Welcome guest. Before posting on our computer help forum, you must register. Click here it's easy and free.

Author Topic: major problems with computer speed. Need big time help  (Read 7617 times)

0 Members and 1 Guest are viewing this topic.

kile32

    Topic Starter


    Rookie

    • Experience: Beginner
    • OS: Unknown
    major problems with computer speed. Need big time help
    « on: April 10, 2012, 12:06:06 AM »
    Have experienced alot of issues lately with slow speed.  It started about a week after I downloaded Norton Utilities 15.  Already have Norton Security Suite which I believe came with Comcast, my ISP.  I couldn't even attach my scan log from superantispyware.  Everytime I scrolled down to select the file from the desktop file, my internet would suddenly lose connection.  So I had to paste it below.
    Things that started happening ranged from my CTL+ALT+DEL function stopped working. It went to a black screen and then I received an error message.
    Everytime I tried to do a re-boot, the computer wound up with a black screen and would not turn off so I had to turn off at the CPU.
    Sometimes I receive never-ending pop ups from Norton Security which says Email Error and inside the box is foreign language detailing both sender and recipient emails (which none are mine) and what looks to be phishing emails.  Everytime I close one box, another one would pop up.
    I desparately need help.



    SUPERAntiSpyware Scan Log
    http://www.superantispyware.com

    Generated 04/09/2012 at 10:54 PM

    Application Version : 5.0.1146

    Core Rules Database Version : 8431
    Trace Rules Database Version: 6243

    Scan type       : Complete Scan
    Total Scan Time : 01:26:08

    Operating System Information
    Windows Vista Home Premium 32-bit, Service Pack 1 (Build 6.00.6001)
    UAC On - Limited User (Administrator User)

    Memory items scanned      : 759
    Memory threats detected   : 1
    Registry items scanned    : 34531
    Registry threats detected : 1
    File items scanned        : 140031
    File threats detected     : 360

    Trojan.Agent/Gen-FakeRel
       [AmdAgent] C:\WINDOWS\TEMP\TEMP68.EXE
       C:\WINDOWS\TEMP\TEMP68.EXE
       C:\WINDOWS\TEMP\TEMP68.EXE

