Welcome guest. Before posting on our computer help forum, you must register. Click here it's easy and free.

Author Topic: Not able to install Yahoo IM or run WoW client or download files from Audible.co  (Read 6069 times)

0 Members and 1 Guest are viewing this topic.

nellenaz

    Topic Starter


    Rookie

    Hi,
    this is my sister's computer. For some reason, for the past several months ( I dont live near her) she has had problems downloanding and installing yahoo IM, and files from Audible.com and games from Game house. I can get it to download other things but when the program has you download part of a file and then when installing it downloads the majority of it . it states that it cannot and to check the connection and firewall settings. She connects through an Ambit router.  and after an hour and half on the phone with the internet co. we have determined that its not the problem. She is running XP and just had the Windows firewall up. I have downloaded the Comodo Firewall, so now she has that . I'm going to post all her logs and I would really appreciate some help as this is really confusing me.

    UPERAntiSpyware Scan Log
    http://www.superantispyware.com

    Generated 12/26/2010 at 10:28 PM

    Application Version : 4.47.1000

    Core Rules Database Version : 6071
    Trace Rules Database Version: 3883

    Scan type       : Complete Scan
    Total Scan Time : 01:59:19

    Memory items scanned      : 485
    Memory threats detected   : 0
    Registry items scanned    : 6140
    Registry threats detected : 3
    File items scanned        : 116306
    File threats detected     : 970

    Malware.Trace
       HKU\.DEFAULT\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON#SHELL
       HKU\S-1-5-21-2486008903-2317224895-1942224068-1006\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON#SHELL
       HKU\S-1-5-18\SOFTWARE\MICROSOFT\WINDOWS NT\CURRENTVERSION\WINLOGON#SHELL

    Rogue.AntiMalwareDoctor
       C:\Documents and Settings\Joanne\Application Data\A6D46C6CE0F9AFF1866B173B17640E2C

