Jump to content


 


Register a free account to unlock additional features at BleepingComputer.com
Welcome to BleepingComputer, a free community where people like yourself come together to discuss and learn how to use their computers. Using the site is easy and fun. As a guest, you can browse and view the various discussions in the forums, but can not create a new topic or reply to an existing one unless you are logged in. Other benefits of registering an account are subscribing to topics and forums, creating a blog, and having no ads shown anywhere on the site.


Click here to Register a free account now! or read our Welcome Guide to learn how to use this site.

Photo

Task Bar And Destop Missing


  • Please log in to reply
20 replies to this topic

#1 Desperate I

Desperate I

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:01:00 PM

Posted 20 December 2007 - 05:12 PM

My Task Bar and Desktop are nowhere to be found on any user so I have been using ctrl-alt-del to move around.
I appreciate your help since I don't know what else to try. Ran Ad-Aware, SpyBot, Stinger, CCleaner and found nothing major besides cookies. I have basic knowledge of moving around and making changes, so please be simple with me. Here is my HijackThis log. Please let me know if you need any more information.

Logfile of Trend Micro HijackThis v2.0.2
Scan saved at 4:59:42 PM, on 12/20/2007
Platform: Windows XP SP2 (WinNT 5.01.2600)
MSIE: Internet Explorer v7.00 (7.00.6000.16574)
Boot mode: Normal

Running processes:
C:\WINDOWS\System32\smss.exe
C:\WINDOWS\system32\winlogon.exe
C:\WINDOWS\system32\services.exe
C:\WINDOWS\system32\lsass.exe
C:\WINDOWS\system32\svchost.exe
C:\WINDOWS\System32\svchost.exe
C:\WINDOWS\system32\LEXBCES.EXE
C:\WINDOWS\system32\spoolsv.exe
C:\WINDOWS\system32\LEXPPS.EXE
C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe
C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
c:\program files\common files\mcafee\mna\mcnasvc.exe
c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
C:\Program Files\McAfee\MPF\MPFSrv.exe
C:\PROGRA~1\McAfee.com\Agent\mcagent.exe
D:\Program Files\Dantz\Retrospect\retrorun.exe
D:\PROGRA~1\Dantz\RETROS~1\wdsvc.exe
C:\Program Files\SiteAdvisor\6253\SAService.exe
C:\WINDOWS\System32\svchost.exe
C:\Program Files\Common Files\TiVo Shared\Beacon\TiVoBeacon.exe
D:\Program Files\Roxio\MyDVD\USBDeviceService.exe
C:\WINDOWS\System32\MsPMSPSv.exe
C:\WINDOWS\system32\fxssvc.exe
C:\WINDOWS\System32\svchost.exe
C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
C:\WINDOWS\system32\taskmgr.exe
C:\WINDOWS\system32\ctfmon.exe
C:\Program Files\SiteAdvisor\6253\SiteAdv.exe
C:\Program Files\Internet Explorer\iexplore.exe
d:\Program Files\Trend Micro\HijackThis\HijackThis.exe

R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Page_URL = http://go.microsoft.com/fwlink/?LinkId=69157
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Default_Search_URL = http://go.microsoft.com/fwlink/?LinkId=54896
R1 - HKLM\Software\Microsoft\Internet Explorer\Main,Search Page = http://go.microsoft.com/fwlink/?LinkId=54896
R0 - HKLM\Software\Microsoft\Internet Explorer\Main,Start Page = http://go.microsoft.com/fwlink/?LinkId=69157
O2 - BHO: Adobe PDF Reader Link Helper - {06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} - C:\Program Files\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll
O2 - BHO: (no name) - {089FD14D-132B-48FC-8861-0048AE113215} - C:\Program Files\SiteAdvisor\6253\SiteAdv.dll
O2 - BHO: Yapta Tagger - {2020dfef-8c87-4229-aa41-549d82210355} - D:\Program Files\Yapta\YaptaOverlay.dll
O2 - BHO: SpywareGuard Download Protection - {4A368E80-174F-4872-96B5-0B27DDD11DB2} - D:\Program Files\SpywareGuard\dlprotect.dll
O2 - BHO: (no name) - {53707962-6F74-2D53-2644-206D7942484F} - D:\Program Files\Spybot - Search & Destroy\Spybot - Search & Destroy\SDHelper.dll
O2 - BHO: (no name) - {724d43a9-0d85-11d4-9908-00400523e39a} - D:\Program Files\Siber Systems\roboform.dll
O2 - BHO: scriptproxy - {7DB2D5A0-7241-4E79-B68D-6309F01C5231} - C:\Program Files\McAfee\VirusScan\scriptsn.dll
O3 - Toolbar: McAfee SiteAdvisor - {0BF43445-2F28-4351-9252-17FE6E806AA0} - C:\Program Files\SiteAdvisor\6253\SiteAdv.dll
O3 - Toolbar: &RoboForm - {724d43a0-0d85-11d4-9908-00400523e39a} - D:\Program Files\Siber Systems\roboform.dll
O4 - HKLM\..\Run: [Yapta Tracker] D:\Program Files\Yapta\YaptaClient.exe /onstartup
O4 - HKLM\..\Run: [WD Button Manager] WDBtnMgr.exe
O4 - HKLM\..\Run: [VAIO Recovery] C:\WINDOWS\Sonysys\VAIO Recovery\PartSeal.exe
O4 - HKLM\..\Run: [TkBellExe] "C:\Program Files\Common Files\Real\Update_OB\realsched.exe" -osboot
O4 - HKLM\..\Run: [SsAAD.exe] C:\PROGRA~1\Sony\SONICS~1\SsAAD.exe
O4 - HKLM\..\Run: [SiteAdvisor] C:\Program Files\SiteAdvisor\6253\SiteAdv.exe
O4 - HKLM\..\Run: [SetIcon] \Program Files\WDC\SetIcon.exe
O4 - HKLM\..\Run: [QuickTime Task] "C:\Program Files\QuickTime\qttask.exe" -atboottime
O4 - HKLM\..\Run: [mcagent_exe] C:\Program Files\McAfee.com\Agent\mcagent.exe /runkey
O4 - HKLM\..\Run: [iTunesHelper] "C:\Program Files\iTunes\iTunesHelper.exe"
O4 - HKLM\..\Run: [IgfxTray] C:\WINDOWS\system32\igfxtray.exe
O4 - HKLM\..\Run: [HotKeysCmds] C:\WINDOWS\system32\hkcmd.exe
O4 - HKLM\..\Run: [ezShieldProtector for Px] C:\WINDOWS\System32\ezSP_Px.exe
O4 - HKLM\..\Run: [EEventManager] C:\Program Files\EPSON\Creativity Suite\Event Manager\EEventManager.exe
O4 - HKLM\..\Run: [DetectorApp] D:\Program Files\Roxio\MyDVD\DetectorApp.exe
O4 - HKLM\..\Run: [ATIPTA] C:\Program Files\ATI Technologies\ATI Control Panel\atiptaxx.exe
O4 - HKLM\..\Run: [AGRSMMSG] AGRSMMSG.exe
O4 - HKCU\..\Run: [ctfmon.exe] C:\WINDOWS\system32\ctfmon.exe
O4 - HKCU\..\Run: [TivoTransfer] "C:\Program Files\Common Files\TiVo Shared\Transfer\TiVoTransfer.exe" /service /registry /auto:TivoTransfer
O4 - HKCU\..\Run: [TivoServer] "D:\Program Files\TiVo\Desktop\TiVoServer.exe" /service /registry /auto:TivoServer
O4 - HKCU\..\Run: [TivoNotify] "D:\Program Files\TiVo\Desktop\TiVoNotify.exe" /service /registry /auto:TivoNotify
O4 - HKCU\..\Run: [RoboForm] "D:\Program Files\Siber Systems\RoboTaskBarIcon.exe"
O4 - HKCU\..\Run: [MSMSGS] "C:\Program Files\Messenger\msmsgs.exe" /background
O4 - Startup: SpywareGuard.lnk = D:\Program Files\SpywareGuard\sgmain.exe
O4 - Startup: Webshots.lnk = D:\Program Files\Webshots\Launcher.exe
O4 - Global Startup: Adobe Gamma Loader.lnk = C:\Program Files\Common Files\Adobe\Calibration\Adobe Gamma Loader.exe
O4 - Global Startup: Microsoft Office.lnk = C:\Program Files\Microsoft Office\Office\OSA9.EXE
O4 - Global Startup: NkvMon.exe.lnk = C:\Program Files\Nikon\NkView6\NkvMon.exe
O8 - Extra context menu item: Customize Menu - file://D:\Program Files\Siber Systems\RoboFormComCustomizeIEMenu.html
O8 - Extra context menu item: Fill Forms - file://D:\Program Files\Siber Systems\RoboFormComFillForms.html
O8 - Extra context menu item: RoboForm Toolbar - file://D:\Program Files\Siber Systems\RoboFormComShowToolbar.html
O8 - Extra context menu item: Save Forms - file://D:\Program Files\Siber Systems\RoboFormComSavePass.html
O9 - Extra button: Yapta.com - {0094A600-9BDD-4019-BAFE-487284F7D476} - http://www.yapta.com/user (file missing)
O9 - Extra button: Yapta Tagger Settings - {0362b485-11fe-469c-ae98-42f478e581a0} - D:\Program Files\Yapta\YaptaSettings.exe
O9 - Extra 'Tools' menuitem: Yapta Tagger Settings... - {0362b485-11fe-469c-ae98-42f478e581a0} - D:\Program Files\Yapta\YaptaSettings.exe
O9 - Extra button: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://D:\Program Files\Siber Systems\RoboFormComFillForms.html
O9 - Extra 'Tools' menuitem: Fill Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F46} - file://D:\Program Files\Siber Systems\RoboFormComFillForms.html
O9 - Extra button: Save - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://D:\Program Files\Siber Systems\RoboFormComSavePass.html
O9 - Extra 'Tools' menuitem: Save Forms - {320AF880-6646-11D3-ABEE-C5DBF3571F49} - file://D:\Program Files\Siber Systems\RoboFormComSavePass.html
O9 - Extra button: RoboForm - {724d43aa-0d85-11d4-9908-00400523e39a} - file://D:\Program Files\Siber Systems\RoboFormComShowToolbar.html
O9 - Extra 'Tools' menuitem: RoboForm Toolbar - {724d43aa-0d85-11d4-9908-00400523e39a} - file://D:\Program Files\Siber Systems\RoboFormComShowToolbar.html
O9 - Extra button: (no name) - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra 'Tools' menuitem: @xpsp3res.dll,-20001 - {e2e2dd38-d088-4134-82b7-f2ba38496583} - C:\WINDOWS\Network Diagnostic\xpnetdiag.exe
O9 - Extra button: Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O9 - Extra 'Tools' menuitem: Windows Messenger - {FB5F1910-F110-11d2-BB9E-00C04F795683} - C:\Program Files\Messenger\msmsgs.exe
O10 - Unknown file in Winsock LSP: c:\windows\system32\nwprovau.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\opls.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\opls.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\opls.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\opls.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\opls.dll
O10 - Unknown file in Winsock LSP: c:\windows\system32\opls.dll
O14 - IERESET.INF: START_PAGE_URL=http://www.sony.com/vaiopeople
O16 - DPF: {01113300-3E00-11D2-8470-0060089874ED} (Support.com Configuration Class) - http://support.fastaccess.com/sdccommon/download/tgctlcm.cab
O16 - DPF: {2E4A92AB-F2C0-456A-9935-B715439790D7} (Setup Class) - https://www.opinionsquare.com/Config/CSetup_xp.cab
O16 - DPF: {406B5949-7190-4245-91A9-30A17DE16AD0} (Snapfish Activia) - http://photos.walmart.com/WalmartActivia.cab
O16 - DPF: {4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21} (McAfee.com Operating System Class) - http://download.mcafee.com/molbin/shared/m...81/mcinsctl.cab
O16 - DPF: {5F8469B4-B055-49DD-83F7-62B522420ECC} (Facebook Photo Uploader Control) - http://upload.facebook.com/controls/Facebo...otoUploader.cab
O16 - DPF: {6F750202-1362-4815-A476-88533DE61D0C} (Kodak Gallery Easy Upload Manager Class) - http://www.kodakgallery.com/downloads/BUM/..._2/axofupld.cab
O16 - DPF: {8401528F-C7D8-446D-8A01-F8DA9491FBB1} (DcaDiagCtrl Class) - http://www.consumerinput.com.edgesuite.net/bot/BotCtrl.cab
O16 - DPF: {8B1BC605-C593-4865-8F5B-05517F0CD0BB} (MSSecurityAdvisorCD Class) - file://F:\Content\include\msSecUcd.cab
O16 - DPF: {93EFDAB8-8800-4896-B428-76F943140E1B} - http://www.consumerinput.com.edgesuite.net...ple/dcainst.cab
O16 - DPF: {9E6C7461-FE4A-41A9-9D35-7468796CF9E7} (AVXControl Class) - http://threatlevel.pcsecurityshield.com/control/avxnew.dll
O16 - DPF: {A8683C98-5341-421B-B23C-8514C05354F1} (FujifilmUploader Class) - http://photo.walmart.com/photo/uploads/Fuj...ploadClient.cab
O16 - DPF: {A922B6AB-3B87-11D3-B3C2-0008C7DA6CB9} (InetDownload Class) - https://media.pineconeresearch.com/ActiveX/...loadcontrol.cab
O16 - DPF: {B8BE5E93-A60C-4D26-A2DC-220313175592} (ZoneIntro Class) - http://cdn2.zone.msn.com/binFramework/v10/...ro.cab53083.cab
O16 - DPF: {BCC0FF27-31D9-4614-A68E-C18E1ADA4389} (DwnldGroupMgr Class) - http://download.mcafee.com/molbin/shared/m...,19/mcgdmgr.cab
O16 - DPF: {BE319D04-18BD-4B34-AECC-EE7CB610FCA9} (BewitchedGameClass Control) - http://www.sonypictures.com/games/bewitched/main.cab
O16 - DPF: {CE28D5D2-60CF-4C7D-9FE8-0F47A3308078} (ActiveDataInfo Class) - https://www-secure.symantec.com/techsupp/ac...ta/SymAData.dll
O16 - DPF: {D27CDB6E-AE6D-11CF-96B8-444553540000} (Shockwave Flash Object) - http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab
O16 - DPF: {E77C0D62-882A-456F-AD8F-7C6C9569B8C7} (ActiveDataObj Class) - https://www-secure.symantec.com/techsupp/ac.../ActiveData.cab
O23 - Service: EPSON Printer Status Agent2 (EPSONStatusAgent2) - SEIKO EPSON CORPORATION - C:\Program Files\Common Files\EPSON\EBAPI\SAgent2.exe
O23 - Service: InstallDriver Table Manager (IDriverT) - Macrovision Corporation - C:\Program Files\Common Files\InstallShield\Driver\11\Intel 32\IDriverT.exe
O23 - Service: iPod Service - Apple Inc. - C:\Program Files\iPod\bin\iPodService.exe
O23 - Service: LexBce Server (LexBceS) - Lexmark International, Inc. - C:\WINDOWS\system32\LEXBCES.EXE
O23 - Service: McAfee Services (mcmscsvc) - McAfee, Inc. - C:\PROGRA~1\McAfee\MSC\mcmscsvc.exe
O23 - Service: McAfee Network Agent (McNASvc) - McAfee, Inc. - c:\program files\common files\mcafee\mna\mcnasvc.exe
O23 - Service: McAfee Scanner (McODS) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcods.exe
O23 - Service: McAfee Proxy Service (McProxy) - McAfee, Inc. - c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
O23 - Service: McAfee Real-time Scanner (McShield) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcshield.exe
O23 - Service: McAfee SystemGuards (McSysmon) - McAfee, Inc. - C:\PROGRA~1\McAfee\VIRUSS~1\mcsysmon.exe
O23 - Service: McAfee Personal Firewall Service (MpfService) - McAfee, Inc. - C:\Program Files\McAfee\MPF\MPFSrv.exe
O23 - Service: MSCSPTISRV - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\MSCSPTISRV.exe
O23 - Service: NVIDIA Driver Helper Service (NVSvc) - NVIDIA Corporation - C:\WINDOWS\System32\nvsvc32.exe
O23 - Service: PACSPTISVR - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\PACSPTISVR.exe
O23 - Service: Retrospect Launcher (RetroLauncher) - Dantz Development Corporation - D:\Program Files\Dantz\Retrospect\retrorun.exe
O23 - Service: Retrospect Helper - Dantz Development Corporation - D:\PROGRA~1\Dantz\RETROS~1\rthlpsvc.exe
O23 - Service: Retrospect WD Service (RetroWDSvc) - Dantz Development Corporation - D:\PROGRA~1\Dantz\RETROS~1\wdsvc.exe
O23 - Service: SiteAdvisor Service - Unknown owner - C:\Program Files\SiteAdvisor\6253\SAService.exe
O23 - Service: Sony SPTI Service (SPTISRV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SPTISRV.exe
O23 - Service: SonicStage SCSI Service (SSScsiSV) - Sony Corporation - C:\Program Files\Common Files\Sony Shared\AVLib\SSScsiSV.exe
O23 - Service: TiVo Beacon (TivoBeacon2) - TiVo Inc. - C:\Program Files\Common Files\TiVo Shared\Beacon\TiVoBeacon.exe
O23 - Service: USBDeviceService - Unknown owner - D:\Program Files\Roxio\MyDVD\USBDeviceService.exe
O23 - Service: VAIO Media Music Server (VAIOMediaPlatform-MusicServer-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Music\SSSvr.exe
O23 - Service: VAIO Media Music Server (HTTP) (VAIOMediaPlatform-MusicServer-HTTP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
O23 - Service: VAIO Media Music Server (UPnP) (VAIOMediaPlatform-MusicServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
O23 - Service: VAIO Media Photo Server (VAIOMediaPlatform-PhotoServer-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Photo\appsrv\PhotoAppSrv.exe
O23 - Service: VAIO Media Photo Server (HTTP) (VAIOMediaPlatform-PhotoServer-HTTP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
O23 - Service: VAIO Media Photo Server (UPnP) (VAIOMediaPlatform-PhotoServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe
O23 - Service: VAIO Media Video Server (VAIOMediaPlatform-VideoServer-AppServer) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Video\GPVSvr.exe
O23 - Service: VAIO Media Video Server (HTTP) (VAIOMediaPlatform-VideoServer-HTTP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe
O23 - Service: VAIO Media Video Server (UPnP) (VAIOMediaPlatform-VideoServer-UPnP) - Sony Corporation - C:\Program Files\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe

--
End of file - 14723 bytes

BC AdBot (Login to Remove)

 


#2 Desperate I

Desperate I
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:01:00 PM

Posted 21 December 2007 - 10:44 AM

A further development... I can't get on the internet today! If I type in "www.yahoo.com" it tells me "the address is not valid" and with msn or anything else, it tells me "IE cannont display the webpage". I have a wireless network and am able to get online with the other computers (which is what I am using now).
Tried restart, but same problem.

Also, forgot to mention on my original post, I had tried to boot in safe mode using F8 and it does not look right. I think I am supposed to see a menu to choose how to start safe mode, but all I get is :
Please select boot device:
SM-Sony DVD RW DW-U14A
1st Floppy Drive
PM-ST3120022A

Ok, now I am really desperate!

Thanks for any help you can give me.

#3 OldTimer

OldTimer

    Malware Expert


  • Members
  • 11,092 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:North Carolina
  • Local time:02:00 PM

Posted 02 January 2008 - 01:35 AM

Hello Desperate I and welcome to the BC HijackThis forum. The only hting I see in this log is some of the 010 items that must be removed. These could have something to do with not being able to connect to the internet, but not any of the other issues you describe. Let's try a different scanner and see what it shows us. If the affected computer cannot connect to the internet then you will need to download the file below to a different computer and transfer it by floppy, CD, or dvd. The same with the log file from the affected computer back to here.

Download WinPFind35u.exe to your Desktop and double-click on it to extract the files. It will create a folder named WinPFind35u on your desktop.

Note: You must be logged on to the system with an account that has Administrator privileges to run this program.
  • Close ALL OTHER PROGRAMS.
  • Open the WinPFind3u folder and double-click on WinPFind35U.exe to start the program.
  • In the Driver Services section click on Non-Microsoft.
  • In the Rootkit Search section click on Yes.
  • Under Additional Scans click the checkboxes in front of the following items to select them:
    • Reg - BotCheck
      Reg - Desktop Components
      Reg - Disabled MS Config Items
      Reg - Software Policy Settings
      File - Additional Folder Scans
  • Do not change any other settings.
  • Now click the Run Scan button on the toolbar.
  • Let it run unhindered until it finishes.
  • When the scan is complete Notepad will open with the report file loaded in it.
  • Click the Format menu and make sure that Wordwrap is not checked. If it is then click on it to uncheck it.
Use the Add Reply button and Copy/Paste the information back here. I will review it when it comes in.

If, after posting, the last line is not < End of Report > then the log is too big to fit into a single post and you will need to split it into multiple posts.

Cheers.

OT
I do not respond to PM's requesting help. That's what the forums are here for. Please use them so that others may benefit from your questions and the responses you receive.
OldTimer

Posted Image

#4 Desperate I

Desperate I
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:01:00 PM

Posted 03 January 2008 - 03:43 PM

Got the internet back up so was able to load program with no problem. Since still no desktop, had to download the back way with ctrl-alt-del and the Windows Task Manager. Thanks for taking time to look at this for me. Here is the scan result:


WinPFind35 logfile created on: 1/3/2008 3:23:06 PM
WinPFind35U Version Beta19 Folder = C:\Documents and Settings\Isabel Perez\Desktop\WinPFind35u
Windows XP Home Edition Service Pack 2 (Version = 5.1.2600) - Type = NTWorkstation
Internet Explorer (Version = 7.0.5730.11)

503.36 Mb Total Physical Memory | 217.32 Mb Available Physical Memory | 43.18% Memory free
1.20 Gb Paging File | 0.92 Gb Available in Paging File | 77.02% Paging File free
Paging file location(s): D:\pagefile.sys 756 1512;

%SystemDrive% = C: | %SystemRoot% = C:\WINDOWS | %ProgramFiles% = C:\Program Files
Drive C: | 13.97 Gb Total Space | 2.06 Gb Free Space | 14.72% Space Free | Partition Type: NTFS
Drive D: | 91.81 Gb Total Space | 20.19 Gb Free Space | 21.99% Space Free | Partition Type: NTFS
E: Drive not present or media not loaded
F: Drive not present or media not loaded

Computer Name: HOME
Current User Name: Isabel Perez
Logged in as Administrator.
Current Boot Mode: Normal
Scan Mode: Current user


[Processes - Non-Microsoft Only]
lexbces.exe -> %System32%\LEXBCES.EXE -> Lexmark International, Inc. [Ver = 8.29 | Size = 303104 bytes | Modified Date = 8/18/2003 5:37:09 AM | Attr = ]
lexpps.exe -> %System32%\LEXPPS.EXE -> Lexmark International, Inc. [Ver = 8.29 | Size = 174592 bytes | Modified Date = 8/18/2003 5:32:55 AM | Attr = ]
applemobiledeviceservice.exe -> %CommonProgramFiles%\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -> Apple, Inc. [Ver = 1, 14, 0, 0 | Size = 110592 bytes | Modified Date = 10/31/2007 2:09:16 PM | Attr = ]
guard.exe -> d:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 22 | Size = 312880 bytes | Modified Date = 5/30/2007 7:31:10 AM | Attr = ]
sagent2.exe -> %CommonProgramFiles%\EPSON\EBAPI\SAgent2.exe -> SEIKO EPSON CORPORATION [Ver = 2, 2, 0, 0 | Size = 90112 bytes | Modified Date = 10/25/2001 1:02:00 AM | Attr = ]
mcmscsvc.exe -> %ProgramFiles%\McAfee\MSC\mcmscsvc.exe -> McAfee, Inc. [Ver = 8,0,238,0 | Size = 749904 bytes | Modified Date = 8/4/2007 3:08:06 AM | Attr = ]
mcnasvc.exe -> %CommonProgramFiles%\McAfee\MNA\McNASvc.exe -> McAfee, Inc. [Ver = 2,0,136,0 | Size = 2376992 bytes | Modified Date = 7/22/2007 8:15:18 PM | Attr = ]
mcproxy.exe -> %CommonProgramFiles%\McAfee\McProxy\McProxy.exe -> McAfee, Inc. [Ver = 2,0,150,0 | Size = 359248 bytes | Modified Date = 8/15/2007 12:36:04 PM | Attr = ]
mcshield.exe -> %ProgramFiles%\McAfee\VirusScan\Mcshield.exe -> McAfee, Inc. [Ver = VSCORE.14.0.0.349.x86 | Size = 144704 bytes | Modified Date = 7/24/2007 12:02:14 PM | Attr = ]
mpfsrv.exe -> %ProgramFiles%\McAfee\MPF\MpfSrv.exe -> McAfee, Inc. [Ver = 9.0.136.0 | Size = 856864 bytes | Modified Date = 7/18/2007 3:54:42 PM | Attr = ]
retrorun.exe -> D:\Program Files\Dantz\Retrospect\retrorun.exe -> Dantz Development Corporation [Ver = 6.5.342 | Size = 49152 bytes | Modified Date = 11/12/2003 12:46:34 PM | Attr = ]
wdsvc.exe -> D:\Program Files\Dantz\Retrospect\wdsvc.exe -> Dantz Development Corporation [Ver = 6.5.342 | Size = 46592 bytes | Modified Date = 12/10/2003 7:09:34 AM | Attr = R ]
saservice.exe -> %ProgramFiles%\SiteAdvisor\6253\SAService.exe -> [Ver = | Size = 345376 bytes | Modified Date = 12/17/2007 10:41:22 AM | Attr = ]
tivobeacon.exe -> %CommonProgramFiles%\TiVo Shared\Beacon\TiVoBeacon.exe -> TiVo Inc. [Ver = 1.4 | Size = 857088 bytes | Modified Date = 6/20/2006 6:23:18 AM | Attr = ]
usbdeviceservice.exe -> D:\Program Files\Roxio\MyDVD\USBDeviceService.exe -> [Ver = 1, 0, 0, 1 | Size = 90112 bytes | Modified Date = 1/28/2006 5:16:00 AM | Attr = ]
mcagent.exe -> %ProgramFiles%\McAfee.com\Agent\mcagent.exe -> McAfee, Inc. [Ver = 8,0,237,0 | Size = 582992 bytes | Modified Date = 8/3/2007 10:33:14 PM | Attr = ]
mcsysmon.exe -> %ProgramFiles%\McAfee\VirusScan\mcsysmon.exe -> McAfee, Inc. [Ver = 12,0,188,0 | Size = 695624 bytes | Modified Date = 7/25/2007 1:41:52 AM | Attr = ]
siteadv.exe -> %ProgramFiles%\SiteAdvisor\6253\SiteAdv.exe -> McAfee, Inc. [Ver = 1.6.0.23 | Size = 35992 bytes | Modified Date = 7/24/2006 3:28:22 PM | Attr = ]
winpfind35u.exe -> %UserDesktop%\WinPFind35u\WinPFind35U.exe -> OldTimer Tools [Ver = 1.0.0.0 | Size = 435712 bytes | Modified Date = 1/2/2008 8:01:42 PM | Attr = ]

[Win32 Services - Non-Microsoft Only]
(Apple Mobile Device) Apple Mobile Device [Win32_Own | Auto | Running] -> %CommonProgramFiles%\Apple\Mobile Device Support\bin\AppleMobileDeviceService.exe -> Apple, Inc. [Ver = 1, 14, 0, 0 | Size = 110592 bytes | Modified Date = 10/31/2007 2:09:16 PM | Attr = ]
(AVG Anti-Spyware Guard) AVG Anti-Spyware Guard [Win32_Own | Auto | Running] -> d:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 22 | Size = 312880 bytes | Modified Date = 5/30/2007 7:31:10 AM | Attr = ]
(dmadmin) Logical Disk Manager Administrative Service [Win32_Shared | On_Demand | Stopped] -> %System32%\dmadmin.exe -> Microsoft Corp., Veritas Software [Ver = 2600.2180.503.0 | Size = 224768 bytes | Modified Date = 8/4/2004 2:56:48 AM | Attr = ]
(EPSONStatusAgent2) EPSON Printer Status Agent2 [Win32_Own | Auto | Running] -> %CommonProgramFiles%\EPSON\EBAPI\SAgent2.exe -> SEIKO EPSON CORPORATION [Ver = 2, 2, 0, 0 | Size = 90112 bytes | Modified Date = 10/25/2001 1:02:00 AM | Attr = ]
(gusvc) Google Updater Service [Win32_Own | Disabled | Stopped] -> %ProgramFiles%\Google\Common\Google Updater\GoogleUpdaterService.exe -> File not found
(IDriverT) InstallDriver Table Manager [Win32_Own | On_Demand | Stopped] -> %CommonProgramFiles%\InstallShield\Driver\11\Intel 32\IDriverT.exe -> Macrovision Corporation [Ver = 11.00.28844 | Size = 69632 bytes | Modified Date = 4/4/2005 12:41:10 AM | Attr = ]
(iPod Service) iPod Service [Win32_Own | On_Demand | Stopped] -> %ProgramFiles%\iPod\bin\iPodService.exe -> Apple Inc. [Ver = 7.5.0.20 | Size = 504104 bytes | Modified Date = 12/11/2007 12:10:16 PM | Attr = ]
(LexBceS) LexBce Server [Win32_Own | Auto | Running] -> %System32%\LEXBCES.EXE -> Lexmark International, Inc. [Ver = 8.29 | Size = 303104 bytes | Modified Date = 8/18/2003 5:37:09 AM | Attr = ]
(mcmscsvc) McAfee Services [Win32_Own | Auto | Running] -> %ProgramFiles%\McAfee\MSC\mcmscsvc.exe -> McAfee, Inc. [Ver = 8,0,238,0 | Size = 749904 bytes | Modified Date = 8/4/2007 3:08:06 AM | Attr = ]
(McNASvc) McAfee Network Agent [Win32_Own | Auto | Running] -> %CommonProgramFiles%\McAfee\MNA\McNASvc.exe -> McAfee, Inc. [Ver = 2,0,136,0 | Size = 2376992 bytes | Modified Date = 7/22/2007 8:15:18 PM | Attr = ]
(McODS) McAfee Scanner [Win32_Own | On_Demand | Stopped] -> %ProgramFiles%\McAfee\VirusScan\mcods.exe -> McAfee, Inc. [Ver = 12,0,172,0 | Size = 378184 bytes | Modified Date = 7/25/2007 2:16:16 AM | Attr = ]
(McProxy) McAfee Proxy Service [Win32_Own | Auto | Running] -> %CommonProgramFiles%\McAfee\McProxy\McProxy.exe -> McAfee, Inc. [Ver = 2,0,150,0 | Size = 359248 bytes | Modified Date = 8/15/2007 12:36:04 PM | Attr = ]
(McShield) McAfee Real-time Scanner [Win32_Own | Unknown | Running] -> -> File not found
(McSysmon) McAfee SystemGuards [Win32_Own | On_Demand | Running] -> %ProgramFiles%\McAfee\VirusScan\mcsysmon.exe -> McAfee, Inc. [Ver = 12,0,188,0 | Size = 695624 bytes | Modified Date = 7/25/2007 1:41:52 AM | Attr = ]
(MpfService) McAfee Personal Firewall Service [Win32_Own | Auto | Running] -> %ProgramFiles%\McAfee\MPF\MpfSrv.exe -> McAfee, Inc. [Ver = 9.0.136.0 | Size = 856864 bytes | Modified Date = 7/18/2007 3:54:42 PM | Attr = ]
(MSCSPTISRV) MSCSPTISRV [Win32_Own | On_Demand | Stopped] -> %CommonProgramFiles%\Sony Shared\AVLib\MSCSPTISRV.exe -> Sony Corporation [Ver = 4.1.00.13261 | Size = 53337 bytes | Modified Date = 1/26/2005 2:30:04 PM | Attr = ]
(NVSvc) NVIDIA Driver Helper Service [Win32_Own | Auto | Stopped] -> %System32%\nvsvc32.exe -> NVIDIA Corporation [Ver = 6.14.10.4528 | Size = 77824 bytes | Modified Date = 8/18/2003 8:56:00 PM | Attr = ]
(PACSPTISVR) PACSPTISVR [Win32_Own | On_Demand | Stopped] -> %CommonProgramFiles%\Sony Shared\AVLib\PACSPTISVR.exe -> Sony Corporation [Ver = 4.1.00.13261 | Size = 53337 bytes | Modified Date = 1/26/2005 2:25:34 PM | Attr = ]
(RetroLauncher) Retrospect Launcher [Win32_Own | Auto | Running] -> D:\Program Files\Dantz\Retrospect\retrorun.exe -> Dantz Development Corporation [Ver = 6.5.342 | Size = 49152 bytes | Modified Date = 11/12/2003 12:46:34 PM | Attr = ]
(Retrospect Helper) Retrospect Helper [Win32_Own | Auto | Stopped] -> D:\Program Files\Dantz\Retrospect\rthlpsvc.exe -> Dantz Development Corporation [Ver = 6.5.342 | Size = 110592 bytes | Modified Date = 11/12/2003 12:46:34 PM | Attr = ]
(RetroWDSvc) Retrospect WD Service [Win32_Own | Auto | Running] -> D:\Program Files\Dantz\Retrospect\wdsvc.exe -> Dantz Development Corporation [Ver = 6.5.342 | Size = 46592 bytes | Modified Date = 12/10/2003 7:09:34 AM | Attr = R ]
(SiteAdvisor Service) SiteAdvisor Service [Win32_Own | Auto | Running] -> %ProgramFiles%\SiteAdvisor\6253\SAService.exe -> [Ver = | Size = 345376 bytes | Modified Date = 12/17/2007 10:41:22 AM | Attr = ]
(SPTISRV) Sony SPTI Service [Win32_Own | On_Demand | Stopped] -> %CommonProgramFiles%\Sony Shared\AVLib\SPTISRV.exe -> Sony Corporation [Ver = 4.1.00.13261 | Size = 69718 bytes | Modified Date = 1/26/2005 2:20:14 PM | Attr = ]
(SSScsiSV) SonicStage SCSI Service [Win32_Own | On_Demand | Stopped] -> %CommonProgramFiles%\Sony Shared\AVLib\SSScsiSV.exe -> Sony Corporation [Ver = 3.1.00.03110 | Size = 69632 bytes | Modified Date = 3/11/2005 4:43:08 AM | Attr = ]
(TivoBeacon2) TiVo Beacon [Win32_Shared | Auto | Running] -> %CommonProgramFiles%\TiVo Shared\Beacon\TiVoBeacon.exe -> TiVo Inc. [Ver = 1.4 | Size = 857088 bytes | Modified Date = 6/20/2006 6:23:18 AM | Attr = ]
(USBDeviceService) USBDeviceService [Win32_Own | Auto | Running] -> D:\Program Files\Roxio\MyDVD\USBDeviceService.exe -> [Ver = 1, 0, 0, 1 | Size = 90112 bytes | Modified Date = 1/28/2006 5:16:00 AM | Attr = ]
(VAIOMediaPlatform-MusicServer-AppServer) VAIO Media Music Server [Win32_Own | On_Demand | Stopped] -> %ProgramFiles%\Sony\VAIO Media Integrated Server\Music\SSSvr.exe -> Sony Corporation [Ver = 2.6.00.10031 | Size = 503897 bytes | Modified Date = 10/21/2003 12:00:08 AM | Attr = ]
(VAIOMediaPlatform-MusicServer-HTTP) VAIO Media Music Server (HTTP) [Win32_Shared | On_Demand | Stopped] -> %ProgramFiles%\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe -> Sony Corporation [Ver = 2.6.00.06090 | Size = 57344 bytes | Modified Date = 10/21/2003 12:00:38 AM | Attr = ]
(VAIOMediaPlatform-MusicServer-UPnP) VAIO Media Music Server (UPnP) [Win32_Own | On_Demand | Stopped] -> %ProgramFiles%\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe -> Sony Corporation [Ver = 4.0.00.10030 | Size = 712704 bytes | Modified Date = 10/21/2003 12:00:40 AM | Attr = ]
(VAIOMediaPlatform-PhotoServer-AppServer) VAIO Media Photo Server [Win32_Own | On_Demand | Stopped] -> %ProgramFiles%\Sony\VAIO Media Integrated Server\Photo\appsrv\PhotoAppSrv.exe -> Sony Corporation [Ver = 2, 6, 0,08280 | Size = 925696 bytes | Modified Date = 10/21/2003 12:00:14 AM | Attr = ]
(VAIOMediaPlatform-PhotoServer-HTTP) VAIO Media Photo Server (HTTP) [Win32_Shared | On_Demand | Stopped] -> %ProgramFiles%\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe -> Sony Corporation [Ver = 2.6.00.06090 | Size = 57344 bytes | Modified Date = 10/21/2003 12:00:38 AM | Attr = ]
(VAIOMediaPlatform-PhotoServer-UPnP) VAIO Media Photo Server (UPnP) [Win32_Own | On_Demand | Stopped] -> %ProgramFiles%\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe -> Sony Corporation [Ver = 4.0.00.10030 | Size = 712704 bytes | Modified Date = 10/21/2003 12:00:40 AM | Attr = ]
(VAIOMediaPlatform-VideoServer-AppServer) VAIO Media Video Server [Win32_Own | On_Demand | Stopped] -> %ProgramFiles%\Sony\VAIO Media Integrated Server\Video\GPVSvr.exe -> Sony Corporation [Ver = 2, 6, 00, 06050 | Size = 1286144 bytes | Modified Date = 10/21/2003 12:00:56 AM | Attr = ]
(VAIOMediaPlatform-VideoServer-HTTP) VAIO Media Video Server (HTTP) [Win32_Shared | On_Demand | Stopped] -> %ProgramFiles%\Sony\VAIO Media Integrated Server\Platform\SV_Httpd.exe -> Sony Corporation [Ver = 2.6.00.06090 | Size = 57344 bytes | Modified Date = 10/21/2003 12:00:38 AM | Attr = ]
(VAIOMediaPlatform-VideoServer-UPnP) VAIO Media Video Server (UPnP) [Win32_Own | On_Demand | Stopped] -> %ProgramFiles%\Sony\VAIO Media Integrated Server\Platform\UPnPFramework.exe -> Sony Corporation [Ver = 4.0.00.10030 | Size = 712704 bytes | Modified Date = 10/21/2003 12:00:40 AM | Attr = ]

