Computer Hope

Software => Computer viruses and spyware => Topic started by: danieltbl on November 21, 2011, 01:37:30 AM

Title: Computer Hangs Randomly?!
Post by: danieltbl on November 21, 2011, 01:37:30 AM
I'm suspecting this to be a malware/virus or some other problem.
I would really appreciate if someone can help me check my hijackthis log and give feedback.

Thanks.


Logfile of Trend Micro HijackThis v2.0.4
Scan saved at 3:13:23 PM, on 11/21/2011
Platform: Windows 7 SP1 (WinNT 6.00.3505)
MSIE: Internet Explorer v9.00 (9.00.8112.16421)
Boot mode: Normal

Running processes:
C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAAnotif.exe
C:\Users\User\AppData\Local\Google\Update\1.3.21.79\GoogleCrashHandler.exe
C:\Program Files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe
C:\Program Files (x86)\Zone Labs\ZoneAlarm\zlclient.exe
C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe
C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe
C:\Program Files (x86)\iTunes\iTunesHelper.exe
C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe
C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe
C:\Program Files (x86)\Logitech\LWS\Webcam Software\CameraHelperShell.exe
C:\Program Files (x86)\Common Files\Logishrd\LQCVFX\COCIManager.exe
C:\Windows\SysWOW64\rundll32.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Skype\Phone\Skype.exe
C:\Program Files (x86)\Windows Media Player\wmplayer.exe
C:\Program Files (x86)\uTorrent\uTorrent.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Users\User\AppData\Local\Google\Chrome\Application\chrome.exe
C:\Program Files (x86)\Trend Micro\HiJackThis\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = http://www.yahoo.com/
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,SearchAssistant =
R0 - HKLM\Software\Microsoft\Internet Explorer\Search,CustomizeSearch =
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Local Page = C:\Windows\SysWOW64\blank.htm
R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyOverride = *.local
R0 - HKCU\Software\Microsoft\Internet Explorer\Toolbar,LinksFolderName =
R3 - URLSearchHook: SearchHook Class - {BC86E1AB-EDA5-4059-938F-CE307B0C6F0A} - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\AddressBarSearch.dll
F2 - REG:system.ini: UserInit=userinit.exe,
O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn0\yt.dll
O2 - BHO: AcroIEHelperStub - {18DF081C-E8AD-4283-A596-FA578C2EBDC3} - C:\Program Files (x86)\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelperShim.dll
O2 - BHO: (no name) - {5C255C8A-E604-49b4-9D64-90988571CECB} - (no file)
O2 - BHO: Groove GFS Browser Helper - {72853161-30C5-4D22-B7F9-0BBC1D38A37E} - C:\PROGRA~2\MICROS~1\Office14\GROOVEEX.DLL
O2 - BHO: Windows Live Sign-in Helper - {9030D464-4C02-4ABF-8ECC-5164760863C6} - C:\Program Files (x86)\Common Files\Microsoft Shared\Windows Live\WindowsLiveLogin.dll
O2 - BHO: SkypeIEPluginBHO - {AE805869-2E5C-4ED4-8F7B-F1F7851A4497} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O2 - BHO: URLRedirectionBHO - {B4F3A835-0E21-4959-BA22-42B3008E02FF} - C:\PROGRA~2\MICROS~1\Office14\URLREDIR.DLL
O2 - BHO: Java(tm) Plug-In 2 SSV Helper - {DBC80044-A445-435b-BC74-9C25C1C588A9} - C:\Program Files (x86)\Java\jre6\bin\jp2ssv.dll
O2 - BHO: SingleInstance Class - {FDAD4DA1-61A2-4FD8-9C17-86F7AC245081} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn0\YTSingleInstance.dll
O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~2\Yahoo!\Companion\Installs\cpn0\yt.dll
O4 - HKLM\..\Run: [NUSB3MON] "C:\Program Files (x86)\NEC Electronics\USB 3.0 Host Controller Driver\Application\nusb3mon.exe"
O4 - HKLM\..\Run: [StartCCC] "C:\Program Files (x86)\ATI Technologies\ATI.ACE\Core-Static\CLIStart.exe" MSRun
O4 - HKLM\..\Run: [ATICustomerCare] "C:\Program Files (x86)\ATI\ATICustomerCare\ATICustomerCare.exe"
O4 - HKLM\..\Run: [BCU] "C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCU.exe"
O4 - HKLM\..\Run: [BCSSync] "C:\Program Files (x86)\Microsoft Office\Office14\BCSSync.exe" /DelayServices
O4 - HKLM\..\Run: [ZoneAlarm Client] "C:\Program Files (x86)\Zone Labs\ZoneAlarm\zlclient.exe"
O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files (x86)\Adobe\Reader 9.0\Reader\Reader_sl.exe"
O4 - HKLM\..\Run: [Adobe ARM] "C:\Program Files (x86)\Common Files\Adobe\ARM\1.0\AdobeARM.exe"
O4 - HKLM\..\Run: [EEventManager] "C:\Program Files (x86)\Epson Software\Event Manager\EEventManager.exe"
O4 - HKLM\..\Run: [LWS] C:\Program Files (x86)\Logitech\LWS\Webcam Software\LWS.exe -hide
O4 - HKLM\..\Run: [APSDaemon] "C:\Program Files (x86)\Common Files\Apple\Apple Application Support\APSDaemon.exe"
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files (x86)\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [RIMBBLaunchAgent.exe] C:\Program Files (x86)\Common Files\Research In Motion\USB Drivers\RIMBBLaunchAgent.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files (x86)\Common Files\Java\Java Update\jusched.exe"
O4 - HKLM\..\Run: [avgnt] "C:\Program Files (x86)\Avira\AntiVir Desktop\avgnt.exe" /min
O4 - HKCU\..\Run: [EPSON TX121 Series] C:\Windows\system32\spool\DRIVERS\x64\3\E_IATIGGI.EXE /FU "C:\Windows\TEMP\E_S93F2.tmp" /EF "HKCU"
O4 - HKCU\..\Run: [ISUSPM] "C:\Program Files (x86)\Common Files\InstallShield\UpdateService\ISUSPM.exe" -scheduler
O4 - HKCU\..\Run: [Facebook Update] "C:\Users\User\AppData\Local\Facebook\Update\FacebookUpdate.exe" /c /nocrashserver
O4 - HKCU\..\Run: [Google Update] "C:\Users\User\AppData\Local\Google\Update\GoogleUpdate.exe" /c
O4 - HKCU\..\Run: [DAEMON Tools Lite] "C:\Program Files (x86)\DAEMON Tools Lite\DTLite.exe" -autorun
O4 - HKUS\S-1-5-19\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-19\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'LOCAL SERVICE')
O4 - HKUS\S-1-5-20\..\Run: [Sidebar] %ProgramFiles%\Windows Sidebar\Sidebar.exe /autoRun (User 'NETWORK SERVICE')
O4 - HKUS\S-1-5-20\..\RunOnce: [mctadmin] C:\Windows\System32\mctadmin.exe (User 'NETWORK SERVICE')
O8 - Extra context menu item: E&xport to Microsoft Excel - res://C:\PROGRA~2\MICROS~1\Office14\EXCEL.EXE/3000
O8 - Extra context menu item: Se&nd to OneNote - res://C:\PROGRA~2\MICROS~1\Office14\ONBttnIE.dll/105
O9 - Extra button: Send to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra 'Tools' menuitem: Se&nd to OneNote - {2670000A-7350-4f3c-8081-5663EE0C6C49} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIE.dll