    Adware.Tracking Cookie
       C:\USERS\KILE\AppData\Roaming\Microsoft\Windows\Cookies\Low\kile@doubleclick[1].txt [ Cookie:kile@doubleclick.net/ ]
       C:\USERS\KILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\KILE@247REALMEDIA[1].TXT [ /247REALMEDIA ]
       C:\USERS\KILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\KILE@AD.YIELDMANAGER[2].TXT [ /AD.YIELDMANAGER ]
       C:\USERS\KILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\KILE@ADVERTISING[2].TXT [ /ADVERTISING ]
       C:\USERS\KILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\KILE@KANOODLE[1].TXT [ /KANOODLE ]
       cdn.tremormedia.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       cdn2.baronsmedia.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       core.insightexpressai.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       crackle.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       ds.serving-sys.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       i.*adult URL* [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       media.mtvnservices.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       media3.onsugar.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       media4.onsugar.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       objects.tremormedia.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       secure-us.imrworldwide.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       tag.blutonicmedia.hiro.tv [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       tag.mediashakers.hiro.tv [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@1SADX[1].TXT [ /1SADX ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@1SADX[2].TXT [ /1SADX ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@1SADX[3].TXT [ /1SADX ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@247REALMEDIA[1].TXT [ /247REALMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@2O7[1].TXT [ /2O7 ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@2O7[2].TXT [ /2O7 ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@2O7[3].TXT [ /2O7 ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@A1.INTERCLICK[1].TXT [ /A1.INTERCLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@A1.INTERCLICK[2].TXT [ /A1.INTERCLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@A1.INTERCLICK[4].TXT [ /A1.INTERCLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.360YIELD[1].TXT [ /AD.360YIELD ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.360YIELD[3].TXT [ /AD.360YIELD ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.DOUBLECLICK[1].TXT [ /AD.DOUBLECLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.WSOD[1].TXT [ /AD.WSOD ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.YIELDMANAGER[1].TXT [ /AD.YIELDMANAGER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.YIELDMANAGER[2].TXT [ /AD.YIELDMANAGER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.YIELDMANAGER[3].TXT [ /AD.YIELDMANAGER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.YIELDMANAGER[5].TXT [ /AD.YIELDMANAGER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD2.ADFARM1.ADITION[1].TXT [ /AD2.ADFARM1.ADITION ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD2.ADFARM1.ADITION[2].TXT [ /AD2.ADFARM1.ADITION ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD2.ADFARM1.ADITION[3].TXT [ /AD2.ADFARM1.ADITION ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD2.ADFARM1.ADITION[5].TXT [ /AD2.ADFARM1.ADITION ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADBRITE[2].TXT [ /ADBRITE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADBRITE[3].TXT [ /ADBRITE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADBRITE[4].TXT [ /ADBRITE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADBRITE[5].TXT [ /ADBRITE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADFARM1.ADITION[1].TXT [ /ADFARM1.ADITION ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADFARM1.ADITION[2].TXT [ /ADFARM1.ADITION ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADFARM1.ADITION[3].TXT [ /ADFARM1.ADITION ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADFARM1.ADITION[5].TXT [ /ADFARM1.ADITION ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADINTERAX[2].TXT [ /ADINTERAX ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADNETWORK[1].TXT [ /ADNETWORK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.ADK2[1].TXT [ /ADS.ADK2 ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.ADK2[3].TXT [ /ADS.ADK2 ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.BLOGTALKRADIO[2].TXT [ /ADS.BLOGTALKRADIO ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.BRIDGETRACK[2].TXT [ /ADS.BRIDGETRACK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.DRIVERDIGITAL[2].TXT [ /ADS.DRIVERDIGITAL ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.FINANCIALCONTENT[1].TXT [ /ADS.FINANCIALCONTENT ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.FOOTAR[2].TXT [ /ADS.FOOTAR ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.FOOTBALLMEDIA[1].TXT [ /ADS.FOOTBALLMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.FOOTBALLMEDIA[2].TXT [ /ADS.FOOTBALLMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.GAMERSMEDIA[1].TXT [ /ADS.GAMERSMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.INTERGI[1].TXT [ /ADS.INTERGI ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.LYCOS[1].TXT [ /ADS.LYCOS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.LYCOS[2].TXT [ /ADS.LYCOS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.LYCOS[3].TXT [ /ADS.LYCOS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.MSV-INC[2].TXT [ /ADS.MSV-INC ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.MSV-INC[3].TXT [ /ADS.MSV-INC ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.PAPERLEAF[1].TXT [ /ADS.PAPERLEAF ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.PIXFUTURE[2].TXT [ /ADS.PIXFUTURE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.POINTROLL[1].TXT [ /ADS.POINTROLL ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.POINTROLL[2].TXT [ /ADS.POINTROLL ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.POINTROLL[3].TXT [ /ADS.POINTROLL ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.POINTROLL[5].TXT [ /ADS.POINTROLL ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.PUBMATIC[1].TXT [ /ADS.PUBMATIC ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.PUBMATIC[2].TXT [ /ADS.PUBMATIC ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.PUBMATIC[3].TXT [ /ADS.PUBMATIC ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.REDORBIT[2].TXT [ /ADS.REDORBIT ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.SHOPSTYLE[1].TXT [ /ADS.SHOPSTYLE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.UNDERTONE[2].TXT [ /ADS.UNDERTONE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.UNDERTONE[3].TXT [ /ADS.UNDERTONE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.UNDERTONE[4].TXT [ /ADS.UNDERTONE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.UNDERTONE[5].TXT [ /ADS.UNDERTONE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS1.ZENOVIAEXCHANGE[2].TXT [ /ADS1.ZENOVIAEXCHANGE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS1.ZENOVIAEXCHANGE[3].TXT [ /ADS1.ZENOVIAEXCHANGE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADSERVER.ADTECHUS[1].TXT [ /ADSERVER.ADTECHUS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADSERVER.ADTECHUS[2].TXT [ /ADSERVER.ADTECHUS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADSERVER.ADTECHUS[3].TXT [ /ADSERVER.ADTECHUS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADSERVER.ADTECHUS[4].TXT [ /ADSERVER.ADTECHUS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADTECH[1].TXT [ /ADTECH ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADTECH[2].TXT [ /ADTECH ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADTECH[3].TXT [ /ADTECH ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADTECH[4].TXT [ /ADTECH ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADULTSWIM[2].TXT [ /ADULTSWIM ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADUP.ROTATOR.HADJ7.ADJUGGLER[1].TXT [ /ADUP.ROTATOR.HADJ7.ADJUGGLER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADUP.ROTATOR.HADJ7.ADJUGGLER[3].TXT [ /ADUP.ROTATOR.HADJ7.ADJUGGLER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADVERTISING.EZANGA[2].TXT [ /ADVERTISING.EZANGA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADVERTISING[1].TXT [ /ADVERTISING ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADVERTISING[2].TXT [ /ADVERTISING ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADVERTISING[3].TXT [ /ADVERTISING ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADVERTISING[4].TXT [ /ADVERTISING ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADXPOSE[1].TXT [ /ADXPOSE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADXPOSE[2].TXT [ /ADXPOSE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADXPOSE[3].TXT [ /ADXPOSE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADXPOSE[4].TXT [ /ADXPOSE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AIM4MEDIA[1].TXT [ /AIM4MEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AMAZON-ADSYSTEM[1].TXT [ /AMAZON-ADSYSTEM ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@APMEBF[1].TXT [ /APMEBF ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@APMEBF[2].TXT [ /APMEBF ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@APMEBF[3].TXT [ /APMEBF ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@APMEBF[4].TXT [ /APMEBF ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AR.ATWOLA[1].TXT [ /AR.ATWOLA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AT.ATWOLA[1].TXT [ /AT.ATWOLA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AT.ATWOLA[2].TXT [ /AT.ATWOLA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AT.ATWOLA[4].TXT [ /AT.ATWOLA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AT.ATWOLA[5].TXT [ /AT.ATWOLA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ATDMT[1].TXT [ /ATDMT ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ATDMT[2].TXT [ /ATDMT ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ATDMT[3].TXT [ /ATDMT ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ATDMT[5].TXT [ /ATDMT ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ATWOLA[1].TXT [ /ATWOLA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AZJMP[1].TXT [ /AZJMP ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BIZZCLICK[1].TXT [ /BIZZCLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BIZZCLICK[2].TXT [ /BIZZCLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BIZZCLICK[3].TXT [ /BIZZCLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BLOG.GOURMETCOUNTRY[2].TXT [ /BLOG.GOURMETCOUNTRY ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BS.SERVING-SYS[1].TXT [ /BS.SERVING-SYS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BS.SERVING-SYS[2].TXT [ /BS.SERVING-SYS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BS.SERVING-SYS[3].TXT [ /BS.SERVING-SYS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BS.SERVING-SYS[5].TXT [ /BS.SERVING-SYS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BURSTBEACON[2].TXT [ /BURSTBEACON ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BURSTNET[1].TXT [ /BURSTNET ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BURSTNET[2].TXT [ /BURSTNET ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BURSTNET[3].TXT [ /BURSTNET ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@BURSTNET[4].TXT [ /BURSTNET ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CASALEMEDIA[1].TXT [ /CASALEMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CASALEMEDIA[2].TXT [ /CASALEMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CASALEMEDIA[4].TXT [ /CASALEMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CASALEMEDIA[5].TXT [ /CASALEMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CDN.JEMAMEDIA[2].TXT [ /CDN.JEMAMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CDN.JEMAMEDIA[3].TXT [ /CDN.JEMAMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CITYGRIDMEDIA[2].TXT [ /CITYGRIDMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CLICK.EXPANDSEARCHANSWERS[1].TXT [ /CLICK.EXPANDSEARCHANSWERS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CLICK.EXPANDSEARCHANSWERS[2].TXT [ /CLICK.EXPANDSEARCHANSWERS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CLICK.EXPANDSEARCHANSWERS[3].TXT [ /CLICK.EXPANDSEARCHANSWERS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CLICK.GET-ANSWERS-FAST[1].TXT [ /CLICK.GET-ANSWERS-FAST ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CLICK.SCOUR[1].TXT [ /CLICK.SCOUR ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CLICK.SEARCHNATION[1].TXT [ /CLICK.SEARCHNATION ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CLICKS.THESPECIALSEARCH[1].TXT [ /CLICKS.THESPECIALSEARCH ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CLICKSOR[1].TXT [ /CLICKSOR ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@COLLECTIVE-MEDIA[1].TXT [ /COLLECTIVE-MEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@COLLECTIVE-MEDIA[2].TXT [ /COLLECTIVE-MEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@COLLECTIVE-MEDIA[4].TXT [ /COLLECTIVE-MEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CONTENT.YIELDMANAGER[1].TXT [ /CONTENT.YIELDMANAGER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CRACKLE[2].TXT [ /CRACKLE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@CRACKLE[3].TXT [ /CRACKLE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@DC.TREMORMEDIA[1].TXT [ /DC.TREMORMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@DC.TREMORMEDIA[2].TXT [ /DC.TREMORMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@DC.TREMORMEDIA[3].TXT [ /DC.TREMORMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@DC.TREMORMEDIA[4].TXT [ /DC.TREMORMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@DMFIND[1].TXT [ /DMFIND ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@DOUBLECLICK[1].TXT [ /DOUBLECLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@DOUBLECLICK[2].TXT [ /DOUBLECLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@DOUBLECLICK[3].TXT [ /DOUBLECLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@DOUBLECLICK[4].TXT [ /DOUBLECLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ECLICKZ[1].TXT [ /ECLICKZ ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ENHANCE[2].TXT [ /ENHANCE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ENHANCE[3].TXT [ /ENHANCE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ENVEROMEDIA[1].TXT [ /ENVEROMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@EV.ADS.POINTROLL[1].TXT [ /EV.ADS.POINTROLL ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@EYEWONDER[2].TXT [ /EYEWONDER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@FASTCLICK[1].TXT [ /FASTCLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@FASTCLICK[2].TXT [ /FASTCLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@FASTCLICK[3].TXT [ /FASTCLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@FASTCLICK[4].TXT [ /FASTCLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@FIDELITY.ROTATOR.HADJ7.ADJUGGLER[1].TXT [ /FIDELITY.ROTATOR.HADJ7.ADJUGGLER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@FILTER.PLUSFIND[1].TXT [ /FILTER.PLUSFIND ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@FINDOLOGY[1].TXT [ /FINDOLOGY ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@FINDOLOGY[2].TXT [ /FINDOLOGY ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@FINDSEARCHLOCATE[2].TXT [ /FINDSEARCHLOCATE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@FINDVICTORIA[2].TXT [ /FINDVICTORIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@GETCLICKY[1].TXT [ /GETCLICKY ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@GETCLICKY[2].TXT [ /GETCLICKY ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@GHMEDIA[1].TXT [ /GHMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@GHMEDIA[3].TXT [ /GHMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@GOCLICKER[1].TXT [ /GOCLICKER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@GOFINDLINK[1].TXT [ /GOFINDLINK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@GOFINDLINK[2].TXT [ /GOFINDLINK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@GOTACHA.ROTATOR.HADJ7.ADJUGGLER[1].TXT [ /GOTACHA.ROTATOR.HADJ7.ADJUGGLER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@GOTACHA.ROTATOR.HADJ7.ADJUGGLER[3].TXT [ /GOTACHA.ROTATOR.HADJ7.ADJUGGLER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@HARRENMEDIANETWORK[1].TXT [ /HARRENMEDIANETWORK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@HARRENMEDIANETWORK[2].TXT [ /HARRENMEDIANETWORK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@HARRENMEDIANETWORK[3].TXT [ /HARRENMEDIANETWORK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@IMRWORLDWIDE[2].TXT [ /IMRWORLDWIDE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@IMRWORLDWIDE[3].TXT [ /IMRWORLDWIDE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@IMRWORLDWIDE[4].TXT [ /IMRWORLDWIDE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@IMRWORLDWIDE[5].TXT [ /IMRWORLDWIDE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@IN.GETCLICKY[1].TXT [ /IN.GETCLICKY ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@IN.GETCLICKY[2].TXT [ /IN.GETCLICKY ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INCSFIND[1].TXT [ /INCSFIND ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INCSFIND[3].TXT [ /INCSFIND ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INDIECLICK[2].TXT [ /INDIECLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INSIGHTEXPRESSAI[1].TXT [ /INSIGHTEXPRESSAI ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INSIGHTEXPRESSAI[2].TXT [ /INSIGHTEXPRESSAI ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INSIGHTEXPRESSAI[3].TXT [ /INSIGHTEXPRESSAI ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INSIGHTEXPRESSAI[4].TXT [ /INSIGHTEXPRESSAI ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INTERCLICK[1].TXT [ /INTERCLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INTERCLICK[2].TXT [ /INTERCLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INTERCLICK[3].TXT [ /INTERCLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INTERMUNDOMEDIA[2].TXT [ /INTERMUNDOMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INTERMUNDOMEDIA[3].TXT [ /INTERMUNDOMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INTERMUNDOMEDIA[4].TXT [ /INTERMUNDOMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INVITEMEDIA[1].TXT [ /INVITEMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INVITEMEDIA[2].TXT [ /INVITEMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INVITEMEDIA[3].TXT [ /INVITEMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@INVITEMEDIA[4].TXT [ /INVITEMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@KANOODLE[1].TXT [ /KANOODLE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@KANOODLE[2].TXT [ /KANOODLE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@KEEPUFIND[1].TXT [ /KEEPUFIND ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@KEEPUFIND[2].TXT [ /KEEPUFIND ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@LEGOLAS-MEDIA[1].TXT [ /LEGOLAS-MEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@LEGOLAS-MEDIA[2].TXT [ /LEGOLAS-MEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@LEGOLAS-MEDIA[3].TXT [ /LEGOLAS-MEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@LUCIDMEDIA[1].TXT [ /LUCIDMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@LUCIDMEDIA[2].TXT [ /LUCIDMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@LUCIDMEDIA[3].TXT [ /LUCIDMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIA.ADFRONTIERS[1].TXT [ /MEDIA.ADFRONTIERS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIA.ADFRONTIERS[2].TXT [ /MEDIA.ADFRONTIERS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIA.ADFRONTIERS[4].TXT [ /MEDIA.ADFRONTIERS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIA6DEGREES[1].TXT [ /MEDIA6DEGREES ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIA6DEGREES[2].TXT [ /MEDIA6DEGREES ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIA6DEGREES[3].TXT [ /MEDIA6DEGREES ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIA6DEGREES[4].TXT [ /MEDIA6DEGREES ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIAPLEX[1].TXT [ /MEDIAPLEX ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIAPLEX[2].TXT [ /MEDIAPLEX ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIAPLEX[3].TXT [ /MEDIAPLEX ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIAPLEX[5].TXT [ /MEDIAPLEX ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIASERVICES-D.OPENXENTERPRISE[1].TXT [ /MEDIASERVICES-D.OPENXENTERPRISE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIASERVICES-D.OPENXENTERPRISE[3].TXT [ /MEDIASERVICES-D.OPENXENTERPRISE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIASERVICES-D.OPENXENTERPRISE[4].TXT [ /MEDIASERVICES-D.OPENXENTERPRISE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MEDIASERVICES-D.OPENXENTERPRISE[5].TXT [ /MEDIASERVICES-D.OPENXENTERPRISE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MICKLEMEDIA[1].TXT [ /MICKLEMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MICKLEMEDIA[2].TXT [ /MICKLEMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MIFIND[1].TXT [ /MIFIND ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MM.CHITIKA[1].TXT [ /MM.CHITIKA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@MYROITRACKING[2].TXT [ /MYROITRACKING ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@NETWORK.REALMEDIA[1].TXT [ /NETWORK.REALMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@NETWORK.REALMEDIA[3].TXT [ /NETWORK.REALMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@NETWORK.REALMEDIA[4].TXT [ /NETWORK.REALMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@NETWORK.REALMEDIA[5].TXT [ /NETWORK.REALMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@NEXTAG[2].TXT [ /NEXTAG ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@OPTIMIZE.INDIECLICK[1].TXT [ /OPTIMIZE.INDIECLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@OVERTURE[2].TXT [ /OVERTURE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@OX-D.AD.REPOFADVERTISING[2].TXT [ /OX-D.AD.REPOFADVERTISING ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@OX-D.ADSERVERMEDIA[1].TXT [ /OX-D.ADSERVERMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@OX-D.ENVEROMEDIA[1].TXT [ /OX-D.ENVEROMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@OX-D.ENVEROMEDIA[2].TXT [ /OX-D.ENVEROMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@OX-D.ENVEROMEDIA[3].TXT [ /OX-D.ENVEROMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@OX-D.FONDNESSMEDIA[1].TXT [ /OX-D.FONDNESSMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@PERFIND[1].TXT [ /PERFIND ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POINTROLL[1].TXT [ /POINTROLL ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POINTROLL[2].TXT [ /POINTROLL ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POINTROLL[3].TXT [ /POINTROLL ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@POINTROLL[5].TXT [ /POINTROLL ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@PRO-MARKET[1].TXT [ /PRO-MARKET ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@PRO-MARKET[3].TXT [ /PRO-MARKET ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@PRO-MARKET[4].TXT [ /PRO-MARKET ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@PRO-MARKET[5].TXT [ /PRO-MARKET ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@QUESTIONMARKET[1].TXT [ /QUESTIONMARKET ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@QUESTIONMARKET[2].TXT [ /QUESTIONMARKET ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@QUESTIONMARKET[3].TXT [ /QUESTIONMARKET ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@QUESTIONMARKET[4].TXT [ /QUESTIONMARKET ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@REALMEDIA[1].TXT [ /REALMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@REALMEDIA[2].TXT [ /REALMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@REALMEDIA[3].TXT [ /REALMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@REDORBIT[2].TXT [ /REDORBIT ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@REVENUEMANTRA[1].TXT [ /REVENUEMANTRA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@REVSCI[1].TXT [ /REVSCI ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@REVSCI[2].TXT [ /REVSCI ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@REVSCI[3].TXT [ /REVSCI ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@REVSCI[4].TXT [ /REVSCI ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ROTATOR.ADJUGGLER[1].TXT [ /ROTATOR.ADJUGGLER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@RU4[1].TXT [ /RU4 ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@RU4[2].TXT [ /RU4 ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@RU4[4].TXT [ /RU4 ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@RU4[5].TXT [ /RU4 ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@S2.TRAFFICNO[2].TXT [ /S2.TRAFFICNO ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@S3.TRAFFICNO[1].TXT [ /S3.TRAFFICNO ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@S3.TRAFFICNO[2].TXT [ /S3.TRAFFICNO ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@S3.TRAFFICNO[3].TXT [ /S3.TRAFFICNO ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SEARCH.ECLICKZ[2].TXT [ /SEARCH.ECLICKZ ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SERVER.CPMSTAR[1].TXT [ /SERVER.CPMSTAR ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SERVER.CPMSTAR[2].TXT [ /SERVER.CPMSTAR ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SERVING-SYS[1].TXT [ /SERVING-SYS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SERVING-SYS[2].TXT [ /SERVING-SYS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SERVING-SYS[3].TXT [ /SERVING-SYS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SERVING-SYS[4].TXT [ /SERVING-SYS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SMASHFIND[1].TXT [ /SMASHFIND ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SPECIFICCLICK[1].TXT [ /SPECIFICCLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SPECIFICCLICK[2].TXT [ /SPECIFICCLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@SPECIFICCLICK[3].TXT [ /SPECIFICCLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@STAT.ONESTAT[2].TXT [ /STAT.ONESTAT ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@STATCOUNTER[1].TXT [ /STATCOUNTER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@STATCOUNTER[2].TXT [ /STATCOUNTER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@STATCOUNTER[3].TXT [ /STATCOUNTER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@STATCOUNTER[5].TXT [ /STATCOUNTER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@STATIC.GETCLICKY[1].TXT [ /STATIC.GETCLICKY ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@STATIC.GETCLICKY[2].TXT [ /STATIC.GETCLICKY ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@STATSE.WEBTRENDSLIVE[2].TXT [ /STATSE.WEBTRENDSLIVE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@STEELHOUSEMEDIA[2].TXT [ /STEELHOUSEMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@T.POINTROLL[1].TXT [ /T.POINTROLL ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@T.POINTROLL[3].TXT [ /T.POINTROLL ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TACODA.AT.ATWOLA[2].TXT [ /TACODA.AT.ATWOLA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TACODA.AT.ATWOLA[3].TXT [ /TACODA.AT.ATWOLA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TACODA[1].TXT [ /TACODA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TACODA[2].TXT [ /TACODA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TAG.BLUTONICMEDIA.HIRO[2].TXT [ /TAG.BLUTONICMEDIA.HIRO ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TAG.MEDIASHAKERS.HIRO[1].TXT [ /TAG.MEDIASHAKERS.HIRO ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TECHNORATIMEDIA[2].TXT [ /TECHNORATIMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TECHNORATIMEDIA[3].TXT [ /TECHNORATIMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TECHNORATIMEDIA[4].TXT [ /TECHNORATIMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TRACKING.CALLMEASUREMENT[1].TXT [ /TRACKING.CALLMEASUREMENT ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TRAFFICENGINE[1].TXT [ /TRAFFICENGINE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TRAFFICMP[1].TXT [ /TRAFFICMP ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TRAFFICMP[2].TXT [ /TRAFFICMP ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TRAFFICMP[3].TXT [ /TRAFFICMP ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TRAVELADVERTISING[1].TXT [ /TRAVELADVERTISING ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TRIBALFUSION[1].TXT [ /TRIBALFUSION ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TRIBALFUSION[2].TXT [ /TRIBALFUSION ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TRIBALFUSION[3].TXT [ /TRIBALFUSION ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TRIBALFUSION[4].TXT [ /TRIBALFUSION ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@TRISEPTSOLUTIONS.122.2O7[1].TXT [ /TRISEPTSOLUTIONS.122.2O7 ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@UIADSERVER[1].TXT [ /UIADSERVER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@UIADSERVER[2].TXT [ /UIADSERVER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@UNRULYMEDIA[2].TXT [ /UNRULYMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@VIDASCO.ROTATOR.HADJ7.ADJUGGLER[2].TXT [ /VIDASCO.ROTATOR.HADJ7.ADJUGGLER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.ADULTSWIM[2].TXT [ /WWW.ADULTSWIM ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.BURSTBEACON[2].TXT [ /WWW.BURSTBEACON ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.BURSTNET[1].TXT [ /WWW.BURSTNET ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.BURSTNET[2].TXT [ /WWW.BURSTNET ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.BURSTNET[4].TXT [ /WWW.BURSTNET ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.BURSTNET[5].TXT [ /WWW.BURSTNET ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.CRACKLE[1].TXT [ /WWW.CRACKLE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.CRACKLE[2].TXT [ /WWW.CRACKLE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.CRACKLE[3].TXT [ /WWW.CRACKLE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.CRACKLE[4].TXT [ /WWW.CRACKLE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.ENVEROMEDIA[1].TXT [ /WWW.ENVEROMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.GOOGLEADSERVICES[1].TXT [ /WWW.GOOGLEADSERVICES ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.GOOGLEADSERVICES[2].TXT [ /WWW.GOOGLEADSERVICES ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@WWW.GOOGLEADSERVICES[4].TXT [ /WWW.GOOGLEADSERVICES ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@XM.XTENDMEDIA[1].TXT [ /XM.XTENDMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@XML.TRAFFICENGINE[1].TXT [ /XML.TRAFFICENGINE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@YIELDMANAGER[1].TXT [ /YIELDMANAGER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@YIELDMANAGER[2].TXT [ /YIELDMANAGER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@YIELDMANAGER[3].TXT [ /YIELDMANAGER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@YIELDMANAGER[4].TXT [ /YIELDMANAGER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ZEDO[1].TXT [ /ZEDO ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ZEDO[2].TXT [ /ZEDO ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ZEDO[4].TXT [ /ZEDO ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ZEDO[5].TXT [ /ZEDO ]

