Welcome guest. Before posting on our computer help forum, you must register. Click here it's easy and free.

Author Topic: Folders turned turned into 33kb .exe files and open in new windows  (Read 12551 times)

0 Members and 1 Guest are viewing this topic.

mkapsi

    Topic Starter


    Greenhorn

    • Experience: Beginner
    • OS: Unknown
    My external hard drive has a problem where all the folders have turned into 33KB applications. When I click on the folder, the content in the folder will appear in a new window, however if I try to copy the folder, only the 33KB application will move. If I try to drag other objects into that folder, I get an error saying "the path '[folder name]' does not exist or is not a directory".

    I originally had this problem on my computer, and also my chrome browser stopped working because of an error saying it was a "bad image", however I had my computer wiped so now this problem is only on my external hard drive.

    Also, I haven't been granted administrator's rights by my administrator, so I can only use my current antivirus program (symantec endpoint protection), or portable programs, and I can't edit the registry  :-\

    Thank you

    SuperDave

    • Malware Removal Specialist
    • Moderator


    • Genius
    • Thanked: 1020
    • Certifications: List
    • Experience: Expert
    • OS: Windows 10
    Re: Folders turned turned into 33kb .exe files and open in new windows
    « Reply #1 on: March 13, 2011, 12:15:21 PM »
    Hello and welcome to Computer Hope Forum. My name is Dave. I will be helping you out with your particular problem on your computer.

    1. I will be working on your Malware issues. This may or may not solve other issues you have with your machine.
    2. The fixes are specific to your problem and should only be used for this issue on this machine.
    3. If you don't know or understand something, please don't hesitate to ask.
    4. Please DO NOT run any other tools or scans while I am helping you.
    5. It is important that you reply to this thread. Do not start a new topic.
    6. Your security programs may give warnings for some of the tools I will ask you to use. Be assured, any links I give are safe.
    7. Absence of symptoms does not mean that everything is clear.

    If you can't access the internet with your infected computer you will have to download and transfer any programs to the computer you're using now and transfer them to the infected computer with a CD-RW or a USB storage device. I prefer a CD because a storage device can get infected. If you use a storage device hold the shift key down while inserting the USB storage device for about 10 secs. You will also have to transfer the logs you receive back to the good computer using the same method until we can get the computer back on-line.
    *******************************************************
    If you wiped(reformatted) your harddrive why not reformat the external harddrive?
    Windows 8 and Windows 10 dual boot with two SSD's

    mkapsi

      Topic Starter


      Greenhorn

      • Experience: Beginner
      • OS: Unknown
      Re: Folders turned turned into 33kb .exe files and open in new windows
      « Reply #2 on: March 13, 2011, 08:45:45 PM »
      Because when I wiped my hard drive, I lost all my work, and now the only backup I have of that work is on my external hard drive, so I don't want to lost that too.

      SuperDave

      • Malware Removal Specialist
      • Moderator


      • Genius
      • Thanked: 1020
      • Certifications: List
      • Experience: Expert
      • OS: Windows 10
      Re: Folders turned turned into 33kb .exe files and open in new windows
      « Reply #3 on: March 14, 2011, 12:53:19 PM »
      Quote
      When I click on the folder, the content in the folder will appear in a new window,
      Do the files inside the folder look ok? Can you open them?
      Windows 8 and Windows 10 dual boot with two SSD's

      mkapsi

        Topic Starter


        Greenhorn

        • Experience: Beginner
        • OS: Unknown
        Re: Folders turned turned into 33kb .exe files and open in new windows
        « Reply #4 on: March 14, 2011, 07:05:53 PM »
        yes, except for the subfolders, which are also applications. The virus is back on my computer now  :-\

        SuperDave

        • Malware Removal Specialist
        • Moderator


        • Genius
        • Thanked: 1020
        • Certifications: List
        • Experience: Expert
        • OS: Windows 10
        Re: Folders turned turned into 33kb .exe files and open in new windows
        « Reply #5 on: March 15, 2011, 04:21:58 PM »
        Ok. Please run these scans on your harddrive and also your external drive but only post the logs from your C: drive

        SUPERAntiSpyware

        If you already have SUPERAntiSpyware be sure to check for updates before scanning!


        Download SuperAntispyware Free Edition (SAS)
        * Double-click the icon on your desktop to run the installer.
        * When asked to Update the program definitions, click Yes
        * If you encounter any problems while downloading the updates, manually download and unzip them from here
        * Next click the Preferences button.

        •Under Start-Up Options uncheck Start SUPERAntiSpyware when Windows starts
        * Click the Scanning Control tab.
        * Under Scanner Options make sure only the following are checked:

        •Close browsers before scanning
        •Scan for tracking cookies
        •Terminate memory threats before quarantining
        Please leave the others unchecked

        •Click the Close button to leave the control center screen.

        * On the main screen click Scan your computer
        * On the left check the box for the drive you are scanning.
        * On the right choose Perform Complete Scan
        * Click Next to start the scan. Please be patient while it scans your computer.
        * After the scan is complete a summary box will appear. Click OK
        * Make sure everything in the white box has a check next to it, then click Next
        * It will quarantine what it found and if it asks if you want to reboot, click Yes

        •To retrieve the removal information please do the following:
        •After reboot, double-click the SUPERAntiSpyware icon on your desktop.
        •Click Preferences. Click the Statistics/Logs tab.

        •Under Scanner Logs, double-click SUPERAntiSpyware Scan Log.

        •It will open in your default text editor (preferably Notepad).
        •Save the notepad file to your desktop by clicking (in notepad) File > Save As...

        * Save the log somewhere you can easily find it. (normally the desktop)
        * Click close and close again to exit the program.
        *Copy and Paste the log in your post.
        **********************************************
        Please download Malwarebytes Anti-Malware from here.
        Double Click mbam-setup.exe to install the application.
        • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes Anti-Malware, then click Finish.
        • If an update is found, it will download and install the latest version.
        • Once the program has loaded, select "Perform Full Scan", then click Scan.
        • The scan may take some time to finish,so please be patient.
        • When the scan is complete, click OK, then Show Results to view the results.
        • Make sure that everything is checked, and click Remove Selected.
        • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Extra Note)
        • Please save the log to a location you will remember.
        • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
        • Copy and paste the entire report in your next reply.
        Extra Note:

        If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process. If asked to restart the computer, please do so immediately.
        *************************************************
        Don't bother running this scan on your external drive.

        Download DDS from HERE or HERE and save it to your desktop.

        Vista users right click on dds and select Run as administrator (you will receive a UAC prompt, please allow it)

        * XP users Double click on dds to run it.
        * If your antivirus or firewall try to block DDS then please allow it to run.
        * When finished DDS will open two (2) logs.

        1) DDS.txt
        2) Attach.txt

        * Save both logs to your desktop.
        * Please copy and paste the entire contents of both logs in your next reply.

        Note: DDS will instruct you to post the Attach.txt log as an attachment.
        Please just post it as you would any other log by copy and pasting it into the reply.
        Windows 8 and Windows 10 dual boot with two SSD's

        mkapsi

          Topic Starter


          Greenhorn

          • Experience: Beginner
          • OS: Unknown
          Re: Folders turned turned into 33kb .exe files and open in new windows
          « Reply #6 on: March 18, 2011, 07:52:55 PM »
          SUPERAntiSpyware Scan Log
          http://www.superantispyware.com

          Generated 03/18/2011 at 10:53 PM

          Application Version : 4.49.1000

          Core Rules Database Version : 6616
          Trace Rules Database Version: 4435

          Scan type       : Complete Scan
          Total Scan Time : 03:06:44

          Memory items scanned      : 743
          Memory threats detected   : 0
          Registry items scanned    : 8367
          Registry threats detected : 3
          File items scanned        : 156339
          File threats detected     : 824

          Trojan.Agent/Gen-NameThief[Smart]
             