O9 - Extra button: PokerStars - {3AD14F0C-ED16-4e43-B6D8-661B03F6A1EF} - C:\Program Files (x86)\PokerStars\PokerStarsUpdate.exe
O9 - Extra button: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra 'Tools' menuitem: OneNote Lin&ked Notes - {789FE86F-6FC4-46A1-9849-EDE0DB0C95CA} - C:\Program Files (x86)\Microsoft Office\Office14\ONBttnIELinkedNotes.dll
O9 - Extra button: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O9 - Extra 'Tools' menuitem: Skype Click to Call - {898EA8C8-E7FF-479B-8935-AEC46303B9E5} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O11 - Options group: [ACCELERATED_GRAPHICS] Accelerated graphics
O16 - DPF: {063F7D71-5E0B-48F2-87D5-F63C5917947E} (Aosmgr Control) - http://ahnlabdownload.nefficient.co.kr/aos/plugin/aosmgr.cab
O16 - DPF: {4A85DBE0-BFB2-4119-8401-186A7C6EB653} - http://messenger.zone.msn.com/MessengerGamesContent/GameContent/Default/mjss/MJSS.cab109791.cab
O16 - DPF: {C3F79A2B-B9B4-4A66-B012-3EE46475B072} (MessengerStatsClient Class) - http://messenger.zone.msn.com/binary/MessengerStatsPAClient.cab56907.cab
O16 - DPF: {F5A7706B-B9C0-4C89-A715-7A0C6B05DD48} (Minesweeper Flags Class) - http://messenger.zone.msn.com/binary/MineSweeper.cab56986.cab
O18 - Protocol: skype-ie-addon-data - {91774881-D725-4E58-B298-07617B9B86A8} - C:\Program Files (x86)\Skype\Toolbars\Internet Explorer\skypeieplugin.dll
O18 - Filter hijack: text/xml - {807573E5-5146-11D5-A672-00B0D022E945} - C:\Program Files (x86)\Common Files\Microsoft Shared\OFFICE14\MSOXMLMF.DLL
O23 - Service: ABBYY FineReader 9.0 Sprint Licensing Service (ABBYY.Licensing.FineReader.Sprint.9.0) - ABBYY - C:\Program Files (x86)\Common Files\ABBYY\FineReaderSprint\9.00\Licensing\NetworkLicenseServer.exe
O23 - Service: @%SystemRoot%\system32\Alg.exe,-112 (ALG) - Unknown owner - C:\Windows\System32\alg.exe (file missing)
O23 - Service: AMD External Events Utility - Unknown owner - C:\Windows\system32\atiesrxx.exe (file missing)
O23 - Service: Avira Scheduler (AntiVirSchedulerService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\sched.exe
O23 - Service: Avira Realtime Protection (AntiVirService) - Avira Operations GmbH & Co. KG - C:\Program Files (x86)\Avira\AntiVir Desktop\avguard.exe
O23 - Service: Apple Mobile Device - Apple Inc. - C:\Program Files (x86)\Common Files\Apple\Mobile Device Support\AppleMobileDeviceService.exe
O23 - Service: Browser Configuration Utility Service (BCUService) - DeviceVM, Inc. - C:\Program Files (x86)\DeviceVM\Browser Configuration Utility\BCUService.exe
O23 - Service: Bonjour Service - Apple Inc. - C:\Program Files\Bonjour\mDNSResponder.exe
O23 - Service: DeviceVM Meta Data Export Service (DvmMDES) - DeviceVM, Inc. - C:\ASUS.SYS\config\DVMExportService.exe
O23 - Service: @%SystemRoot%\system32\efssvc.dll,-100 (EFS) - Unknown owner - C:\Windows\System32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\fxsresm.dll,-118 (Fax) - Unknown owner - C:\Windows\system32\fxssvc.exe (file missing)
O23 - Service: Intel(R) Matrix Storage Event Monitor (IAANTMON) - Intel Corporation - C:\Program Files (x86)\Intel\Intel Matrix Storage Manager\IAANTMon.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files (x86)\Common Files\InstallShield\Driver\1050\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: @keyiso.dll,-100 (KeyIso) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: Intel(R) Management and Security Application Local Management Service (LMS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\LMS\LMS.exe
O23 - Service: @comres.dll,-2797 (MSDTC) - Unknown owner - C:\Windows\System32\msdtc.exe (file missing)
O23 - Service: @%SystemRoot%\System32\netlogon.dll,-102 (Netlogon) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\psbase.dll,-300 (ProtectedStorage) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%systemroot%\system32\Locator.exe,-2 (RpcLocator) - Unknown owner - C:\Windows\system32\locator.exe (file missing)
O23 - Service: @%SystemRoot%\system32\samsrv.dll,-1 (SamSs) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: SBSD Security Center Service (SBSDWSCService) - Safer Networking Ltd. - C:\Program Files (x86)\Spybot - Search & Destroy\SDWinSec.exe
O23 - Service: @%SystemRoot%\system32\snmptrap.exe,-3 (SNMPTRAP) - Unknown owner - C:\Windows\System32\snmptrap.exe (file missing)
O23 - Service: @%systemroot%\system32\spoolsv.exe,-1 (Spooler) - Unknown owner - C:\Windows\System32\spoolsv.exe (file missing)
O23 - Service: @%SystemRoot%\system32\sppsvc.exe,-101 (sppsvc) - Unknown owner - C:\Windows\system32\sppsvc.exe (file missing)
O23 - Service: Steam Client Service - Valve Corporation - C:\Program Files (x86)\Common Files\Steam\SteamService.exe
O23 - Service: @%SystemRoot%\system32\ui0detect.exe,-101 (UI0Detect) - Unknown owner - C:\Windows\system32\UI0Detect.exe (file missing)
O23 - Service: UMVPFSrv - Logitech Inc. - C:\Program Files (x86)\Common Files\logishrd\LVMVFM\UMVPFSrv.exe
O23 - Service: Intel(R) Management & Security Application User Notification Service (UNS) - Intel Corporation - C:\Program Files (x86)\Intel\Intel(R) Management Engine Components\UNS\UNS.exe
O23 - Service: @%SystemRoot%\system32\vaultsvc.dll,-1003 (VaultSvc) - Unknown owner - C:\Windows\system32\lsass.exe (file missing)
O23 - Service: @%SystemRoot%\system32\vds.exe,-100 (vds) - Unknown owner - C:\Windows\System32\vds.exe (file missing)
O23 - Service: TrueVector Internet Monitor (vsmon) - Check Point Software Technologies LTD - C:\Windows\SysWOW64\ZoneLabs\vsmon.exe
O23 - Service: @%systemroot%\system32\vssvc.exe,-102 (VSS) - Unknown owner - C:\Windows\system32\vssvc.exe (file missing)
O23 - Service: @%SystemRoot%\system32\Wat\WatUX.exe,-601 (WatAdminSvc) - Unknown owner - C:\Windows\system32\Wat\WatAdminSvc.exe (file missing)
O23 - Service: @%systemroot%\system32\wbengine.exe,-104 (wbengine) - Unknown owner - C:\Windows\system32\wbengine.exe (file missing)
O23 - Service: @%Systemroot%\system32\wbem\wmiapsrv.exe,-110 (wmiApSrv) - Unknown owner - C:\Windows\system32\wbem\WmiApSrv.exe (file missing)
O23 - Service: @%PROGRAMFILES%\Windows Media Player\wmpnetwk.exe,-101 (WMPNetworkSvc) - Unknown owner - C:\Program Files (x86)\Windows Media Player\wmpnetwk.exe (file missing)

