • If your firewall raises a question, say OK
    • In the Resident protection status frame, Uncheck the box labeled Resident "Tea-Timer"(Protection of over-all system settings) active
    • OK any prompts.
    • Use File, Exit to terminate Spybot
    2) You cannot install the new Java until you uninstall the old one and reboot your computer. Go to add/remove programs and uninstall the below:

    Viewpoint Media Player
    J2SE Runtime Environment 5.0 Update 3
    Java 2 Runtime Environment, SE v1.4.2_03


    3) Reboot after uninstalling the above.

    4) Install the current version of Sun Java from: Sun Java Runtime Environment


    5) Run C:\MGtools\analyse.exe by double clicking on it. This is really HijackThis (select Do a system scan only) and select the following lines but DO NOT CLICK FIX until you exit all browser sessions including the one you are reading in right now:

    O2 - BHO: BrowsingEnhancer - {5ABBD91B-0215-2FE1-7A7E-753F05B40CB8} - C:\Program Files\BrowsingEnhancer\BrowsingEnhancer-1.dll

    optionally remove the following: (LOM stands for LAN on motherboard)
    O4 - HKLM\..\Run: [ShowLOMControl] 

    After you click fix, just close hijackthis.

    6) Download and install Erunt. Use it to create a backup of your registry.

    7) Please copy the bold text below to notepad. Save it as fixME.reg to your desktop. Be sure the "Save as" type is set to "all files" Once you have saved it double click it and allow it to merge with the registry.
    8) If you do not use Windows Messenger (not to be confused with MSN Messenger!!) I would like you to run Disable/Remove Windows Messenger

    9) Now run ComboFix to remove some malware files. If you cannot get ComboFIx to run, using the below procedure, then reboot your PC first and then find the listed file and delete it yourself.
    • Make sure that combofix.exe that you downloaded while doing the READ & RUN ME is on your Desktop but Do not run it!
      • If it is not on your Desktop, the below will not work.
    • Open Notepad and copy/paste the text in the below code box into it (make sure you scroll all the way down in the code box to get all lines selected ):
    Code:
    File::
    C:\WINDOWS\BMdf5fd940.xml
    C:\WINDOWS\system32\vbzip10.dll
    C:\WINDOWS\mrofinu1188.exe.tmp
    C:\WINDOWS\system32\DE42EF53BC.sys
     
    Folder::
    C:\Program Files\PlayMP3z
    C:\WINDOWS\system32\AppCert
    C:\Temp\cXzz9
    C:\WINDOWS\system32\nGpxx18
    C:\Program Files\BrowsingEnhancer
    
    • Save the above as CFscript.txt and make sure you save it to the same location (should be on your Desktop) as ComboFix.exe
    • At this point, you MUST EXIT ALL BROWSERS NOW before continuing!
    • You should have both the ComboFix.exe and CFScript.txt icons on your Desktop.
    • Now use your mouse to drag CFscript.txt on top of ComboFix.exe
    • Follow the prompts.
    • When it finishes, a log will be produced named c:\combofix.txt
    • I will ask for this log below
    Note:

    Do not mouseclick combofix's window while it is running. That may cause it to stall.


    10) Now run Ccleaner in the default setting with the Windows tab as the one on top!

    11) Please run C:\MGtools\GetLogs.bat and attach the fresh MGlogs.zip it generates along with the Combofix log.


    Let me know how things are running now?

    abri
     
  17. TPATiffan

    TPATiffan Private E-2

    OKay..I got up to step 2. trying to uninstall those 3 programs. My computer will not allow me to uninstall or install anything!! It keeps saying:

    Another installation is already in progress. Complete that installation before proceeding with that install.

    My computer has been saying that since I have been having problems??? I couldn't even install my Norton 360 when I purchased it last week.
     
  18. TPATiffan

    TPATiffan Private E-2

    I went to the task manager and saw that I have 61 Processes. I am sure that I won't be able to run an installer until I clean up the one that crashed, but I don't even know where to begin with that or if there is a way around it. I am not even sure which ones to End Process on???
     
