Hello, these are the results of the scans you recommended. I can not do anything in normal mode still nor on my profile in safe mode, only the admin profile in safe mode will let me do anything.
Malwarebytes' Anti-Malware 1.50.1.1100
www.malwarebytes.orgDatabase version: 7028
Windows 5.1.2600 Service Pack 3 (Safe Mode)
Internet Explorer 8.0.6001.18702
05/07/2011 20:26:50
mbam-log-2011-07-05 (20-26-50).txt
Scan type: Full scan (C:\|D:\|)
Objects scanned: 284097
Time elapsed: 26 minute(s), 1 second(s)
Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 10
Registry Values Infected: 2
Registry Data Items Infected: 6
Folders Infected: 5
Files Infected: 13
Memory Processes Infected:
(No malicious items detected)
Memory Modules Infected:
(No malicious items detected)
Registry Keys Infected:
HKEY_CLASSES_ROOT\CLSID\{D810B78A-D010-44DF-8445-AC58086B600E} (Trojan.BHO) -> Quarantined and deleted successfully.
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{19127AD2-394B-70F5-C650-B97867BAA1F7} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{19127AD2-394B-70F5-C650-B97867BAA1F7} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{43BF8CD1-C5D5-2230-7BB2-98F22C2B7DC6} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{43BF8CD1-C5D5-2230-7BB2-98F22C2B7DC6} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_USERS\.DEFAULT\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{494E6CEC-7483-A4EE-0938-895519A84BC7} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_USERS\S-1-5-18\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\{494E6CEC-7483-A4EE-0938-895519A84BC7} (Backdoor.Bot) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\DbgMgr (Malware.Trace) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\RunDll32Policy\f3ScrCtr.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> Quarantined and deleted successfully.
Registry Values Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Network\UID (Malware.Trace) -> Value: UID -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\RList (Malware.Trace) -> Value: RList -> Quarantined and deleted successfully.
Registry Data Items Infected:
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\open\command\(default) (Hijack.StartMenuInternet) -> Bad: ("D:\Documents and Settings\Kate Byrne\Local Settings\Application Data\ene.exe" -a "C:\Program Files\Mozilla Firefox\firefox.exe") Good: (firefox.exe) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\FIREFOX.EXE\shell\safemode\command\(default) (Hijack.StartMenuInternet) -> Bad: ("D:\Documents and Settings\Kate Byrne\Local Settings\Application Data\ene.exe" -a "C:\Program Files\Mozilla Firefox\firefox.exe" -safe-mode) Good: (firefox.exe -safe-mode) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Clients\StartMenuInternet\IEXPLORE.EXE\shell\open\command\(default) (Hijack.StartMenuInternet) -> Bad: ("D:\Documents and Settings\Kate Byrne\Local Settings\Application Data\ene.exe" -a "C:\Program Files\Internet Explorer\iexplore.exe") Good: (iexplore.exe) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\AntiVirusDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\FirewallDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\UpdatesDisableNotify (PUM.Disabled.SecurityCenter) -> Bad: (1) Good: (0) -> Quarantined and deleted successfully.
Folders Infected:
d:\documents and settings\all users\application data\16948434 (Rogue.Multiple) -> Quarantined and deleted successfully.
d:\documents and settings\localservice\application data\twain_32 (Trojan.Zbot) -> Quarantined and deleted successfully.
c:\program files\browserctl (Trojan.Agent) -> Quarantined and deleted successfully.
c:\program files\ddnsfilter (Trojan.DNSChanger) -> Quarantined and deleted successfully.
c:\WINDOWS\system32\lowsec (Stolen.data) -> Quarantined and deleted successfully.
Files Infected:
c:\program files\msn messenger\msimg32.dll (PUP.FunWebProducts) -> Quarantined and deleted successfully.
c:\program files\msn messenger\riched20.dll (PUP.FunWebProducts) -> Quarantined and deleted successfully.
d:\documents and settings\kate byrne\my documents\downloads\totalrecipesearch.exe (Adware.FunWeb) -> Quarantined and deleted successfully.
c:\RECYCLER\adapt_installer.exe (Trojan.Agent) -> Quarantined and deleted successfully.
d:\documents and settings\kate byrne\application data\wiaserva.log (Malware.Trace) -> Quarantined and deleted successfully.
c:\program files\HPZUCI12.DLL (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\program files\tls704d.dll (Spyware.OnlineGames) -> Quarantined and deleted successfully.
c:\WINDOWS\fdgg34353edfgdfdf (KoobFace.Trace) -> Quarantined and deleted successfully.
c:\WINDOWS\prxid93ps.dat (Malware.Trace) -> Quarantined and deleted successfully.
d:\documents and settings\all users\application data\16948434\16948434 (Rogue.Multiple) -> Quarantined and deleted successfully.
d:\documents and settings\all users\application data\16948434\pc16948434ins (Rogue.Multiple) -> Quarantined and deleted successfully.
d:\documents and settings\localservice\application data\twain_32\user.ds (Trojan.Zbot) -> Quarantined and deleted successfully.
c:\program files\ddnsfilter\ddnsfilter.dll (Trojan.DNSChanger) -> Quarantined and deleted successfully.