--
End of file - 14226 bytes
Title: Re: Computer Hangs Randomly?!
Post by: SuperDave on November 21, 2011, 12:40:00 PM
Hello and welcome to Computer Hope Forum. My name is Dave. I will be helping you out with your particular problem on your computer.

1. I will be working on your Malware issues. This may or may not solve other issues you have with your machine.
2. The fixes are specific to your problem and should only be used for this issue on this machine.
3. If you don't know or understand something, please don't hesitate to ask.
4. Please DO NOT run any other tools or scans while I am helping you.
5. It is important that you reply to this thread. Do not start a new topic.
6. Your security programs may give warnings for some of the tools I will ask you to use. Be assured, any links I give are safe.
7. Absence of symptoms does not mean that everything is clear.

If you can't access the internet with your infected computer you will have to download and transfer any programs to the computer you're using now and transfer them to the infected computer with a CD-RW or a USB storage device. I prefer a CD because a storage device can get infected. If you use a storage device hold the shift key down while inserting the USB storage device for about 10 secs. You will also have to transfer the logs you receive back to the good computer using the same method until we can get the computer back on-line.
*************************************************************************
P2P - I see you have P2P software installed on your machine. uTorrentWe are not here to pass judgment on file-sharing as a concept. However, we will warn you that engaging in this activity and having this kind of software installed on your machine will always make you more susceptible to re-infections. It is certainly contributing to your current situation.