    Adware.Tracking Cookie
       cdn.eyewonder.com [ C:\Documents and Settings\LocalService\Application Data\Macromedia\Flash Player\#SharedObjects\2XXMN6A5 ]
       cdn4.specificclick.net [ C:\Documents and Settings\LocalService\Application Data\Macromedia\Flash Player\#SharedObjects\2XXMN6A5 ]
       core.insightexpressai.com [ C:\Documents and Settings\LocalService\Application Data\Macromedia\Flash Player\#SharedObjects\2XXMN6A5 ]
       crackle.com [ C:\Documents and Settings\LocalService\Application Data\Macromedia\Flash Player\#SharedObjects\2XXMN6A5 ]
       img-cdn.mediaplex.com [ C:\Documents and Settings\LocalService\Application Data\Macromedia\Flash Player\#SharedObjects\2XXMN6A5 ]
       indieclick.3janecdn.com [ C:\Documents and Settings\LocalService\Application Data\Macromedia\Flash Player\#SharedObjects\2XXMN6A5 ]
       media.entertonement.com [ C:\Documents and Settings\LocalService\Application Data\Macromedia\Flash Player\#SharedObjects\2XXMN6A5 ]
       media.heavy.com [ C:\Documents and Settings\LocalService\Application Data\Macromedia\Flash Player\#SharedObjects\2XXMN6A5 ]
       media.ign.com [ C:\Documents and Settings\LocalService\Application Data\Macromedia\Flash Player\#SharedObjects\2XXMN6A5 ]
       media.mtvnservices.com [ C:\Documents and Settings\LocalService\Application Data\Macromedia\Flash Player\#SharedObjects\2XXMN6A5 ]
       media.scanscout.com [ C:\Documents and Settings\LocalService\Application Data\Macromedia\Flash Player\#SharedObjects\2XXMN6A5 ]
       media1.break.com [ C:\Documents and Settings\LocalService\Application Data\Macromedia\Flash Player\#SharedObjects\2XXMN6A5 ]
       msnbcmedia.msn.com [ C:\Documents and Settings\LocalService\Application Data\Macromedia\Flash Player\#SharedObjects\2XXMN6A5 ]
       objects.tremormedia.com [ C:\Documents and Settings\LocalService\Application Data\Macromedia\Flash Player\#SharedObjects\2XXMN6A5 ]
       s0.2mdn.net [ C:\Documents and Settings\LocalService\Application Data\Macromedia\Flash Player\#SharedObjects\2XXMN6A5 ]
       secure-us.imrworldwide.com [ C:\Documents and Settings\LocalService\Application Data\Macromedia\Flash Player\#SharedObjects\2XXMN6A5 ]
       service.twistage.com [ C:\Documents and Settings\LocalService\Application Data\Macromedia\Flash Player\#SharedObjects\2XXMN6A5 ]
       serving-sys.com [ C:\Documents and Settings\LocalService\Application Data\Macromedia\Flash Player\#SharedObjects\2XXMN6A5 ]
       track.webgains.com [ C:\Documents and Settings\LocalService\Application Data\Macromedia\Flash Player\#SharedObjects\2XXMN6A5 ]
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][3].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][4].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][3].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\system@adecn[1].txt
       C:\Documents and Settings\LocalService\Cookies\system@adecn[2].txt
       C:\Documents and Settings\LocalService\Cookies\system@adecn[3].txt
       C:\Documents and Settings\LocalService\Cookies\system@adecn[4].txt
       C:\Documents and Settings\LocalService\Cookies\system@adecn[5].txt
       C:\Documents and Settings\LocalService\Cookies\system@adecn[6].txt
       C:\Documents and Settings\LocalService\Cookies\system@adecn[7].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][3].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][10].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][11].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][3].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][4].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][5].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][6].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][7].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][8].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][9].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][4].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][5].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][6].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][3].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][4].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][10].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][3].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][4].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][5].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][6].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][7].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][8].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][9].txt
       C:\Documents and Settings\LocalService\Cookies\system@advertise[10].txt
       C:\Documents and Settings\LocalService\Cookies\system@advertise[11].txt
       C:\Documents and Settings\LocalService\Cookies\system@advertise[1].txt
       C:\Documents and Settings\LocalService\Cookies\system@advertise[2].txt
       C:\Documents and Settings\LocalService\Cookies\system@advertise[3].txt
       C:\Documents and Settings\LocalService\Cookies\system@advertise[4].txt
       C:\Documents and Settings\LocalService\Cookies\system@advertise[5].txt
       C:\Documents and Settings\LocalService\Cookies\system@advertise[6].txt
       C:\Documents and Settings\LocalService\Cookies\system@advertise[7].txt
       C:\Documents and Settings\LocalService\Cookies\system@advertise[8].txt
       C:\Documents and Settings\LocalService\Cookies\system@advertise[9].txt
       C:\Documents and Settings\LocalService\Cookies\system@adxpose[1].txt
       C:\Documents and Settings\LocalService\Cookies\system@adxpose[2].txt
       C:\Documents and Settings\LocalService\Cookies\system@adxpose[3].txt
       C:\Documents and Settings\LocalService\Cookies\system@adxpose[4].txt
       C:\Documents and Settings\LocalService\Cookies\system@apmebf[10].txt
       C:\Documents and Settings\LocalService\Cookies\system@apmebf[11].txt
       C:\Documents and Settings\LocalService\Cookies\system@apmebf[1].txt
       C:\Documents and Settings\LocalService\Cookies\system@apmebf[2].txt
       C:\Documents and Settings\LocalService\Cookies\system@apmebf[3].txt
       C:\Documents and Settings\LocalService\Cookies\system@apmebf[4].txt
       C:\Documents and Settings\LocalService\Cookies\system@apmebf[5].txt
       C:\Documents and Settings\LocalService\Cookies\system@apmebf[6].txt
       C:\Documents and Settings\LocalService\Cookies\system@apmebf[7].txt
       C:\Documents and Settings\LocalService\Cookies\system@apmebf[8].txt
       C:\Documents and Settings\LocalService\Cookies\system@apmebf[9].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\system@bannertgt[2].txt
       C:\Documents and Settings\LocalService\Cookies\system@bizzclick[1].txt
       C:\Documents and Settings\LocalService\Cookies\system@bizzclick[2].txt
       C:\Documents and Settings\LocalService\Cookies\system@bizzclick[3].txt
       C:\Documents and Settings\LocalService\Cookies\system@bizzclick[4].txt
       C:\Documents and Settings\LocalService\Cookies\system@bizzclick[5].txt
       C:\Documents and Settings\LocalService\Cookies\system@bizzclick[6].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\system@businessfind[2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected]
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][3].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][3].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][4].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\system@chitika[1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][3].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\system@collective-media[1].txt
       C:\Documents and Settings\LocalService\Cookies\system@collective-media[3].txt
       C:\Documents and Settings\LocalService\Cookies\system@collective-media[4].txt
       C:\Documents and Settings\LocalService\Cookies\system@collective-media[5].txt
       C:\Documents and Settings\LocalService\Cookies\system@collective-media[6].txt
       C:\Documents and Settings\LocalService\Cookies\system@collective-media[7].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][10].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][11].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][3].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][4].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][5].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][6].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][7].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][8].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][9].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][11].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][3].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][4].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][5].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][6].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][7].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][8].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][9].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\system@doubleclick[10].txt
       C:\Documents and Settings\LocalService\Cookies\system@doubleclick[11].txt
       C:\Documents and Settings\LocalService\Cookies\system@doubleclick[1].txt
       C:\Documents and Settings\LocalService\Cookies\system@doubleclick[2].txt
       C:\Documents and Settings\LocalService\Cookies\system@doubleclick[3].txt
       C:\Documents and Settings\LocalService\Cookies\system@doubleclick[4].txt
       C:\Documents and Settings\LocalService\Cookies\system@doubleclick[5].txt
       C:\Documents and Settings\LocalService\Cookies\system@doubleclick[6].txt
       C:\Documents and Settings\LocalService\Cookies\system@doubleclick[7].txt
       C:\Documents and Settings\LocalService\Cookies\system@doubleclick[8].txt
       C:\Documents and Settings\LocalService\Cookies\system@doubleclick[9].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\system@edgeadx[1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\system@eyewonder[2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\system@harrenmedianetwork[1].txt
       C:\Documents and Settings\LocalService\Cookies\system@harrenmedianetwork[2].txt
       C:\Documents and Settings\LocalService\Cookies\system@homealarmfind[1].txt
       C:\Documents and Settings\LocalService\Cookies\system@imrworldwide[10].txt
       C:\Documents and Settings\LocalService\Cookies\system@imrworldwide[11].txt
       C:\Documents and Settings\LocalService\Cookies\system@imrworldwide[1].txt
       C:\Documents and Settings\LocalService\Cookies\system@imrworldwide[2].txt
       C:\Documents and Settings\LocalService\Cookies\system@imrworldwide[3].txt
       C:\Documents and Settings\LocalService\Cookies\system@imrworldwide[4].txt
       C:\Documents and Settings\LocalService\Cookies\system@imrworldwide[5].txt
       C:\Documents and Settings\LocalService\Cookies\system@imrworldwide[6].txt
       C:\Documents and Settings\LocalService\Cookies\system@imrworldwide[7].txt
       C:\Documents and Settings\LocalService\Cookies\system@imrworldwide[8].txt
       C:\Documents and Settings\LocalService\Cookies\system@insightexpressai[1].txt
       C:\Documents and Settings\LocalService\Cookies\system@insightexpressai[3].txt
       C:\Documents and Settings\LocalService\Cookies\system@insightexpressai[4].txt
       C:\Documents and Settings\LocalService\Cookies\system@insightexpressai[5].txt
       C:\Documents and Settings\LocalService\Cookies\system@interclick[1].txt
       C:\Documents and Settings\LocalService\Cookies\system@interclick[2].txt
       C:\Documents and Settings\LocalService\Cookies\system@interclick[3].txt
       C:\Documents and Settings\LocalService\Cookies\system@interclick[4].txt
       C:\Documents and Settings\LocalService\Cookies\system@interclick[5].txt
       C:\Documents and Settings\LocalService\Cookies\system@interclick[6].txt
       C:\Documents and Settings\LocalService\Cookies\system@invitemedia[10].txt
       C:\Documents and Settings\LocalService\Cookies\system@invitemedia[11].txt
       C:\Documents and Settings\LocalService\Cookies\system@invitemedia[1].txt
       C:\Documents and Settings\LocalService\Cookies\system@invitemedia[2].txt
       C:\Documents and Settings\LocalService\Cookies\system@invitemedia[3].txt
       C:\Documents and Settings\LocalService\Cookies\system@invitemedia[4].txt
       C:\Documents and Settings\LocalService\Cookies\system@invitemedia[5].txt
       C:\Documents and Settings\LocalService\Cookies\system@invitemedia[6].txt
       C:\Documents and Settings\LocalService\Cookies\system@invitemedia[7].txt
       C:\Documents and Settings\LocalService\Cookies\system@invitemedia[8].txt
       C:\Documents and Settings\LocalService\Cookies\system@invitemedia[9].txt
       C:\Documents and Settings\LocalService\Cookies\system@keenfind[2].txt
       C:\Documents and Settings\LocalService\Cookies\system@keenfind[3].txt
       C:\Documents and Settings\LocalService\Cookies\system@kontera[1].txt
       C:\Documents and Settings\LocalService\Cookies\system@legolas-media[2].txt
       C:\Documents and Settings\LocalService\Cookies\system@legolas-media[3].txt
       C:\Documents and Settings\LocalService\Cookies\system@lucidmedia[1].txt
       C:\Documents and Settings\LocalService\Cookies\system@lucidmedia[2].txt
       C:\Documents and Settings\LocalService\Cookies\system@lucidmedia[3].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\system@media6degrees[10].txt
       C:\Documents and Settings\LocalService\Cookies\system@media6degrees[1].txt
       C:\Documents and Settings\LocalService\Cookies\system@media6degrees[2].txt
       C:\Documents and Settings\LocalService\Cookies\system@media6degrees[3].txt
       C:\Documents and Settings\LocalService\Cookies\system@media6degrees[4].txt
       C:\Documents and Settings\LocalService\Cookies\system@media6degrees[5].txt
       C:\Documents and Settings\LocalService\Cookies\system@media6degrees[6].txt
       C:\Documents and Settings\LocalService\Cookies\system@media6degrees[7].txt
       C:\Documents and Settings\LocalService\Cookies\system@media6degrees[8].txt
       C:\Documents and Settings\LocalService\Cookies\system@media6degrees[9].txt
       C:\Documents and Settings\LocalService\Cookies\system@mediabrandsww[1].txt
       C:\Documents and Settings\LocalService\Cookies\system@mediatraffic[1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][11].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][3].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][4].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][5].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][6].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][7].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][8].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][9].txt
       C:\Documents and Settings\LocalService\Cookies\system@specificclick[1].txt
       C:\Documents and Settings\LocalService\Cookies\system@specificclick[2].txt
       C:\Documents and Settings\LocalService\Cookies\system@specificclick[4].txt
       C:\Documents and Settings\LocalService\Cookies\system@specificclick[5].txt
       C:\Documents and Settings\LocalService\Cookies\system@specificmedia[1].txt
       C:\Documents and Settings\LocalService\Cookies\system@specificmedia[2].txt
       C:\Documents and Settings\LocalService\Cookies\system@specificmedia[3].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\system@statcounter[1].txt
       C:\Documents and Settings\LocalService\Cookies\system@statcounter[2].txt
       C:\Documents and Settings\LocalService\Cookies\system@statcounter[3].txt
       C:\Documents and Settings\LocalService\Cookies\system@statcounter[4].txt
       C:\Documents and Settings\LocalService\Cookies\system@statcounter[6].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\system@teen[1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][3].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][4].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][3].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][3].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][4].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][2].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][3].txt
       C:\Documents and Settings\LocalService\Cookies\[email protected][1].txt