[Driver Services - Non-Microsoft Only]
(Abiosdsk) Abiosdsk [Kernel | Disabled | Stopped] -> -> File not found
(abp480n5) abp480n5 [Kernel | Disabled | Stopped] -> -> File not found
(adpu160m) adpu160m [Kernel | Disabled | Stopped] -> -> File not found
(aeaudio) aeaudio [Kernel | On_Demand | Running] -> %System32%\drivers\aeaudio.sys -> Andrea Electronics Corporation [Ver = 1.0.0.2 (STUB) | Size = 4816 bytes | Modified Date = 4/1/2002 5:15:00 PM | Attr = ]
(AgereSoftModem) Agere Systems Soft Modem [Kernel | On_Demand | Running] -> %System32%\drivers\AGRSM.sys -> Agere Systems [Ver = 2.1.30 2.1.30 05/23/2003 10:44:02 | Size = 1171648 bytes | Modified Date = 5/23/2003 1:44:00 PM | Attr = ]
(Aha154x) Aha154x [Kernel | Disabled | Stopped] -> -> File not found
(aic78u2) aic78u2 [Kernel | Disabled | Stopped] -> -> File not found
(aic78xx) aic78xx [Kernel | Disabled | Stopped] -> -> File not found
(AliIde) AliIde [Kernel | Disabled | Stopped] -> -> File not found
(amsint) amsint [Kernel | Disabled | Stopped] -> -> File not found
(asc) asc [Kernel | Disabled | Stopped] -> -> File not found
(asc3350p) asc3350p [Kernel | Disabled | Stopped] -> -> File not found
(asc3550) asc3550 [Kernel | Disabled | Stopped] -> -> File not found
(Aspi32) Aspi32 [Kernel | Auto | Running] -> %System32%\drivers\aspi32.sys -> Adaptec [Ver = 4.60 (1021) | Size = 25244 bytes | Modified Date = 9/10/1999 7:06:00 AM | Attr = ]
(Atdisk) Atdisk [Kernel | Disabled | Stopped] -> -> File not found
(ati2mtag) ati2mtag [Kernel | On_Demand | Stopped] -> %System32%\drivers\ati2mtag.sys -> ATI Technologies Inc. [Ver = 6.14.10.6396 | Size = 621056 bytes | Modified Date = 11/16/2003 12:40:34 AM | Attr = ]
(AVG Anti-Spyware Driver) AVG Anti-Spyware Driver [Kernel | System | Running] -> d:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys -> [Ver = | Size = 11000 bytes | Modified Date = 5/30/2007 7:10:42 AM | Attr = ]
(AvgAsCln) AVG Anti-Spyware Clean Driver [Kernel | System | Running] -> %System32%\drivers\AvgAsCln.sys -> GRISOFT, s.r.o. [Ver = 1.0.0.14 | Size = 10872 bytes | Modified Date = 5/30/2007 7:10:42 AM | Attr = ]
(cd20xrnt) cd20xrnt [Kernel | Disabled | Stopped] -> -> File not found
(Changer) Changer [Kernel | System | Stopped] -> -> File not found
(CmdIde) CmdIde [Kernel | Disabled | Stopped] -> -> File not found
(Cpqarray) Cpqarray [Kernel | Disabled | Stopped] -> -> File not found
(dac960nt) dac960nt [Kernel | Disabled | Stopped] -> -> File not found
(dmboot) dmboot [Kernel | Disabled | Stopped] -> %System32%\drivers\dmboot.sys -> Microsoft Corp., Veritas Software [Ver = 2600.2180.503.0 | Size = 799744 bytes | Modified Date = 8/4/2004 1:07:17 AM | Attr = ]
(DMICall) Sony DMI Call service [Kernel | System | Running] -> %System32%\drivers\DMICall.sys -> Sony Corporation [Ver = 1.0.01.12050 | Size = 3952 bytes | Modified Date = 12/5/2000 7:18:02 PM | Attr = R ]
(dmio) dmio [Kernel | Disabled | Stopped] -> %System32%\drivers\dmio.sys -> Microsoft Corp., Veritas Software [Ver = 2600.2180.503.0 | Size = 153344 bytes | Modified Date = 8/4/2004 1:07:16 AM | Attr = ]
(dmload) dmload [Kernel | Disabled | Stopped] -> %System32%\drivers\dmload.sys -> Microsoft Corp., Veritas Software. [Ver = 2600.0.503.0 | Size = 5888 bytes | Modified Date = 3/31/2003 7:00:00 AM | Attr = ]
(dpti2o) dpti2o [Kernel | Disabled | Stopped] -> -> File not found
(E1000) Intel® PRO/1000 Adapter Driver [Kernel | On_Demand | Stopped] -> %System32%\drivers\e1000325.sys -> Intel Corporation [Ver = 7.0.36.0 built by: WinDDK | Size = 121344 bytes | Modified Date = 3/11/2003 8:21:38 AM | Attr = ]
(E100B) Intel® PRO Adapter Driver [Kernel | On_Demand | Running] -> %System32%\drivers\e100b325.sys -> Intel Corporation [Ver = 7.0.26.0 built by: WinDDK | Size = 145408 bytes | Modified Date = 3/4/2003 2:56:26 PM | Attr = ]
(EL90XBC) 3Com EtherLink XL 90XB/C Adapter Driver [Kernel | On_Demand | Stopped] -> %System32%\drivers\el90xbc5.sys -> 3Com Corporation [Ver = 4.05.00.0000 | Size = 66591 bytes | Modified Date = 8/17/2001 7:11:06 AM | Attr = ]
(GEARAspiWDM) GEAR CDRom Filter [Kernel | On_Demand | Running] -> %System32%\drivers\GEARAspiWDM.sys -> GEAR Software Inc. [Ver = 2.0.6.1 | Size = 15664 bytes | Modified Date = 9/19/2006 3:44:04 PM | Attr = ]
(hpn) hpn [Kernel | Disabled | Stopped] -> -> File not found
(i2omgmt) i2omgmt [Kernel | System | Stopped] -> -> File not found
(i2omp) i2omp [Kernel | Disabled | Stopped] -> -> File not found
(ialm) ialm [Kernel | On_Demand | Running] -> %System32%\drivers\ialmnt5.sys -> Intel Corporation [Ver = 6.14.10.3943 | Size = 773565 bytes | Modified Date = 11/2/2004 9:27:20 AM | Attr = ]
(ini910u) ini910u [Kernel | Disabled | Stopped] -> -> File not found
(inibtmgr) WD Bridge Controller Driver [Kernel | On_Demand | Stopped] -> %System32%\drivers\inibtmgr.sys -> Western Digital [Ver = 1.1.0.9 | Size = 9728 bytes | Modified Date = 12/7/2003 10:53:06 AM | Attr = R ]
(IntelIde) IntelIde [Kernel | Disabled | Stopped] -> -> File not found
(lbrtfdc) lbrtfdc [Kernel | System | Stopped] -> -> File not found
(mfeavfk) McAfee Inc. [Kernel | On_Demand | Running] -> %System32%\drivers\mfeavfk.sys -> McAfee, Inc. [Ver = SYSCORE.14.0.0.284.x86 | Size = 79304 bytes | Modified Date = 7/24/2007 7:40:36 AM | Attr = ]
(mfebopk) McAfee Inc. [Kernel | On_Demand | Running] -> %System32%\drivers\mfebopk.sys -> McAfee, Inc. [Ver = SYSCORE.14.0.0.284.x86 | Size = 35240 bytes | Modified Date = 7/21/2007 9:08:24 AM | Attr = ]
(mfehidk) McAfee Inc. [Kernel | System | Running] -> %System32%\drivers\mfehidk.sys -> McAfee, Inc. [Ver = SYSCORE.14.0.0.284.x86 | Size = 201288 bytes | Modified Date = 7/21/2007 9:08:24 AM | Attr = ]
(mferkdk) McAfee Inc. [Kernel | On_Demand | Stopped] -> %System32%\drivers\mferkdk.sys -> McAfee, Inc. [Ver = SYSCORE.14.0.0.284.x86 | Size = 33800 bytes | Modified Date = 7/24/2007 12:02:36 PM | Attr = ]
(mfesmfk) McAfee Inc. [Kernel | On_Demand | Running] -> %System32%\drivers\mfesmfk.sys -> McAfee, Inc. [Ver = SYSCORE.14.0.0.284.x86 | Size = 40488 bytes | Modified Date = 7/21/2007 9:08:24 AM | Attr = ]
(MPFP) MPFP [Kernel | System | Running] -> %System32%\drivers\Mpfp.sys -> McAfee, Inc. [Ver = 9.0.114.0 | Size = 113952 bytes | Modified Date = 7/13/2007 9:20:24 AM | Attr = ]
(mraid35x) mraid35x [Kernel | Disabled | Stopped] -> -> File not found
(nv) nv [Kernel | On_Demand | Stopped] -> %System32%\drivers\nv4_mini.sys -> NVIDIA Corporation [Ver = 6.14.10.4528 | Size = 1343803 bytes | Modified Date = 8/18/2003 8:56:00 PM | Attr = ]
(PalmUSBD) PalmUSBD [Kernel | On_Demand | Stopped] -> %System32%\drivers\PalmUSBD.sys -> Palm, Inc. [Ver = 1, 4, 0, 0 | Size = 16509 bytes | Modified Date = 7/19/2003 8:14:14 PM | Attr = ]
(PCIDump) PCIDump [Kernel | System | Stopped] -> -> File not found
(PDCOMP) PDCOMP [Kernel | On_Demand | Stopped] -> -> File not found
(PDFRAME) PDFRAME [Kernel | On_Demand | Stopped] -> -> File not found
(PDRELI) PDRELI [Kernel | On_Demand | Stopped] -> -> File not found
(PDRFRAME) PDRFRAME [Kernel | On_Demand | Stopped] -> -> File not found
(perc2) perc2 [Kernel | Disabled | Stopped] -> -> File not found
(perc2hib) perc2hib [Kernel | Disabled | Stopped] -> -> File not found
(Ptilink) Direct Parallel Link Driver [Kernel | On_Demand | Running] -> %System32%\drivers\ptilink.sys -> Parallel Technologies, Inc. [Ver = 1.10 (XPClient.010817-1148) | Size = 17792 bytes | Modified Date = 3/31/2003 7:00:00 AM | Attr = ]
(PxHelp20) PxHelp20 [Kernel | Boot | Running] -> %System32%\drivers\pxhelp20.sys -> Sonic Solutions [Ver = 2.03.32a | Size = 20640 bytes | Modified Date = 4/25/2005 1:03:00 AM | Attr = ]
(ql1080) ql1080 [Kernel | Disabled | Stopped] -> -> File not found
(Ql10wnt) Ql10wnt [Kernel | Disabled | Stopped] -> -> File not found
(ql12160) ql12160 [Kernel | Disabled | Stopped] -> -> File not found
(ql1240) ql1240 [Kernel | Disabled | Stopped] -> -> File not found
(ql1280) ql1280 [Kernel | Disabled | Stopped] -> -> File not found
(Secdrv) Secdrv [Kernel | On_Demand | Stopped] -> %System32%\drivers\secdrv.sys -> Macrovision Corporation, Macrovision Europe Limited, and Macrovision Japan and Asia K.K. [Ver = 4.03.086 | Size = 20480 bytes | Modified Date = 11/13/2007 5:25:53 AM | Attr = ]
(Simbad) Simbad [Kernel | Disabled | Stopped] -> -> File not found
(smrt) Sony MPEG RealTime encoder board [Kernel | On_Demand | Stopped] -> %System32%\drivers\smrt.sys -> Sony Corporation [Ver = 1.1.03.10300 | Size = 766848 bytes | Modified Date = 10/30/2003 2:20:54 PM | Attr = ]
(smwdm) smwdm [Kernel | On_Demand | Running] -> %System32%\drivers\smwdm.sys -> Analog Devices, Inc. [Ver = 5.12.01.3860 | Size = 594048 bytes | Modified Date = 10/1/2003 5:48:24 PM | Attr = ]
(SONYPVU1) Sony USB Filter Driver (SONYPVU1) [Kernel | On_Demand | Stopped] -> %System32%\drivers\SONYPVU1.SYS -> Sony Corporation [Ver = 1.3.0526.0 (XPClient.010817-1148) | Size = 7552 bytes | Modified Date = 8/17/2001 1:56:16 PM | Attr = ]
(Sparrow) Sparrow [Kernel | Disabled | Stopped] -> -> File not found
(StMp3Rec) Player Recovery Device Control Driver [Kernel | On_Demand | Stopped] -> %System32%\drivers\StMp3Rec.sys -> Generic [Ver = 1, 551, 0, 139 | Size = 38229 bytes | Modified Date = 12/18/2004 11:32:32 PM | Attr = ]
(symc810) symc810 [Kernel | Disabled | Stopped] -> -> File not found
(symc8xx) symc8xx [Kernel | Disabled | Stopped] -> -> File not found
(sym_hi) sym_hi [Kernel | Disabled | Stopped] -> -> File not found
(sym_u3) sym_u3 [Kernel | Disabled | Stopped] -> -> File not found
(TosIde) TosIde [Kernel | Disabled | Stopped] -> -> File not found
(TPkd) TPkd [Kernel | Boot | Running] -> %System32%\drivers\TPkd.sys -> PACE Anti-Piracy, Inc. [Ver = 5.1.2.2115 | Size = 69120 bytes | Modified Date = 9/14/2004 5:46:38 PM | Attr = ]
(ultra) ultra [Kernel | Disabled | Stopped] -> -> File not found
(USBAAPL) Apple Mobile USB Driver [Kernel | On_Demand | Stopped] -> %System32%\drivers\usbaapl.sys -> Apple, Inc. [Ver = 1, 25, 0, 0 | Size = 30464 bytes | Modified Date = 10/31/2007 2:09:14 PM | Attr = ]
(ViaIde) ViaIde [Kernel | Disabled | Stopped] -> -> File not found
(WDICA) WDICA [Kernel | On_Demand | Stopped] -> -> File not found
({6080A529-897E-4629-A488-ABA0C29B635E}) Intel® Graphics Platform (SoftBIOS) Driver [Kernel | On_Demand | Stopped] -> %System32%\drivers\ialmsbw.sys -> Intel Corporation [Ver = 6.13.10.3510 | Size = 113504 bytes | Modified Date = 4/15/2003 12:40:54 PM | Attr = ]
({D31A0762-0CEB-444e-ACFF-B049A1F6FE91}) Intel® Graphics Chipset (KCH) Driver [Kernel | On_Demand | Stopped] -> %System32%\drivers\ialmkchw.sys -> Intel Corporation [Ver = 6.13.10.3510 | Size = 78752 bytes | Modified Date = 4/15/2003 12:40:46 PM | Attr = ]

