Hello,
Thank you for being so prompt.
Here are the log reports.
And also, I run ATF and Super in a normal mode.
Malwarebytes' Anti-Malware 1.46
www.malwarebytes.org
Database version: 4164
Windows 6.0.6002 Service Pack 2
Internet Explorer 8.0.6001.18904
6/2/2010 2:57:06 PM
mbam-log-2010-06-02 (14-57-06).txt
Scan type: Quick scan
Objects scanned: 128557
Time elapsed: 8 minute(s), 57 second(s)
Memory Processes Infected: 2
Memory Modules Infected: 8
Registry Keys Infected: 152
Registry Values Infected: 10
Registry Data Items Infected: 0
Folders Infected: 18
Files Infected: 74
Memory Processes Infected:
C:\Program Files\MyWebSearch\bar\3.bin\MWSOEMON.EXE (Adware.MyWebSearch) -> Unloaded process successfully.
C:\Program Files\MyWebSearch\bar\3.bin\M3SRCHMN.EXE (Adware.MyWebSearch) -> Unloaded process successfully.
Memory Modules Infected:
C:\Program Files\MyWebSearch\bar\3.bin\F3HKSTUB.DLL (Adware.MyWebSearch) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\3.bin\MWSOESTB.DLL (Adware.MyWebSearch) -> Delete on reboot.
C:\Program Files\Internet Explorer\msimg32.dll (Adware.MyWebSearch) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\3.bin\MWSBAR.DLL (Adware.MyWebSearch) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\3.bin\M3AUXSTB.DLL (Adware.MyWebSearch) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\3.bin\MWSSRCAS.DLL (Adware.MyWebSearch) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\3.bin\M3DLGHK.DLL (Adware.MyWebSearch) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\3.bin\F3HTMLMU.DLL (Adware.MyWebSearch) -> Delete on reboot.
Registry Keys Infected:
HKEY_CLASSES_ROOT\TypeLib\{07b18ea0-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{07b18eaa-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{07b18eac-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{f87d7fb5-9dc5-4c8c-b998-d8dfe02e2978} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{07b18ea1-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{07b18ea1-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07b18ea1-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{07b18ea1-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{07b18ea9-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{07b18ea9-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07b18ea9-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{07b18eab-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{53ced2d0-5e9a-4761-9005-648404e6f7e5} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{00a6faf1-072e-44cf-8957-5838f569a31d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Settings\{00a6faf1-072e-44cf-8957-5838f569a31d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00a6faf1-072e-44cf-8957-5838f569a31d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{00a6faf1-072e-44cf-8957-5838f569a31d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{00a6faf6-072e-44cf-8957-5838f569a31d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{00a6faf6-072e-44cf-8957-5838f569a31d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.datacontrol (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{c8cecde3-1ae1-4c4a-ad82-6d5b00212144} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{17de5e5e-bfe3-4e83-8e1f-8755795359ec} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{1f52a5fa-a705-4415-b975-88503b291728} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{a626cdbd-3d13-4f78-b819-440a28d7e8fc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{25560540-9571-4d7b-9389-0f166788785a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{25560540-9571-4d7b-9389-0f166788785a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{25560540-9571-4d7b-9389-0f166788785a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.datacontrol.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.historykillerscheduler (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{8ca01f0e-987c-49c3-b852-2f1ac4a7094c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{1093995a-ba37-41d2-836e-091067c4ad17} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{120927bf-1700-43bc-810f-fab92549b390} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{247a115f-06c2-4fb3-967d-2d62d3cf4f0a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{3e53e2cb-86db-4a4a-8bd9-ffeb7a64df82} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{90449521-d834-4703-bb4e-d3aa44042ff8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{991aac62-b100-47ce-8b75-253965244f69} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{bbabdc90-f3d5-4801-863a-ee6ae529862d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{d6ff3684-ad3b-48eb-bbb4-b9e6c5a355c1} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{eb9e5c1c-b1f9-4c2b-be8a-27d6446fdaf8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{0f8ecf4f-3646-4c3a-8881-8e138ffcaf70} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{b813095c-81c0-4e40-aa14-67520372b987} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{c9d7be3e-141a-4c85-8cd6-32461f3df2c7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{cff4ce82-3aa2-451f-9b77-7165605fb835} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.historykillerscheduler.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.historyswattercontrolbar (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.historyswattercontrolbar.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.htmlmenu (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{e47caee0-deea-464a-9326-3f2801535a4d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{3e1656ed-f60e-4597-b6aa-b6a58e171495} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{741de825-a6f0-4497-9aa6-8023cf9b0fff} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3dc201fb-e9c9-499c-a11f-23c360d7c3f8} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{98d9753d-d73b-42d5-8c85-4469cda897ab} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{98d9753d-d73b-42d5-8c85-4469cda897ab} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.htmlmenu.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.htmlmenu.2 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.iecookiesmanager (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.iecookiesmanager.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.killerobjmanager (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.killerobjmanager.