Computer Help and Spyware Removal Computer Help and Spyware Removal Computer Help and Spyware Removal Computer Help Forums Windows Startup Programs Database Spyware and Malware Removal Guides Computer Tutorials Uninstall Database File Database Computer Glossary Computer Resources
 

Welcome Guest ( Log In | Click here to Register a free account now! )



Register a free account to unlock additional features at BleepingComputer.com
Welcome to Bleeping Computer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.
Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.
MalwareByte's Anti-Malware Download

Important Announcement: In recognition of reaching a milestone of 1,000,000 posts on the site, we are hosting the BC 1 Million Post contest. More information about this contest can be found at the following link:

Bleeping Computer 1,000,000 Post Contest

- BleepingComputer Management

> Forum Guidelines

Read this topic before posting a log.


DO NOT post a ComboFix log unless requested to.


Only members of the HijackThis Team or Moderators are allowed to help people with logs. Anyone else should refrain from posting to another user's log.


When posting a log please put the type of infection you have in the topic title. IE: Winfixer, Virtumonde, WinTools, WebSearch, Home Search Assistant, etc.


Do not bump your topic. We try to resolve logs on a first come/first served basis. By bumping your log you will be pushed back in line due to the new date of your bump.

2 Pages V   1 2 >  
Closed TopicStart new topic
> Malware Or Spyware Pop Ups, Hijack this
sreez
post Jun 29 2008, 08:32 AM
Post #1


Member
**

Group: Members
Posts: 82
Joined: 29-June 08
From: London
Member No.: 219,334



Hi Friends,

I am new to this forum.First the issue I have the pop ups coming. //www.sendspace.com/file/qve56p. I have attached the screen shots of those pop ups. First I ran smitfraud fix in safe mode then after that I ran the super spyware. I am pasting the log file of it. Along with that I have pasted the hijack log as well.

So guys can you suggest how can stop these popups which come every 3 to 4mins.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 2:36:39 PM, on 6/29/2008
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16674)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe
C:\WINDOWS\system32\spoolsv.exe
C:\Program Files\Intel\Wireless\Bin\ZcfgSvc.exe
C:\WINDOWS\Explorer.EXE
C:\Documents and Settings\All Users\Application Data\bmjubqrs\duvavaru.exe
C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe
C:\WINDOWS\System32\DLA\DLACTRLW.EXE
C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe
C:\WINDOWS\system32\igfxpers.exe
C:\WINDOWS\system32\hkcmd.exe
C:\WINDOWS\system32\RavDr.exe
C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe
C:\WINDOWS\system32\regsvr32.exe
C:\WINDOWS\stsystra.exe
C:\WINDOWS\system32\igfxsrvc.exe
C:\WINDOWS\system32\ctfmon.exe
C:\WINDOWS\system32\nmlwtaje.exe
C:\PROGRA~1\Intel\Wireless\Bin\1XConfig.exe
c:\program files\mcafee.com\agent\mcdetect.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
c:\PROGRA~1\mcafee.com\agent\mcagent.exe
C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
C:\WINDOWS\system32\tcpsvcs.exe
C:\WINDOWS\system32\svchost.exe
C:\Program Files\VMware\VMware Server\vmware-authd.exe
C:\Program Files\Common Files\VMware\VMware Virtual Image Editing\vmount2.exe
C:\WINDOWS\system32\vmnat.exe
C:\WINDOWS\system32\vmnetdhcp.exe
C:\Program Files\VMware\VMware Server\vmserverdWin32.exe
c:\PROGRA~1\mcafee\msc\mcuimgr.exe
C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe
C:\Program Files\Mozilla Firefox\firefox.exe
C:\Program Files\iTunes\iTunes.exe
C:\Program Files\iPod\bin\iPodService.exe
C:\WINDOWS\system32\NOTEPAD.EXE
C:\WINDOWS\system32\wuauclt.exe
C:\Documents and Settings\sreevas\My Documents\software\HiJackThis.exe