          • C:\MYDATA\ZITA.EXE

             C:\MYDATA\ZITA.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\DESKTOP\FFOUTPUT.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\DESKTOP\XXXXXXX STUFF TO TAKE OFF\CHEM.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\DESKTOP\XXXXXXX STUFF TO TAKE OFF.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\BOOKS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\COPY (1)FOLDERS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\DOWNLOADS\DEMI_LOVATO-DON'T_FORGET-2008-BTL.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\DOWNLOADS\GLEE - THE MUSIC, VOLUME 4 [2010-MP3-COV][MJN].EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\DOWNLOADS\HANNAH MONTANA FOREVER S04E14~15-WHEREVER I GO.HDTV[HRT].EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\DOWNLOADS\N-DUBZ - AGAINST ALL ODDS [2009-MP3-COV][BUBANEE].EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\DOWNLOADS\N-DUBZ-LOVE.LIVE.LIFE-2010-H3X.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\DOWNLOADS\PIRANHA 3D 2010 720P BRRIP ANAGLYPH H264 AAC-GREATMAGICIAN (KINGDOM-RELEASE).EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\DOWNLOADS\SAY ANYTHING SPECIAL EDITION 1989 DVDRIP[ENG]-GREENBUD1969.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\DOWNLOADS\VA-GLEE_THE_MUSIC_THE_CHRISTMAS_ALBUM-OST-2010-VAG.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\DOWNLOADS\VAN WILDER (UNRATED).EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\DOWNLOADS\VERONICA.MARS.-.ENHANCED.SOUNDTRACK.SEASON.1.[KMN-MUSIC.DE].EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\DOWNLOADS\VERONICA.MARS.-.ENHANCED.SOUNDTRACK.SEASON.3.[KMN-MUSIC.DE].EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\DOWNLOADS\[ WWW.TORRENTDAY.COM ] - OFF.THE.MAP.S01E03.HDTV.XVID-LOL.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\DOWNLOADS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FFOUTPUT.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\BEAUTIFUL DISASTER_DATA.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\BIOLOGY\BACTERIA LAB.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\BIOLOGY\CELL THEORY.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\BIOLOGY\CHEMISTRY OF LIFE.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\BIOLOGY\DNA.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\BIOLOGY\ECO TRIP.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\BIOLOGY\GENETICS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\BIOLOGY\HUMAN PHYSIOLOGY.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\BIOLOGY\LUNG VOLUME.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\BIOLOGY\NEUROBIOLOGY AND BEHAVIOUR.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\BIOLOGY\OPTIONS BOOK- BIOLOGY FOR THE IB DIPLOMA [CLEGG].EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\BIOLOGY\PEANUT PRACTICAL.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\BIOLOGY\PHYSIOLOGY OPTION.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\BIOLOGY\REPRODUCTIVE SYSTEM.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\BIOLOGY\STATISTICS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\BIOLOGY\T-TEST.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\BIOLOGY\TRANSPORTATION AND GAS EXCHANGE.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\BIOLOGY\WORM LAB.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\BIOLOGY.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\ACID BASE EQUILIBRIA.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\ATOMIC STRUCTURE.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\ENERGETICS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\EQUILIBRIUM.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\HW PAST PAPERS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\INTRO.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\LAB REPORT\LABS I HAVE DONE.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\LAB REPORT\YEAR 11 LABS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\LAB REPORT.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\NELLER CD-IB CHEMISTRY.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\ORGANIC CHEMISTRY.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\REACTION RATES.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\STOICHEOMETRY.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\TAN NOTES.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\Y13 DISC\ANALYTICAL CHEMISTRY OPTION.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\Y13 DISC\CHEM IB EXAM.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\Y13 DISC\CHEM STANDARD LEVEL.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\Y13 DISC\EQUILIBRIUM.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\Y13 DISC\MARKSCHEME HL.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\Y13 DISC\MARKSCHEME SL.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\Y13 DISC\ORGANIC CHEMISTRY.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\Y13 DISC\TALBOT IB CHEM.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY\Y13 DISC.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\CHEMISTRY.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\DWBI PRESENTATIONS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ECONOMICS\DEVELOPMENT.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ECONOMICS\INTERNAL ASSESMENT.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ECONOMICS\INTERNATIONAL ECONOMICS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ECONOMICS\INTRODUCTION.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ECONOMICS\MACROECONOMICS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ECONOMICS\MICROECONOMICS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ECONOMICS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\EE\ARTICLES AND SHIZZ.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\EE\ECON MEETING- WED 04 AUGUST_DATA.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\EE\EXTENDED ESSAY\ECONOMICS EE SAMPLES.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\EE\EXTENDED ESSAY.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\EE\STUFF TO OPEN.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\EE.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ENGLISH A1\1984.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ENGLISH A1\A CLOCKWORK ORANGE.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ENGLISH A1\COMMENTARY SKILLS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ENGLISH A1\ESSAY SKILLS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ENGLISH A1\EXAM.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ENGLISH A1\HANDMAID'S TALE.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ENGLISH A1\HOUSE OF THE SPIRITS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ENGLISH A1\IOC.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ENGLISH A1\IOP.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ENGLISH A1\LIKE WATER FOR CHOCOLATE.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ENGLISH A1\LOVE IN THE TIME OF CHOLERA.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ENGLISH A1\NERUDA.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ENGLISH A1\OTHELLO.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ENGLISH A1\POETRY.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ENGLISH A1\SUMMER LOGS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ENGLISH A1\THE CRUCIBLE.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ENGLISH A1\WORLD LIT.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\ENGLISH A1.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\EXTRAS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\HOMEROOM.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\MATHS\12 HL.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\MATHS\BOOKS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\MATHS\HL CORE.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\MATHS\IB PAPERS\IB PAPERS 2010 NOV.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\MATHS\IB PAPERS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\MATHS\INTRODUCING PURE MATHEMATICS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\MATHS\NOVEMBER TEST.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\MATHS\PORTFOLIO 2.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\MATHS\PORTFOLIO STUFF\OMAR KHAYAAM PORTFOLIO.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\MATHS\PORTFOLIO STUFF\PATTERNS WITHIN SYSTEMS OF LINEAR EQUATIONS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\MATHS\PORTFOLIO STUFF\PORTFOLIO PRACTICE- EVENS AND ODDS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\MATHS\PORTFOLIO STUFF.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\MATHS\PRACTICE TEST.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\MATHS\REVISION.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\MATHS\TRIGNOMETRY.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\MATHS\UNDERSTANDING PURE MATHEMATICS (SADLER ET AL).EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\MATHS\UNIT OVERVIEWS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\MATHS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\SPANISH AB\ESPANOL MUNDIAL 1, 3RD ED - LIBRO DE EJERCICIOS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\SPANISH AB\ESPANOL MUNDIAL 1, 3RD ED.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\SPANISH AB.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\TOK\ESSAY.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\TOK.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\UNIVERSITY THINGS\UNI EMAIL.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\UNIVERSITY THINGS\UNIVERSITIES\COMMON APPLICATION.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\UNIVERSITY THINGS\UNIVERSITIES\CORNELL.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\UNIVERSITY THINGS\UNIVERSITIES\GE STAR AWARDS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\UNIVERSITY THINGS\UNIVERSITIES\NFIX.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\UNIVERSITY THINGS\UNIVERSITIES\NORTHWESTERN.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\UNIVERSITY THINGS\UNIVERSITIES\PURDUE.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\UNIVERSITY THINGS\UNIVERSITIES\UCAS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\UNIVERSITY THINGS\UNIVERSITIES\UNIVERSITY OF CHICAGO.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\UNIVERSITY THINGS\UNIVERSITIES\UNIVERSITY OF ILLINOIS URBANA CHAMPAIGN.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\UNIVERSITY THINGS\UNIVERSITIES\UNIVERSITY OF MICHIGAN.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\UNIVERSITY THINGS\UNIVERSITIES.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\UNIVERSITY THINGS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\YEARBOOK\PICS TO CHOOSE FROM.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\YEARBOOK\PICTURES.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS\YEARBOOK.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\FOLDERS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\GAMES.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\ITUNES PLAYLISTS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\MY DIGITAL EDITIONS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\MY LIBRARY.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\MY MUSIC.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\MY NOTES.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\MY PICTURES.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\MY VIDEOS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\ONENOTE NOTEBOOKS\12 HL.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\ONENOTE NOTEBOOKS\BIOLOGY.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\ONENOTE NOTEBOOKS\CAS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\ONENOTE NOTEBOOKS\CHEMISTRY.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\ONENOTE NOTEBOOKS\CRASH LATER.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\ONENOTE NOTEBOOKS\ECONOMICS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\ONENOTE NOTEBOOKS\EE.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\ONENOTE NOTEBOOKS\ENGLISH.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\ONENOTE NOTEBOOKS\MATHS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\ONENOTE NOTEBOOKS\MUN.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\ONENOTE NOTEBOOKS\ONENOTE 2007 GUIDE.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\ONENOTE NOTEBOOKS\PERSONAL NOTEBOOK.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\ONENOTE NOTEBOOKS\SPANISH.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\ONENOTE NOTEBOOKS\TOK.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\ONENOTE NOTEBOOKS\WORK NOTEBOOK.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\ONENOTE NOTEBOOKS\YADA YADA STORY.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\ONENOTE NOTEBOOKS.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\PLANTS VS. ZOMBIES.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\POKEMON SOULSILVERHEARTGOLDEMU.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\POKEMON WHITE.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\POKEMON.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\SCIENCE.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\STICKIES.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\STUFF.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\TGB_DUAL_7.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\WHITE\BATTERY.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS\WHITE.EXE
             C:\DOCUMENTS AND SETTINGS\11SAKINAK\MY DOCUMENTS.EXE
             C:\RECYCLER\S-1-5-21-1037985990-1197410201-530207130-16991\DC427.EXE
             C:\RECYCLER\S-1-5-21-1037985990-1197410201-530207130-16991\DC428.EXE
             C:\WINDOWS\Prefetch\CHEM.EXE-034BE203.pf
             C:\WINDOWS\Prefetch\FOLDERS.EXE-3A0D7B4C.pf
             C:\WINDOWS\Prefetch\MATHS.EXE-13A44A46.pf
             C:\WINDOWS\Prefetch\REVISION.EXE-06F19DAA.pf
             C:\WINDOWS\Prefetch\TALBOT IB CHEM.EXE-2EF1DCE2.pf
             C:\WINDOWS\Prefetch\TOK.EXE-0C2B74C3.pf
             C:\WINDOWS\Prefetch\WHITE.EXE-1F64D02E.pf
             C:\WINDOWS\Prefetch\XXXXXXX STUFF TO TAKE OFF.EXE-07D82F60.pf
             C:\WINDOWS\Prefetch\Y13 DISC.EXE-2788D8F4.pf