Please note: Even if you are using a "safe" P2P program, it is only the program that is safe. You will be sharing files from uncertified sources, and these are often infected. The bad guys use P2P filesharing as a major conduit to spread their wares.

I would strongly recommend that you uninstall them, however that choice is up to you. If you choose to remove these programs, you can do so via Control Panel >> Add or Remove Programs.
*************************************************
I see you are running Poker Stars. Poker Stars has a history of distributing spyware in their products. However, security experts still question this program as good or bad. I recommend to remove it to prevent spyware, but it is up to you to decide if you want to keep it.

If you would like to uninstall it, do so as follows:

Press Start, and navigate to the Control Panel. When in the control panel enter Add or Remove programs. Search for and locate PokerStars, and either click Change/Remove or Remove.
***********************************************************
SUPERAntiSpyware

If you already have SUPERAntiSpyware be sure to check for updates before scanning!

Download SuperAntispyware Free Edition (SAS) (http://www.superantispyware.com/download.html)
* Double-click the icon on your desktop to run the installer.
* When asked to Update the program definitions, click Yes
* If you encounter any problems while downloading the updates, manually download and unzip them from here
* Next click the Preferences button.

•Under Start-Up Options uncheck Start SUPERAntiSpyware when Windows starts
* Click the Scanning Control tab.
* Under Scanner Options make sure only the following are checked:

•Close browsers before scanning
•Scan for tracking cookies
•Terminate memory threats before quarantining
Please leave the others unchecked

•Click the Close button to leave the control center screen.

* On the main screen click Scan your computer
* On the left check the box for the drive you are scanning.
* On the right choose Perform Complete Scan
* Click Next to start the scan. Please be patient while it scans your computer.
* After the scan is complete a summary box will appear. Click OK
* Make sure everything in the white box has a check next to it, then click Next
* It will quarantine what it found and if it asks if you want to reboot, click Yes

•To retrieve the removal information please do the following:
•After reboot, double-click the SUPERAntiSpyware icon on your desktop.
•Click Preferences. Click the Statistics/Logs tab.

•Under Scanner Logs, double-click SUPERAntiSpyware Scan Log.

•It will open in your default text editor (preferably Notepad).
•Save the notepad file to your desktop by clicking (in notepad) File > Save As...

* Save the log somewhere you can easily find it. (normally the desktop)
* Click close and close again to exit the program.
*Copy and Paste the log in your post.
***********************************************
(http://i424.photobucket.com/albums/pp322/digistar/mbamicontw5.gif) Please download Malwarebytes Anti-Malware from here. (http://download.bleepingcomputer.com/malwarebytes/mbam-setup.exe)
Double Click mbam-setup.exe to install the application.
Extra Note:

If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process. If asked to restart the computer, please do so immediately.
************************************************
Download DDS from HERE (http://download.bleepingcomputer.com/sUBs/dds.scr) or HERE (http://www.forospyware.com/sUBs/dds) and save it to your desktop.

Vista users right click on dds and select Run as administrator (you will receive a UAC prompt, please allow it)

* XP users Double click on dds to run it.
* If your antivirus or firewall try to block DDS then please allow it to run.
* When finished DDS will open two (2) logs.
* Save both reports to your desktop.
* The instructions here ask you to attach the Attach.txt.

(http://i424.photobucket.com/albums/pp322/digistar/DDS.jpg)

1) DDS.txt
2) Attach.txt
Instead of attaching, please copy/past both logs into your Thread

Note: DDS will instruct you to post the Attach.txt log as an attachment.
Please just post it as you would any other log by copying and pasting it into the reply.

•Close the program window, and delete the program from your desktop.

Please note: You may have to disable any script protection running if the scan fails to run.
After downloading the tool, disconnect from the internet and disable all antivirus protection.
Run the scan, enable your A/V and reconnect to the internet.
Information on A/V control HERE  (http://www.bleepingcomputer.com/forums/topic114351.html).Then post your DDS logs. (DDS.txt and Attach.txt )
Title: Re: Computer Hangs Randomly?!
Post by: danieltbl on November 22, 2011, 12:00:26 AM
Hello Dave!

Firstly, thanks for the reply. I've decided to delete 'Poker Stars' but have kept 'uTorrent' due to the fact it's a program used by my family.

I've done all the required scans and here are the logs for each of them.

Thanks!

Superantispyware:


SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 11/22/2011 at 01:55 PM

Application Version : 5.0.1136

Core Rules Database Version : 7972
Trace Rules Database Version: 5784

Scan type       : Complete Scan
Total Scan Time : 01:20:49

Operating System Information
Windows 7 Ultimate 64-bit, Service Pack 1 (Build 6.01.7601)
UAC Off - Administrator

Memory items scanned      : 737
Memory threats detected   : 0
Registry items scanned    : 72009
Registry threats detected : 0
File items scanned        : 151069
File threats detected     : 604