    Trojan.Agent/Gen-FakeAlert[Local]
       C:\USERS\KILE\APPDATA\LOCAL\TEMP\_UNPS.EXE
    U





    SUPERAntiSpyware Scan Log
    http://www.superantispyware.com

    Generated 04/09/2012 at 10:54 PM

    Application Version : 5.0.1146

    Core Rules Database Version : 8431
    Trace Rules Database Version: 6243

    Scan type       : Complete Scan
    Total Scan Time : 01:26:08

    Operating System Information
    Windows Vista Home Premium 32-bit, Service Pack 1 (Build 6.00.6001)
    UAC On - Limited User (Administrator User)

    Memory items scanned      : 759
    Memory threats detected   : 1
    Registry items scanned    : 34531
    Registry threats detected : 1
    File items scanned        : 140031
    File threats detected     : 360

    Trojan.Agent/Gen-FakeRel
       [AmdAgent] C:\WINDOWS\TEMP\TEMP68.EXE
       C:\WINDOWS\TEMP\TEMP68.EXE
       C:\WINDOWS\TEMP\TEMP68.EXE

    Adware.Tracking Cookie
       C:\USERS\KILE\AppData\Roaming\Microsoft\Windows\Cookies\Low\kile@doubleclick[1].txt [ Cookie:kile@doubleclick.net/ ]
       C:\USERS\KILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\KILE@247REALMEDIA[1].TXT [ /247REALMEDIA ]
       C:\USERS\KILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\KILE@AD.YIELDMANAGER[2].TXT [ /AD.YIELDMANAGER ]
       C:\USERS\KILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\KILE@ADVERTISING[2].TXT [ /ADVERTISING ]
       C:\USERS\KILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\LOW\KILE@KANOODLE[1].TXT [ /KANOODLE ]
       cdn.tremormedia.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       cdn2.baronsmedia.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       core.insightexpressai.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       crackle.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       ds.serving-sys.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       i.*adult URL* [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       media.mtvnservices.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       media3.onsugar.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       media4.onsugar.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       objects.tremormedia.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       secure-us.imrworldwide.com [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       tag.blutonicmedia.hiro.tv [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       tag.mediashakers.hiro.tv [ C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\Q3CJS4SP ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@1SADX[1].TXT [ /1SADX ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@1SADX[2].TXT [ /1SADX ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@1SADX[3].TXT [ /1SADX ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@247REALMEDIA[1].TXT [ /247REALMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@2O7[1].TXT [ /2O7 ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@2O7[2].TXT [ /2O7 ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@2O7[3].TXT [ /2O7 ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@A1.INTERCLICK[1].TXT [ /A1.INTERCLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@A1.INTERCLICK[2].TXT [ /A1.INTERCLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@A1.INTERCLICK[4].TXT [ /A1.INTERCLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.360YIELD[1].TXT [ /AD.360YIELD ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.360YIELD[3].TXT [ /AD.360YIELD ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.DOUBLECLICK[1].TXT [ /AD.DOUBLECLICK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.WSOD[1].TXT [ /AD.WSOD ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.YIELDMANAGER[1].TXT [ /AD.YIELDMANAGER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.YIELDMANAGER[2].TXT [ /AD.YIELDMANAGER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.YIELDMANAGER[3].TXT [ /AD.YIELDMANAGER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD.YIELDMANAGER[5].TXT [ /AD.YIELDMANAGER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD2.ADFARM1.ADITION[1].TXT [ /AD2.ADFARM1.ADITION ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD2.ADFARM1.ADITION[2].TXT [ /AD2.ADFARM1.ADITION ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD2.ADFARM1.ADITION[3].TXT [ /AD2.ADFARM1.ADITION ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AD2.ADFARM1.ADITION[5].TXT [ /AD2.ADFARM1.ADITION ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADBRITE[2].TXT [ /ADBRITE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADBRITE[3].TXT [ /ADBRITE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADBRITE[4].TXT [ /ADBRITE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADBRITE[5].TXT [ /ADBRITE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADFARM1.ADITION[1].TXT [ /ADFARM1.ADITION ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADFARM1.ADITION[2].TXT [ /ADFARM1.ADITION ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADFARM1.ADITION[3].TXT [ /ADFARM1.ADITION ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADFARM1.ADITION[5].TXT [ /ADFARM1.ADITION ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADINTERAX[2].TXT [ /ADINTERAX ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADNETWORK[1].TXT [ /ADNETWORK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.ADK2[1].TXT [ /ADS.ADK2 ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.ADK2[3].TXT [ /ADS.ADK2 ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.BLOGTALKRADIO[2].TXT [ /ADS.BLOGTALKRADIO ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.BRIDGETRACK[2].TXT [ /ADS.BRIDGETRACK ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.DRIVERDIGITAL[2].TXT [ /ADS.DRIVERDIGITAL ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.FINANCIALCONTENT[1].TXT [ /ADS.FINANCIALCONTENT ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.FOOTAR[2].TXT [ /ADS.FOOTAR ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.FOOTBALLMEDIA[1].TXT [ /ADS.FOOTBALLMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.FOOTBALLMEDIA[2].TXT [ /ADS.FOOTBALLMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.GAMERSMEDIA[1].TXT [ /ADS.GAMERSMEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.INTERGI[1].TXT [ /ADS.INTERGI ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.LYCOS[1].TXT [ /ADS.LYCOS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.LYCOS[2].TXT [ /ADS.LYCOS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.LYCOS[3].TXT [ /ADS.LYCOS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.MSV-INC[2].TXT [ /ADS.MSV-INC ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.MSV-INC[3].TXT [ /ADS.MSV-INC ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.PAPERLEAF[1].TXT [ /ADS.PAPERLEAF ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.PIXFUTURE[2].TXT [ /ADS.PIXFUTURE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.POINTROLL[1].TXT [ /ADS.POINTROLL ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.POINTROLL[2].TXT [ /ADS.POINTROLL ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.POINTROLL[3].TXT [ /ADS.POINTROLL ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.POINTROLL[5].TXT [ /ADS.POINTROLL ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.PUBMATIC[1].TXT [ /ADS.PUBMATIC ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.PUBMATIC[2].TXT [ /ADS.PUBMATIC ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.PUBMATIC[3].TXT [ /ADS.PUBMATIC ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.REDORBIT[2].TXT [ /ADS.REDORBIT ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.SHOPSTYLE[1].TXT [ /ADS.SHOPSTYLE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.UNDERTONE[2].TXT [ /ADS.UNDERTONE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.UNDERTONE[3].TXT [ /ADS.UNDERTONE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.UNDERTONE[4].TXT [ /ADS.UNDERTONE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS.UNDERTONE[5].TXT [ /ADS.UNDERTONE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS1.ZENOVIAEXCHANGE[2].TXT [ /ADS1.ZENOVIAEXCHANGE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADS1.ZENOVIAEXCHANGE[3].TXT [ /ADS1.ZENOVIAEXCHANGE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADSERVER.ADTECHUS[1].TXT [ /ADSERVER.ADTECHUS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADSERVER.ADTECHUS[2].TXT [ /ADSERVER.ADTECHUS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADSERVER.ADTECHUS[3].TXT [ /ADSERVER.ADTECHUS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADSERVER.ADTECHUS[4].TXT [ /ADSERVER.ADTECHUS ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADTECH[1].TXT [ /ADTECH ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADTECH[2].TXT [ /ADTECH ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADTECH[3].TXT [ /ADTECH ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADTECH[4].TXT [ /ADTECH ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADULTSWIM[2].TXT [ /ADULTSWIM ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADUP.ROTATOR.HADJ7.ADJUGGLER[1].TXT [ /ADUP.ROTATOR.HADJ7.ADJUGGLER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADUP.ROTATOR.HADJ7.ADJUGGLER[3].TXT [ /ADUP.ROTATOR.HADJ7.ADJUGGLER ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADVERTISING.EZANGA[2].TXT [ /ADVERTISING.EZANGA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADVERTISING[1].TXT [ /ADVERTISING ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADVERTISING[2].TXT [ /ADVERTISING ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADVERTISING[3].TXT [ /ADVERTISING ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADVERTISING[4].TXT [ /ADVERTISING ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADXPOSE[1].TXT [ /ADXPOSE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADXPOSE[2].TXT [ /ADXPOSE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADXPOSE[3].TXT [ /ADXPOSE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@ADXPOSE[4].TXT [ /ADXPOSE ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AIM4MEDIA[1].TXT [ /AIM4MEDIA ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@AMAZON-ADSYSTEM[1].TXT [ /AMAZON-ADSYSTEM ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@APMEBF[1].TXT [ /APMEBF ]
       C:\WINDOWS\SYSTEM32\CONFIG\SYSTEMPROFILE\APPDATA\ROAMING\MICROSOFT\WINDOWS\COOKIES\SYSTEM@APMEBF[2].TXT [ /APMEBF

    kile32

      Topic Starter


      Rookie

      • Experience: Beginner
      • OS: Unknown
      Re: major problems with computer speed. Need big time help
      « Reply #1 on: April 10, 2012, 12:45:05 AM »
      a couple of things about my computer that I failed to mention:
      Computer is a Dell Insperion 530S
      OS is Windows Vista 32 bit with a service pack 1
      Processor: Genuine Intel(R) CPU 2160 @ 1.80 GHz
      RAM: 2 GB

      kile32

        Topic Starter


        Rookie

        • Experience: Beginner
        • OS: Unknown
        Re: major problems with computer speed. Need big time help
        « Reply #2 on: April 10, 2012, 01:49:24 AM »
        Malwarebytes Anti-Malware 1.61.0.1400
        www.malwarebytes.org