[Registry - Non-Microsoft Only]
< Run [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
!AVG Anti-Spyware -> d:\Program Files\Grisoft\AVG Anti-Spyware 7.5\avgas.exe -> GRISOFT s.r.o. [Ver = 7, 5, 1, 43 | Size = 6731312 bytes | Modified Date = 6/11/2007 4:25:42 AM | Attr = ]
AGRSMMSG -> %SystemRoot%\AGRSMMSG.exe -> Agere Systems [Ver = 2.1.30 2.1.30 05/23/2003 10:43:49 | Size = 88363 bytes | Modified Date = 5/23/2003 1:43:00 PM | Attr = ]
ATIPTA -> %ProgramFiles%\ATI Technologies\ATI Control Panel\atiptaxx.exe -> ATI Technologies, Inc. [Ver = 6.14.10.5069 | Size = 335872 bytes | Modified Date = 11/16/2003 | Attr = ]
DetectorApp -> D:\Program Files\Roxio\MyDVD\DetectorApp.exe -> [Ver = 1, 0, 0, 6 | Size = 102400 bytes | Modified Date = 1/28/2006 5:16:00 AM | Attr = ]
EEventManager -> %ProgramFiles%\epson\Creativity Suite\Event Manager\EEventManager.exe -> SEIKO EPSON CORPORATION [Ver = 1, 8, 0, 0 | Size = 102400 bytes | Modified Date = 10/12/2006 2:57:08 PM | Attr = ]
ezShieldProtector for Px -> %System32%\ezSP_Px.exe -> Easy Systems Japan Ltd. [Ver = 1, 0, 0, 0 | Size = 40960 bytes | Modified Date = 8/20/2002 1:29:26 PM | Attr = ]
HotKeysCmds -> %System32%\hkcmd.exe -> Intel Corporation [Ver = 3.0.0.3943 | Size = 126976 bytes | Modified Date = 11/2/2004 8:59:42 AM | Attr = ]
IgfxTray -> %System32%\igfxtray.exe -> Intel Corporation [Ver = 3.0.0.3943 | Size = 155648 bytes | Modified Date = 11/2/2004 9:03:44 AM | Attr = ]
iTunesHelper -> D:\Program Files\iTunesHelper.exe -> Apple Inc. [Ver = 7.5.0.20 | Size = 267048 bytes | Modified Date = 12/11/2007 12:10:26 PM | Attr = ]
mcagent_exe -> %ProgramFiles%\McAfee.com\Agent\mcagent.exe -> McAfee, Inc. [Ver = 8,0,237,0 | Size = 582992 bytes | Modified Date = 8/3/2007 10:33:14 PM | Attr = ]
QuickTime Task -> %ProgramFiles%\QuickTime\QTTask.exe -> Apple Inc. [Ver = 7.3.1 | Size = 286720 bytes | Modified Date = 12/11/2007 10:56:54 AM | Attr = ]
RegistryMechanic -> -> File not found
SetIcon -> WDC\SetIcon.exe -> File not found
SiteAdvisor -> %ProgramFiles%\SiteAdvisor\6253\SiteAdv.exe -> McAfee, Inc. [Ver = 1.6.0.23 | Size = 35992 bytes | Modified Date = 7/24/2006 3:28:22 PM | Attr = ]
SsAAD.exe -> %ProgramFiles%\Sony\SonicStage\SSAAD.exe -> [Ver = 3.1.00.03110 | Size = 81920 bytes | Modified Date = 3/11/2005 6:08:32 AM | Attr = ]
TkBellExe -> %CommonProgramFiles%\Real\Update_OB\realsched.exe -> RealNetworks, Inc. [Ver = 0.1.0.3492 | Size = 180269 bytes | Modified Date = 1/18/2006 8:27:23 AM | Attr = ]
VAIO Recovery -> %SystemRoot%\SONYSYS\VAIO Recovery\PartSeal.exe -> Sony Electronics Inc [Ver = 1.0.2 | Size = 28672 bytes | Modified Date = 4/20/2003 12:08:44 AM | Attr = ]
WD Button Manager -> %System32%\WDBtnMgr.exe -> Western Digital Technologies, Inc. [Ver = 1, 0, 17, 0 | Size = 335872 bytes | Modified Date = 7/31/2006 2:20:29 PM | Attr = ]
Yapta Tracker -> D:\Program Files\Yapta\YaptaClient.exe -> Yapta, Inc. [Ver = 1.1.0.2 | Size = 304696 bytes | Modified Date = 5/31/2007 12:31:14 PM | Attr = ]
< Run [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Run ->
RoboForm -> D:\Program Files\Siber Systems\robotaskbaricon.exe -> Siber Systems [Ver = 6-9-84 | Size = 160592 bytes | Modified Date = 11/25/2007 2:47:40 PM | Attr = ]
TivoNotify -> D:\Program Files\TiVo\Desktop\TiVoNotify.exe -> TiVo Inc. [Ver = 1.0 | Size = 341504 bytes | Modified Date = 6/20/2006 6:25:16 AM | Attr = ]
TivoServer -> D:\Program Files\TiVo\Desktop\TiVoServer.exe -> TiVo Inc. [Ver = 1.3 | Size = 1313792 bytes | Modified Date = 6/20/2006 6:27:22 AM | Attr = ]
TivoTransfer -> %CommonProgramFiles%\TiVo Shared\Transfer\TiVoTransfer.exe -> TiVo Inc. [Ver = 1.2 | Size = 1174528 bytes | Modified Date = 6/20/2006 6:24:28 AM | Attr = ]
*MultiFile Done* -> ->
< All Users Startup Folder > -> C:\Documents and Settings\All Users\Start Menu\Programs\Startup ->
%AllUsersStartup%\Adobe Gamma Loader.lnk -> %CommonProgramFiles%\Adobe\Calibration\Adobe Gamma Loader.exe -> Adobe Systems, Inc. [Ver = 1, 0, 0, 1 | Size = 113664 bytes | Modified Date = 11/4/1999 2:06:48 PM | Attr = ]
-> %AllUsersStartup%\desktop.ini -> [Ver = | Size = 84 bytes | Modified Date = 12/1/2003 8:36:02 PM | Attr = HS]
%AllUsersStartup%\NkvMon.exe.lnk -> %ProgramFiles%\Nikon\NkView6\NkvMon.exe -> Nikon Corporation [Ver = 6, 2, 0, 3000 | Size = 233472 bytes | Modified Date = 12/5/2003 9:44:34 AM | Attr = ]
< Isabel Perez Startup Folder > -> C:\Documents and Settings\Isabel Perez\Start Menu\Programs\Startup ->
-> %UserStartup%\desktop.ini -> [Ver = | Size = 84 bytes | Modified Date = 12/1/2003 8:36:02 PM | Attr = HS]
%UserStartup%\SpywareGuard.lnk -> D:\Program Files\SpywareGuard\sgmain.exe -> [Ver = 2.02.0001 | Size = 360448 bytes | Modified Date = 8/29/2003 6:05:35 PM | Attr = ]
%UserStartup%\Webshots.lnk -> D:\Program Files\Webshots\Launcher.exe -> [Ver = | Size = 45056 bytes | Modified Date = 9/16/2004 9:46:18 AM | Attr = ]
< ShellExecuteHooks [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Explorer\ShellExecuteHooks ->
{57B86673-276A-48B2-BAE7-C6DBB3020EB8} [HKEY_LOCAL_MACHINE] -> Reg Error: Key SOFTWARE\Classes\CLSID\{57B86673-276A-48B2-BAE7-C6DBB3020EB8}\InprocServer32 does not exist or could not be opened. [AVG Anti-Spyware 7.5] -> File not found
{81559C35-8464-49F7-BB0E-07A383BEF910} [HKEY_LOCAL_MACHINE] -> D:\Program Files\SpywareGuard\spywareguard.dll [] -> [Ver = 2.02 | Size = 126976 bytes | Modified Date = 8/2/2003 10:20:57 PM | Attr = R ]
< SecurityProviders [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\SecurityProviders\\SecurityProviders ->
*MultiFile Done* -> ->
< Winlogon settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
*MultiFile Done* -> ->
*MultiFile Done* -> ->
*MultiFile Done* -> ->
*MultiFile Done* -> ->
< Winlogon settings [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon ->
< Winlogon\Notify settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows NT\CurrentVersion\Winlogon\Notify\ ->
igfxcui -> %System32%\igfxsrvc.dll -> Intel Corporation [Ver = 3.0.0.3943 | Size = 348160 bytes | Modified Date = 11/2/2004 8:59:20 AM | Attr = ]
< CurrentVersion Policy Settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Ext\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Ext\CLSID\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Ext\CLSID\\{17492023-C23A-453E-A040-C7C580BBF700} -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{BDEADF00-C265-11D0-BCED-00A0C90AB50F} -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{6DFD7C5C-2451-11d3-A299-00C04F8EF6AF} -> 1073741857 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\NonEnum\\{0DF44EAA-FF21-4412-828E-260A8728E7F1} -> 32 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\dontdisplaylastusername -> 0 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticecaption -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\legalnoticetext -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\shutdownwithoutlogon -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\system\\undockwithoutlogon -> 1 ->
< CurrentVersion Policy Settings [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoDriveTypeAutoRun -> 145 ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoBandCustomize -> 0 ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoMovingBands -> 0 ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoCloseDragDropBands -> 0 ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoSetTaskbar -> 0 ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoToolbarsOnTaskbar -> 0 ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoSaveSettings -> 0 ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\NoActiveDesktop -> 0 ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\Explorer\\ClassicShell -> 0 ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\ -> ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\policies\System\\DisableRegistryTools -> 0 ->
< HOSTS File > (314122 bytes) -> C:\WINDOWS\System32\drivers\etc\Hosts ->
127.0.0.1 000info.com -> ->
127.0.0.1 0-2u.com -> ->
127.0.0.1 0cat.com #[0Cat YellowPages] -> ->
127.0.0.1 0cj.net -> ->
127.0.0.1 0-days.net -> ->
127.0.0.1 0online-casino.net -> ->
127.0.0.1 0ptonline.net #[adultgambling.org] -> ->
127.0.0.1 1000funnyvideos.com -> ->
127.0.0.1 1000stars.ru #[IE-SpyAd] -> ->
127.0.0.1 1001night.biz #[MHTMLRedir.Exploit] -> ->
127.0.0.1 101.nowfind.biz -> ->
127.0.0.1 101.nowfind.net -> ->
127.0.0.1 102.nowfind.biz -> ->
127.0.0.1 103.nowfind.biz -> ->
127.0.0.1 103.nowfind.net -> ->
127.0.0.1 104.nowfind.biz -> ->
127.0.0.1 105.nowfind.biz -> ->
127.0.0.1 123counter.mycomputer.com -> ->
127.0.0.1 123find4u.com -> ->
127.0.0.1 123-find4u.com -> ->
127.0.0.1 123search.com -> ->
127.0.0.1 123search4u.com -> ->
127.0.0.1 123-search4u.com -> ->
127.0.0.1 123-searchengine.com -> ->
127.0.0.1 14713804A.l2m.net #[LiveTechnology] -> ->
127.0.0.1 1800taxfree.com #[hot-incest.com] -> ->
127.0.0.1 1-dvd-player.com #[AdWare.GoWebSite] -> ->
127.0.0.1 1-free-software.com -> ->
127.0.0.1 1stblaze.com #[Parasite.ClientMan] -> ->
127.0.0.1 1st-sex.us #[Eroskop Dialer] -> ->
127.0.0.1 1st-software-downloads.com -> ->
127.0.0.1 1xxx.us -> ->
127.0.0.1 2003.yauu.net -> ->
127.0.0.1 2004search.cc #[searchanyway.com] -> ->
127.0.0.1 247realmedia.com #[eTrust.Tracking Cookie] -> ->
127.0.0.1 24-7-search.com #[Trojan-Downloader.Win32.Delf.ia] -> ->
127.0.0.1 24start.com #[Dialer.SwitchDialer] -> ->
127.0.0.1 2awm.com #[Axexx CHM] -> ->
127.0.0.1 2nd-thought.com #[Parasite.Pugi][Trojan.Win32.SecondThought.c] -> ->
127.0.0.1 2pursuit.com #[Trojan-Downloader.Win32.Delf.lh] -> ->
127.0.0.1 2wd.info -> ->
127.0.0.1 3.marketbanker.com -> ->
127.0.0.1 33search.cc -> ->
127.0.0.1 356563.net #[Win32.Winshow.G] -> ->
127.0.0.1 4.getredirect.com #[superlogy.com] -> ->
127.0.0.1 404ads.com #[IE-SpyAd] -> ->
127.0.0.1 404errorpage.com #[IE-SpyAd] -> ->
127.0.0.1 411ferret.com #[Parasite.Pugi][cgi.search123.com] -> ->
127.0.0.1 462.dapfeed.com -> ->
127.0.0.1 48.dapfeed.com -> ->
127.0.0.1 4count.com -> ->
127.0.0.1 4-counter.com #[CWS.Winproc32][Troj/StarPa-CV] -> ->
127.0.0.1 4-free-mp3.com -> ->
127.0.0.1 4hotstocks.com #[LURHQ.IFrame.Exploit] -> ->
127.0.0.1 4netmedia.com #[Parasite.OnlineDialer] -> ->
127.0.0.1 4-v.net -> ->
127.0.0.1 5sec.biz #[Backdoor.Fivsec] -> ->
127.0.0.1 5sec.info -> ->
127.0.0.1 61.131.54.618.cc #[dsmanager.dll] -> ->
127.0.0.1 614.dapfeed.com -> ->
127.0.0.1 638725.net #[Parasite.FavoriteMan] -> ->
127.0.0.1 6410.directwebsearch.net -> ->
127.0.0.1 644.dapfeed.com #[hotoffers.info] -> ->
127.0.0.1 674.dapfeed.com #[Troj/Warspy-G] -> ->
127.0.0.1 680180.net #[AdLogix.Zamingo] -> ->
127.0.0.1 690.dapfeed.com -> ->
127.0.0.1 69sexsearch.com #[TROJ_DLOADER.W][TROJ_DROPPER.T] -> ->
127.0.0.1 6o9.com #[Win32.Winshow.N] -> ->
127.0.0.1 700k.com #[Troj/IEStart-F][server down?] -> ->
127.0.0.1 700xxx.com -> ->
127.0.0.1 773.dapfeed.com -> ->
127.0.0.1 7842.directwebsearch.net -> ->
127.0.0.1 7am.com -> ->
127.0.0.1 80pictures.com #[Runet.A][CHM exploit] -> ->
127.0.0.1 911-search.info -> ->
127.0.0.1 a.adstome.com -> ->
127.0.0.1 a853.xc.akamai.net -> ->
127.0.0.1 aaa1wallpapers.com -> ->
127.0.0.1 abacus.netster.com -> ->
127.0.0.1 abc-find.com -> ->
127.0.0.1 abcfind4u.com -> ->
127.0.0.1 abc-find4u.com -> ->
127.0.0.1 abcsearch4u.com -> ->
127.0.0.1 abc-search4u.com -> ->
127.0.0.1 abc-searchengine.com -> ->
127.0.0.1 abetterinternet.com #[Downloader.Stubby.A] -> ->
127.0.0.1 about.netster.com -> ->
127.0.0.1 absoluagency.com #[Trojan.StartPage.H] -> ->
127.0.0.1 acc.adintelligence.net -> ->
127.0.0.1 acc.count-all.com #[CWS.Tapicfg] -> ->
127.0.0.1 access.gamesplayground.com #[NGD Systems Dialer] -> ->
127.0.0.1 accessplugin.com #[DialerCon Class] -> ->
127.0.0.1 accipiter.speedera.net -> ->
127.0.0.1 active-alert-server.com -> ->
127.0.0.1 actualnames.com #[Parasite.ActualNames][Spyware.ActualNames] -> ->
127.0.0.1 ad.admarketplace.net -> ->
127.0.0.1 ad.backyardgardener.com -> ->
127.0.0.1 Ad.go.com -> ->
127.0.0.1 ad.leadcrunch.com #[IE-SpyAd] -> ->
127.0.0.1 ad.linkexchange.com -> ->
127.0.0.1 ad.naked-celebs.com -> ->
127.0.0.1 ad.ro2cn.com #[Adware.Ro2cn] -> ->
127.0.0.1 ad1.backyardgardener.com -> ->
127.0.0.1 ad2.adcept.net -> ->
127.0.0.1 ad2.backyardgardener.com -> ->
127.0.0.1 ad3.adcept.net -> ->
127.0.0.1 adatom.com -> ->
127.0.0.1 adbest.com #[IE-SpyAd] -> ->
127.0.0.1 ad-blaster.com -> ->
127.0.0.1 adbot.com -> ->
127.0.0.1 adchannel.adintelligence.net -> ->
127.0.0.1 adchannel.contextplus.net #[Parasite.AproposMedia] -> ->
127.0.0.1 adchannel19.com #[Adware.AdChannel19] -> ->
127.0.0.1 adclst03.valueclick.com -> ->
127.0.0.1 adcluster.humaniq.com -> ->
127.0.0.1 adcodes.aim4media.com -> ->
127.0.0.1 adcontroller.unicast.com -> ->
127.0.0.1 adcreative.tribuneinteractive.com -> ->
127.0.0.1 adcycle.isoftmarketing.com -> ->
127.0.0.1 addev.internetfuel.com -> ->
127.0.0.1 address.3721.com -> ->
127.0.0.1 addtosite.netster.com -> ->
127.0.0.1 adfarm.snv.mediaplex.com -> ->
127.0.0.1 adintelligence.net -> ->
127.0.0.1 adlogix.com #[InPop.InControl][IEEnhancer] -> ->
127.0.0.1 admin.popupsponsor.com -> ->
127.0.0.1 admin.startsurfing.com -> ->
127.0.0.1 adp.ikena.com -> ->
127.0.0.1 adpulse.ads.targetnet.com -> ->
127.0.0.1 adroar.com #[IE-SpyAd] -> ->
127.0.0.1 ads.123m.valueclick.net -> ->
127.0.0.1 ads.1stblaze.com -> ->
127.0.0.1 ads.6fig.valueclick.net -> ->
127.0.0.1 ads.adcorps.com -> ->
127.0.0.1 ads.adroar.com -> ->
127.0.0.1 ads.ads360.com -> ->
127.0.0.1 ads.adsag.com -> ->
127.0.0.1 ads.adtomi.com #[IE-SpyAd][ADW_ADTOMI.D] -> ->
127.0.0.1 ads.amazingmedia.com #[IE-SpyAd] -> ->
127.0.0.1 ads.as4x.tmcs.akadns.net #[Ticketmaster][IE-SpyAd] -> ->
127.0.0.1 ads.baby.valueclick.net -> ->
127.0.0.1 ads.big.valueclick.net -> ->
127.0.0.1 ads.blp.valueclick.net -> ->
127.0.0.1 ads.bmais.net #[bluemountain] -> ->
127.0.0.1 ads.clickagents.com -> ->
127.0.0.1 ads.contextclick.com -> ->
127.0.0.1 ads.date.com #[IE-SpyAd] -> ->
127.0.0.1 ads.dealhelper.com #[DHUtility Class] -> ->
127.0.0.1 ads.dotp.valueclick.net -> ->
127.0.0.1 ads.ezcybersearch.com #[Adware.EZSearch.B] -> ->
127.0.0.1 ads.fhm.valueclick.net -> ->
127.0.0.1 ads.flashtrack.net #[Adware.Flashtrack.B] -> ->
127.0.0.1 ads.gorillanation.com #[Restricted Zone site] -> ->
127.0.0.1 ads.guardianunlimited.co.uk -> ->
127.0.0.1 ads.hdn.valueclick.net -> ->
127.0.0.1 ads.hitcents.com #[IE-SpyAd] -> ->
127.0.0.1 ads.hlwd.valueclick.net -> ->
127.0.0.1 ads.hmn.valueclick.net -> ->
127.0.0.1 ads.home.net -> ->
127.0.0.1 ads.huma.valueclick.net -> ->
127.0.0.1 ads.hyperbanner.net -> ->
127.0.0.1 ads.imdb.com #[amazon.com] -> ->
127.0.0.1 ads.indystar.com -> ->
127.0.0.1 ads.inet1.com -> ->
127.0.0.1 ads.intelihealth.com -> ->
127.0.0.1 ads.intermezzia.com #[IE-SpyAd] -> ->
127.0.0.1 ads.internetfuel.com -> ->
127.0.0.1 ads.internet-optimizer.com #[Parasite.Internet Optimizer] -> ->
127.0.0.1 ads.isp.valueclick.jp -> ->
127.0.0.1 ads.linksponsor.com -> ->
127.0.0.1 ads.musiccity.com -> ->
127.0.0.1 ads.offeroptimizer.com -> ->
127.0.0.1 ads.pas.valueclick.net -> ->
127.0.0.1 ads.pg.valueclick.net -> ->
127.0.0.1 ads.pilotonline.com -> ->
127.0.0.1 ads.qcns.valueclick.net -> ->
127.0.0.1 ads.roanoke.com -> ->
127.0.0.1 ads.sexplanets.com -> ->
127.0.0.1 ads.smm.valueclick.net -> ->
127.0.0.1 ads.softwareoutfit.com -> ->
127.0.0.1 ads.specificclick.com -> ->
127.0.0.1 ads.specificpop.com -> ->
127.0.0.1 ads.techtv.com -> ->
127.0.0.1 ads.toplayerserver.com -> ->
127.0.0.1 ads.track-star.com -> ->
127.0.0.1 ads.trafficaces.com -> ->
127.0.0.1 ads.usta.valueclick.net -> ->
127.0.0.1 ads.versaworks.net -> ->
127.0.0.1 ads.vesperexchange.com -> ->
127.0.0.1 ads.vnuemedia.com -> ->
127.0.0.1 ads.webads360.com #[IE-SpyAd] -> ->
127.0.0.1 ads.webattack.com -> ->
127.0.0.1 ads.winhelp2002.com -> ->
127.0.0.1 ads.x10.com -> ->
127.0.0.1 ads01.hyperbanner.net -> ->
127.0.0.1 ads03.hyperbanner.net -> ->
127.0.0.1 ads04.hyperbanner.net -> ->
127.0.0.1 ads05.hyperbanner.net -> ->
127.0.0.1 ads06.hyperbanner.net -> ->
127.0.0.1 ads07.hyperbanner.net -> ->
127.0.0.1 ads08.hyperbanner.net -> ->
127.0.0.1 ads09.hyperbanner.net -> ->
127.0.0.1 ads1.sptimes.com -> ->
127.0.0.1 ads10.hyperbanner.net -> ->
127.0.0.1 ads11.hyperbanner.net -> ->
127.0.0.1 ads12.hyperbanner.net -> ->
127.0.0.1 ads13.hyperbanner.net -> ->
127.0.0.1 ads14.hyperbanner.net -> ->
127.0.0.1 ads15.hyperbanner.net -> ->
127.0.0.1 ads16.hyperbanner.net -> ->
127.0.0.1 ads17.hyperbanner.net -> ->
127.0.0.1 ads18.hyperbanner.net -> ->
127.0.0.1 ads19.hyperbanner.net -> ->
127.0.0.1 ads20.hyperbanner.net -> ->
127.0.0.1 ads29.bpath.com -> ->
127.0.0.1 ads3.virtumundo.com -> ->
127.0.0.1 ads4.virtumundo.com -> ->
127.0.0.1 ads7.inet1.com -> ->
127.0.0.1 adscpm.com -> ->
127.0.0.1 adserv.680180.net -> ->
127.0.0.1 adserv.com -> ->
127.0.0.1 adserv.exxxit.com -> ->
127.0.0.1 adserv.internetfuel.com #[ExitFuel] -> ->
127.0.0.1 adserv.searchenhancement.com #[Parasite.Network Essentials] -> ->
127.0.0.1 adserv.windowenhancer.com #[Adware.WindowEnhancer] -> ->
127.0.0.1 adserv1.internetfuel.com -> ->
127.0.0.1 adserv2.internetfuel.com -> ->
127.0.0.1 adserv3.internetfuel.com -> ->
127.0.0.1 adserv4.internetfuel.com -> ->
127.0.0.1 adserv5.internetfuel.com -> ->
127.0.0.1 adserv6.internetfuel.com -> ->
127.0.0.1 adserver.ads360.com -> ->
127.0.0.1 adserver.adsincontext.com -> ->
127.0.0.1 adserver.aim4media.com -> ->
127.0.0.1 adserver.anm.co.uk #[server down?] -> ->
127.0.0.1 adserver.com -> ->
127.0.0.1 adserver.friendfinder.com -> ->
127.0.0.1 adserver.gorillanation.com -> ->
127.0.0.1 adserver.ign.com -> ->
127.0.0.1 adserver.indieclick.com -> ->
127.0.0.1 adserver.track-star.com -> ->
127.0.0.1 adserver.trb.com -> ->
127.0.0.1 adserver.tribuneinteractive.com -> ->
127.0.0.1 adserver.webstat.com -> ->
127.0.0.1 adservice.recon-networks.com -> ->
127.0.0.1 adsincontext.com #[Adware.ZioCom] -> ->
127.0.0.1 adsvr.net #[thepowerstrip.com] -> ->
127.0.0.1 adtech.m7z.net -> ->
127.0.0.1 adtest.aim4media.com -> ->
127.0.0.1 adult.exitreturn.com -> ->
127.0.0.1 adult.globolook.com -> ->
127.0.0.1 adult.newgenlook.info #[globolook.com] -> ->
127.0.0.1 adult.specialgoods.info -> ->
127.0.0.1 adult.targetsearch.info -> ->
127.0.0.1 adult.yellow-pages.ws -> ->
127.0.0.1 adv.peopleonpage.com -> ->
127.0.0.1 adv1.eblocs.com -> ->
127.0.0.1 adv2.eblocs.com #[IE-SpyAd] -> ->
127.0.0.1 advancedpopupstopper.com -> ->
127.0.0.1 advertisementbanners.com -> ->
127.0.0.1 advertisingvision.com #[IE-SpyAd] -> ->
127.0.0.1 advertisory.com -> ->
127.0.0.1 adverts.lzio.com -> ->
127.0.0.1 advnt.com -> ->
127.0.0.1 advnt01.com #[VacPro.belgio_ver3] -> ->
127.0.0.1 advnt02.com -> ->
127.0.0.1 advnt03.com #[VacPro.internazionale_ver10] -> ->
127.0.0.1 advnt04.com -> ->
127.0.0.1 advnt05.com -> ->
127.0.0.1 adwarealert.com -> ->
127.0.0.1 adwaresoft.com -> ->
127.0.0.1 adwords.google.com -> ->
127.0.0.1 adzones.ircspy.com -> ->
127.0.0.1 aesp.adatom.com -> ->
127.0.0.1 affiliate.getspace.com -> ->
127.0.0.1 affiliates.jeanharris.com -> ->
127.0.0.1 affiliates.umaxsearch.com -> ->
127.0.0.1 affiliatetarget.com #[IE-SpyAd] -> ->
127.0.0.1 a-find4u.com -> ->
127.0.0.1 aflashcounter.com #[Trojan.Moo.B] -> ->
127.0.0.1 aflcub.t.muxa.cc #[vv6.i1.topx.cc][various sub-domains] -> ->
127.0.0.1 afris.biz -> ->
127.0.0.1 agent.3721.com -> ->
127.0.0.1 aguarddog.com -> ->
127.0.0.1 aid.farmmext.com -> ->
127.0.0.1 aidintime.com #[Troj/Dloader-EP] -> ->
127.0.0.1 aim.aol.com -> ->
127.0.0.1 aimgames.wildtangent.com -> ->
127.0.0.1 aiminstaller.wildtangent.com -> ->
127.0.0.1 ak.imgfarm.com #[FunWebProducts] -> ->
127.0.0.1 alerts.imgiant.com -> ->
127.0.0.1 alibabanet.net #[Backdoor.IRC.Aladinz] -> ->
127.0.0.1 allaboutvirgins.com #[hotoffers.info] -> ->
127.0.0.1 allclicks.com -> ->
127.0.0.1 all-find.org #[Trojan.Anicmoo.D] -> ->
127.0.0.1 allneedsearch.com #[TROJ_STARTPAGE.B][find-itnow.com] -> ->
127.0.0.1 all-search.cc -> ->
127.0.0.1 allsitessearch.com #[runsearch.com] -> ->
127.0.0.1 allstarsearch.net #[Webhelper4u.SearchTerror] -> ->
127.0.0.1 allways.drusearch.com #[Adware.Drusearch] -> ->
127.0.0.1 allxxxteen.com #[searchmeup.com] -> ->
127.0.0.1 alpha.searchassistant.net #[7search.com] -> ->
127.0.0.1 alphaerotica.com -> ->
127.0.0.1 alset.com #[WIN32/HXDL AL] -> ->
127.0.0.1 amateur.xxxcounter.com -> ->
127.0.0.1 ambush-script.com -> ->
127.0.0.1 ambush-soft.com -> ->
127.0.0.1 amnv.net -> ->
127.0.0.1 ams-download.nocreditcard.com -> ->
127.0.0.1 ams-download.nocreditcardgay.com -> ->
127.0.0.1 analsextech.com #[teensales.com] -> ->
127.0.0.1 andr.com -> ->
127.0.0.1 angelsbleeped.com #[TROJ_SMALL.SB] -> ->
127.0.0.1 antispy.globolook.com -> ->
127.0.0.1 antispy.newgenlook.info -> ->
127.0.0.1 antispy.specialgoods.info #[Troj/Warspy-G] -> ->
127.0.0.1 antivirus-gold.com #[Trojan.Win32.TopAntiSpyware.l] -> ->
127.0.0.1 any-find.com -> ->
127.0.0.1 aolwpnscom.112.2o7.net -> ->
127.0.0.1 app.peopleonpage.com -> ->
127.0.0.1 app.searchant.com -> ->
127.0.0.1 ar.avres.net -> ->
127.0.0.1 archiviohard.com #[Trojan.Win32.Dialer.hz] -> ->
127.0.0.1 areuhorny.com -> ->
127.0.0.1 armbender.com #[UCSearch.ucUCSearch][W32.Adclicker.F.Trojan] -> ->
127.0.0.1 artistdirectcollect.247realmedia.com -> ->
127.0.0.1 asdfqwre.com -> ->
127.0.0.1 a-search.biz -> ->
127.0.0.1 a-search4u.com -> ->
127.0.0.1 asg01.casalemedia.com -> ->
127.0.0.1 asg02.casalemedia.com -> ->
127.0.0.1 asg03.casalemedia.com -> ->
127.0.0.1 asg04.casalemedia.com -> ->
127.0.0.1 asg05.casalemedia.com -> ->
127.0.0.1 asg06.casalemedia.com -> ->
127.0.0.1 asg07.casalemedia.com -> ->
127.0.0.1 asg08.casalemedia.com -> ->
127.0.0.1 asg09.casalemedia.com -> ->
127.0.0.1 asg10.casalemedia.com -> ->
127.0.0.1 asg11.casalemedia.com -> ->
127.0.0.1 asg12.casalemedia.com -> ->
127.0.0.1 asg13.casalemedia.com -> ->
127.0.0.1 asg14.casalemedia.com -> ->
127.0.0.1 asg15.casalemedia.com -> ->
127.0.0.1 asg16.casalemedia.com -> ->
127.0.0.1 asg17.casalemedia.com -> ->
127.0.0.1 asg18.casalemedia.com -> ->
127.0.0.1 asg19.casalemedia.com -> ->
127.0.0.1 asg20.casalemedia.com -> ->
127.0.0.1 asg21.casalemedia.com -> ->
127.0.0.1 asg22.casalemedia.com -> ->
127.0.0.1 asg23.casalemedia.com -> ->
127.0.0.1 asg24.casalemedia.com -> ->
127.0.0.1 asg25.casalemedia.com -> ->
127.0.0.1 asg26.casalemedia.com -> ->
127.0.0.1 asg27.casalemedia.com -> ->
127.0.0.1 asg28.casalemedia.com -> ->
127.0.0.1 asg29.casalemedia.com -> ->
127.0.0.1 asg30.casalemedia.com -> ->
127.0.0.1 asg31.casalemedia.com -> ->
127.0.0.1 asg32.casalemedia.com -> ->
127.0.0.1 asg33.casalemedia.com -> ->
127.0.0.1 asg34.casalemedia.com -> ->
127.0.0.1 asg35.casalemedia.com -> ->
127.0.0.1 asg36.casalemedia.com -> ->
127.0.0.1 asg37.casalemedia.com -> ->
127.0.0.1 asg38.casalemedia.com -> ->
127.0.0.1 asg39.casalemedia.com -> ->
127.0.0.1 asg40.casalemedia.com -> ->
127.0.0.1 asg41.casalemedia.com -> ->
127.0.0.1 asg42.casalemedia.com -> ->
127.0.0.1 asg43.casalemedia.com -> ->
127.0.0.1 asg44.casalemedia.com -> ->
127.0.0.1 asg45.casalemedia.com -> ->
127.0.0.1 asg46.casalemedia.com -> ->
127.0.0.1 asg47.casalemedia.com -> ->
127.0.0.1 asg48.casalemedia.com -> ->
127.0.0.1 asg49.casalemedia.com -> ->
127.0.0.1 asg50.casalemedia.com -> ->
127.0.0.1 asg51.casalemedia.com -> ->
127.0.0.1 asg52.casalemedia.com -> ->
127.0.0.1 asg53.casalemedia.com -> ->
127.0.0.1 asg54.casalemedia.com -> ->
127.0.0.1 asg55.casalemedia.com -> ->
127.0.0.1 asg56.casalemedia.com -> ->
127.0.0.1 asg57.casalemedia.com -> ->
127.0.0.1 asg58.casalemedia.com -> ->
127.0.0.1 asg59.casalemedia.com -> ->
127.0.0.1 asg60.casalemedia.com -> ->
127.0.0.1 asg61.casalemedia.com -> ->
127.0.0.1 asg62.casalemedia.com -> ->
127.0.0.1 asg63.casalemedia.com -> ->
127.0.0.1 asg64.casalemedia.com -> ->
127.0.0.1 asg65.casalemedia.com -> ->
127.0.0.1 asg66.casalemedia.com -> ->
127.0.0.1 asg67.casalemedia.com -> ->
127.0.0.1 asg68.casalemedia.com -> ->
127.0.0.1 asg69.casalemedia.com -> ->
127.0.0.1 asg70.casalemedia.com -> ->
127.0.0.1 asg71.casalemedia.com -> ->
127.0.0.1 asg72.casalemedia.com -> ->
127.0.0.1 asg73.casalemedia.com -> ->
127.0.0.1 asg74.casalemedia.com -> ->
127.0.0.1 asg75.casalemedia.com -> ->
127.0.0.1 asg76.casalemedia.com -> ->
127.0.0.1 asg77.casalemedia.com -> ->
127.0.0.1 asg78.casalemedia.com -> ->
127.0.0.1 asg79.casalemedia.com -> ->
127.0.0.1 asg80.casalemedia.com -> ->
127.0.0.1 asg81.casalemedia.com -> ->
127.0.0.1 asg82.casalemedia.com -> ->
127.0.0.1 aslg01.casalemedia.com -> ->
127.0.0.1 aslg02.casalemedia.com -> ->
127.0.0.1 aslg03.casalemedia.com -> ->
127.0.0.1 aslg04.casalemedia.com -> ->
127.0.0.1 aslg05.casalemedia.com -> ->
127.0.0.1 aslg06.casalemedia.com -> ->
127.0.0.1 aslg07.casalemedia.com -> ->
127.0.0.1 aslg08.casalemedia.com -> ->
127.0.0.1 aslg09.casalemedia.com -> ->
127.0.0.1 aslg10.casalemedia.com -> ->
127.0.0.1 asm3.z1.adserver.com -> ->
127.0.0.1 assistant.3721.com -> ->
127.0.0.1 associmage.match.com #[IE-SpyAd] -> ->
127.0.0.1 associmg.com #[IE-SpyAd][amazon.com] -> ->
127.0.0.1 at.netster.com -> ->
127.0.0.1 at-games.com -> ->
127.0.0.1 att.atdmt.com -> ->
127.0.0.1 auto.topnetsearch.cc -> ->
127.0.0.1 autosearch.cc -> ->
127.0.0.1 avatarresources.com #[eTrust.Spyware.AutoStartup] -> ->
127.0.0.1 avenuemedia.com -> ->
127.0.0.1 awmgate.com -> ->
127.0.0.1 baby4teen.com -> ->
127.0.0.1 bad.cool-partner.com -> ->
127.0.0.1 badurl.grandstreetinteractive.com -> ->
127.0.0.1 baidu.com #[IE-SpyAd] -> ->
127.0.0.1 balabolka.biz -> ->
127.0.0.1 bannedthumbs.biz #[MHTMLRedir.Exploit] -> ->
127.0.0.1 banner.easyspace.com #[IE-SpyAd] -> ->
127.0.0.1 banner.orb.net -> ->
127.0.0.1 banner.simpletraffic.com -> ->
127.0.0.1 banner-exchange.directbanners.com -> ->
127.0.0.1 bannerexchange.mycomputer.com -> ->
127.0.0.1 bannermaster.geektech.com -> ->
127.0.0.1 banners.ads360.com -> ->
127.0.0.1 banners.dot.tk -> ->
127.0.0.1 banners.hotlinks.net #[IE-SpyAd] -> ->
127.0.0.1 banners.hotqueens.com -> ->
127.0.0.1 banners.netpalgames.com -> ->
127.0.0.1 banners.playboystore.com -> ->
127.0.0.1 banners.simpletraffic.com -> ->
127.0.0.1 banners.specificpop.com -> ->
127.0.0.1 banners.tucson.com #[RealMedia] -> ->
127.0.0.1 bannerserver.gator.com -> ->
127.0.0.1 bannerswap.com #[IE-SpyAd] -> ->
127.0.0.1 banserv.internetfuel.com -> ->
127.0.0.1 banserver.internetfuel.com -> ->
127.0.0.1 banshee.trafficstandard.com -> ->
127.0.0.1 bastion.xhpro.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 bbcww.adbureau.net #[Ad-Aware.Tracking Cookie] -> ->
127.0.0.1 beech-info2.com #[ByteVerify.exploit] -> ->
127.0.0.1 befree.webdialogs.com -> ->
127.0.0.1 belgiandip.com #[ITS Protocol exploit] -> ->
127.0.0.1 belt.abetterinternet.com -> ->
127.0.0.1 besstsearchs.com -> ->
127.0.0.1 bestcracks.net -> ->
127.0.0.1 bestfind4u.com #[Trojan.StartPage.N] -> ->
127.0.0.1 bestmatchfinder.net #[v61.com][full-search.net] -> ->
127.0.0.1 bestoffers.bz -> ->
127.0.0.1 best-result.info -> ->
127.0.0.1 bestsearch.cc -> ->
127.0.0.1 best-search.cc -> ->
127.0.0.1 best-search.info #[CWS.Smartfinder.2] -> ->
127.0.0.1 bestsearcher.info -> ->
127.0.0.1 besttraff.us -> ->
127.0.0.1 best-web-search.com -> ->
127.0.0.1 beta.oversee.net -> ->
127.0.0.1 beta.searchassistant.net #[goclick.com] -> ->
127.0.0.1 beta.superstats.com -> ->
127.0.0.1 bianka.cafreedom.com -> ->
127.0.0.1 bigbrother.gigatechsoftware.com -> ->
127.0.0.1 bigbuks.info -> ->
127.0.0.1 big-search.info -> ->
127.0.0.1 bigsexvideos.com -> ->
127.0.0.1 bigtrafficnetwork.com -> ->
127.0.0.1 bin.wordsx.cc #[TROJ_SAMLLAMB.A] -> ->
127.0.0.1 bins.roings.com #[jimmyloader.jimmyform] -> ->
127.0.0.1 binzoo.com -> ->
127.0.0.1 bisads.180solutions.com -> ->
127.0.0.1 bittorrent-ultra.com -> ->
127.0.0.1 bizonio.com -> ->
127.0.0.1 bjvvhk.t.muxa.cc #[Adware.Raxums] -> ->
127.0.0.1 blacklogic.info #[Trojan.Floodblack] -> ->
127.0.0.1 blog.imgiant.com -> ->
127.0.0.1 bluehavenmedia.com #[SunBelt.Kazoom] -> ->
127.0.0.1 bn.inf3ct3d.info #[Backdoor.Shellbot] -> ->
127.0.0.1 boxsearch.net #[Trojan.TrustedZones] -> ->
127.0.0.1 bp2.getredirect.com #[IE-SpyAd] -> ->
127.0.0.1 brdatahost.com -> ->
127.0.0.1 breakthroughsearch.com #[v61.com][full-search.net] -> ->
127.0.0.1 breakthroughsearch.net #[allsitessearch.com] -> ->
127.0.0.1 browser.secondpower.com -> ->
127.0.0.1 browserpal.com -> ->
127.0.0.1 browserwise.com #[Parasite.Xupiter][Xupiter.BrowserWise] -> ->
127.0.0.1 bst.bfast.com -> ->
127.0.0.1 btg.btgrab.com -> ->
127.0.0.1 btgrab.com #[Transponder.BTGrab] -> ->
127.0.0.1 build.tripod.com -> ->
127.0.0.1 bulkclicks.com -> ->
127.0.0.1 bundleware.com -> ->
127.0.0.1 buy.rpts.net -> ->
127.0.0.1 buysearch.cc -> ->
127.0.0.1 bvads.infospace.com -> ->
127.0.0.1 c.abetterinternet.com #[Adware-BetterInet application] -> ->
127.0.0.1 c.clickaire.com #[IE-SpyAd] -> ->
127.0.0.1 c.coolshader.com #[Win32.Harnig] -> ->
127.0.0.1 c.rn11.com -> ->
127.0.0.1 cabs.imgiant.net -> ->
127.0.0.1 cabs.media-motor.net #[IObjSafety.DemoCtl] -> ->
127.0.0.1 cabs.roings.com #[IObjSafety.DemoCtl] -> ->
127.0.0.1 cache.unicast.com -> ->
127.0.0.1 capitalhardcores.com -> ->
127.0.0.1 cards.searchalot.com -> ->
127.0.0.1 cash4toolbar.com -> ->
127.0.0.1 cashbackbuddy.com -> ->
127.0.0.1 cassandra.searchassistant.net -> ->
127.0.0.1 cb1.counterbot.com -> ->
127.0.0.1 cbird.sextracker.com -> ->
127.0.0.1 cbird6.sextracker.com -> ->
127.0.0.1 cc.1asphost.com #[Trojan.Bansap] -> ->
127.0.0.1 cc20foreva.com -> ->
127.0.0.1 cc-download.com #[ViewVideo Codec] -> ->
127.0.0.1 cdn.climaxbucks.com -> ->
127.0.0.1 cdn.gms1.net -> ->
127.0.0.1 cdn.pg.valueclick.net -> ->
127.0.0.1 cellaphone.net #[MHTMLRedir.Exploit] -> ->
127.0.0.1 centralmedia.ws #[flashlightsearch.com] -> ->
127.0.0.1 cfg.clipgenie.com -> ->
127.0.0.1 cftrack.uninstaller.com -> ->
127.0.0.1 chart.superstats.com -> ->
127.0.0.1 cheats.joysticknetworks.com -> ->
127.0.0.1 checkin.clickalchemy.com -> ->
127.0.0.1 checkspy.com #[FlowScan Control] -> ->
127.0.0.1 christmascursors.cometsystems.com -> ->
127.0.0.1 cimpanst.com #[stepsofsearch.com] -> ->
127.0.0.1 cinnam.vibrahost.com #[PWSteal.Revcuss.C][Win32.Revcuss.C] -> ->
127.0.0.1 civiv.info #[itsoktosearch.net] -> ->
127.0.0.1 cjt1.net -> ->
127.0.0.1 classifieds1000.com -> ->
127.0.0.1 cleangetaway.biz #[ABetterInternet.D] -> ->
127.0.0.1 clearchannel.us.intellitxt.com -> ->
127.0.0.1 clearfind.com -> ->
127.0.0.1 clearsearch.com #[IE-SpyAd] -> ->
127.0.0.1 clearsurfing.net #[ADW_FRESHBAR.B][Parasite.FreshBar] -> ->
127.0.0.1 click.dotcomtoolbar.com #[SPW_DCTOOLBAR.A] -> ->
127.0.0.1 click.payserve.com #[IE-SpyAd] -> ->
127.0.0.1 click2boost.com #[IE-SpyAd] -> ->
127.0.0.1 clickalchemy.com -> ->
127.0.0.1 clicks.firstname.com -> ->
127.0.0.1 clicksearchclick.com #[yeahsearch.net] -> ->
127.0.0.1 clickthroughtraffic.com -> ->
127.0.0.1 clickthrunet.net -> ->
127.0.0.1 clickthrutraffic.com -> ->
127.0.0.1 clicz.com -> ->
127.0.0.1 client.contextual.esyndicate.com #[Adware.eSyndicate] -> ->
127.0.0.1 climaxbucks.com #[ClimaxBucks.InternetOptimizer] -> ->
127.0.0.1 clk.atdmt.com -> ->
127.0.0.1 clubonly18.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 cmi.ibill.com -> ->
127.0.0.1 cns.3721.com -> ->
127.0.0.1 cnt.rapidblaster.com #[TROJ_ISTBAR.F][AInst Class] -> ->
127.0.0.1 cocktailcash.com -> ->
127.0.0.1 code.netbreak.com.au -> ->
127.0.0.1 codeccash.com -> ->
127.0.0.1 colinsdialer.com -> ->
127.0.0.1 collect.tps108.org -> ->
127.0.0.1 com.com -> ->
127.0.0.1 comclick.com #[IE-SpyAd] -> ->
127.0.0.1 cometcursor.com #[KB316085] -> ->
127.0.0.1 cometcursor.cometsystems.com -> ->
127.0.0.1 cometcursors.com -> ->
127.0.0.1 cometsystems.com -> ->
127.0.0.1 cometzone.com -> ->