          Adware.Tracking Cookie
             C:\Documents and Settings\11Sakinak\Cookies\[email protected][2].txt
             C:\Documents and Settings\11Sakinak\Cookies\[email protected][2].txt
             C:\Documents and Settings\11Sakinak\Cookies\[email protected][2].txt
             C:\Documents and Settings\11Sakinak\Cookies\11sakinak@8tracks[2].txt
             C:\Documents and Settings\11Sakinak\Cookies\11sakinak@specificmedia[1].txt
             C:\Documents and Settings\11Sakinak\Cookies\[email protected][2].txt
             C:\Documents and Settings\11Sakinak\Cookies\11sakinak@interclick[1].txt
             C:\Documents and Settings\11Sakinak\Cookies\[email protected][1].txt
             C:\Documents and Settings\11Sakinak\Cookies\[email protected][2].txt
             C:\Documents and Settings\11Sakinak\Cookies\11sakinak@cltomedia[2].txt
             C:\Documents and Settings\11Sakinak\Cookies\[email protected][2].txt
             C:\Documents and Settings\11Sakinak\Cookies\[email protected][1].txt
             C:\Documents and Settings\11Sakinak\Cookies\11sakinak@indieclick[1].txt
             C:\Documents and Settings\11Sakinak\Cookies\[email protected][2].txt
             C:\Documents and Settings\11Sakinak\Cookies\[email protected][1].txt
             C:\Documents and Settings\11Sakinak\Cookies\[email protected][2].txt
             C:\Documents and Settings\11Sakinak\Cookies\[email protected][2].txt
             C:\Documents and Settings\11Sakinak\Cookies\[email protected][2].txt
             C:\Documents and Settings\11Sakinak\Cookies\[email protected][2].txt
             C:\Documents and Settings\11Sakinak\Cookies\11sakinak@atdmt[2].txt
             C:\Documents and Settings\11Sakinak\Cookies\11sakinak@buzzymultimedia[2].txt
             a.media.abcfamily.go.com [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             cdn.insights.gravity.com [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             cdn4.specificclick.net [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             cdn5.specificclick.net [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             cloud.video.unrulymedia.com [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             core.insightexpressai.com [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             d8.zedo.com [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             i.*adult URL* [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             ia.media-imdb.com [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             media-ti.pictela.net [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             media.ign.com [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             media.king5.com [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             media.kyte.tv [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             media.mtvnservices.com [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             media.onsugar.com [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             media.scanscout.com [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             media.socialvibe.com [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             media1.break.com [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             msnbcmedia.msn.com [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             objects.tremormedia.com [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             rmd.atdmt.com [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             s0.2mdn.net [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             secure-it.imrworldwide.com [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             secure-us.imrworldwide.com [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             serving-sys.com [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             static.2mdn.net [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             tracksimple.s3.amazonaws.com [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             udn.specificclick.net [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             vitamine.networldmedia.net [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             www.seventeen.com [ C:\Documents and Settings\11Sakinak\Application Data\Macromedia\Flash Player\#SharedObjects\9WLDWJF9 ]
             .adxpose.com [ C:\Documents and Settings\11Sakinak\Application Data\Mozilla\Firefox\Profiles\z09c95m6.default\cookies.sqlite ]
             .clickfuse.com [ C:\Documents and Settings\11Sakinak\Application Data\Mozilla\Firefox\Profiles\z09c95m6.default\cookies.sqlite ]
             media.mtvnservices.com [ C:\Documents and Settings\11Sakinak\Application Data\Mozilla\Firefox\Profiles\z09c95m6.default\cookies.sqlite ]
             .imrworldwide.com [ C:\Documents and Settings\11Sakinak\Application Data\Mozilla\Firefox\Profiles\z09c95m6.default\cookies.sqlite ]
             .imrworldwide.com [ C:\Documents and Settings\11Sakinak\Application Data\Mozilla\Firefox\Profiles\z09c95m6.default\cookies.sqlite ]
             .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .mediaplex.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .at.atwola.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .imrworldwide.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .imrworldwide.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .tacoda.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .advertising.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .247realmedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .viacom.adbureau.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .atdmt.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .adtech.de [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .kontera.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .interclick.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .interclick.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .adinterax.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .dmtracker.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .legolas-media.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .invitemedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .ads.pointroll.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .pointroll.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             in.getclicky.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .collective-media.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .zedo.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .zedo.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .ad.doubleclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .adbrite.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .adserver.adtechus.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .overture.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .doubleclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .s.clickability.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .112.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .122.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .timeinc.122.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .eyewonder.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .112.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .msnportal.112.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             gotacha.rotator.hadj7.adjuggler.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .122.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .122.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .casalemedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .ru4.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .ru4.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .us.adserver.yahoo.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             user.lucidmedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .adxpose.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             adserver.adreactor.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .adbrite.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .112.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .ru4.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .ru4.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .zedo.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .canoe.112.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .bs.serving-sys.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .ru4.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .viacom.adbureau.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .viacom.adbureau.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .ru4.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .tacoda.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .tacoda.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             ad.technoratimedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             ad.technoratimedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .view.atdmt.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .atdmt.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .atdmt.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .legolas-media.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .viacom.adbureau.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .casalemedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .interclick.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .yieldmanager.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .track.parse.ly [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .harrenmedianetwork.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .zedo.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .ru4.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .ad.doubleclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .viacom.adbureau.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .ru4.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .ru4.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .server.cpmstar.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             wstat.wibiya.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .serving-sys.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             26.media.tumblr.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .pubads.g.doubleclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .serving-sys.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .pubads.g.doubleclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .pubads.g.doubleclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .serving-sys.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .indieclick.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .collective-media.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .collective-media.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .collective-media.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             tradefx.advertserve.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .apmebf.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             optimize.indieclick.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             uk.sitestat.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             uk.sitestat.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .collective-media.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .collective-media.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .media.mtvnservices.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .media.mtvnservices.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             *Blocked Russian URL* [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .ad-apac.doubleclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .trinitymirror.112.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .overture.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .googleads.g.doubleclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .teenidols4you.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             adserv.brandaffinity.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .atdmt.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .atdmt.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .usatoday1.112.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             gotacha.rotator.hadj7.adjuggler.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .ad.doubleclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .ad.doubleclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .bravenet.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .statcounter.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .gotquestions.org [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .gotquestions.org [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             www.gotquestions.org [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .richmedia.yahoo.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .windycitymediagroup.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .c.gigcount.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .adlegend.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .adlegend.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             cn.clickable.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             cn.clickable.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .hearstmagazines.112.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             adserver.sevenload.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             adserver.sevenload.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             adserver.sevenload.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             adserver.sevenload.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             w00tpublishers.wootmedia.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .content.yieldmanager.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .r1-ads.ace.advertising.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .teenidols4you.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .teenidols4you.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .cracked.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .cracked.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .cracked.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             www.cracked.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .cracked.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .cracked.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .buzzymultimedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .blog.buzzymultimedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .blog.buzzymultimedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             stat.onestat.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             stat.onestat.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             www.googleadservices.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             adserv.bized.co.uk [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             uk.sitestat.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .asco.122.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .healthgrades.112.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .xiti.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             s001.hitstatcounter.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .tripod.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             www3.addfreestats.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .warnerbros.112.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             ad.zanox.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .adtech.de [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .zedo.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .xm.xtendmedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             timesofindia.indiatimes.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             timesofindia.indiatimes.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             timesofindia.indiatimes.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .zedo.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             adserv.brandaffinity.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             www5.addfreestats.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .server.cpmstar.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             ad.yieldmanager.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .serving-sys.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             s04.flagcounter.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .8tracks.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             8tracks.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .8tracks.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
             .8tracks.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies

          mkapsi

            Topic Starter


            Greenhorn

            • Experience: Beginner
            • OS: Unknown
            Re: Folders turned turned into 33kb .exe files and open in new windows
            « Reply #7 on: March 18, 2011, 07:57:29 PM »
            8tracks.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .8tracks.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               8tracks.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               8tracks.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               optimize.indieclick.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .8tracks.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .8tracks.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .8tracks.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .8tracks.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .kantarmedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .legolas-media.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               ad.reduxmedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               ad.reduxmedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               f.blogads.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               tracking1.aleadpay.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .server.cpmstar.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               ads6.hermoment.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               ads8.hermoment.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .tsleducation.112.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               s06.flagcounter.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .eyewonder.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .viaviralvideo.112.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .s.clickability.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .tradedoubler.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .tradedoubler.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .tradedoubler.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .tradedoubler.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .pittsburghpostgazette.112.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .adecn.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .invitemedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .invitemedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .invitemedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .invitemedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .invitemedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .pro-market.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .pro-market.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               ad.yieldmanager.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               ad.yieldmanager.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .bs.serving-sys.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .server.cpmstar.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .server.cpmstar.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .server.cpmstar.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .server.cpmstar.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .toplist.cz [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               dc.tremormedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .www.burstnet.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .havamedia.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .azjmp.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .azjmp.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .tribalfusion.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .tribalfusion.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .burstnet.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               ad1.emediate.dk [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               ad1.emediate.dk [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               rotator.adjuggler.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .highbeam.122.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .lucidmedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .media6degrees.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .media6degrees.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .media6degrees.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .media6degrees.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .media6degrees.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .invitemedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .zedo.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .accessexcellence.org [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               pluckit.demandmedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               www.jscount.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .smartadserver.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .smartadserver.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .smartadserver.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .collective-media.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .smartadserver.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .ar.atwola.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .tribalfusion.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .tribalfusion.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .tribalfusion.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .kontera.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .invitemedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               statse.webtrendslive.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .atdmt.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               us.sitestat.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               us.sitestat.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .advertising.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .media.adfrontiers.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .media.adfrontiers.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .trafficmp.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .trafficmp.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .trafficmp.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .trafficmp.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .trafficmp.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .trafficmp.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .trafficmp.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .trafficmp.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .collective-media.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .collective-media.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .collective-media.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               rotator.adjuggler.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .cbsdigitalmedia.112.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               www4.addfreestats.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .technoratimedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .technoratimedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .technoratimedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .adcentriconline.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .doubleclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .technoratimedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .kaspersky.122.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .microsoftwindows.112.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               fl01.ct2.comclick.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               fl01.ct2.comclick.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .mm.chitika.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .kontera.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .kontera.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               myap.liveperson.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .mediabrandsww.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .myap.liveperson.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .burstnet.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               www.burstnet.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .casalemedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .casalemedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .casalemedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .casalemedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .insightexpressai.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .statcounter.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .statcounter.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .adbrite.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .invitemedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .questionmarket.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .questionmarket.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .mediaplex.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .adinterax.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .ads.pointroll.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .pointroll.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .ads.pointroll.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .ads.pointroll.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .ads.pointroll.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .ads.pointroll.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .ads.pointroll.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .ads.pointroll.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .advertising.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .advertising.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .advertising.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .myroitracking.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .clicksor.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .clicksor.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .gostats.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .zedo.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .questionmarket.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .viacom.adbureau.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .specificclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .specificclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .specificclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .specificclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .specificclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .specificclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .specificclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .specificclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .specificclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .specificclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .specificclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .specificclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .fastclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .viacom.adbureau.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               www6.addfreestats.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .at.atwola.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .tacoda.at.atwola.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .tacoda.at.atwola.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .tacoda.at.atwola.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .at.atwola.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .tacoda.at.atwola.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .advertising.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .advertising.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .ar.atwola.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .adbrite.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .server.cpmstar.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .server.cpmstar.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .server.cpmstar.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .adbrite.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .adbrite.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .adbrite.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .adbrite.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .adbrite.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .casalemedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .casalemedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .casalemedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .casalemedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .casalemedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .casalemedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .overture.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .fastclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .fastclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .statcounter.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .surveymonkey.122.2o7.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .serving-sys.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .serving-sys.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .fastclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .fastclick.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .revsci.net [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .tribalfusion.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .content.yieldmanager.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               ad.yieldmanager.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               ad.yieldmanager.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .technoratimedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .technoratimedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .technoratimedia.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               ad.yieldmanager.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               ad.yieldmanager.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               ad.yieldmanager.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               ad.yieldmanager.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               ad.yieldmanager.com [ C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\User Data\Default\Cookies ]
               .ad.yieldmanager.com [ C:\Documents and Settings\nistt\Application Data\Mozilla\Firefox\Profiles\47ii80p5.default\cookies.sqlite ]
               .adrevolver.com [ C:\Documents and Settings\nistt\Application Data\Mozilla\Firefox\Profiles\47ii80p5.default\cookies.sqlite ]
               .adrevolver.com [ C:\Documents and Settings\nistt\Application Data\Mozilla\Firefox\Profiles\47ii80p5.default\cookies.sqlite ]
               .advertising.com [ C:\Documents and Settings\nistt\Application Data\Mozilla\Firefox\Profiles\47ii80p5.default\cookies.sqlite ]
               .atdmt.com [ C:\Documents and Settings\nistt\Application Data\Mozilla\Firefox\Profiles\47ii80p5.default\cookies.sqlite ]
               .atdmt.com [ C:\Documents and Settings\nistt\Application Data\Mozilla\Firefox\Profiles\47ii80p5.default\cookies.sqlite ]
               .burstnet.com [ C:\Documents and Settings\nistt\Application Data\Mozilla\Firefox\Profiles\47ii80p5.default\cookies.sqlite ]
               .doubleclick.net [ C:\Documents and Settings\nistt\Application Data\Mozilla\Firefox\Profiles\47ii80p5.default\cookies.sqlite ]
               .fastclick.net [ C:\Documents and Settings\nistt\Application Data\Mozilla\Firefox\Profiles\47ii80p5.default\cookies.sqlite ]
               .fastclick.net [ C:\Documents and Settings\nistt\Application Data\Mozilla\Firefox\Profiles\47ii80p5.default\cookies.sqlite ]
               .fastclick.net [ C:\Documents and Settings\nistt\Application Data\Mozilla\Firefox\Profiles\47ii80p5.default\cookies.sqlite ]
               .fastclick.net [ C:\Documents and Settings\nistt\Application Data\Mozilla\Firefox\Profiles\47ii80p5.default\cookies.sqlite ]
               .media.adrevolver.com [ C:\Documents and Settings\nistt\Application Data\Mozilla\Firefox\Profiles\47ii80p5.default\cookies.sqlite ]
               .msnportal.112.2o7.net [ C:\Documents and Settings\nistt\Application Data\Mozilla\Firefox\Profiles\47ii80p5.default\cookies.sqlite ]
               .realmedia.com [ C:\Documents and Settings\nistt\Application Data\Mozilla\Firefox\Profiles\47ii80p5.default\cookies.sqlite ]
               .realmedia.com [ C:\Documents and Settings\nistt\Application Data\Mozilla\Firefox\Profiles\47ii80p5.default\cookies.sqlite ]
               .revsci.net [ C:\Documents and Settings\nistt\Application Data\Mozilla\Firefox\Profiles\47ii80p5.default\cookies.sqlite ]
               .tribalfusion.com [ C:\Documents and Settings\nistt\Application Data\Mozilla\Firefox\Profiles\47ii80p5.default\cookies.sqlite ]
               .zedo.com [ C:\Documents and Settings\nistt\Application Data\Mozilla\Firefox\Profiles\47ii80p5.default\cookies.sqlite ]
               .zedo.com [ C:\Documents and Settings\nistt\Application Data\Mozilla\Firefox\Profiles\47ii80p5.default\cookies.sqlite ]
               .zedo.com [ C:\Documents and Settings\nistt\Application Data\Mozilla\Firefox\Profiles\47ii80p5.default\cookies.sqlite ]
               C:\Documents and Settings\nistt\Cookies\nistt@atdmt[1].txt
               C:\Documents and Settings\nistt\Cookies\nistt@doubleclick[1].txt