        Database version: v2012.04.04.08

        Windows Vista Service Pack 1 x86 NTFS
        Internet Explorer 8.0.6001.19088
        Kile :: KILE-PC [administrator]

        4/10/2012 2:04:49 AM
        mbam-log-2012-04-10 (02-04-49).txt

        Scan type: Quick scan
        Scan options enabled: Memory | Startup | Registry | File System | Heuristics/Extra | Heuristics/Shuriken | PUP | PUM
        Scan options disabled: P2P
        Objects scanned: 193489
        Time elapsed: 12 minute(s), 45 second(s)

        Memory Processes Detected: 0
        (No malicious items detected)

        Memory Modules Detected: 0
        (No malicious items detected)

        Registry Keys Detected: 0
        (No malicious items detected)

        Registry Values Detected: 0
        (No malicious items detected)

        Registry Data Items Detected: 0
        (No malicious items detected)

        Folders Detected: 0
        (No malicious items detected)

        Files Detected: 0
        (No malicious items detected)

        (end)

        SuperDave

        • Malware Removal Specialist
        • Moderator


        • Sage
        • Thanked: 858
        • Certifications: List
        • Experience: Expert
        • OS: Windows 8
        Re: major problems with computer speed. Need big time help
        « Reply #3 on: April 10, 2012, 11:51:37 AM »
        Hello and welcome to Computer Hope Forum. My name is Dave. I will be helping you out with your particular problem on your computer.

        1. I will be working on your Malware issues. This may or may not solve other issues you have with your machine.
        2. The fixes are specific to your problem and should only be used for this issue on this machine.
        3. If you don't know or understand something, please don't hesitate to ask.
        4. Please DO NOT run any other tools or scans while I am helping you.
        5. It is important that you reply to this thread. Do not start a new topic.
        6. Your security programs may give warnings for some of the tools I will ask you to use. Be assured, any links I give are safe.
        7. Absence of symptoms does not mean that everything is clear.

        If you can't access the internet with your infected computer you will have to download and transfer any programs to the computer you're using now and transfer them to the infected computer with a CD-RW or a USB storage device. I prefer a CD because a storage device can get infected. If you use a storage device hold the shift key down while inserting the USB storage device for about 10 secs. You will also have to transfer the logs you receive back to the good computer using the same method until we can get the computer back on-line.
        *************************************************************************
        Download Security Check by screen317 from one of the following links and save it to your desktop.

        Link 1
        Link 2

        * Double-click Security Check.bat
        * Follow the on-screen instructions inside of the black box.
        * A Notepad document should open automatically called checkup.txt
        * Post the contents of that document in your next reply.

        Note: If a security program requests permission from dig.exe to access the Internet, allow it to do so.

        *************************************************
        Download DDS from HERE or HERE and save it to your desktop.

        Vista users right click on dds and select Run as administrator (you will receive a UAC prompt, please allow it)

        * XP users Double click on dds to run it.
        * If your antivirus or firewall try to block DDS then please allow it to run.
        * When finished DDS will open two (2) logs.
        * Save both reports to your desktop.
        * The instructions here ask you to attach the Attach.txt.



        1) DDS.txt
        2) Attach.txt
        Instead of attaching, please copy/past both logs into your Thread

        Note: DDS will instruct you to post the Attach.txt log as an attachment.
        Please just post it as you would any other log by copying and pasting it into the reply.

        •Close the program window, and delete the program from your desktop.

        Please note: You may have to disable any script protection running if the scan fails to run.
        After downloading the tool, disconnect from the internet and disable all antivirus protection.
        Run the scan, enable your A/V and reconnect to the internet.
        Information on A/V control HERE .Then post your DDS logs. (DDS.txt and Attach.txt )
        Intel(R) Core (TM) i3-3220 CPU 3.30 GHz 8.0 Gb RAM Windows 8 with a dual boot to Windows XP  Home with SP3, Avira  with Windows Firewall & Windows Defender

        kile32

          Topic Starter


          Rookie

          • Experience: Beginner
          • OS: Unknown
          Re: major problems with computer speed. Need big time help
          « Reply #4 on: April 10, 2012, 04:29:55 PM »
          Here are the chekup.txt results attached

          [year+ old attachment deleted by admin]

          SuperDave

          • Malware Removal Specialist
          • Moderator


          • Sage
          • Thanked: 858
          • Certifications: List
          • Experience: Expert
          • OS: Windows 8
          Re: major problems with computer speed. Need big time help
          « Reply #5 on: April 10, 2012, 04:37:54 PM »
          Please do not attach your logs unless absolutely necessary. Copy and paste them in your reply(ies)

          You should download and install Service Pack 2 for Vista.

          Update Your Java (JRE)

          Old versions of Java have vulnerabilities that malware can use to infect your system.


          First Verify your Java Version

          If there are any other version(s) installed then update now.

          Get the new version (if needed)

          If your version is out of date install the newest version of the Sun Java Runtime Environment.

          Note: UNCHECK any pre-checked toolbar and/or software offered with the Java update. The pre-checked toolbars/software are not part of the Java update.

          Be sure to close ALL open web browsers before starting the installation.

          Remove any old versions

          1. Download JavaRa and unzip the file to your Desktop.
          2. Open JavaRA.exe and choose Remove Older Versions
          3. Once complete exit JavaRA.

          Additional Note: The Java Quick Starter (JQS.exe) adds a service to improve the initial startup time of Java applets and applications. To disable the JQS service if you don't want to use it, go to Start > Control Panel > Java > Advanced > Miscellaneous and uncheck the box for Java Quick Starter. Click OK and reboot your computer.
          *******************************************
          Please download the newest version of Adobe Acrobat Reader from Adobe.com

          Before installing: it is important to remove older versions of Acrobat Reader since it does not do so automatically and old versions still leave you vulnerable.
          Go to the Control Panel and enter Add or Remove Programs.
          Search in the list for all previous installed versions of Adobe Acrobat Reader. Uninstall/Remove each of them.

          Once old versions are gone, please install the newest version.
          Intel(R) Core (TM) i3-3220 CPU 3.30 GHz 8.0 Gb RAM Windows 8 with a dual boot to Windows XP  Home with SP3, Avira  with Windows Firewall & Windows Defender