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.popswatterbarbutton (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{8e6f1830-9607-4440-8530-13be7c4b1d14} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{63d0ed2b-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{63d0ed2d-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{63d0ed2c-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{63d0ed2c-b45b-4458-8b3b-60c69bbbd83c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{8e6f1832-9607-4440-8530-13be7c4b1d14} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{a9571378-68a1-443d-b082-284f960c6d17} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.popswatterbarbutton.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.popswattersettingscontrol (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\funwebproducts.popswattersettingscontrol.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.chatsessionplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{e79dfbc0-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{72ee7f04-15bd-4845-a005-d6711144d86a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e79dfbc9-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e79dfbcb-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{e79dfbca-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{e79dfbca-5697-4fbd-94e5-5b2a9c7c1612} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.chatsessionplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.htmlpanel (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{3e720450-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{3e720451-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{3e720453-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{3e720452-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{3e720452-b472-4954-b7aa-33069eb53906} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.htmlpanel.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.outlookaddin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{adb01e81-3c79-4272-a0f1-7b2be7a782dc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.outlookaddin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.pseudotransparentplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{7473d290-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{7473d291-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{7473d293-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{7473d295-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{7473d297-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{7473d292-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{7473d294-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{7473d294-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{7473d296-b7bb-4f24-ae82-7e2ce94bb6a9} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearch.pseudotransparentplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearchtoolbar.settingsplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearchtoolbar.settingsplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearchtoolbar.toolbarplugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\mywebsearchtoolbar.toolbarplugin.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\screensavercontrol.screensaverinstaller (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{29d67d3c-509a-4544-903f-c8c1b8236554} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{2e3537fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{2e9937fc-cf2f-4f56-af54-5a6a3dd375cc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{938aa51a-996c-4884-98ce-80dd16a5c9da} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\PreApproved\{9ff05104-b030-46fc-94b8-81276e4e27df} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\screensavercontrol.screensaverinstaller.1 (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{6e74766c-4d93-4cc0-96d1-47b8e07ff9ca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{cf54be1c-9359-4395-8533-1657cf209cfe} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{de38c398-b328-4f4c-a3ad-1b5e4ed93477} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e342af55-b78a-4cd0-a2bb-da7f52d9d25e} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Interface\{e342af55-b78a-4cd0-a2bb-da7f52d9d25f} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{147a976f-eee1-4377-8ea7-4716e4cdd239} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{1e0de227-5ce4-4ea3-ab0c-8b03e1aa76bc} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{84da4fdf-a1cf-4195-8688-3e961f505983} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{a4730ebe-43a6-443e-9776-36915d323ad3} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\CLSID\{d9fffb27-d62a-4d64-8cec-1ff006528805} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\TypeLib\{0d26bc71-a633-4e71-ad31-eadc3a1b6a3a} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{d518921a-4a03-425e-9873-b9a71756821e} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CLASSES_ROOT\Typelib\{f42228fb-e84e-479e-b922-fbbd096e792c} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256a51-b582-467e-b8d4-7786eda79ae0} (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Ext\Stats\{7545d8c8-f53c-4e2f-8fa0-d248ef4a6e61} (Rogue.Installer) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\{1d4db7d2-6ec9-47a3-bd87-1e41684e07bb} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{59c7fc09-1c83-4648-b3e6-003d2bbc7481} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{68af847f-6e91-45dd-9b68-d6a12c30e5d7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{9170b96c-28d4-4626-8358-27e6caeef907} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{d1a71fa0-ff48-48dd-9b6d-7a13a3e42127} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{ddb1968e-ead6-40fd-8dae-ff14757f60c7} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\ElevationPolicy\{f138d901-86f0-4383-99b6-9cdd406036da} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\SearchScopes\{56256a51-b582-467e-b8d4-7786eda79ae0} (Trojan.Vundo) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\FocusInteractive (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Fun Web Products (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Low Rights\RunDll32Policy\f3ScrCtr.dll (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Multimedia\WMPlayer\Schemes\f3pss (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Outlook\Addins\MyWebSearch.OutlookAddin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Office\Word\Addins\MyWebSearch.OutlookAddin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\MyWebSearch bar Uninstall (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\MozillaPlugins\@mywebsearch.com/Plugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\MyWebSearch (Adware.MyWebSearch) -> Quarantined and deleted successfully.
