my log

Started by Geowil, March 08, 2006, 07:18:18 PM

Previous topic - Next topic

0 Members and 1 Guest are viewing this topic.

Geowil

well heres my log file, you might not ifnd anything, because i think i got spyfalcon out by myself, and i got rid of most of the other stuff lol, found out that i had 2 trojan downloaders, and lots of spyware, prolly from spyfalcon, but im gonna do this just to be sure before i reattach my desktop to the internet.


Logfile of HijackThis v1.99.1
Scan saved at 12:16:18 PM, on 3/8/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
J:\WINDOWS\System32\smss.exe
J:\WINDOWS\system32\winlogon.exe
J:\WINDOWS\system32\services.exe
J:\WINDOWS\system32\lsass.exe
J:\WINDOWS\System32\Ati2evxx.exe
J:\WINDOWS\system32\svchost.exe
J:\WINDOWS\System32\svchost.exe
J:\WINDOWS\system32\spoolsv.exe
J:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
J:\Program Files\Alwil Software\Avast4\ashServ.exe
J:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
J:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
J:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
J:\WINDOWS\System32\CTsvcCDA.exe
J:\Program Files\ewido anti-malware\ewidoctrl.exe
J:\Program Files\MySQL\MySQL Server 5.0\bin\mysqld-nt.exe
J:\WINDOWS\system32\ZoneLabs\vsmon.exe
J:\WINDOWS\system32\Ati2evxx.exe
J:\WINDOWS\Explorer.EXE
J:\WINDOWS\system32\taskmgr.exe
J:\Program Files\Creative\SB Live! 24-bit\Surround Mixer\CTSysVol.exe
J:\Program Files\ATI Technologies\ATI.ACE\cli.exe
J:\Program Files\Support.com\bin\tgcmd.exe
J:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
J:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
J:\WINDOWS\system32\ctfmon.exe
J:\Program Files\Messenger\msmsgs.exe
J:\Documents and Settings\GeoWil\Desktop\HijackThis.exe

O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - J:\PROGRA~1\SPYBOT~1\SDHelper.dll
O3 - Toolbar: Burn4Free Toolbar - {70DE7956-479D-4eb7-8641-2B45774C350E} - J:\Program Files\Burn4Free Toolbar\v2.0.0.4\Burn4Free_Toolbar.dll (file missing)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - J:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (file missing)
O3 - Toolbar: GoGoData AdBuster  - {3EB9C349-7473-48AC-A59B-42F31751974B} - J:\PROGRA~1\GoGoData.com\GOGODA~1\TOMAHA~1.DLL
O4 - HKLM\..\Run: [CTSysVol] J:\Program Files\Creative\SB Live! 24-bit\Surround Mixer\CTSysVol.exe /r
O4 - HKLM\..\Run: [ATICCC] "J:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [tgcmd] "J:\Program Files\Support.com\bin\tgcmd.exe" /server /startmonitor /deaf
O4 - HKLM\..\Run: [Zone Labs Client] J:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKLM\..\Run: [AVG7_CC] J:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [Spy Watcher] "J:\PROGRA~1\FREESP~1\SpyWatcher.exe" -S
O4 - HKLM\..\Run: [avast!] J:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [KAVPersonal50] "J:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize
O4 - HKCU\..\Run: [msnmsgr] "J:\Documents and Settings\GeoWil\Desktop\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] J:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "J:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Steam] "J:\Program Files\Valve\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [GoGoTray.exe] J:\Program Files\GoGoData.com\GoGoData Toolbar\GoGoTray.exe
O4 - Startup: BitTorrent.lnk = J:\Program Files\BitTorrent\bittorrent.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = J:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Yahoo! Search - file:///J:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Yahoo! &Dictionary - file:///J:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///J:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///J:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - J:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - J:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - J:\Program Files\Yahoo!\Common\yiesrvc.dll (file missing)
O9 - Extra button: (no name) - {7B6E4BB4-8464-47CF-9A5B-F82F6B408A6E} - J:\PROGRA~1\GoGoData.com\GOGODA~1\TOMAHA~1.DLL
O9 - Extra 'Tools' menuitem: GoGoData AdBuster  - {7B6E4BB4-8464-47CF-9A5B-F82F6B408A6E} - J:\PROGRA~1\GoGoData.com\GOGODA~1\TOMAHA~1.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - J:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - J:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://pcpitstop.com/pcpitstop/PCPitStop.CAB
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1139259408389
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - J:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "J:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O20 - Winlogon Notify: winsad32 - winsad32.dll (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - J:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - J:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - J:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - Unknown owner - J:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - J:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - J:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - J:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - J:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - J:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - J:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: ewido security suite control - ewido networks - J:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: kavsvc - Kaspersky Lab - J:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe
O23 - Service: MySQL - Unknown owner - J:\Program.exe (file missing)
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - J:\WINDOWS\system32\ZoneLabs\vsmon.exe