          kile32

            Topic Starter


            Rookie

            • Experience: Beginner
            • OS: Unknown
            Re: major problems with computer speed. Need big time help
            « Reply #6 on: April 10, 2012, 04:42:09 PM »
            .
            DDS (Ver_2011-08-26.01) - NTFSx86
            Internet Explorer: 8.0.6001.19088  BrowserJavaVersion: 1.6.0_24
            Run by Kile at 17:35:15 on 2012-04-10
            Microsoft® Windows Vista™ Home Premium   6.0.6001.1.1252.1.1033.18.2036.228 [GMT -5:00]
            .
            AV: Norton Security Suite *Enabled/Updated* {63DF5164-9100-186D-2187-8DC619EFD8BF}
            SP: Windows Defender *Disabled/Outdated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
            SP: Norton Security Suite *Enabled/Updated* {D8BEB080-B73A-17E3-1B37-B6B462689202}
            FW: Norton Security Suite *Enabled* {5BE4D041-DB6F-1935-0AD8-24F3E73C9FC4}
            .
            ============== Running Processes ===============
            .
            C:\Windows\system32\wininit.exe
            C:\Windows\system32\lsm.exe
            C:\Windows\system32\svchost.exe -k DcomLaunch
            C:\Windows\system32\svchost.exe -k rpcss
            C:\Windows\System32\svchost.exe -k LocalServiceNetworkRestricted
            C:\Windows\System32\svchost.exe -k LocalSystemNetworkRestricted
            C:\Windows\system32\svchost.exe -k netsvcs
            C:\Windows\system32\svchost.exe -k GPSvcGroup
            C:\Windows\system32\SLsvc.exe
            C:\Windows\system32\svchost.exe -k LocalService
            C:\Windows\system32\svchost.exe -k NetworkService
            C:\Windows\System32\spoolsv.exe
            C:\Windows\system32\svchost.exe -k LocalServiceNoNetwork
            C:\Windows\system32\taskeng.exe
            C:\Windows\system32\Dwm.exe
            C:\Windows\system32\taskeng.exe
            C:\Windows\Explorer.EXE
            C:\Windows\RtHDVCpl.exe
            C:\Program Files\HP\HP Software Update\hpwuSchd2.exe
            C:\Windows\System32\igfxtray.exe
            C:\Windows\System32\hkcmd.exe
            C:\Windows\System32\igfxpers.exe
            C:\Windows\ehome\ehtray.exe
            C:\Users\Kile\AppData\Roaming\SanDisk\Sansa Updater\SansaDispatch.exe
            C:\Program Files\SUPERAntiSpyware\SASCORE.EXE
            C:\Program Files\Digital Line Detect\DLG.exe
            C:\Program Files\HP\Digital Imaging\bin\hpqtra08.exe
            C:\Program Files\SecureBackupShare\ComcastSecureBackupSharestat.exe
            C:\Program Files\Common Files\ArcSoft\Connection Service\Bin\ACService.exe
            C:\Windows\system32\igfxsrvc.exe
            C:\Windows\system32\AERTSrv.exe
            C:\Program Files\Common Files\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe
            C:\Program Files\Bonjour\mDNSResponder.exe
            C:\Windows\Microsoft.Net\Framework\v3.0\WPF\PresentationFontCache.exe
            C:\Windows\system32\svchost.exe -k hpdevmgmt
            C:\Program Files\Microsoft LifeCam\MSCamS32.exe
            C:\Program Files\Norton Security Suite\Engine\5.2.0.13\ccSvcHst.exe
            C:\Windows\System32\svchost.exe -k HPZ12
            C:\Windows\System32\svchost.exe -k HPZ12
            C:\Windows\system32\svchost.exe -k NetworkServiceNetworkRestricted
            C:\Program Files\Common Files\Roxio Shared\9.0\SharedCOM\RoxWatch9.exe
            C:\Windows\ehome\ehmsas.exe
            C:\Windows\system32\svchost.exe -k imgsvc
            C:\Windows\System32\svchost.exe -k WerSvcGroup
            C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSVC.EXE
            C:\Program Files\Norton Security Suite\Engine\5.2.0.13\ccSvcHst.exe
            C:\Windows\system32\SearchIndexer.exe
            C:\Windows\system32\DRIVERS\xaudio.exe
            C:\Windows\system32\DllHost.exe
            C:\Program Files\Windows Media Player\wmpnscfg.exe
            C:\Program Files\Windows Media Player\wmpnetwk.exe
            C:\Program Files\Common Files\Microsoft Shared\Windows Live\WLIDSvcM.exe
            C:\Program Files\Internet Explorer\iexplore.exe
            C:\Program Files\Internet Explorer\iexplore.exe
            C:\Program Files\HP\Digital Imaging\bin\hpqSTE08.exe
            C:\Windows\system32\Macromed\Flash\FlashUtil11g_ActiveX.exe
            C:\Program Files\SecureBackupShare\ComcastSecureBackupSharebackup.exe
            C:\Program Files\SecureBackupShare\ComcastSecureBackupSharebackup.exe
            C:\Windows\system32\SearchProtocolHost.exe
            C:\Windows\system32\wuauclt.exe
            C:\Windows\system32\wbem\wmiprvse.exe
            C:\Windows\system32\taskeng.exe
            C:\Windows\system32\taskeng.exe
            C:\Windows\ehome\mcupdate.EXE
            C:\PROGRA~1\MICROS~3\Office10\OUTLOOK.EXE
            C:\Windows\system32\msiexec.exe
            C:\Windows\system32\SearchFilterHost.exe
            C:\Windows\system32\wbem\wmiprvse.exe
            .
            ============== Pseudo HJT Report ===============
            .
            uStart Page = hxxp://www.comcast.net/
            uSearch Bar = Preserve
            uWindow Title = Internet Explorer provided by Dell
            mDefault_Page_URL = hxxp://www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us&ibd=0071106
            uInternet Settings,ProxyOverride = *.local
            uURLSearchHooks: H - No File
            BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
            BHO: Symantec NCO BHO: {602adb0e-4aff-4217-8aa1-95dac4dfa408} - c:\program files\norton security suite\engine\5.2.0.13\coIEPlg.dll
            BHO: Symantec Intrusion Prevention: {6d53ec84-6aae-4787-aeee-f4628f01010c} - c:\program files\norton security suite\engine\5.2.0.13\ips\IPSBHO.DLL
            BHO: {7E853D72-626A-48EC-A868-BA8D5E23E045} - No File
            BHO: Windows Live ID Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
            BHO: CBrowserHelperObject Object: {ca6319c0-31b7-401e-a518-a07c3db8f777} - c:\program files\dell\bae\BAE.dll
            BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
            BHO: {f629a2e4-771b-4215-bfca-140d74011dbe} - No File
            BHO: Yontoo Layers: {fd72061e-9fde-484d-a58a-0bab4151cad8} - c:\program files\yontoo layers runtime\YontooIEClient.dll
            TB: Norton Toolbar: {7febefe3-6b19-4349-98d2-ffb09d4b49ca} - c:\program files\norton security suite\engine\5.2.0.13\coIEPlg.dll
            TB: {D4027C7F-154A-4066-A1AD-4243D8127440} - No File
            uRun: [ehTray.exe] c:\windows\ehome\ehTray.exe
            uRun: [SansaDispatch] c:\users\kile\appdata\roaming\sandisk\sansa updater\SansaDispatch.exe
            uRun: [AROReminder]
            mRun: [ECenter] c:\dell\e-center\EULALauncher.exe
            mRun: [RtHDVCpl] RtHDVCpl.exe
            mRun: [<NO NAME>]
            mRun: [HP Software Update] c:\program files\hp\hp software update\HPWuSchd2.exe
            mRun: [IgfxTray] c:\windows\system32\igfxtray.exe
            mRun: [HotKeysCmds] c:\windows\system32\hkcmd.exe
            mRun: [Persistence] c:\windows\system32\igfxpers.exe
            dRun: [dplaysvr] c:\windows\system32\config\systemprofile\appdata\local\dplaysvr.exe
            StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\digita~1.lnk - c:\program files\digital line detect\DLG.exe
            StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\hpdigi~1.lnk - c:\program files\hp\digital imaging\bin\hpqtra08.exe
            StartupFolder: c:\progra~2\micros~1\windows\startm~1\programs\startup\secure~1.lnk - c:\program files\securebackupshare\ComcastSecureBackupSharestat.exe
            mPolicies-system: EnableUIADesktopToggle = 0 (0x0)
            IE: &Search
            IE: Google Sidewiki... - c:\program files\google\google toolbar\component\GoogleToolbarDynamic_mui_en_89D8574934B26AC4.dll/cmsidewiki.html
            Trusted Zone: realtor.org\www
            Trusted Zone: yahoo.com\games
            DPF: {0CCA191D-13A6-4E29-B746-314DEE697D83} - hxxp://upload.facebook.com/controls/2008.10.10_v5.5.8/FacebookPhotoUploader5.cab
            DPF: {17492023-C23A-453E-A040-C7C580BBF700} - hxxp://download.microsoft.com/download/C/0/C/C0CBBA88-A6F2-48D9-9B0E-1719D1177202/LegitCheckControl.cab
            DPF: {1851174C-97BD-4217-A0CC-E908F60D5B7A} - hxxps://h50203.www5.hp.com/HPISWeb/Customer/cabs/HPISDataManager.CAB
            DPF: {233C1507-6A77-46A4-9443-F871F945D258} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
            DPF: {73ECB3AA-4717-450C-A2AB-D00DAD9EE203} - hxxp://h20270.www2.hp.com/ediags/gmn2/install/HPProductDetection2.cab
            DPF: {8100D56A-5661-482C-BEE8-AFECE305D968} - hxxp://upload.facebook.com/controls/2009.07.28_v5.5.8.1/FacebookPhotoUploader55.cab
            DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
            DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
            DPF: {CAFEEFAC-0016-0000-0000-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0-windows-i586.cab
            DPF: {CAFEEFAC-0016-0000-0003-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_03-windows-i586.cab
            DPF: {CAFEEFAC-0016-0000-0007-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_07-windows-i586.cab
            DPF: {CAFEEFAC-0016-0000-0024-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
            DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_24-windows-i586.cab
            DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
            TCP: DhcpNameServer = 75.75.75.75 75.75.76.76
            TCP: Interfaces\{73560D62-A934-4875-952C-2161AAC78976} : DhcpNameServer = 75.75.75.75 75.75.76.76
            Handler: cdo - {CD00020A-8B95-11D1-82DB-00C04FB1625D} - c:\program files\common files\microsoft shared\web folders\PKMCDO.DLL
            Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL
            Notify: igfxcui - igfxdev.dll
            SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
            mASetup: {9191979D-821C-4EA8-B021-2DA1D859A7C5}-3Reg - c:\program files\sft\guardedid\gidi.exe /v
            Hosts: 94.63.147.16   www.google.com
            Hosts: 94.63.147.17   www.bing.com
            .
            ================= FIREFOX ===================
            .
            FF - ProfilePath - c:\users\kile\appdata\roaming\mozilla\firefox\profiles\nc2ggpmw.default\
            FF - prefs.js: browser.search.selectedEngine - Bing
            FF - prefs.js: browser.startup.homepage - hxxp://www.bing.com/?pc=Z039&form=ZGAPHP
            FF - prefs.js: keyword.URL - hxxp://www.mywebsearch.com/jsp/cfg_redir2.jsp?id=ZUxdm593YYUS&fl=0&ptb=kLYXbKBETjdxxEa8dEf0nQ&url=http://search.mywebsearch.com/mywebsearch/dft_redir.jhtml&st=kwd&searchfor=
            FF - plugin: c:\program files\google\google earth\plugin\npgeplugin.dll
            FF - plugin: c:\program files\google\update\1.2.183.39\npGoogleOneClick8.dll
            FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
            FF - plugin: c:\program files\microsoft\office live\npOLW.dll
            FF - plugin: c:\program files\mozilla firefox\plugins\npdeployJava1.dll
            FF - plugin: c:\program files\mozilla firefox\plugins\NPMyWebS.dll
            FF - plugin: c:\program files\nos\bin\np_gp.dll
            FF - plugin: c:\program files\virtools\3d life player\npvirtools.dll
            FF - plugin: c:\users\kile\appdata\local\microsoft\internet explorer\downloaded program files\npsoe.dll
            .
            ============= SERVICES / DRIVERS ===============
            .
            R0 SymDS;Symantec Data Store;c:\windows\system32\drivers\n360\0502000.00d\symds.sys [2012-2-7 340088]
            R0 SymEFA;Symantec Extended File Attributes;c:\windows\system32\drivers\n360\0502000.00d\symefa.sys [2012-2-7 744568]
            R1 BHDrvx86;BHDrvx86;c:\programdata\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\n360_5.0.0.125\definitions\bashdefs\20120402.001\BHDrvx86.sys [2012-4-2 821880]
            R1 ComcastSecureBackupShareFilter;ComcastSecureBackupShareFilter;c:\windows\system32\drivers\ComcastSecureBackupShare.sys [2011-6-5 54776]
            R1 IDSVix86;IDSVix86;c:\programdata\norton\{0c55c096-0f1d-4f28-aaa2-85ef591126e7}\n360_5.0.0.125\definitions\ipsdefs\20120406.003\IDSvix86.sys [2012-4-9 368248]
            R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\SASDIFSV.SYS [2010-2-17 12880]
            R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2010-5-10 67664]
            R1 SymIRON;Symantec Iron Driver;c:\windows\system32\drivers\n360\0502000.00d\ironx86.sys [2012-2-7 136312]
            R1 SYMTDIv;Symantec Vista Network Dispatch Driver;c:\windows\system32\drivers\n360\0502000.00d\symtdiv.sys [2012-2-7 331384]
            R2 !SASCORE;SAS Core Service;c:\program files\superantispyware\SASCORE.EXE [2011-5-4 116608]
            R2 AERTFilters;Andrea RT Filters Service;c:\windows\system32\AERTSrv.exe [2007-12-5 77824]
            R2 ComcastSecureBackupSharebackup;Comcast Secure Backup & Share Backup Service;c:\program files\securebackupshare\ComcastSecureBackupSharebackup.exe [2010-12-14 15592]
            R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\common files\symantec shared\eengine\EraserUtilRebootDrv.sys [2012-4-8 106104]
            S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
            S2 gupdate;Google Update Service (gupdate);c:\program files\google\update\GoogleUpdate.exe [2010-4-26 136176]
            S3 gupdatem;Google Update Service (gupdatem);c:\program files\google\update\GoogleUpdate.exe [2010-4-26 136176]
            S3 PCDSRVC{E9D79540-57D5953E-06020101}_0;PCDSRVC{E9D79540-57D5953E-06020101}_0 - PCDR Kernel Mode Service Helper Driver;c:\program files\dell support center\pcdsrvc.pkms [2011-5-12 21744]
            S3 UsbGps;LGE CDMA USB GPS NMEA Port;c:\windows\system32\drivers\lgusbgps.sys [2011-2-5 19968]
            .
            =============== Created Last 30 ================
            .
            2012-04-08 14:50:00   --------   d-----w-   c:\windows\pss
            2012-04-07 23:15:13   113152   ----a-w-   c:\programdata\microsoft\windows\drm\F275.tmp
            2012-03-28 04:00:46   --------   d-----w-   c:\users\kile\appdata\roaming\Norton Utilities
            2012-03-28 03:52:13   --------   d-----w-   c:\programdata\Norton Installer
            2012-03-28 03:51:44   44544   ----a-w-   c:\windows\system32\msxml4a.dll
            .
            ==================== Find3M  ====================
            .
            2012-04-04 20:56:40   22344   ----a-w-   c:\windows\system32\drivers\mbam.sys
            2012-03-15 02:44:00   414368   ----a-w-   c:\windows\system32\FlashPlayerCPLApp.cpl
            .
            ============= FINISH: 17:38:01.76 ===============