Registry Values Infected:
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mywebsearch email plugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\mywebsearch email plugin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run\my web search bar search scope monitor (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Toolbar\WebBrowser\{07b18ea9-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Toolbar\{07b18ea9-a523-4961-b6bb-170de4475cca} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\URLSearchHooks\{00a6faf6-072e-44cf-8957-5838f569a31d} (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\SharedDLLs\C:\Windows\System32\memman.vxd (Rogue.sysCleaner) -> Quarantined and deleted successfully.
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\MenuExt\&Search\(default) (Adware.Hotbar) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows Media\WMSDK\Sources\f3popularscreensavers (Adware.MyWebSearch) -> Quarantined and deleted successfully.
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform\funwebproducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
Registry Data Items Infected:
(No malicious items detected)
Folders Infected:
C:\Program Files\FunWebProducts (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\FunWebProducts\ScreenSaver (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\FunWebProducts\ScreenSaver\Images (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch (Adware.MyWebSearch) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar (Adware.MyWebSearch) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\2.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin (Adware.MyWebSearch) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\Avatar (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\firefox (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\firefox\chrome (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Game (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\History (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\icons (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Message (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Settings (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\SrchAstt (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\SrchAstt\1.bin (Adware.MyWebSearch) -> Quarantined and deleted successfully.
Files Infected:
C:\Program Files\MyWebSearch\bar\3.bin\F3HKSTUB.DLL (Adware.MyWebSearch) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\3.bin\MWSOESTB.DLL (Adware.MyWebSearch) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\3.bin\MWSOEMON.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\M3SRCHMN.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\Internet Explorer\msimg32.dll (Adware.MyWebSearch) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\3.bin\MWSBAR.DLL (Adware.MyWebSearch) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\3.bin\M3AUXSTB.DLL (Adware.MyWebSearch) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\3.bin\MWSSRCAS.DLL (Adware.MyWebSearch) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\3.bin\M3DLGHK.DLL (Adware.MyWebSearch) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\3.bin\F3DTACTL.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3HISTSW.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3HTMLMU.DLL (Adware.MyWebSearch) -> Delete on reboot.