----------------------------------------------------------------------------------
SUPERAntiSpyware Scan Log
http://www.superantispyware.comGenerated 07/05/2011 at 10:19 PM
Application Version : 4.55.1000
Core Rules Database Version : 7373
Trace Rules Database Version: 5185
Scan type : Complete Scan
Total Scan Time : 01:36:00
Memory items scanned : 296
Memory threats detected : 0
Registry items scanned : 7136
Registry threats detected : 0
File items scanned : 93110
File threats detected : 301
Adware.Tracking Cookie
D:\Documents and Settings\Administrator\Cookies\administrator@revsci[2].txt
D:\Documents and Settings\Administrator\Cookies\administrator@2o7[1].txt
D:\Documents and Settings\Administrator\Cookies\administrator@doubleclick[2].txt
ads1.msn.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
atdmt.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
b.ads1.msn.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
cdn5.specificclick.net [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
cloud.video.unrulymedia.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
crackle.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
d8.zedo.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
drawtoon.blocmedia.net [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
ds.serving-sys.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
ec.atdmt.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
emea.2mdn.net [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
findel.scene7.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
googleads.g.doubleclick.net [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
i.*adult URL* [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
ia.media-imdb.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
img-cdn.mediaplex.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
interclick.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
m.uk.2mdn.net [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
m1.2mdn.net [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
m1.emea.2mdn.net [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
macromedia.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
media.buto.tv [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
media.disneyinternational.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
media.gamegarage.co.uk [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
media.monster.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
media.scanscout.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
media.tattomedia.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
media1.break.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
media1.clubpenguin.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
mediaonenetwork.net [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
mediaplex.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
msntest.serving-sys.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
naiadsystems.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
oddcast.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
s0.2mdn.net [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
secure-uk.imrworldwide.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
serving-sys.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
spe.atdmt.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
stat.easydate.biz [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
static.2mdn.net [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
static.sexsearch.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
track.webgains.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
uk.2mdn.net [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
virginmedia.a.mms.mavenapps.net [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
www.gamecockmedia.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
www.opt-in-media.net [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
www.pornhub.com [ D:\Documents and Settings\Kate Byrne\Application Data\Macromedia\Flash Player\#SharedObjects\FHRHE3EQ ]
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@247realmedia[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@2o7[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][3].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][4].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@adbrite[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@adnet-media[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@adserveuk[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@adtech[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@adultswim[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@advertising[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@adviva[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@adxpose[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@apmebf[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@apmebf[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@atdmt[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@audience2media[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@audience2media[3].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@azjmp[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@bizrate[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@bnbrevenue[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@bravenet[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@burstbeacon[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@clicksor[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@clubpenguintracker[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@collective-media[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][3].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@dmtracker[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@doubleclick[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@doubleclick[3].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@eyewonder[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@fastclick[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@findaproperty[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@gostats[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@hitbox[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@imrworldwide[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@insightexpressai[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@interclick[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@invitemedia[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@jobinterviewquestions[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@kantarmedia[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@kontera[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@legolas-media[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@lfstmedia[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@linksynergy[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@liveperson[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@liveperson[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@liveperson[3].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@liveperson[4].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@liveperson[5].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@liveperson[7].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@media6degrees[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@mediabrandsww[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@mediaplex[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@mediaplex[3].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@myroitracking[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@mywebsearch[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@naiadsystems[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@nextag[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@overture[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@partyaccount[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@partypoker[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@popularscreensavers[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@pro-market[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@questionmarket[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@revsci[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@revsci[3].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@ru4[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][3].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][5].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][6].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@serving-sys[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][3].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@socialmedia[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@specificclick[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@statcounter[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@tacoda[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@tns-counter[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][3].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@trackalyzer[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@tradedoubler[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@tradedoubler[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@trafficmp[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@tribalfusion[2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@tripod[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@user-activity-tracking[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@virginmedia[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@weborama[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][3].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][4].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][5].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][6].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][7].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][1].txt
D:\Documents and Settings\Kate Byrne\Cookies\kate_byrne@xiti[1].txt
D:\Documents and Settings\Kate Byrne\Cookies\
[email protected][2].txt
Adware.MyWebSearch/FunWebProducts
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B1C538C0-CBA3-4434-A006-53A338B37653}\RP1257\A0150822.DLL
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B1C538C0-CBA3-4434-A006-53A338B37653}\RP1257\A0150823.DLL
Trojan.Agent/Gen-DDNS
C:\SYSTEM VOLUME INFORMATION\_RESTORE{B1C538C0-CBA3-4434-A006-53A338B37653}\RP1257\A0150828.DLL
Rogue.Agent/Gen-Nullo[DLL]
C:\WINDOWS\EJEXEDYVAR.DLL
Rogue.Agent/Gen-Nullo[BIN]
C:\WINDOWS\SYSTEM32\CYGOKUPIBY.BIN
Rogue.Agent/Gen-Nullo[EXE]
C:\WINDOWS\WIPUDYJOC.EXE