            kile32

              Topic Starter


              Rookie

              • Experience: Beginner
              • OS: Unknown
              Re: major problems with computer speed. Need big time help
              « Reply #7 on: April 10, 2012, 04:44:04 PM »
              .
              UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
              IF REQUESTED, ZIP IT UP & ATTACH IT
              .
              DDS (Ver_2011-08-26.01)
              .
              Microsoft® Windows Vista™ Home Premium
              Boot Device: \Device\HarddiskVolume3
              Install Date: 11/6/2007 3:58:55 AM
              System Uptime: 4/10/2012 5:19:32 PM (0 hours ago)
              .
              Motherboard: Dell Inc. |  | 0RY007
              Processor: Genuine Intel(R) CPU            2160  @ 1.80GHz | Socket 775 | 1200/200mhz
              .
              ==== Disk Partitions =========================
              .
              A: is Removable
              C: is FIXED (NTFS) - 288 GiB total, 243.653 GiB free.
              D: is FIXED (NTFS) - 10 GiB total, 3.929 GiB free.
              E: is CDROM (UDF)
              F: is Removable
              .
              ==== Disabled Device Manager Items =============
              .
              ==== System Restore Points ===================
              .
              No restore point in system.
              .
              ==== Installed Programs ======================
              .
              32 Bit HP CIO Components Installer
              3DVIA player 5.0
              Adobe AIR
              Adobe Download Manager
              Adobe Flash Player 10 Plugin
              Adobe Flash Player 11 ActiveX
              Adobe Reader 9.4.4
              Adobe Shockwave Player 11.6
              Advertising Center
              AIO_Scan
              Apple Mobile Device Support
              Apple Software Update
              ArcSoft MediaImpression
              ARO 2011
              Bonjour
              Browser Address Error Redirector
              BufferChm
              C4200
              c4200_Help
              Compatibility Pack for the 2007 Office system
              Conexant D850 PCI V.92 Modem
              Copy
              Coupon Printer for Windows
              CustomerResearchQFolder
              datasafeupdate
              Dell DataSafe Online
              Dell Support Center
              Dell System Customization Wizard
              DellSupport
              Destinations
              DeviceManagementQFolder
              Digital Line Detect
              DocProc
              DocProcQFolder
              DolbyFiles
              eSupportQFolder
              Games, Music, & Photos Launcher
              Google Update Helper
              Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
              Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
              HP Customer Participation Program 8.0
              HP Imaging Device Functions 8.0
              HP OCR Software 8.0
              HP Photosmart All-In-One Software 8.0
              HP Photosmart Essential
              HP Product Assistant
              HP Product Detection
              HP Solution Center 8.0
              HP Update
              HPProductAssistant
              HPSSupply
              ImagXpress
              Intel(R) Graphics Media Accelerator Driver
              Intel(R) PRO Network Connections 12.1.11.0
              iPod for Windows 2005-03-23
              iTunes
              Java Auto Updater
              Java(TM) 6 Update 24
              Java(TM) 6 Update 3
              Java(TM) 6 Update 7
              Java(TM) SE Runtime Environment 6
              LG USB Modem driver
              Malwarebytes Anti-Malware version 1.61.0.1400
              MarketResearch
              Menu Templates - Starter Kit
              Microsoft .NET Framework 3.5 SP1
              Microsoft .NET Framework 4 Client Profile
              Microsoft Corporation
              Microsoft LifeCam
              Microsoft Office Live Add-in 1.5
              Microsoft Office XP Professional with FrontPage
              Microsoft Visual C++ 2005 ATL Update kb973923 - x86 8.0.50727.4053
              Microsoft Visual C++ 2005 Redistributable
              Modem Diagnostic Tool
              Movie Templates - Starter Kit
              Mozilla Firefox (3.5.3)
              MSXML 4.0 SP2 (KB936181)
              MSXML 4.0 SP2 (KB941833)
              MSXML 4.0 SP2 (KB954430)
              MSXML 4.0 SP2 (KB973688)
              Nero 9 Trial
              Nero BurnRights
              Nero ControlCenter
              Nero CoverDesigner
              Nero Disc Copy Gadget
              Nero DiscSpeed
              Nero DriveSpeed
              Nero InfoTool
              Nero Installer
              Nero PhotoSnap
              Nero Recode
              Nero Rescue Agent
              Nero ShowTime
              Nero StartSmart
              Nero Vision
              Nero WaveEditor
              NeroBurningROM
              NeroExpress
              neroxml
              NetWaiting
              Norton Security Suite
              OGA Notifier 2.0.0048.0
              Product Documentation Launcher
              PS_AIO_ProductContext
              PS_AIO_Software
              PS_AIO_Software_min
              QuickTime
              Realtek High Definition Audio Driver
              Roxio Creator BDAV Plugin
              Roxio Creator Copy
              Roxio Creator Data
              Roxio Creator DE
              Roxio Creator Tools
              Roxio Express Labeler
              Roxio MyDVD DE
              Roxio Update Manager
              Sansa Updater
              Scan
              Secure Backup and Share
              Security Update for CAPICOM (KB931906)
              Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)
              Security Update for Microsoft .NET Framework 4 Client Profile (KB2446708)
              Security Update for Microsoft .NET Framework 4 Client Profile (KB2478663)
              Security Update for Microsoft .NET Framework 4 Client Profile (KB2518870)
              Shop for HP Supplies
              SolutionCenter
              Sonic Activation Module
              SoundTrax
              Spelling Dictionaries Support For Adobe Reader 8
              Status
              SUPERAntiSpyware
              swMSM
              Toolbox
              TrayApp
              UnloadSupport
              Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
              User's Guides
              WebReg
              Windows Live ID Sign-in Assistant
              Windows Live installer
              Windows Live Messenger
              Yahoo! Detect
              .
              ==== End Of File ===========================

              kile32

                Topic Starter


                Rookie

                • Experience: Beginner
                • OS: Unknown
                Re: major problems with computer speed. Need big time help
                « Reply #8 on: April 10, 2012, 05:11:27 PM »
                I received an error when trying to update Java RE.  A pop up box says the following:
                Java Update cannot proceed with the current internet Connection settings of your system.
                In your Windows Control panel, please check Internet Options-> Connections to make sure
                the settings and proxy information are correct.