127.0.0.1 cometzone.cometsystems.com -> ->
127.0.0.1 commonsearch.com #[SpeedHit] -> ->
127.0.0.1 community.derbiz.com #[ASDPLUGIN] -> ->
127.0.0.1 community.globaleaccess.com #[W32/Malware] -> ->
127.0.0.1 community.surfya.com -> ->
127.0.0.1 conf.redswoosh.com -> ->
127.0.0.1 conf.redswoosh.net -> ->
127.0.0.1 conf.searchmyrequest.com #[CWS.Therealsearch.2] -> ->
127.0.0.1 config.grandstreetinteractive.com #[GSIM Uninstaller] -> ->
127.0.0.1 config.iesearch.com -> ->
127.0.0.1 config.medialoads.com -> ->
127.0.0.1 config.url404.com #[Parasite.Httper] -> ->
127.0.0.1 configure.internet-optimizer.com -> ->
127.0.0.1 congratulations.travelengine.net -> ->
127.0.0.1 connect.andlotsmore.com -> ->
127.0.0.1 connect.online-dialer.com #[Moniker32 Class][server down?] -> ->
127.0.0.1 console.popupsponsor.com -> ->
127.0.0.1 consumeralertsystem.com #[Adw.ConsumerAlertSystem.CASClient] -> ->
127.0.0.1 contacts.slemshield.com -> ->
127.0.0.1 content.cometsystems.com -> ->
127.0.0.1 contest.x10.com -> ->
127.0.0.1 contextual.webseeking.com -> ->
127.0.0.1 control.x10.com -> ->
127.0.0.1 conyc.com #[Win32.Chopemail] -> ->
127.0.0.1 cool-bookmark.com -> ->
127.0.0.1 coolmegasearch.com -> ->
127.0.0.1 coolpage.cc #[CWS.Realyellowpage] -> ->
127.0.0.1 cool-partner.com -> ->
127.0.0.1 cool-search.cc -> ->
127.0.0.1 coolsearchengine.net #[allsitessearch.com] -> ->
127.0.0.1 coolsearcher.net #[Troj/DownLdr-FC] -> ->
127.0.0.1 coolshader.com -> ->
127.0.0.1 coolwebsearchx.biz -> ->
127.0.0.1 coreg.flashtrack.net -> ->
127.0.0.1 corp.3721.com -> ->
127.0.0.1 count.casino-trade.com -> ->
127.0.0.1 count.popupsponsor.com -> ->
127.0.0.1 counter.1stblaze.com -> ->
127.0.0.1 counter.bloke.com -> ->
127.0.0.1 counter.mycomputer.com -> ->
127.0.0.1 counter4u.de #[IE-SpyAd] -> ->
127.0.0.1 counterbot.com -> ->
127.0.0.1 counterstrike.server.us #[Downloader.CDT] -> ->
127.0.0.1 cploving.awmhost.net #[TrojanClicker.Win32.Lopin] -> ->
127.0.0.1 cpzlcc.t.muxa.cc #[vv2.i1.topx.cc] -> ->
127.0.0.1 cr.stop-popup-ads-now.com -> ->
127.0.0.1 crack.polivar.net -> ->
127.0.0.1 crack.x-park.net -> ->
127.0.0.1 craftsmensearch.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 crazyfinder.com -> ->
127.0.0.1 crdrcr.com #[Win32.Holax.A] -> ->
127.0.0.1 creatives.adintelligence.net -> ->
127.0.0.1 creatives.ads360.com -> ->
127.0.0.1 crosskirk.com #[Dialer.Crosskirk] -> ->
127.0.0.1 crossroad.trekdata.com #[IE-SpyAd] -> ->
127.0.0.1 crs.akamai.com -> ->
127.0.0.1 crue.4-counter.com -> ->
127.0.0.1 csex.com -> ->
127.0.0.1 ctl.twain-tech.com #[Adware.Twaintec.B] -> ->
127.0.0.1 cu.clickspring.net -> ->
127.0.0.1 custom1.hurricanedigitalmedia.com -> ->
127.0.0.1 custom3.hurricanedigitalmedia.com -> ->
127.0.0.1 customize.netster.com -> ->
127.0.0.1 cxoads.dyndns.info -> ->
127.0.0.1 cybernet.m7z.net -> ->
127.0.0.1 d2.aaa1screensavers.com -> ->
127.0.0.1 dafinder.com -> ->
127.0.0.1 dailyfreepass.com #[Dropper.Small.24.P] -> ->
127.0.0.1 daily-search.com -> ->
127.0.0.1 daocash.com -> ->
127.0.0.1 daoclick.com -> ->
127.0.0.1 daosearch.com #[StartPage-GT][Spyware.Perez] -> ->
127.0.0.1 daotalk.com -> ->
127.0.0.1 dapfeed.com #[IE-SpyAd] -> ->
127.0.0.1 dappc.com #[Troj/Agent-IW] -> ->
127.0.0.1 dapsol.com #[TROJ_DLOADER.W][Win32.Lospad.A!downloader] -> ->
127.0.0.1 darin.eq5.oversee.net -> ->
127.0.0.1 data.overpro.com -> ->
127.0.0.1 data.quicksearches.net -> ->
127.0.0.1 datastorm.biz -> ->
127.0.0.1 dbbsrv.com #[bserv.darkblue.com][IE-SpyAd] -> ->
127.0.0.1 dbcventures.com -> ->
127.0.0.1 dclk.net -> ->
127.0.0.1 dclkcorp.rpts.net -> ->
127.0.0.1 dcplusplus.info -> ->
127.0.0.1 ddl.crackarchive.com -> ->
127.0.0.1 de.mspaceads.com -> ->
127.0.0.1 de1.doubleclick.net -> ->
127.0.0.1 debr.mspaceads.com -> ->
127.0.0.1 deepestsearch.com #[server down? - suspended] -> ->
127.0.0.1 defaultsearching.com #[CWS.Sounddrv][searchmeup.com] -> ->
127.0.0.1 defb.mspaceads.com -> ->
127.0.0.1 defp.mspaceads.com -> ->
127.0.0.1 deksten.biz #[Webhelper4u.SearchTerror] -> ->
127.0.0.1 delb.mspaceads.com -> ->
127.0.0.1 delta.adroar.com -> ->
127.0.0.1 delta2378493.com #[Download.Sumina] -> ->
127.0.0.1 demr.mspaceads.com -> ->
127.0.0.1 derbiz.com #[Dial/Playgrnd-B] -> ->
127.0.0.1 derdb.mspaceads.com -> ->
127.0.0.1 desk.mspaceads.com -> ->
127.0.0.1 desktoptraffic.net -> ->
127.0.0.1 dev.eurodnsservices.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 devcnt.rapidblaster.com -> ->
127.0.0.1 di.adsag.com -> ->
127.0.0.1 di.image.eshop.msn.com -> ->
127.0.0.1 dialeraccess.com -> ->
127.0.0.1 dialeradmin.com #[TROJ_PORNDIAL.BP][Dialer.WSV] -> ->
127.0.0.1 diallerplugin.com -> ->
127.0.0.1 dinamo.directwebsearch.net -> ->
127.0.0.1 dir.3721.com -> ->
127.0.0.1 direct.data-line.us #[server down?] -> ->
127.0.0.1 direct.simpletraffic.com -> ->
127.0.0.1 directory.istarthere.com -> ->
127.0.0.1 directplugin.com #[W32/Downloader] -> ->
127.0.0.1 distribution.trafficsyndicate.com -> ->
127.0.0.1 dka.directwebsearch.net -> ->
127.0.0.1 dl.aaascreensavers.com -> ->
127.0.0.1 dl.dialerssolution.com #[Adware.Cax][CAX Object] -> ->
127.0.0.1 dl.dna.wildtangent.com -> ->
127.0.0.1 dl.grokster.com -> ->
127.0.0.1 dl.lygo.com #[SideSearch] -> ->
127.0.0.1 dldw.clipgenie.com -> ->
127.0.0.1 dldw.medialoads.com -> ->
127.0.0.1 dldwb1.medialoads.com -> ->
127.0.0.1 dlm.dlmax.biz #[Parasite.Transponder.DLMax] -> ->
127.0.0.1 dlsearchbar.com #[DLSearchBar] -> ->
127.0.0.1 dlstats.eurodnsservices.com #[CQD2Loader Object] -> ->
127.0.0.1 dm.cometsystems.com #[DMProxyCtl Class] -> ->
127.0.0.1 dmvlite.com -> ->
127.0.0.1 dnserror.cc -> ->
127.0.0.1 doctor-alex.com -> ->
127.0.0.1 dofinder.com #[adwaredelete.com] -> ->
127.0.0.1 domainimages.targetwords.com -> ->
127.0.0.1 domainimages2.targetwords.com -> ->
127.0.0.1 domainlanding.targetwords.com -> ->
127.0.0.1 dorki.ya-hoo.biz -> ->
127.0.0.1 dorkodrom.com #[Troj/StartPa-HE] -> ->
127.0.0.1 download.adintelligence.net #[SysAI] -> ->
127.0.0.1 download.bigwebportal.com #[IE-SpyAd] -> ->
127.0.0.1 download.clipgenie.com -> ->
127.0.0.1 download.cometsystems.com -> ->
127.0.0.1 download.contextplus.net #[ADW_APROPOS.N] -> ->
127.0.0.1 download.dlsearchbar.com -> ->
127.0.0.1 download.energyfactor.com -> ->
127.0.0.1 download.feiyang.com -> ->
127.0.0.1 download.gigatechsoftware.com -> ->
127.0.0.1 download.internetfuel.com -> ->
127.0.0.1 download.ipinsight.net -> ->
127.0.0.1 download.moonri.com -> ->
127.0.0.1 download.nocreditcard.com #[TROJ_MAGICON.A] -> ->
127.0.0.1 download.nocreditcardgay.com -> ->
127.0.0.1 download.online-dialer.com -> ->
127.0.0.1 download.overpro.com #[WMService Class] -> ->
127.0.0.1 download.peopleonpage.com #[POP Loader] -> ->
127.0.0.1 download.psguard.com #[W32.Desktophijack] -> ->
127.0.0.1 download.quickflicks.com #[Parasite.SVAPlayer] -> ->
127.0.0.1 download.redswoosh.com #[rsinstaller.cab] -> ->
127.0.0.1 download.redswoosh.net #[InstallCtl Class][Panda.Adware.Redswoosh] -> ->
127.0.0.1 download.regfreeze.net -> ->
127.0.0.1 download.rfwnad.com #[ddm_download.ddm_control] -> ->
127.0.0.1 download.secondpower.com -> ->
127.0.0.1 download.securityiguard.com #[Trojan-Downloader.Win32.Agent.kf] -> ->
127.0.0.1 download.slemshield.com -> ->
127.0.0.1 download.smartpops.com #[SmartPops Class] -> ->
127.0.0.1 download.softwareds.com -> ->
127.0.0.1 download.startsurfing.com -> ->
127.0.0.1 download.statblaster.com #[Parasite.WildMedia][TROJ_STILEN.A] -> ->
127.0.0.1 download.stripplayer.com -> ->
127.0.0.1 download.supersmileys.com -> ->
127.0.0.1 download.taskbuddy.com #[findwhatevernow.com] -> ->
127.0.0.1 download.tibsystems.com #[Dial/WSV-A] -> ->
127.0.0.1 download.wildarcade.com #[Adware.OverPro] -> ->
127.0.0.1 download.wildtangent.com -> ->
127.0.0.1 download.winfixer.com -> ->
127.0.0.1 download1.shopathomeselect.com #[ADW_SAHAGENT.A] -> ->
127.0.0.1 download1.speedbit.com -> ->
127.0.0.1 download2.abetterinternet.com #[Parasite.Transponder] -> ->
127.0.0.1 download2.speedbit.com -> ->
127.0.0.1 download21.shopathomeselect.com -> ->
127.0.0.1 download3.speedbit.com -> ->
127.0.0.1 downloadaccelerator.com #[Adware.DAP] -> ->
127.0.0.1 download-ak.internetwasher.com -> ->
127.0.0.1 download-ak.systemsoap.com -> ->
127.0.0.1 downloadalot.com -> ->
127.0.0.1 download-dollars.com -> ->
127.0.0.1 downloads.aaa1screensavers.com #[Bargin Buddy] -> ->
127.0.0.1 downloads.nospyx.com -> ->
127.0.0.1 dpxml.infospace.com -> ->
127.0.0.1 dqmedia.net #[spam] -> ->
127.0.0.1 drfind4u.com -> ->
127.0.0.1 dr-find4u.com -> ->
127.0.0.1 drk.localnrd.com -> ->
127.0.0.1 drsearch4u.com -> ->
127.0.0.1 dr-search4u.com -> ->
127.0.0.1 dr-searchengine.com -> ->
127.0.0.1 drusearch.com #[Download.Ject.B][VBS/StartPa-DN] -> ->
127.0.0.1 dst.trafficsyndicate.com #[Parasite.HuntBar] -> ->
127.0.0.1 dt.ya-hoo.biz -> ->
127.0.0.1 dubolom.com -> ->
127.0.0.1 dv-networks.com -> ->
127.0.0.1 dyn.virtumundo.com -> ->
127.0.0.1 dynaserv.ads360.com -> ->
127.0.0.1 e.rn11.com #[Adware-IEDriver] -> ->
127.0.0.1 e2give.com #[Adware-E2Give][Spyware.e2give] -> ->
127.0.0.1 eaglehousing.com #[Trojan.Tabela.B] -> ->
127.0.0.1 easytoolbar.com -> ->
127.0.0.1 easywebfinder.net #[v61.com][full-search.net] -> ->
127.0.0.1 ebony.andlotsmore.com -> ->
127.0.0.1 ebonyplugin.com -> ->
127.0.0.1 ebs.bleep-access.com #[loadcash.biz] -> ->
127.0.0.1 e-clk.com -> ->
127.0.0.1 ecstazy.ya-hoo.biz -> ->
127.0.0.1 edn.redswoosh.com -> ->
127.0.0.1 edn.redswoosh.net -> ->
127.0.0.1 efc.iwon.com -> ->
127.0.0.1 eimg.com -> ->
127.0.0.1 els.redswoosh.net -> ->
127.0.0.1 empnads.com -> ->
127.0.0.1 emptysearch.com #[v61.com][full-search.net] -> ->
127.0.0.1 engage.everyone.net -> ->
127.0.0.1 enhancemysearch.com #[xzoomy.com][SunBelt.EnhanceMySearch] -> ->
127.0.0.1 enjoysearch.info #[CWS.Xxxvideo] -> ->
127.0.0.1 enter.hypercount.com -> ->
127.0.0.1 enter.topx.cc -> ->
127.0.0.1 enterprise.mycomputer.com -> ->
127.0.0.1 enterprise.superstats.com -> ->
127.0.0.1 entryplugin.com -> ->
127.0.0.1 envolo.peopleonpage.com -> ->
127.0.0.1 epeople.com -> ->
127.0.0.1 epsilon.searchassistant.net #[goclick.com] -> ->
127.0.0.1 errorpage404.com #[JS_TRAFFICHBAR.A] -> ->
127.0.0.1 es.1clickspyclean.com -> ->
127.0.0.1 eshopxml.msn.com -> ->
127.0.0.1 espana01.netvenda.com #[IntRuboskizo2 Class][server down?] -> ->
127.0.0.1 etype.adbureau.net -> ->
127.0.0.1 etype-images.adbureau.net -> ->
127.0.0.1 euro-randomizer.com #[Trojan.dropper] -> ->
127.0.0.1 eventuresnv.com -> ->
127.0.0.1 evker.com #[Dropper.Agent.5.BD] -> ->
127.0.0.1 exit.sellyourexit.com -> ->
127.0.0.1 exitfuel.com -> ->
127.0.0.1 exits.evilbucks.com #[zippy-lookup.com] -> ->
127.0.0.1 exits.freepornpics.com #[i-lookup.com] -> ->
127.0.0.1 exploited.lsass.cc #[Backdoor.Win32.SdBot.gen] -> ->
127.0.0.1 express.3721.com -> ->
127.0.0.1 extranude.net #[all sites redirect] -> ->
127.0.0.1 extremelyamateurs.com #[SunBelt.SmartBrowser] -> ->
127.0.0.1 extremelybabes.com #[Parasite.SmartBrowser] -> ->
127.0.0.1 extreme-virgins.com #[Troj/StartPa-BI] -> ->
127.0.0.1 ezcybersearch.com #[EZCyberSearch.Surebar] -> ->
127.0.0.1 ezcybersearch.mail.everyone.net -> ->
127.0.0.1 f2.cometsystems.com -> ->
127.0.0.1 f3search.com -> ->
127.0.0.1 fad-407.mtl4.targetnet.com -> ->
127.0.0.1 fad-410.mtl4.targetnet.com -> ->
127.0.0.1 fad-414.mtl4.targetnet.com -> ->
127.0.0.1 falk2.speedera.net -> ->
127.0.0.1 famulus.msnbc.com -> ->
127.0.0.1 fastcounter.linkexchange.com -> ->
127.0.0.1 fasterhomepage.com #[Trojan-Downloader.Win32.Agent.oo] -> ->
127.0.0.1 fasterxp.com -> ->
127.0.0.1 fastsearchweb.com #[Adware.Fastsearchweb] -> ->
127.0.0.1 fast-web-search.com #[IE-SpyAd] -> ->
127.0.0.1 fatfree-software.com #[Trojan-Clicker.Win32.VB.gn] -> ->
127.0.0.1 fhg.aboutclicker.com -> ->
127.0.0.1 fhgstr.com #[Trojan.Zlob.C] -> ->
127.0.0.1 fih.4count.com -> ->
127.0.0.1 file.obalduyam.net #[Trojan-Downloader.Win32.Small.ams] -> ->
127.0.0.1 files.cc.cometsystems.com -> ->
127.0.0.1 files.cometsystems.com -> ->
127.0.0.1 filesharingaccess.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 find.greatsearch.info -> ->
127.0.0.1 find777.com -> ->
127.0.0.1 findallgood.com -> ->
127.0.0.1 find-by-web.com -> ->
127.0.0.1 findfreegoods.com -> ->
127.0.0.1 findhelper.net #[v61.com][full-search.net] -> ->
127.0.0.1 find-it-easy.org #[Parasite.CoolWebSearch.InetDoor] -> ->
127.0.0.1 findology.mail.everyone.net -> ->
127.0.0.1 find-online.net #[TROJ_STARTPAG.GY][StartPage-AI.gen] -> ->
127.0.0.1 find-on-the-net.com -> ->
127.0.0.1 find-quick.com -> ->
127.0.0.1 findsite.cc -> ->
127.0.0.1 findspyware.net #[ADW_ADCLICKER.BM] -> ->
127.0.0.1 findtop.net -> ->
127.0.0.1 findwhatevernow.blazefind.com -> ->
127.0.0.1 findwhatevernow.searchbrowser.com -> ->
127.0.0.1 findyourweb.net #[server down?] -> ->
127.0.0.1 firstname.com #[IE-SpyAd] -> ->
127.0.0.1 firstxxxsearch.com #[digimedia.com] -> ->
127.0.0.1 flashtrack.net #[IE-SpyAd] -> ->
127.0.0.1 flingstone.com #[TROJ_WINFAVS.A][Trojan.TrustedZones] -> ->
127.0.0.1 flyinads.com #[IE-SpyAd] -> ->
127.0.0.1 fogsearch.net #[MHTMLRedir.Exploit] -> ->
127.0.0.1 fp.clickspring.net #[Adware.PurityScan.C] -> ->
127.0.0.1 fr1.doubleclick.net -> ->
127.0.0.1 fr4-download.nocreditcard.net -> ->
127.0.0.1 fr4-download.stripplayer.com -> ->
127.0.0.1 fr4-download.strip-player.com -> ->
127.0.0.1 free2xsite.com -> ->
127.0.0.1 free-bingo-game.org -> ->
127.0.0.1 freedownloads.screensavers4free.net #[Trojan-Downloader.Win32.Vivia.l] -> ->
127.0.0.1 free-firewall.info -> ->
127.0.0.1 freematureporn.org -> ->
127.0.0.1 freemp3blaster.com #[installs RapidBlaster] -> ->
127.0.0.1 free-nylon-porn.com #[searchmeup.com] -> ->
127.0.0.1 free-popup-killer.com #[TrojanClicker.Win32.VB.bn] -> ->
127.0.0.1 freeporncometome.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 freepornhotel.com -> ->
127.0.0.1 free-scratch-cards.com -> ->
127.0.0.1 freestuff.com.19828.fb.dbbsrv.com #[roar.com] -> ->
127.0.0.1 freexxxplace.com -> ->
127.0.0.1 friendcards.com -> ->
127.0.0.1 friendfinder.com -> ->
127.0.0.1 friendlysearch.net #[v61.com][full-search.net] -> ->
127.0.0.1 frogsearch.net #[allsitessearch.com] -> ->
127.0.0.1 ftp.clicktracking.info #[Adware-ClickTrack] -> ->
127.0.0.1 ftp.x10.com -> ->
127.0.0.1 fullhqgalleries.com -> ->
127.0.0.1 fullmotionmedia.com -> ->
127.0.0.1 fzkdvi.t.muxa.cc #[vv3.i1.topx.cc] -> ->
127.0.0.1 g3ads.com -> ->
127.0.0.1 gallery.rampid.com -> ->
127.0.0.1 games.andlotsmore.com #[NGD Systems Dialer] -> ->
127.0.0.1 gaming.gamesplayground.com -> ->
127.0.0.1 gay.rapidblaster.com -> ->
127.0.0.1 gay.xxxcounter.com -> ->
127.0.0.1 gbs.gator.com -> ->
127.0.0.1 gcirm.dailyrecord.com #[RealMedia] -> ->
127.0.0.1 gcirm.gannett-tv.com -> ->
127.0.0.1 gen.aflashcounter.com -> ->
127.0.0.1 general-guide.com -> ->
127.0.0.1 generic.vpptechnologies.com -> ->
127.0.0.1 geo2.track-star.com -> ->
127.0.0.1 get.downloadalot.com -> ->
127.0.0.1 get.freephone.cc #[SunBelt.Transponder.Freephone] -> ->
127.0.0.1 get.privacycash.com -> ->
127.0.0.1 get-access.com -> ->
127.0.0.1 get-search.cc -> ->
127.0.0.1 get-sex.net #[1st-sex.us] -> ->
127.0.0.1 getupdate.com -> ->
127.0.0.1 gigasearch.biz #[AdWare.Giga] -> ->
127.0.0.1 giga-search.info #[morwillsearch.com] -> ->
127.0.0.1 gigaseek.info -> ->
127.0.0.1 gigex.com #[IE-SpyAd] -> ->
127.0.0.1 gkn.directwebsearch.net -> ->
127.0.0.1 glintbill.com -> ->
127.0.0.1 globe-finder.net #[clearsearch.net] -> ->
127.0.0.1 globolook.com -> ->
127.0.0.1 go.mailbits.com -> ->
127.0.0.1 go.sidebysidesearch.com -> ->
127.0.0.1 go.targetsearch.info -> ->
127.0.0.1 go-acct.com -> ->
127.0.0.1 go-advertising.com -> ->
127.0.0.1 go-all.com -> ->
127.0.0.1 goinnow.com -> ->
127.0.0.1 go-in-now.com -> ->
127.0.0.1 gonnasearch.com #[CWS.Gonnasearch] -> ->
127.0.0.1 goodcounter.com -> ->
127.0.0.1 goodfind4u.com -> ->
127.0.0.1 good-find4u.com -> ->
127.0.0.1 goodoldsearch.com #[allsitessearch.com] -> ->
127.0.0.1 goodsearch4u.com -> ->
127.0.0.1 goodsearchengine.com -> ->
127.0.0.1 google.begin2search.com -> ->
127.0.0.1 goo-gle.info -> ->
127.0.0.1 goporn.us -> ->
127.0.0.1 gorefer.com -> ->
127.0.0.1 gotraffic.us -> ->
127.0.0.1 grandfun.com #[alphaerotica.com] -> ->
127.0.0.1 grandstreetinteractive.com -> ->
127.0.0.1 graphics.friendfinder.com -> ->
127.0.0.1 graphics.nicecards.com -> ->
127.0.0.1 graphics.x10.com -> ->
127.0.0.1 great.andlotsmore.com -> ->
127.0.0.1 great-pc-software.com -> ->
127.0.0.1 greatstartpage.com #[IE-SpyAd] -> ->
127.0.0.1 grokster.com #[IE-SpyAd][P2P] -> ->
127.0.0.1 groundworm.biz #[Win32.Bagz.F][MHTMLRedir.Exploit] -> ->
127.0.0.1 gs.gator.com -> ->
127.0.0.1 gsm-transfer.com #[Backdoor.Win32.Haxdoor.cx] -> ->
127.0.0.1 gugle.biz #[Adware.NowFind] -> ->
127.0.0.1 hangoutspot.com -> ->
127.0.0.1 hao3344.com #[Adware.Adtest] -> ->
127.0.0.1 hardclito.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 hardcore.xxxcounter.com -> ->
127.0.0.1 hardy.netster.com -> ->
127.0.0.1 hastalavista.com -> ->
127.0.0.1 hb.disney.go.com #[HitBox] -> ->
127.0.0.1 h-c-t.com -> ->
127.0.0.1 help.internet-optimizer.com -> ->
127.0.0.1 hightrafficads.com #[Adware.HighTraffic] -> ->
127.0.0.1 historyoff.com -> ->
127.0.0.1 hit.elevonsearch.com -> ->
127.0.0.1 hit.traxdb.net -> ->
127.0.0.1 hitgo.com #[IPU][InPop.InControl] -> ->
127.0.0.1 hits.roitracker.com #[IE-SpyAd] -> ->
127.0.0.1 hits.sexcites.com -> ->
127.0.0.1 home.dworx.org #[MHTMLRedir.Exploit] -> ->
127.0.0.1 home.iwon.com #[iWon CoPilot Toolbar] -> ->
127.0.0.1 home.netster.com -> ->
127.0.0.1 home-search.cc -> ->
127.0.0.1 hornyisland.org -> ->
127.0.0.1 horse-active.net -> ->
127.0.0.1 horse-dns.net -> ->
127.0.0.1 horse-search.net -> ->
127.0.0.1 horseserver.net #[Troj/Haxdor-Fam][Trojan.Startpage.I] -> ->
127.0.0.1 hosted.nastydollars.com -> ->
127.0.0.1 hot.thebugs.ws #[Trojan.Favadd] -> ->
127.0.0.1 hot-find.com -> ->
127.0.0.1 hotfind4u.com -> ->
127.0.0.1 hot-find4u.com -> ->
127.0.0.1 hotmoms.biz -> ->
127.0.0.1 hotoffers.info #[MHTMLRedir.Exploit][SPYW_COOLWEB.G] -> ->
127.0.0.1 hotqueens.com -> ->
127.0.0.1 hotsearch.com #[roar.com][IE-SpyAd] -> ->
127.0.0.1 hotsearch4u.com -> ->
127.0.0.1 hotsearchbar.com #[iiittt Class][SpiderSearch] -> ->
127.0.0.1 htmlpublishers.com -> ->
127.0.0.1 huntbar.com -> ->
127.0.0.1 huyator.biz -> ->
127.0.0.1 huy-search.info -> ->
127.0.0.1 hyperbanner.net -> ->
127.0.0.1 hypercount.com -> ->
127.0.0.1 i.euniverse.com -> ->
127.0.0.1 i.flowgo.com #[FlowGoBar Toolbar] -> ->
127.0.0.1 i.gms1.net #[McAfee.Adware-IEHost] -> ->
127.0.0.1 i.perfectnav.com -> ->
127.0.0.1 i.popupsponsor.com -> ->
127.0.0.1 i1img.com -> ->
127.0.0.1 iads.adroar.com #[Adware.AdRoar][ADW_ADROAR.A] -> ->
127.0.0.1 icache.getrelevant.com -> ->
127.0.0.1 icanfindit.net -> ->
127.0.0.1 iclicks.net -> ->
127.0.0.1 icons.joysticknetworks.com #[AdWare.MediaMotor.a] -> ->
127.0.0.1 icountertop.com -> ->
127.0.0.1 idolch.net #[Trojan.Idocha] -> ->
127.0.0.1 ie.targetwords.com -> ->
127.0.0.1 ie.twrds.com -> ->
127.0.0.1 ie-find.com -> ->
127.0.0.1 iefind4u.com -> ->
127.0.0.1 ie-find4u.com -> ->
127.0.0.1 iehelp.net #[Trojan.Domcom][MHTMLRedir.Exploit] -> ->
127.0.0.1 ieprivacy.com -> ->
127.0.0.1 iesearch4u.com -> ->
127.0.0.1 ie-search4u.com -> ->
127.0.0.1 iesearchengine.com -> ->
127.0.0.1 ie-searchengine.com -> ->
127.0.0.1 ifcol.exitfuel.com -> ->
127.0.0.1 i-find4u.com -> ->
127.0.0.1 iframedollars.biz #[Trojan.Moo.B] -> ->
127.0.0.1 ilabtech.com #[IE-SpyAd] -> ->
127.0.0.1 image.0mm.com -> ->
127.0.0.1 image.eshop.msn.com -> ->
127.0.0.1 image.imgfarm.com -> ->
127.0.0.1 image.linkexchange.com -> ->
127.0.0.1 image.versiontracker.com -> ->
127.0.0.1 imageads1.googleadservices.com -> ->
127.0.0.1 images.163.com -> ->
127.0.0.1 images.amateurgirlphotos.com -> ->
127.0.0.1 images.atweb.com -> ->
127.0.0.1 images.blogads.com -> ->
127.0.0.1 images.clickfinders.com -> ->
127.0.0.1 images.speedbit.com -> ->
127.0.0.1 images.targetwords.com -> ->
127.0.0.1 images.tibsystems.com -> ->
127.0.0.1 images.x10.com -> ->
127.0.0.1 images2.vpptechnologies.com -> ->
127.0.0.1 imesh-download-imesh.com -> ->
127.0.0.1 imesh-lite.net #[AdWare.GoWebSite][Adware-ESDAds] -> ->
127.0.0.1 img.3721.com -> ->
127.0.0.1 img.adsag.com -> ->
127.0.0.1 img.peopleonpage.com -> ->
127.0.0.1 img.rn11.com -> ->
127.0.0.1 img10.coolsavings.com -> ->
127.0.0.1 imgfarm.com #[Fun Web Products Installer Start] -> ->
127.0.0.1 img-iad.mediaplex.com -> ->
127.0.0.1 imgs.klikfind.com -> ->
127.0.0.1 impact.contextclick.com -> ->
127.0.0.1 impress.targetwords.com -> ->
127.0.0.1 in.netster.com -> ->
127.0.0.1 in.pcmonitorpro.com -> ->
127.0.0.1 in.popupblocker.com -> ->
127.0.0.1 in.selltraffic.biz -> ->
127.0.0.1 in.uninstaller.com -> ->
127.0.0.1 in.webcounter.cc #[CWS.Tapicfg.2][Adware.SearchCounter] -> ->
127.0.0.1 includes.all2save.com -> ->
127.0.0.1 incredifind.com #[Parasite.KeenValue] -> ->
127.0.0.1 inet-casino.com #[becomers.com] -> ->
127.0.0.1 infinity.zango.com #[ZangoInstaller Class] -> ->
127.0.0.1 info.browserpal.com #[App/Bpinst-A] -> ->
127.0.0.1 info.domaincar.com -> ->
127.0.0.1 infobeat.com -> ->
127.0.0.1 infostart.com #[IE-SpyAd] -> ->
127.0.0.1 inqwire.com #[IE-SpyAd] -> ->
127.0.0.1 install.browsertoolbar.com #[Backdoor.Autoupder][BrowserToolbar] -> ->
127.0.0.1 install.redswoosh.com -> ->
127.0.0.1 install.redswoosh.net -> ->
127.0.0.1 install.wildtangent.com #[WildTangent Active Launcher] -> ->
127.0.0.1 install38.msupdater.org -> ->
127.0.0.1 instantsearch.cc #[Adware/TheLocalSearch] -> ->
127.0.0.1 integrated-ventures.com -> ->
127.0.0.1 interesoft.com -> ->
127.0.0.1 internetbroadcastnow.com -> ->
127.0.0.1 internetfuel.com -> ->
127.0.0.1 intra.valueclick.com -> ->
127.0.0.1 ipassist.biz #[MHTMLRedir.Exploit] -> ->
127.0.0.1 ipcons.biz -> ->
127.0.0.1 ipend.datastorm.biz #[Parasite.ClientMan] -> ->
127.0.0.1 ipinsight.com #[Flashtrack][Adware.Ipinsight] -> ->
127.0.0.1 iqsearch.cc #[Adware.Topantispyware] -> ->
127.0.0.1 iquicksearch.net -> ->
127.0.0.1 is.casalemedia.com -> ->
127.0.0.1 is.netster.com -> ->
127.0.0.1 is1.crawler.com -> ->
127.0.0.1 isearch.m7z.net -> ->
127.0.0.1 i-search4u.com -> ->
127.0.0.1 isg01.casalemedia.com -> ->
127.0.0.1 isg02.casalemedia.com -> ->
127.0.0.1 isg03.casalemedia.com -> ->
127.0.0.1 isg04.casalemedia.com -> ->
127.0.0.1 isg05.casalemedia.com -> ->
127.0.0.1 isg06.casalemedia.com -> ->
127.0.0.1 isg07.casalemedia.com -> ->
127.0.0.1 isg08.casalemedia.com -> ->
127.0.0.1 isg09.casalemedia.com -> ->
127.0.0.1 isg10.casalemedia.com -> ->
127.0.0.1 ispykiller.com #[Rogue/Suspect] -> ->
127.0.0.1 it.netster.com -> ->
127.0.0.1 iwebtunes.com -> ->
127.0.0.1 j.2004cms.com -> ->
127.0.0.1 j800banners.cjt1.net -> ->
127.0.0.1 jadlogix.cjt1.net -> ->
127.0.0.1 jadtegrity.cjt1.net -> ->
127.0.0.1 jaimmedia.cjt1.net -> ->
127.0.0.1 jama.lovinghost.com #[Trojan-Proxy.Win32.Agemt.ei] -> ->
127.0.0.1 javatar.cjt1.net -> ->
127.0.0.1 jbeet.cjt1.net -> ->
127.0.0.1 jbigpops.cjt1.net -> ->
127.0.0.1 jbns2.cydoor.com -> ->
127.0.0.1 jbravenet.cjt1.net -> ->
127.0.0.1 jcdcover.cjt1.net -> ->
127.0.0.1 jclickspring.cjt1.net -> ->
127.0.0.1 jcollegehumor.cjt1.net -> ->
127.0.0.1 jcontent.bns1.m7z.net -> ->
127.0.0.1 jdownloadacc.cjt1.net -> ->
127.0.0.1 jdownloadaccint.cjt1.net -> ->
127.0.0.1 jedonkey.cjt1.net -> ->
127.0.0.1 jeuniverse.cjt1.net -> ->
127.0.0.1 jgen4.cjt1.net -> ->
127.0.0.1 jhot.cjt1.net -> ->
127.0.0.1 jicmedia.cjt1.net -> ->
127.0.0.1 jicq.cjt1.net -> ->
127.0.0.1 jieplugin.cjt1.net -> ->
127.0.0.1 jinternetoptimizer.cjt1.net -> ->
127.0.0.1 jmediabuy1.cjt1.net -> ->
127.0.0.1 jmediabuyad.cjt1.net -> ->
127.0.0.1 jmindset.cjt1.net -> ->
127.0.0.1 jmindsettest.cjt1.net -> ->
127.0.0.1 jnictech.cjt1.net -> ->
127.0.0.1 join.exitfuel.com -> ->
127.0.0.1 join.popcorn.net -> ->
127.0.0.1 josynet.com #[smartsearchpage.com] -> ->
127.0.0.1 jp00001.itbdns.com #[Backdoor.Ryejet.B] -> ->
127.0.0.1 jpalt.cjt1.net -> ->
127.0.0.1 jpiolet.cjt1.net -> ->
127.0.0.1 js.domainsponsor.com -> ->
127.0.0.1 js.get.about.com -> ->
127.0.0.1 js.valueclick.com -> ->
127.0.0.1 js.zmedia.com -> ->
127.0.0.1 jsanboxer.cjt1.net -> ->
127.0.0.1 jseedcorn.cjt1.net -> ->
127.0.0.1 jsercee.cjt1.net -> ->
127.0.0.1 jthedelfin.cjt1.net -> ->
127.0.0.1 justload.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 jwarezp2p.cjt1.net -> ->
127.0.0.1 jwildmedia.cjt1.net -> ->
127.0.0.1 kansas.valueclick.com -> ->
127.0.0.1 kazanon.com #[Kazanon] -> ->
127.0.0.1 keenvalue.com #[Adware.Keenval] -> ->
127.0.0.1 keywords.bcentral.com -> ->
127.0.0.1 keywordstech.com -> ->
127.0.0.1 kita-search.com -> ->
127.0.0.1 klikfeed.com -> ->
127.0.0.1 klikfind.com -> ->
127.0.0.1 klikw.com #[ActiveFormX Control][Downloader-ACZ] -> ->
127.0.0.1 kloun.com -> ->
127.0.0.1 klounada.com -> ->
127.0.0.1 kon4ay.biz -> ->
127.0.0.1 krasava.v-nature.biz -> ->
127.0.0.1 krimbaset.com #[stepsofsearch.com] -> ->
127.0.0.1 k-search.biz -> ->
127.0.0.1 kudd.com -> ->
127.0.0.1 kutsap.com #[Trojan.Anicmoo] -> ->
127.0.0.1 lab-wire.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 landing.seek2.com -> ->
127.0.0.1 lasagne.adlogix.com -> ->
127.0.0.1 last-find.com -> ->
127.0.0.1 lastfind4u.com -> ->
127.0.0.1 last-find4u.com -> ->
127.0.0.1 lastsearch4u.com -> ->
127.0.0.1 lastsearchengine.com -> ->
127.0.0.1 laurel.netster.com -> ->
127.0.0.1 lb1.netster.com -> ->
127.0.0.1 lb3.netster.com -> ->
127.0.0.1 lbrain.la.valueclick.com -> ->
127.0.0.1 lbrain.valueclick.com -> ->
127.0.0.1 leader.linkexchange.com -> ->
127.0.0.1 letgohome.com -> ->
127.0.0.1 letsgofind.com -> ->
127.0.0.1 lfnmcjw.biz #[start-page.info] -> ->
127.0.0.1 likesurfing.com -> ->
127.0.0.1 line-plus.com #[StartPage-FP][MHTMLRedir.Exploit] -> ->
127.0.0.1 link.rawtocash.net #[JS_FORTNIGHT] -> ->
127.0.0.1 linkcode.info -> ->
127.0.0.1 linkexchange.com -> ->
127.0.0.1 linklist.cc #[CWS.Realyellowpage][Adware.Raxums][coolpage.cc] -> ->
127.0.0.1 linkshelper.com #[Adware.MetaSearch] -> ->
127.0.0.1 linktracker.angelfire.com -> ->
127.0.0.1 linktracker.tripod.com -> ->
127.0.0.1 list2004.com #[CWS.Realyellowpage][MHTMLRedir.Exploit] -> ->
127.0.0.1 listbot.com -> ->
127.0.0.1 listincestsites.com #[StartPage-AU] -> ->
127.0.0.1 lists.adroar.com -> ->
127.0.0.1 livegaycinema.com -> ->
127.0.0.1 livelines.ads365.com -> ->
127.0.0.1 livesearchpage.com #[allsitessearch.com] -> ->
127.0.0.1 livestat.com -> ->
127.0.0.1 lizardbar.com -> ->
127.0.0.1 localnrd.com #[ADW_NRD.A] -> ->
127.0.0.1 locator.cc #[CoolWebSearch.DOMPeek] -> ->
127.0.0.1 locator.imagesrvr.com -> ->
127.0.0.1 locators.com #[Adware.Locator] -> ->
127.0.0.1 log.cc.cometsystems.com #[Spyware.CometCursor] -> ->
127.0.0.1 logoplugin.com -> ->
127.0.0.1 logs.roings.com -> ->
127.0.0.1 look1.net -> ->
127.0.0.1 look2me.com #[Spyware.Look2Me] -> ->
127.0.0.1 look-today.com -> ->
127.0.0.1 love-catalog.net #[F-Secure.Small.wy] -> ->
127.0.0.1 ls0.net -> ->
127.0.0.1 lsimg.com -> ->
127.0.0.1 lsjmp.com -> ->
127.0.0.1 lstat.susanin.com -> ->
127.0.0.1 lucky-dreams.com #[Troj/Malche-A] -> ->
127.0.0.1 luckyhomepage.com #[search.targetwords.com\1stblaze.com] -> ->
127.0.0.1 lust-mature.com -> ->
127.0.0.1 magic.3721.com -> ->
127.0.0.1 mail.mailwiper.com -> ->
127.0.0.1 mail.netster.com -> ->
127.0.0.1 mail.searchalot.com -> ->
127.0.0.1 mail.vx2.cc -> ->
127.0.0.1 mailwiper.com -> ->
127.0.0.1 main.netster.com -> ->
127.0.0.1 main.vpptechnologies.com #[IE-SpyAd] -> ->
127.0.0.1 mainws2.7search.com -> ->
127.0.0.1 makechoice.com #[McAfee.QlowZones-25] -> ->
127.0.0.1 makeyoursearch.com #[v61.com][full-search.net] -> ->
127.0.0.1 managedsearch.net #[v61.com][full-search.net] -> ->
127.0.0.1 manga2.com -> ->
127.0.0.1 manmednw.net -> ->
127.0.0.1 maps.netster.com -> ->
127.0.0.1 marchingants.com -> ->
127.0.0.1 margo.cafreedom.com -> ->
127.0.0.1 mark.3721.com -> ->
127.0.0.1 massearch.net #[Trojan.Stwoyle] -> ->
127.0.0.1 master.mx-targeting.com #[Adware.MXTarget.B] -> ->
127.0.0.1 matrix-screensaver.net -> ->
127.0.0.1 mature.xxxcounter.com -> ->
127.0.0.1 mature-bleeping-young-boys.com #[JAVA_BYTEVER.A] -> ->
127.0.0.1 maximizedmedia.com -> ->
127.0.0.1 maximuncash.com -> ->
127.0.0.1 max-stats.com #[WORM_MASLAN.D] -> ->
127.0.0.1 mb.crawler.com -> ->
127.0.0.1 mcc.cometsystems.com -> ->
127.0.0.1 mcc-fd.cometsystems.com -> ->
127.0.0.1 media.euniverse.com -> ->
127.0.0.1 media.gigex.com #[SpeedDelivery] -> ->
127.0.0.1 media.mgnetwork.com -> ->
127.0.0.1 media.simpletraffic.com -> ->
127.0.0.1 media.smilepop.com -> ->
127.0.0.1 media.superstats.com -> ->
127.0.0.1 media1.fastclick.net -> ->
127.0.0.1 media10.fastclick.net -> ->
127.0.0.1 media11.fastclick.net -> ->
127.0.0.1 media12.fastclick.net -> ->
127.0.0.1 media13.fastclick.net -> ->
127.0.0.1 media14.fastclick.net -> ->
127.0.0.1 media15.fastclick.net -> ->
127.0.0.1 media16.fastclick.net -> ->
127.0.0.1 media17.fastclick.net -> ->
127.0.0.1 media18.fastclick.net -> ->
127.0.0.1 media19.fastclick.net -> ->
127.0.0.1 media2.fastclick.net -> ->
127.0.0.1 media20.fastclick.net -> ->
127.0.0.1 media21.fastclick.net -> ->
127.0.0.1 media22.fastclick.net -> ->
127.0.0.1 media23.fastclick.net -> ->
127.0.0.1 media24.fastclick.net -> ->
127.0.0.1 media25.fastclick.net -> ->
127.0.0.1 media26.fastclick.net -> ->
127.0.0.1 media27.fastclick.net -> ->
127.0.0.1 media28.fastclick.net -> ->
127.0.0.1 media29.fastclick.net -> ->
127.0.0.1 media3.fastclick.net -> ->
127.0.0.1 media30.fastclick.net -> ->
127.0.0.1 media31.fastclick.net -> ->
127.0.0.1 media32.fastclick.net -> ->
127.0.0.1 media4.fastclick.net -> ->
127.0.0.1 media47.fastclick.net -> ->
127.0.0.1 media5.fastclick.net -> ->
127.0.0.1 media6.fastclick.net -> ->
127.0.0.1 media7.fastclick.net -> ->
127.0.0.1 media73.fastclick.net -> ->
127.0.0.1 media8.fastclick.net -> ->
127.0.0.1 media9.fastclick.net -> ->
127.0.0.1 media94.fastclick.net -> ->
127.0.0.1 media97.fastclick.net -> ->
127.0.0.1 media98.fastclick.net -> ->
127.0.0.1 media99.fastclick.net -> ->
127.0.0.1 mediabuy-nic.cjt1.net -> ->
127.0.0.1 mediafeast.com -> ->
127.0.0.1 medialoads.com -> ->
127.0.0.1 meduza.xhpro.com -> ->
127.0.0.1 mega.directwebsearch.net -> ->
127.0.0.1 megabyte.crosswinds.net -> ->
127.0.0.1 members.homecareersearch.com -> ->
127.0.0.1 members.us.homecareersearch.com -> ->
127.0.0.1 membersplayground.com -> ->
127.0.0.1 membersplugin.com -> ->
127.0.0.1 messagebroadcaster.net #[messenger pop-up scam] -> ->
127.0.0.1 meta.3721.com -> ->
127.0.0.1 metroid.clickspring.net #[Parasite.PurityScan] -> ->
127.0.0.1 mi.doubleclick.net -> ->
127.0.0.1 mig29here.com #[PWSteal.Revcuss.C] -> ->
127.0.0.1 mimg-snv.mediaplex.com -> ->
127.0.0.1 mindseti.com #[Parasite.Transponder] -> ->
127.0.0.1 mirka.cafreedom.com -> ->
127.0.0.1 misc.outster.com -> ->
127.0.0.1 mmm.imgiant.net -> ->
127.0.0.1 mmm.roings.com #[limmyloding.limmyform] -> ->
127.0.0.1 mmm1.media-motor.net #[mmm.roings.com] -> ->
127.0.0.1 mmviewer.com #[FavoriteMan.Erationalnews] -> ->
127.0.0.1 mn104.coolsavings.com -> ->
127.0.0.1 mojo.com #[CustomToolbar.Setup] -> ->
127.0.0.1 mojofarm.mediaplex.com -> ->
127.0.0.1 mojosearch.com -> ->
127.0.0.1 mojoworks.mediaplex.com -> ->
127.0.0.1 money.cafreedom.com -> ->
127.0.0.1 money2.netfirms.com #[The Money Toolbar] -> ->
127.0.0.1 more.teens3.com -> ->
127.0.0.1 more-pages.com -> ->
127.0.0.1 moreresultshere.com -> ->
127.0.0.1 morpheus-download-morpheus.com #[Trojan-Clicker.Win32.VB.gn] -> ->
127.0.0.1 morpheus-for-mac-morpheus.com -> ->
127.0.0.1 morpheus-for-morpheus.com -> ->
127.0.0.1 morwillsearch.com #[Adware.MWSearch][cfgwr Class] -> ->
127.0.0.1 morze.cafreedom.com #[Clickbank Creatives] -> ->
127.0.0.1 movie-browser.com -> ->
127.0.0.1 moviedrive.fast-stars.com #[ne-ebu.com] -> ->