R1 - HKCU\Software\Microsoft\Internet Explorer\Main,SearchAssistant = http://server.toolbar.rediff.com/toolbar/3...ml?mode=toolbar
R1 - HKCU\Software\Microsoft\Internet Connection Wizard,ShellNext = http://www1.euro.dell.com/content/default....;l=en&s=gen
R3 - URLSearchHook: Yahoo! Toolbar - {EF99BD32-C1FB-11D2-892F-0090271D4F88} - (no file)
O2 - BHO: Yahoo! Toolbar Helper - {02478D38-C3F9-4EFB-9B51-7695ECA05670} - (no file)
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Common Files\Adobe\Acrobat\ActiveX\AcroIEHelper.dll
O2 - BHO: McAfee AntiPhishing Filter - {41D68ED8-4CFF-4115-88A6-6EBB8AF19000} - (no file)
O2 - BHO: DriveLetterAccess - {5CA3D70E-1895-11CF-8E15-001234567890} - C:\WINDOWS\System32\DLA\DLASHX_W.DLL
O2 - BHO: (no name) - {5DE91B91-76E9-508E-9073-05CA92F8B24D} - C:\WINDOWS\system32\CmdChk.dll
O2 - BHO: SSVHelper Class - {761497BB-D6F0-462C-B6EB-D4DAF1D92D43} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll
O2 - BHO: (no name) - {7E853D72-626A-48EC-A868-BA8D5E23E045} - (no file)
O2 - BHO: Google Toolbar Helper - {AA58ED58-01DD-4d91-8333-CF10577473F7} - c:\program files\google\googletoolbar3.dll
O2 - BHO: (no name) - {BDBD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - (no file)
O3 - Toolbar: &Google - {2318C2B1-4965-11d4-9B18-009027A5CD4F} - c:\program files\google\googletoolbar3.dll
O3 - Toolbar: (no name) - {BDAD1DAD-C946-4A17-ADC1-64B5B4FF55D0} - (no file)
O4 - HKLM\..\Run: [IntelWireless] C:\Program Files\Intel\Wireless\Bin\ifrmewrk.exe /tf Intel PROSet/Wireless
O4 - HKLM\..\Run: [DLA] C:\WINDOWS\System32\DLA\DLACTRLW.EXE
O4 - HKLM\..\Run: [ISUSScheduler] "C:\Program Files\Common Files\InstallShield\UpdateService\issch.exe" -start
O4 - HKLM\..\Run: [ISUSPM Startup] "C:\Program Files\Common Files\InstallShield\UpdateService\isuspm.exe" -startup
O4 - HKLM\..\Run: [igfxtray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [igfxpers] C:\WINDOWS\system32\igfxpers.exe
O4 - HKLM\..\Run: [igfxhkcmd] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [Ravcy] C:\WINDOWS\system32\RavDr.exe
O4 - HKLM\..\Run: [SunJavaUpdateSched] "C:\Program Files\Java\jre1.6.0_05\bin\jusched.exe"
O4 - HKLM\..\Run: [rgpuxghm] regsvr32 /u "C:\Documents and Settings\All Users\Application Data\rgpuxghm.dll"
O4 - HKLM\..\Run: [SigmatelSysTrayApp] stsystra.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [kexwfixq] C:\WINDOWS\system32\nmlwtaje.exe
O4 - HKCU\..\Run: [wnygtekl] C:\WINDOWS\system32\jwjwrmlg.exe
O4 - HKCU\..\Run: [Yahoo! Pager] "C:\Program Files\Yahoo!\Messenger\YahooMessenger.exe" -quiet
O4 - HKLM\..\Policies\Explorer\Run: [zVjlTklLTb] C:\Documents and Settings\All Users\Application Data\bmjubqrs\duvavaru.exe
O4 - HKUS\S-1-5-18\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [ALUAlert] C:\Program Files\Symantec\LiveUpdate\ALUNotify.exe (User 'SYSTEM')
O4 - HKUS\S-1-5-18\..\Run: [Symantec NetDriver Warning] C:\PROGRA~1\SYMNET~1\SNDWarn.exe (User 'SYSTEM')
O4 - HKUS\.DEFAULT\..\Run: [CTFMON.EXE] C:\WINDOWS\system32\CTFMON.EXE (User 'Default user')
O8 - Extra context menu item: &Windows Live Search - res://C:\Program Files\Windows Live Toolbar\msntb.dll/search.htm
O9 - Extra button: (no name) - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra 'Tools' menuitem: Sun Java Console - {08B0E5C0-4FCB-11CF-AAA5-00401C608501} - C:\Program Files\Java\jre1.6.0_05\bin\ssv.dll
O9 - Extra button: (no name) - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra 'Tools' menuitem: McAfee AntiPhishing Filter - {39FD89BF-D3F1-45b6-BB56-3582CCF489E1} - C:\WINDOWS\system32\shdocvw.dll
O9 - Extra button: Real.com - {CD67F990-D8E9-11d2-98FE-00C0F0318AFE} - C:\WINDOWS\system32\Shdocvw.dll
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe (file missing)
O16 - DPF: {4E62C4DE-627D-4604-B157-4B7D6B09F02E} (AccountTracking Profile Manager Class) - https://moneymanager.egg.com/Pinsafe/accounttracking.cab
O16 - DPF: {67DABFBF-D0AB-41FA-9C46-CC0F21721616} (DivXBrowserPlugin Object) - http://download.divx.com/player/DivXBrowserPlugin.cab
O16 - DPF: {EF791A6B-FC12-4C68-99EF-FB9E207A39E6} (McFreeScan Class) - http://download.mcafee.com/molbin/iss-loc/...238/mcfscan.cab
O20 - Winlogon Notify: !SASWinLogon - C:\Program Files\SUPERAntiSpyware\SASWINLO.dll
O20 - Winlogon Notify: winzlo32 - C:\WINDOWS\SYSTEM32\winzlo32.dll
O23 - Service: EvtEng - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\EvtEng.exe
O23 - Service: Google Updater Service (gusvc) - Google - C:\Program Files\Google\Common\Google Updater\GoogleUpdaterService.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\1150\Intel 32\IDriverT.exe
O23 - Service: iPodService - Apple Computer, Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: McAfee WSC Integration (McDetect.exe) - McAfee, Inc - c:\program files\mcafee.com\agent\mcdetect.exe
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SecurityCenter Update Manager (mcupdmgr.exe) - McAfee, Inc - C:\PROGRA~1\McAfee.com\Agent\mcupdmgr.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: McAfee SpamKiller Server (MskService) - McAfee Inc. - C:\PROGRA~1\McAfee\SPAMKI~1\MSKSrvr.exe
O23 - Service: NICCONFIGSVC - Dell Inc. - C:\Program Files\Dell\NICCONFIGSVC\NICCONFIGSVC.exe
O23 - Service: RegSrvc - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\RegSrvc.exe
O23 - Service: Remote Packet Capture Protocol v.0 (experimental) (rpcapd) - CACE Technologies - C:\Program Files\WinPcap\rpcapd.exe
O23 - Service: Spectrum24 Event Monitor (S24EventMonitor) - Intel Corporation - C:\Program Files\Intel\Wireless\Bin\S24EvMon.exe
O23 - Service: VMware Authorization Service (VMAuthdService) - VMware, Inc. - C:\Program Files\VMware\VMware Server\vmware-authd.exe
O23 - Service: VMware DHCP Service (VMnetDHCP) - VMware, Inc. - C:\WINDOWS\system32\vmnetdhcp.exe
O23 - Service: VMware Virtual Mount Manager Extended (vmount2) - VMware, Inc. - C:\Program Files\Common Files\VMware\VMware Virtual Image Editing\vmount2.exe
O23 - Service: VMware Registration Service (vmserverdWin32) - VMware, Inc. - C:\Program Files\VMware\VMware Server\vmserverdWin32.exe
O23 - Service: VMware NAT Service - VMware, Inc. - C:\WINDOWS\system32\vmnat.exe
O23 - Service: WLANKEEPER - Intel® Corporation - C:\Program Files\Intel\Wireless\Bin\WLKeeper.exe