            Disabled.SecurityCenterOption
               HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER#FIREWALLDISABLENOTIFY
               HKLM\SOFTWARE\MICROSOFT\SECURITY CENTER#UPDATESDISABLENOTIFY

            mkapsi

              Topic Starter


              Greenhorn

              • Experience: Beginner
              • OS: Unknown
              Re: Folders turned turned into 33kb .exe files and open in new windows
              « Reply #8 on: March 18, 2011, 07:58:04 PM »
              Malwarebytes' Anti-Malware 1.50.1.1100
              www.malwarebytes.org

              Database version: 6099

              Windows 5.1.2600 Service Pack 3
              Internet Explorer 7.0.5730.13

              19/03/2011 08:35:30
              mbam-log-2011-03-19 (08-35-30).txt

              Scan type: Full scan (C:\|)
              Objects scanned: 325022
              Time elapsed: 2 hour(s), 8 minute(s), 35 second(s)

              Memory Processes Infected: 0
              Memory Modules Infected: 0
              Registry Keys Infected: 0
              Registry Values Infected: 2
              Registry Data Items Infected: 1
              Folders Infected: 0
              Files Infected: 2

              Memory Processes Infected:
              (No malicious items detected)

              Memory Modules Infected:
              (No malicious items detected)

              Registry Keys Infected:
              (No malicious items detected)

              Registry Values Infected:
              HKEY_CLASSES_ROOT\exefile\NeverShowExt (Risk.HiddenExt) -> Value: NeverShowExt -> Quarantined and deleted successfully.
              HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Taskman (Worm.Palevo) -> Value: Taskman -> Quarantined and deleted successfully.

              Registry Data Items Infected:
              HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Advanced\Folder\Hidden\SHOWALL\CheckedValue (PUM.Hijack.System.Hidden) -> Bad: (0) Good: (1) -> Quarantined and deleted successfully.

              Folders Infected:
              (No malicious items detected)

              Files Infected:
              c:\documents and settings\nistt\application data\desktopicon\ebayshortcuts.exe (Adware.ADON) -> Quarantined and deleted successfully.
              c:\documents and settings\11sakinak\local settings\Temp\utt857.tmp.exe (Trojan.Pakes) -> Quarantined and deleted successfully.