Adware.Tracking Cookie
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@2o7[1].txt [ /2o7 ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@2o7[2].txt [ /2o7 ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@2o7[3].txt [ /2o7 ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@2o7[4].txt [ /2o7 ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@2o7[6].txt [ /2o7 ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /a.clickme ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /ad.doubleclick ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt [ /ad.wsod ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /ad.yieldmanager ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt [ /ad.yieldmanager ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][3].txt [ /ad.yieldmanager ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][4].txt [ /ad.yieldmanager ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][5].txt [ /ad.yieldmanager ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][6].txt [ /ad.yieldmanager ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][7].txt [ /ad.yieldmanager ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][8].txt [ /ad.yieldmanager ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@adbrite[2].txt [ /adbrite ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@adinterax[1].txt [ /adinterax ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@adinterax[2].txt [ /adinterax ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@adinterax[3].txt [ /adinterax ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@adlegend[2].txt [ /adlegend ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@adlegend[3].txt [ /adlegend ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt [ /ads.admaxasia ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /ads.pointroll ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][3].txt [ /ads.pointroll ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][4].txt [ /ads.pointroll ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt [ /ads.pubmatic ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /adserver.adtechus ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt [ /adserver.adtechus ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@adtech[1].txt [ /adtech ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@adtech[2].txt [ /adtech ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@adtech[3].txt [ /adtech ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@advertising[1].txt [ /advertising ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@advertising[2].txt [ /advertising ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@adviva[2].txt [ /adviva ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@apmebf[1].txt [ /apmebf ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@apmebf[3].txt [ /apmebf ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@apmebf[4].txt [ /apmebf ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /ar.atwola ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /at.atwola ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][10].txt [ /atdmt.combing ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][11].txt [ /atdmt.combing ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /atdmt.combing ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt [ /atdmt.combing ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][3].txt [ /atdmt.combing ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][4].txt [ /atdmt.combing ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][5].txt [ /atdmt.combing ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][6].txt [ /atdmt.combing ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][7].txt [ /atdmt.combing ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][8].txt [ /atdmt.combing ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][9].txt [ /atdmt.combing ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@atdmt[10].txt [ /atdmt ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@atdmt[11].txt [ /atdmt ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@atdmt[1].txt [ /atdmt ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@atdmt[2].txt [ /atdmt ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@atdmt[3].txt [ /atdmt ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@atdmt[4].txt [ /atdmt ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@atdmt[5].txt [ /atdmt ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@atdmt[6].txt [ /atdmt ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@atdmt[7].txt [ /atdmt ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@atdmt[8].txt [ /atdmt ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@atdmt[9].txt [ /atdmt ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /atlanticmedia.122.2o7 ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@atwola[1].txt [ /atwola ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt [ /banner2a.cari.com ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][10].txt [ /bs.serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][11].txt [ /bs.serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /bs.serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt [ /bs.serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][3].txt [ /bs.serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][4].txt [ /bs.serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][5].txt [ /bs.serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][6].txt [ /bs.serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][7].txt [ /bs.serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][8].txt [ /bs.serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][9].txt [ /bs.serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /care2.112.2o7 ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@chitika[1].txt [ /chitika ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt [ /citi.bridgetrack ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][3].txt [ /citi.bridgetrack ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@collective-media[2].txt [ /collective-media ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][10].txt [ /content.yieldmanager ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /content.yieldmanager ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt [ /content.yieldmanager ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][3].txt [ /content.yieldmanager ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][4].txt [ /content.yieldmanager ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][5].txt [ /content.yieldmanager ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][6].txt [ /content.yieldmanager ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][7].txt [ /content.yieldmanager ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][8].txt [ /content.yieldmanager ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][9].txt [ /content.yieldmanager ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt [ /d3.zedo ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@dmtracker[1].txt [ /dmtracker ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@doubleclick[1].txt [ /doubleclick ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@doubleclick[2].txt [ /doubleclick ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@doubleclick[4].txt [ /doubleclick ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@fastclick[2].txt [ /fastclick ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@gostats[1].txt [ /gostats ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /hearstmagazines.112.2o7 ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@imrworldwide[2].txt [ /imrworldwide ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@imrworldwide[3].txt [ /imrworldwide ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@imrworldwide[4].txt [ /imrworldwide ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@indieclick[1].txt [ /indieclick ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@insightexpressai[1].txt [ /insightexpressai ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@invitemedia[1].txt [ /invitemedia ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@invitemedia[2].txt [ /invitemedia ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@invitemedia[3].txt [ /invitemedia ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@kontera[1].txt [ /kontera ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@legolas-media[2].txt [ /legolas-media ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt [ /lstat.youku ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@media6degrees[1].txt [ /media6degrees ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@media6degrees[2].txt [ /media6degrees ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@mediaplex[1].txt [ /mediaplex ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@mediaplex[2].txt [ /mediaplex ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@mediaplex[3].txt [ /mediaplex ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@mediaplex[4].txt [ /mediaplex ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@mediaplex[5].txt [ /mediaplex ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /microsoftinternetexplorer.112.2o7 ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /microsoftwllivemkt.112.2o7 ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /mm.chitika ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /msnportal.112.2o7 ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt [ /msnportal.112.2o7 ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /myaccount.nytimes ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /optimize.indieclick ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@overture[2].txt [ /overture ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@pointroll[1].txt [ /pointroll ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@pointroll[2].txt [ /pointroll ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@pointroll[3].txt [ /pointroll ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@pointroll[5].txt [ /pointroll ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@pro-market[1].txt [ /pro-market ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@questionmarket[1].txt [ /questionmarket ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@questionmarket[2].txt [ /questionmarket ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /r1-ads.ace.advertising ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@revsci[1].txt [ /revsci ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@revsci[2].txt [ /revsci ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@revsci[3].txt [ /revsci ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /richmedia.yahoo ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt [ /richmedia.yahoo ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][4].txt [ /richmedia.yahoo ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][5].txt [ /richmedia.yahoo ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][6].txt [ /richmedia.yahoo ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][7].txt [ /richmedia.yahoo ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@ru4[1].txt [ /ru4 ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@serving-sys[10].txt [ /serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@serving-sys[11].txt [ /serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@serving-sys[1].txt [ /serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@serving-sys[2].txt [ /serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@serving-sys[3].txt [ /serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@serving-sys[4].txt [ /serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@serving-sys[5].txt [ /serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@serving-sys[6].txt [ /serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@serving-sys[7].txt [ /serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@serving-sys[8].txt [ /serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@serving-sys[9].txt [ /serving-sys ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@specificclick[1].txt [ /specificclick ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /stat.youku ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@statcounter[1].txt [ /statcounter ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@statcounter[3].txt [ /statcounter ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt [ /tacoda.at.atwola ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@tacoda[1].txt [ /tacoda ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@trafficmp[1].txt [ /trafficmp ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@tribalfusion[1].txt [ /tribalfusion ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@tribalfusion[2].txt [ /tribalfusion ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@tribalfusion[3].txt [ /tribalfusion ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /usatoday1.112.2o7 ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@viewablemedia[1].txt [ /viewablemedia ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][1].txt [ /www.googleadservices ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][2].txt [ /www.googleadservices ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@yieldmanager[1].txt [ /yieldmanager ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@yieldmanager[3].txt [ /yieldmanager ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\user@zedo[2].txt [ /zedo ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\7SEGH3UP.txt [ /legolas-media.com ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\NJY4WOO8.txt [ /insightexpressai.com ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\HHSPRUH1.txt [ /serving-sys.com ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\ZO3GO518.txt [ /counters.gigya.com ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\13KIGVE7.txt [ /yieldmanager.net ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\ZADPZJU8.txt [ /adinterax.com ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\MUIJJHSJ.txt [ /collective-media.net ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\37MM3MBF.txt [ /atdmt.com ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected] [ /atdmt.combing.com ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\GV2T7IFL.txt [ /tradefx.advertserve.com ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\IOC1JB03.txt [ /ads.pointroll.com ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected] [ /bs.serving-sys.com ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected] [ /atdmt.com ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected] [ /atdmt.combing.com ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\V8KGU9KO.txt [ /accounts.google.com ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\A6YPEUS1.txt [ /zgstats.com ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\9W7W6BSN.txt [ /c.atdmt.com ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected] [ /atdmt.com ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\[email protected] [ /serving-sys.com ]