--
End of file - 10103 bytes



Here is the super spyware log file as well


SUPERAntiSpyware Scan Log
http://www.superantispyware.com

Generated 06/28/2008 at 07:48 PM

Application Version : 4.15.1000

Core Rules Database Version : 3493
Trace Rules Database Version: 1484

Scan type : Complete Scan
Total Scan Time : 01:30:44

Memory items scanned : 405
Memory threats detected : 1
Registry items scanned : 5909
Registry threats detected : 159
File items scanned : 84426
File threats detected : 292

Trojan.Smitfraud Variant-Gen/PushrDrv
C:\WINDOWS\SYSTEM32\DRVXOR.DLL
C:\WINDOWS\SYSTEM32\DRVXOR.DLL

Trojan.SafeSearch
HKLM\Software\Classes\CLSID\{00000000-0000-0000-0000-000000000001}
HKCR\CLSID\{00000000-0000-0000-0000-000000000001}
HKCR\CLSID\{00000000-0000-0000-0000-000000000001}\InprocServer32

Trojan.Media-Codec/V3
HKLM\Software\Classes\CLSID\{184746EC-9E9D-4C7D-B9E7-9039EBD801A9}
HKCR\CLSID\{184746EC-9E9D-4C7D-B9E7-9039EBD801A9}
HKCR\CLSID\{184746EC-9E9D-4C7D-B9E7-9039EBD801A9}#xxx
HKCR\CLSID\{184746EC-9E9D-4C7D-B9E7-9039EBD801A9}\InprocServer32
HKCR\CLSID\{184746EC-9E9D-4C7D-B9E7-9039EBD801A9}\InprocServer32#ThreadingModel
C:\PROGRAM FILES\VIDEO ACTIVEX ACCESS\IESPLG.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{184746EC-9E9D-4C7D-B9E7-9039EBD801A9}
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IExplorer Security Plug-in
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IExplorer Security Plug-in#DisplayName
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\IExplorer Security Plug-in#UninstallString
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Explorer Secure Bar
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Explorer Secure Bar#DisplayName
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Explorer Secure Bar#UninstallString

Unclassified.Unknown Origin
HKLM\Software\Classes\CLSID\{74CD40EA-EF77-4BAD-808A-B5982DA73F20}
HKCR\CLSID\{74CD40EA-EF77-4BAD-808A-B5982DA73F20}
HKCR\CLSID\{74CD40EA-EF77-4BAD-808A-B5982DA73F20}\Control
HKCR\CLSID\{74CD40EA-EF77-4BAD-808A-B5982DA73F20}\Implemented Categories
HKCR\CLSID\{74CD40EA-EF77-4BAD-808A-B5982DA73F20}\Implemented Categories\{7DD95801-9882-11CF-9FA9-00AA006C42C4}
HKCR\CLSID\{74CD40EA-EF77-4BAD-808A-B5982DA73F20}\Implemented Categories\{7DD95802-9882-11CF-9FA9-00AA006C42C4}
HKCR\CLSID\{74CD40EA-EF77-4BAD-808A-B5982DA73F20}\InprocServer32
HKCR\CLSID\{74CD40EA-EF77-4BAD-808A-B5982DA73F20}\InprocServer32#ThreadingModel
HKCR\CLSID\{74CD40EA-EF77-4BAD-808A-B5982DA73F20}\MiscStatus
HKCR\CLSID\{74CD40EA-EF77-4BAD-808A-B5982DA73F20}\MiscStatus\1
HKCR\CLSID\{74CD40EA-EF77-4BAD-808A-B5982DA73F20}\ProgID
HKCR\CLSID\{74CD40EA-EF77-4BAD-808A-B5982DA73F20}\TypeLib
HKCR\CLSID\{74CD40EA-EF77-4BAD-808A-B5982DA73F20}\Version

Adware.Yuupsearch
HKLM\Software\Classes\CLSID\{BBBE1C1A-89F7-4AF6-ABD1-F8FBCFA47408}
HKCR\CLSID\{BBBE1C1A-89F7-4AF6-ABD1-F8FBCFA47408}
HKCR\CLSID\{BBBE1C1A-89F7-4AF6-ABD1-F8FBCFA47408}
HKCR\CLSID\{BBBE1C1A-89F7-4AF6-ABD1-F8FBCFA47408}\InprocServer32
HKCR\CLSID\{BBBE1C1A-89F7-4AF6-ABD1-F8FBCFA47408}\InprocServer32#ThreadingModel
HKCR\CLSID\{BBBE1C1A-89F7-4AF6-ABD1-F8FBCFA47408}\ProgID
HKCR\CLSID\{BBBE1C1A-89F7-4AF6-ABD1-F8FBCFA47408}\Programmable
HKCR\CLSID\{BBBE1C1A-89F7-4AF6-ABD1-F8FBCFA47408}\TypeLib
HKCR\CLSID\{BBBE1C1A-89F7-4AF6-ABD1-F8FBCFA47408}\VersionIndependentProgID
C:\PROGRA~1\REDIFF~2\3.0\REDIFF~1.DLL
HKLM\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\{BBBE1C1A-89F7-4AF6-ABD1-F8FBCFA47408}

Trojan.Media-Codec/V2
HKLM\Software\Classes\CLSID\{D34F5D71-99E4-4D96-91CA-F4104F69B8AE}
HKCR\CLSID\{D34F5D71-99E4-4D96-91CA-F4104F69B8AE}
HKCR\CLSID\{D34F5D71-99E4-4D96-91CA-F4104F69B8AE}
HKCR\CLSID\{D34F5D71-99E4-4D96-91CA-F4104F69B8AE}\InprocServer32
HKCR\CLSID\{D34F5D71-99E4-4D96-91CA-F4104F69B8AE}\InprocServer32#ThreadingModel
C:\PROGRAM FILES\VIDEO AX OBJECT\BPVOL.DLL
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Browser Protection Volume
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Browser Protection Volume#DisplayName
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Browser Protection Volume#UninstallString
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Explorer Secure Plug-in
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Explorer Secure Plug-in#DisplayName
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Internet Explorer Secure Plug-in#UninstallString
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Security Messenger
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Security Messenger#DisplayName
HKLM\SOFTWARE\Microsoft\Windows\CurrentVersion\Uninstall\Security Messenger#UninstallString