              mkapsi

                Topic Starter


                Greenhorn

                • Experience: Beginner
                • OS: Unknown
                Re: Folders turned turned into 33kb .exe files and open in new windows
                « Reply #9 on: March 18, 2011, 07:58:55 PM »
                .
                DDS (Ver_11-03-05.01) - NTFSx86 
                Run by 11SakinaK at  8:48:30.92 on 19/03/2011
                Internet Explorer: 7.0.5730.13 BrowserJavaVersion: 1.6.0_21
                Microsoft Windows XP Professional  5.1.2600.3.1252.44.1033.18.2039.1213 [GMT 7:00]
                .
                AV: Symantec Endpoint Protection *Enabled/Updated* {FB06448E-52B8-493A-90F3-E43226D3305C}
                FW: Symantec Endpoint Protection *Enabled*
                .
                ============== Running Processes ===============
                .
                C:\WINDOWS\system32\svchost -k DcomLaunch
                svchost.exe
                C:\WINDOWS\System32\svchost.exe -k netsvcs
                C:\Program Files\Symantec\Symantec Endpoint Protection\SNAC.EXE
                C:\Program Files\Symantec\Symantec Endpoint Protection\Smc.exe
                C:\Program Files\Common Files\Microsoft Shared\Ink\KeyboardSurrogate.exe
                svchost.exe
                svchost.exe
                C:\Program Files\Common Files\Symantec Shared\ccSvcHst.exe
                C:\WINDOWS\system32\brss01a.exe
                C:\WINDOWS\system32\spoolsv.exe
                svchost.exe
                C:\Program Files\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
                C:\Program Files\Bonjour\mDNSResponder.exe
                C:\Program Files\WIDCOMM\Bluetooth Software\bin\btwdins.exe
                C:\Program Files\Intel\Intel Matrix Storage Manager\iaantmon.exe
                C:\Program Files\Java\jre6\bin\jqs.exe
                C:\Program Files\Common Files\Microsoft Shared\VS7DEBUG\mdm.exe
                C:\Program Files\Hobbyist Software\Off-Helper\Off-Service.exe
                C:\WINDOWS\system32\svchost.exe -k imgsvc
                C:\Program Files\Symantec\Symantec Endpoint Protection\Rtvscan.exe
                C:\WINDOWS\SYSTEM32\WISPTIS.EXE
                C:\WINDOWS\System32\tabbtnu.exe
                C:\WINDOWS\Explorer.EXE
                C:\WINDOWS\system32\ctfmon.exe
                C:\Program Files\Clarus\Samsung SecretZone\SZAssistSVC.exe
                C:\WINDOWS\System32\svchost.exe -k netsvcs
                C:\Program Files\Hewlett-Packard\Shared\hpqwmiex.exe
                C:\WINDOWS\system32\svchost.exe -k netsvcs
                C:\WINDOWS\System32\svchost.exe -k HTTPFilter
                C:\Program Files\Symantec\Symantec Endpoint Protection\SmcGui.exe
                C:\Program Files\Common Files\Microsoft Shared\Ink\TCServer.exe
                C:\Program Files\Common Files\Microsoft Shared\Ink\TabTip.exe
                C:\Program Files\Intel\Intel Matrix Storage Manager\iaanotif.exe
                C:\WINDOWS\system32\igfxpers.exe
                C:\Program Files\Analog Devices\Core\smax4pnp.exe
                C:\WINDOWS\AGRSMMSG.exe
                C:\Program Files\Synaptics\SynTP\SynTPEnh.exe
                C:\Program Files\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe
                C:\Program Files\hpq\HP Wireless Assistant\HP Wireless Assistant.exe
                C:\Program Files\Microsoft Office\Office12\GrooveMonitor.exe
                C:\Program Files\Common Files\Symantec Shared\ccApp.exe
                C:\Program Files\Hobbyist Software\Off-Helper\Off-Helper.exe
                C:\Program Files\Common Files\Java\Java Update\jusched.exe
                C:\Program Files\DivX\DivX Update\DivXUpdate.exe
                C:\program files\real\realplayer\update\realsched.exe
                C:\Program Files\iTunes\iTunesHelper.exe
                C:\Program Files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe
                C:\Program Files\Microsoft Student\Microsoft Student with Encarta Premium 2008 DVD\EDICT.EXE
                C:\Program Files\uTorrent\uTorrent.exe
                C:\WINDOWS\System32\spool\DRIVERS\W32X86\3\E_FATIGDP.EXE
                C:\PROGRA~1\hpq\Shared\HPQTOA~1.EXE
                C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Update\1.2.183.39\GoogleCrashHandler.exe
                C:\Program Files\Microsoft Office\Office12\ONENOTEM.EXE
                C:\Program Files\Clarus\Samsung Auto Backup\ISFGuage.exe
                C:\Program Files\Clarus\Samsung Auto Backup\ISFRealTimeD.exe
                C:\Program Files\Clarus\Samsung Auto Backup\ISFTimerD.exe
                C:\Program Files\iPod\bin\iPodService.exe
                C:\Program Files\Microsoft Office\Office12\ONENOTE.EXE
                C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
                C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
                C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
                C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
                C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
                C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
                C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
                C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
                C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
                C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
                C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
                C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
                C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
                C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
                C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
                C:\Documents and Settings\11Sakinak\Local Settings\Application Data\Google\Chrome\Application\chrome.exe
                C:\Documents and Settings\11Sakinak\My Documents\Downloads\dds (1).scr
                .
                ============== Pseudo HJT Report ===============
                .
                uStart Page = hxxp://www.ask.com?o=15161&l=dis
                mDefault_Page_URL = hxxp://portal2.nist.ac.th/
                uInternet Settings,ProxyServer = 10.10.10.10:8080
                uInternet Settings,ProxyOverride = *.nist.ac.th;*.local;<local>
                uURLSearchHooks: UrlSearchHook Class: {00000000-6e41-4fd3-8538-502f5495e5fc} - c:\program files\ask.com\GenericAskToolbar.dll
                BHO: Adobe PDF Link Helper: {18df081c-e8ad-4283-a596-fa578c2ebdc3} - c:\program files\common files\adobe\acrobat\activex\AcroIEHelperShim.dll
                BHO: RealPlayer Download and Record Plugin for Internet Explorer: {3049c3e9-b461-4bc5-8870-4c09146192ca} - c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\ie\rpbrowserrecordplugin.dll
                BHO: {5C255C8A-E604-49b4-9D64-90988571CECB} - No File
                BHO: Groove GFS Browser Helper: {72853161-30c5-4d22-b7f9-0bbc1d38a37e} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
                BHO: Windows Live Sign-in Helper: {9030d464-4c02-4abf-8ecc-5164760863c6} - c:\program files\common files\microsoft shared\windows live\WindowsLiveLogin.dll
                BHO: Google Toolbar Helper: {aa58ed58-01dd-4d91-8333-cf10577473f7} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
                BHO: Skype Plug-In: {ae805869-2e5c-4ed4-8f7b-f1f7851a4497} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
                BHO: Google Toolbar Notifier BHO: {af69de43-7d58-4638-b6fa-ce66b5ad205d} - c:\program files\google\googletoolbarnotifier\5.6.6209.1142\swg.dll
                BHO: Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - c:\program files\ask.com\GenericAskToolbar.dll
                BHO: Java(tm) Plug-In 2 SSV Helper: {dbc80044-a445-435b-bc74-9c25c1c588a9} - c:\program files\java\jre6\bin\jp2ssv.dll
                BHO: JQSIEStartDetectorImpl Class: {e7e6f031-17ce-4c07-bc86-eabfe594f69c} - c:\program files\java\jre6\lib\deploy\jqs\ie\jqs_plugin.dll
                TB: Ask Toolbar: {d4027c7f-154a-4066-a1ad-4243d8127440} - c:\program files\ask.com\GenericAskToolbar.dll
                TB: Google Toolbar: {2318c2b1-4965-11d4-9b18-009027a5cd4f} - c:\program files\google\google toolbar\GoogleToolbar_32.dll
                uRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
                uRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
                uRun: [swg] "c:\program files\google\googletoolbarnotifier\GoogleToolbarNotifier.exe"
                uRun: [L08AXLRD_23951203] "c:\program files\microsoft student\microsoft student with encarta premium 2008 dvd\EDICT.EXE" -m
                uRun: [uTorrent] "c:\program files\utorrent\uTorrent.exe"
                uRun: [Google Update] "c:\documents and settings\11sakinak\local settings\application data\google\update\GoogleUpdate.exe" /c
                uRun: [EPSON TX220 NX220 Series] c:\windows\system32\spool\drivers\w32x86\3\e_fatigdp.exe /fu "c:\windows\temp\E_S230.tmp" /EF "HKCU"
                uRun: [Rainlendar2] c:\program files\rainlendar2\Rainlendar2.exe
                mRun: [TabletWizard] c:\windows\help\SplshWrp.exe
                mRun: [TabletTip] "c:\program files\common files\microsoft shared\ink\tabtip.exe" /resume
                mRun: [Cpqset] c:\program files\hpq\default settings\cpqset.exe
                mRun: [IAAnotif] c:\program files\intel\intel matrix storage manager\iaanotif.exe
                mRun: [igfxtray] c:\windows\system32\igfxtray.exe
                mRun: [igfxhkcmd] c:\windows\system32\hkcmd.exe
                mRun: [igfxpers] c:\windows\system32\igfxpers.exe
                mRun: [SoundMAXPnP] c:\program files\analog devices\core\smax4pnp.exe
                mRun: [SoundMAX] c:\program files\analog devices\soundmax\Smax4.exe /tray
                mRun: [AGRSMMSG] AGRSMMSG.exe
                mRun: [SynTPEnh] c:\program files\synaptics\syntp\SynTPEnh.exe
                mRun: [QlbCtrl] %ProgramFiles%\Hewlett-Packard\HP Quick Launch Buttons\QlbCtrl.exe /Start
                mRun: [hpWirelessAssistant] c:\program files\hpq\hp wireless assistant\HP Wireless Assistant.exe
                mRun: [GrooveMonitor] "c:\program files\microsoft office\office12\GrooveMonitor.exe"
                mRun: [IMJPMIG8.1] "c:\windows\ime\imjp8_1\IMJPMIG.EXE" /Spoil /RemAdvDef /Migration32
                mRun: [IMEKRMIG6.1] c:\windows\ime\imkr6_1\IMEKRMIG.EXE
                mRun: [MSPY2002] c:\windows\system32\ime\pintlgnt\ImScInst.exe /SYNC
                mRun: [PHIME2002ASync] c:\windows\system32\ime\tintlgnt\TINTSETP.EXE /SYNC
                mRun: [PHIME2002A] c:\windows\system32\ime\tintlgnt\TINTSETP.EXE /IMEName
                mRun: [Snippet] "c:\program files\microsoft experience pack\snipping tool\SnippingTool.exe" /i
                mRun: [ccApp] "c:\program files\common files\symantec shared\ccApp.exe"
                mRun: [AppleSyncNotifier] c:\program files\common files\apple\mobile device support\AppleSyncNotifier.exe
                mRun: [Adobe Reader Speed Launcher] "c:\program files\adobe\reader 9.0\reader\Reader_sl.exe"
                mRun: [Hobbyist Software On-Off Helper] c:\program files\hobbyist software\off-helper\Off-Helper.exe /silent
                mRun: [SunJavaUpdateSched] "c:\program files\common files\java\java update\jusched.exe"
                mRun: [UserFaultCheck] %systemroot%\system32\dumprep 0 -u
                mRun: [DivXUpdate] "c:\program files\divx\divx update\DivXUpdate.exe" /CHECKNOW
                mRun: [QuickTime Task] "c:\program files\quicktime\QTTask.exe" -atboottime