       cdn.eyewonder.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       cdn4.specificclick.net [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       convoad.technoratimedia.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       core.insightexpressai.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       crackle.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       ictv-ic-ec.indieclicktv.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       indieclick.3janecdn.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       media-glam.pictela.net [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       media.entertonement.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       media.heavy.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       media.ign.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       media.movieweb.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       media.mtvnservices.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       media.onsugar.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       media.scanscout.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       media1.break.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       media10.washingtonpost.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       msnbcmedia.msn.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       objects.tremormedia.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       richmedia247.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       s0.2mdn.net [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       secure-us.imrworldwide.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       service.twistage.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       serving-sys.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       spe.atdmt.com [ C:\Documents and Settings\NetworkService\Application Data\Macromedia\Flash Player\#SharedObjects\TU8DTETT ]
       C:\Documents and Settings\NetworkService\Cookies\[email protected][10].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][11].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][8].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][9].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@adcloudmedia[1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@adcloudmedia[2].txt
       C:\Documents and Settings\NetworkService\Cookies\system@adcloudmedia[3].txt
       C:\Documents and Settings\NetworkService\Cookies\system@adecn[10].txt
       C:\Documents and Settings\NetworkService\Cookies\system@adecn[11].txt
       C:\Documents and Settings\NetworkService\Cookies\system@adecn[1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@adecn[2].txt
       C:\Documents and Settings\NetworkService\Cookies\system@adecn[3].txt
       C:\Documents and Settings\NetworkService\Cookies\system@adecn[4].txt
       C:\Documents and Settings\NetworkService\Cookies\system@adecn[5].txt
       C:\Documents and Settings\NetworkService\Cookies\system@adecn[6].txt
       C:\Documents and Settings\NetworkService\Cookies\system@adecn[7].txt
       C:\Documents and Settings\NetworkService\Cookies\system@adecn[8].txt
       C:\Documents and Settings\NetworkService\Cookies\system@adecn[9].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][11].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][8].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][9].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][10].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][11].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][8].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][9].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][10].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][11].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][8].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][9].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][10].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][11].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][8].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][9].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][10].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][11].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][8].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][9].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][10].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][11].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][8].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][9].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\system@adservr[1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@adtechus[1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@advertise[10].txt
       C:\Documents and Settings\NetworkService\Cookies\system@advertise[11].txt
       C:\Documents and Settings\NetworkService\Cookies\system@advertise[1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@advertise[2].txt
       C:\Documents and Settings\NetworkService\Cookies\system@advertise[3].txt
       C:\Documents and Settings\NetworkService\Cookies\system@advertise[4].txt
       C:\Documents and Settings\NetworkService\Cookies\system@advertise[5].txt
       C:\Documents and Settings\NetworkService\Cookies\system@advertise[6].txt
       C:\Documents and Settings\NetworkService\Cookies\system@advertise[7].txt
       C:\Documents and Settings\NetworkService\Cookies\system@advertise[8].txt
       C:\Documents and Settings\NetworkService\Cookies\system@advertise[9].txt
       C:\Documents and Settings\NetworkService\Cookies\system@adxpose[1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@adxpose[2].txt
       C:\Documents and Settings\NetworkService\Cookies\system@adxpose[3].txt
       C:\Documents and Settings\NetworkService\Cookies\system@adxpose[4].txt
       C:\Documents and Settings\NetworkService\Cookies\system@adxpose[5].txt
       C:\Documents and Settings\NetworkService\Cookies\system@apmebf[10].txt
       C:\Documents and Settings\NetworkService\Cookies\system@apmebf[11].txt
       C:\Documents and Settings\NetworkService\Cookies\system@apmebf[1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@apmebf[2].txt
       C:\Documents and Settings\NetworkService\Cookies\system@apmebf[3].txt
       C:\Documents and Settings\NetworkService\Cookies\system@apmebf[4].txt
       C:\Documents and Settings\NetworkService\Cookies\system@apmebf[5].txt
       C:\Documents and Settings\NetworkService\Cookies\system@apmebf[6].txt
       C:\Documents and Settings\NetworkService\Cookies\system@apmebf[7].txt
       C:\Documents and Settings\NetworkService\Cookies\system@apmebf[8].txt
       C:\Documents and Settings\NetworkService\Cookies\system@apmebf[9].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][10].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][11].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][8].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][9].txt
       C:\Documents and Settings\NetworkService\Cookies\system@azjmp[2].txt
       C:\Documents and Settings\NetworkService\Cookies\system@azjmp[3].txt
       C:\Documents and Settings\NetworkService\Cookies\system@bannertgt[2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@bizrate[2].txt
       C:\Documents and Settings\NetworkService\Cookies\system@bizzclick[10].txt
       C:\Documents and Settings\NetworkService\Cookies\system@bizzclick[11].txt
       C:\Documents and Settings\NetworkService\Cookies\system@bizzclick[1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@bizzclick[2].txt
       C:\Documents and Settings\NetworkService\Cookies\system@bizzclick[3].txt
       C:\Documents and Settings\NetworkService\Cookies\system@bizzclick[4].txt
       C:\Documents and Settings\NetworkService\Cookies\system@bizzclick[5].txt
       C:\Documents and Settings\NetworkService\Cookies\system@bizzclick[6].txt
       C:\Documents and Settings\NetworkService\Cookies\system@bizzclick[7].txt
       C:\Documents and Settings\NetworkService\Cookies\system@bizzclick[8].txt
       C:\Documents and Settings\NetworkService\Cookies\system@bizzclick[9].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@businessfind[1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@businessfind[2].txt
       C:\Documents and Settings\NetworkService\Cookies\system@businessfind[3].txt
       C:\Documents and Settings\NetworkService\Cookies\system@businessfind[4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected]
       C:\Documents and Settings\NetworkService\Cookies\[email protected]
       C:\Documents and Settings\NetworkService\Cookies\[email protected]
       C:\Documents and Settings\NetworkService\Cookies\[email protected]
       C:\Documents and Settings\NetworkService\Cookies\[email protected]
       C:\Documents and Settings\NetworkService\Cookies\[email protected]
       C:\Documents and Settings\NetworkService\Cookies\[email protected]
       C:\Documents and Settings\NetworkService\Cookies\[email protected]
       C:\Documents and Settings\NetworkService\Cookies\[email protected][10].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][11].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][8].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][9].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][10].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][9].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][10].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][11].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][8].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][9].txt
       C:\Documents and Settings\NetworkService\Cookies\system@chitika[1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@chitika[2].txt
       C:\Documents and Settings\NetworkService\Cookies\system@chitika[4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][10].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][8].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][9].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@click4college[1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@clicksmart[1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@clicksor[1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@clicksor[2].txt
       C:\Documents and Settings\NetworkService\Cookies\system@clicksor[3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\system@collective-media[10].txt
       C:\Documents and Settings\NetworkService\Cookies\system@collective-media[11].txt
       C:\Documents and Settings\NetworkService\Cookies\system@collective-media[1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@collective-media[2].txt
       C:\Documents and Settings\NetworkService\Cookies\system@collective-media[3].txt
       C:\Documents and Settings\NetworkService\Cookies\system@collective-media[4].txt
       C:\Documents and Settings\NetworkService\Cookies\system@collective-media[5].txt
       C:\Documents and Settings\NetworkService\Cookies\system@collective-media[6].txt
       C:\Documents and Settings\NetworkService\Cookies\system@collective-media[7].txt
       C:\Documents and Settings\NetworkService\Cookies\system@collective-media[8].txt
       C:\Documents and Settings\NetworkService\Cookies\system@collective-media[9].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][10].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][11].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][8].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][9].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\system@crackle[1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@crackle[3].txt
       C:\Documents and Settings\NetworkService\Cookies\system@crackle[4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][10].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][11].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][8].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][9].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@doubleclick[10].txt
       C:\Documents and Settings\NetworkService\Cookies\system@doubleclick[11].txt
       C:\Documents and Settings\NetworkService\Cookies\system@doubleclick[1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@doubleclick[2].txt
       C:\Documents and Settings\NetworkService\Cookies\system@doubleclick[3].txt
       C:\Documents and Settings\NetworkService\Cookies\system@doubleclick[4].txt
       C:\Documents and Settings\NetworkService\Cookies\system@doubleclick[5].txt
       C:\Documents and Settings\NetworkService\Cookies\system@doubleclick[6].txt
       C:\Documents and Settings\NetworkService\Cookies\system@doubleclick[7].txt
       C:\Documents and Settings\NetworkService\Cookies\system@doubleclick[8].txt
       C:\Documents and Settings\NetworkService\Cookies\system@doubleclick[9].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][10].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][11].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][8].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][9].txt
       C:\Documents and Settings\NetworkService\Cookies\system@edgeadx[1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@edgeadx[2].txt
       C:\Documents and Settings\NetworkService\Cookies\system@edgeadx[3].txt
       C:\Documents and Settings\NetworkService\Cookies\system@edgeadx[4].txt
       C:\Documents and Settings\NetworkService\Cookies\system@edgeadx[5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\system@entrepreneur[1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\system@exoclick[2].txt
       C:\Documents and Settings\NetworkService\Cookies\system@exoclick[3].txt
       C:\Documents and Settings\NetworkService\Cookies\system@eyewonder[1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@eyewonder[3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@find-easily[1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@imrworldwide[10].txt
       C:\Documents and Settings\NetworkService\Cookies\system@imrworldwide[11].txt
       C:\Documents and Settings\NetworkService\Cookies\system@imrworldwide[2].txt
       C:\Documents and Settings\NetworkService\Cookies\system@imrworldwide[3].txt
       C:\Documents and Settings\NetworkService\Cookies\system@imrworldwide[4].txt
       C:\Documents and Settings\NetworkService\Cookies\system@imrworldwide[5].txt
       C:\Documents and Settings\NetworkService\Cookies\system@imrworldwide[6].txt
       C:\Documents and Settings\NetworkService\Cookies\system@imrworldwide[7].txt
       C:\Documents and Settings\NetworkService\Cookies\system@imrworldwide[8].txt
       C:\Documents and Settings\NetworkService\Cookies\system@imrworldwide[9].txt
       C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@insightexpressai[10].txt
       C:\Documents and Settings\NetworkService\Cookies\system@insightexpressai[11].txt
       C:\Documents and Settings\NetworkService\Cookies\system@insightexpressai[1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@insightexpressai[2].txt
       C:\Documents and Settings\NetworkService\Cookies\system@insightexpressai[3].txt
       C:\Documents and Settings\NetworkService\Cookies\system@insightexpressai[4].txt
       C:\Documents and Settings\NetworkService\Cookies\system@insightexpressai[5].txt
       C:\Documents and Settings\NetworkService\Cookies\system@insightexpressai[6].txt
       C:\Documents and Settings\NetworkService\Cookies\system@insightexpressai[7].txt
       C:\Documents and Settings\NetworkService\Cookies\system@insightexpressai[8].txt
       C:\Documents and Settings\NetworkService\Cookies\system@insightexpressai[9].txt
       C:\Documents and Settings\NetworkService\Cookies\system@interclick[10].txt
       C:\Documents and Settings\NetworkService\Cookies\system@interclick[11].txt
       C:\Documents and Settings\NetworkService\Cookies\system@interclick[1].txt
       C:\Documents and Settings\NetworkService\Cookies\system@interclick[2].txt
       C:\Documents and Settings\NetworkService\Cookies\system@interclick[3].txt
       C:\Documents and Settings\NetworkService\Cookies\system@interclick[4].txt
       C:\Documents and Settings\NetworkService\Cookies\system@interclick[5].txt
       C:\Documents and Settings\NetworkService\Cookies\system@interclick[6].txt
       C:\Documents and Settings\NetworkService\Cookies\system@interclick[7].txt
       C:\Documents and Settings\NetworkService\Cookies\system@interclick[8].txt
       C:\Documents and Settings\NetworkService\Cookies\system@interclick[9].txt
       C:\Documents and Settings\NetworkService\Cookies\system@invitemedia[10].txt
       C:\Documents and Settings\NetworkService\Cookies\system@invitemedia[11].txt
       C:\Documents and Settings\NetworkService\Cookies\system@invitemedia[1].txt
       C:

    nellenaz

      Topic Starter


      Rookie

      C:\Documents and Settings\NetworkService\Cookies\system@invitemedia[2].txt
         C:\Documents and Settings\NetworkService\Cookies\system@invitemedia[3].txt
         C:\Documents and Settings\NetworkService\Cookies\system@invitemedia[4].txt
         C:\Documents and Settings\NetworkService\Cookies\system@invitemedia[5].txt
         C:\Documents and Settings\NetworkService\Cookies\system@invitemedia[6].txt
         C:\Documents and Settings\NetworkService\Cookies\system@invitemedia[7].txt
         C:\Documents and Settings\NetworkService\Cookies\system@invitemedia[8].txt
         C:\Documents and Settings\NetworkService\Cookies\system@invitemedia[9].txt
         C:\Documents and Settings\NetworkService\Cookies\system@keenfind[2].txt
         C:\Documents and Settings\NetworkService\Cookies\system@keenfind[3].txt
         C:\Documents and Settings\NetworkService\Cookies\system@legolas-media[1].txt
         C:\Documents and Settings\NetworkService\Cookies\system@legolas-media[2].txt
         C:\Documents and Settings\NetworkService\Cookies\system@legolas-media[3].txt
         C:\Documents and Settings\NetworkService\Cookies\system@legolas-media[5].txt
         C:\Documents and Settings\NetworkService\Cookies\system@legolas-media[6].txt
         C:\Documents and Settings\NetworkService\Cookies\system@legolas-media[7].txt
         C:\Documents and Settings\NetworkService\Cookies\system@liveperson[3].txt
         C:\Documents and Settings\NetworkService\Cookies\system@liveperson[4].txt
         C:\Documents and Settings\NetworkService\Cookies\system@lucidmedia[1].txt
         C:\Documents and Settings\NetworkService\Cookies\system@lucidmedia[2].txt
         C:\Documents and Settings\NetworkService\Cookies\system@lucidmedia[3].txt
         C:\Documents and Settings\NetworkService\Cookies\system@lucidmedia[4].txt
         C:\Documents and Settings\NetworkService\Cookies\system@lucidmedia[5].txt
         C:\Documents and Settings\NetworkService\Cookies\system@lucidmedia[6].txt
         C:\Documents and Settings\NetworkService\Cookies\system@lucidmedia[7].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\system@media6degrees[10].txt
         C:\Documents and Settings\NetworkService\Cookies\system@media6degrees[11].txt
         C:\Documents and Settings\NetworkService\Cookies\system@media6degrees[1].txt
         C:\Documents and Settings\NetworkService\Cookies\system@media6degrees[2].txt
         C:\Documents and Settings\NetworkService\Cookies\system@media6degrees[3].txt
         C:\Documents and Settings\NetworkService\Cookies\system@media6degrees[4].txt
         C:\Documents and Settings\NetworkService\Cookies\system@media6degrees[5].txt
         C:\Documents and Settings\NetworkService\Cookies\system@media6degrees[6].txt
         C:\Documents and Settings\NetworkService\Cookies\system@media6degrees[7].txt
         C:\Documents and Settings\NetworkService\Cookies\system@media6degrees[8].txt
         C:\Documents and Settings\NetworkService\Cookies\system@media6degrees[9].txt
         C:\Documents and Settings\NetworkService\Cookies\system@mediabrandsww[1].txt
         C:\Documents and Settings\NetworkService\Cookies\system@mediabrandsww[2].txt
         C:\Documents and Settings\NetworkService\Cookies\system@mediaforge[2].txt
         C:\Documents and Settings\NetworkService\Cookies\system@mediatraffic[1].txt
         C:\Documents and Settings\NetworkService\Cookies\system@mediatraffic[2].txt
         C:\Documents and Settings\NetworkService\Cookies\system@myroitracking[1].txt
         C:\Documents and Settings\NetworkService\Cookies\system@myroitracking[2].txt
         C:\Documents and Settings\NetworkService\Cookies\system@myroitracking[3].txt
         C:\Documents and Settings\NetworkService\Cookies\system@myroitracking[4].txt
         C:\Documents and Settings\NetworkService\Cookies\system@myroitracking[5].txt
         C:\Documents and Settings\NetworkService\Cookies\system@myroitracking[6].txt
         C:\Documents and Settings\NetworkService\Cookies\system@myroitracking[7].txt
         C:\Documents and Settings\NetworkService\Cookies\system@n-traffic[1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][10].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][11].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][8].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][9].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][10].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][11].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][8].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][9].txt
         C:\Documents and Settings\NetworkService\Cookies\system@oneclicklocal[1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\system@picadmedia[1].txt
         C:\Documents and Settings\NetworkService\Cookies\system@picadmedia[2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\system@shefinds[2].txt
         C:\Documents and Settings\NetworkService\Cookies\system@smartadx[1].txt
         C:\Documents and Settings\NetworkService\Cookies\system@smartadx[2].txt
         C:\Documents and Settings\NetworkService\Cookies\system@smartadx[3].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificclick[10].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificclick[11].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificclick[1].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificclick[2].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificclick[3].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificclick[4].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificclick[5].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificclick[6].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificclick[7].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificclick[8].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificclick[9].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificmedia[10].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificmedia[11].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificmedia[1].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificmedia[2].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificmedia[3].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificmedia[4].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificmedia[5].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificmedia[6].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificmedia[7].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificmedia[8].txt
         C:\Documents and Settings\NetworkService\Cookies\system@specificmedia[9].txt
         C:\Documents and Settings\NetworkService\Cookies\system@statcounter[10].txt
         C:\Documents and Settings\NetworkService\Cookies\system@statcounter[11].txt
         C:\Documents and Settings\NetworkService\Cookies\system@statcounter[1].txt
         C:\Documents and Settings\NetworkService\Cookies\system@statcounter[2].txt
         C:\Documents and Settings\NetworkService\Cookies\system@statcounter[3].txt
         C:\Documents and Settings\NetworkService\Cookies\system@statcounter[4].txt
         C:\Documents and Settings\NetworkService\Cookies\system@statcounter[5].txt
         C:\Documents and Settings\NetworkService\Cookies\system@statcounter[6].txt
         C:\Documents and Settings\NetworkService\Cookies\system@statcounter[7].txt
         C:\Documents and Settings\NetworkService\Cookies\system@statcounter[8].txt
         C:\Documents and Settings\NetworkService\Cookies\system@statcounter[9].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\system@technoratimedia[1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][10].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][8].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][9].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\system@trafficengine[1].txt
         C:\Documents and Settings\NetworkService\Cookies\system@trafficengine[2].txt
         C:\Documents and Settings\NetworkService\Cookies\system@trafficengine[3].txt
         C:\Documents and Settings\NetworkService\Cookies\system@trafficengine[4].txt
         C:\Documents and Settings\NetworkService\Cookies\system@trafficrevenue[1].txt
         C:\Documents and Settings\NetworkService\Cookies\system@traveladvertising[1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][9].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][10].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][11].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][8].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][9].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][10].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][8].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][1].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][2].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][3].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][4].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][5].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][6].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][7].txt
         C:\Documents and Settings\NetworkService\Cookies\[email protected][8].txt
         C:\Documents and Settings\NetworkService\Cookies\system@yieldmanager[1].txt
         C:\Documents and Settings\NetworkService\Cookies\system@yieldmanager[2].txt
         C:\Documents and Settings\NetworkService\Cookies\system@yieldmanager[3].txt
         C:\Documents and Settings\NetworkService\Cookies\system@yieldmanager[4].txt
         C:\Documents and Settings\NetworkService\Cookies\system@yieldmanager[5].txt
         C:\Documents and Settings\NetworkService\Cookies\system@zanox[1].txt

      nellenaz

        Topic Starter


        Rookie

        Malwarebytes' Anti-Malware 1.50.1.1100
        www.malwarebytes.org

        Database version: 5363

        Windows 5.1.2600 Service Pack 3
        Internet Explorer 8.0.6001.18702

        12/27/2010 11:15:27 AM
        mbam-log-2010-12-27 (11-15-27).txt

        Scan type: Quick scan
        Objects scanned: 136164
        Time elapsed: 4 minute(s), 49 second(s)

        Memory Processes Infected: 0
        Memory Modules Infected: 0
        Registry Keys Infected: 0
        Registry Values Infected: 1
        Registry Data Items Infected: 0
        Folders Infected: 0
        Files Infected: 2

        Memory Processes Infected:
        (No malicious items detected)

        Memory Modules Infected:
        (No malicious items detected)

        Registry Keys Infected:
        (No malicious items detected)

        Registry Values Infected:
        HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Windows\load (Trojan.Agent) -> Value: load -> Quarantined and deleted successfully.