411Ferret Toolbar
HKLM\Software\Microsoft\Internet Explorer\Toolbar#{12F02779-6D88-4958-8AD3-83C12D86ADC7}
HKU\S-1-5-21-2150593567-1171169350-2643979753-1006\Software\Microsoft\Internet Explorer\URLSearchHooks#{12F02779-6D88-4958-8AD3-83C12D86ADC7}

Adware.Tracking Cookie
C:\Documents and Settings\sreevas\Cookies\sreevas@ad.yieldmanager[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@casalemedia[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@2o7[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ehg-tfl.hitbox[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ads.joinaxxess[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@overture[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@richmedia.yahoo[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@stat.youku[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@media.adrevolver[3].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ehg-carphonewarehouse.hitbox[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@specificclick[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ipoint.targetpoint[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ehg-autotrader.hitbox[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@reduxads.valuead[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@saletrack.co[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@hitbox[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ads.pointroll[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@questionmarket[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ads.veoh[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@top.mp3hitfinder[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@xxxneeds[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@uk.sitestat[3].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@bs.serving-sys[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@advertising[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@trafficmp[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@spamblockerutility[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@anad.tacoda[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@atoc.112.2o7[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@int.sitestat[3].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@partypoker[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@adserver.filefront[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@icc.intellisrv[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@server.iad.liveperson[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ad.uk.tangozebra[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@serving-sys[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@tacoda[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@banner.scasino[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@adfarm1.adition[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@adopt.specificclick[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@roiservice[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@a.websponsors[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@tradedoubler[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@carphonewarehouse.112.2o7[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@keywordmax[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@store.2257adult[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ehg-veohnetworksinc.hitbox[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@clicksor[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@adlegend[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@indextools[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@counter.hitslink[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@yourtracking[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@indiads[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ad.zanox[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@247realmedia[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@indoormedia.co[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ehg-logantod.hitbox[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ad.uk.tangozebra[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@pornotube[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@lstat.youku[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@uk.sitestat[4].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@doubleclick[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@stats.sellmosoft[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@pacificpoker[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@fastclick[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@zedo[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@revsci[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@anat.tacoda[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@bluestreak[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@paypal.112.2o7[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@adopt.euroclick[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@statcounter[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@imrworldwide[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@edge.ru4[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@crackle[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@media.adrevolver[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@adtech[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@adserver.easyad[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@www.burstbeacon[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ads.cooltoad[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@apmebf[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@statse.webtrendslive[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@tribalfusion[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@adbrite[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@adinterax[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@atdmt[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ads.revsci[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@partygaming.122.2o7[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@xiti[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@eas.apm.emediate[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@pro-market[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@server.iad.liveperson[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@burstnet[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@adserver.mediarun[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@divx.112.2o7[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@mediaplex[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@server.lon.liveperson[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@adserve.v-store.co[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@premiumtv.122.2o7[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@112.2o7[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@insightexpressai[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@www5.addfreestats[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@uk.sitestat[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@adviva[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ads.ak.facebook[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@adrevolver[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@adserver.adreactor[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ad1.emediate[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@superstats[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@e-2dj6wfkiaidjwgp.stats.esomniture[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@www8.addfreestats[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ads.ozonemedia.co[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@kontera[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@indiansexstories[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@clickaider[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@qnsr[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@counter11.sextracker[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@uk.sitestat[6].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@timesofindia.indiatimes[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@revenue[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@counter.plugin[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@azjmp[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ads.adgoto[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@toplist[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@totalkiss.trackitdown[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@partners.webmasterplan[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@www.sexmaxx[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@www3.addfreestats[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@c2.zedo[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ads.pugetsoundsoftware[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@findlinks[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@eztracks.aavalue[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@adbrite.122.2o7[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@www.burstnet[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@uk.sitestat[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@uk.sitestat[5].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@adecn[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ad.yieldmanager[3].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ads.addynamix[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ad1.clickhype[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@smartadserver[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ads.soft32[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ads.realtechnetwork[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@banner.casinoking[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@msnportal.112.2o7[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@adv.xboard[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@realmedia[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@yadro[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@bestsexworld[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@oas.directaclick[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@int.sitestat[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@stat.onestat[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@hornymatches[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ads.us.e-planning[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@virginmedia[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@int.sitestat[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@server.lon.liveperson[3].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@optimost[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@bravenet[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@click.cybertvpartner[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ehg-dig.hitbox[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ehg-ufi.hitbox[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@adultmovies[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@adultadworld[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@4.adbrite[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@hc2.humanclick[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@cleanator[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ehg-totalsystemsservices.hitbox[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@hc2.humanclick[3].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@xxx-18-fwnt.blogspot[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@interclick[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@track.adform[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ehg-youtube.hitbox[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@indexstats[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@sexyvideos.co[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@spylog[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@www.virginmedia[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@e1.cdn.qnsr[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ads.bridgetrack[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@tripod[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@masalapornmovies[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@www.etracker[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ehg-techtarget.hitbox[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ehg-spookmedia.hitbox[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@webpower[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@amazonms.122.2o7[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@date.ventivmedia[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@server.lon.liveperson[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@banner.32vegas[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@atwola[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@fl01.ct2.comclick[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ads.monster[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ipl.timesofindia.indiatimes[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@clickbank[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@multiply.112.2o7[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@rotator.adjuggler[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@sexape[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@banner.bingo.blackpoolclub.co[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@youku.iwebtracker[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@www.3dstats[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ads.react2media[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@sexmaxx[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ez-tracks[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@2.go.globaladsales[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ehg-reed.hitbox[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@dynamic.media.adrevolver[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@metacafe.122.2o7[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@sextracker[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@adultfriendfinder[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@cz6.clickzs[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@clickajob.co[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ads.planetactive[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ehg-deltatre.hitbox[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@thesexblog[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@mycounter.tinycounter[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@mmstat[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@1sexynight[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ehg-starbucks.hitbox[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ehg-independent.hitbox[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@valueclick[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ads.livesport[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@12.go.globaladsales[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@nextag[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@smartweb.advertserve[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@counter13.sextracker[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@clickatest.co[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@videoegg.adbureau[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@media6degrees[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@realindianteens[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@semdirector.112.2o7[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ehg-1sttech.hitbox[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ad.adocean[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ads.111pix[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@www.clash-media[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@www.ez-tracks[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@msexchange[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ehg-groupernetworks.hitbox[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@msnaccountservices.112.2o7[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@athomesexnetwork[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@euroclick[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ehg-friendster.hitbox[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@tracking.novem[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@americanexpress.122.2o7[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@careers.peopleclick[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@royalmail.112.2o7[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@login.revenueloop[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ice.112.2o7[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@lotsofads.smilingtraffic[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@image.masterstats[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@ehg-ittoolbox.hitbox[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@servedby.advertising[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@server.iad.liveperson[4].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@www.googleadservices[2].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@perf.overture[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@keygenguru[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@adserveuk[1].txt