  19. abri

    abri MajorGeek

    Hi TPATiffan,
    Complete all the instructions I gave you that are possible. If you can't do something, skip that step and go on, but tell me what steps didn't work. When you finish, please attach the requested logs. It's important to see if some of what you do in the instructions helps.
    Thanks.
    abri
     
  20. TPATiffan

    TPATiffan Private E-2

    As I doing the Combofix run I got an Application Error saying that the memory could not be "read" click to terminate program, but I will send you what I got from it below.
     

    Attached Files:

  21. TPATiffan

    TPATiffan Private E-2

    My computer is running a lot better. It doesn't freeze up on me anymore. So... I am extremely happy!!! Although, it still will not allow me to install or uninstall any programs...Another installation is already in progress???
     
  22. abri

    abri MajorGeek

    Hi TPATiffan,
    I am happy we're making some progress. There are still some things that need to be done, but before it's possible to continue, I need to understand why your logs look the way they do.

    1) To begin with, why is your hijackthis log practically empty? You have one startup item and the rest are services. Everything else that was in your first hijackthis log is missing! Did you have hijackthis fix things? Did you delete anything directly from the log itself? Did you use a filter within HijackThis? There were things in your first hijackthis log that I didn't ask you to fix and these things are no longer there, so I need to know what happened there.

    2) The MGTools did not run correctly and I'm not sure why. Your Combofix log does not show there being any MGTools folder. There are several things I need to know about this. You said that you've been having trouble installing some things. Combofix installed and so did AVG Antispyware. What happened with the MGTools? Did it install? Did you get any error messages when you installed this? Did you see any of the error messages mentioned on the Using MGtools download page.:

    3) Is there an MGTools folder under C?

    Is the MGTools.exe directly under C and not in the MGTools folder? (It has a little superman icon next to it and is a file not a folder)

    4) When you ran MGtools.exe after you first installed them, did you run this using the superman icon C:\MGTools.exe which is a file directly under C?

    5) Also, within the MGTools folder under C, can you tell me if the following files can be found?
    grep.exe
    locate.com
    ltime.exe

    Thanks for your help and information.
    abri
     
  23. TPATiffan

    TPATiffan Private E-2

    I guess I erased everything. I don't even have sound on my computer anymore, so I apparently I messed up there. I do have a MGTools file under C (with the Superman icon), but when I run it, it says: The Process can not access file because it is being used by another process. And, I checked the folder and I do have the 3 files you asked about in there. I don't know what I did wrong?? I am not sure how some programs will install, but yet my Norton will not and I can not add/remove any programs. My husband will be home tomorrow, so maybe we can restore everything I did and I can just have him start from the beginning if that is possible. Or work with what I have done. Seriously, I couldn't even find the notebook. I had to Google to find out how to get to it. I wasn't kidding when I said I didn't have a clue. I am not sure if I can fix what I already messed up or if I should have him take over. I'm trying the best I can !!!!:***

    I seriously appreciate all the time you have spent with me on this!!!
     
  24. abri

    abri MajorGeek

    Hi TPATiffan,
    The main thing is that there is no panic. It is usually possible, even with an infected computer, to return to an earlier restore point and pick up old files. They will be infected, but they can then be re-cleaned in the right way. It might be a good idea to wait and have him talk to us. Some things got better. This is a good sign.
    Have him post to me when he gets back.
    abri
     

MajorGeeks.Com Menu

Downloads All In One Tweaks \ Android \ Anti-Malware \ Anti-Virus \ Appearance \ Backup \ Browsers \ CD\DVD\Blu-Ray \ Covert Ops \ Drive Utilities \ Drivers \ Graphics \ Internet Tools \ Multimedia \ Networking \ Office Tools \ PC Games \ System Tools \ Mac/Apple/Ipad Downloads

Other News: Top Downloads \ News (Tech) \ Off Base (Other Websites News) \ Way Off Base (Offbeat Stories and Pics)

Social: Facebook \ YouTube \ Twitter \ Tumblr \ Pintrest \ RSS Feeds