        Registry Data Items Infected:
        (No malicious items detected)

        Folders Infected:
        (No malicious items detected)

        Files Infected:
        c:\documents and settings\localservice\application data\dkfjasdfshd.bat (Malware.Trace) -> Quarantined and deleted successfully.
        c:\documents and settings\Joanne\application data\microsoft\stor.cfg (Malware.Trace) -> Quarantined and deleted successfully.


        nellenaz

          Topic Starter


          Rookie

          Logfile of Trend Micro HijackThis v2.0.4
          Scan saved at 11:29:10 AM, on 12/27/2010
          Platform: Windows XP SP3 (WinNT 5.01.2600)
          MSIE: Internet Explorer v8.00 (8.00.6001.18702)
          Boot mode: Normal

          Running processes:
          C:\WINDOWS\System32\smss.exe
          C:\WINDOWS\system32\winlogon.exe
          C:\WINDOWS\system32\services.exe
          C:\WINDOWS\system32\lsass.exe
          C:\WINDOWS\system32\svchost.exe
          C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
          C:\WINDOWS\system32\svchost.exe
          C:\WINDOWS\Explorer.EXE
          C:\WINDOWS\system32\spoolsv.exe
          C:\WINDOWS\system32\RUNDLL32.EXE
          C:\WINDOWS\RTHDCPL.EXE
          C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe
          C:\PROGRA~1\AVG\AVG8\avgtray.exe
          C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
          C:\Program Files\Dell Support Center\bin\sprtcmd.exe
          C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
          C:\Program Files\QuickTime\qttask.exe
          C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe
          C:\Program Files\COMODO\COMODO Internet Security\cfp.exe
          C:\Program Files\Creative\Shared Files\CTSched.exe
          C:\WINDOWS\system32\ctfmon.exe
          C:\Program Files\Messenger\msmsgs.exe
          C:\WINDOWS\system32\CTsvcCDA.exe
          C:\PROGRA~1\AVG\AVG8\avgrsx.exe
          C:\PROGRA~1\AVG\AVG8\avgnsx.exe
          C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
          C:\WINDOWS\system32\nvsvc32.exe
          C:\Program Files\Mozilla Firefox\firefox.exe
          C:\Program Files\Dell Support Center\bin\sprtsvc.exe
          C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe
          C:\WINDOWS\system32\wuauclt.exe
          C:\PROGRA~1\AVG\AVG8\avgemc.exe
          C:\Program Files\AVG\AVG8\avgcsrvx.exe
          C:\WINDOWS\System32\svchost.exe
          C:\WINDOWS\system32\wscript.exe
          C:\Program Files\SUPERAntiSpyware\SUPERAntiSpyware.exe
          C:\Program Files\Trend Micro\HijackThis\sniper.exe

          R1 - HKCU\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us&ibd=2080425
          R0 - HKCU\Software\Microsoft\Internet Explorer\Main,Start Page = www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us&ibd=2080425
          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
          R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
          R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
          R1 - HKLM\Software\Microsoft\Internet Explorer\Search,Default_Page_URL = www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us&ibd=2080425
          R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:50370
          O2 - BHO: &Yahoo! Toolbar Helper - {02478D38-C3F9-4efb-9B51-7695ECA05670} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
          O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
          O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
          O2 - BHO: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
          O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
          O2 - BHO: Google Toolbar Notifier BHO - {AF69DE43-7D58-4638-B6FA-CE66B5AD205D} - C:\Program Files\Google\GoogleToolbarNotifier\5.6.5805.1910\swg.dll
          O2 - BHO: Browser Address Error Redirector - {CA6319C0-31B7-401E-A518-A07C3DB8F777} - C:\Program Files\Dell\BAE\BAE.dll
          O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
          O3 - Toolbar: AVG Security Toolbar - {A057A204-BACC-4D26-9990-79A187E2698E} - C:\PROGRA~1\AVG\AVG8\AVGTOO~1.DLL
          O3 - Toolbar: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - C:\PROGRA~1\Yahoo!\Companion\Installs\cpn\yt.dll
          O3 - Toolbar: Pando Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
          O3 - Toolbar: Google Toolbar - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - C:\Program Files\Google\Google Toolbar\GoogleToolbar_32.dll
          O4 - HKLM\..\Run: [NvCplDaemon] RUNDLL32.EXE C:\WINDOWS\system32\NvCpl.dll,NvStartup
          O4 - HKLM\..\Run: [NvMediaCenter] RUNDLL32.EXE C:\WINDOWS\system32\NvMcTray.dll,NvTaskbarInit
          O4 - HKLM\..\Run: [RTHDCPL] RTHDCPL.EXE
          O4 - HKLM\..\Run: [PDVDDXSrv] "C:\Program Files\CyberLink\PowerDVD DX\PDVDDXSrv.exe"
          O4 - HKLM\..\Run: [dscactivate] "C:\Program Files\Dell Support Center\gs_agent\custom\dsca.exe"
          O4 - HKLM\..\Run: [AVG8_TRAY] C:\PROGRA~1\AVG\AVG8\avgtray.exe
          O4 - HKLM\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
          O4 - HKLM\..\Run: [Adobe Reader Speed Launcher] "C:\Program Files\Adobe\Reader 8.0\Reader\Reader_sl.exe"
          O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
          O4 - HKLM\..\Run: [Google Quick Search Box] "C:\Program Files\Google\Quick Search Box\GoogleQuickSearchBox.exe"  /autorun
          O4 - HKLM\..\Run: [COMODO Internet Security] "C:\Program Files\COMODO\COMODO Internet Security\cfp.exe" -h
          O4 - HKCU\..\Run: [DellSupportCenter] "C:\Program Files\Dell Support Center\bin\sprtcmd.exe" /P DellSupportCenter
          O4 - HKCU\..\Run: [CreativeTaskScheduler] "C:\Program Files\Creative\Shared Files\CTSched.exe" /logon
          O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
          O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
          O8 - Extra context menu item: Google Sidewiki... - res://C:\Program Files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_950DF09FAB501E03.dll/cmsidewiki.html
          O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
          O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.5.0_06\bin\ssv.dll
          O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
          O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
          O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
          O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
          O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
          O18 - Protocol: linkscanner - {F274614C-63F8-47D5-A4D1-FBDDE494F8D1} - C:\Program Files\AVG\AVG8\avgpp.dll
          O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.DLL
          O20 - Winlogon Notify: avgrsstarter - avgrsstx.dll (file missing)
          O22 - SharedTaskScheduler: Browseui preloader - {438755C2-A8BA-11D1-B96B-00A0C90312E1} - C:\WINDOWS\system32\browseui.dll
          O22 - SharedTaskScheduler: Component Categories cache daemon - {8C7461EF-2B13-11d2-BE35-3078302C2030} - C:\WINDOWS\system32\browseui.dll
          O23 - Service: AOL TopSpeed Monitor (AOL TopSpeedMonitor) - America Online, Inc - C:\Program Files\Common Files\AOL\TopSpeed\2.0\aoltsmon.exe
          O23 - Service: AVG Free8 E-mail Scanner (avg8emc) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgemc.exe
          O23 - Service: AVG Free8 WatchDog (avg8wd) - AVG Technologies CZ, s.r.o. - C:\PROGRA~1\AVG\AVG8\avgwdsvc.exe
          O23 - Service: COMODO Internet Security Helper Service (cmdAgent) - COMODO - C:\Program Files\COMODO\COMODO Internet Security\cmdagent.exe
          O23 - Service: Creative Service for CDROM Access - Creative Technology Ltd - C:\WINDOWS\system32\CTsvcCDA.exe
          O23 - Service: Google Update Service (gupdate1ca9f9c4ea1d200) (gupdate1ca9f9c4ea1d200) - Google Inc. - C:\Program Files\Google\Update\GoogleUpdate.exe
          O23 - Service: Google Software Updater (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
          O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
          O23 - Service: Nero BackItUp Scheduler 4.0 - Nero AG - C:\Program Files\Common Files\Nero\Nero BackItUp 4\NBService.exe
          O23 - Service: NVIDIA Display Driver Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\system32\nvsvc32.exe
          O23 - Service: SupportSoft Sprocket Service (dellsupportcenter) (sprtsvc_dellsupportcenter) - SupportSoft, Inc. - C:\Program Files\Dell Support Center\bin\sprtsvc.exe
          O23 - Service: stllssvr - MicroVision Development, Inc. - C:\Program Files\Common Files\SureThing Shared\stllssvr.exe
          O23 - Service: Yahoo! Updater (YahooAUService) - Yahoo! Inc. - C:\Program Files\Yahoo!\SoftwareUpdate\YahooAUService.exe

          --
          End of file - 8903 bytes

          SuperDave

          • Malware Removal Specialist


          • Genius
          • Thanked: 1020
          • Certifications: List
          • Experience: Expert
          • OS: Windows 10
            Hello and welcome to
          Computer Hope Forum. My name is Dave. I will be helping you out with your particular problem on your computer.

          1. I will be working on your Malware issues. This may or may not solve other issues you have with your machine.
          2. The fixes are specific to your problem and should only be used for this issue on this machine.
          3. If you don't know or understand something, please don't hesitate to ask.
          4. Please DO NOT run any other tools or scans while I am helping you.
          5. It is important that you reply to this thread. Do not start a new topic.
          6. Your security programs may give warnings for some of the tools I will ask you to use. Be assured, any links I give are safe.
          7. Absence of symptoms does not mean that everything is clear.

          Download Disable/Remove Windows Messenger to the desktop to remove Windows Messenger.

          Do not confuse Windows Messenger with MSN Messenger because they are not the same. Windows Messenger is a frequent cause of popups.

          Unzip the file on the desktop. Open the MessengerDisable.exe and choose the bottom box - Uninstall Windows Messenger and click Apply.

          Exit out of MessengerDisable then delete the two files that were put on the desktop.
          *************************************************
          I strongly recommend that you remove Ask from your computer because it;

          •Promotes its toolbars on sites targeted to kids.

          •Promotes its toolbars through ads that appear to be part of other companies' sites.

          •Promotes its toolbars through other companies' spyware.

          •Installs without any disclosure whatsoever and without any consent whatsoever.