C:\Documents and Settings\sreevas\Cookies\sreevas@aff.primaryads[1].txt
C:\Documents and Settings\Guest\Cookies\guest@ad.yieldmanager[1].txt
C:\Documents and Settings\Guest\Cookies\guest@adbrite[1].txt
C:\Documents and Settings\Guest\Cookies\guest@adinterax[2].txt
C:\Documents and Settings\Guest\Cookies\guest@adopt.euroclick[2].txt
C:\Documents and Settings\Guest\Cookies\guest@adrevolver[1].txt
C:\Documents and Settings\Guest\Cookies\guest@ads.bridgetrack[1].txt
C:\Documents and Settings\Guest\Cookies\guest@ads.realtechnetwork[2].txt
C:\Documents and Settings\Guest\Cookies\guest@adtech[1].txt
C:\Documents and Settings\Guest\Cookies\guest@advertising[1].txt
C:\Documents and Settings\Guest\Cookies\guest@anad.tacoda[1].txt
C:\Documents and Settings\Guest\Cookies\guest@atdmt[2].txt
C:\Documents and Settings\Guest\Cookies\guest@bs.serving-sys[2].txt
C:\Documents and Settings\Guest\Cookies\guest@counter.hitslink[1].txt
C:\Documents and Settings\Guest\Cookies\guest@doubleclick[1].txt
C:\Documents and Settings\Guest\Cookies\guest@fastclick[1].txt
C:\Documents and Settings\Guest\Cookies\guest@media.adrevolver[2].txt
C:\Documents and Settings\Guest\Cookies\guest@media.adrevolver[3].txt
C:\Documents and Settings\Guest\Cookies\guest@mediaplex[1].txt
C:\Documents and Settings\Guest\Cookies\guest@overture[1].txt
C:\Documents and Settings\Guest\Cookies\guest@pro-market[2].txt
C:\Documents and Settings\Guest\Cookies\guest@richmedia.yahoo[1].txt
C:\Documents and Settings\Guest\Cookies\guest@serving-sys[2].txt
C:\Documents and Settings\Guest\Cookies\guest@smileycentral[2].txt
C:\Documents and Settings\Guest\Cookies\guest@statse.webtrendslive[1].txt
C:\Documents and Settings\Guest\Cookies\guest@tacoda[1].txt
C:\Documents and Settings\Guest\Cookies\guest@timesofindia.indiatimes[1].txt
C:\Documents and Settings\Guest\Cookies\guest@tradedoubler[2].txt
C:\Documents and Settings\Guest\Cookies\guest@zedo[1].txt
.mediaplex.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.mediaplex.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.tribalfusion.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.doubleclick.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.atdmt.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.advertising.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.advertising.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.advertising.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.advertising.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.advertising.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.kontera.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.kontera.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.kontera.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.overture.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.overture.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
ad.yieldmanager.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
ad.yieldmanager.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
ad.yieldmanager.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
ad.yieldmanager.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
ad.yieldmanager.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
ad.yieldmanager.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
ad.yieldmanager.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
ad.yieldmanager.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
ad.yieldmanager.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
ad.yieldmanager.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adtech.de [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adtech.de [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.pro-market.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.pro-market.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
media.adrevolver.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adrevolver.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adrevolver.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
media.adrevolver.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.dynamic.media.adrevolver.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
media.adrevolver.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.ads.addynamix.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.www.admedian.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
cms.trafficmp.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.serving-sys.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.serving-sys.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.bs.serving-sys.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.serving-sys.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.serving-sys.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.serving-sys.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.serving-sys.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.tradedoubler.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adopt.euroclick.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
adopt.euroclick.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adopt.euroclick.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adopt.euroclick.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adopt.euroclick.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adopt.euroclick.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.timesofindia.indiatimes.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
timesofindia.indiatimes.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
timesofindia.indiatimes.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.timesofindia.indiatimes.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.revsci.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.revsci.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.revsci.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.revsci.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.revsci.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.revsci.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.revsci.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.revsci.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adbrite.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adbrite.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adbrite.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
rotator.adjuggler.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
rotator.adjuggler.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.statcounter.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.statcounter.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.statcounter.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.statcounter.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.bluestreak.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.apmebf.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.apmebf.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
uk.sitestat.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.zedo.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.zedo.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.zedo.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.zedo.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.reduxads.valuead.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.reduxads.valuead.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.reduxads.valuead.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.reduxads.valuead.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.reduxads.valuead.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.reduxads.valuead.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.crucial.adbureau.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adserver.easyad.info [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.tacoda.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.tacoda.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.tacoda.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.tacoda.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.tacoda.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
anat.tacoda.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
anad.tacoda.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
ads.revsci.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.indoormedia.co.uk [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.ehg-totalsystemsservices.hitbox.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.hitbox.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.hitbox.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.ehg-totalsystemsservices.hitbox.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.questionmarket.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.questionmarket.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.2o7.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.2o7.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.2o7.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.2o7.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.2o7.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.2o7.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.112.2o7.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.112.2o7.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.112.2o7.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.2o7.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.2o7.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.2o7.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.2o7.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.2o7.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.msnportal.112.2o7.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.msnaccountservices.112.2o7.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.clicksor.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.ads.clicksor.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.myroitracking.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.specificclick.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adinterax.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adinterax.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.lstat.youku.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.stat.youku.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.lstat.youku.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.xiti.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.247realmedia.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.247realmedia.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adbrite.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adbrite.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adbrite.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adbrite.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adbrite.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adbrite.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adbrite.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adlegend.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adopt.hbmediapro.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adorigin.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adorigin.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.adorigin.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.ads.pointroll.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.ads.pointroll.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.ads.pointroll.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.atoc.112.2o7.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.bravenet.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.bravenet.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.bravenet.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.burstnet.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.cs.sexcounter.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.cs.sexcounter.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.cs.sexcounter.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.cs.sexcounter.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.e-2dj6wfkyondpmkq.stats.esomniture.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.e-2dj6wflyckcpedo.stats.esomniture.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.e-2dj6wgkykhcpclo.stats.esomniture.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.e-2dj6wjl4cndpccp.stats.esomniture.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.edge.ru4.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.http.edge.vru4.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.http.edge.vru4.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.imrworldwide.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.imrworldwide.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.indiads.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.masalapornmovies.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.mediaservers.vtc.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.metacafe.122.2o7.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.newzfind.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.partygaming.122.2o7.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.partypoker.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.perf.overture.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.qksrv.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.qksrv.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.realmedia.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.realmedia.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.revenue.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.revenue.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.roiservice.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.roiservice.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.royalmail.112.2o7.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.sexuploader.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.toplist.cz [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.weborama.fr [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.web-stat.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.web-stat.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.webstat.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.webstat.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.webstat.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.yadro.ru [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
.yadro.ru [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
ad1.emediate.dk [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
ad1.emediate.dk [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
ads.mediaturf.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
int.sitestat.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
int.sitestat.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
int.sitestat.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
int.sitestat.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
nedstat.192.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
stat.onestat.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
stat.onestat.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
tracker.roitesting.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
uk.2.cqcounter.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
uk.sitestat.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
uk.sitestat.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
uk.sitestat.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
www.adultjobfinder.net [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
www.belstat.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
www.belstat.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
www.smartadserver.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
www.smartadserver.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]
www.smartadserver.com [ C:\Documents and Settings\sreevas\Application Data\Mozilla\Firefox\Profiles\ehgjig1r.default\cookies.txt ]