                mRun: [TkBellExe] "c:\program files\real\realplayer\update\realsched.exe"  -osboot
                mRun: [iTunesHelper] "c:\program files\itunes\iTunesHelper.exe"
                dRun: [ctfmon.exe] c:\windows\system32\ctfmon.exe
                StartupFolder: c:\docume~1\11saki~1\startm~1\programs\startup\limewi~1.lnk - c:\program files\limewire\LimeWire.exe
                StartupFolder: c:\docume~1\11saki~1\startm~1\programs\startup\onenot~1.lnk - c:\program files\microsoft office\office12\ONENOTEM.EXE
                StartupFolder: c:\docume~1\11saki~1\startm~1\programs\startup\samsun~3.lnk - c:\program files\clarus\samsung auto backup\ISFGuage.exe
                StartupFolder: c:\docume~1\11saki~1\startm~1\programs\startup\samsun~2.lnk - c:\program files\clarus\samsung auto backup\ISFRealTimeD.exe
                StartupFolder: c:\docume~1\11saki~1\startm~1\programs\startup\samsun~1.lnk - c:\program files\clarus\samsung auto backup\ISFTimerD.exe
                StartupFolder: c:\docume~1\alluse~1\startm~1\programs\startup\onenot~1.lnk - c:\program files\microsoft office\office12\ONENOTEM.EXE
                IE: E&xport to Microsoft Excel - c:\progra~1\micros~2\office12\EXCEL.EXE/3000
                IE: Google Sidewiki... - c:\program files\google\google toolbar\component\GoogleToolbarDynamic_mui_en_D183CA64F05FDD98.dll/cmsidewiki.html
                IE: {e2e2dd38-d088-4134-82b7-f2ba38496583} - %windir%\Network Diagnostic\xpnetdiag.exe
                IE: {FB5F1910-F110-11d2-BB9E-00C04F795683} - c:\program files\messenger\msmsgs.exe
                IE: {2670000A-7350-4f3c-8081-5663EE0C6C49} - {48E73304-E1D6-4330-914C-F5F514E3486C} - c:\progra~1\micros~2\office12\ONBttnIE.dll
                IE: {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
                IE: {92780B25-18CC-41C8-B9BE-3C9C571A8263} - {FF059E31-CC5A-4E2E-BF3B-96E929D65503} - c:\progra~1\micros~2\office12\REFIEBAR.DLL
                IE: {B205A35E-1FC4-4CE3-818B-899DBBB3388C} - {552781AF-37E4-4FEE-920A-CED9E648EADD} - c:\program files\common files\microsoft shared\encarta search bar\ENCSBAR.DLL
                DPF: {166B1BCA-3F9C-11CF-8075-444553540000} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
                DPF: {233C1507-6A77-46A4-9443-F871F945D258} - hxxp://download.macromedia.com/pub/shockwave/cabs/director/sw.cab
                DPF: {8AD9C840-044E-11D1-B3E9-00805F499D93} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab
                DPF: {8FFBE65D-2C9C-4669-84BD-5829DC0B603C} - hxxp://fpdownload.macromedia.com/get/flashplayer/current/polarbear/ultrashim.cab
                DPF: {CAFEEFAC-0016-0000-0001-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_01-windows-i586.cab
                DPF: {CAFEEFAC-0016-0000-0021-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab
                DPF: {CAFEEFAC-FFFF-FFFF-FFFF-ABCDEFFEDCBA} - hxxp://java.sun.com/update/1.6.0/jinstall-1_6_0_21-windows-i586.cab
                DPF: {E2883E8F-472F-4FB0-9522-AC9BF37916A7} - hxxp://platformdl.adobe.com/NOS/getPlusPlus/1.6/gp.cab
                Handler: grooveLocalGWS - {88FED34C-F0CA-4636-A375-3CB6248B04CD} - c:\program files\microsoft office\office12\GrooveSystemServices.dll
                Handler: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - c:\program files\skype\toolbars\internet explorer\skypeieplugin.dll
                Handler: skype4com - {FFC8B962-9B40-4DFF-9458-1830C7DD7F5D} - c:\progra~1\common~1\skype\SKYPE4~1.DLL
                Notify: !SASWinLogon - c:\program files\superantispyware\SASWINLO.DLL
                Notify: igfxcui - igfxdev.dll
                Notify: loginkey - c:\program files\common files\microsoft shared\ink\loginkey.dll
                Notify: TabBtnWL - TabBtnWL.dll
                Notify: tpgwlnotify - tpgwlnot.dll
                SSODL: WPDShServiceObj - {AAA288BA-9A4C-45B0-95D7-94D524869DB5} - c:\windows\system32\WPDShServiceObj.dll
                SEH: Groove GFS Stub Execution Hook: {b5a7f190-dda6-4420-b3ba-52453494e6cd} - c:\program files\microsoft office\office12\GrooveShellExtensions.dll
                SEH: SABShellExecuteHook Class: {5ae067d3-9afb-48e0-853a-ebb7f4a000da} - c:\program files\superantispyware\SASSEH.DLL
                .
                ================= FIREFOX ===================
                .
                FF - ProfilePath - c:\docume~1\11saki~1\applic~1\mozilla\firefox\profiles\z09c95m6.default\
                FF - prefs.js: browser.search.selectedEngine - Ask.com
                FF - prefs.js: keyword.URL - hxxp://websearch.ask.com/redirect?client=ff&src=kw&tb=UT2V5&o=15158&locale=en_US&apn_uid=9C5EE4CB-C216-48E4-89E7-D127A58B5017&apn_ptnrs=UG&apn_sauid=03BE4CEB-11CB-4AAD-96A2-1DF94366895F&apn_dtid=YYYYYYYYTH&q=
                FF - component: c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\firefox\ext\components\nprpffbrowserrecordext.dll
                FF - plugin: c:\documents and settings\11sakinak\local settings\application data\google\update\1.2.183.39\npGoogleOneClick8.dll
                FF - plugin: c:\documents and settings\all users\application data\real\realplayer\browserrecordplugin\mozillaplugins\nprphtml5videoshim.dll
                FF - plugin: c:\program files\divx\divx plus web player\npdivx32.dll
                FF - plugin: c:\program files\google\google earth\plugin\npgeplugin.dll
                FF - plugin: c:\program files\google\update\1.2.183.23\npGoogleOneClick8.dll
                FF - plugin: c:\program files\google\update\1.2.183.29\npGoogleOneClick8.dll
                FF - plugin: c:\program files\google\update\1.2.183.39\npGoogleOneClick8.dll
                FF - plugin: c:\program files\java\jre6\bin\new_plugin\npdeployJava1.dll
                .
                ============= SERVICES / DRIVERS ===============
                .
                R1 SASDIFSV;SASDIFSV;c:\program files\superantispyware\sasdifsv.sys [2010-2-18 12872]
                R1 SASKUTIL;SASKUTIL;c:\program files\superantispyware\SASKUTIL.SYS [2010-5-11 67656]
                R2 ccEvtMgr;Symantec Event Manager;c:\program files\common files\symantec shared\ccSvcHst.exe [2010-10-11 108392]
                R2 ccSetMgr;Symantec Settings Manager;c:\program files\common files\symantec shared\ccSvcHst.exe [2010-10-11 108392]
                R2 Off-Helper;Off-Helper;c:\program files\hobbyist software\off-helper\Off-Service.exe [2010-7-18 32768]
                R2 Symantec AntiVirus;Symantec Endpoint Protection;c:\program files\symantec\symantec endpoint protection\Rtvscan.exe [2010-10-11 1831024]
                R2 SZASSIST;SecretZone Assist Service;c:\program files\clarus\samsung secretzone\SZAssistSVC.exe [2010-11-23 90112]
                R3 EraserUtilRebootDrv;EraserUtilRebootDrv;c:\program files\common files\symantec shared\eengine\EraserUtilRebootDrv.sys [2011-1-21 102448]
                R3 GTIPCI21;GTIPCI21;c:\windows\system32\drivers\gtipci21.sys [2006-2-28 87808]
                R3 mdf15;mdf15;c:\program files\clarus\samsung secretzone\mdf15.sys [2010-11-23 12288]
                R3 mvd21;mvd21;c:\program files\clarus\samsung secretzone\mvd21.sys [2010-11-23 64512]
                R3 NAVENG;NAVENG;c:\progra~1\common~1\symant~1\virusd~1\20110306.002\NAVENG.SYS [2011-3-7 86008]
                R3 NAVEX15;NAVEX15;c:\progra~1\common~1\symant~1\virusd~1\20110306.002\NAVEX15.SYS [2011-3-7 1360760]
                R3 wisdpen;Wacom Penabled MiniDriver;c:\windows\system32\drivers\wisdpen.sys [2007-1-22 34736]
                S2 clr_optimization_v4.0.30319_32;Microsoft .NET Framework NGEN v4.0.30319_X86;c:\windows\microsoft.net\framework\v4.0.30319\mscorsvw.exe [2010-3-18 130384]
                S2 gupdate1c9eee8a08e6616;Google Update Service (gupdate1c9eee8a08e6616);c:\program files\google\update\GoogleUpdate.exe [2009-6-17 133104]
                S3 COH_Mon;COH_Mon;c:\windows\system32\drivers\COH_Mon.sys [2009-10-14 23888]
                S3 WacomPen;Wacom Serial Pen HID Driver;c:\windows\system32\drivers\wacompen.sys [2007-7-9 14208]
                S3 WinRM;Windows Remote Management (WS-Management);c:\windows\system32\svchost.exe -k WINRM [2004-8-4 14336]
                S3 WPFFontCache_v0400;Windows Presentation Foundation Font Cache 4.0.0.0;c:\windows\microsoft.net\framework\v4.0.30319\wpf\WPFFontCache_v0400.exe [2010-3-18 753504]
                .
                =============== Created Last 30 ================
                .
                2011-03-18 16:49:08   --------   d-----w-   c:\docume~1\11saki~1\applic~1\Malwarebytes
                2011-03-18 16:48:54   38224   ----a-w-   c:\windows\system32\drivers\mbamswissarmy.sys
                2011-03-18 16:48:53   --------   d-----w-   c:\docume~1\alluse~1\applic~1\Malwarebytes
                2011-03-18 16:48:50   20952   ----a-w-   c:\windows\system32\drivers\mbam.sys
                2011-03-18 16:48:50   --------   d-----w-   c:\program files\Malwarebytes' Anti-Malware
                2011-03-18 02:14:41   --------   d-----w-   c:\docume~1\alluse~1\applic~1\SUPERAntiSpyware.com
                2011-03-18 02:14:41   --------   d-----w-   c:\docume~1\11saki~1\applic~1\SUPERAntiSpyware.com
                2011-03-18 02:14:26   --------   d-----w-   c:\program files\SUPERAntiSpyware
                2011-03-14 02:35:51   --------   d-----w-   c:\windows\pss
                2011-03-11 10:17:18   --------   d-----w-   C:\MyData
                2011-03-10 15:15:33   --------   d-----w-   c:\program files\common files\EPSON
                2011-03-10 15:15:09   8192   ----a-w-   c:\windows\system32\E_DCINST.DLL
                2011-03-10 15:15:03   93696   ----a-w-   c:\windows\system32\E_FLBGDP.DLL
                2011-03-10 15:15:03   63488   ----a-w-   c:\windows\system32\E_FD4BGDP.DLL
                2011-03-10 15:11:51   --------   d-----w-   c:\docume~1\alluse~1\applic~1\EPSON
                2011-03-10 15:11:45   342016   ----a-w-   c:\windows\system32\eswiaud.dll
                2011-03-10 15:11:45   15872   ----a-w-   c:\windows\system32\escdev.dll
                2011-03-10 15:11:45   128392   ----a-w-   c:\windows\system32\esdevapp.exe
                2011-03-10 15:11:41   --------   d-----w-   c:\program files\epson
                2011-03-08 01:00:34   439296   -c----w-   c:\windows\system32\dllcache\shimgvw.dll
                2011-03-08 00:59:49   135168   -c----w-   c:\windows\system32\dllcache\shsvcs.dll
                2011-02-27 02:09:22   --------   d-----w-   c:\program files\iPod
                .
                ==================== Find3M  ====================
                .
                2011-01-21 14:44:37   439296   ----a-w-   c:\windows\system32\shimgvw.dll
                2011-01-07 14:09:02   290048   ----a-w-   c:\windows\system32\atmfd.dll
                2011-01-05 15:22:07   348160   ----a-w-   c:\windows\system32\msvcr71.dll
                2010-12-31 13:10:33   1854976   ----a-w-   c:\windows\system32\win32k.sys
                2010-12-22 12:34:28   301568   ----a-w-   c:\windows\system32\kerberos.dll
                2010-12-20 23:08:45   832512   ----a-w-   c:\windows\system32\wininet.dll
                2010-12-20 23:08:45   78336   ----a-w-   c:\windows\system32\ieencode.dll
                2010-12-20 23:08:45   1830912   ----a-w-   c:\windows\system32\inetcpl.cpl
                2010-12-20 23:08:45   17408   ----a-w-   c:\windows\system32\corpol.dll
                2010-12-20 17:26:00   730112   ----a-w-   c:\windows\system32\lsasrv.dll
                2010-12-20 12:55:25   389120   ----a-w-   c:\windows\system32\html.iec
                .
                ============= FINISH:  8:49:11.42 ===============