   C:\Users\User\AppData\Roaming\Microsoft\Windows\Cookies\AEYO1Z7Y.txt [ /atdmt.combing.com ]
   C:\USERS\USER\AppData\Roaming\Microsoft\Windows\Cookies\KZ9OB0D8.txt [ Cookie:[email protected]/accounts/ ]
   C:\USERS\USER\AppData\Roaming\Microsoft\Windows\Cookies\CEVIDNOX.txt [ Cookie:[email protected]/adServe/banners/ ]
   C:\USERS\USER\AppData\Roaming\Microsoft\Windows\Cookies\857E6OPJ.txt [ Cookie:[email protected]/adServe/banners ]
   C:\USERS\USER\AppData\Roaming\Microsoft\Windows\Cookies\[email protected][3].txt [ Cookie:[email protected]/accounts ]
   C:\USERS\USER\Cookies\KZ9OB0D8.txt [ Cookie:[email protected]/accounts/ ]
   C:\USERS\USER\Cookies\7SEGH3UP.txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\NJY4WOO8.txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\HHSPRUH1.txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\ZO3GO518.txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\13KIGVE7.txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\user@trafficmp[1].txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\CEVIDNOX.txt [ Cookie:[email protected]/adServe/banners/ ]
   C:\USERS\USER\Cookies\857E6OPJ.txt [ Cookie:[email protected]/adServe/banners ]
   C:\USERS\USER\Cookies\user@2o7[6].txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\user@adtech[3].txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\[email protected][7].txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\ZADPZJU8.txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\user@revsci[3].txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\user@tribalfusion[2].txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\[email protected][7].txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\user@media6degrees[1].txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\37MM3MBF.txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\[email protected] [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\GV2T7IFL.txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\IOC1JB03.txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\[email protected] [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\[email protected] [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\[email protected][3].txt [ Cookie:[email protected]/accounts ]
   C:\USERS\USER\Cookies\A6YPEUS1.txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\user@specificclick[1].txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\[email protected][1].txt [ Cookie:[email protected]/ ]
   C:\USERS\USER\Cookies\user@advertising[1].txt [ Cookie:[email protected]/ ]
   .amazon-adsystem.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .amazon-adsystem.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   ad.yieldmanager.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .histats.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .histats.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .serving-sys.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .serving-sys.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   www.star-advertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   www.star-advertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   www.star-advertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   www.star-advertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   www.star-advertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   www.star-advertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .adtech.de [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   *Blocked Russian URL* [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   *Blocked Russian URL* [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .imrworldwide.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .imrworldwide.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .cradult.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .ru4.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .ru4.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   www.pornhost.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   www.pornhost.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   www.pornhost.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .pornhost.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .pornhost.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .pornhost.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .invitemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .adxpansion.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .*adult URL* [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .adxpose.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .questionmarket.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .questionmarket.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .legolas-media.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .specificclick.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   ads2.zeusclicks.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .mediafire.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .mediafire.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .mediafire.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .mediafire.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   ads.zeusclicks.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .adbrite.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .lucidmedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .overture.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .adinterax.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .adinterax.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .getclicky.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .static.getclicky.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   in.getclicky.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .overture.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .collective-media.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .interclick.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .interclick.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .collective-media.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .invitemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .invitemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .viewablemedia.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .adbrite.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .dmtracker.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .kontera.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .yieldmanager.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .userporn.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   ads.gplusmedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .view.atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   ad1.emediate.dk [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   ad1.emediate.dk [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   ad1.emediate.dk [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .*adult URL* [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .*adult URL* [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .*adult URL* [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .*adult URL* [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .*adult URL* [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .*adult URL* [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .*adult URL* [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .*adult URL* [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .cradult.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .cradult.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .cradult.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .cradult.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .cradult.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .cradult.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .cradult.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .interclick.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .liveperson.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .ads.pointroll.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .pointroll.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .pointroll.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .ads.pointroll.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .ads.pointroll.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .ads.pointroll.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .ads.pointroll.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .ads.pointroll.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .ads.pointroll.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .adbrite.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   counters.gigya.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   s07.flagcounter.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   accounts.youtube.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .h.atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .h.atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .h.atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .h.atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .bs.serving-sys.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .c.atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .c.atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .c.atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .c.atdmt.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .exoclick.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .ads.crakmedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .ads.crakmedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .ads.crakmedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   ads.crakmedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .exoclick.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .*adult URL* [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .*adult URL* [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .*adult URL* [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .*adult URL* [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .*adult URL* [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .*adult URL* [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .*adult URL* [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .*adult URL* [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .adserver.adtechus.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   track.prd1.netshelter.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   accounts.google.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .legolas-media.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .legolas-media.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   server.iad.liveperson.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .liveperson.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .mm.chitika.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .pro-market.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .pro-market.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .tribalfusion.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .tribalfusion.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .tribalfusion.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .tribalfusion.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .tribalfusion.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .tribalfusion.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .tacoda.at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .tacoda.at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .tacoda.at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .tacoda.at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .tacoda.at.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .xiti.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .advertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .advertising.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .ar.atwola.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .invitemedia.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   ad.yieldmanager.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .legolas-media.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .serving-sys.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .serving-sys.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .premiumtv.122.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .statcounter.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .media6degrees.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .media6degrees.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .zedo.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .zedo.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .zedo.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .trinitymirror.112.2o7.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .revsci.net [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .media6degrees.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   .media6degrees.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   ad.yieldmanager.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   ad.yieldmanager.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   ad.yieldmanager.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   ad.yieldmanager.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   ad.yieldmanager.com [ C:\USERS\USER\APPDATA\LOCAL\GOOGLE\CHROME\USER DATA\DEFAULT\COOKIES ]