Trojan.Unknown Origin
HKLM\SOFTWARE\Microsoft\MSSMGR
HKLM\SOFTWARE\Microsoft\MSSMGR#Data
HKLM\SOFTWARE\Microsoft\MSSMGR#LSTV
HKLM\SOFTWARE\Microsoft\MSSMGR#Brnd
HKLM\SOFTWARE\Microsoft\MSSMGR#MSLIST
HKLM\SOFTWARE\Microsoft\MSSMGR#PID
HKLM\SOFTWARE\Microsoft\MSSMGR#Rid
HKLM\SOFTWARE\Microsoft\MSSMGR#BSTV
HKLM\SOFTWARE\Microsoft\MSSMGR#SSTV
HKLM\SOFTWARE\Microsoft\MSSMGR#SCLIST
HKLM\SOFTWARE\Microsoft\MSSMGR#SSLIST
HKLM\SOFTWARE\Microsoft\MSSMGR#BPTV
HKLM\SOFTWARE\Microsoft\MSSMGR#PSTV

Adware.ClickSpring/Yazzle
HKCR\YAZZLEACTIVEX.YazzleActiveXCtrl.1
HKCR\YAZZLEACTIVEX.YazzleActiveXCtrl.1\CLSID

Trojan.DNSChanger-Codec
HKCR\VAC.Video
HKCR\VAC.Video\CLSID
HKU\S-1-5-21-2150593567-1171169350-2643979753-1006\Software\uninstall