Geowil

so i :Win73: all the stuff down?  or do i still have some stuff?

Die Hard

Geowil :)

Run HJT and checkmark this item and click "fix checked" :

   O20 - Winlogon Notify: winsad32 - winsad32.dll (file missing)

Reboot into safe mode (press the F8-key repetedly on bootup) and delete the following file , in bold text :
winsad32.dll  (most likely residing in Windows\System32)
(Don´t be alarmed if you don´t find it, it could just as well already have been removed by any of the scanners)

In order to find it, click (Windowskey+E) and in the toolbar click "Tools>Folder options" and under tab "View" checkmark "Show hidden files and folders" and uncheck "Hide protected system files" and "Hide file extentions for known filetypes"

While still in safe mode, run Ewido and remove what it finds.

Reboot normally and post the Ewido report together with a new HJT-log

Die Hard :)
I create and edit my posts in GS-NOTES

Geowil

---------------------------------------------------------
ewido anti-malware - Scan report
---------------------------------------------------------

+ Created on:         11:48:15 PM, 3/8/2006
+ Report-Checksum:      B9CDE70F

+ Scan result:

   No infected objects found.


::Report End

that was a quick scan, i could do a full scan if you like, though it would take about 6 to 8 hours to finish.


Logfile of HijackThis v1.99.1
Scan saved at 11:24:33 PM, on 3/8/2006
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v6.00 SP2 (6.00.2900.2180)

Running processes:
J:\WINDOWS\System32\smss.exe
J:\WINDOWS\system32\winlogon.exe
J:\WINDOWS\system32\services.exe
J:\WINDOWS\system32\lsass.exe
J:\WINDOWS\system32\svchost.exe
J:\WINDOWS\system32\svchost.exe
J:\WINDOWS\Explorer.EXE
J:\Documents and Settings\GeoWil\Desktop\HijackThis.exe
J:\WINDOWS\system32\NOTEPAD.EXE