          •Solicits installations via "deceptive door openers" that do not accurately describe the offer; failing to affirmatively show a license agreement; linking to a EULA via an off-screen link.

          •Makes confusing changes to users' browsers -- increasing Ask's revenues while taking users to pages they didn't intend to visit.

          See Here for more info.

          If you choose to follow my recommendation then please go to Start > Control Panel > Add/Remove Programs and remove the following programs if present.

          AskBarDis or anything related to Ask

          Then please find and delete this folder in bold (if present):
          C:\Program Files\AskBarDis. or anything related to Ask.
          *************************************************
          Open HijackThis and select Do a system scan only

          Place a check mark next to the following entries: (if there)

          R1 - HKCU\Software\Microsoft\Windows\CurrentVersion\Internet Settings,ProxyServer = http=127.0.0.1:50370
          O2 - BHO: Ask Toolbar BHO - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
          O3 - Toolbar: Pando Toolbar - {D4027C7F-154A-4066-A1AD-4243D8127440} - C:\Program Files\Ask.com\GenericAskToolbar.dll
          O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
          O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
          O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe


          Important: Close all open windows except for HijackThis and then click Fix checked.
          Once completed, exit HijackThis.
          ***********************************************

          This next tool will not run with AVG on the computer. Please download one of these free AV programs from the list below and install it. I recommend MicroSoft Security Essentials. Next download and run the AVG Removal tool below. Then run the ComboFix scan and post the log.

          *********************************************************
          Remember to only install one antivirus!
           
          1) Avast! Home Edition
          2) AVG Free Edition
          3) Avira AntiVir Personal
          4) Microsoft Security Essentials for Windows Vista\Windows 7 - 64 bit Download
          4-a) Microsoft Security Essentials for Windows XP
          5) Comodo Antivirus (Uncheck during installation "Install Comodo SafeSurf..", Make Comodo my default search provider" and "Make Comodo Search my homepage" if you choose this one)
          6) PC Tools AntiVirus Free Edition

          It is strongly recommended that you run only one antivirus program at a time. Having more than one antivirus program active in memory uses additional resources and can result in program conflicts and false virus alerts. If you choose to install more than one antivirus program on your computer, then only one of them should be active in memory at a time.
          ***************************************************
          AVG Antivirus - AVG Antivirus Remover utility

          *****************************************************
          Download Security Check by screen317 from one of the following links and save it to your desktop.

          Link 1
          Link 2

          * Unzip SecurityCheck.zip and a folder named Security Check should appear.
          * Open the Security Check folder and double-click Security Check.bat
          * Follow the on-screen instructions inside of the black box.
          * A Notepad document should open automatically called checkup.txt
          * Post the contents of that document in your next reply.

          Note: If a security program requests permission from dig.exe to access the Internet, allow it to do so.

          *************************************************
          Please download ComboFix from BleepingComputer.com

          Alternate link: GeeksToGo.com

          Rename ComboFix.exe to commy.exe before you save it to your Desktop
          Disable your AntiVirus and AntiSpyware applications, usually via a right click on the System Tray icon. They may otherwise interfere with our tools A guide to do this can be found here
          Click Start>Run then copy paste the following command into the Run box & click OK "%userprofile%\desktop\commy.exe" /stepdel
          As part of it's process, ComboFix will check to see if the Microsoft Windows Recovery Console is installed. With malware infections being as they are today, it's strongly recommended to have this pre-installed on your machine before doing any malware removal. It will allow you to boot up into a special recovery/repair mode that will allow us to more easily help you should your computer have a problem after an attempted removal of malware.
          Follow the prompts to allow ComboFix to download and install the Microsoft Windows Recovery Console, and when prompted, agree to the End-User License Agreement to install the Microsoft Windows Recovery Console[/list]

          Please note: If the Microsoft Windows Recovery Console is already installed, ComboFix will continue it's malware removal procedures.

          Once the Microsoft Windows Recovery Console is installed using ComboFix, you should see the following message:


          Click on Yes, to continue scanning for malware.
          When finished, it shall produce a log for you.  Please include the contents of C:\ComboFix.txt in your next reply.

          If you have problems with ComboFix usage, see How to use ComboFix
          « Last Edit: December 29, 2010, 01:32:06 PM by SuperDave »
          Windows 8 and Windows 10 dual boot with two SSD's

          nellenaz

            Topic Starter


            Rookie

              Results of screen317's Security Check version 0.99.8 
             Windows XP Service Pack 3 
             Internet Explorer 8 
            ``````````````````````````````
            Antivirus/Firewall Check:

             Windows Firewall Disabled! 
            ```````````````````````````````
            Anti-malware/Other Utilities Check:

             Malwarebytes' Anti-Malware   
             HijackThis 2.0.2   
             CCleaner     
             Adobe Flash Player 10.1.85.3 
            Adobe Reader 8.1.3
            Out of date Adobe Reader installed!
             Mozilla Firefox (3.6.13)
            ````````````````````````````````
            Process Check: 
            objlist.exe by Laurent

             Comodo Firewall cmdagent.exe
             Comodo Firewall cfp.exe
            ``````````End of Log````````````
            « Last Edit: December 27, 2010, 10:30:17 PM by nellenaz »

            nellenaz

              Topic Starter


              Rookie

              when I try to run combofix. it states that it cant find it even though I rename it correctly and put it on my desktop.

              nellenaz

                Topic Starter


                Rookie

                i got yahoo im downloaded and installed but now im getting a antivirus software alert from a antivurs program that Im sure I didnt download. and Avast the one i did download is not able to update the virus definitions.

                nellenaz

                  Topic Starter


                  Rookie

                  ok so now I cant run anything, this antivirus program is saying everything is infected and is trying to get me to turn it on and Im not doing it.

                  SuperDave

                  • Malware Removal Specialist


                  • Genius
                  • Thanked: 1020
                  • Certifications: List
                  • Experience: Expert
                  • OS: Windows 10
                  Please download the newest version of Adobe Acrobat Reader from Adobe.com

                  Before installing: it is important to remove older versions of Acrobat Reader since it does not do so automatically and old versions still leave you vulnerable.
                  Go to the Control Panel and enter Add or Remove Programs.
                  Search in the list for all previous installed versions of Adobe Acrobat Reader. Uninstall/Remove each of them.

                  Once old versions are gone, please install the newest version.
                  ****************************************************
                  Please download and run the below tool named Rkill (courtesy of BleepingComputer.com) which may help allow other programs to run.
                  Save Rkill to your desktop.

                  There are 4 different versions. If one of them won't run then download and try to run the other one.
                   
                  Vista and Win7 users need to right click Rkill and choose Run as Administrator
                   

                  You only need to get one of these to run, not all of them. You may get warnings from your antivirus about this tool, ignore them or shutdown your antivirus.

                  * Rkill.exe
                  * Rkill.com
                  * Rkill.scr

                  Once you've gotten one of them to run then try to immediately run the following.
                  *********************************************************************
                  Please download Malwarebytes Anti-Malware from here.
                  Double Click mbam-setup.exe to install the application.
                  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes Anti-Malware, then click Finish.
                  • If an update is found, it will download and install the latest version.
                  • Once the program has loaded, select "Perform Full Scan", then click Scan.
                  • The scan may take some time to finish,so please be patient.
                  • When the scan is complete, click OK, then Show Results to view the results.
                  • Make sure that everything is checked, and click Remove Selected.
                  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart. (See Extra Note)
                  • Please save the log to a location you will remember.
                  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
                  • Copy and paste the entire report in your next reply.
                  Extra Note:

                  If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process. If asked to restart the computer, please do so immediately.
                  **************************************************
                  Quote
                  when I try to run combofix. it states that it cant find it even though I rename it correctly and put it on my desktop
                  Please try to run it by double-clicking the icon on the desktop.

                  Windows 8 and Windows 10 dual boot with two SSD's

                  nellenaz

                    Topic Starter


                    Rookie

                    I cant get anything to load, says everything is inefected, do you want to  run your antivirus noww

                    SuperDave

                    • Malware Removal Specialist


                    • Genius
                    • Thanked: 1020
                    • Certifications: List
                    • Experience: Expert
                    • OS: Windows 10
                    You will need to download Rkill and other programs on another computer and transfer them to the infected using this method.
                    If you can't access the internet with your infected computer you will have to download and transfer any programs to the computer you're using now and transfer them to the infected computer with a CD-RW or a USB storage device. I prefer a CD because a storage device can get infected. If you use a storage device hold the shift key down while inserting the USB storage device for about 10 secs. You will also have to transfer the logs you receive back to the good computer using the same method until we can get the computer back on-line.
                    Windows 8 and Windows 10 dual boot with two SSD's

                    nellenaz

                      Topic Starter


                      Rookie

                      ran the rkill.exe and then malwarebytes. It took off the Antivirus alerts and here is the combofix log


                      ComboFix 10-12-29.04 - Joanne 12/30/2010  10:14:31.1.1 - x86
                      Microsoft Windows XP Home Edition  5.1.2600.3.1252.1.1033.18.1982.1637 [GMT -6:00]
                      Running from: c:\documents and settings\Joanne\My Documents\Downloads\ComboFix.exe
                      AV: avast! Antivirus *Disabled/Outdated* {7591DB91-41F0-48A3-B128-1A293FD8233D}
                      .
                      ADS - WINDOWS: deleted 48 bytes in 1 streams.

                      (((((((((((((((((((((((((((((((((((((((   Other Deletions   )))))))))))))))))))))))))))))))))))))))))))))))))
                      .