Malware.SpyLocked
HKCR\TypeLib\{DB926F0D-182A-4088-9B2A-1DB210619AC2}
HKCR\TypeLib\{DB926F0D-182A-4088-9B2A-1DB210619AC2}\1.0
HKCR\TypeLib\{DB926F0D-182A-4088-9B2A-1DB210619AC2}\1.0\0
HKCR\TypeLib\{DB926F0D-182A-4088-9B2A-1DB210619AC2}\1.0\0\win32
HKCR\TypeLib\{DB926F0D-182A-4088-9B2A-1DB210619AC2}\1.0\FLAGS
HKCR\TypeLib\{DB926F0D-182A-4088-9B2A-1DB210619AC2}\1.0\HELPDIR
HKCR\Interface\{28C185E0-2782-4C11-B414-C749654CEBEF}
HKCR\Interface\{28C185E0-2782-4C11-B414-C749654CEBEF}\ProxyStubClsid
HKCR\Interface\{28C185E0-2782-4C11-B414-C749654CEBEF}\ProxyStubClsid32
HKCR\Interface\{28C185E0-2782-4C11-B414-C749654CEBEF}\TypeLib
HKCR\Interface\{28C185E0-2782-4C11-B414-C749654CEBEF}\TypeLib#Version
HKCR\Interface\{2D9C224E-1640-400D-83D0-3DE904F3CD51}
HKCR\Interface\{2D9C224E-1640-400D-83D0-3DE904F3CD51}\ProxyStubClsid
HKCR\Interface\{2D9C224E-1640-400D-83D0-3DE904F3CD51}\ProxyStubClsid32
HKCR\Interface\{2D9C224E-1640-400D-83D0-3DE904F3CD51}\TypeLib
HKCR\Interface\{2D9C224E-1640-400D-83D0-3DE904F3CD51}\TypeLib#Version
HKCR\Interface\{3BD36779-FABD-4974-B681-95B79900603D}
HKCR\Interface\{3BD36779-FABD-4974-B681-95B79900603D}\ProxyStubClsid
HKCR\Interface\{3BD36779-FABD-4974-B681-95B79900603D}\ProxyStubClsid32
HKCR\Interface\{3BD36779-FABD-4974-B681-95B79900603D}\TypeLib
HKCR\Interface\{3BD36779-FABD-4974-B681-95B79900603D}\TypeLib#Version
HKCR\Interface\{3FBD43FB-45D9-4AD6-97C5-DB2A208DBE1B}
HKCR\Interface\{3FBD43FB-45D9-4AD6-97C5-DB2A208DBE1B}\ProxyStubClsid
HKCR\Interface\{3FBD43FB-45D9-4AD6-97C5-DB2A208DBE1B}\ProxyStubClsid32
HKCR\Interface\{3FBD43FB-45D9-4AD6-97C5-DB2A208DBE1B}\TypeLib
HKCR\Interface\{3FBD43FB-45D9-4AD6-97C5-DB2A208DBE1B}\TypeLib#Version
HKCR\Interface\{458338B4-8CF4-4F76-B05A-391EFCB91DAF}
HKCR\Interface\{458338B4-8CF4-4F76-B05A-391EFCB91DAF}\ProxyStubClsid
HKCR\Interface\{458338B4-8CF4-4F76-B05A-391EFCB91DAF}\ProxyStubClsid32
HKCR\Interface\{458338B4-8CF4-4F76-B05A-391EFCB91DAF}\TypeLib
HKCR\Interface\{458338B4-8CF4-4F76-B05A-391EFCB91DAF}\TypeLib#Version
HKCR\Interface\{49792BDF-272E-485A-8EDC-0F26F3B499A8}
HKCR\Interface\{49792BDF-272E-485A-8EDC-0F26F3B499A8}\ProxyStubClsid
HKCR\Interface\{49792BDF-272E-485A-8EDC-0F26F3B499A8}\ProxyStubClsid32
HKCR\Interface\{49792BDF-272E-485A-8EDC-0F26F3B499A8}\TypeLib
HKCR\Interface\{49792BDF-272E-485A-8EDC-0F26F3B499A8}\TypeLib#Version
HKCR\Interface\{4D3DD52E-F48A-46F2-BE86-7F9B4BA7BB2F}
HKCR\Interface\{4D3DD52E-F48A-46F2-BE86-7F9B4BA7BB2F}\ProxyStubClsid
HKCR\Interface\{4D3DD52E-F48A-46F2-BE86-7F9B4BA7BB2F}\ProxyStubClsid32
HKCR\Interface\{4D3DD52E-F48A-46F2-BE86-7F9B4BA7BB2F}\TypeLib
HKCR\Interface\{4D3DD52E-F48A-46F2-BE86-7F9B4BA7BB2F}\TypeLib#Version
HKCR\Interface\{6DAEFDEA-1466-4A40-A530-E390FF58D248}
HKCR\Interface\{6DAEFDEA-1466-4A40-A530-E390FF58D248}\ProxyStubClsid
HKCR\Interface\{6DAEFDEA-1466-4A40-A530-E390FF58D248}\ProxyStubClsid32
HKCR\Interface\{6DAEFDEA-1466-4A40-A530-E390FF58D248}\TypeLib
HKCR\Interface\{6DAEFDEA-1466-4A40-A530-E390FF58D248}\TypeLib#Version
HKCR\Interface\{725BAD2A-8A0E-42D5-A028-B51794238C35}
HKCR\Interface\{725BAD2A-8A0E-42D5-A028-B51794238C35}\ProxyStubClsid
HKCR\Interface\{725BAD2A-8A0E-42D5-A028-B51794238C35}\ProxyStubClsid32
HKCR\Interface\{725BAD2A-8A0E-42D5-A028-B51794238C35}\TypeLib
HKCR\Interface\{725BAD2A-8A0E-42D5-A028-B51794238C35}\TypeLib#Version
HKCR\Interface\{9692D0FB-693D-4B8C-8D61-040DBBE5D617}
HKCR\Interface\{9692D0FB-693D-4B8C-8D61-040DBBE5D617}\ProxyStubClsid
HKCR\Interface\{9692D0FB-693D-4B8C-8D61-040DBBE5D617}\ProxyStubClsid32
HKCR\Interface\{9692D0FB-693D-4B8C-8D61-040DBBE5D617}\TypeLib
HKCR\Interface\{9692D0FB-693D-4B8C-8D61-040DBBE5D617}\TypeLib#Version
HKCR\Interface\{C099E01B-9751-46F7-AAC8-386F3B4EEC92}
HKCR\Interface\{C099E01B-9751-46F7-AAC8-386F3B4EEC92}\ProxyStubClsid
HKCR\Interface\{C099E01B-9751-46F7-AAC8-386F3B4EEC92}\ProxyStubClsid32
HKCR\Interface\{C099E01B-9751-46F7-AAC8-386F3B4EEC92}\TypeLib
HKCR\Interface\{C099E01B-9751-46F7-AAC8-386F3B4EEC92}\TypeLib#Version
HKCR\Interface\{CAB9D558-0A83-4528-988A-CB1D7A69022E}
HKCR\Interface\{CAB9D558-0A83-4528-988A-CB1D7A69022E}\ProxyStubClsid
HKCR\Interface\{CAB9D558-0A83-4528-988A-CB1D7A69022E}\ProxyStubClsid32
HKCR\Interface\{CAB9D558-0A83-4528-988A-CB1D7A69022E}\TypeLib
HKCR\Interface\{CAB9D558-0A83-4528-988A-CB1D7A69022E}\TypeLib#Version
HKCR\Interface\{CC17B63E-CB49-4D83-A33E-91ED305AB85E}
HKCR\Interface\{CC17B63E-CB49-4D83-A33E-91ED305AB85E}\ProxyStubClsid
HKCR\Interface\{CC17B63E-CB49-4D83-A33E-91ED305AB85E}\ProxyStubClsid32
HKCR\Interface\{CC17B63E-CB49-4D83-A33E-91ED305AB85E}\TypeLib
HKCR\Interface\{CC17B63E-CB49-4D83-A33E-91ED305AB85E}\TypeLib#Version
HKCR\Interface\{D5531EF6-EFDA-4894-9A24-8DA190940C38}
HKCR\Interface\{D5531EF6-EFDA-4894-9A24-8DA190940C38}\ProxyStubClsid
HKCR\Interface\{D5531EF6-EFDA-4894-9A24-8DA190940C38}\ProxyStubClsid32
HKCR\Interface\{D5531EF6-EFDA-4894-9A24-8DA190940C38}\TypeLib
HKCR\Interface\{D5531EF6-EFDA-4894-9A24-8DA190940C38}\TypeLib#Version
HKCR\Interface\{E916C096-5854-432E-8624-AFCF464D57F8}
HKCR\Interface\{E916C096-5854-432E-8624-AFCF464D57F8}\ProxyStubClsid
HKCR\Interface\{E916C096-5854-432E-8624-AFCF464D57F8}\ProxyStubClsid32
HKCR\Interface\{E916C096-5854-432E-8624-AFCF464D57F8}\TypeLib
HKCR\Interface\{E916C096-5854-432E-8624-AFCF464D57F8}\TypeLib#Version
HKCR\Interface\{FC55856C-204B-45B0-9467-4FBAE8D8FE73}
HKCR\Interface\{FC55856C-204B-45B0-9467-4FBAE8D8FE73}\ProxyStubClsid
HKCR\Interface\{FC55856C-204B-45B0-9467-4FBAE8D8FE73}\ProxyStubClsid32
HKCR\Interface\{FC55856C-204B-45B0-9467-4FBAE8D8FE73}\TypeLib
HKCR\Interface\{FC55856C-204B-45B0-9467-4FBAE8D8FE73}\TypeLib#Version