                mkapsi

                  Topic Starter


                  Greenhorn

                  • Experience: Beginner
                  • OS: Unknown
                  Re: Folders turned turned into 33kb .exe files and open in new windows
                  « Reply #10 on: March 18, 2011, 07:59:35 PM »
                  .
                  UNLESS SPECIFICALLY INSTRUCTED, DO NOT POST THIS LOG.
                  IF REQUESTED, ZIP IT UP & ATTACH IT
                  .
                  DDS (Ver_11-03-05.01)
                  .
                  Microsoft Windows XP Professional
                  Boot Device: \Device\HarddiskVolume1
                  Install Date: 30/03/2010 10:21:51
                  System Uptime: 19/03/2011 08:38:06 (0 hours ago)
                  .
                  Motherboard: Hewlett-Packard |  | 30B1
                  Processor: Intel(R) Core(TM)2 CPU         T7200  @ 2.00GHz | U10 | 997/166mhz
                  .
                  ==== Disk Partitions =========================
                  .
                  C: is FIXED (NTFS) - 149 GiB total, 1.035 GiB free.
                  .
                  ==== Disabled Device Manager Items =============
                  .
                  Class GUID: {4D36E97E-E325-11CE-BFC1-08002BE10318}
                  Description:
                  Device ID: ACPI\IFX0102\4&28738126&0
                  Manufacturer:
                  Name:
                  PNP Device ID: ACPI\IFX0102\4&28738126&0
                  Service:
                  .
                  ==== System Restore Points ===================
                  .
                  RP267: 19/03/2011 02:20:05 - System Checkpoint
                  .
                  ==== Installed Programs ======================
                  .
                  Adobe AIR
                  Adobe Digital Editions
                  Adobe Flash Player 10 ActiveX
                  Adobe Flash Player 10 Plugin
                  Adobe Reader 9.3
                  Adobe Shockwave Player 11.5
                  Agere Systems HDA Modem
                  Agilix GoBinder Lite
                  Apple Application Support
                  Apple Mobile Device Support
                  Apple Software Update
                  Ashampoo Burning Studio 6 FREE
                  Ask Toolbar
                  µTorrent
                  Audacity 1.2.4
                  Autograph 3.20
                  Bink and Smacker
                  Bonjour
                  Broadcom NetXtreme Ethernet Controller
                  CamStudio
                  CamStudio Lossless Codec v1.4
                  ComicRack v0.9.125
                  Critical Update for Windows Media Player 11 (KB959772)
                  Derive 6
                  Design Tools - 2D Design V2
                  DivX Setup
                  DivX Web Player
                  DyKnow Tablet Runtime 5.2 SP1
                  Dynamic Omnigraph
                  EclipseCrossword
                  eMindMaps
                  EPSON Scan
                  EPSON TX220 NX220 Series Printer Uninstall
                  Fathom
                  Fingerprint Sensor Minimum Install
                  Focus on Mechanical Toys
                  Focus on Mechanisms
                  Focus on Metals
                  Focus on Plastics
                  Focus on Resistant Materials
                  Focus on Wood Joints
                  FormatFactory 1.90
                  GIMP 2.6.4
                  GOM Player
                  Google Chrome
                  Google Earth
                  Google SketchUp 7
                  Google Toolbar for Internet Explorer
                  Google Update Helper
                  Graph 4.3
                  Graphic Products
                  Hotfix for Microsoft .NET Framework 3.5 SP1 (KB953595)
                  Hotfix for Microsoft .NET Framework 3.5 SP1 (KB958484)
                  Hotfix for Windows Media Format 11 SDK (KB929399)
                  Hotfix for Windows Media Player 11 (KB939683)
                  Hotfix for Windows XP (KB2158563)
                  Hotfix for Windows XP (KB2443685)
                  Hotfix for Windows XP (KB952287)
                  Hotfix for Windows XP (KB954550-v5)
                  Hotfix for Windows XP (KB961118)
                  Hotfix for Windows XP (KB969084)
                  Hotfix for Windows XP (KB976002-v5)
                  Hotfix for Windows XP (KB976098-v2)
                  Hotfix for Windows XP (KB981793)
                  HP BatteryCheck 1.00 A7
                  HP Integrated Module with Bluetooth wireless technology
                  HP Mobile Data Protection System
                  HP Quick Launch Buttons 6.00 E3
                  HP Wireless Assistant 2.00 E1
                  i-Clickr
                  IB Questionbank Biology Standard and Higher Level
                  IB Questionbank Chemistry Standard and Higher Level
                  IB Questionbank Economics SL and HL
                  IB Questionbank Mathematics Higher and Standard Level
                  IB Questionbank Mathematics Higher Level
                  IB Questionbank Mathematics Standard Level
                  Ink Art
                  Intel Matrix Storage Manager
                  Intel(R) Graphics Media Accelerator Driver
                  Intel(R) PROSet/Wireless Software
                  Interactive investigations with Omnigraph for Windows
                  IrfanView (remove only)
                  iTunes
                  Java Auto Updater
                  Java(TM) 6 Update 21
                  Java(TM) SE Runtime Environment 6 Update 1
                  K-Lite Codec Pack 4.7.5 (Full)
                  Learning Essentials for Microsoft Office
                  Lessons using ICT in Mathematics
                  LimeWire 5.5.8
                  LiveUpdate 3.3 (Symantec Corporation)
                  Logger Pro 3.8.2
                  LoggerPro3
                  Macromedia Contribute 3.11
                  Macromedia Dreamweaver 8
                  Macromedia Extension Manager
                  Macromedia Fireworks 8
                  Macromedia Flash 8
                  Macromedia Flash 8 Video Encoder
                  MAGIX Xtreme Photo Designer 6 6.0.19.0 (US)
                  Malwarebytes' Anti-Malware
                  mDriver
                  MicroSMILE Investigations
                  Microsoft .NET Framework 1.0 Hotfix (KB979904)
                  Microsoft .NET Framework 1.1
                  Microsoft .NET Framework 1.1 Security Update (KB2416447)
                  Microsoft .NET Framework 1.1 Security Update (KB979906)
                  Microsoft .NET Framework 2.0 Service Pack 2
                  Microsoft .NET Framework 3.0 Service Pack 2
                  Microsoft .NET Framework 3.5 SP1
                  Microsoft .NET Framework 4 Client Profile
                  Microsoft .NET Framework 4 Extended
                  Microsoft Application Error Reporting
                  Microsoft Choice Guard
                  Microsoft Compression Client Pack 1.0 for Windows XP
                  Microsoft Education Pack for Windows XP Tablet PC Edition
                  Microsoft Experience Pack for Tablet PC
                  Microsoft Expression Web
                  Microsoft Expression Web MUI (English)
                  Microsoft Expression Web Service Pack 1 (SP1)
                  Microsoft Ink Crossword
                  Microsoft Ink Desktop
                  Microsoft Internationalized Domain Names Mitigation APIs
                  Microsoft Math
                  Microsoft Media Transfer
                  Microsoft National Language Support Downlevel APIs
                  Microsoft Office 2007 Service Pack 2 (SP2)
                  Microsoft Office Access MUI (English) 2007
                  Microsoft Office Access Setup Metadata MUI (English) 2007
                  Microsoft Office Enterprise 2007
                  Microsoft Office Excel MUI (English) 2007
                  Microsoft Office Groove MUI (English) 2007
                  Microsoft Office Groove Setup Metadata MUI (English) 2007
                  Microsoft Office InfoPath MUI (English) 2007
                  Microsoft Office OneNote MUI (English) 2007
                  Microsoft Office Outlook MUI (English) 2007
                  Microsoft Office PowerPoint MUI (English) 2007
                  Microsoft Office Proof (English) 2007
                  Microsoft Office Proof (French) 2007
                  Microsoft Office Proof (Spanish) 2007
                  Microsoft Office Proofing (English) 2007
                  Microsoft Office Proofing Tools 2007 Service Pack 2 (SP2)
                  Microsoft Office Publisher MUI (English) 2007
                  Microsoft Office Shared MUI (English) 2007
                  Microsoft Office Shared Setup Metadata MUI (English) 2007
                  Microsoft Office SharePoint Designer 2007 Service Pack 2 (SP2)
                  Microsoft Office Word MUI (English) 2007
                  Microsoft Reader
                  Microsoft Save as PDF Add-in for 2007 Microsoft Office programs
                  Microsoft Snipping Tool 2.0
                  Microsoft Software Update for Web Folders  (English) 12
                  Microsoft Student 2007 for Learning Essentials
                  Microsoft Student with Encarta Premium 2008
                  Microsoft User-Mode Driver Framework Feature Pack 1.0
                  Microsoft Windows XP Tablet PC Edition 2005 Recognizer Pack
                  Microsoft XML Parser
                  MobileMe Control Panel
                  Mozilla Firefox (3.6)
                  MSVCRT
                  MSXML 4.0 SP2 (KB954430)
                  MSXML 4.0 SP2 (KB973688)
                  MSXML 6.0 Parser (KB933579)
                  Music Notepad
                  Norton Security Scan
                  Off-Helper 2.02
                  Paint Shop Pro 5.0
                  Paint.NET v3.36
                  Photo Story 3 for Windows
                  PTC ProDESKTOP 8.0
                  QuickTime
                  Rainlendar2 (remove only)
                  RealNetworks - Microsoft Visual C++ 2008 Runtime
                  RealPlayer
                  RealUpgrade 1.1
                  Rhapsody Player Engine
                  Safari
                  Samsung Auto Backup
                  Samsung SecretZone
                  Security Update for 2007 Microsoft Office System (KB2288621)
                  Security Update for 2007 Microsoft Office System (KB2288931)
                  Security Update for 2007 Microsoft Office System (KB2289158)
                  Security Update for 2007 Microsoft Office System (KB2344875)
                  Security Update for 2007 Microsoft Office System (KB2345043)
                  Security Update for 2007 Microsoft Office System (KB969559)
                  Security Update for 2007 Microsoft Office System (KB976321)
                  Security Update for Microsoft .NET Framework 3.5 SP1 (KB2416473)
                  Security Update for Microsoft Office Access 2007 (KB979440)
                  Security Update for Microsoft Office Excel 2007 (KB2345035)
                  Security Update for Microsoft Office InfoPath 2007 (KB979441)
                  Security Update for Microsoft Office PowerPoint 2007 (KB982158)
                  Security Update for Microsoft Office PowerPoint Viewer (KB2413381)
                  Security Update for Microsoft Office Publisher 2007 (KB2284697)
                  Security Update for Microsoft Office system 2007 (972581)
                  Security Update for Microsoft Office system 2007 (KB974234)
                  Security Update for Microsoft Office Visio Viewer 2007 (KB973709)
                  Security Update for Microsoft Office Word 2007 (KB2344993)
                  Security Update for Windows Internet Explorer 7 (KB2416400)
                  Security Update for Windows Internet Explorer 7 (KB2482017)
                  Security Update for Windows Internet Explorer 7 (KB938127-v2)
                  Security Update for Windows Internet Explorer 7 (KB969897)
                  Security Update for Windows Internet Explorer 7 (KB978207)
                  Security Update for Windows Internet Explorer 7 (KB982381)
                  Security Update for Windows Media Encoder (KB2447961)
                  Security Update for Windows Media Encoder (KB954156)
                  Security Update for Windows Media Encoder (KB979332)
                  Security Update for Windows Media Player (KB2378111)
                  Security Update for Windows Media Player (KB952069)
                  Security Update for Windows Media Player (KB954155)
                  Security Update for Windows Media Player (KB968816)
                  Security Update for Windows Media Player (KB973540)
                  Security Update for Windows Media Player (KB975558)
                  Security Update for Windows Media Player (KB978695)
                  Security Update for Windows Media Player 11 (KB936782)
                  Security Update for Windows Media Player 11 (KB954154)
                  Security Update for Windows XP (KB2079403)
                  Security Update for Windows XP (KB2115168)
                  Security Update for Windows XP (KB2121546)
                  Security Update for Windows XP (KB2229593)
                  Security Update for Windows XP (KB2259922)
                  Security Update for Windows XP (KB2279986)
                  Security Update for Windows XP (KB2286198)
                  Security Update for Windows XP (KB2296011)
                  Security Update for Windows XP (KB2296199)
                  Security Update for Windows XP (KB2347290)
                  Security Update for Windows XP (KB2360937)
                  Security Update for Windows XP (KB2387149)
                  Security Update for Windows XP (KB2393802)
                  Security Update for Windows XP (KB2419632)
                  Security Update for Windows XP (KB2423089)
                  Security Update for Windows XP (KB2436673)
                  Security Update for Windows XP (KB2440591)
                  Security Update for Windows XP (KB2443105)
                  Security Update for Windows XP (KB2476687)
                  Security Update for Windows XP (KB2478960)
                  Security Update for Windows XP (KB2478971)
                  Security Update for Windows XP (KB2479628)
                  Security Update for Windows XP (KB2483185)
                  Security Update for Windows XP (KB2485376)
                  Security Update for Windows XP (KB923561)
                  Security Update for Windows XP (KB938464-v2)
                  Security Update for Windows XP (KB941569)
                  Security Update for Windows XP (KB946648)
                  Security Update for Windows XP (KB950760)
                  Security Update for Windows XP (KB950762)
                  Security Update for Windows XP (KB950974)
                  Security Update for Windows XP (KB951066)
                  Security Update for Windows XP (KB951376-v2)
                  Security Update for Windows XP (KB951748)
                  Security Update for Windows XP (KB952004)
                  Security Update for Windows XP (KB952954)
                  Security Update for Windows XP (KB954459)
                  Security Update for Windows XP (KB954600)
                  Security Update for Windows XP (KB955069)
                  Security Update for Windows XP (KB956572)
                  Security Update for Windows XP (KB956744)
                  Security Update for Windows XP (KB956802)
                  Security Update for Windows XP (KB956803)
                  Security Update for Windows XP (KB956844)
                  Security Update for Windows XP (KB957097)
                  Security Update for Windows XP (KB958644)
                  Security Update for Windows XP (KB958687)
                  Security Update for Windows XP (KB958869)
                  Security Update for Windows XP (KB959426)
                  Security Update for Windows XP (KB960225)
                  Security Update for Windows XP (KB960803)
                  Security Update for Windows XP (KB960859)
                  Security Update for Windows XP (KB961373)
                  Security Update for Windows XP (KB961501)
                  Security Update for Windows XP (KB968537)
                  Security Update for Windows XP (KB969059)
                  Security Update for Windows XP (KB969898)
                  Security Update for Windows XP (KB969947)
                  Security Update for Windows XP (KB970238)
                  Security Update for Windows XP (KB970430)
                  Security Update for Windows XP (KB971468)
                  Security Update for Windows XP (KB971486)
                  Security Update for Windows XP (KB971657)
                  Security Update for Windows XP (KB971961)
                  Security Update for Windows XP (KB972270)
                  Security Update for Windows XP (KB973354)
                  Security Update for Windows XP (KB973507)
                  Security Update for Windows XP (KB973869)
                  Security Update for Windows XP (KB973904)
                  Security Update for Windows XP (KB974112)
                  Security Update for Windows XP (KB974318)
                  Security Update for Windows XP (KB974392)
                  Security Update for Windows XP (KB974571)
                  Security Update for Windows XP (KB975025)
                  Security Update for Windows XP (KB975467)
                  Security Update for Windows XP (KB975560)
                  Security Update for Windows XP (KB975561)
                  Security Update for Windows XP (KB975562)
                  Security Update for Windows XP (KB975713)
                  Security Update for Windows XP (KB977816)
                  Security Update for Windows XP (KB977914)
                  Security Update for Windows XP (KB978037)
                  Security Update for Windows XP (KB978251)
                  Security Update for Windows XP (KB978262)
                  Security Update for Windows XP (KB978338)
                  Security Update for Windows XP (KB978542)
                  Security Update for Windows XP (KB978601)
                  Security Update for Windows XP (KB978706)
                  Security Update for Windows XP (KB979309)
                  Security Update for Windows XP (KB979482)
                  Security Update for Windows XP (KB979559)
                  Security Update for Windows XP (KB979683)
                  Security Update for Windows XP (KB979687)
                  Security Update for Windows XP (KB980195)
                  Security Update for Windows XP (KB980218)
                  Security Update for Windows XP (KB980232)
                  Security Update for Windows XP (KB980436)
                  Security Update for Windows XP (KB981322)
                  Security Update for Windows XP (KB981349)
                  Security Update for Windows XP (KB981852)
                  Security Update for Windows XP (KB981957)
                  Security Update for Windows XP (KB981997)
                  Security Update for Windows XP (KB982132)
                  Security Update for Windows XP (KB982214)
                  Security Update for Windows XP (KB982665)
                  Seesmic Desktop
                  Segoe UI
                  Sketchpad
                  Skype Toolbars
                  Skype™ 5.1
                  Sony ACID XPress 5.0a
                  SoundMAX
                  SUPERAntiSpyware
                  Symantec Endpoint Protection
                  Synaptics Pointing Device Driver
                  SyncToy
                  Texas Instruments PCIxx21/x515/xx12 drivers.
                  TI Connect 1.6
                  TI Connect(TM) 1.3
                  TIPCI
                  Tweak UI
                  TweetDeck
                  Update for 2007 Microsoft Office System (KB2284654)
                  Update for 2007 Microsoft Office System (KB967642)
                  Update for Microsoft .NET Framework 3.5 SP1 (KB963707)
                  Update for Microsoft Office 2007 Help for Common Features (KB963673)
                  Update for Microsoft Office Access 2007 Help (KB963663)
                  Update for Microsoft Office Excel 2007 Help (KB963678)
                  Update for Microsoft Office Infopath 2007 Help (KB963662)
                  Update for Microsoft Office OneNote 2007 (KB980729)
                  Update for Microsoft Office OneNote 2007 Help (KB963670)
                  Update for Microsoft Office Outlook 2007 (KB2412171)
                  Update for Microsoft Office Outlook 2007 Help (KB963677)
                  Update for Microsoft Office Powerpoint 2007 Help (KB963669)
                  Update for Microsoft Office Publisher 2007 Help (KB963667)
                  Update for Microsoft Office Script Editor Help (KB963671)
                  Update for Microsoft Office Word 2007 Help (KB963665)
                  Update for Microsoft Windows (KB971513)
                  Update for Outlook 2007 Junk Email Filter (KB2492475)
                  Update for Windows Internet Explorer 7 (KB980182)
                  Update for Windows XP (KB2141007)
                  Update for Windows XP (KB2264107)
                  Update for Windows XP (KB2345886)
                  Update for Windows XP (KB2467659)
                  Update for Windows XP (KB943729)
                  Update for Windows XP (KB951978)
                  Update for Windows XP (KB955759)
                  Update for Windows XP (KB955839)
                  Update for Windows XP (KB961503)
                  Update for Windows XP (KB967715)
                  Update for Windows XP (KB968389)
                  Update for Windows XP (KB971029)
                  Update for Windows XP (KB971737)
                  Update for Windows XP (KB973687)
                  Update for Windows XP (KB973815)
                  VC80CRTRedist - 8.0.50727.4053
                  VLC media player 1.1.2
                  VLC Setup Helper 3.00
                  Wacom Pen Driver 2.7
                  WebFldrs XP
                  Winamp
                  Windows Internet Explorer 7
                  Windows Live Call
                  Windows Live Communications Platform
                  Windows Live Essentials
                  Windows Live Messenger
                  Windows Live Sign-in Assistant
                  Windows Live Upload Tool
                  Windows Management Framework Core
                  Windows Media Encoder 9 Series
                  Windows Media Format 11 runtime
                  Windows Media Player 11
                  Windows PowerShell(TM) 1.0
                  Windows XP Service Pack 3
                  WinRAR archiver
                  Wisdom-soft AutoScreenRecorder 3.1 Free
                  Zuma's Revenge!
                  .
                  ==== Event Viewer Messages From Past Week ========
                  .
                  19/03/2011 08:47:05, error: Service Control Manager [7016]  - The BrSplService service has reported an invalid current state 0.
                  19/03/2011 08:40:21, error: Service Control Manager [7026]  - The following boot-start or system-start driver(s) failed to load:  PCIIde
                  18/03/2011 09:32:16, error: MRxSmb [8003]  - The master browser has received a server announcement from the computer S11KARISHMAK that believes that it is the master browser for the domain on transport NetBT_Tcpip_{3D0364A4-AC9D-4. The master browser is stopping or an election is being forced.
                  16/03/2011 19:06:57, error: NETLOGON [5719]  - No Domain Controller is available for domain NISTNET due to the following:  There are currently no logon servers available to service the logon request. . Make sure that the computer is connected to the network and try again. If the problem persists, please contact your domain administrator.
                  16/03/2011 09:12:52, error: Dhcp [1001]  - Your computer was not assigned an address from the network (by the DHCP Server) for the Network Card with network address 001B77318857.  The following error occurred:  The operation was canceled by the user. . Your computer will continue to try and obtain an address on its own from the network address (DHCP) server.
                  16/03/2011 07:47:48, error: Service Control Manager [7011]  - Timeout (30000 milliseconds) waiting for a transaction response from the Off-Helper service.
                  16/03/2011 06:56:36, error: Dhcp [1002]  - The IP address lease 192.168.1.100 for the Network Card with network address 001B77318857 has been denied by the DHCP server 0.0.0.0 (The DHCP Server sent a DHCPNACK message).
                  15/03/2011 19:38:56, error: Tcpip [4199]  - The system detected an address conflict for IP address 192.168.1.100 with the system having network hardware address 00:26:B0:1E:88:74. Network operations on this system may be disrupted as a result.
                  15/03/2011 18:11:57, error: Dhcp [1002]  - The IP address lease 192.168.1.103 for the Network Card with network address 001B77318857 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).
                  15/03/2011 07:50:02, error: NETLOGON [5719]  - No Domain Controller is available for domain NISTNET due to the following:  The RPC server is unavailable. . Make sure that the computer is connected to the network and try again. If the problem persists, please contact your domain administrator.
                  14/03/2011 16:56:36, error: Dhcp [1002]  - The IP address lease 172.18.1.70 for the Network Card with network address 001B77318857 has been denied by the DHCP server 192.168.1.1 (The DHCP Server sent a DHCPNACK message).
                  14/03/2011 09:19:10, error: Service Control Manager [7011]  - Timeout (30000 milliseconds) waiting for a transaction response from the wuauserv service.
                  14/03/2011 09:19:10, error: Service Control Manager [7011]  - Timeout (30000 milliseconds) waiting for a transaction response from the Symantec AntiVirus service.
                  14/03/2011 09:19:10, error: Service Control Manager [7011]  - Timeout (30000 milliseconds) waiting for a transaction response from the stisvc service.
                  14/03/2011 09:19:10, error: Service Control Manager [7011]  - Timeout (30000 milliseconds) waiting for a transaction response from the PolicyAgent service.
                  12/03/2011 19:02:22, error: SideBySide [59]  - Resolve Partial Assembly failed for Microsoft.VC90.DebugCRT. Reference error message: The referenced assembly is not installed on your system. .
                  12/03/2011 19:02:22, error: SideBySide [59]  - Generate Activation Context failed for c:\program files\real\realplayer\plugins\rmxrend.dll. Reference error message: The operation completed successfully. .
                  12/03/2011 19:02:22, error: SideBySide [32]  - Dependent Assembly Microsoft.VC90.DebugCRT could not be found and Last Error was The referenced assembly is not installed on your system.
                  .
                  ==== End Of File ===========================