                      C:\Microsoft
                      c:\windows\system32\Oeminfo.ini

                      Infected copy of c:\windows\system32\drivers\pciide.sys was found and disinfected
                      Restored copy from - Kitty had a snack :p
                      .
                      (((((((((((((((((((((((((   Files Created from 2010-11-28 to 2010-12-30  )))))))))))))))))))))))))))))))
                      .

                      2010-12-29 16:30 . 2010-12-29 16:31   --------   d-----w-   c:\documents and settings\Administrator
                      2010-12-28 18:55 . 2010-12-29 05:17   --------   d-----w-   c:\documents and settings\Joanne\Application Data\OnlineArmor
                      2010-12-28 18:55 . 2010-12-28 18:55   --------   d-----w-   c:\documents and settings\All Users\Application Data\OnlineArmor
                      2010-12-28 18:55 . 2010-07-07 18:25   22600   ----a-w-   c:\windows\system32\drivers\OAmon.sys
                      2010-12-28 18:55 . 2010-07-07 18:25   28232   ----a-w-   c:\windows\system32\drivers\OAnet.sys
                      2010-12-28 18:55 . 2010-07-07 18:25   236104   ----a-w-   c:\windows\system32\drivers\OADriver.sys
                      2010-12-28 18:55 . 2010-12-28 18:55   --------   d-----w-   c:\program files\Emsisoft
                      2010-12-28 18:12 . 2010-09-07 15:47   17744   ----a-w-   c:\windows\system32\drivers\aswFsBlk.sys
                      2010-12-28 18:12 . 2010-09-07 15:52   165584   ----a-w-   c:\windows\system32\drivers\aswSP.sys
                      2010-12-28 18:12 . 2010-09-07 15:47   23376   ----a-w-   c:\windows\system32\drivers\aswRdr.sys
                      2010-12-28 18:11 . 2010-09-07 15:52   46672   ----a-w-   c:\windows\system32\drivers\aswTdi.sys
                      2010-12-28 18:11 . 2010-09-07 15:47   100176   ----a-w-   c:\windows\system32\drivers\aswmon2.sys
                      2010-12-28 18:11 . 2010-09-07 15:47   94544   ----a-w-   c:\windows\system32\drivers\aswmon.sys
                      2010-12-28 18:11 . 2010-09-07 15:46   28880   ----a-w-   c:\windows\system32\drivers\aavmker4.sys
                      2010-12-28 18:11 . 2010-09-07 16:12   38848   ----a-w-   c:\windows\avastSS.scr
                      2010-12-28 18:11 . 2010-09-07 16:11   167592   ----a-w-   c:\windows\system32\aswBoot.exe
                      2010-12-28 18:11 . 2010-12-28 18:11   --------   d-----w-   c:\program files\Alwil Software
                      2010-12-28 18:11 . 2010-12-28 18:11   --------   d-----w-   c:\documents and settings\All Users\Application Data\Alwil Software
                      2010-12-27 18:15 . 2010-12-27 18:15   --------   d-----w-   c:\windows\system32\LogFiles
                      2010-12-27 17:13 . 2010-12-27 17:13   388096   ----a-r-   c:\documents and settings\Joanne\Application Data\Microsoft\Installer\{45A66726-69BC-466B-A7A4-12FCBA4883D7}\HiJackThis.exe
                      2010-12-26 23:09 . 2010-12-26 23:09   3328   ----a-w-   c:\windows\system32\drivers\njsbyxao.sys
                      2010-12-26 22:44 . 2010-12-26 22:44   --------   d-----w-   c:\documents and settings\Joanne\Application Data\SUPERAntiSpyware.com
                      2010-12-26 22:44 . 2010-12-26 22:44   --------   d-----w-   c:\documents and settings\All Users\Application Data\SUPERAntiSpyware.com
                      2010-12-26 22:43 . 2010-12-26 22:44   --------   d-----w-   c:\program files\SUPERAntiSpyware
                      2010-12-26 22:35 . 2010-12-28 18:25   --------   d-----w-   c:\documents and settings\All Users\Application Data\Comodo
                      2010-12-26 20:52 . 2010-12-26 23:09   --------   d-----w-   c:\windows\system32\MpEngineStore
                      2010-12-26 18:42 . 2010-12-26 19:10   --------   d-----w-   c:\documents and settings\All Users\Application Data\Blizzard Entertainment

                      .
                      ((((((((((((((((((((((((((((((((((((((((   Find3M Report   ))))))))))))))))))))))))))))))))))))))))))))))))))))
                      .
                      2010-12-21 00:09 . 2009-12-29 03:57   38224   ----a-w-   c:\windows\system32\drivers\mbamswissarmy.sys
                      2010-12-21 00:08 . 2009-12-29 03:57   20952   ----a-w-   c:\windows\system32\drivers\mbam.sys
                      .

                      (((((((((((((((((((((((((((((((((((((   Reg Loading Points   ))))))))))))))))))))))))))))))))))))))))))))))))))
                      .
                      .
                      *Note* empty entries & legit default entries are not shown
                      REGEDIT4

                      [HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                      "DellSupportCenter"="c:\program files\Dell Support Center\bin\sprtcmd.exe" [2009-05-21 206064]
                      "CreativeTaskScheduler"="c:\program files\Creative\Shared Files\CTSched.exe" [2006-11-17 53341]
                      "swg"="c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe" [2008-04-25 68856]
                      "Messenger (Yahoo!)"="c:\progra~1\Yahoo!\Messenger\YahooMessenger.exe" [2010-06-01 5252408]

                      [HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run]
                      "NvCplDaemon"="c:\windows\system32\NvCpl.dll" [2008-04-07 8466432]
                      "NvMediaCenter"="c:\windows\system32\NvMcTray.dll" [2008-04-07 81920]
                      "RTHDCPL"="RTHDCPL.EXE" [2008-04-07 16859648]
                      "PDVDDXSrv"="c:\program files\CyberLink\PowerDVD DX\PDVDDXSrv.exe" [2007-09-17 124200]
                      "dscactivate"="c:\program files\Dell Support Center\gs_agent\custom\dsca.exe" [2008-03-11 16384]
                      "DellSupportCenter"="c:\program files\Dell Support Center\bin\sprtcmd.exe" [2009-05-21 206064]
                      "Adobe Reader Speed Launcher"="c:\program files\Adobe\Reader 8.0\Reader\Reader_sl.exe" [2008-10-15 39792]
                      "QuickTime Task"="c:\program files\QuickTime\qttask.exe" [2008-04-25 98304]
                      "Google Quick Search Box"="c:\program files\Google\Quick Search Box\GoogleQuickSearchBox.exe" [2010-10-29 126976]
                      "avast5"="c:\program files\Alwil Software\Avast5\avastUI.exe" [2010-09-07 2838912]
                      "@OnlineArmor GUI"="c:\program files\Emsisoft\Online Armor\oaui.exe" [2010-07-07 6854984]

                      [hkey_local_machine\software\microsoft\windows\currentversion\explorer\ShellExecuteHooks]
                      "{5AE067D3-9AFB-48E0-853A-EBB7F4A000DA}"= "c:\program files\SUPERAntiSpyware\SASSEH.DLL" [2008-05-13 77824]

                      [HKEY_LOCAL_MACHINE\software\microsoft\windows nt\currentversion\winlogon\notify\!SASWinLogon]
                      2009-09-03 22:21   548352   ----a-w-   c:\program files\SUPERAntiSpyware\SASWINLO.DLL

                      [HKLM\~\startupfolder\C:^Documents and Settings^Joanne^Start Menu^Programs^Startup^ImpulseNow.lnk]
                      path=c:\documents and settings\Joanne\Start Menu\Programs\Startup\ImpulseNow.lnk
                      backup=c:\windows\pss\ImpulseNow.lnkStartup

                      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Alcmtr]
                      2008-04-07 01:25   69632   ----a-w-   c:\windows\ALCMTR.EXE

                      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\ECenter]
                      2008-02-28 17:18   17920   ----a-w-   c:\dell\E-Center\EULALauncher.exe

                      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Google Quick Search Box]
                      2010-10-29 02:46   126976   ----a-w-   c:\program files\Google\Quick Search Box\GoogleQuickSearchBox.exe

                      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\HostManager]
                      2004-11-03 21:03   125528   ----a-w-   c:\program files\Common Files\AOL\1209085891\EE\AOLHostManager.exe

                      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Messenger (Yahoo!)]
                      2010-06-01 16:17   5252408   ----a-w-   c:\progra~1\Yahoo!\Messenger\YahooMessenger.exe

                      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\nwiz]
                      2008-04-07 01:42   1626112   ----a-w-   c:\windows\system32\nwiz.exe

                      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\Pando]
                      2010-08-24 23:07   4954008   ----a-w-   c:\program files\Pando Networks\Pando\Pando.exe

                      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\QuickTime Task]
                      2008-04-25 01:12   98304   ----a-w-   c:\program files\QuickTime\qttask.exe

                      [HKEY_LOCAL_MACHINE\software\microsoft\shared tools\msconfig\startupreg\swg]
                      2008-04-25 01:06   68856   ----a-w-   c:\program files\Google\GoogleToolbarNotifier\GoogleToolbarNotifier.exe

                      [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring]
                      "DisableMonitoring"=dword:00000001

                      [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecAntiVirus]
                      "DisableMonitoring"=dword:00000001