Malware.VirusProtectPro
C:\Program Files\VirusProtectPro 3.3\vpp.ini
C:\Program Files\VirusProtectPro 3.3

Rogue.PC-Cleaner
HKU\S-1-5-21-2150593567-1171169350-2643979753-1006\Software\mwc

Trojan.Unclassified/RCDLL-Fake
C:\TCWIN45\BIN\RCDLL.DLL

Adware.GloboLook
C:\TCWIN45\EXAMPLES\OWL\GAMES\BLAKJACK\BLAKJACK.ICO

This post has been edited by KoanYorel: Jun 29 2008, 10:07 AM
Reason for edit: to disable hot link URL above

Attached File(s)
Attached File  New_Microsoft_Word_Document.doc ( 413k ) Number of downloads: 8
 
Go to the top of the page
 
+Quote Post
Thunder
post Jun 30 2008, 02:17 AM
Post #2


Forum Addict
******

Group: HJT Team
Posts: 2,352
Joined: 12-December 05
From: Belgium
Member No.: 44,294



Hello Sreez and welcome to BleepingComputer,

1. * Clean your Cache and Cookies in IE:
  • Close all instances of Outlook Express and Internet Explorer
  • Go to Control Panel > Internet Options > General tab
  • Under Browsing History, click Delete.
  • Click Delete Files, Delete cookies and Delete history
  • Click Close below.
* Clean your Cache and Cookies in Firefox (In case you also have Firefox installed):
  • Go to Tools > Options.
  • Click Privacy in the menu..
  • Click the Clear now button below.. A new window will popup what to clear.
  • Select all and click the Clear button again.
  • Click OK to close the Options window
* Clean other Temporary files + Recycle bin
  • Go to start > run and type: cleanmgr and click ok.
  • Let it scan your system for files to remove.
  • Make sure Temporary Files, Temporary Internet Files, and Recycle Bin are the only things checked.
  • Press OK to remove them.
2. Please download Malwarebytes' Anti-Malware from Here or Here

Doubleclick mbam-setup.exe to install the application.
  • Make sure a checkmark is placed next to Update Malwarebytes' Anti-Malware and Launch Malwarebytes' Anti-Malware, then click Finish.
  • If an update is found, it will download and install the latest version.
  • Once the program has loaded, select "Perform Quick Scan", then click Scan.
  • The scan may take some time to finish,so please be patient.
  • When the scan is complete, click OK, then Show Results to view the results.
  • Make sure that everything is checked, and click Remove Selected.
  • When disinfection is completed, a log will open in Notepad and you may be prompted to Restart.(See Extra Note)
  • The log is automatically saved by MBAM and can be viewed by clicking the Logs tab in MBAM.
  • Copy&Paste the entire report in your next reply along with a fresh HijackThis log.
Extra Note:
If MBAM encounters a file that is difficult to remove,you will be presented with 1 of 2 prompts,click OK to either and let MBAM proceed with the disinfection process,if asked to restart the computer,please do so immediatly.

3. Please visit this webpage for instructions for downloading and running ComboFix:

http://www.bleepingcomputer.com/combofix/how-to-use-combofix

Please ensure you read this guide carefully and install the Recovery Console first (not for Windows Vista users !).
The Windows Recovery Console will allow you to boot up into a special recovery mode, in case your computer has a problem after an attempted removal of malware. This allows us to help you. (WinXP SP3 users, please download the appropriate SP2 file, Home or Pro, to install the RC)

In the event you already have Combofix, delete your current version and download the latest version as described in the tutorial.
It must be saved directly to your desktop.


Note: Make sure not to click ComboFix's window while it's running. That may cause it to stall or freeze.

Please post the log from ComboFix (can also be found as C:\ComboFix.txt) in your next reply. wink.gif

If you have any questions along the way, STOP and ask them before proceeding !!

Greetings,
Thunder


--------------------
Whatever happens, make believe it was intended to ...
-----------------------------------------------------------------------
- If I have helped you in any way, please consider a donation to help me continue the fight against malware.
-----------------------------------------------------------------------
Stand Up & Be Counted --> <-- And make a difference