O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - J:\PROGRA~1\SPYBOT~1\SDHelper.dll
O3 - Toolbar: Burn4Free Toolbar - {70DE7956-479D-4eb7-8641-2B45774C350E} - J:\Program Files\Burn4Free Toolbar\v2.0.0.4\Burn4Free_Toolbar.dll (file missing)
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - J:\Program Files\Yahoo!\Companion\Installs\cpn0\yt.dll (file missing)
O3 - Toolbar: GoGoData AdBuster  - {3EB9C349-7473-48AC-A59B-42F31751974B} - J:\PROGRA~1\GoGoData.com\GOGODA~1\TOMAHA~1.DLL
O4 - HKLM\..\Run: [CTSysVol] J:\Program Files\Creative\SB Live! 24-bit\Surround Mixer\CTSysVol.exe /r
O4 - HKLM\..\Run: [ATICCC] "J:\Program Files\ATI Technologies\ATI.ACE\cli.exe" runtime -Delay
O4 - HKLM\..\Run: [tgcmd] "J:\Program Files\Support.com\bin\tgcmd.exe" /server /startmonitor /deaf
O4 - HKLM\..\Run: [Zone Labs Client] J:\Program Files\Zone Labs\ZoneAlarm\zlclient.exe
O4 - HKLM\..\Run: [AVG7_CC] J:\PROGRA~1\Grisoft\AVGFRE~1\avgcc.exe /STARTUP
O4 - HKLM\..\Run: [Spy Watcher] "J:\PROGRA~1\FREESP~1\SpyWatcher.exe" -S
O4 - HKLM\..\Run: [avast!] J:\PROGRA~1\ALWILS~1\Avast4\ashDisp.exe
O4 - HKLM\..\Run: [KAVPersonal50] "J:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kav.exe" /minimize
O4 - HKCU\..\Run: [msnmsgr] "J:\Documents and Settings\GeoWil\Desktop\MSN Messenger\msnmsgr.exe" /background
O4 - HKCU\..\Run: [ctfmon.exe] J:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [MSMSGS] "J:\Program Files\Messenger\msmsgs.exe" /background
O4 - HKCU\..\Run: [Steam] "J:\Program Files\Valve\Steam\Steam.exe" -silent
O4 - HKCU\..\Run: [GoGoTray.exe] J:\Program Files\GoGoData.com\GoGoData Toolbar\GoGoTray.exe
O4 - Startup: BitTorrent.lnk = J:\Program Files\BitTorrent\bittorrent.exe
O4 - Global Startup: Adobe Reader Speed Launch.lnk = J:\Program Files\Adobe\Acrobat 7.0\Reader\reader_sl.exe
O8 - Extra context menu item: &Yahoo! Search - file:///J:\Program Files\Yahoo!\Common/ycsrch.htm
O8 - Extra context menu item: Yahoo! &Dictionary - file:///J:\Program Files\Yahoo!\Common/ycdict.htm
O8 - Extra context menu item: Yahoo! &Maps - file:///J:\Program Files\Yahoo!\Common/ycmap.htm
O8 - Extra context menu item: Yahoo! &SMS - file:///J:\Program Files\Yahoo!\Common/ycsms.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - J:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - J:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
O9 - Extra button: Yahoo! Services - {5BAB4B5B-68BC-4B02-94D6-2FC0DE4A7897} - J:\Program Files\Yahoo!\Common\yiesrvc.dll (file missing)
O9 - Extra button: (no name) - {7B6E4BB4-8464-47CF-9A5B-F82F6B408A6E} - J:\PROGRA~1\GoGoData.com\GOGODA~1\TOMAHA~1.DLL
O9 - Extra 'Tools' menuitem: GoGoData AdBuster  - {7B6E4BB4-8464-47CF-9A5B-F82F6B408A6E} - J:\PROGRA~1\GoGoData.com\GOGODA~1\TOMAHA~1.DLL
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - J:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - J:\Program Files\Messenger\msmsgs.exe
O16 - DPF: {00B71CFB-6864-4346-A978-C0A14556272C} (Checkers Class) - http://messenger.zone.msn.com/binary/msgrchkr.cab31267.cab
O16 - DPF: {0E5F0222-96B9-11D3-8997-00104BD12D94} (PCPitstop Utility) - http://pcpitstop.com/pcpitstop/PCPitStop.CAB
O16 - DPF: {14B87622-7E19-4EA8-93B3-97215F77A6BC} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab31267.cab
O16 - DPF: {6414512B-B978-451D-A0D8-FCFDF33E833C} (WUWebControl Class) - http://update.microsoft.com/windowsupdate/v6/V5Controls/en/x86/client/wuweb_site.cab?1139259408389
O16 - DPF: {8E0D4DE5-3180-4024-A327-4DFAD1796A8D} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsClient.cab31267.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://messenger.zone.msn.com/binary/ZIntro.cab32846.cab
O18 - Protocol: ms-help - {314111C7-A502-11D2-BBCA-00C04F8EC294} - J:\Program Files\Common Files\Microsoft Shared\Help\hxds.dll
O18 - Protocol: msnim - {828030A1-22C1-4009-854F-8E305202313F} - "J:\PROGRA~1\MSNMES~1\msgrapp.dll" (file missing)
O23 - Service: avast! iAVS4 Control Service (aswUpdSv) - Unknown owner - J:\Program Files\Alwil Software\Avast4\aswUpdSv.exe
O23 - Service: Ati HotKey Poller - ATI Technologies Inc. - J:\WINDOWS\System32\Ati2evxx.exe
O23 - Service: ATI Smart - Unknown owner - J:\WINDOWS\system32\ati2sgag.exe
O23 - Service: avast! Antivirus - Unknown owner - J:\Program Files\Alwil Software\Avast4\ashServ.exe
O23 - Service: avast! Mail Scanner - Unknown owner - J:\Program Files\Alwil Software\Avast4\ashMaiSv.exe" /service (file missing)
O23 - Service: avast! Web Scanner - Unknown owner - J:\Program Files\Alwil Software\Avast4\ashWebSv.exe" /service (file missing)
O23 - Service: AVG7 Alert Manager Server (Avg7Alrt) - GRISOFT, s.r.o. - J:\PROGRA~1\Grisoft\AVGFRE~1\avgamsvr.exe
O23 - Service: AVG7 Update Service (Avg7UpdSvc) - GRISOFT, s.r.o. - J:\PROGRA~1\Grisoft\AVGFRE~1\avgupsvc.exe
O23 - Service: AVG E-mail Scanner (AVGEMS) - GRISOFT, s.r.o. - J:\PROGRA~1\Grisoft\AVGFRE~1\avgemc.exe
O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - J:\WINDOWS\System32\CTsvcCDA.exe
O23 - Service: ewido security suite control - ewido networks - J:\Program Files\ewido anti-malware\ewidoctrl.exe
O23 - Service: kavsvc - Kaspersky Lab - J:\Program Files\Kaspersky Lab\Kaspersky Anti-Virus Personal\kavsvc.exe
O23 - Service: MySQL - Unknown owner - J:\Program.exe (file missing)
O23 - Service: TrueVector Internet Monitor (vsmon) - Zone Labs, LLC - J:\WINDOWS\system32\ZoneLabs\vsmon.exe