                      [HKEY_LOCAL_MACHINE\software\microsoft\security center\Monitoring\SymantecFirewall]
                      "DisableMonitoring"=dword:00000001

                      [HKLM\~\services\sharedaccess\parameters\firewallpolicy\standardprofile\AuthorizedApplications\List]
                      "%windir%\\system32\\sessmgr.exe"=
                      "c:\\Program Files\\Yahoo!\\Messenger\\YahooMessenger.exe"=
                      "c:\\Program Files\\Alwil Software\\Avast5\\AvastUI.exe"=

                      R1 aswSP;aswSP;c:\windows\system32\drivers\aswSP.sys [12/28/2010 12:12 PM 165584]
                      R1 SASDIFSV;SASDIFSV;c:\program files\SUPERAntiSpyware\sasdifsv.sys [2/17/2010 12:25 PM 12872]
                      R1 SASKUTIL;SASKUTIL;c:\program files\SUPERAntiSpyware\SASKUTIL.SYS [5/10/2010 12:41 PM 67656]
                      R2 aswFsBlk;aswFsBlk;c:\windows\system32\drivers\aswFsBlk.sys [12/28/2010 12:12 PM 17744]
                      S2 gupdate1ca9f9c4ea1d200;Google Update Service (gupdate1ca9f9c4ea1d200);c:\program files\Google\Update\GoogleUpdate.exe [1/27/2010 4:01 PM 133104]
                      S3 gsplittm;gsplittm;\??\c:\docume~1\Joanne\LOCALS~1\Temp\gsplittm.sys --> c:\docume~1\Joanne\LOCALS~1\Temp\gsplittm.sys [?]
                      .
                      Contents of the 'Scheduled Tasks' folder

                      2010-12-27 c:\windows\Tasks\AppleSoftwareUpdate.job
                      - c:\program files\Apple Software Update\SoftwareUpdate.exe [2008-07-30 18:34]

                      2010-12-30 c:\windows\Tasks\GoogleUpdateTaskMachineCore.job
                      - c:\program files\Google\Update\GoogleUpdate.exe [2010-01-27 22:01]

                      2010-12-30 c:\windows\Tasks\GoogleUpdateTaskMachineUA.job
                      - c:\program files\Google\Update\GoogleUpdate.exe [2010-01-27 22:01]

                      2010-12-30 c:\windows\Tasks\User_Feed_Synchronization-{CB01547A-0857-4C04-BCA2-DE240514626E}.job
                      - c:\windows\system32\msfeedssync.exe [2009-03-08 10:31]
                      .
                      .
                      ------- Supplementary Scan -------
                      .
                      uStart Page = www.google.com/ig/dell?hl=en&client=dell-usuk&channel=us&ibd=2080425
                      uInternet Settings,ProxyOverride = <local>
                      uInternet Settings,ProxyServer = http=127.0.0.1:8074
                      IE: Google Sidewiki... - c:\program files\Google\Google Toolbar\Component\GoogleToolbarDynamic_mui_en_E11712C84EA7E12B.dll/cmsidewiki.html
                      FF - ProfilePath - c:\documents and settings\Joanne\Application Data\Mozilla\Firefox\Profiles\0dvjdfip.default\
                      FF - prefs.js: browser.startup.homepage - www.facebook.com
                      FF - prefs.js: network.proxy.http - 127.0.0.1
                      FF - prefs.js: network.proxy.http_port - 50370
                      FF - prefs.js: network.proxy.type - 4
                      FF - Ext: Default: {972ce4c6-7e08-4474-a285-3208198ce6fd} - c:\program files\Mozilla Firefox\extensions\{972ce4c6-7e08-4474-a285-3208198ce6fd}
                      FF - Ext: Yahoo! Toolbar: {635abd67-4fe9-1b23-4f01-e679fa7484c1} - %profile%\extensions\{635abd67-4fe9-1b23-4f01-e679fa7484c1}
                      FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - %profile%\extensions\{20a82645-c095-46ed-80e3-08825760534b}
                      FF - Ext: Zynga Toolbar: {7b13ec3e-999a-4b70-b9cb-2617b8323822} - %profile%\extensions\{7b13ec3e-999a-4b70-b9cb-2617b8323822}
                      FF - Ext: Microsoft .NET Framework Assistant: {20a82645-c095-46ed-80e3-08825760534b} - c:\windows\Microsoft.NET\Framework\v3.5\Windows Presentation Foundation\DotNetAssistantExtension
                      FF - Ext: Move Media Player: [email protected] - c:\documents and settings\Joanne\Application Data\Move Networks
                      FF - user.js: yahoo.ytff.general.dontshowhpoffer - true
                      .
                      - - - - ORPHANS REMOVED - - - -

                      WebBrowser-{D4027C7F-154A-4066-A1AD-4243D8127440} - (no file)
                      Notify-avgrsstarter - avgrsstx.dll
                      MSConfigStartUp-AOL Spyware Protection - c:\progra~1\COMMON~1\AOL\AOLSPY~1\AOLSP Scheduler.exe
                      MSConfigStartUp-AOLDialer - c:\program files\Common Files\AOL\ACS\AOLDial.exe
                      MSConfigStartUp-Google Desktop Search - c:\program files\Google\Google Desktop Search\GoogleDesktop.exe
                      MSConfigStartUp-osCheck - c:\program files\Norton Internet Security\osCheck.exe
                      MSConfigStartUp-Skype - c:\program files\Skype\Phone\Skype.exe
                      AddRemove-HijackThis - c:\program files\Trend Micro\HijackThis\HijackThis.exe



                      **************************************************************************

                      catchme 0.3.1398 W2K/XP/Vista - rootkit/stealth malware detector by Gmer, http://www.gmer.net
                      Rootkit scan 2010-12-30 10:23
                      Windows 5.1.2600 Service Pack 3 NTFS

                      scanning hidden processes ... 

                      scanning hidden autostart entries ...

                      scanning hidden files ... 

                      scan completed successfully
                      hidden files: 0

                      **************************************************************************
                      .
                      --------------------- LOCKED REGISTRY KEYS ---------------------

                      [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}]
                      @Denied: (A 2) (Everyone)
                      @="FlashBroker"
                      "LocalizedString"="@c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10l_ActiveX.exe,-101"

                      [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\Elevation]
                      "Enabled"=dword:00000001

                      [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\LocalServer32]
                      @="c:\\WINDOWS\\system32\\Macromed\\Flash\\FlashUtil10l_ActiveX.exe"

                      [HKEY_LOCAL_MACHINE\software\Classes\CLSID\{A483C63A-CDBC-426E-BF93-872502E8144E}\TypeLib]
                      @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"

                      [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}]
                      @Denied: (A 2) (Everyone)
                      @="IFlashBroker4"

                      [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\ProxyStubClsid32]
                      @="{00020424-0000-0000-C000-000000000046}"

                      [HKEY_LOCAL_MACHINE\software\Classes\Interface\{E3F2C3CB-5EB8-4A04-B22C-7E3B4B6AF30F}\TypeLib]
                      @="{FAB3E735-69C7-453B-A446-B6823C6DF1C9}"
                      "Version"="1.0"
                      .
                      --------------------- DLLs Loaded Under Running Processes ---------------------

                      - - - - - - - > 'winlogon.exe'(648)
                      c:\program files\SUPERAntiSpyware\SASWINLO.DLL
                      c:\windows\system32\WININET.dll
                      .
                      Completion time: 2010-12-30  10:25:16
                      ComboFix-quarantined-files.txt  2010-12-30 16:24

                      Pre-Run: 106,349,502,464 bytes free
                      Post-Run: 106,732,339,200 bytes free

                      WindowsXP-KB310994-SP2-Home-BootDisk-ENU.exe
                      [boot loader]
                      timeout=2
                      default=multi(0)disk(0)rdisk(0)partition(2)\WINDOWS
                      [operating systems]
                      c:\cmdcons\BOOTSECT.DAT="Microsoft Windows Recovery Console" /cmdcons
                      UnsupportedDebug="do not select this" /debug
                      multi(0)disk(0)rdisk(0)partition(2)\WINDOWS="Microsoft Windows XP Home Edition" /noexecute=optin /fastdetect

                      - - End Of File - - 66F60545E84A7D1F9E4C2EE54801D553

                      SuperDave

                      • Malware Removal Specialist


                      • Genius
                      • Thanked: 1020
                      • Certifications: List
                      • Experience: Expert
                      • OS: Windows 10
                      Download the GMER Rootkit Scanner. Unzip it to your Desktop.

                      Before scanning, make sure all other running programs are closed and no other actions like a scheduled antivirus scan will occur while the scan is being performed. Do not use your computer for anything else during the scan.

                      Double-click gmer.exe. The program will begin to run.

                      **Caution**
                      These types of scans can produce false positives. Do NOT take any action on any
                      "<--- ROOKIT" entries unless advised!

                      If possible rootkit activity is found, you will be asked if you would like to perform a full scan.
                      • Click NO
                      • In the right panel, you will see a bunch of boxes that have been checked ... leave everything checked and ensure the Show all box is un-checked.
                      • Now click the Scan button.
                      • Once the scan is complete, you may receive another notice about rootkit activity.
                      • Click OK.
                      • GMER will produce a log. Click on the [Save..] button, and in the File name area, type in "GMER.txt"
                      • Save it where you can easily find it, such as your desktop.
                      Windows 8 and Windows 10 dual boot with two SSD's