127.0.0.1 moviesponsor.istarthere.com -> ->
127.0.0.1 mp.medialoads.com -> ->
127.0.0.1 mp3.baidu.com -> ->
127.0.0.1 mp3.popcorn.net -> ->
127.0.0.1 msearch.3721.com -> ->
127.0.0.1 ms-find.com -> ->
127.0.0.1 msfind4u.com -> ->
127.0.0.1 ms-find4u.com -> ->
127.0.0.1 mshelpdesk.net -> ->
127.0.0.1 mssearch4u.com -> ->
127.0.0.1 ms-search4u.com -> ->
127.0.0.1 ms-searchengine.com -> ->
127.0.0.1 ms-search-engine.com -> ->
127.0.0.1 msupdater.com #[Troj/StartPa-H] -> ->
127.0.0.1 msupdater.org #[Troj/StartPa-H] -> ->
127.0.0.1 msxpsupport.com #[Adware.SearchMaid] -> ->
127.0.0.1 mt1.climaxbucks.com -> ->
127.0.0.1 mt102.mtree.com -> ->
127.0.0.1 mt111.mtree.com -> ->
127.0.0.1 mt112.mtree.com -> ->
127.0.0.1 mt113.mtree.com -> ->
127.0.0.1 mt119.mtree.com -> ->
127.0.0.1 mt123.mtree.com -> ->
127.0.0.1 mt19.mtree.com -> ->
127.0.0.1 mt20.mtree.com -> ->
127.0.0.1 mt21.mtree.com -> ->
127.0.0.1 mt22.mtree.com -> ->
127.0.0.1 mt23.climaxbucks.com -> ->
127.0.0.1 mt23.mtree.com -> ->
127.0.0.1 mt31.mtree.com -> ->
127.0.0.1 mt33.mtree.com -> ->
127.0.0.1 mt34.mtree.com -> ->
127.0.0.1 mt44.mtree.com -> ->
127.0.0.1 mt78.mtree.com -> ->
127.0.0.1 mt90.mtree.com -> ->
127.0.0.1 muchsearch.com #[allsitessearch.com] -> ->
127.0.0.1 multimpp.com #[MultimppObj Class][AdvWare.BiSpy.o] -> ->
127.0.0.1 music.joysticknetworks.com -> ->
127.0.0.1 musicdd.com -> ->
127.0.0.1 music-magnet.com #[Trojan.Win32.Toras.b] -> ->
127.0.0.1 mvr.us #[Parasite.NavExcel] -> ->
127.0.0.1 mvr3d.net #[NavExcel\n-CASE] -> ->
127.0.0.1 mx253.sb03.com #[FavoriteMan] -> ->
127.0.0.1 mycomputer.com -> ->
127.0.0.1 mycpworld.com -> ->
127.0.0.1 my-find.com -> ->
127.0.0.1 myfind4u.com -> ->
127.0.0.1 my-find4u.com -> ->
127.0.0.1 myfriends.go2me.biz #[Trojan.ByteVerify] -> ->
127.0.0.1 myhitlogger.com -> ->
127.0.0.1 mypagefinder.com #[Parasite.MyPageFinder] -> ->
127.0.0.1 mypanicbutton.com #[ABetterInternet.C] -> ->
127.0.0.1 mypoisk.com -> ->
127.0.0.1 mypoiskovik.com -> ->
127.0.0.1 my-search.cc -> ->
127.0.0.1 mysearch4u.com -> ->
127.0.0.1 my-search4u.com -> ->
127.0.0.1 my-searcher.com -> ->
127.0.0.1 mysearches.com -> ->
127.0.0.1 mysearchpage.biz -> ->
127.0.0.1 mysearchstart.com -> ->
127.0.0.1 myselfteens.com -> ->
127.0.0.1 myspyfreepc.com #[Rogue/Suspect] -> ->
127.0.0.1 mzyzlu.t.muxa.cc #[Troj/StartPa-CB] -> ->
127.0.0.1 nastygirlssearch.com -> ->
127.0.0.1 neededware.com #[Adware.NeededWare][AdWare.Winsta.a] -> ->
127.0.0.1 neo-toolbar.com #[InstControl Class][Trojan.NeoToolbar.Installer] -> ->
127.0.0.1 net.innovativemarketing.com.ua -> ->
127.0.0.1 netlist.info -> ->
127.0.0.1 netmegasearch.com -> ->
127.0.0.1 netpalnow.com #[Adware.Netpal] -> ->
127.0.0.1 netpaloffers.net #[Parasite.NetPal] -> ->
127.0.0.1 netpond.com #[Dialer.Holistyc] -> ->
127.0.0.1 netwebsearch-usa.com -> ->
127.0.0.1 neverseen.freeandexclusive.com -> ->
127.0.0.1 new.8ad.com #[SPYW_TWANT.C][McAfee.QlowZones-25] -> ->
127.0.0.1 newads.cmpnet.com -> ->
127.0.0.1 n-ex.s-redirect.com -> ->
127.0.0.1 nichetoolbars.com -> ->
127.0.0.1 nictechnetworks.com -> ->
127.0.0.1 nitrous.exitfuel.com -> ->
127.0.0.1 nl.viewstat.nedstatbasic.net -> ->
127.0.0.1 n-lite.com -> ->
127.0.0.1 node2.ocslab.com #[TROJ_LOADER.D] -> ->
127.0.0.1 noe.myftp.biz #[Backdoor.Botnachala] -> ->
127.0.0.1 nordsearch.com #[allsitessearch.com] -> ->
127.0.0.1 nowbox.com -> ->
127.0.0.1 nowfind.biz -> ->
127.0.0.1 ns1.hitx.net -> ->
127.0.0.1 ns1.metacount.com -> ->
127.0.0.1 ns1.netster.net -> ->
127.0.0.1 ns1.vx2.cc -> ->
127.0.0.1 ns2.vx2.cc -> ->
127.0.0.1 nude-teens-bodies.com #[W32.Conycspa@mm] -> ->
127.0.0.1 nugget-sales.com #[ISC.Alert] -> ->
127.0.0.1 number1search.net #[v61.com][full-search.net] -> ->
127.0.0.1 nyam-nyam.biz -> ->
127.0.0.1 oascentral.gigex.com #[RealMedia] -> ->
127.0.0.1 ocx2.advnt01.com #[VacPro.internazionale_ver3] -> ->
127.0.0.1 odysseusmarketing.com -> ->
127.0.0.1 officialfree-software.com -> ->
127.0.0.1 old.4count.com -> ->
127.0.0.1 olgaslepak.com -> ->
127.0.0.1 omi-update.net #[Win32.Small.Trojan] -> ->
127.0.0.1 omniscient.blazefind.com #[TROJ_BLAZEFIND.A] -> ->
127.0.0.1 online-dialer.com -> ->
127.0.0.1 on-search.com -> ->
127.0.0.1 optima-traffic.com #[search-system.com][topsearch10.com] -> ->
127.0.0.1 oranger.biz -> ->
127.0.0.1 orbitz.rpts.net -> ->
127.0.0.1 orgsvet.com #[stepsofsearch.com] -> ->
127.0.0.1 other.xxxcounter.com -> ->
127.0.0.1 othersearch.com #[Parasite.Tubby] -> ->
127.0.0.1 our-counter.com #[crazy-toolbar.com] -> ->
127.0.0.1 ourlinklist.com -> ->
127.0.0.1 overture.411web.com -> ->
127.0.0.1 overture.reporting.net -> ->
127.0.0.1 oz.msie.tv #[Parasite.CoolWebSearch.BlankFilter] -> ->
127.0.0.1 oz.valueclick.com -> ->
127.0.0.1 p.searchmission.com -> ->
127.0.0.1 p4p.baidu.com -> ->
127.0.0.1 pacman.crazywinnings.com -> ->
127.0.0.1 padonak.info #[Trojan.Moo] -> ->
127.0.0.1 pageload2.babenet.com -> ->
127.0.0.1 painterdialer.com -> ->
127.0.0.1 pan-advert.biz -> ->
127.0.0.1 partner.netmechanic.com -> ->
127.0.0.1 partners.istarthere.com -> ->
127.0.0.1 partokrat.com -> ->
127.0.0.1 patchserver.gator.com -> ->
127.0.0.1 patchserver2.gator.com -> ->
127.0.0.1 patfind.com -> ->
127.0.0.1 pchi-vtrk.virtumundo.com -> ->
127.0.0.1 pcsafe.com -> ->
127.0.0.1 pcsecurityupdates.com -> ->
127.0.0.1 pcwlrh.t.muxa.cc #[REG_STARTPAGE.R] -> ->
127.0.0.1 perfectnav.com #[PerfectNavBHO][KeenValue.PerfectNav] -> ->
127.0.0.1 perou-voyage.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 personal404.com #[dofinder.com] -> ->
127.0.0.1 personal-search.info -> ->
127.0.0.1 pharma.newgenlook.info -> ->
127.0.0.1 pharma.specialgoods.info -> ->
127.0.0.1 pharmacy.newgenlook.info -> ->
127.0.0.1 pharmacy.specialgoods.info -> ->
127.0.0.1 phoenix-mc-adrunner.mycomputer.com -> ->
127.0.0.1 pics.teens3.com -> ->
127.0.0.1 pigmailer.scarryserv.biz #[Trojan.Mochi] -> ->
127.0.0.1 pisces.clickspring.net -> ->
127.0.0.1 pix.hotqueens.com -> ->
127.0.0.1 pluginaccess.com -> ->
127.0.0.1 plugusin4cash.com -> ->
127.0.0.1 pokahaus.com -> ->
127.0.0.1 polls.snowball.com -> ->
127.0.0.1 popadstop.com #[Adware.PopAdStop] -> ->
127.0.0.1 popbehinds.com -> ->
127.0.0.1 popclose.com -> ->
127.0.0.1 popfinder.net #[adwaredelete.com] -> ->
127.0.0.1 popme.163.com -> ->
127.0.0.1 pops.aim4media.com -> ->
127.0.0.1 popup.jeanharris.com -> ->
127.0.0.1 popups.infostart.com -> ->
127.0.0.1 pornnimbus.com -> ->
127.0.0.1 porno.find-on-the-net.com -> ->
127.0.0.1 pornography.com #[Downloader.Dluca.H][All-In-One Telcom] -> ->
127.0.0.1 pornosite.com #[Downloader.Dluca.H] -> ->
127.0.0.1 pornothumbgals.com -> ->
127.0.0.1 portalsearching.com #[BHO.clsInetSpeak] -> ->
127.0.0.1 postfiking.com #[smartsearchpage.com] -> ->
127.0.0.1 powdersearch.com -> ->
127.0.0.1 power-search.info #[Trojan.Bookmarker.G] -> ->
127.0.0.1 pp.multimpp.com -> ->
127.0.0.1 presearchforyou.com -> ->
127.0.0.1 present.spylog.ru -> ->
127.0.0.1 privacycash.com -> ->
127.0.0.1 private-viewing.com -> ->
127.0.0.1 privet.fast-stars.com #[somewebspace.com] -> ->
127.0.0.1 production.innovativemarketing.com.ua -> ->
127.0.0.1 projectx.net #[Trojan.Tannick.B] -> ->
127.0.0.1 promote4profit.com -> ->
127.0.0.1 proredirect.com -> ->
127.0.0.1 proxy.blogads.com -> ->
127.0.0.1 proxy.ia2.marketscore.com -> ->
127.0.0.1 proxy.ia3.marketscore.com -> ->
127.0.0.1 proxy.ia4.marketscore.com -> ->
127.0.0.1 proxy.or3.marketscore.com -> ->
127.0.0.1 proxy.or4.marketscore.com -> ->
127.0.0.1 proxy.sj3.marketscore.com -> ->
127.0.0.1 proxy.sj4.marketscore.com -> ->
127.0.0.1 proxycfg.netsetter.com -> ->
127.0.0.1 proxycfg.wip.netsetter.com -> ->
127.0.0.1 proxyhttp.netsetter.com -> ->
127.0.0.1 proxyhttps.marketscore.com -> ->
127.0.0.1 psguard.com #[Rogue/Suspect] -> ->
127.0.0.1 pub1.bravenet.com -> ->
127.0.0.1 public.searchbarcash.com #[DownloadUL Class] -> ->
127.0.0.1 publisher.adlogix.com -> ->
127.0.0.1 pyn.pynix.com #[Parasite.Transponder.Pynix] -> ->
127.0.0.1 qck.cc #[Trojan.Downloader.Domcom.A][Trojan.TrustedZone] -> ->
127.0.0.1 qfind.net #[searchmaid.com][Smitfraud] -> ->
127.0.0.1 qidion.com #[findwhatevernow.com] -> ->
127.0.0.1 qtbc.qsrch.info -> ->
127.0.0.1 queue.jmnad1.com #[Adware.eSyndicate] -> ->
127.0.0.1 queue.searchreslt.com -> ->
127.0.0.1 quick.qsrch.com #[ADW_NEWNET.B] -> ->
127.0.0.1 quick.qsrch.info #[AdWare.Toolbar.Quick.a] -> ->
127.0.0.1 quickcrawler.com #[IE-SpyAd] -> ->
127.0.0.1 quickfindit.net -> ->
127.0.0.1 quickmetasearch.com #[ADW_SEARCHMETA.A][Adware.MetaSearch] -> ->
127.0.0.1 quicknavigate.com #[Trojan.Win32.Puper.a] -> ->
127.0.0.1 quickplugin.com -> ->
127.0.0.1 quick-searcher.com -> ->
127.0.0.1 quik-search.com -> ->
127.0.0.1 r10.trafficserverstats.com -> ->
127.0.0.1 r18.trafficserverstats.com -> ->
127.0.0.1 r2.trafficserverstats.com -> ->
127.0.0.1 r25.trafficserverstats.com -> ->
127.0.0.1 r4.4count.com -> ->
127.0.0.1 r5.trafficserverstats.com -> ->
127.0.0.1 r7.4count.com -> ->
127.0.0.1 rads01.quadrogram.com #[Adware.Quadro] -> ->
127.0.0.1 ran.popuppers.com -> ->
127.0.0.1 rapidblaster.com #[Parasite.RapidBlaster] -> ->
127.0.0.1 ras.moonri.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 ravertje.trafficstandard.com -> ->
127.0.0.1 ravesearch.net -> ->
127.0.0.1 rcom2.seek2.com -> ->
127.0.0.1 rd.focalex.com -> ->
127.0.0.1 rd.kr.doubleclick.net -> ->
127.0.0.1 rd.yn.cometsystems.com -> ->
127.0.0.1 rdposters.com #[Trojan.Win32.Adex.a] -> ->
127.0.0.1 real-euros.com #[ePlugin Dialer] -> ->
127.0.0.1 realfreeavs.com -> ->
127.0.0.1 realfreelists.com -> ->
127.0.0.1 realmedia.com -> ->
127.0.0.1 realmedia-a800.d4p.net -> ->
127.0.0.1 realnetworks.com -> ->
127.0.0.1 realpan.com -> ->
127.0.0.1 realtime.directwebsearch.net #[server down?] -> ->
127.0.0.1 real-yellow-page.com #[CWS.Realyellowpage] -> ->
127.0.0.1 rebateshoppers.com #[xzoomy.com] -> ->
127.0.0.1 reddest.org -> ->
127.0.0.1 redir.speedbit.com -> ->
127.0.0.1 redirect.flingstone.com -> ->
127.0.0.1 redirect01.fr4.egwn.net -> ->
127.0.0.1 redswoosh.net #[Red Swoosh EDN Client] -> ->
127.0.0.1 regfreeze.net #[IE-SpyAd] -> ->
127.0.0.1 register.wildtangent.com -> ->
127.0.0.1 regserver.gator.com -> ->
127.0.0.1 removespyware.htmlpublishers.com -> ->
127.0.0.1 ren.bestsearcher.info -> ->
127.0.0.1 reports.offeroptimizer.com -> ->
127.0.0.1 reports.x10.com #[IE-SpyAd] -> ->
127.0.0.1 resellers.tibsystems.com -> ->
127.0.0.1 result.goodsearch.info -> ->
127.0.0.1 results.searchscout.com -> ->
127.0.0.1 rev.startsurfing.com -> ->
127.0.0.1 revenue.bcentral.com -> ->
127.0.0.1 review-find.info -> ->
127.0.0.1 richfind.com -> ->
127.0.0.1 rightmedia.net #[IE-SpyAd] -> ->
127.0.0.1 rightsearch.cc #[Trojan.StartPage.K] -> ->
127.0.0.1 rimbizz.com #[stepsofsearch.com] -> ->
127.0.0.1 rimssearch.com #[via 66.246.209.224] -> ->
127.0.0.1 riversoftware.net #[ClearStream Accelerator] -> ->
127.0.0.1 rl.webtracer.cc #[globe-finder.cc][Troj/StartPa-FZ] -> ->
127.0.0.1 roquvp.t.rack.cc -> ->
127.0.0.1 rpchost.biz #[66.246.209.224] -> ->
127.0.0.1 rr10.xxxcounter.com -> ->
127.0.0.1 rr2.xxxcounter.com -> ->
127.0.0.1 rr3.xxxcounter.com -> ->
127.0.0.1 rr4.xxxcounter.com -> ->
127.0.0.1 rr5.xxxcounter.com -> ->
127.0.0.1 rr6.xxxcounter.com -> ->
127.0.0.1 rr7.xxxcounter.com -> ->
127.0.0.1 rr8.xxxcounter.com -> ->
127.0.0.1 rr9.xxxcounter.com -> ->
127.0.0.1 rs.gator.com -> ->
127.0.0.1 rsp.btthost.com #[Trojan.SpBot][server down?] -> ->
127.0.0.1 rspsearch.com -> ->
127.0.0.1 ruutli.xhpro.com -> ->
127.0.0.1 s.abetterinternet.com -> ->
127.0.0.1 s.freephone.cc #[Parasite.Transponder.VoiceIP] -> ->
127.0.0.1 s1.bluestreak.com -> ->
127.0.0.1 s1.qckads.com -> ->
127.0.0.1 s13.tempx.cc -> ->
127.0.0.1 s13.zepr.info -> ->
127.0.0.1 s2.bluestreak.com -> ->
127.0.0.1 s2.qckads.com -> ->
127.0.0.1 s3.bluestreak.com -> ->
127.0.0.1 s3.qckads.com -> ->
127.0.0.1 s4.bluestreak.com -> ->
127.0.0.1 s4.qckads.com -> ->
127.0.0.1 s5.bluestreak.com -> ->
127.0.0.1 s5.qckads.com -> ->
127.0.0.1 s6.bluestreak.com -> ->
127.0.0.1 s6.qckads.com -> ->
127.0.0.1 s7.bluestreak.com -> ->
127.0.0.1 s7.qckads.com -> ->
127.0.0.1 s8.bluestreak.com -> ->
127.0.0.1 safesearch.com -> ->
127.0.0.1 sample.cc-download.com -> ->
127.0.0.1 samspy.com -> ->
127.0.0.1 sandboxer.com -> ->
127.0.0.1 savers.joysticknetworks.com -> ->
127.0.0.1 sbox.3721.com -> ->
127.0.0.1 scripts.eventuresnv.com -> ->
127.0.0.1 scripts.rfwnad.com #[Adware.DynamicUpdater] -> ->
127.0.0.1 scripts.snowball.com -> ->
127.0.0.1 scriptserver.gator.com -> ->
127.0.0.1 sds.cntrc.net -> ->
127.0.0.1 sds.qckads.com -> ->
127.0.0.1 search.antarasystems.com #[Spyware.SearchPounder] -> ->
127.0.0.1 search.bigclicks.com -> ->
127.0.0.1 search.domainsponsor.com -> ->
127.0.0.1 search.downloadaccelerator.com -> ->
127.0.0.1 search.findsall.info -> ->
127.0.0.1 search.grip.com #[SunBelt.Grip Toolbar] -> ->
127.0.0.1 search.hotpopup.com -> ->
127.0.0.1 search.huntbar.com -> ->
127.0.0.1 search.lzio.com -> ->
127.0.0.1 search.netster.com -> ->
127.0.0.1 search.perfectnav.com -> ->
127.0.0.1 search.quickcrawler.com -> ->
127.0.0.1 search.searchalot.com -> ->
127.0.0.1 search.searchenhancement.com -> ->
127.0.0.1 search.search-exe.com -> ->
127.0.0.1 search.searchwww.com #[Parasite.SearchWWW] -> ->
127.0.0.1 search.seek2.com -> ->
127.0.0.1 search.startsurfing.com -> ->
127.0.0.1 search.targetwords.com -> ->
127.0.0.1 search.turbofind.com -> ->
127.0.0.1 search.windowenhancer.com #[Parasite.SCBar] -> ->
127.0.0.1 search.winnings.com -> ->
127.0.0.1 search2.cometsystems.com -> ->
127.0.0.1 search2.letssearch.com -> ->
127.0.0.1 search4www.net -> ->
127.0.0.1 search-aid.com #[server down?] -> ->
127.0.0.1 searchassistant.net -> ->
127.0.0.1 searchbar.us #[Spyware.IEToolbar] -> ->
127.0.0.1 searchbrowser.com -> ->
127.0.0.1 searchcentral.cc -> ->
127.0.0.1 search-click.com -> ->
127.0.0.1 searchco.com #[Mouse Hunt] -> ->
127.0.0.1 search-com.biz -> ->
127.0.0.1 search-company.com -> ->
127.0.0.1 search-direct.net -> ->
127.0.0.1 searchemup.info -> ->
127.0.0.1 search-end.com -> ->
127.0.0.1 searcheverywhere.info #[morwillsearch.com] -> ->
127.0.0.1 search-explorer.com -> ->
127.0.0.1 searchfind.info #[Parasite.RichFind][win32] -> ->
127.0.0.1 searchforfree.info -> ->
127.0.0.1 searchfromhome.net #[v61.com][full-search.net] -> ->
127.0.0.1 searchfst.com #[SFUtility Class] -> ->
127.0.0.1 searching.net -> ->
127.0.0.1 searchinwww.net -> ->
127.0.0.1 search-links.net #[Troj/Malche-A] -> ->
127.0.0.1 searchlocate.com #[IE-SpyAd] -> ->
127.0.0.1 searchmaid.com #[Adware/TheLocalSearch] -> ->
127.0.0.1 searchmeup.net -> ->
127.0.0.1 searchmission.com -> ->
127.0.0.1 searchmyrequest.com #[StartPage-BS][Troj/StartPa-H] -> ->
127.0.0.1 search-paga.com -> ->
127.0.0.1 searchpage.cc -> ->
127.0.0.1 searchplow.com #[multipops.com] -> ->
127.0.0.1 searchproject.net #[Trojan.Phel.A] -> ->
127.0.0.1 search-q.com -> ->
127.0.0.1 searchscavenger.com -> ->
127.0.0.1 search-soft.net -> ->
127.0.0.1 search-space.cc -> ->
127.0.0.1 searchsprint.subportal.com -> ->
127.0.0.1 searchsprint1.community.everyone.net -> ->
127.0.0.1 searchsuggest.com -> ->
127.0.0.1 search-system.com #[SunBelt.Search-SystemPlugin] -> ->
127.0.0.1 searchterror.com -> ->
127.0.0.1 searchtm.cc #[W32/DLoader.GQ] -> ->
127.0.0.1 searchtraffic.com #[Searchtraffic.Hijacker] -> ->
127.0.0.1 searchwork.biz #[66.246.209.224] -> ->
127.0.0.1 search-world.net #[MHTMLRedir.Exploit] -> ->
127.0.0.1 searchwww.com -> ->
127.0.0.1 searchx.cc #[CWS.Searchx][Trojan.Win32.StartPage.fw] -> ->
127.0.0.1 searchzoomer.com -> ->
127.0.0.1 secure.click2boost.com -> ->
127.0.0.1 secure.historykill.com -> ->
127.0.0.1 secure.ibill.com -> ->
127.0.0.1 secure.interesoft.com -> ->
127.0.0.1 secure.keenvalue.com -> ->
127.0.0.1 secure.privacycash.com -> ->
127.0.0.1 secure.spykiller.com -> ->
127.0.0.1 secure.winfixer.com -> ->
127.0.0.1 securitydownload.net #[IE-SpyAd] -> ->
127.0.0.1 securityiguard.com #[Rogue/Suspect] -> ->
127.0.0.1 security-look.cc -> ->
127.0.0.1 seekeverything.info -> ->
127.0.0.1 seekingeye.com #[klikfind.com] -> ->
127.0.0.1 selltraff.com -> ->
127.0.0.1 sentrymon.ipinsight.net -> ->
127.0.0.1 serv2.ad-rotator.com -> ->
127.0.0.1 servedby.adscpm.com -> ->
127.0.0.1 servedby.adserving.us -> ->
127.0.0.1 servedby.advolt.com -> ->
127.0.0.1 servedby.newtopsites.com -> ->
127.0.0.1 servedby.valuead.com -> ->
127.0.0.1 server.ipinsight.net -> ->
127.0.0.1 server.trafficaces.com -> ->
127.0.0.1 server4.tps108.org -> ->
127.0.0.1 service.click2boost.com -> ->
127.0.0.1 sesso.com -> ->
127.0.0.1 sex.girlshost.net -> ->
127.0.0.1 sex.totsex.net -> ->
127.0.0.1 sex.x-park.net #[loadcash.biz] -> ->
127.0.0.1 sexlife69.com #[Trojan.Exlife] -> ->
127.0.0.1 sexoque.com -> ->
127.0.0.1 sexprovider.com #[BHO.clsUrlSearch][SubSearch] -> ->
127.0.0.1 sexxx-direct.com #[TrojanDownloader.Win32.VB.bf] -> ->
127.0.0.1 sexygirl.eurolove.biz -> ->
127.0.0.1 sexy-mature-sluts.com #[becomers.com] -> ->
127.0.0.1 sexyplugin.com -> ->
127.0.0.1 sg1.tibsystems.com -> ->
127.0.0.1 shanghai.3721.com -> ->
127.0.0.1 shazaa.com #[Adware.Shazaa] -> ->
127.0.0.1 showpower.sdcf.biz #[MHTMLRedir.Exploit] -> ->
127.0.0.1 sidebar.smarter.com -> ->
127.0.0.1 sidebysidesearch.com -> ->
127.0.0.1 sihf.flowgo.com -> ->
127.0.0.1 similarsingles.com -> ->
127.0.0.1 simplenter.com #[Adware.UniversalTB] -> ->
127.0.0.1 sina.3721.com -> ->
127.0.0.1 sirsearch.com #[Spyware.PowerSearch] -> ->
127.0.0.1 site.x10.com -> ->
127.0.0.1 siteminer.mycomputer.com -> ->
127.0.0.1 siterank.hypermart.net -> ->
127.0.0.1 sites.sexxx-direct.com -> ->
127.0.0.1 sitsearch.com #[morwillsearch.com] -> ->
127.0.0.1 skyhorn.com -> ->
127.0.0.1 slimsoft.ru -> ->
127.0.0.1 smartbrowse.netster.com #[InitScript Class][Spyware.Smartbrowse] -> ->
127.0.0.1 smartclicks.net #[IE-SpyAd] -> ->
127.0.0.1 smarter.com #[IE-SpyAd] -> ->
127.0.0.1 smartpops.com -> ->
127.0.0.1 smart-search.biz -> ->
127.0.0.1 smartsearchpage.com -> ->
127.0.0.1 smile.modchipstore.com -> ->
127.0.0.1 smtp.163.com #[Trojan.PSW.Ajim_bbs] -> ->
127.0.0.1 snugweb.com #[Parasite.CoolWebSearch.ResFilter] -> ->
127.0.0.1 soap.alexa.com #[Spyware.Alexa][Alexa Toolbar] -> ->
127.0.0.1 software.x10.com -> ->
127.0.0.1 softwareds.com -> ->
127.0.0.1 solar.directwebsearch.net -> ->
127.0.0.1 solar-porn.com -> ->
127.0.0.1 somesearch.net -> ->
127.0.0.1 somewebspace.com #[Trojan-Downloader.VBS.Inor.ci] -> ->
127.0.0.1 sonicsearch.subportal.com #[ipowerweb.com] -> ->
127.0.0.1 specialgoods.info -> ->
127.0.0.1 specific911.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 spms.hyperbanner.net -> ->
127.0.0.1 spotresults.com -> ->
127.0.0.1 spyantivirus.info #[umaxlogin.com] -> ->
127.0.0.1 spyassassin.com #[AdBlocker.dll] -> ->
127.0.0.1 spy-crusher.com -> ->
127.0.0.1 spyeraser.net #[searchmeup.com] -> ->
127.0.0.1 spystream.babenet.com -> ->
127.0.0.1 spyware.com #[roar.com] -> ->
127.0.0.1 spyware.com.16871.fb.dbbsrv.com -> ->
127.0.0.1 spyware.removal.nospyx.com -> ->
127.0.0.1 spywarehelp.net #[Internet Enhancement Pak] -> ->
127.0.0.1 spyware-removal.net -> ->
127.0.0.1 spywarestormer.com #[Rogue/Suspect] -> ->
127.0.0.1 spywarewizard.com #[Rogue/Suspect] -> ->
127.0.0.1 sql.yauu.net #[Win32.Dialer.NBF] -> ->
127.0.0.1 s-redirect.com -> ->
127.0.0.1 srv.peopleonpage.com #[Spyware.Apropos.B] -> ->
127.0.0.1 ss.clipgenie.com -> ->
127.0.0.1 ss.gator.com -> ->
127.0.0.1 ss999ss.com #[Trojan.Snines] -> ->
127.0.0.1 ssbackup.gator.com -> ->
127.0.0.1 ssearch.biz #[StartPage-EH] -> ->
127.0.0.1 st.abetterinternet.com -> ->
127.0.0.1 st.blp.valueclick.net -> ->
127.0.0.1 st.fhm.valueclick.net -> ->
127.0.0.1 st.la.valueclick.com -> ->
127.0.0.1 st.valueclick.com -> ->
127.0.0.1 staging.inboxrewards.com -> ->
127.0.0.1 standees.com -> ->
127.0.0.1 start.online-dialer.com #[Downloader.Istbar.V] -> ->
127.0.0.1 startingsearch.com -> ->
127.0.0.1 start-page.info -> ->
127.0.0.1 startsearches.com -> ->
127.0.0.1 startsearches.net #[searchmaid.com] -> ->
127.0.0.1 stat.toprefsys.com -> ->
127.0.0.1 stat1.sextracker.com -> ->
127.0.0.1 stat3.cybermonitor.com -> ->
127.0.0.1 static.abetterinternet.com -> ->
127.0.0.1 static.appliedsemantics.com #[New.net Auto-search Control] -> ->
127.0.0.1 static.callinghome.biz #[Downloader-KL][Adware.Binet.DL] -> ->
127.0.0.1 static.crazywinnings.com -> ->
127.0.0.1 static.everyone.net #[IE-SpyAd] -> ->
127.0.0.1 static.flingstone.com #[brdg Class] -> ->
127.0.0.1 static.freecontentbuilder.com -> ->
127.0.0.1 static.getitandgo.com -> ->
127.0.0.1 static.hitfarm.com -> ->
127.0.0.1 static.topconverting.com #[Loader2 Control] -> ->
127.0.0.1 stats.ads360.com -> ->
127.0.0.1 stats.evilbucks.com -> ->
127.0.0.1 stats.klsoft.com #[IE-SpyAd] -> ->
127.0.0.1 stats.linksponsor.com -> ->
127.0.0.1 stats.skyhorn.com -> ->
127.0.0.1 stats.tibsystems.com -> ->
127.0.0.1 stats.trafficasap.com -> ->
127.0.0.1 stats1.pussypayments.com -> ->
127.0.0.1 stats4all.ws -> ->
127.0.0.1 statswhere.com #[Ad-Aware.Tracking Cookie] -> ->
127.0.0.1 stepsofsearch.com #[v61.com][search-motor.com] -> ->
127.0.0.1 stickylist.com -> ->
127.0.0.1 stopannoyingpopups.com #[Parasite.AutoSearch] -> ->
127.0.0.1 stop-popup-ads-now.com #[Parasite.Transponder] -> ->
127.0.0.1 stop-that-spammer.com -> ->
127.0.0.1 store.x10.com -> ->
127.0.0.1 stphork.com #[smartsearchpage.com] -> ->
127.0.0.1 stream1000.babenet.com #[Panda Spyware/Redhotnetworks] -> ->
127.0.0.1 stream10k.redhotnetworks.com #[Video Class] -> ->
127.0.0.1 streamhc.redhotnetworks.com #[Video Class] -> ->
127.0.0.1 streamp.babenet.com -> ->
127.0.0.1 stubmon.ipinsight.net #[Parasite.IPInsight] -> ->
127.0.0.1 sturfajtn.com #[Trojan-Spy.Win32.Banker.jk] -> ->
127.0.0.1 submitit.bcentral.com -> ->
127.0.0.1 sunnyviewinc.com -> ->
127.0.0.1 supacoopa.directwebsearch.net -> ->
127.0.0.1 superbushstory.com #[Backdoor.Haxdoor.D][server down?] -> ->
127.0.0.1 super-finder.info -> ->
127.0.0.1 super-gals.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 super-pc-software.com -> ->
127.0.0.1 supersearch.com -> ->
127.0.0.1 supersearch.info -> ->
127.0.0.1 supersearchs.com #[IE-SpyAd] -> ->
127.0.0.1 support.gay-lists.com -> ->
127.0.0.1 support.great-pc-software.com -> ->
127.0.0.1 support.ieprivacy.com -> ->
127.0.0.1 support.livegaycinema.com -> ->
127.0.0.1 support.lzio.com -> ->
127.0.0.1 support.myiefavorites.com -> ->
127.0.0.1 support.quik-search.com -> ->
127.0.0.1 support.realfreeavs.com -> ->
127.0.0.1 support.screensavers4free.net -> ->
127.0.0.1 support.surffastnow.com -> ->
127.0.0.1 support.titsandasstv.com -> ->
127.0.0.1 surfassistant.com #[180solutions -SAIEMOD.DLL] -> ->
127.0.0.1 surffastnow.com -> ->
127.0.0.1 surfya.com -> ->
127.0.0.1 sutra.spyantivirus.info -> ->
127.0.0.1 sv1.xmcmx.net -> ->
127.0.0.1 switch.atdmt.com -> ->
127.0.0.1 sysupdate.grandstreetinteractive.com #[Win32.Imiserv] -> ->
127.0.0.1 t.swapx.cc -> ->
127.0.0.1 t34rulit.com #[Adware.SuperSpider] -> ->
127.0.0.1 t73.com -> ->
127.0.0.1 take4look.com -> ->
127.0.0.1 tar.popuppers.com #[Adware.Medload] -> ->
127.0.0.1 targetclicks.net -> ->
127.0.0.1 targetwords.com -> ->
127.0.0.1 tattoo.fast-stars.com #[somewebspace.com] -> ->
127.0.0.1 teen.fullhqgalleries.com -> ->
127.0.0.1 teen4-sex.com #[Trojan.Downloader.Small] -> ->
127.0.0.1 teenfamilysex.com #[globolook.com] -> ->
127.0.0.1 teen-fantazi.com -> ->
127.0.0.1 teeniedialer.com -> ->
127.0.0.1 teens3.com #[Trojan.Niska][Troj/Myss-C][pluginaccess.com] -> ->
127.0.0.1 terminexor.com #[IE-SpyAd] -> ->
127.0.0.1 test.4count.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 test.icountertop.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 test-downloads.180solutions.com -> ->
127.0.0.1 tgp-devil.com #[MHTMLRedir.Exploit][Blazefind Windupdates Adware] -> ->
127.0.0.1 tgp-devil.net -> ->
127.0.0.1 th.msie.tv -> ->
127.0.0.1 thebestse.com #[searchmeup.com] -> ->
127.0.0.1 thefullm.com #[smartsearchpage.com] -> ->
127.0.0.1 thepowerstrip.com -> ->
127.0.0.1 the-right-start.com -> ->
127.0.0.1 the-startpage.com -> ->
127.0.0.1 thestas.com #[Downloader-OT][TROJ_SMALL.ZY] -> ->
127.0.0.1 thinkingmedia.net -> ->
127.0.0.1 thumbnails.alexa.com -> ->
127.0.0.1 thunderdownloads.com -> ->
127.0.0.1 tibsystems.com #[Parasite.SmartBrowser] -> ->
127.0.0.1 timinthq.com #[stepsofsearch.com] -> ->
127.0.0.1 titsandasstv.com -> ->
127.0.0.1 tl81.com -> ->
127.0.0.1 tool4ame.com #[TROJ_GOLID.A][Adware.IAGold] -> ->
127.0.0.1 toolbar.azesearch.com #[AdWare.ToolBar.Azesearch.a] -> ->
127.0.0.1 toolbar.begin2search.com -> ->
127.0.0.1 toolbar.desktoptraffic.net -> ->
127.0.0.1 toolbar.searchco.com -> ->
127.0.0.1 toolbar.trafficgeneration.biz #[ADW_BEGINTO.DR] -> ->
127.0.0.1 toolbar.webalize.com #[downloads.searchcentrix.com] -> ->
127.0.0.1 toolbar.worldanywhere.com -> ->
127.0.0.1 toolbar2.trafficgeneration.biz -> ->
127.0.0.1 toolbar3.trafficgeneration.biz -> ->
127.0.0.1 toolbar4.trafficgeneration.biz -> ->
127.0.0.1 toolbars-cash.com -> ->
127.0.0.1 tools.opensols.com -> ->
127.0.0.1 top.baidu.com -> ->
127.0.0.1 topantispyware.com -> ->
127.0.0.1 topantivirus.biz #[Trojan-Downloader.Win32.Small.anu] -> ->
127.0.0.1 topfind4u.com -> ->
127.0.0.1 top-find4u.com -> ->
127.0.0.1 topicks.com #[TOPicks.B] -> ->
127.0.0.1 topnetsearch.cc -> ->
127.0.0.1 topotun.com #[Adware.Topotun] -> ->
127.0.0.1 topsearch4u.com -> ->
127.0.0.1 tpcms.topicks.com -> ->
127.0.0.1 tpdownload.topicks.com #[Parasite.TOPicks] -> ->
127.0.0.1 tpreport.topicks.com #[Adware.Topicks] -> ->
127.0.0.1 track.aadserver.net -> ->
127.0.0.1 track.directleads.com -> ->
127.0.0.1 track.dlsearchbar.com -> ->
127.0.0.1 track.jpost.com -> ->
127.0.0.1 track.qidion.com #[Adware.Qidion] -> ->
127.0.0.1 track.simpletraffic.com -> ->
127.0.0.1 track.smilepop.com -> ->
127.0.0.1 tracker.clickfinders.com -> ->
127.0.0.1 tracker.netmechanic.com -> ->
127.0.0.1 tracker.snowball.com -> ->
127.0.0.1 tracking.thunderdownloads.com #[TrojanDownloader.Win32.Keenval.f] -> ->
127.0.0.1 trackvisits.cc -> ->
127.0.0.1 tradeexit.com #[SunBelt.TradeExit] -> ->
127.0.0.1 tradetraffic.com -> ->
127.0.0.1 traf34.com -> ->
127.0.0.1 traffic.adlogix.com #[IE-SpyAd] -> ->
127.0.0.1 traffic.alexa.com -> ->
127.0.0.1 traffic4sale.biz -> ->
127.0.0.1 trafficaces.com -> ->
127.0.0.1 trafficcounters.com -> ->
127.0.0.1 trafficgeneration.biz -> ->
127.0.0.1 traffichog.com #[Inst Class] -> ->
127.0.0.1 trafficpro.us -> ->
127.0.0.1 trafficsource.adlogix.com -> ->
127.0.0.1 trafficworld.biz -> ->
127.0.0.1 traffstore.com -> ->
127.0.0.1 traff-store.com -> ->
127.0.0.1 travel.netster.com -> ->
127.0.0.1 travel-airfare-airline-car-rental-hotel-reservations.com -> ->
127.0.0.1 trickle.gator.com -> ->
127.0.0.1 tripshome.com -> ->
127.0.0.1 trixscripts.com -> ->
127.0.0.1 tropotun.com -> ->
127.0.0.1 troyanov.net #[Trojan.Anicmoo] -> ->
127.0.0.1 trustbid.ws -> ->
127.0.0.1 trustedbrowsers.com -> ->
127.0.0.1 trustedpharmacy.net -> ->
127.0.0.1 try-this-search.biz -> ->
127.0.0.1 trytofind.info -> ->
127.0.0.1 ts.gator.com -> ->
127.0.0.1 tt2.avres.net #[McAfee.Adware-Adroar] -> ->
127.0.0.1 ttarget.adbureau.net -> ->
127.0.0.1 tumpank.com #[smartsearchpage.com] -> ->
127.0.0.1 tunders.com -> ->
127.0.0.1 turbo.internetfuel.com -> ->
127.0.0.1 twistedhumor.com #[Parasite.CometCursor/Toolbar] -> ->
127.0.0.1 txiframe.biz -> ->
127.0.0.1 ucbill.com #[Adware.ClickDLoader] -> ->
127.0.0.1 uk.s13.tempx.cc -> ->
127.0.0.1 uk1.doubleclick.net -> ->
127.0.0.1 ukiee.com #[popupmoney.com] -> ->
127.0.0.1 ulogin.bcentral.com -> ->
127.0.0.1 ultimatecounter.com #[IE-SpyAd] -> ->
127.0.0.1 ultimately-yours.com #[MHTMLRedir.Exploit][CoolWebSearch.mshelp] -> ->
127.0.0.1 ultimateplugin.com #[TIBSLoader Class] -> ->
127.0.0.1 ultimatesearch.com -> ->
127.0.0.1 uncover.us -> ->
127.0.0.1 unimax.us -> ->
127.0.0.1 uni--search.com -> ->
127.0.0.1 up.isp.2ch.net #[Trojan.Upchan] -> ->
127.0.0.1 update.680180.net #[ADW_ADLOGIX.A] -> ->
127.0.0.1 update.downloadaccelerator.com -> ->
127.0.0.1 update.msupdater.com -> ->
127.0.0.1 update.msupdater.net -> ->
127.0.0.1 update.thunderdownloads.com #[KeenValue.Updater] -> ->
127.0.0.1 update.topconverting.com -> ->
127.0.0.1 update2.thunderdownloads.com -> ->
127.0.0.1 updaterservice.wildtangent.com -> ->
127.0.0.1 updates.desktop.virtumundo.com #[TrojanDownloader.Win32.Virtumonde.a] -> ->
127.0.0.1 updates.lzio.com #[Downloader-LE][Adware.ZioCom] -> ->
127.0.0.1 updatesearches.com -> ->
127.0.0.1 upgrade.qsrch.info -> ->
127.0.0.1 usa-download.nocreditcard.com #[IEDial Class] -> ->
127.0.0.1 usa-download.nocreditcard.net #[HTMLAccess Class] -> ->
127.0.0.1 usa-download.nocreditcardgay.com #[IEDial Class] -> ->
127.0.0.1 usa-download.stripplayer.com -> ->
127.0.0.1 usa-download.strip-player.com #[EGStripDownload Class] -> ->
127.0.0.1 usads.vibrantmedia.com -> ->
127.0.0.1 usaporn.org #[MHTMLRedir.Exploit] -> ->
127.0.0.1 user.3721.com -> ->
127.0.0.1 ushuistov.net #[Win32.Chisyne.F] -> ->
127.0.0.1 usnews.vibrantmedia.com -> ->
127.0.0.1 us-sg1.tibsystems.com -> ->
127.0.0.1 utruuh.globe-finder.cc -> ->
127.0.0.1 v2.superstats.com -> ->
127.0.0.1 v73.us #[Adware.CWSConyc] -> ->
127.0.0.1 v8.alwaysupdatednews.com #[Trojan.Alwayup] -> ->
127.0.0.1 va04.247media.com -> ->
127.0.0.1 vbs.searchwww.com -> ->
127.0.0.1 vcatch.com #[eTrust.VCatch] -> ->
127.0.0.1 vcodec.com #[Trojan.Zlob.C] -> ->
127.0.0.1 vip.eurolove.biz #[v-nature.biz] -> ->
127.0.0.1 vip-search.biz -> ->
127.0.0.1 visitfind.net -> ->
127.0.0.1 vivi.vibrahost.com #[PWSteal.Revcuss.A] -> ->
127.0.0.1 vn.msie.tv -> ->
127.0.0.1 vnp7s.net #[Trojan.Zhopa][F-Secure.Small.wy] -> ->
127.0.0.1 vparivalka.org -> ->
127.0.0.1 vtrack.virtumundo.com -> ->
127.0.0.1 vv1.s12.dupx.cc -> ->
127.0.0.1 vv1.s13.tempx.cc -> ->
127.0.0.1 vv1.s13.zepr.info -> ->
127.0.0.1 vv2.i1.topx.cc -> ->
127.0.0.1 vv2.s12.dupx.cc -> ->
127.0.0.1 vv2.s13.tempx.cc -> ->
127.0.0.1 vv2.s13.topx.cc -> ->
127.0.0.1 vv3.i1.topx.cc -> ->
127.0.0.1 vv3.s12.dupx.cc -> ->
127.0.0.1 vv3.s13.tempx.cc -> ->
127.0.0.1 vv3.s13.topx.cc -> ->
127.0.0.1 vv6.i1.topx.cc -> ->
127.0.0.1 vv6.s12.dupx.cc -> ->
127.0.0.1 vv6.s13.tempx.cc -> ->
127.0.0.1 vv6.s13.topx.cc -> ->
127.0.0.1 vvv.bundleware.com -> ->
127.0.0.1 vxiframe.biz #[Trojan.Anicmoo][Win32.SillyDl.IQ] -> ->
127.0.0.1 w1.adbot.com -> ->
127.0.0.1 w12.biz #[W32/Malware] -> ->
127.0.0.1 w3bldr.0mm.com -> ->
127.0.0.1 wanted.com -> ->
127.0.0.1 wap.3721.com -> ->
127.0.0.1 wap.mscracks.com -> ->
127.0.0.1 wareout.com #[Trojan-Dropper.Win32.Small.zw] -> ->
127.0.0.1 warlog.info -> ->
127.0.0.1 way4find.com -> ->
127.0.0.1 wcft.net #[Parasite.LinkReplacer] -> ->
127.0.0.1 we.malresearch.org #[Backdoor.Win32.IRCBot.ay] -> ->
127.0.0.1 wearehosters.com -> ->
127.0.0.1 web.all-find.org -> ->
127.0.0.1 web.searchalot.com -> ->
127.0.0.1 web.yoursearchfinder.com -> ->
127.0.0.1 web1.noadware.net #[IE-SpyAd] -> ->
127.0.0.1 web3.realtracker.com -> ->
127.0.0.1 weba.directwebsearch.net -> ->
127.0.0.1 webads.bizservers.com -> ->
127.0.0.1 webads.com.18345.fb.dbbsrv.com -> ->
127.0.0.1 webcam.andlotsmore.com -> ->
127.0.0.1 web-free-hosting.net #[MHTMLRedir.Exploit] -> ->
127.0.0.1 webhitcounter.com -> ->
127.0.0.1 webmail.cometsystems.com -> ->
127.0.0.1 webmaster.downloadaccelerator.com -> ->
127.0.0.1 webmasterz.biz #[static.windupdates.com] -> ->
127.0.0.1 webpdp.gator.com #[DFRun Class][HDPluginCtrl Class] -> ->
127.0.0.1 webpidor.biz #[McAfee.QlowZones-25] -> ->
127.0.0.1 web-searcher.info -> ->
127.0.0.1 websearchnetwork.com -> ->
127.0.0.1 webseeking.com #[Trojan.TrustedZones] -> ->
127.0.0.1 webtracer.cc -> ->
127.0.0.1 web-traffic-shop.com -> ->
127.0.0.1 w-find.com -> ->
127.0.0.1 wfind4u.com -> ->
127.0.0.1 w-find4u.com -> ->
127.0.0.1 wildsexparties.com -> ->