Die Hard

Geowil  :)

Quotethat was a quick scan, i could do a full scan if you like, though it would take about 6 to 8 hours to finish.
That´s long ! :help:
Go and get EmptyTempFolders
Install the program and click "Options" and select "Predefined folders".
Checkmark :
C:\DOCUMENT AND SETTINGS\your account\LOCAL SETTINGS\Temp\
C:\DOCUMENT AND SETTINGS\all other accounts\LOCAL SETTINGS\Temp\
C:\DOCUMENT AND SETTINGS\your account\LOCAL SETTINGS\Temporary Internet files
C:\DOCUMENT AND SETTINGS\all other accounts\LOCAL SETTINGS\Temporary Internet files
C:\Windows\Temp 
Then click "Empty all folders" (blue lightning) to delete the contents in the preset folders.

Die Hard :)

Removing the junk in the internet cache usually speeds up the scanning time considerably.
I create and edit my posts in GS-NOTES

Geowil

im not as sure that its that and not my 500k+ files xD, sucks having a 400 gig hard drive xD.  nyway i did empty that stuff out, one of the folders had about a gig of stuff in it LOL, but there was still some stuff in all of those folders that it couldnt delete, dunno if thats good or bad lol.

Geowil

heres the full scan log, found about 100 tracking cookies :x .

---------------------------------------------------------
ewido anti-malware - Scan report
---------------------------------------------------------

+ Created on:         2:12:17 PM, 3/9/2006
+ Report-Checksum:      5D4E24AA

+ Scan result:

   :mozilla.42:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Overture : Cleaned with backup
   :mozilla.57:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup
   :mozilla.62:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup
   :mozilla.63:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup
   :mozilla.64:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup
   :mozilla.65:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Atdmt : Cleaned with backup
   :mozilla.69:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
   :mozilla.70:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
   :mozilla.72:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
   :mozilla.73:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
   :mozilla.74:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
   :mozilla.75:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Tribalfusion : Cleaned with backup
   :mozilla.97:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Doubleclick : Cleaned with backup
   :mozilla.110:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
   :mozilla.111:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
   :mozilla.112:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
   :mozilla.113:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
   :mozilla.114:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
   :mozilla.115:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
   :mozilla.116:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Mediaplex : Cleaned with backup
   :mozilla.157:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup
   :mozilla.158:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup
   :mozilla.159:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Adbrite : Cleaned with backup
   :mozilla.173:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned with backup
   :mozilla.174:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned with backup
   :mozilla.175:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Euroclick : Cleaned with backup
   :mozilla.178:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned with backup
   :mozilla.179:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
   :mozilla.180:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
   :mozilla.181:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
   :mozilla.182:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
   :mozilla.183:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Pointroll : Cleaned with backup
   :mozilla.184:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
   :mozilla.185:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Adtech : Cleaned with backup
   :mozilla.189:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
   :mozilla.202:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
   :mozilla.203:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
   :mozilla.204:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
   :mozilla.205:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
   :mozilla.206:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Falkag : Cleaned with backup
   :mozilla.223:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
   :mozilla.227:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
   :mozilla.228:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
   :mozilla.229:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Casalemedia : Cleaned with backup
   :mozilla.237:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Com : Cleaned with backup
   :mozilla.255:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Esomniture : Cleaned with backup
   :mozilla.258:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
   :mozilla.259:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
   :mozilla.260:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
   :mozilla.261:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
   :mozilla.262:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Ru4 : Cleaned with backup
   :mozilla.271:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Epilot : Cleaned with backup
   :mozilla.272:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Epilot : Cleaned with backup
   :mozilla.273:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Epilot : Cleaned with backup
   :mozilla.274:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Epilot : Cleaned with backup
   :mozilla.275:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Epilot : Cleaned with backup
   :mozilla.322:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Hypertracker : Cleaned with backup
   :mozilla.323:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Hypertracker : Cleaned with backup
   :mozilla.355:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Komtrack : Cleaned with backup
   :mozilla.375:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
   :mozilla.387:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
   :mozilla.405:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.2o7 : Cleaned with backup
   :mozilla.408:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Paycounter : Cleaned with backup
   :mozilla.410:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Popularix : Cleaned with backup
   :mozilla.411:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned with backup
   :mozilla.412:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Qksrv : Cleaned with backup
   :mozilla.413:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Questionmarket : Cleaned with backup
   :mozilla.427:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Valuead : Cleaned with backup
   :mozilla.428:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Valuead : Cleaned with backup
   :mozilla.429:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Valuead : Cleaned with backup
   :mozilla.433:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Revenue : Cleaned with backup
   :mozilla.450:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
   :mozilla.451:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
   :mozilla.452:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Serving-sys : Cleaned with backup
   :mozilla.470:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
   :mozilla.471:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
   :mozilla.472:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Statcounter : Cleaned with backup
   :mozilla.478:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned with backup
   :mozilla.479:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Tacoda : Cleaned without backup
   :mozilla.481:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.2o7 : Cleaned without backup
   :mozilla.489:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned without backup
   :mozilla.490:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Trafficmp : Cleaned without backup
   :mozilla.501:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Valuead : Cleaned without backup
   :mozilla.502:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Valuead : Cleaned without backup
   :mozilla.507:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned without backup
   :mozilla.508:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Web-stat : Cleaned without backup
   :mozilla.524:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Yadro : Cleaned without backup
   :mozilla.535:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned without backup
   :mozilla.536:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned without backup
   :mozilla.538:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Zedo : Cleaned without backup
   :mozilla.539:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Zedo : Cleaned without backup
   :mozilla.548:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Adition : Cleaned without backup
   :mozilla.549:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Adition : Cleaned without backup
   :mozilla.551:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned without backup
   :mozilla.552:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Yieldmanager : Cleaned without backup
   :mozilla.560:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Falkag : Cleaned without backup
   :mozilla.561:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Falkag : Cleaned without backup
   :mozilla.564:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Enhance : Cleaned without backup
   :mozilla.623:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Tracking101 : Cleaned without backup
   :mozilla.625:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned without backup
   :mozilla.626:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Adrevolver : Cleaned without backup
   :mozilla.644:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned without backup
   :mozilla.645:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Liveperson : Cleaned without backup
   :mozilla.648:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Onestat : Cleaned without backup
   :mozilla.649:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Onestat : Cleaned without backup
   :mozilla.684:J:\Documents and Settings\GeoWil\Application Data\Mozilla\Firefox\Profiles\7nbk3l2i.default\cookies.txt -> TrackingCookie.Burstbeacon : Cleaned without backup


::Report End

Die Hard

Nothing is found there.  :thumbsup:
Thats a good thing. How is your computer running now?
Take it for a drive around the block and come back and report  :D

There are some files in the IE cache that cant be deleted, ie the "index" folder so thats nothing to worry about.

Die Hard :)
I create and edit my posts in GS-NOTES

Geowil

alot better LOL, not as laggy, but some folder still open real slow, or program sortcut icons take a while to load but thats normal for me xD, but sometimes fire fox takes a while to load pages >.< but its nothing that serious lol. nyway thanks lol.