                  SuperDave

                  • Malware Removal Specialist
                  • Moderator


                  • Genius
                  • Thanked: 1020
                  • Certifications: List
                  • Experience: Expert
                  • OS: Windows 10
                  Re: Folders turned turned into 33kb .exe files and open in new windows
                  « Reply #11 on: March 19, 2011, 12:58:26 PM »
                  P2P - I see you have P2P software installed on your machine (uTorrent and limewire). We are not here to pass judgment on file-sharing as a concept. However, we will warn you that engaging in this activity and having this kind of software installed on your machine will always make you more susceptible to re-infections. It is certainly contributing to your current situation.

                  Please note: Even if you are using a "safe" P2P program, it is only the program that is safe. You will be sharing files from uncertified sources, and these are often infected. The bad guys use P2P filesharing as a major conduit to spread their wares.

                  I would strongly recommend that you uninstall them, however that choice is up to you. If you choose to remove these programs, you can do so via Control Panel >> Add or Remove Programs.
                  *****************************************************
                  I strongly recommend that you remove Ask from your computer because it;

                  •Promotes its toolbars on sites targeted to kids.

                  •Promotes its toolbars through ads that appear to be part of other companies' sites.

                  •Promotes its toolbars through other companies' spyware.

                  •Installs without any disclosure whatsoever and without any consent whatsoever.

                  •Solicits installations via "deceptive door openers" that do not accurately describe the offer; failing to affirmatively show a license agreement; linking to a EULA via an off-screen link.

                  •Makes confusing changes to users' browsers -- increasing Ask's revenues while taking users to pages they didn't intend to visit.

                  See Here for more info.

                  If you choose to follow my recommendation then please go to Start > Control Panel > Add/Remove Programs and remove the following programs if present.

                  AskBarDis or anything related to Ask

                  Then please find and delete this folder in bold (if present):
                  C:\Program Files\AskBarDis. or anything related to Ask.
                  ****************************************************
                  The log shows that you only have 1.035 GiB of free space. This is well below the recommended 22 Gbs(15%) required to operate Windows.I'm surprised that your computer is not crashing already.Before we continue, you will need to find more free space on your C: drive. You can do this by removing programs that you don't use. You can also save important files, videos, pictures and music to DVD's or an external hard drive. There is also a lite-weight version of Quicktime that you can download. I dare not ask you to run anymore scans for fear of crashing your computer. Please see what you can do with this problem and let me know.
                  Windows 8 and Windows 10 dual boot with two SSD's

                  mkapsi

                    Topic Starter


                    Greenhorn

                    • Experience: Beginner
                    • OS: Unknown
                    Re: Folders turned turned into 33kb .exe files and open in new windows
                    « Reply #12 on: March 26, 2011, 01:01:27 AM »
                    I have cleared up 22gb from my computer. What should I do now?

                    SuperDave

                    • Malware Removal Specialist
                    • Moderator


                    • Genius
                    • Thanked: 1020
                    • Certifications: List
                    • Experience: Expert
                    • OS: Windows 10
                    Re: Folders turned turned into 33kb .exe files and open in new windows
                    « Reply #13 on: March 26, 2011, 11:46:15 AM »
                    Please download ComboFix from BleepingComputer.com

                    Alternate link: GeeksToGo.com

                    and save it to your Desktop.
                    If you are using Firefox, make sure that your download settings are as follows:

                    * Tools->Options->Main tab
                    * Set to "Always ask me where to Save the files".

                    Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools A guide to do this can be found here
                    Double click ComboFix.exe & follow the prompts.
                    As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. It will allow you to boot up into a special recovery/repair mode that will allow us to more easily help you should your computer have a problem after an attempted removal of malware.
                    Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console

                    Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures.

                    Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:


                    Click on Yes, to continue scanning for malware.
                    When finished, it shall produce a log for you.  Please include the contents of C:\ComboFix.txt in your next reply.

                    If you have problems with ComboFix usage, see How to use ComboFix
                    Windows 8 and Windows 10 dual boot with two SSD's