127.0.0.1 winantivirus2005.com -> ->
127.0.0.1 windblow.4pu.com #[Trojan.Winblod] -> ->
127.0.0.1 wind-find.com -> ->
127.0.0.1 windfind4u.com -> ->
127.0.0.1 wind-find4u.com -> ->
127.0.0.1 windowfind.com -> ->
127.0.0.1 window-find.com -> ->
127.0.0.1 windowfind4u.com -> ->
127.0.0.1 window-find4u.com -> ->
127.0.0.1 window-search.com -> ->
127.0.0.1 windowsearch4u.com -> ->
127.0.0.1 window-search4u.com -> ->
127.0.0.1 windowsearchengine.com -> ->
127.0.0.1 window-searchengine.com -> ->
127.0.0.1 windows-find.com -> ->
127.0.0.1 windowsfind4u.com -> ->
127.0.0.1 windows-find4u.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 windowssearch4u.com -> ->
127.0.0.1 windows-search4u.com -> ->
127.0.0.1 windowssearchengine.com -> ->
127.0.0.1 windows-searchengine.com -> ->
127.0.0.1 windowssr.com -> ->
127.0.0.1 wind-search.com -> ->
127.0.0.1 windsearch4u.com -> ->
127.0.0.1 wind-search4u.com -> ->
127.0.0.1 windsearchengine.com -> ->
127.0.0.1 wind-searchengine.com -> ->
127.0.0.1 win-eto.com #[Parasite.SuperSpider] -> ->
127.0.0.1 winfind4u.com -> ->
127.0.0.1 win-find4u.com -> ->
127.0.0.1 winlink.biz -> ->
127.0.0.1 winsearch4u.com -> ->
127.0.0.1 win-search4u.com -> ->
127.0.0.1 winsearchengine.com -> ->
127.0.0.1 win-searchengine.com -> ->
127.0.0.1 woar.directwebsearch.net -> ->
127.0.0.1 worldanywhere.com -> ->
127.0.0.1 worldnetsearch.org #[MHTMLRedir.Exploit] -> ->
127.0.0.1 wsearch4u.com -> ->
127.0.0.1 w-search4u.com -> ->
127.0.0.1 wsearchengine.com -> ->
127.0.0.1 w-searchengine.com -> ->
127.0.0.1 ww11.coolpage.cc -> ->
127.0.0.1 ww9.linklist.cc -> ->
127.0.0.1 wwb.hitbox.com -> ->
127.0.0.1 www.007ArcadeGames.com -> ->
127.0.0.1 www.008i.com -> ->
127.0.0.1 www.00z70az77mnsa-00swj1zzprh.com #[www2.undergroundlair.net] -> ->
127.0.0.1 www.010402.com -> ->
127.0.0.1 www.0202search.com #[IE-SpyAd] -> ->
127.0.0.1 www.0cat.com #[Adware.STIEBar] -> ->
127.0.0.1 www.0dp.com -> ->
127.0.0.1 www.0mm.com -> ->
127.0.0.1 www.1000funnyvideos.com -> ->
127.0.0.1 www.100mature.net #[IE-SpyAd] -> ->
127.0.0.1 www.100topdownloads.net -> ->
127.0.0.1 www.123expressview.com -> ->
127.0.0.1 www.123find4u.com -> ->
127.0.0.1 www.123-find4u.com -> ->
127.0.0.1 www.123search.com #[Parasite.ClientMan] -> ->
127.0.0.1 www.123search4u.com -> ->
127.0.0.1 www.123-search4u.com -> ->
127.0.0.1 www.123-searchengine.com -> ->
127.0.0.1 www.171203.com -> ->
127.0.0.1 www.1adexchange.com #[IE-SpyAd -> ->
127.0.0.1 www.1spywarekiller.com #[Rogue/Suspect] -> ->
127.0.0.1 www.1stblaze.com -> ->
127.0.0.1 www.1st-software-downloads.com -> ->
127.0.0.1 www.1traff.us -> ->
127.0.0.1 www.20x2p.com #[InstallX Class] -> ->
127.0.0.1 www.212-229-05.com -> ->
127.0.0.1 www.24-7-search.com -> ->
127.0.0.1 www.24start.com #[Dialer.Lohan] -> ->
127.0.0.1 www.2awm.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 www.2nd-thought.com #[ADW_SECTHOUGHT.A][Adware.SecondThought] -> ->
127.0.0.1 www.2pursuit.com #[Trojan.Stwoyle] -> ->
127.0.0.1 www.31234.com #[CWS.Msconfig] -> ->
127.0.0.1 www.321search.com #[SearchAssistant.dll] -> ->
127.0.0.1 www.356563.net -> ->
127.0.0.1 www.39-93.com -> ->
127.0.0.1 www.3uz.net #[Win32.Sced] -> ->
127.0.0.1 www.404ads.com -> ->
127.0.0.1 www.404errorpage.com -> ->
127.0.0.1 www.4count.com -> ->
127.0.0.1 www.4hotstocks.com -> ->
127.0.0.1 www.4netmedia.com #[IE-SpyAd] -> ->
127.0.0.1 www.53best.com #[Trojan-PSW.Win32.Lmir.gen] -> ->
127.0.0.1 www.600pics.com -> ->
127.0.0.1 www.638725.net #[IE-SpyAd] -> ->
127.0.0.1 www.680180.net -> ->
127.0.0.1 www.68737075.com -> ->
127.0.0.1 www.69sexsearch.com -> ->
127.0.0.1 www.6o9.com -> ->
127.0.0.1 www.7000n.com #[Adware.7000n] -> ->
127.0.0.1 www.700k.com -> ->
127.0.0.1 www.700xxx.com -> ->
127.0.0.1 www.7days.ws #[Troj/IEStart-F] -> ->
127.0.0.1 www.911virus.org #[winantivirus.com] -> ->
127.0.0.1 www.a-137.com #[runsearch.com] -> ->
127.0.0.1 www.aadcom.com -> ->
127.0.0.1 www.aadserver.net #[IE-SpyAd] -> ->
127.0.0.1 www.abc-find.com -> ->
127.0.0.1 www.abcfind4u.com -> ->
127.0.0.1 www.abc-find4u.com -> ->
127.0.0.1 www.abcsearch4u.com -> ->
127.0.0.1 www.abc-search4u.com -> ->
127.0.0.1 www.abc-searchengine.com -> ->
127.0.0.1 www.accessplugin.com -> ->
127.0.0.1 www.active-alert-server.com #[IE-SpyAd] -> ->
127.0.0.1 www.activesearch.com #[Adware.ActiveSearch] -> ->
127.0.0.1 www.actualnames.com -> ->
127.0.0.1 www.acustat.com -> ->
127.0.0.1 www.ad-blaster.com -> ->
127.0.0.1 www.adbot.com -> ->
127.0.0.1 www.adcept.net #[IE-SpyAd] -> ->
127.0.0.1 www.adcipta.net #[W32/Malware] -> ->
127.0.0.1 www.adcopy.info -> ->
127.0.0.1 www.addictivegamez.com -> ->
127.0.0.1 www.addme.com #[IE-SpyAd] -> ->
127.0.0.1 www.add-to-favorites.net #[IE-SpyAd] -> ->
127.0.0.1 www.adinfinity.com #[IE-SpyAd] -> ->
127.0.0.1 www.adintelligence.net -> ->
127.0.0.1 www.adlogix.com -> ->
127.0.0.1 www.adonweb.com -> ->
127.0.0.1 www.adrelevance.com #[NetRatings][IE-SpyAd] -> ->
127.0.0.1 www.adroar.com -> ->
127.0.0.1 www.ads365.com -> ->
127.0.0.1 www.adscpm.com -> ->
127.0.0.1 www.adserv.com -> ->
127.0.0.1 www.adserver.com -> ->
127.0.0.1 www.adserving.us -> ->
127.0.0.1 www.adsincontext.com #[eTrust.AdsInContext] -> ->
127.0.0.1 www.adsourcecorp.com #[Trojan.Win32.Registrator.b] -> ->
127.0.0.1 www.adsvr.net #[Retriever Class] -> ->
127.0.0.1 www.adtomi.com #[Adware.Adtomi] -> ->
127.0.0.1 www.adultbrowser.com -> ->
127.0.0.1 www.adult-catalog.net -> ->
127.0.0.1 www.adultfreegals.com -> ->
127.0.0.1 www.adultgambling.net -> ->
127.0.0.1 www.adulthell.com #[McAfee.QlowZones-25] -> ->
127.0.0.1 www.adultoweb.com -> ->
127.0.0.1 www.adultpassfinder.com #[SexDownloader] -> ->
127.0.0.1 www.adultplayersclub.com -> ->
127.0.0.1 www.adultweetplace.com -> ->
127.0.0.1 www.adultxxxgames.net -> ->
127.0.0.1 www.advertisingbay.com -> ->
127.0.0.1 www.advertisingvision.com #[Adware.Advision] -> ->
127.0.0.1 www.advnt.com -> ->
127.0.0.1 www.advnt01.com #[VacPro.canada_ver3] -> ->
127.0.0.1 www.advnt02.com -> ->
127.0.0.1 www.advolt.com -> ->
127.0.0.1 www.adwarealert.com #[AdwareAlert] -> ->
127.0.0.1 www.adwarefilter.com #[Rogue/Suspect] -> ->
127.0.0.1 www.adwarehitman.com -> ->
127.0.0.1 www.ad-where.com -> ->
127.0.0.1 www.adzoma.com -> ->
127.0.0.1 www.affiliatetarget.com -> ->
127.0.0.1 www.a-find4u.com -> ->
127.0.0.1 www.aguarddog.com -> ->
127.0.0.1 www.aidintime.com -> ->
127.0.0.1 www.aimdolls.com #[F1 Organizer Class] -> ->
127.0.0.1 www.alarm-works.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 www.alexa.com #[IE-SpyAd] -> ->
127.0.0.1 www.alfa-search.com #[Adware.CWSAlfaSearch] -> ->
127.0.0.1 www.alibabanet.net -> ->
127.0.0.1 www.alienicons.com -> ->
127.0.0.1 www.all2save.com -> ->
127.0.0.1 www.allclicks.com -> ->
127.0.0.1 www.all-find.org -> ->
127.0.0.1 www.allfreegals.com -> ->
127.0.0.1 www.allheadlinenews.com -> ->
127.0.0.1 www.allspyware.net -> ->
127.0.0.1 www.allspyware.org #[Troj/Clicker-P][ADW_MSNLIST.B] -> ->
127.0.0.1 www.alset.com -> ->
127.0.0.1 www.alwaysupdatednews.com #[Trojan-Downloader.Win32.Small.akz] -> ->
127.0.0.1 www.amateurgirlphotos.com -> ->
127.0.0.1 www.americlicks.com #[eTrust.Americlicks] -> ->
127.0.0.1 www.amigeek.com -> ->
127.0.0.1 www.amnv.net -> ->
127.0.0.1 www.andlotsmore.com -> ->
127.0.0.1 www.andr.com -> ->
127.0.0.1 www.angelsbleeped.com -> ->
127.0.0.1 www.animetoolbar.com -> ->
127.0.0.1 www.anquiro.com #[Adw.Anquiro.Toolbar] -> ->
127.0.0.1 www.anthraxalarm.com -> ->
127.0.0.1 www.antivirus-gold.com #[Troj/Spyre-C][Rogue/Suspect] -> ->
127.0.0.1 www.any-find.com -> ->
127.0.0.1 www.archiviohard.com -> ->
127.0.0.1 www.archiviosex.com -> ->
127.0.0.1 www.armbender.com #[UCSearch.ArmBender] -> ->
127.0.0.1 www.artalex.biz #[Webhelper4u.SearchTerror] -> ->
127.0.0.1 www.artoffinding.com #[v61.com][full-search.net] -> ->
127.0.0.1 www.a-search4u.com -> ->
127.0.0.1 www.askthenet.net #[v61.com][full-search.net] -> ->
127.0.0.1 www.atelys.com #[SpeedCtrl Class] -> ->
127.0.0.1 www.at-games.com -> ->
127.0.0.1 www.avatarresources.com #[Parasite.AutoStartup] -> ->
127.0.0.1 www.avenuemedia.com -> ->
127.0.0.1 www.aviabiz.com -> ->
127.0.0.1 www.avres.net #[IE-SpyAd] -> ->
127.0.0.1 www.awmgate.com -> ->
127.0.0.1 www.azebar.com #[CParamWr Class][Adware.MWSearch] -> ->
127.0.0.1 www.azenetwork.com -> ->
127.0.0.1 www.azesearch.com #[eTrust.Aze Search Toolbar] -> ->
127.0.0.1 www.baidu.com #[[Adware.Baidu] -> ->
127.0.0.1 www.bannersandpopups.com -> ->
127.0.0.1 www.bannerswap.com -> ->
127.0.0.1 www.bascowater.com #[server down?] -> ->
127.0.0.1 www.bay9.com -> ->
127.0.0.1 www.bazoma.com -> ->
127.0.0.1 www.bc777.com #[Transponder/SiteHlpr] -> ->
127.0.0.1 www.bdsmtoolbar.com -> ->
127.0.0.1 www.beachtrash.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 www.beautifulbabes-screensavers.com -> ->
127.0.0.1 www.belgiandip.com -> ->
127.0.0.1 www.belleincam.net #[Trojan.Win32.Dialer.hz] -> ->
127.0.0.1 www.besstsearchs.com -> ->
127.0.0.1 www.bestadultgals.com -> ->
127.0.0.1 www.bestcracks.net -> ->
127.0.0.1 www.bestdrugsdeal.com -> ->
127.0.0.1 www.bestfind4u.com -> ->
127.0.0.1 www.bestoffers.bz -> ->
127.0.0.1 www.bestoftheweb.cc -> ->
127.0.0.1 www.bestpopupkiller.com -> ->
127.0.0.1 www.bestporngals.com -> ->
127.0.0.1 www.bestsearcher.info -> ->
127.0.0.1 www.besttraff.us -> ->
127.0.0.1 www.best-web-search.com -> ->
127.0.0.1 www.bestwebsearch.org -> ->
127.0.0.1 www.bhakimi.com -> ->
127.0.0.1 www.bidprobe.com -> ->
127.0.0.1 www.bigbuks.info -> ->
127.0.0.1 www.big-search.org -> ->
127.0.0.1 www.bigsexvideos.com -> ->
127.0.0.1 www.bigtitstoolbar.com -> ->
127.0.0.1 www.bigtrafficnetwork.com #[Adware.BigTrafficNet] -> ->
127.0.0.1 www.bigwebfind.com -> ->
127.0.0.1 www.bitoma.com -> ->
127.0.0.1 www.bittorrent-ultra.com -> ->
127.0.0.1 www.bizonio.com -> ->
127.0.0.1 www.blacklogic.net -> ->
127.0.0.1 www.blazefind.com #[Adware.BlazeFind.B] -> ->
127.0.0.1 www.blazehits.net #[gonnasearch.com] -> ->
127.0.0.1 www.blingblingicons.com #[media-motor.net] -> ->
127.0.0.1 www.bloiscom.net -> ->
127.0.0.1 www.bluehavenmedia.com #[Parasite.SuperBar] -> ->
127.0.0.1 www.bns2.net -> ->
127.0.0.1 www.boom-search.com #[klikfind.com] -> ->
127.0.0.1 www.boredlife.com -> ->
127.0.0.1 www.botsquash.com -> ->
127.0.0.1 www.boxfrog.com -> ->
127.0.0.1 www.boxsearch.net -> ->
127.0.0.1 www.bravenet.com -> ->
127.0.0.1 www.browser-page.com -> ->
127.0.0.1 www.browserpal.com -> ->
127.0.0.1 www.browsertoolbar.com #[Parasite.BrowserToolbar] -> ->
127.0.0.1 www.browservillage.com -> ->
127.0.0.1 www.bulk-search.net -> ->
127.0.0.1 www.bundleware.com #[Look2Me][NicTech.BM2] -> ->
127.0.0.1 www.burningsearch.com -> ->
127.0.0.1 www.callingpay.de #[Restricted Zone site] -> ->
127.0.0.1 www.camberageflex.com -> ->
127.0.0.1 www.cannotfind.net #[Adult Search bar] -> ->
127.0.0.1 www.cardsgames.net -> ->
127.0.0.1 www.care2.com #[TopMoxie] -> ->
127.0.0.1 www.cash4toolbar.com -> ->
127.0.0.1 www.casinopalazzo.com #[SysComDloader][Adware-Findemnow.dldr] -> ->
127.0.0.1 www.casinoxo.com #[CasinoXOSetup] -> ->
127.0.0.1 www.cc-download.com -> ->
127.0.0.1 www.celebsoncrack.com #[media-motor.net] -> ->
127.0.0.1 www.centralmedia.ws -> ->
127.0.0.1 www.cgistorehouse.com -> ->
127.0.0.1 www.chart20.com #[find-help.org] -> ->
127.0.0.1 www.checkflow.com #[Rogue/Suspect] -> ->
127.0.0.1 www.checkforspyware.com #[Rogue/Suspect] -> ->
127.0.0.1 www.checkspy.com #[Rogue/Suspect] -> ->
127.0.0.1 www.check-wire.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 www.christmassavers1st.com -> ->
127.0.0.1 www.ciuccia-cazzi.biz #[Trojan.Win32.Dialer.hz] -> ->
127.0.0.1 www.cleangetaway.biz -> ->
127.0.0.1 www.clearfind.com #[IE-SpyAd] -> ->
127.0.0.1 www.clearsearch.cc -> ->
127.0.0.1 www.clearsearch.com -> ->
127.0.0.1 www.clearsearch.net -> ->
127.0.0.1 www.click2boost.com -> ->
127.0.0.1 www.clickalchemy.com #[Adware.ClickAlchemy] -> ->
127.0.0.1 www.clickexchange.ru #[IE-SpyAd] -> ->
127.0.0.1 www.clickhereforcellphones.com -> ->
127.0.0.1 www.clickheretofind.com -> ->
127.0.0.1 www.clicksearchclick.com -> ->
127.0.0.1 www.clickthroughtraffic.com -> ->
127.0.0.1 www.clickthrutraffic.com -> ->
127.0.0.1 www.clicktracking.info #[AdPopper] -> ->
127.0.0.1 www.clickyestoenter.net -> ->
127.0.0.1 www.clicz.com -> ->
127.0.0.1 www.climaxbucks.com -> ->
127.0.0.1 www.clipgenie.com #[Adware.ClipGenie] -> ->
127.0.0.1 www.clito57.com -> ->
127.0.0.1 www.clkdecision.com -> ->
127.0.0.1 www.clkmanager.com -> ->
127.0.0.1 www.clkprecision.com -> ->
127.0.0.1 www.clubonly18.com -> ->
127.0.0.1 www.cms1.net -> ->
127.0.0.1 www.cms2.net -> ->
127.0.0.1 www.cocktailcash.com -> ->
127.0.0.1 www.codeccash.com -> ->
127.0.0.1 www.codeccash.net -> ->
127.0.0.1 www.coldthumbs.com #[Dialer.Porno.40] -> ->
127.0.0.1 www.colinsdialer.com -> ->
127.0.0.1 www.collarsaround.com -> ->
127.0.0.1 www.comedy-planet.com #[Adware.ComedyPlanet] -> ->
127.0.0.1 www.cometcursors.com -> ->
127.0.0.1 www.commercetraffic.com -> ->
127.0.0.1 www.commonsearch.com -> ->
127.0.0.1 www.compactbanner.com #[IE-SpyAd] -> ->
127.0.0.1 www.competitorkeywords.com #[Webhelper4u.SearchTerror] -> ->
127.0.0.1 www.conscorr.com #[TrojanDownloader.stubby.c] -> ->
127.0.0.1 www.consoleads.com -> ->
127.0.0.1 www.contenidospc.com #[Ruboskizo Dialer] -> ->
127.0.0.1 www.content.overture.com #[AltaVista Toolbar] -> ->
127.0.0.1 www.contextplus.com -> ->
127.0.0.1 www.contextplus.net #[TROJ_LOADER.D] -> ->
127.0.0.1 www.contextpro.com -> ->
127.0.0.1 www.conyc.com #[Adware.CWSConyc] -> ->
127.0.0.1 www.coolquiz.com -> ->
127.0.0.1 www.coolsearcher.info -> ->
127.0.0.1 www.coolshader.com -> ->
127.0.0.1 www.coolwebsearch.org -> ->
127.0.0.1 www.couponage.com #[searchant.com] -> ->
127.0.0.1 www.courtesyemails.com -> ->
127.0.0.1 www.cpvmarket.com -> ->
127.0.0.1 www.crackarchive.com -> ->
127.0.0.1 www.cracksweb.com -> ->
127.0.0.1 www.crazydrinks.com #[IE-SpyAd] -> ->
127.0.0.1 www.crazyfinder.com -> ->
127.0.0.1 www.crazymates.com -> ->
127.0.0.1 www.creatrixads.com -> ->
127.0.0.1 www.crontel.com -> ->
127.0.0.1 www.crooder.com #[umaxsearch.com] -> ->
127.0.0.1 www.csex.com #[Coulomb Dialer] -> ->
127.0.0.1 www.cursorzone.com -> ->
127.0.0.1 www.cwbsearch.com -> ->
127.0.0.1 www.dailyflashgames.com -> ->
127.0.0.1 www.daily-search.com -> ->
127.0.0.1 www.daocash.com -> ->
127.0.0.1 www.daoclick.com -> ->
127.0.0.1 www.daosearch.com -> ->
127.0.0.1 www.daotalk.com -> ->
127.0.0.1 www.dash.com -> ->
127.0.0.1 www.dashbugfree.com #[eZula.DashBugFree] -> ->
127.0.0.1 www.dashconnect.com #[eZula.DashConnect] -> ->
127.0.0.1 www.dashmemory.com #[eZula.DashMemory] -> ->
127.0.0.1 www.dashpccleaner.com #[eZula.DashPCCleaner] -> ->
127.0.0.1 www.dashpopupkiller.com #[eZula.DashPopUpKiller] -> ->
127.0.0.1 www.datastorm.biz -> ->
127.0.0.1 www.dateznews.com -> ->
127.0.0.1 www.datingforlove.org #[McAfee.QlowZones-25] -> ->
127.0.0.1 www.ddupdates.com -> ->
127.0.0.1 www.dealhelper.com #[Adware.DealHelper] -> ->
127.0.0.1 www.derbiz.com -> ->
127.0.0.1 www.deskbarads.com -> ->
127.0.0.1 www.dialeradmin.com #[Exploit.HotOffers] -> ->
127.0.0.1 www.dialeriblocker.com -> ->
127.0.0.1 www.dialers2k.com -> ->
127.0.0.1 www.dialerzona.com #[cuadruple Class] -> ->
127.0.0.1 www.diallerplugin.com -> ->
127.0.0.1 www.diamonddollz.com -> ->
127.0.0.1 www.divago.com #[Adware.Surfairy] -> ->
127.0.0.1 www.dlmax.biz -> ->
127.0.0.1 www.dmvlite.com -> ->
127.0.0.1 www.dnyx.net -> ->
127.0.0.1 www.doctor-alex.com -> ->
127.0.0.1 www.dofinder.com -> ->
127.0.0.1 www.dorki.info -> ->
127.0.0.1 www.dorkodrom.com -> ->
127.0.0.1 www.downloadalot.com #[IE-SpyAd] -> ->
127.0.0.1 www.download-dollars.com -> ->
127.0.0.1 www.drfind4u.com -> ->
127.0.0.1 www.dr-find4u.com -> ->
127.0.0.1 www.drsearch4u.com -> ->
127.0.0.1 www.dr-search4u.com -> ->
127.0.0.1 www.dr-searchengine.com -> ->
127.0.0.1 www.drusearch.com -> ->
127.0.0.1 www.dubolom.com -> ->
127.0.0.1 www.duolaimi.net -> ->
127.0.0.1 www.dynamicontext.com -> ->
127.0.0.1 www.e2give.com -> ->
127.0.0.1 www.eaglehousing.com #[Trojan.Eaghouse] -> ->
127.0.0.1 www.easyspywarekiller.com #[Rogue/Suspect] -> ->
127.0.0.1 www.easywebdating.net -> ->
127.0.0.1 www.eblocs.com -> ->
127.0.0.1 www.ebonyplugin.com -> ->
127.0.0.1 www.ebonytoolbar.com -> ->
127.0.0.1 www.ec16media.com #[IE-SpyAd] -> ->
127.0.0.1 www.e-clk.com -> ->
127.0.0.1 www.efinder.cc #[StartPage-DA] -> ->
127.0.0.1 www.egoog.com #[IE-SpyAd] -> ->
127.0.0.1 www.eimg.com -> ->
127.0.0.1 www.elevonsearch.com -> ->
127.0.0.1 www.elimiware.com -> ->
127.0.0.1 www.em5000.com -> ->
127.0.0.1 www.emco.is #[Rogue/Suspect] -> ->
127.0.0.1 www.emcohelp.com -> ->
127.0.0.1 www.emorningmoss.net -> ->
127.0.0.1 www.engine-find.info -> ->
127.0.0.1 www.enhancemysearch.com -> ->
127.0.0.1 www.enjoysearch.info -> ->
127.0.0.1 www.enlargeyourpockets.com #[globolook.com] -> ->
127.0.0.1 www.entryplugin.com -> ->
127.0.0.1 www.e-plus.cc -> ->
127.0.0.1 www.erationalnews.com #[FavoriteMan.Erationalnews] -> ->
127.0.0.1 www.e-regpatch.com -> ->
127.0.0.1 www.errorguard.com #[CInstall Class][eTrust.ErrorGuard] -> ->
127.0.0.1 www.errorpage404.com #[Parasite.TinyBar] -> ->
127.0.0.1 www.esearchandfind.org -> ->
127.0.0.1 www.e-sexcash.com -> ->
127.0.0.1 www.estationary.com -> ->
127.0.0.1 www.eta.us #[mommykiss.com] -> ->
127.0.0.1 www.etightstrings.net -> ->
127.0.0.1 www.euro-dialers.com -> ->
127.0.0.1 www.evilmembers.com -> ->
127.0.0.1 www.evker.com -> ->
127.0.0.1 www.exchangeexit.com #[Installer Class][Winupie] -> ->
127.0.0.1 www.exitfuel.com -> ->
127.0.0.1 www.explorertoolbar1.com #[Adware.ESDIexplorr] -> ->
127.0.0.1 www.ezmp3download.com #[mp3u.com] -> ->
127.0.0.1 www.ez-searching.com #[Parasite.ezSearching] -> ->
127.0.0.1 www.ezulaadvertisingrevenuenetwork.com #[eZula.Earn] -> ->
127.0.0.1 www.factcheck.com -> ->
127.0.0.1 www.fan8.com -> ->
127.0.0.1 www.fanzonetoolbar.com #[FanZone Toolbar] -> ->
127.0.0.1 www.farmmext.com -> ->
127.0.0.1 www.fast2net.com -> ->
127.0.0.1 www.fasterhomepage.com #[McAfee.Adware-FasterXP] -> ->
127.0.0.1 www.fastsearchweb.com -> ->
127.0.0.1 www.fastwebfinder.com #[CWS.Aff.Tooncomics.2] -> ->
127.0.0.1 www.fast-web-search.com -> ->
127.0.0.1 www.featured-results.com #[BrowserAid.FeaturesResults] -> ->
127.0.0.1 www.fetishtoolbar.com -> ->
127.0.0.1 www.fhgstr.com -> ->
127.0.0.1 www.filemix.net #[Surf+][IE-SpyAd] -> ->
127.0.0.1 www.finally.com -> ->
127.0.0.1 www.find4u.net -> ->
127.0.0.1 www.find777.com -> ->
127.0.0.1 www.findallgood.com -> ->
127.0.0.1 www.find-by-web.com -> ->
127.0.0.1 www.findcracks.com #[IE-Spy-Ad] -> ->
127.0.0.1 www.find-everything.com -> ->
127.0.0.1 www.find-more.net -> ->
127.0.0.1 www.find-online.net #[Troj/StartPa-AI] -> ->
127.0.0.1 www.find-quick.com -> ->
127.0.0.1 www.findspyware.net #[AdWare.FindSpy.a] -> ->
127.0.0.1 www.findwhat.com -> ->
127.0.0.1 www.findyourgirl.net -> ->
127.0.0.1 www.findyourweb.net -> ->
127.0.0.1 www.fineclicks.com #[IE-SpyAd] -> ->
127.0.0.1 www.firecruiser.com -> ->
127.0.0.1 www.firstlook.com #[SunBelt.FirstLook Search Portal] -> ->
127.0.0.1 www.fizzlewizzle.com #[Fizzle Wizzle Searchbar] -> ->
127.0.0.1 www.flashtrack.net #[Adware.FlashEnhancer][KB312429] -> ->
127.0.0.1 www.flathousing.net -> ->
127.0.0.1 www.flingstone.com #[Adware.WinFavorites.B] -> ->
127.0.0.1 www.flipside.com #[WONWebLauncher Class] -> ->
127.0.0.1 www.flowprotector.com -> ->
127.0.0.1 www.flyeagles.com #[Trojan.Drivus] -> ->
127.0.0.1 www.flyinads.com -> ->
127.0.0.1 www.fmn-media.com #[DNLCertificate Control] -> ->
127.0.0.1 www.fofom.com -> ->
127.0.0.1 www.foxik.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 www.free2xsite.com -> ->
127.0.0.1 www.freeandexclusive.com -> ->
127.0.0.1 www.freecommunity.com -> ->
127.0.0.1 www.free-computer-anti-virus.com #[Application.GoWebsiteAdware.A] -> ->
127.0.0.1 www.freecontentbuilder.com -> ->
127.0.0.1 www.freedom850.com #[Trojan.Drivus] -> ->
127.0.0.1 www.freegameland.com -> ->
127.0.0.1 www.freegayavs.com -> ->
127.0.0.1 www.freehistorycleaner.com #[Adware.Fapi][ADW_HISCLEAN.A] -> ->
127.0.0.1 www.free-hit.com -> ->
127.0.0.1 www.freehqmovies.com -> ->
127.0.0.1 www.freematureporn.org #[klikfeed.com] -> ->
127.0.0.1 www.freepcscan.com #[Spyware Slayer] -> ->
127.0.0.1 www.freephone.cc -> ->
127.0.0.1 www.freescratchandwin.com -> ->
127.0.0.1 www.free-scratch-cards.com -> ->
127.0.0.1 www.freetgpgals.com -> ->
127.0.0.1 www.freexxxplace.com #[VBS/Seeker-C] -> ->
127.0.0.1 www.friendcards.com -> ->
127.0.0.1 www.friends-blog.tv #[Adware.FriendsBlog] -> ->
127.0.0.1 www.friendsgreetings.com -> ->
127.0.0.1 www.bleepoporn.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 www.funcionamiento-con-la-tijera.com #[undergroundlair.net] -> ->
127.0.0.1 www.g3ads.com -> ->
127.0.0.1 www.games-factory.com #[ClickYes2Enter Dialer] -> ->
127.0.0.1 www.gay50.com -> ->
127.0.0.1 www.gayweb.com -> ->
127.0.0.1 www.gayxxxtoolbar.com -> ->
127.0.0.1 www.gedera-news.com -> ->
127.0.0.1 www.getaflick.biz #[MHTMLRedir.Exploit] -> ->
127.0.0.1 www.getdableep.com -> ->
127.0.0.1 www.getitandgo.com -> ->
127.0.0.1 www.getredirect.com -> ->
127.0.0.1 www.getupdate.com #[Adware.Getup] -> ->
127.0.0.1 www.gexus.com -> ->
127.0.0.1 www.ghance.com -> ->
127.0.0.1 www.gigasearch.biz -> ->
127.0.0.1 www.gigatechsoftware.com -> ->
127.0.0.1 www.gigex.com #[download Class] -> ->
127.0.0.1 www.girlsandgames.com #[AdWare.WinAD.z] -> ->
127.0.0.1 www.girlsforgambling.com -> ->
127.0.0.1 www.girlsforgambling.net -> ->
127.0.0.1 www.girlsforgames.com #[Trojan.StartPage.JB] -> ->
127.0.0.1 www.girlswithphoto.com #[Webhelper4u.CoolWebSearch] -> ->
127.0.0.1 www.glintbill.com -> ->
127.0.0.1 www.global-finder.com -> ->
127.0.0.1 www.globe-finder.net -> ->
127.0.0.1 www.globolook.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 www.goggle.com #[IE-SpyAd][typo squatter] -> ->
127.0.0.1 www.gogirlfriends.com -> ->
127.0.0.1 www.goindirect.com #[Dialer.Goin][Parasite.DialerActiveX] -> ->
127.0.0.1 www.goindirect.nu -> ->
127.0.0.1 www.goinnow.com -> ->
127.0.0.1 www.gonnasearch.com #[supaseek.com][GonnaSearch Toolbar] -> ->
127.0.0.1 www.goodcounter.com -> ->
127.0.0.1 www.goodfind4u.com -> ->
127.0.0.1 www.good-find4u.com -> ->
127.0.0.1 www.goodsearch4u.com -> ->
127.0.0.1 www.goodsearchengine.com -> ->
127.0.0.1 www.goo-gle.info -> ->
127.0.0.1 www.goporn.us -> ->
127.0.0.1 www.gorefer.com -> ->
127.0.0.1 www.gotraffic.us -> ->
127.0.0.1 www.grandstreetinteractive.com -> ->
127.0.0.1 www.grannymax.com -> ->
127.0.0.1 www.greasycow.com #[SuperBar.GC] -> ->
127.0.0.1 www.great-pc-software.com -> ->
127.0.0.1 www.greatplugin.com -> ->
127.0.0.1 www.greatstartpage.com -> ->
127.0.0.1 www.grip.com -> ->
127.0.0.1 www.grokster.com -> ->
127.0.0.1 www.gtawarehouse.com -> ->
127.0.0.1 www.guardbar.com #[Rogue/Suspect] -> ->
127.0.0.1 www.gugle.biz -> ->
127.0.0.1 www.haltspyware.info -> ->
127.0.0.1 www.hangoutspot.com -> ->
127.0.0.1 www.hangoutspot.net -> ->
127.0.0.1 www.hao3344.com #[eTrust.Adtest] -> ->
127.0.0.1 www.hardclito.com -> ->
127.0.0.1 www.hardcoretoolbar.com -> ->
127.0.0.1 www.healthycomputerclub.com #[SpyLax] -> ->
127.0.0.1 www.helpinweb.net -> ->
127.0.0.1 www.helpmefree.com #[winantivirus.com] -> ->
127.0.0.1 www.herbaldr.com -> ->
127.0.0.1 www.here4search.com -> ->
127.0.0.1 www.her-free-pictures.com -> ->
127.0.0.1 www.historykillcash.com -> ->
127.0.0.1 www.historykilldownload.com -> ->
127.0.0.1 www.historyoff.com -> ->
127.0.0.1 www.hitgo.com -> ->
127.0.0.1 www.hitlogger.com -> ->
127.0.0.1 www.hiwire.com #[IE-SpyAd] -> ->
127.0.0.1 www.hkpopupkiller.com -> ->
127.0.0.1 www.holidaysavers1st.com -> ->
127.0.0.1 www.holistyc.com -> ->
127.0.0.1 www.homecareersearch.com -> ->
127.0.0.1 www.hornyhits.biz -> ->
127.0.0.1 www.horseserver.net #[Backdoor.Haxdoor.D] -> ->
127.0.0.1 www.hostanddomain.net -> ->
127.0.0.1 www.hotactiondating.com #[HotActionDating] -> ->
127.0.0.1 www.hotbookmark.com -> ->
127.0.0.1 www.hotcry.com -> ->
127.0.0.1 www.hotelxxxcams.com -> ->
127.0.0.1 www.hot-find.com -> ->
127.0.0.1 www.hotfind4u.com -> ->
127.0.0.1 www.hot-find4u.com -> ->
127.0.0.1 www.hotmoms.biz -> ->
127.0.0.1 www.hotoffers.info #[Trojan.Desktophijack] -> ->
127.0.0.1 www.hotpopup.com -> ->
127.0.0.1 www.hotqueens.com -> ->
127.0.0.1 www.hotsearch.com -> ->
127.0.0.1 www.hotsearch4u.com -> ->
127.0.0.1 www.hotsearchbar.com -> ->
127.0.0.1 www.hotsearchbox.com -> ->
127.0.0.1 www.htmlpublishers.com -> ->
127.0.0.1 www.huy-search.info -> ->
127.0.0.1 www.hypercount.com -> ->
127.0.0.1 www.icanfindit.net #[CWS.Winproc32] -> ->
127.0.0.1 www.icansearch.net -> ->
127.0.0.1 www.iclicks.net -> ->
127.0.0.1 www.iconarmy.com -> ->
127.0.0.1 www.icooloader.com #[SpyBot.Icoo Loader] -> ->
127.0.0.1 www.icountertop.com -> ->
127.0.0.1 www.ics900.com -> ->
127.0.0.1 www.idgsearch.com #[Trojan.Digits] -> ->
127.0.0.1 www.ie-find.com -> ->
127.0.0.1 www.iefind4u.com -> ->
127.0.0.1 www.ie-find4u.com -> ->
127.0.0.1 www.iehelp.net -> ->
127.0.0.1 www.ieprivacy.com -> ->
127.0.0.1 www.iesearch.com #[Adware bundler] -> ->
127.0.0.1 www.iesearch4u.com -> ->
127.0.0.1 www.ie-search4u.com -> ->
127.0.0.1 www.iesearchengine.com -> ->
127.0.0.1 www.ie-searchengine.com -> ->
127.0.0.1 www.i-find4u.com -> ->
127.0.0.1 www.ignkeywords.com -> ->
127.0.0.1 www.illtemperedguppys.com -> ->
127.0.0.1 www.imbum.com #[F1 Organizer Class] -> ->
127.0.0.1 www.imbum.net #[Look2Me] -> ->
127.0.0.1 www.imesh-music-movies-downloads.com -> ->
127.0.0.1 www.imgiant.com -> ->
127.0.0.1 www.imgiant.net -> ->
127.0.0.1 www.improvedsearch.net #[v61.com][full-search.net] -> ->
127.0.0.1 www.incredifind.com #[KeenValue][eUniverse.IncrediFind] -> ->
127.0.0.1 www.inetraffic.com -> ->
127.0.0.1 www.infobeat.com -> ->
127.0.0.1 www.infodialer.biz #[Trojan.Win32.Dialer.hz] -> ->
127.0.0.1 www.infospider.com #[IE-SpyAd] -> ->
127.0.0.1 www.inqwire.com -> ->
127.0.0.1 www.instantsearch.cc #[F-Secure.Small.wy] -> ->
127.0.0.1 www.insurancedeal.net #[ADW_ADCLICKER.BM] -> ->
127.0.0.1 www.intercheck.co.uk -> ->
127.0.0.1 www.intermix.com -> ->
127.0.0.1 www.internetbroadcastnow.com -> ->
127.0.0.1 www.internet-search.info -> ->
127.0.0.1 www.ipassist.biz #[clicksearchclick.com] -> ->
127.0.0.1 www.ipcons.biz -> ->
127.0.0.1 www.ipinsight.com -> ->
127.0.0.1 www.ipinsight.net -> ->
127.0.0.1 www.ip-tool.com -> ->
127.0.0.1 www.iquicksearch.net -> ->
127.0.0.1 www.i-search.us -> ->
127.0.0.1 www.i-search4u.com -> ->
127.0.0.1 www.ispykiller.com -> ->
127.0.0.1 www.istarthere.com #[VBS_IESTART.F] -> ->
127.0.0.1 www.itrafficstar.com #[IE-SpyAd] -> ->
127.0.0.1 www.iwebtunes.com -> ->
127.0.0.1 www.iwon.com #[Adware.IWon] -> ->
127.0.0.1 www.j4sb.com #[Trojan.Jasbom] -> ->
127.0.0.1 www.japanese-porns.com #[IEplugin Class] -> ->
127.0.0.1 www.jenkyicons.com -> ->
127.0.0.1 www.jetpad.com -> ->
127.0.0.1 www.jetsearch.org #[TROJ_STARTPAG.JP] -> ->
127.0.0.1 www.jetseeker.com -> ->
127.0.0.1 www.jmnad1.com -> ->
127.0.0.1 www.joystickaudio.com -> ->
127.0.0.1 www.joystickball.com -> ->
127.0.0.1 www.joystickcheats.com #[AdWare.MediaMotor.a] -> ->
127.0.0.1 www.joystickflash.com -> ->
127.0.0.1 www.joystickmovies.com -> ->
127.0.0.1 www.joysticknetworks.com #[Trojan.JoystickNetworks.DesktopIcons] -> ->
127.0.0.1 www.joysticknews.com -> ->
127.0.0.1 www.joysticksavers.com -> ->
127.0.0.1 www.joystickwar.com -> ->
127.0.0.1 www.judysearch.com -> ->
127.0.0.1 www.kazaa-tools.com -> ->
127.0.0.1 www.kazanon.com -> ->
127.0.0.1 www.keenvalue.com #[Keenware] -> ->
127.0.0.1 www.keywordnavigator.com -> ->
127.0.0.1 www.keywordnavigator.net -> ->
127.0.0.1 www.keywordsinc.com -> ->
127.0.0.1 www.keywordz.info -> ->
127.0.0.1 www.kilfhunter.com -> ->
127.0.0.1 www.killallspyware.com -> ->
127.0.0.1 www.killinternetpopups.com -> ->
127.0.0.1 www.kill-pop-ups.com -> ->
127.0.0.1 www.klikfeed.com -> ->
127.0.0.1 www.klikfind.com -> ->
127.0.0.1 www.klounada.com -> ->
127.0.0.1 www.k-search.biz -> ->
127.0.0.1 www.kudd.com -> ->
127.0.0.1 www.last-find.com -> ->
127.0.0.1 www.lastfind4u.com -> ->
127.0.0.1 www.last-find4u.com -> ->
127.0.0.1 www.lastsearch4u.com -> ->
127.0.0.1 www.lastsearchengine.com -> ->
127.0.0.1 www.leadrankings.com -> ->
127.0.0.1 www.lesbiantoolbar.com #[IEToolbarCab] -> ->
127.0.0.1 www.letsgofind.com -> ->
127.0.0.1 www.likesurfing.com -> ->
127.0.0.1 www.linkexchange.com -> ->
127.0.0.1 www.linklist.cc -> ->
127.0.0.1 www.linkrankings.com -> ->
127.0.0.1 www.linkstoyou.com -> ->
127.0.0.1 www.livegaycinema.com -> ->
127.0.0.1 www.livepokeroom.com -> ->
127.0.0.1 www.livepokeroom.net -> ->
127.0.0.1 www.loading-lolita.com -> ->
127.0.0.1 www.loadingwebsite.com -> ->
127.0.0.1 www.localnrd.com #[VX2.LocalNRD] -> ->
127.0.0.1 www.locator.cc -> ->
127.0.0.1 www.locators.com -> ->
127.0.0.1 www.logiose.com -> ->
127.0.0.1 www.logoplugin.com -> ->
127.0.0.1 www.lolitasex-x.com #[StartPage-HJ][Trojan.StartPage.L] -> ->
127.0.0.1 www.look1.net -> ->
127.0.0.1 www.look2me.com #[Trojan.Loome][Download.Look2Me] -> ->
127.0.0.1 www.lookfor.cc -> ->
127.0.0.1 www.look-today.com -> ->
127.0.0.1 www.loosingvirginity.com -> ->
127.0.0.1 www.lostvirginitypics.com -> ->
127.0.0.1 www.love1107.com #[virgins.se] -> ->
127.0.0.1 www.loves-girls.biz #[MHTMLRedir.Exploit] -> ->
127.0.0.1 www.lovetraffic.com -> ->
127.0.0.1 www.luckyhomepage.com #[IE-SpyAd] -> ->
127.0.0.1 www.luckysearch.net -> ->
127.0.0.1 www.lunasearch.com -> ->
127.0.0.1 www.lvip.net #[StartPage-HI] -> ->
127.0.0.1 www.lyricspy.com #[PluginAccess] -> ->
127.0.0.1 www.M27Power.com -> ->
127.0.0.1 www.madoogali.com #[Madoogali][IE-SpyAd] -> ->
127.0.0.1 www.madsearches.com #[klikfind.com] -> ->
127.0.0.1 www.mailwiper.com #[Rogue/Suspect] -> ->
127.0.0.1 www.makechoice.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 www.makeeasylive.com -> ->
127.0.0.1 www.malwarecash.com -> ->
127.0.0.1 www.manga2.com -> ->
127.0.0.1 www.manmednw.net -> ->
127.0.0.1 www.martfinder.com -> ->
127.0.0.1 www.massivewang.com #[VBS.Illicky] -> ->
127.0.0.1 www.matchoogle.com -> ->
127.0.0.1 www.matchooglenews.com -> ->
127.0.0.1 www.matrix-screensaver.net -> ->
127.0.0.1 www.mature-porn.us -> ->
127.0.0.1 www.mature-shop.com -> ->
127.0.0.1 www.maximuncash.com -> ->
127.0.0.1 www.maxionsoftware.com -> ->
127.0.0.1 www.maxnetshield.com #[Rogue/Suspect] -> ->
127.0.0.1 www.maxprivacyprotector.com -> ->
127.0.0.1 www.max-stats.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 www.mediadial.com -> ->
127.0.0.1 www.mediafeast.com -> ->
127.0.0.1 www.medialoads.com -> ->
127.0.0.1 www.media-motor.com -> ->
127.0.0.1 www.media-motor.net -> ->
127.0.0.1 www.membersplayground.com #[Dialer.PlayGames] -> ->
127.0.0.1 www.membersplugin.com -> ->
127.0.0.1 www.memorywatcher.com #[TROJ_PEPER.A] -> ->
127.0.0.1 www.messagebroadcaster.net -> ->
127.0.0.1 www.mindseti.com -> ->
127.0.0.1 www.minutegroup.com -> ->
127.0.0.1 www.mmviewer.com #[Parasite.SvcMM][Adware.WhileUSurf] -> ->
127.0.0.1 www.mojo.com #[Parasite.CustomToolbar] -> ->
127.0.0.1 www.mojosearch.com -> ->
127.0.0.1 www.mojotraffic.com -> ->
127.0.0.1 www.moltenmagnet.net -> ->
127.0.0.1 www.mommypic.com -> ->
127.0.0.1 www.money-athome.net -> ->
127.0.0.1 www.moonri.com -> ->
127.0.0.1 www.moreresults.net #[Parasite.MoreResults] -> ->
127.0.0.1 www.morpheus-downloads-morpheus-download.com -> ->
127.0.0.1 www.morwillsearch.com -> ->
127.0.0.1 www.movie-browser.com -> ->
127.0.0.1 www.movies-etc.com -> ->
127.0.0.1 www.movitto1.com #[Adware.Movittone] -> ->
127.0.0.1 www.mp3greed.com -> ->
127.0.0.1 www.mp3hitzone.com -> ->
127.0.0.1 www.mp3university.com #[Reactivator Class] -> ->
127.0.0.1 www.msfind4u.com -> ->
127.0.0.1 www.ms-find4u.com -> ->
127.0.0.1 www.msnagent.com -> ->