C:\Program Files\MyWebSearch\bar\3.bin\F3POPSWT.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\M3MSG.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\M3HTML.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\M3OUTLCN.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\M3SKIN.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3SCRCTR.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3CJPEG.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3HTTPCT.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3REPROX.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\MWSOEPLG.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Windows\System32\f3PSSavr.scr (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Windows\System32\memman.vxd (Rogue.sysCleaner) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\2.bin\M3FFXTBR.JAR (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\2.bin\M3FFXTBR.MANIFEST (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\2.bin\M3NTSTBR.JAR (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\2.bin\M3NTSTBR.MANIFEST (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\2.bin\NPMYWEBS.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3BKGERR.JPG (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3PSSAVR.SCR (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3REGHK.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3RESTUB.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3SCHMON.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3SPACER.WMV (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3WALLPP.DAT (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\F3WPHOOK.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\FWPBUDDY.PNG (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\M3HIGHIN.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\M3IDLE.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\M3IMPIPE.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\M3MEDINT.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\M3PLUGIN.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\M3SKPLAY.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\M3SLSRCH.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\3.bin\MWSSVC.EXE (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Avatar\COMMON.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\firefox\CHROME.MANIFEST (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\firefox\INSTALL.RDF (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\firefox\NPMYWEBS.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\firefox\chrome\M3FFXTBR.JAR (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Game\CHECKERS.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Game\CHESS.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Game\REVERSI.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\icons\CM.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\icons\MFC.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\icons\PSS.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\icons\SMILEY.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\icons\WB.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\icons\ZWINKY.ICO (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Message\COMMON.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\COMMON.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\DOG.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\FISH.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\KUNGFU.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\LIFEGARD.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\MAID.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\MAILBOX.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\OPERA.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\ROBOT.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\SEDUCT.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Notifier\SURFER.F3S (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\bar\Settings\s_pid.dat (Adware.MyWebSearch) -> Quarantined and deleted successfully.
C:\Program Files\MyWebSearch\SrchAstt\1.bin\MWSSRCAS.DLL (Adware.MyWebSearch) -> Quarantined and deleted successfully.
SUPERAntiSpyware Scan Log
http://www.superantispyware.comGenerated 06/03/2010 at 04:24 AM
Application Version : 4.38.1004
Core Rules Database Version : 5022
Trace Rules Database Version: 2834
Scan type : Complete Scan
Total Scan Time : 04:12:46
Memory items scanned : 644
Memory threats detected : 0
Registry items scanned : 7952
Registry threats detected : 1
File items scanned : 213647
File threats detected : 238
Adware.MyWebSearch/FunWebProducts
HKU\S-1-5-21-3559026910-2304388229-863584540-1000\SOFTWARE\FunWebProducts
Adware.Flash Tracking Cookie
C:\Users\Ralu\AppData\Roaming\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\BRVTZSLU\IA.MEDIA-IMDB.COM
C:\Users\Ralu\AppData\Roaming\MACROMEDIA\FLASH PLAYER\#SHAREDOBJECTS\BRVTZSLU\STATIC.MEDIADIRECT.RO
Adware.Unknown Origin
C:\PROGRAM FILES\HEWLETT-PACKARD\HP ADVISOR\COMPSHOP\TEMPLATES\AD.HTML
Adware.Tracking Cookie
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@2o7[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ad.wsod[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ad.yieldmanager[11].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ad.yieldmanager[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ad.yieldmanager[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ad.yieldmanager[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ad.yieldmanager[4].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ad.yieldmanager[5].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ad.yieldmanager[6].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ad.yieldmanager[7].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ad.yieldmanager[8].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ad.yieldmanager[9].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ad2.ip[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ad2.ip[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ad2.ip[4].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ad2.ip[5].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ad2.ip[6].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@adbrite[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@adbrite[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@adecn[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@adinterax[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@adinterax[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads.acasa[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads.bridgetrack[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads.businessclick[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads.crossroads[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads.gamesbannernet[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads.iconcert[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads.jweekly[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads.mail[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads.neogen[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads.pgatour[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads.pointroll[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads.sapteseri[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads.softure[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads.softure[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads.tradeads[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads.tradeads[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads.us.e-planning[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads.weblogic[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads.youmago[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads1.cancan[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads2.cancan[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ads2.webmaker[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@adserver.adtechus[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@adserver.aviationjobsites[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@adtech[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@advertising[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@advertising[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@advertising[4].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@adverts.dublinevents[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@adx.chip[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@apmebf[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@apmebf[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@at.atwola[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@atdmt[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@atdmt[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@avgtechnologies.112.2o7[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@bet.burstnet[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@bluestreak[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@bluestreak[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@bluestreak[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@bs.serving-sys[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@bs.serving-sys[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@burstnet[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@burstnet[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@casalemedia[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@casalemedia[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@cdn1.trafficmp[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@chitika[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@clickbank[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@click[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@click[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@collective-media[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@collective-media[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@content.yieldmanager[10].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@content.yieldmanager[11].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@content.yieldmanager[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@content.yieldmanager[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@content.yieldmanager[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@content.yieldmanager[4].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@content.yieldmanager[5].