   C:\USERS\USER\APPDATA\LOCAL\TEMP\COOKIES\[email protected][2].TXT [ /AD.YIELDMANAGER ]
   C:\USERS\USER\APPDATA\LOCAL\TEMP\COOKIES\USER@ADINTERAX[2].TXT [ /ADINTERAX ]
   C:\USERS\USER\APPDATA\LOCAL\TEMP\COOKIES\[email protected][1].TXT [ /BS.SERVING-SYS ]
   C:\USERS\USER\APPDATA\LOCAL\TEMP\COOKIES\[email protected][2].TXT [ /CONTENT.YIELDMANAGER ]
   C:\USERS\USER\APPDATA\LOCAL\TEMP\COOKIES\[email protected][3].TXT [ /CONTENT.YIELDMANAGER ]
   C:\USERS\USER\APPDATA\LOCAL\TEMP\COOKIES\USER@DOUBLECLICK[1].TXT [ /DOUBLECLICK ]
   C:\USERS\USER\APPDATA\LOCAL\TEMP\COOKIES\USER@OVERTURE[1].TXT [ /OVERTURE ]
   C:\USERS\USER\APPDATA\LOCAL\TEMP\COOKIES\USER@SERVING-SYS[1].TXT [ /SERVING-SYS ]
   cdn1.static1.pornrabbit.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\87KM2NQ5 ]
   ia.media-imdb.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\87KM2NQ5 ]
   macromedia.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\87KM2NQ5 ]
   media.kyte.tv [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\87KM2NQ5 ]
   wwwstatic.megaporn.com [ C:\USERS\USER\APPDATA\ROAMING\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\87KM2NQ5 ]
   .adinterax.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .adinterax.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   ad.yieldmanager.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   ad.yieldmanager.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .serving-sys.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .questionmarket.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .specificclick.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .dmtracker.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .revsci.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .atdmt.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .atdmt.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .msnportal.112.2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .atdmt.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   ad.yieldmanager.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .gostats.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .pqaccountant.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .eb.adbureau.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .ads.pointroll.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .pointroll.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .pointroll.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .ads.pointroll.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .ads.pointroll.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .ads.pointroll.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .ads.pointroll.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .ads.pointroll.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .ads.pointroll.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .collective-media.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .accountantkey.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .imrworldwide.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .imrworldwide.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .studentaccountant.digitaleditions.co.u k [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .smartadserver.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .smartadserver.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .arsaccountants.co.uk [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .accountancyage.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .accountancyage.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   www.accountancyage.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .invitemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .at.atwola.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .advertising.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .advertising.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .xm.xtendmedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .ru4.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .ru4.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .ru4.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .invitemedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   ad.yieldmanager.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .clicksor.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .clicksor.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .adbrite.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .adbrite.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .serving-sys.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .trinitymirror.112.2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   dc.tremormedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .surveymonkey.122.2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   uk.sitestat.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   uk.sitestat.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   stat.onestat.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   stat.onestat.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .adserver.adtechus.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .insightexpressai.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .insightexpressai.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .insightexpressai.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .insightexpressai.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .insightexpressai.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .interclick.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .interclick.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .kontera.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .atdmt.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .insightexpressai.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .ads.pointroll.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .advertising.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .advertising.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .advertising.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .advertising.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .insightexpressai.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .insightexpressai.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .insightexpressai.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .insightexpressai.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .insightexpressai.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .insightexpressai.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .adtech.de [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .webstat.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .webstat.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .webstat.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   *Blocked Russian URL* [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .spylog.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   *Blocked Russian URL* [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .kantarmedia.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .ru4.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .overture.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .overture.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .viacom.adbureau.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .viacom.adbureau.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .viacom.adbureau.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .viacom.adbureau.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   www.accountancystudents.co.uk [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   www.accountancystudents.co.uk [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   www.accountancystudents.co.uk [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   www.accountancystudents.co.uk [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .accountancystudents.co.uk [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   accountancystudents.co.uk [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .ihg.db.advertising.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .interclick.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .adxpose.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .microsoftsto.112.2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .insightexpressai.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .insightexpressai.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .insightexpressai.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .insightexpressai.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .insightexpressai.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   ad.yieldmanager.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .divx.112.2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .microsoftwllivemkt.112.2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .legolas-media.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .legolas-media.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .legolas-media.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   in.getclicky.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .associatedcontent.112.2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .bravenet.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .t1.q-stats.nl [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .flightstats.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .flightstats.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .flightstats.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   telecom.questexmediagroup.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   telecom.questexmediagroup.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   telecom.questexmediagroup.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   telecom.questexmediagroup.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   gotacha.rotator.hadj7.adjuggler.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   gotacha.rotator.hadj7.adjuggler.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .insightexpressai.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .mckinseyknowledge.122.2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .clickdocs.co.uk [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .questionmarket.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .tacoda.at.atwola.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .tacoda.at.atwola.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .revsci.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .revsci.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   f.blogads.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .serving-sys.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .smartadserver.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .smartadserver.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .nhl.112.2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .revsci.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .revsci.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .revsci.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .serving-sys.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .pqaccountant.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .malaysiaairlines.112.2o7.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .serving-sys.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .serving-sys.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .bs.serving-sys.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .tribalfusion.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .adbrite.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .adbrite.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .mm.chitika.net [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .clicksor.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .clicksor.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .clicksor.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .histats.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   accounts.youtube.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   trafficmack.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   s09.flagcounter.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .ero-advertising.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .adbrite.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   adserver.avalonsunsplash.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .legolas-media.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   ad.yieldmanager.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .zgstats.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .c.atdmt.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]
   .c.atdmt.com [ C:\USERS\USER\APPDATA\ROAMING\MOZILLA\FIREFOX\PROFILES\T6LFGZ46.DEFAULT\COOKIES.SQLITE ]