127.0.0.1 www.ms-search.com #[Norman Sandbox] -> ->
127.0.0.1 www.ms-search4u.com -> ->
127.0.0.1 www.ms-searchengine.com -> ->
127.0.0.1 www.ms-search-engine.com -> ->
127.0.0.1 www.msupdater.com -> ->
127.0.0.1 www.msupdater.org -> ->
127.0.0.1 www.msxpsupport.com #[Trojan.Win32.Fakespy.a] -> ->
127.0.0.1 www.muchsearch.com -> ->
127.0.0.1 www.multimpp.com -> ->
127.0.0.1 www.musicdd.com -> ->
127.0.0.1 www.music-magnet.com -> ->
127.0.0.1 www.musicsonglyrics.com #[static.windupdates.com] -> ->
127.0.0.1 www.mvr.us -> ->
127.0.0.1 www.mx-targeting.com #[Adware.MXTarget] -> ->
127.0.0.1 www.myaffiliateprogram.com #[IE-SpyAd] -> ->
127.0.0.1 www.myarmory.com #[Spyware.Bazookabar] -> ->
127.0.0.1 www.mycoolscreen.com -> ->
127.0.0.1 www.mycpworld.com -> ->
127.0.0.1 www.myexexex.com #[StartPage-EC] -> ->
127.0.0.1 www.my-find.com -> ->
127.0.0.1 www.my-finder.com -> ->
127.0.0.1 www.my-free-videos.com -> ->
127.0.0.1 www.myfunstart.com -> ->
127.0.0.1 www.myhandysearch.com -> ->
127.0.0.1 www.myiefavorites.com -> ->
127.0.0.1 www.mypanicbutton.com -> ->
127.0.0.1 www.mypcdownload.com -> ->
127.0.0.1 www.mypctuneup.com -> ->
127.0.0.1 www.mypoiskovik.com -> ->
127.0.0.1 www.my-search.cc -> ->
127.0.0.1 www.mysearch4u.com -> ->
127.0.0.1 www.my-search4u.com -> ->
127.0.0.1 www.mysearches.com -> ->
127.0.0.1 www.mysearchnet.org -> ->
127.0.0.1 www.mysearchstart.com -> ->
127.0.0.1 www.myshorturl.com -> ->
127.0.0.1 www.myspywarescan.com -> ->
127.0.0.1 www.mythumbz.com -> ->
127.0.0.1 www.n69.com #[TPS108][Parasite.Transponder] -> ->
127.0.0.1 www.nastygirlssearch.com -> ->
127.0.0.1 www.naughtypops.com -> ->
127.0.0.1 www.neededware.com #[Trojan.TrustedZone] -> ->
127.0.0.1 www.netcom.net.uk -> ->
127.0.0.1 www.netflip.com #[IE-SpyAd] -> ->
127.0.0.1 www.netmails.com -> ->
127.0.0.1 www.netpalnow.com -> ->
127.0.0.1 www.netpaloffers.net -> ->
127.0.0.1 www.netpond.com -> ->
127.0.0.1 www.netremoteline.com -> ->
127.0.0.1 www.netspry.com #[CWinPagePlayer Object] -> ->
127.0.0.1 www.netwebsearch-usa.com -> ->
127.0.0.1 www.networkadsite.com -> ->
127.0.0.1 www.neverseenvirgins.com -> ->
127.0.0.1 www.newgenlook.info #[Troj/Warspy-G] -> ->
127.0.0.1 www.newinf.net -> ->
127.0.0.1 www.newtonknows.com #[Newton Knows.Bar] -> ->
127.0.0.1 www.nicecards.com -> ->
127.0.0.1 www.nichetoolbars.com -> ->
127.0.0.1 www.nictechnetworks.com -> ->
127.0.0.1 www.noadware.net #[SCAM.Enigma.NoAdware] -> ->
127.0.0.1 www.no-beba-el-agua.com -> ->
127.0.0.1 www.nohip.com -> ->
127.0.0.1 www.normal.video-party.com #[VideoProducer Class] -> ->
127.0.0.1 www.nospyx.com #[Rogue/Suspect] -> ->
127.0.0.1 www.nowbox.com #[Parasite.NowBox] -> ->
127.0.0.1 www.nowfind.biz -> ->
127.0.0.1 www.nowfind.net -> ->
127.0.0.1 www.nude-teens-bodies.com -> ->
127.0.0.1 www.nuker.com #[NetSource101][IE-SpyAd] -> ->
127.0.0.1 www.odysseusmarketing.com #[CActSetupObj Object] -> ->
127.0.0.1 www.officialfree-software.com -> ->
127.0.0.1 www.oinadserve.com -> ->
127.0.0.1 www.omi-update.net #[Win32.Siboco.A, B][Adware.OMI] -> ->
127.0.0.1 www.oneandonlynetwork.com #[Ticketmaster][IE-SpyAd] -> ->
127.0.0.1 www.oneclicksearches.com -> ->
127.0.0.1 www.onlysex.ws #[Troj/IEStart-F] -> ->
127.0.0.1 www.on-search.com -> ->
127.0.0.1 www.onseo.com #[Trojan-Clicker.Win32.Delf.bc] -> ->
127.0.0.1 www.oranger.biz -> ->
127.0.0.1 www.originalicons.com #[FavoriteMan] -> ->
127.0.0.1 www.othersearch.com -> ->
127.0.0.1 www.ouchvideo.com #[FavoriteMan Class][Parasite.SvcMM] -> ->
127.0.0.1 www.our-counter.com -> ->
127.0.0.1 www.overpro.com -> ->
127.0.0.1 www.pacerd.com #[Benedelman.Pacerd] -> ->
127.0.0.1 www.pacimedia.com #[AdWare.Pacer.j] -> ->
127.0.0.1 www.padonak.info #[IE-SpyAd] -> ->
127.0.0.1 www.pageforyou.net #[McAfee.QUrl-4] -> ->
127.0.0.1 www.palsoftwareworks.com -> ->
127.0.0.1 www.palsolutions.com -> ->
127.0.0.1 www.pan-advert.com #[IE-SpyAd] -> ->
127.0.0.1 www.patfind.com #[klikfeed.com] -> ->
127.0.0.1 www.payfortraffic.net -> ->
127.0.0.1 www.pcadwareremoval.com -> ->
127.0.0.1 www.pcbugkiller.com -> ->
127.0.0.1 www.pcsafe.com -> ->
127.0.0.1 www.peopleonpage.com #[Apropos.bho][PeopleOnPage.Apropos] -> ->
127.0.0.1 www.perfectnav.com #[PerfectNavBHO Class] -> ->
127.0.0.1 www.perfect-search.net -> ->
127.0.0.1 www.permanentsurfer.com -> ->
127.0.0.1 www.perou-voyage.com #[Dialer.CE Trojan] -> ->
127.0.0.1 www.personal-photo.net #[Trojan.Win32.StartPage.sl] -> ->
127.0.0.1 www.pinknylons.com #[McAfee.QLowZones-24] -> ->
127.0.0.1 www.pixpox.com -> ->
127.0.0.1 www.placeforsearch.com -> ->
127.0.0.1 www.playwithchicks.com -> ->
127.0.0.1 www.playwithchicks.net -> ->
127.0.0.1 www.play-with-girls.com -> ->
127.0.0.1 www.pluginaccess.com -> ->
127.0.0.1 www.plugins.com #[bloke.com] -> ->
127.0.0.1 www.plugusin4cash.com -> ->
127.0.0.1 www.pmstats.com -> ->
127.0.0.1 www.pokerwithgirls.net -> ->
127.0.0.1 www.polymer-solvents.com -> ->
127.0.0.1 www.popadstop.com -> ->
127.0.0.1 www.popbay.com -> ->
127.0.0.1 www.popbehinds.com -> ->
127.0.0.1 www.popclose.com -> ->
127.0.0.1 www.pop-find.com -> ->
127.0.0.1 www.popnugget.com -> ->
127.0.0.1 www.popunder.info #[TROJ_CHECKIN.B] -> ->
127.0.0.1 www.popupads.com #[IE-SpyAd] -> ->
127.0.0.1 www.popupblocker.com -> ->
127.0.0.1 www.popupdefence.com -> ->
127.0.0.1 www.popuppers.com #[Adware.Roimoi][SULoads.popuppers] -> ->
127.0.0.1 www.popuptop.com #[IE-SpyAd] -> ->
127.0.0.1 www.porn-gizmo.com -> ->
127.0.0.1 www.pornnimbus.com -> ->
127.0.0.1 www.porn-server.org #[Trojan-Dropper.Win32.Small.nm] -> ->
127.0.0.1 www.portalsearching.com #[abcsearch.com] -> ->
127.0.0.1 www.positionsguru.com -> ->
127.0.0.1 www.powerdialler.com #[Dialer.AdultBrowser] -> ->
127.0.0.1 www.power-search.info #[Adware.Olehelp] -> ->
127.0.0.1 www.priceshield.com -> ->
127.0.0.1 www.privacy-please.com -> ->
127.0.0.1 www.privacytools2004.com -> ->
127.0.0.1 www.prizeentry.com #[Parasite.DailyWinner] -> ->
127.0.0.1 www.promote4profit.com -> ->
127.0.0.1 www.proredirect.com -> ->
127.0.0.1 www.prostol.com -> ->
127.0.0.1 www.protectedmedia.com #[Trojan.Wimad] -> ->
127.0.0.1 www.pro-websearch.info #[IFrame.Exploit via: 69.50.161.142] -> ->
127.0.0.1 www.psguard.com -> ->
127.0.0.1 www.pshnw6510990nmo-34nue7700.net -> ->
127.0.0.1 www.pureseeker.com #[C2Media\LOP][IE-SpyAd] -> ->
127.0.0.1 www.pussypool.net -> ->
127.0.0.1 www.pwallet.com #[IE-SpyAd] -> ->
127.0.0.1 www.pynix.com -> ->
127.0.0.1 www.qfind.net -> ->
127.0.0.1 www.qidion.com #[ISTbar.Qidion] -> ->
127.0.0.1 www.quarterserver.de -> ->
127.0.0.1 www.quickcrawler.com -> ->
127.0.0.1 www.quickfindit.net -> ->
127.0.0.1 www.quicknavigate.com #[hotoffers.info] -> ->
127.0.0.1 www.quickplugin.com -> ->
127.0.0.1 www.radiopranks.com -> ->
127.0.0.1 www.rankyou.com -> ->
127.0.0.1 www.rapidblaster.com #[Dialer.Rapidblaster] -> ->
127.0.0.1 www.rarevirginspics.com -> ->
127.0.0.1 www.ravesearch.net -> ->
127.0.0.1 www.razespyware.com -> ->
127.0.0.1 www.realfreeavs.com -> ->
127.0.0.1 www.realfreelists.com -> ->
127.0.0.1 www.realpositions.com -> ->
127.0.0.1 www.real-tens.com -> ->
127.0.0.1 www.rebateshoppers.com -> ->
127.0.0.1 www.redsheriff.it -> ->
127.0.0.1 www.redswoosh.com -> ->
127.0.0.1 www.redswoosh.net -> ->
127.0.0.1 www.refcount.com -> ->
127.0.0.1 www.refcount.net -> ->
127.0.0.1 www.regcleanerpro.com -> ->
127.0.0.1 www.regfreeze.net #[Downloader-ACZ] -> ->
127.0.0.1 www.repairmyreg.com -> ->
127.0.0.1 www.repairreg.com -> ->
127.0.0.1 www.rex-services.co.uk -> ->
127.0.0.1 www.rgs1.net -> ->
127.0.0.1 www.rgs2.net -> ->
127.0.0.1 www.richfind.com #[Parasite.RichFind] -> ->
127.0.0.1 www.rightfinder.net #[Troj/StartPg-AY] -> ->
127.0.0.1 www.rightsearch.cc -> ->
127.0.0.1 www.ringtonespage.com -> ->
127.0.0.1 www.riversoftware.net #[accel Class][Adware.Riversoft] -> ->
127.0.0.1 www.roings.com #[Roings Search Enhancment] -> ->
127.0.0.1 www.rspsearch.com -> ->
127.0.0.1 www.runsearch.com -> ->
127.0.0.1 www.safeerase.com -> ->
127.0.0.1 www.safeguardprotect.com -> ->
127.0.0.1 www.safesearch.com -> ->
127.0.0.1 www.safewebsurfer.com -> ->
127.0.0.1 www.samspy.com -> ->
127.0.0.1 www.samuraispy.com #[Rogue/Suspect] -> ->
127.0.0.1 www.sandboxer.com #[Adware.Quadro][Memwatcher.B] -> ->
127.0.0.1 www.santaswhackyscreensavers.com -> ->
127.0.0.1 www.satellitepop.com -> ->
127.0.0.1 www.screensaversformen.com -> ->
127.0.0.1 www.scumware-remover.org #[Rogue/Suspect] -> ->
127.0.0.1 www.search-1.net -> ->
127.0.0.1 www.search1-tools.com -> ->
127.0.0.1 www.search4www.com -> ->
127.0.0.1 www.search-about.net -> ->
127.0.0.1 www.searchaccelerator.com -> ->
127.0.0.1 www.searchaccurate.com -> ->
127.0.0.1 www.search-aid.com #[CoolWebSearch.iefeatsl] -> ->
127.0.0.1 www.searchalot.com #[Adware-Tronix] -> ->
127.0.0.1 www.search-and-find.net -> ->
127.0.0.1 www.search-and-go.com #[W32/Harnig.D] -> ->
127.0.0.1 www.search-and-more.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 www.searchassistant.net -> ->
127.0.0.1 www.searchbar.info #[Parasite.NeoToolbar] -> ->
127.0.0.1 www.searchbarcash.com #[Parasite.TinyBar][Downloader.Small.5.Y] -> ->
127.0.0.1 www.searchbasket.com -> ->
127.0.0.1 www.searchby.net #[Ultimate Popup Killer] -> ->
127.0.0.1 www.search-click.com -> ->
127.0.0.1 www.search-climbers.com #[Parasite.Keywords] -> ->
127.0.0.1 www.search-climbers.net -> ->
127.0.0.1 www.searchclimbers.net #[IE-SpyAd] -> ->
127.0.0.1 www.searchcluster.com -> ->
127.0.0.1 www.search-com.biz -> ->
127.0.0.1 www.search-company.com -> ->
127.0.0.1 www.searchcomplete.com -> ->
127.0.0.1 www.search-control.com #[TrojanDropper.Win32.Small.ig] -> ->
127.0.0.1 www.search-direct.net -> ->
127.0.0.1 www.searchdom.net #[Trojan.Win32.StartPage.vo] -> ->
127.0.0.1 www.searchelevators.com -> ->
127.0.0.1 www.searchenhancement.com -> ->
127.0.0.1 www.search-exe.com -> ->
127.0.0.1 www.search-explorer.com -> ->
127.0.0.1 www.search-explorer.net -> ->
127.0.0.1 www.searchfast.net -> ->
127.0.0.1 www.searchforge.com -> ->
127.0.0.1 www.search-for-you.com #[Troj/StartPa-IC][searchmeup.com] -> ->
127.0.0.1 www.searchfst.com #[Parasite.Searchfst] -> ->
127.0.0.1 www.searchgauge.com -> ->
127.0.0.1 www.searching.net -> ->
127.0.0.1 www.search-instructor.com -> ->
127.0.0.1 www.searchmaid.com #[Adware.SearchMaid] -> ->
127.0.0.1 www.searchmeup.net -> ->
127.0.0.1 www.searchmission.com -> ->
127.0.0.1 www.search-more.net -> ->
127.0.0.1 www.search-paga.com -> ->
127.0.0.1 www.searchphotots.com -> ->
127.0.0.1 www.search-pounder.com #[Spyware.SearchPounder] -> ->
127.0.0.1 www.search-q.com #[Adware.Searchq] -> ->
127.0.0.1 www.searchrabbit.com -> ->
127.0.0.1 www.searchreslt.com #[Adware-SideSearch] -> ->
127.0.0.1 www.search-result.net -> ->
127.0.0.1 www.searchscavenger.com -> ->
127.0.0.1 www.search-smart.info -> ->
127.0.0.1 www.search-soft.net -> ->
127.0.0.1 www.search-system.com #[topsearch10.com] -> ->
127.0.0.1 www.searchtraffic.com #[eTrust.Tracking Cookie] -> ->
127.0.0.1 www.searchv.com #[CWS.Bootconf][SearchV.WinShow] -> ->
127.0.0.1 www.searchwww.com -> ->
127.0.0.1 www.searchxl.com -> ->
127.0.0.1 www.searchxp.com -> ->
127.0.0.1 www.searchzoomer.com -> ->
127.0.0.1 www.secondpower.com -> ->
127.0.0.1 www.securitydownload.net -> ->
127.0.0.1 www.securityiguard.com -> ->
127.0.0.1 www.security-look.cc #[Trojan.StartPage.F] -> ->
127.0.0.1 www.seeitherefirst.com -> ->
127.0.0.1 www.seek2.com -> ->
127.0.0.1 www.seekdrive.com -> ->
127.0.0.1 www.seekerbar.com -> ->
127.0.0.1 www.seekeveryday.info -> ->
127.0.0.1 www.seekeverything.info #[mwsfeed.php] -> ->
127.0.0.1 www.selltraffic.biz -> ->
127.0.0.1 www.sellyourexit.com -> ->
127.0.0.1 www.serialarchive.com -> ->
127.0.0.1 www.serialspot.com #[IE-SpyAd] -> ->
127.0.0.1 www.servernsys.com -> ->
127.0.0.1 www.sesso.com #[VBS.Biscuit.A@mm] -> ->
127.0.0.1 www.sexandpoker.com -> ->
127.0.0.1 www.sexandpoker.net #[Troj/Clicker-P][ADW_MSNLIST.B] -> ->
127.0.0.1 www.sexarena.com -> ->
127.0.0.1 www.sexhungry.com #[IE-SpyAd] -> ->
127.0.0.1 www.sexoque.com -> ->
127.0.0.1 www.sexxx-direct.com -> ->
127.0.0.1 www.sexyplugin.com -> ->
127.0.0.1 www.shemaletoolbar.com -> ->
127.0.0.1 www.shuddex.com #[Trojan.Desktophijack.B] -> ->
127.0.0.1 www.sidebysidesearch.com #[Adware.SideBySide] -> ->
127.0.0.1 www.similarsingles.com -> ->
127.0.0.1 www.simplenter.com -> ->
127.0.0.1 www.simpletoolbar.com #[SunBelt.UniversalSearchToolbar] -> ->
127.0.0.1 www.sirsearch.com -> ->
127.0.0.1 www.sitetracking.info #[Adware.NaughtyPops][IE-SpyAd] -> ->
127.0.0.1 www.skoobidoo.com -> ->
127.0.0.1 www.skyhorn.com -> ->
127.0.0.1 www.slemshield.com -> ->
127.0.0.1 www.smart2com.net #[Trojan.Autoproxy] -> ->
127.0.0.1 www.smartclicks.net -> ->
127.0.0.1 www.smarter.com -> ->
127.0.0.1 www.smartestsearch.com #[Parasite.SmartestSearch] -> ->
127.0.0.1 www.smartpops.com #[Adware.SmartPops.B] -> ->
127.0.0.1 www.smart-search.biz -> ->
127.0.0.1 www.smartsearch.com -> ->
127.0.0.1 www.smartsearch.com.au -> ->
127.0.0.1 www.smartsearchpage.com -> ->
127.0.0.1 www.smart-security.info #[Trojan-Clicker.Win32.Spywad.b] -> ->
127.0.0.1 www.smarttargetting.net -> ->
127.0.0.1 www.smilepop.com -> ->
127.0.0.1 www.smoothcontent.com -> ->
127.0.0.1 www.smutserver.com #[eTrust.Iesar] -> ->
127.0.0.1 www.snugweb.com #[allspyremover.com] -> ->
127.0.0.1 www.soft-aware.com -> ->
127.0.0.1 www.softwareds.com -> ->
127.0.0.1 www.sohodigital.net -> ->
127.0.0.1 www.somesearch.net -> ->
127.0.0.1 www.somewebspace.com -> ->
127.0.0.1 www.sonicsearch.net #[Parasite.GrandStreet] -> ->
127.0.0.1 www.spacedish.com -> ->
127.0.0.1 www.spamnotify.com -> ->
127.0.0.1 www.sparkimg.com -> ->
127.0.0.1 www.specialdrugs.com -> ->
127.0.0.1 www.specialgoods.info #[globolook.com] -> ->
127.0.0.1 www.special-t-travel.com -> ->
127.0.0.1 www.specificclick.com -> ->
127.0.0.1 www.speedbit.com -> ->
127.0.0.1 www.speedboosterplus.com -> ->
127.0.0.1 www.spidersearch.com #[home.adultcash.com] -> ->
127.0.0.1 www.spotresults.com -> ->
127.0.0.1 www.spyantivirus.info -> ->
127.0.0.1 www.spyassassin.com #[Rogue/Suspect] -> ->
127.0.0.1 www.spy-block.com -> ->
127.0.0.1 www.spyblocs.com -> ->
127.0.0.1 www.spybot-spyware-killer.com -> ->
127.0.0.1 www.spycs.com -> ->
127.0.0.1 www.spydemolisher.com -> ->
127.0.0.1 www.spyeraser.net -> ->
127.0.0.1 www.spyikiller.com #[Rogue/Suspect] -> ->
127.0.0.1 www.spy-killer.com #[Rogue/Suspect] -> ->
127.0.0.1 www.spykillerdownload.com -> ->
127.0.0.1 www.spykknd.com -> ->
127.0.0.1 www.spymoon.com #[Trojan.Eaghouse.B] -> ->
127.0.0.1 www.spyopposition.com -> ->
127.0.0.1 www.spyopposition.org -> ->
127.0.0.1 www.spytoaster.com -> ->
127.0.0.1 www.spyware-cop.com -> ->
127.0.0.1 www.spywaredissolver.com -> ->
127.0.0.1 www.spyware-filter.com -> ->
127.0.0.1 www.spywarehelp.net -> ->
127.0.0.1 www.spywarehound.com -> ->
127.0.0.1 www.spywarekill.com -> ->
127.0.0.1 www.spywarekilla.com -> ->
127.0.0.1 www.spyware-pest-remover.com -> ->
127.0.0.1 www.spywareremove.net -> ->
127.0.0.1 www.spywaresnooper.com -> ->
127.0.0.1 www.spywarestormer.com #[CInstall Class][Zoombar Object] -> ->
127.0.0.1 www.spywaretek.com #[Rogue/Suspect] -> ->
127.0.0.1 www.spywarewizard.com -> ->
127.0.0.1 www.sqwire.com #[Parasite.Xupiter][Adware-PornKings] -> ->
127.0.0.1 www.ssppyy.com #[Spyware.Ssppyy] -> ->
127.0.0.1 www.standees.com -> ->
127.0.0.1 www.starpranks.com -> ->
127.0.0.1 www.startingsearch.com -> ->
127.0.0.1 www.startsearches.com -> ->
127.0.0.1 www.startsearches.net -> ->
127.0.0.1 www.statblaster.com #[Adware.StatBlaster] -> ->
127.0.0.1 www.statomatic.com #[IE-SpyAd] -> ->
127.0.0.1 www.stats4all.ws -> ->
127.0.0.1 www.statsbank.com -> ->
127.0.0.1 www.stepsofsearch.com -> ->
127.0.0.1 www.stingware.com -> ->
127.0.0.1 www.stopannoyingpopups.com -> ->
127.0.0.1 www.stopitblockit.com -> ->
127.0.0.1 www.stop-popup-ads-now.com #[Adware.Binet] -> ->
127.0.0.1 www.stop-that-spammer.com -> ->
127.0.0.1 www.s-tracking.com -> ->
127.0.0.1 www.sturfajtn.com #[F-Secure.Googkle] -> ->
127.0.0.1 www.supersearch.com #[CWS.Msoffice.3] -> ->
127.0.0.1 www.supersearchs.com -> ->
127.0.0.1 www.supersmileys.com #[FWNToolbar] -> ->
127.0.0.1 www.super-web-search.com -> ->
127.0.0.1 www.surfassistant.com -> ->
127.0.0.1 www.surfertools.com -> ->
127.0.0.1 www.surfya.com #[audioseek.net] -> ->
127.0.0.1 www.sweetbar.com #[SecurityRisk.Downldr] -> ->
127.0.0.1 www.swipespy.com -> ->
127.0.0.1 www.symantic.com #[Typo Squatter][IE-SpyAd] -> ->
127.0.0.1 www.szadk.com #[PWSteal.Trojan] -> ->
127.0.0.1 www.t058.com -> ->
127.0.0.1 www.t73.com -> ->
127.0.0.1 www.tadstore.com -> ->
127.0.0.1 www.targetclicks.net -> ->
127.0.0.1 www.targetclicks.org -> ->
127.0.0.1 www.targetwords.com -> ->
127.0.0.1 www.taskbuddy.com -> ->
127.0.0.1 www.teenfamilysex.com -> ->
127.0.0.1 www.teen-fantazi.com -> ->
127.0.0.1 www.teeniedialer.com #[yeahsearch.net] -> ->
127.0.0.1 www.teens3.com -> ->
127.0.0.1 www.teens-action.net #[MHTMLRedir.Exploit] -> ->
127.0.0.1 www.teens-dreams.net -> ->
127.0.0.1 www.teensearchbar.com #[DLSearchBar] -> ->
127.0.0.1 www.teenygirlshome.com -> ->
127.0.0.1 www.teocash.com #[W32.Hostidel.Trojan] -> ->
127.0.0.1 www.terminexor.com #[Rogue/Suspect] -> ->
127.0.0.1 www.textlinks.com -> ->
127.0.0.1 www.tgp-devil.net -> ->
127.0.0.1 www.thebestplugin.com -> ->
127.0.0.1 www.thebestse.com -> ->
127.0.0.1 www.thecoolbar.com #[Softomate Toolbar][The Coolbar] -> ->
127.0.0.1 www.thedesktopshopper.com #[server down??] -> ->
127.0.0.1 www.the-huns-yellow-pages.com -> ->
127.0.0.1 www.thenewsearch.com -> ->
127.0.0.1 www.thepaymentcentre.com #[Holistyc Dialer] -> ->
127.0.0.1 www.thepowerstrip.com #[Adware.PStrip][Parasite.PowerStrip] -> ->
127.0.0.1 www.thesearchaccelerator.com -> ->
127.0.0.1 www.thindivide.com -> ->
127.0.0.1 www.thinkingmedia.net -> ->
127.0.0.1 www.thunderdownloads.com -> ->
127.0.0.1 www.tibsystems.com -> ->
127.0.0.1 www.timesynchronize.com -> ->
127.0.0.1 www.titsandasstv.com -> ->
127.0.0.1 www.tl81.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 www.toilet.com #[IE-SpyAd] -> ->
127.0.0.1 www.toolbarpartner.com -> ->
127.0.0.1 www.toolbarplace.com -> ->
127.0.0.1 www.toolbars-cash.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 www.toonah.com -> ->
127.0.0.1 www.tooncomics.com #[Downloader.Tooncom][CWS.Aff.Tooncomics] -> ->
127.0.0.1 www.toonxxxfantasies.com #[WorldAnywhere Toolbar] -> ->
127.0.0.1 www.topantispyware.com #[Trojan-Clicker.Win32.Spyre.b] -> ->
127.0.0.1 www.topantivirus.biz #[F-Secure.Googkle][Adware.TopAV] -> ->
127.0.0.1 www.topeleven.net -> ->
127.0.0.1 www.topfind4u.com -> ->
127.0.0.1 www.top-find4u.com -> ->
127.0.0.1 www.topicks.com -> ->
127.0.0.1 www.toplayerserver.com #[IE-SpyAd] -> ->
127.0.0.1 www.topmatureporn.org -> ->
127.0.0.1 www.topnetsearch.cc -> ->
127.0.0.1 www.topotun.com -> ->
127.0.0.1 www.top-search.com #[Adware-SSF.dr] -> ->
127.0.0.1 www.topsearch4u.com -> ->
127.0.0.1 www.toptext.net #[ADW_EZULA.D] -> ->
127.0.0.1 www.tps108.org #[Parasite.Transponder] -> ->
127.0.0.1 www.track-star.com -> ->
127.0.0.1 www.tracktraff.cc -> ->
127.0.0.1 www.tradeexit.com #[Parasite.Winupie] -> ->
127.0.0.1 www.tradetraffic.com -> ->
127.0.0.1 www.traf34.com -> ->
127.0.0.1 www.traff.us -> ->
127.0.0.1 www.traffic4sale.biz -> ->
127.0.0.1 www.trafficcounters.com -> ->
127.0.0.1 www.trafficgeneration.biz -> ->
127.0.0.1 www.traffichog.com -> ->
127.0.0.1 www.trafficrampage.com -> ->
127.0.0.1 www.trafficstandard.com -> ->
127.0.0.1 www.traffic-stock.com #[Parasite.RichFind] -> ->
127.0.0.1 www.trafficsyndicate.com -> ->
127.0.0.1 www.trafficwindows.com -> ->
127.0.0.1 www.trafficworld.biz -> ->
127.0.0.1 www.travelengine.net -> ->
127.0.0.1 www.treestompertime.net #[Trojan.Win32.Kolweb.a] -> ->
127.0.0.1 www.trekblue.com #[IE-SpyAd] -> ->
127.0.0.1 www.trixscripts.com -> ->
127.0.0.1 www.troyanov.net #[nowfind.net] -> ->
127.0.0.1 www.trustbid.ws -> ->
127.0.0.1 www.trustedbrowsers.com -> ->
127.0.0.1 www.trustedpharmacy.net #[Startpage.14.AX] -> ->
127.0.0.1 www.trustsoftsupport.com -> ->
127.0.0.1 www.tunders.com #[Parasite.AutoSearch] -> ->
127.0.0.1 www.turbofind.com -> ->
127.0.0.1 www.turbomemorycharger.com #[Adware.Fapi] -> ->
127.0.0.1 www.turbosort.com -> ->
127.0.0.1 www.twain-tech.com #[Adware.Twaintec] -> ->
127.0.0.1 www.twinktoolbar.com -> ->
127.0.0.1 www.twistedhumor.com -> ->
127.0.0.1 www.txiframe.biz -> ->
127.0.0.1 www.typicalsearch.com -> ->
127.0.0.1 www.ucbill.com -> ->
127.0.0.1 www.ucmoreresults.com -> ->
127.0.0.1 www.ucmoretoolbar.com -> ->
127.0.0.1 www.ugosearch.com -> ->
127.0.0.1 www.ukklo.com #[popuptraffic.com] -> ->
127.0.0.1 www.ultimatecleaner.com #[UCInstall Class] -> ->
127.0.0.1 www.ultimatecounter.com -> ->
127.0.0.1 www.ultimatepopupkiller.com #[searchby.net][IE-SpyAd] -> ->
127.0.0.1 www.ultimatesearch.com -> ->
127.0.0.1 www.ultimatesearchranking.com -> ->
127.0.0.1 www.uncover.us -> ->
127.0.0.1 www.undergroundlair.net #[Troj/AdClick-N] -> ->
127.0.0.1 www.unimax.us -> ->
127.0.0.1 www.uninstaller.com -> ->
127.0.0.1 www.uni--search.com -> ->
127.0.0.1 www.unitedvending.net #[affiliate] -> ->
127.0.0.1 www.updatenow.org #[IE-SpyAd] -> ->
127.0.0.1 www.updatepatch.info #[Messenger Service pop-up] -> ->
127.0.0.1 www.updatesearches.com #[eTrust.Puper.UpdateSearches] -> ->
127.0.0.1 www.upgradenow.org -> ->
127.0.0.1 www.up-the-creek.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 www.urlblaze.net #[IEDriver][ADW_RULEDOR.C] -> ->
127.0.0.1 www.useful-linx.com #[find-online.net] -> ->
127.0.0.1 www.usercount.com #[IE-SpyAd] -> ->
127.0.0.1 www.ustimerz.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 www.v5msn.com #[ADW_ADCLICKER.BM] -> ->
127.0.0.1 www.v73.us -> ->
127.0.0.1 www.valueclick.com -> ->
127.0.0.1 www.vcatch.com #[SunBelt.CommonSearch VCatch] -> ->
127.0.0.1 www.veevo.com -> ->
127.0.0.1 www.verigay.com #[Trojan.Win32.Dialer.hz] -> ->
127.0.0.1 www.vesbiz.biz -> ->
127.0.0.1 www.vesperexchange.com -> ->
127.0.0.1 www.vipgambling.net -> ->
127.0.0.1 www.virginsgalls.com #[Trojan.Moo.B] -> ->
127.0.0.1 www.virginteenporn.com #[JAVA_BYTEVER.A] -> ->
127.0.0.1 www.visitfind.net -> ->
127.0.0.1 www.vistainteractivemedia.com #[Parasite.MegaSearch] -> ->
127.0.0.1 www.vparivalka.com -> ->
127.0.0.1 www.vse-moe.biz -> ->
127.0.0.1 www.vxiframe.biz #[Trojan.Vicsfram] -> ->
127.0.0.1 www.w12.biz -> ->
127.0.0.1 www.wanted.com -> ->
127.0.0.1 www.wareout.com #[Rogue/Suspect][Parasite.WareOut] -> ->
127.0.0.1 www.warezdownload.ws #[TROJ_BANKER.DC] -> ->
127.0.0.1 www.way4find.com #[Downloader-TA.dll] -> ->
127.0.0.1 www.waytofind.net #[MHTMLRedir.Exploit] -> ->
127.0.0.1 www.wayweird.com -> ->
127.0.0.1 www.wcft.net -> ->
127.0.0.1 www.wearehosters.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 www.weather7.com -> ->
127.0.0.1 www.weatherclicks.com -> ->
127.0.0.1 www.web-exit.com -> ->
127.0.0.1 www.web-free-hosting.net -> ->
127.0.0.1 www.webmasterz.biz -> ->
127.0.0.1 www.weboffer.net #[eZula.WebOffer] -> ->
127.0.0.1 www.websafesecure.com -> ->
127.0.0.1 www.web-search.biz #[admin2cash.biz] -> ->
127.0.0.1 www.websearch24.com -> ->
127.0.0.1 www.webseeking.com #[Adware.CtxPopup] -> ->
127.0.0.1 www.webstars2000.com -> ->
127.0.0.1 www.webtopsearch.net -> ->
127.0.0.1 www.web-traffic-shop.com -> ->
127.0.0.1 www.wenksdisdkjeilsow.com #[Parasite.AutoStartup][Download.Trojan] -> ->
127.0.0.1 www.w-find.com -> ->
127.0.0.1 www.wfind4u.com -> ->
127.0.0.1 www.w-find4u.com -> ->
127.0.0.1 www.wgutv.com #[Adware.BuddyLinks] -> ->
127.0.0.1 www.whatpeoplesearch.com -> ->
127.0.0.1 www.whileyousurf.com #[Parasite.WhileYouSurf] -> ->
127.0.0.1 www.wholeworldmarket.com #[CWS.Systeminit.2] -> ->
127.0.0.1 www.wildtangent.com #[WTHoster Class] -> ->
127.0.0.1 www.winamp-skin-download.com -> ->
127.0.0.1 www.winantivirus2005.com -> ->
127.0.0.1 www.wind-find.com -> ->
127.0.0.1 www.windfind4u.com -> ->
127.0.0.1 www.wind-find4u.com -> ->
127.0.0.1 www.windowbillboard.com -> ->
127.0.0.1 www.windowbillboards.com -> ->
127.0.0.1 www.windowenhancer.com -> ->
127.0.0.1 www.windowfind.com -> ->
127.0.0.1 www.window-find.com -> ->
127.0.0.1 www.windowfind4u.com -> ->
127.0.0.1 www.window-find4u.com -> ->
127.0.0.1 www.windowposition.com -> ->
127.0.0.1 www.window-search.com -> ->
127.0.0.1 www.windowsearch4u.com -> ->
127.0.0.1 www.window-search4u.com -> ->
127.0.0.1 www.windowsearchengine.com -> ->
127.0.0.1 www.window-searchengine.com -> ->
127.0.0.1 www.windows-find.com -> ->
127.0.0.1 www.windowsfind4u.com -> ->
127.0.0.1 www.windows-find4u.com -> ->
127.0.0.1 www.windowssearch4u.com -> ->
127.0.0.1 www.windows-search4u.com -> ->
127.0.0.1 www.windowssearchengine.com -> ->
127.0.0.1 www.windows-searchengine.com -> ->
127.0.0.1 www.wind-search.com -> ->
127.0.0.1 www.windsearch4u.com -> ->
127.0.0.1 www.wind-search4u.com -> ->
127.0.0.1 www.windsearchengine.com -> ->
127.0.0.1 www.wind-searchengine.com -> ->
127.0.0.1 www.winfind4u.com -> ->
127.0.0.1 www.win-find4u.com -> ->
127.0.0.1 www.winfixer.com -> ->
127.0.0.1 www.winmsn.com -> ->
127.0.0.1 www.winpl.com #[Parasite.WinPL] -> ->
127.0.0.1 www.winprivacy.com -> ->
127.0.0.1 www.winprotect.net -> ->
127.0.0.1 www.winregfix.com -> ->
127.0.0.1 www.winsearch4u.com -> ->
127.0.0.1 www.win-search4u.com -> ->
127.0.0.1 www.winsearchengine.com -> ->
127.0.0.1 www.win-searchengine.com -> ->
127.0.0.1 www.winspeedtech.com -> ->
127.0.0.1 www.winspeedtechnologies.com -> ->
127.0.0.1 www.win-update.net #[Trojan.Magise] -> ->
127.0.0.1 www.worldanywhere.com -> ->
127.0.0.1 www.worldnetsearch.org -> ->
127.0.0.1 www.world-portal.com -> ->
127.0.0.1 www.wow-access.com -> ->
127.0.0.1 www.wsearch4u.com -> ->
127.0.0.1 www.w-search4u.com -> ->
127.0.0.1 www.wsearchengine.com -> ->
127.0.0.1 www.w-searchengine.com -> ->
127.0.0.1 www.wslm.net #[REG_SEEKER.N] -> ->
127.0.0.1 www.wswtelecoms.com #[Dialer.Webview] -> ->
127.0.0.1 www.wyzo.com -> ->
127.0.0.1 www.x0x.biz #[Backdoor.Berbew.D] -> ->
127.0.0.1 www.x10.com -> ->
127.0.0.1 www.x-drugs.com -> ->
127.0.0.1 www.xratedtraffic.com -> ->
127.0.0.1 www.xsex.ws #[Troj/IEStart-F] -> ->
127.0.0.1 www.x-spyware.com -> ->
127.0.0.1 www.xspyware.net -> ->
127.0.0.1 www.xuppa.com -> ->
127.0.0.1 www.xxxbonuses.com -> ->
127.0.0.1 www.xxxphotos.ws -> ->
127.0.0.1 www.xyesearch.com -> ->
127.0.0.1 www.xzoomy.com #[NGD Systems Dialer] -> ->
127.0.0.1 www.ya-hoo.biz #[bigbuks.info] -> ->
127.0.0.1 www.yahoogamez.com -> ->
127.0.0.1 www.yellow500.com #[Troj/IEStart-F] -> ->
127.0.0.1 www.yellow-sticky.com #[Troj/Midaddle-C] -> ->
127.0.0.1 www.yoogee.com -> ->
127.0.0.1 www.youfindall.com #[CWS.Aff.Winshow] -> ->
127.0.0.1 www.youfindall.net -> ->
127.0.0.1 www.yourcontrolpanel.com -> ->
127.0.0.1 www.your-find.com -> ->
127.0.0.1 www.yourpoiskovik.com -> ->
127.0.0.1 www.yoursearch247.com -> ->
127.0.0.1 www.your-soft.com -> ->
127.0.0.1 www.yourspecialoffers.com -> ->
127.0.0.1 www.yuups.com #[Adware.Yuupsearch] -> ->
127.0.0.1 www.z69.com #[eta.us] -> ->
127.0.0.1 www.zangoshowtimes.com -> ->
127.0.0.1 www.ziportal.com -> ->
127.0.0.1 www.zippy-lookup.com -> ->
127.0.0.1 www.zippylookupmail.com #[server down?] -> ->
127.0.0.1 www.zsearchresults.com #[Spyware.zSearch] -> ->
127.0.0.1 www.zsearchtoolbar.com -> ->
127.0.0.1 www.zuvio.org -> ->
127.0.0.1 www1.azesearch.com -> ->
127.0.0.1 www1.contextweb.com -> ->
127.0.0.1 www1.counter.bloke.com -> ->
127.0.0.1 www1.eta.us -> ->
127.0.0.1 www1.massivepass.com -> ->
127.0.0.1 www1.secondpower.com -> ->
127.0.0.1 www1.sweetbar.com #[ADW_SWEETBAR.A] -> ->
127.0.0.1 www1.toplayerserver.com -> ->
127.0.0.1 www101.coolsavings.com -> ->
127.0.0.1 www102.coolsavings.com #[IE-SpyAd] -> ->
127.0.0.1 www105.coolsavings.com -> ->
127.0.0.1 www108.coolsavings.com -> ->
127.0.0.1 www109.coolsavings.com -> ->
127.0.0.1 www112.coolsavings.com #[CMV5 Class] -> ->
127.0.0.1 www113.coolsavings.com -> ->
127.0.0.1 www2.1evidencekiller.com -> ->
127.0.0.1 www2.1historyeraser.com -> ->
127.0.0.1 www2.1popupblocker.com -> ->
127.0.0.1 www2.1registrycleaner.com -> ->
127.0.0.1 www2.1spywarekiller.com #[Parasite.SpywareKiller] -> ->
127.0.0.1 www2.2pursuit.com -> ->
127.0.0.1 www2.azesearch.com -> ->
127.0.0.1 www2.bannerspace.com -> ->
127.0.0.1 www2.bigtrafficnetwork.com -> ->
127.0.0.1 www2.browsertoolbar.com #[TROJ_SUA.A] -> ->
127.0.0.1 www2.flingstone.com #[brdg Class][Win32/Bryss.Spy.Trojan] -> ->
127.0.0.1 www2.flowgo.com -> ->
127.0.0.1 www2.massearch.net -> ->
127.0.0.1 www2.palsol.com -> ->
127.0.0.1 www2.rightmedia.com -> ->
127.0.0.1 www2.ringtonespage.com -> ->
127.0.0.1 www2.seek2.com #[Adware-PowerStrip] -> ->
127.0.0.1 www2.skoobidoo.com #[Downloader.MSCache] -> ->
127.0.0.1 www2.spamnotify.com -> ->
127.0.0.1 www2.surfertools.com -> ->
127.0.0.1 www2.surveyfocus.com #[IE-SpyAd] -> ->
127.0.0.1 www2.undergroundlair.net -> ->
127.0.0.1 www20.overture.com -> ->
127.0.0.1 www21.overture.com -> ->
127.0.0.1 www3.1spywarekiller.com -> ->
127.0.0.1 www3.azesearch.com -> ->
127.0.0.1 www3.bigtrafficnetwork.com -> ->
127.0.0.1 www3.counter.bloke.com -> ->
127.0.0.1 www3.dafinder.com -> ->
127.0.0.1 www3.killallspyware.com #[Rogue/Suspect][Parasite.Rogues] -> ->
127.0.0.1 www3.killinternetpopups.com -> ->
127.0.0.1 www3.overture.com -> ->
127.0.0.1 www3.secondpower.com #[IE-SpyAd][KB320159] -> ->
127.0.0.1 www3.speedbit.com -> ->
127.0.0.1 www4.counter.bloke.com -> ->
127.0.0.1 www5.counter.bloke.com -> ->
127.0.0.1 www5.overture.com -> ->
127.0.0.1 www6.counter.bloke.com -> ->
127.0.0.1 www6.overture.com -> ->
127.0.0.1 www7.counter.bloke.com -> ->
127.0.0.1 www7.overture.com -> ->
127.0.0.1 www8.overture.com -> ->
127.0.0.1 www9.advnt01.com #[VacPro.win98_P] -> ->
127.0.0.1 www9.spamnotify.com -> ->
127.0.0.1 wwwsearch.cc -> ->
127.0.0.1 wwwxxxwoman.com -> ->
127.0.0.1 x.go.com -> ->
127.0.0.1 x0x.biz -> ->
127.0.0.1 x10.com -> ->
127.0.0.1 x10-beta.com -> ->
127.0.0.1 xads.infospace.com -> ->
127.0.0.1 xads.offeroptimizer.com #[Twain Tech] -> ->
127.0.0.1 xadso.offeroptimizer.com -> ->
127.0.0.1 xadsq.offeroptimizer.com -> ->
127.0.0.1 xbs.climaxbucks.com -> ->
127.0.0.1 xbs.cocktailcash.com -> ->
127.0.0.1 xbs.nyc.mtree.com #[MoneyTree Dialer] -> ->
127.0.0.1 xhpro.com -> ->
127.0.0.1 ximages.cliks.org -> ->
127.0.0.1 xlonhcld.xlontech.net #[IE-SpyAd] -> ->
127.0.0.1 xml.blazefind.com -> ->
127.0.0.1 xml.browservillage.com #[Parasite.404Search] -> ->
127.0.0.1 xml.klikfeed.com -> ->
127.0.0.1 xml.topconverting.com -> ->
127.0.0.1 xmlbar.eurodnsservices.com -> ->
127.0.0.1 x-pearl.com -> ->
127.0.0.1 xsltcache.alexa.com -> ->
127.0.0.1 xtrigger.topconverting.com -> ->
127.0.0.1 xuppa.com #[Win32.Abnact.A] -> ->
127.0.0.1 xxl-size.com -> ->
127.0.0.1 xxsware.com -> ->
127.0.0.1 xysearch.biz -> ->
127.0.0.1 xyz.aflashcounter.com #[MHTMLRedir.Exploit] -> ->
127.0.0.1 y0.windows-center.com #[Backdoor.Shellbot] -> ->
127.0.0.1 yahoo.3721.com -> ->
127.0.0.1 ya-hoo.biz -> ->
127.0.0.1 yo.netster.com -> ->
127.0.0.1 yoogee.com #[Parasite.Internet Optimizer] -> ->
127.0.0.1 your-find.com -> ->
127.0.0.1 your-finder.com -> ->
127.0.0.1 youriskalka.com -> ->
127.0.0.1 yourpoiskovik.com -> ->
127.0.0.1 yoursearcher.com -> ->
127.0.0.1 your-searcher.com #[CWS.IEengine][StartPage-DQ] -> ->
127.0.0.1 yourspecialoffers.com #[FavoriteMan] -> ->
127.0.0.1 yxz.aflashcounter.com -> ->
127.0.0.1 z1.adserver.com -> ->
127.0.0.1 zippy-lookup.com #[Adware.ZippyLookup.BHO] -> ->
127.0.0.1 zloeboogle.biz #[ssearch.biz][Win32.Zlob.B] -> ->
127.0.0.1 zond.directwebsearch.net -> ->
127.0.0.1 zsearchresults.com -> ->
127.0.0.1 zsearchtoolbar.com -> ->
127.0.0.1 zsr.zserv.biz #[Parasite.Transponder.ZServ] -> ->
127.0.0.1 zxserv0.com #[Trojan.Zhopa][F-Secure.Small.wy] -> ->