                I don't really know what the correct settings are supposed to be.

                SuperDave

                • Malware Removal Specialist
                • Moderator


                • Sage
                • Thanked: 858
                • Certifications: List
                • Experience: Expert
                • OS: Windows 8
                Re: major problems with computer speed. Need big time help
                « Reply #9 on: April 11, 2012, 12:44:01 PM »
                Quote
                received an error when trying to update Java RE.  A pop up box says the following:
                Java Update cannot proceed with the current internet Connection settings of your system.
                In your Windows Control panel, please check Internet Options-> Connections to make sure
                the settings and proxy information are correct.
                In your IE browser click on Tools, internet options, connections and do a screen print and post it in your next post.
                How to post screenshots or images

                Download Combofix from any of the links below, and save it to your DESKTOP

                Link 1
                Link 2
                Link 3

                To prevent your anti-virus application interfering with  ComboFix we need to disable it. See here for a tutorial regarding how to do so if you are unsure.
                • Close any open windows and double click ComboFix.exe to run it.

                  You will see the following image:


                Click I Agree to start the program.

                ComboFix will then extract the necessary files and you will see this:



                As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to  have this pre-installed on your machine before doing any malware  removal. This will not occur in Windows Vista and 7

                It will allow you to boot up into a special recovery/repair  mode that will allow us to more easily help you should your computer  have a problem after an attempted removal of malware.

                If you did not have it installed, you will see the prompt below. Choose YES.



                Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console.

                **Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures.

                Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:



                Click on Yes, to continue scanning for malware.

                When finished, it will produce a report for you. Please post the contents of the log (C:\ComboFix.txt).

                Leave your computer alone while ComboFix is running. ComboFix will restart your computer if malware is found; allow it to do so.

                Note: Please Do NOT mouseclick combofix's window while its running because it may cause it to stall.
                Intel(R) Core (TM) i3-3220 CPU 3.30 GHz 8.0 Gb RAM Windows 8 with a dual boot to Windows XP  Home with SP3, Avira  with Windows Firewall & Windows Defender

                kile32

                  Topic Starter


                  Rookie

                  • Experience: Beginner
                  • OS: Unknown
                  Re: major problems with computer speed. Need big time help
                  « Reply #10 on: April 11, 2012, 06:56:03 PM »
                  The tutorial for disabling my anti-virus does not have instructions for what I have, which is Norton Security Suite.   There are other Norton packages.  I don't know if what I have falls under one of those.  Please advise.




                     
                  Look at what I just found in one of my emails.  It looks this is where my infection came from.  My Norton Anti-virus is associated wit my ISP, comcast
                  Constant Guard™ Alert   
                  Dear XFINITY Customer, 
                  Constant Guard from XFINITY identified one or more of your computers may be infected with a bot. A bot is a malicious form of software that is used to send spam, host a phishing site, or steal your identity by monitoring your keystrokes without your knowledge. It may be possible you are unaware that your computer is infected with a bot. 
                  We strongly recommend that you visit XFINITY.com/BotAssistance for important information on how to remove malicious software from your computer(s). 
                  We appreciate your prompt attention to this important security notice. 
                  Sincerely, 
                  Constant Guard from XFINITY 
                  This is a service-related email. Comcast will occasionally send you service-related emails to inform you of service upgrades or new benefits to your Comcast High-Speed Internet service.

                  Copyright 2012. Comcast. All other trademarks are properties of their respective owners.

                  Comcast respects your privacy. For a complete description of our privacy policy, click here.

                  Comcast
                  One Comcast Center, 10th Floor
                  1701 JFK Boulevard
                  Philadelphia, PA 19103-2838 


                  « Last Edit: April 11, 2012, 07:33:26 PM by kile32 »

                  kile32

                    Topic Starter


                    Rookie

                    • Experience: Beginner
                    • OS: Unknown
                    Re: major problems with computer speed. Need big time help
                    « Reply #11 on: April 12, 2012, 01:16:08 AM »
                    UPDATE***

                    I have successfully downladed Vista Service Pack 2
                    For downloading Jave Re, I got farther than before but just at the end, I received a new hurdle.  It said "error 52099, failed unzipping case file"
                    for downloading CCleaner, I recived an error that said, "no more threads can be created in the system"  I seem to get that alot.  What does that mean?

                    And again, I don't know how to disable my Norton Security Suite so I can dowload Combofix.

                    SuperDave

                    • Malware Removal Specialist
                    • Moderator


                    • Sage
                    • Thanked: 858
                    • Certifications: List
                    • Experience: Expert
                    • OS: Windows 8
                    Re: major problems with computer speed. Need big time help
                    « Reply #12 on: April 12, 2012, 11:32:58 AM »
                    Quote
                    I don't know if what I have falls under one of those.  Please advise.
                    If you can't disable the AV just run ComboFix regardless.
                    Quote
                    I recived an error that said, "no more threads can be created in the system"  I seem to get that alot.  What does that mean?
                    Here's an explanation.
                    Quote
                    Some additional info -- usually when you run out of thread space, an app is misbehaving; either it's spinning off too many threads or (usually) not releasing old ones properly.  You can check the number of threads currently running in Task Manager under the Performance tab in the System section.

                    Does this error occur right after restarting Windows, or only after it's been running awhile?  Try restarting Windows, minimizing the number of other programs that are running (including services and applets) and see if the problem persists.  It might take a process of elimination to pinpoint which program is causing the problem.
                    Intel(R) Core (TM) i3-3220 CPU 3.30 GHz 8.0 Gb RAM Windows 8 with a dual boot to Windows XP  Home with SP3, Avira  with Windows Firewall & Windows Defender

                    kile32

                      Topic Starter


                      Rookie

                      • Experience: Beginner
                      • OS: Unknown
                      Re: major problems with computer speed. Need big time help
                      « Reply #13 on: April 12, 2012, 03:16:44 PM »
                      If you can't disable the AV just run ComboFix regardless.Here's an explanation.
                      I tried to but Norton alerted it as not safe and blocked me from running it.

                      Code: [Select]
                      Does this error occur right after restarting Windows, or only after it's been running awhile?  Try restarting Windows, minimizing the number of other programs that are running (including services and applets) and see if the problem persists.  It might take a process of elimination to pinpoint which program is causing the problem.It happened after a while.  I shut down and it worked after turning it back on.

                      SuperDave

                      • Malware Removal Specialist
                      • Moderator


                      • Sage
                      • Thanked: 858
                      • Certifications: List
                      • Experience: Expert
                      • OS: Windows 8
                      Re: major problems with computer speed. Need big time help
                      « Reply #14 on: April 12, 2012, 04:45:29 PM »
                      Save these instructions so you can have access to them while in Safe Mode.

                      Please click here to download AVP Tool by Kaspersky.
                      • Save it to your desktop.
                      • Reboot your computer into SafeMode. You can do this by restarting your computer and continually tapping the F8 key until a menu appears. Use your up arrow key to highlight SafeMode then hit enter.
                      • Double click the setup file to run it.
                      • Click Next to continue.
                      • Accept the License agreement and click on next.
                      • It will, by default, install it to your desktop folder. Click Next.
                      • It will then open a box There will be a tab that says Automatic scan.
                      • Under Automatic scan make sure these are checked.
                      • Hidden Startup Objects
                      • System Memory
                      • Disk Boot Sectors.
                      • My Computer.
                      • Also any other drives (Removable that you may have)
                      Leave the rest of the settings as they appear as default.
                      •Then click on Scan at the to right hand Corner.
                      •It will automatically Neutralize any objects found.
                      •If some objects are left un-neutralized then click the button that says Neutralize all
                      •If it says it cannot be neutralized then choose the delete option when prompted.
                      •After that is done click on the reports button at the bottom and save it to file name it Kas.
                      •Save it somewhere convenient like your desktop and just post only the detected Virus\malware in the report it will be at the very top under Detected post those results in your next reply.

                      Note: This tool will self uninstall when you close it so please save the log before closing it.
                      Intel(R) Core (TM) i3-3220 CPU 3.30 GHz 8.0 Gb RAM Windows 8 with a dual boot to Windows XP  Home with SP3, Avira  with Windows Firewall & Windows Defender