Mbam-log:


Malwarebytes' Anti-Malware 1.51.2.1300
www.malwarebytes.org

Database version: 8213

Windows 6.1.7601 Service Pack 1
Internet Explorer 9.0.8112.16421

11/22/2011 2:49:37 PM
mbam-log-2011-11-22 (14-49-37).txt

Scan type: Full scan (C:\|D:\|F:\|)
Objects scanned: 313877
Time elapsed: 45 minute(s), 30 second(s)

Memory Processes Infected: 0
Memory Modules Infected: 0
Registry Keys Infected: 0
Registry Values Infected: 0
Registry Data Items Infected: 0
Folders Infected: 0
Files Infected: 0

Memory Processes Infected:
(No malicious items detected)

Memory Modules Infected:
(No malicious items detected)

Registry Keys Infected:
(No malicious items detected)

Registry Values Infected:
(No malicious items detected)

Registry Data Items Infected:
(No malicious items detected)

Folders Infected:
(No malicious items detected)

Files Infected:
(No malicious items detected)



DDS:


.
DDS (Ver_2011-08-26.01) - NTFSAMD64
Internet Explorer: 9.0.8112.16421  BrowserJavaVersion: 1.6.0_29
Run by User at 14:50:40 on 2011-11-22
Microsoft Windows 7 Ultimate   6.1.7601.1.1252.1.1033.18.1982.436 [GMT 8:00]
.
AV: Avira Desktop *Disabled/Updated* {F67B4DE5-C0B4-6C3F-0EFF-6C83BD5D0C2C}
SP: Avira Desktop *Disabled/Updated* {4D1AAC01-E68E-63B1-344F-57F1C6DA4691}
SP: Windows Defender *Enabled/Updated* {D68DDC3A-831F-4fae-9E44-DA132C1ACF46}
FW: ZoneAlarm Firewall *Enabled* {D17DF357-CFF5-F001-D1C1-FCD21DFE3D5E}
.
============== Running Processes ===============
.
C:\Windows\system32\wininit.exe
C:\Windows\system3
Title: Re: Computer Hangs Randomly?!
Post by: SuperDave on November 22, 2011, 05:22:02 PM
Quote
have kept 'uTorrent' due to the fact it's a program used by my family.
A very dangerous practice but it's your choice.

The DDS logs were cut off. Please post them again.
Title: Re: Computer Hangs Randomly?!
Post by: sajol on November 30, 2011, 12:27:34 AM
Comment removed.