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@content.yieldmanager[6].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@content.yieldmanager[7].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@content.yieldmanager[8].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@content.yieldmanager[9].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@count.brat-online[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@count.brat-online[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@count.brat-online[4].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@countomat[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@countrycode[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@doubleclick[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@doubleclick[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ehg-findlaw.hitbox[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ehg-francetel.hitbox[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ehg-nokiafin.hitbox[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ev.ads.pointroll[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@fastclick[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@fastclick[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@findjob[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@findlaw[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@foreignministryse.112.2o7[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@gemoneysromb.112.2o7[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@healthgrades.112.2o7[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@hitbox[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@hitbox[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@homestore.122.2o7[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@immigration.findlaw[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@imrworldwide[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@in.getclicky[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@insightexpressai[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@insightexpressai[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@insightexpressai[4].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@interclick[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@interclick[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@internetcountercheck[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@invitemedia[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@invitemedia[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@jsfp.coremetrics[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@kontera[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@livenation.122.2o7[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@markmedia[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@media.causes[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@media.expedia[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@media6degrees[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@media6degrees[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@mediafax[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@mediaplex[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@mywebsearch[10].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@mywebsearch[11].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@mywebsearch[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@mywebsearch[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@mywebsearch[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@mywebsearch[4].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@mywebsearch[5].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@mywebsearch[6].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@mywebsearch[7].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@mywebsearch[8].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@mywebsearch[9].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@novonordiskas.112.2o7[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@paginademedia[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@perf.overture[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@pointroll[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@questionmarket[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@questionmarket[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@questionmarket[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@questionmarket[5].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@questionmarket[6].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@revsci[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@revsci[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@richmedia.yahoo[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@richmedia.yahoo[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@ru4[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@server.cpmstar[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@service.liveperson[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@service.liveperson[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@serving-sys[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@serving-sys[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@smartadserver[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@specificclick[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@specificclick[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@statcounter[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@statcounter[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@statcounter[4].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@static.freewebs.getclicky[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@stats.informatia[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@tacoda[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@tacoda[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@tracking.realtor[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@trafficmp[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@trafficmp[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@traveladvertising[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@tribalfusion[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@tribalfusion[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@tribuneinteractive.122.2o7[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@trvlnet.adbureau[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@usatoday1.112.2o7[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@www.burstnet[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@www.burstnet[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@www.clicks[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@www.click[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@www.click[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@www.etracker[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@www.findjob[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@www.findjob[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@www.findjob[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@www.googleadservices[10].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@www.googleadservices[11].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@www.googleadservices[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@www.googleadservices[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@www.googleadservices[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@www.googleadservices[4].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@www.googleadservices[5].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@www.googleadservices[6].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@www.googleadservices[8].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@www.mediafax[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@www.paginademedia[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@xiti[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@yieldmanager[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@zedo[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\Low\ralu@zedo[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@ad.yieldmanager[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@ad.yieldmanager[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@ad.yieldmanager[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@ad.yieldmanager[4].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@ad.yieldmanager[5].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@ad.yieldmanager[7].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@ad.yieldmanager[8].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@adinterax[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@adinterax[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@adinterax[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@adinterax[4].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@adinterax[5].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@adinterax[6].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@adinterax[7].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@adinterax[8].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@ads.pointroll[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@bs.serving-sys[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@content.yieldmanager[10].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@content.yieldmanager[11].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@content.yieldmanager[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@content.yieldmanager[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@content.yieldmanager[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@content.yieldmanager[4].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@content.yieldmanager[5].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@content.yieldmanager[6].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@content.yieldmanager[7].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@content.yieldmanager[8].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@content.yieldmanager[9].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@doubleclick[1].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@mywebsearch[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@mywebsearch[3].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@pointroll[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@richmedia.yahoo[2].txt
C:\Users\Ralu\AppData\Roaming\Microsoft\Windows\Cookies\ralu@serving-sys[2].txt