#5 Desperate I

Desperate I
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:01:00 PM

Posted 03 January 2008 - 03:45 PM

Here is the rest of the scan...


< Internet Explorer Settings [HKEY_LOCAL_MACHINE\] > -> ->
HKEY_LOCAL_MACHINE\: Main\\Default_Page_URL -> http://go.microsoft.com/fwlink/?LinkId=69157 ->
HKEY_LOCAL_MACHINE\: Main\\Default_Search_URL -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
HKEY_LOCAL_MACHINE\: Main\\Local Page -> %SystemRoot%\system32\blank.htm ->
HKEY_LOCAL_MACHINE\: Main\\Search Bar -> ->
HKEY_LOCAL_MACHINE\: Main\\Search Page -> http://go.microsoft.com/fwlink/?LinkId=54896 ->
HKEY_LOCAL_MACHINE\: Main\\Start Page -> http://go.microsoft.com/fwlink/?LinkId=69157 ->
HKEY_LOCAL_MACHINE\: Search\\CustomizeSearch -> http://ie.search.msn.com/{SUB_RFC1766}/srchasst/srchcust.htm ->
HKEY_LOCAL_MACHINE\: Search\\Default_Search_URL -> http://www.google.com/ie ->
HKEY_LOCAL_MACHINE\: Search\\SearchAssistant -> http://www.google.com/ie ->
< Internet Explorer Settings [HKEY_CURRENT_USER\] > -> ->
HKEY_CURRENT_USER\: Main\\Local Page -> C:\WINDOWS\system32\blank.htm ->
HKEY_CURRENT_USER\: Main\\Search Bar -> http://www.google.com/ie ->
HKEY_CURRENT_USER\: Main\\Search Page -> http://www.google.com ->
HKEY_CURRENT_USER\: Main\\Start Page -> http://www.msn.com/ ->
HKEY_CURRENT_USER\: Search\\SearchAssistant -> http://www.google.com/ie ->
HKEY_CURRENT_USER\: SearchURL\\ -> http://www.google.com/search?q=%s[Reg Error: Value provider does not exist or could not be read.] ->
HKEY_CURRENT_USER\: ProxyEnable -> 0 ->
< Trusted Sites Domains [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 1 domain(s) found. ->
1 domain(s) and sub-domain(s) not assigned to a zone.
< Trusted Sites Ranges [HKEY_LOCAL_MACHINE\] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 0 range(s) found. ->
< Trusted Sites Domains [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Domains\ -> [Key] 8819 domain(s) found. ->
[msn] -> My Computer ->
www_123inkjets.com [https] -> Trusted sites ->
1800ink.com [https] -> Trusted sites ->
www_americanexpressofferzone.com [https] -> Trusted sites ->
away.com [https] -> Trusted sites ->
newsletters_away.com [https] -> Trusted sites ->
budgettravelonline.com [https] -> Trusted sites ->
offers_celebrity.com [https] -> Trusted sites ->
cheers2wine.com [https] -> Trusted sites ->
cpx_cint.com [https] -> Trusted sites ->
www_cint.com [https] -> Trusted sites ->
www.cpx_cint.com [https] -> Trusted sites ->
datatelligence.net [https] -> Trusted sites ->
www_datatelligence.net [https] -> Trusted sites ->
royalcaribbean.p_delivery.net [https] -> Trusted sites ->
eleisurelink.com [https] -> Trusted sites ->
www.ufl_facebook.com [https] -> Trusted sites ->
flamingoworld.com [https] -> Trusted sites ->
www_flamingoworld.com [https] -> Trusted sites ->
fitness_genesant.com [https] -> Trusted sites ->
greenfieldonline.com [https] -> Trusted sites ->
survey8_greenfieldonline.com [https] -> Trusted sites ->
hotmail.com [https] -> Trusted sites ->
inboxdollars.com [https] -> Trusted sites ->
www_inboxdollars.com [https] -> Trusted sites ->
ai719_insightexpressai.com [https] -> Trusted sites ->
invoke.com [https] -> Trusted sites ->
linksynergy.com [https] -> Trusted sites ->
click_linksynergy.com [https] -> Trusted sites ->
lmdeals.com [https] -> Trusted sites ->
res99_lmdeals.com [https] -> Trusted sites ->
www_lowes.com [https] -> Trusted sites ->
msn.com [https] -> Trusted sites ->
mail.msn.hotmail_msn.com [https] -> Trusted sites ->
mt [https] -> Trusted sites ->
mypoints.com [https] -> Trusted sites ->
otxresearch.com [https] -> Trusted sites ->
survey_otxresearch.com [https] -> Trusted sites ->
www_otxresearch.com [https] -> Trusted sites ->
otxsx.com [https] -> Trusted sites ->
www_paypal.com [https] -> Trusted sites ->
www_psbsurveys.com [https] -> Trusted sites ->
royalcaribbean.net [https] -> Trusted sites ->
shermanstravel.com [https] -> Trusted sites ->
quicksearch_shermanstravel.com [https] -> Trusted sites ->
rd_shermanstravel.com [https] -> Trusted sites ->
www_shermanstravel.com [https] -> Trusted sites ->
sidestep.com [https] -> Trusted sites ->
surveyexchange.com [https] -> Trusted sites ->
180 domain(s) and sub-domain(s) not assigned to a zone.
< Trusted Sites Ranges [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ ->
HKEY_CURRENT_USER\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\ZoneMap\Ranges\ -> [Key] 445 range(s) found. ->
< BHO's [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\Software\Microsoft\Windows\CurrentVersion\Explorer\Browser Helper Objects\ ->
{06849E9F-C8D7-4D59-B87D-784B7D6BE0B3} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\Adobe\Acrobat 7.0\ActiveX\AcroIEHelper.dll [Adobe PDF Reader Link Helper] -> Adobe Systems Incorporated [Ver = 7.0.9.2006121800 | Size = 59032 bytes | Modified Date = 12/18/2006 3:16:42 AM | Attr = ]
{089FD14D-132B-48FC-8861-0048AE113215} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\SiteAdvisor\6253\SiteAdv.dll [Reg Error: Value does not exist or could not be read.] -> [Ver = | Size = 927008 bytes | Modified Date = 12/4/2007 4:02:24 PM | Attr = ]
{2020dfef-8c87-4229-aa41-549d82210355} [HKEY_LOCAL_MACHINE] -> D:\Program Files\Yapta\YaptaOverlay.dll [Yapta Tagger] -> Yapta, Inc. [Ver = 1.1.0.2 | Size = 218680 bytes | Modified Date = 5/31/2007 12:31:10 PM | Attr = ]
{4A368E80-174F-4872-96B5-0B27DDD11DB2} [HKEY_LOCAL_MACHINE] -> D:\Program Files\SpywareGuard\dlprotect.dll [SpywareGuardDLBLOCK.CBrowserHelper] -> [Ver = 2.02 | Size = 192512 bytes | Modified Date = 8/2/2003 10:24:01 PM | Attr = R ]
{53707962-6F74-2D53-2644-206D7942484F} [HKEY_LOCAL_MACHINE] -> D:\Program Files\Spybot - Search & Destroy\Spybot - Search & Destroy\SDHelper.dll [Reg Error: Value does not exist or could not be read.] -> Safer Networking Limited [Ver = 1, 4, 0, 0 | Size = 853672 bytes | Modified Date = 5/31/2005 12:04:00 AM | Attr = ]
{724d43a9-0d85-11d4-9908-00400523e39a} [HKEY_LOCAL_MACHINE] -> D:\Program Files\Siber Systems\roboform.dll [Reg Error: Value does not exist or could not be read.] -> Siber Systems [Ver = 6-9-84 | Size = 5702472 bytes | Modified Date = 11/25/2007 2:47:39 PM | Attr = ]
{7DB2D5A0-7241-4E79-B68D-6309F01C5231} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\McAfee\VirusScan\scriptsn.dll [scriptproxy] -> McAfee, Inc. [Ver = VSCORE.14.0.0.349.x86 | Size = 66880 bytes | Modified Date = 7/24/2007 12:02:40 PM | Attr = ]
< Internet Explorer Bars [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\SOFTWARE\Microsoft\Internet Explorer\Explorer Bars\ ->
{32683183-48a0-441b-a342-7c2a440a9478} [HKEY_LOCAL_MACHINE] -> Reg Error: Key SOFTWARE\Classes\CLSID\{32683183-48a0-441b-a342-7c2a440a9478}\InprocServer32 does not exist or could not be opened. [Reg Error: Key SOFTWARE\Classes\CLSID\{32683183-48a0-441b-a342-7c2a440a9478} does not exist or could not be opened.] -> File not found
< Internet Explorer ToolBars [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\ToolBar ->
{0BF43445-2F28-4351-9252-17FE6E806AA0} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\SiteAdvisor\6253\SiteAdv.dll [McAfee SiteAdvisor] -> [Ver = | Size = 927008 bytes | Modified Date = 12/4/2007 4:02:24 PM | Attr = ]
{724d43a0-0d85-11d4-9908-00400523e39a} [HKEY_LOCAL_MACHINE] -> D:\Program Files\Siber Systems\roboform.dll [&RoboForm] -> Siber Systems [Ver = 6-9-84 | Size = 5702472 bytes | Modified Date = 11/25/2007 2:47:39 PM | Attr = ]
< Internet Explorer ToolBars [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Toolbar\ ->
ShellBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} [HKEY_LOCAL_MACHINE] -> Reg Error: Key SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}\InprocServer32 does not exist or could not be opened. [Reg Error: Key SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} does not exist or could not be opened.] -> File not found
WebBrowser\\{2318C2B1-4965-11D4-9B18-009027A5CD4F} [HKEY_LOCAL_MACHINE] -> Reg Error: Key SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F}\InprocServer32 does not exist or could not be opened. [Reg Error: Key SOFTWARE\Classes\CLSID\{2318C2B1-4965-11D4-9B18-009027A5CD4F} does not exist or could not be opened.] -> File not found
WebBrowser\\{724D43A0-0D85-11D4-9908-00400523E39A} [HKEY_LOCAL_MACHINE] -> D:\Program Files\Siber Systems\roboform.dll [&RoboForm] -> Siber Systems [Ver = 6-9-84 | Size = 5702472 bytes | Modified Date = 11/25/2007 2:47:39 PM | Attr = ]
WebBrowser\\{A057A204-BACC-4D26-CEC4-75A487FD6484} [HKEY_LOCAL_MACHINE] -> Reg Error: Key SOFTWARE\Classes\CLSID\{A057A204-BACC-4D26-CEC4-75A487FD6484}\InprocServer32 does not exist or could not be opened. [Reg Error: Key SOFTWARE\Classes\CLSID\{A057A204-BACC-4D26-CEC4-75A487FD6484} does not exist or could not be opened.] -> File not found
WebBrowser\\{E9760A28-B4A1-2178-78EE-D147B372DF8F} [HKEY_LOCAL_MACHINE] -> Reg Error: Key SOFTWARE\Classes\CLSID\{E9760A28-B4A1-2178-78EE-D147B372DF8F}\InprocServer32 does not exist or could not be opened. [Reg Error: Key SOFTWARE\Classes\CLSID\{E9760A28-B4A1-2178-78EE-D147B372DF8F} does not exist or could not be opened.] -> File not found
WebBrowser\\{F5735C15-1FB2-41FE-BA12-242757E69DDE} [HKEY_LOCAL_MACHINE] -> Reg Error: Key SOFTWARE\Classes\CLSID\{F5735C15-1FB2-41FE-BA12-242757E69DDE}\InprocServer32 does not exist or could not be opened. [Reg Error: Key SOFTWARE\Classes\CLSID\{F5735C15-1FB2-41FE-BA12-242757E69DDE} does not exist or could not be opened.] -> File not found
< Internet Explorer Extensions [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Extensions\ ->
{0362b485-11fe-469c-ae98-42f478e581a0}:Exec -> D:\Program Files\Yapta\YaptaSettings.exe [Yapta Tagger Settings] -> Yapta, Inc. [Ver = 1.1.10.1 | Size = 234800 bytes | Modified Date = 11/11/2007 8:41:55 PM | Attr = ]
{320AF880-6646-11D3-ABEE-C5DBF3571F46}: [HKEY_LOCAL_MACHINE] -> Reg Error: Key SOFTWARE\Classes\CLSID\\InprocServer32 does not exist or could not be opened. [Fill Forms] -> File not found
{320AF880-6646-11D3-ABEE-C5DBF3571F49}: [HKEY_LOCAL_MACHINE] -> Reg Error: Key SOFTWARE\Classes\CLSID\\InprocServer32 does not exist or could not be opened. [Save] -> File not found
{724d43aa-0d85-11d4-9908-00400523e39a}: [HKEY_LOCAL_MACHINE] -> Reg Error: Key SOFTWARE\Classes\CLSID\\InprocServer32 does not exist or could not be opened. [RoboForm] -> File not found
< Internet Explorer Extensions [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Extensions\ ->
CmdMapping\\{08B0E5C0-4FCB-11CF-AAA5-00401C608501} [HKEY_LOCAL_MACHINE] -> [Reg Error: Value does not exist or could not be read.] -> File not found
CmdMapping\\{92780B25-18CC-41C8-B9BE-3C9C571A8263} [HKEY_LOCAL_MACHINE] -> [Reg Error: Key SOFTWARE\Classes\CLSID\{92780B25-18CC-41C8-B9BE-3C9C571A8263} does not exist or could not be opened.] -> File not found
CmdMapping\\{AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} [HKEY_LOCAL_MACHINE] -> [Reg Error: Key SOFTWARE\Classes\CLSID\{AC9E2541-2814-11d5-BC6D-00B0D0A1DE45} does not exist or could not be opened.] -> File not found
< Internet Explorer Menu Extensions [HKEY_CURRENT_USER\] > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\MenuExt\ ->
Customize Menu -> D:\Program Files\Siber Systems\RoboFormComCustomizeIEMenu.htm -> File not found
Fill Forms -> D:\Program Files\Siber Systems\RoboFormComFillForms.htm -> File not found
RoboForm Toolbar -> D:\Program Files\Siber Systems\RoboFormComShowToolbar.htm -> File not found
Save Forms -> D:\Program Files\Siber Systems\RoboFormComSavePass.htm -> File not found
< Internet Explorer Plugins [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Internet Explorer\Plugins\ ->
PluginsPageFriendlyName -> Microsoft ActiveX Gallery ->
PluginsPage -> http://activex.microsoft.com/controls/find...=%s&mime=%s ->
< User Agent Post Platform [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Windows\CurrentVersion\Internet Settings\User Agent\Post Platform ->
{0AD8AA7F-6D00-4A2E-8A6E-4AADE822292C} -> ->
< DNS Name Servers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\Tcpip\Parameters\Adapters\ ->
{59790D31-42A6-4B59-86E6-DD1D5EE87BA6} -> (1394 Net Adapter) ->
{746A8CA0-3558-48BD-9844-350193EF153C} -> (1394 Net Adapter) ->
{A8F391C6-56C1-4D9C-AC55-651586C8EC39} -> (3Com EtherLink XL 10/100 PCI TX NIC (3C905B-TX)) ->
{B4AA541E-B9FF-4EAA-8847-7D446BF87D1C} -> () ->
{ED3ABC48-C062-4D26-8185-244DA3C0CD90} -> (Intel® PRO/100 VE Network Connection) ->
< Winsock2 Catalogs [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\WinSock2\Parameters\ ->
Protocol_Catalog9\Catalog_Entries\000000000001 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000002 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000003 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000004 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000005 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000006 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000007 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000008 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000009 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000010 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000011 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000012 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000013 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000014 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000015 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000016 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000017 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000018 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000019 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000020 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000021 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000022 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000023 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000024 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000025 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000026 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000027 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000028 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000029 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000030 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000031 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000032 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000033 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
Protocol_Catalog9\Catalog_Entries\000000000034 -> %ProgramFiles%\Google\Google Desktop Search\GoogleDesktopNetwork1.dll -> [Ver = | Size = 9216 bytes | Modified Date = 1/18/2006 8:30:34 AM | Attr = ]
< Protocol Handlers [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\Classes\PROTOCOLS\Handler\ ->
ipp: [HKEY_LOCAL_MACHINE] -> Reg Error: Key SOFTWARE\Classes\CLSID\\InprocServer32 does not exist or could not be opened.[Reg Error: Value does not exist or could not be read.] -> File not found
msdaipp: [HKEY_LOCAL_MACHINE] -> Reg Error: Key SOFTWARE\Classes\CLSID\\InprocServer32 does not exist or could not be opened.[Reg Error: Value does not exist or could not be read.] -> File not found
siteadvisor:{3A5DC592-7723-4EAA-9EE6-AF4222BCF879} [HKEY_LOCAL_MACHINE] -> %ProgramFiles%\SiteAdvisor\6253\SiteAdv.dll[Reg Error: Value does not exist or could not be read.] -> [Ver = | Size = 927008 bytes | Modified Date = 12/4/2007 4:02:24 PM | Attr = ]
< Downloaded Program Files > -> HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Code Store Database\Distribution Units\ ->
{01113300-3E00-11D2-8470-0060089874ED}[HKEY_LOCAL_MACHINE] -> http://support.fastaccess.com/sdccommon/download/tgctlcm.cab[Support.com Configuration Class] ->
{0DB074F0-617E-4EE9-912C-2965CF2AA5A4}[HKEY_LOCAL_MACHINE] -> http://download.microsoft.com/download/0/f...tualEarth3D.cab[Reg Error: Key SOFTWARE\Classes\CLSID\{0DB074F0-617E-4EE9-912C-2965CF2AA5A4} does not exist or could not be opened.] ->
{17492023-C23A-453E-A040-C7C580BBF700}[HKEY_LOCAL_MACHINE] -> http://download.microsoft.com/download/3/9...heckControl.cab[Windows Genuine Advantage Validation Tool] ->
{2E4A92AB-F2C0-456A-9935-B715439790D7}[HKEY_LOCAL_MACHINE] -> https://www.opinionsquare.com/Config/CSetup_xp.cab[Setup Class] ->
{3E68E405-C6DE-49FF-83AE-41EE9F4C36CE}[HKEY_LOCAL_MACHINE] -> http://office.microsoft.com/officeupdate/content/opuc.cab[Office Update Installation Engine] ->
{406B5949-7190-4245-91A9-30A17DE16AD0}[HKEY_LOCAL_MACHINE] -> http://photos.walmart.com/WalmartActivia.cab[Snapfish Activia] ->
{4ED9DDF0-7479-4BBE-9335-5A1EDB1D8A21}[HKEY_LOCAL_MACHINE] -> http://download.mcafee.com/molbin/shared/m...81/mcinsctl.cab[McAfee.com Operating System Class] ->
{5F8469B4-B055-49DD-83F7-62B522420ECC}[HKEY_LOCAL_MACHINE] -> http://upload.facebook.com/controls/Facebo...otoUploader.cab[Facebook Photo Uploader Control] ->
{6F750202-1362-4815-A476-88533DE61D0C}[HKEY_LOCAL_MACHINE] -> http://www.kodakgallery.com/downloads/BUM/..._2/axofupld.cab[Kodak Gallery Easy Upload Manager Class] ->
{8401528F-C7D8-446D-8A01-F8DA9491FBB1}[HKEY_LOCAL_MACHINE] -> http://www.consumerinput.com.edgesuite.net/bot/BotCtrl.cab[DcaDiagCtrl Class] ->
{8AD9C840-044E-11D1-B3E9-00805F499D93}[HKEY_LOCAL_MACHINE] -> http://java.sun.com/products/plugin/autodl...indows-i586.cab[Java Plug-in 1.4.2_01] ->
{8B1BC605-C593-4865-8F5B-05517F0CD0BB}[HKEY_LOCAL_MACHINE] -> file://F:\Content\include\msSecUcd.cab[MSSecurityAdvisorCD Class] ->
{93EFDAB8-8800-4896-B428-76F943140E1B}[HKEY_LOCAL_MACHINE] -> http://www.consumerinput.com.edgesuite.net...ple/dcainst.cab[Reg Error: Key SOFTWARE\Classes\CLSID\{93EFDAB8-8800-4896-B428-76F943140E1B} does not exist or could not be opened.] ->
{9E6C7461-FE4A-41A9-9D35-7468796CF9E7}[HKEY_LOCAL_MACHINE] -> http://threatlevel.pcsecurityshield.com/control/avxnew.dll[AVXControl Class] ->
{A8658086-E6AC-4957-BC8E-7D54A7E8A78E}[HKEY_LOCAL_MACHINE] -> http://www.microsoft.com/security/controls.../20/SassCln.CAB[SassCln Object] ->
{A8683C98-5341-421B-B23C-8514C05354F1}[HKEY_LOCAL_MACHINE] -> http://photo.walmart.com/photo/uploads/Fuj...ploadClient.cab[FujifilmUploader Class] ->
{A922B6AB-3B87-11D3-B3C2-0008C7DA6CB9}[HKEY_LOCAL_MACHINE] -> https://media.pineconeresearch.com/ActiveX/...loadcontrol.cab[InetDownload Class] ->
{B8BE5E93-A60C-4D26-A2DC-220313175592}[HKEY_LOCAL_MACHINE] -> http://cdn2.zone.msn.com/binFramework/v10/...ro.cab53083.cab[ZoneIntro Class] ->
{BCC0FF27-31D9-4614-A68E-C18E1ADA4389}[HKEY_LOCAL_MACHINE] -> http://download.mcafee.com/molbin/shared/m...,19/mcgdmgr.cab[DwnldGroupMgr Class] ->
{BE319D04-18BD-4B34-AECC-EE7CB610FCA9}[HKEY_LOCAL_MACHINE] -> http://www.sonypictures.com/games/bewitched/main.cab[BewitchedGameClass Control] ->
{CAFEEFAC-0014-0002-0001-ABCDEFFEDCBA}[HKEY_LOCAL_MACHINE] -> http://java.sun.com/products/plugin/autodl...indows-i586.cab[Java Plug-in 1.4.2_01] ->
{CE28D5D2-60CF-4C7D-9FE8-0F47A3308078}[HKEY_LOCAL_MACHINE] -> https://www-secure.symantec.com/techsupp/ac...ta/SymAData.dll[ActiveDataInfo Class] ->
{D27CDB6E-AE6D-11CF-96B8-444553540000}[HKEY_LOCAL_MACHINE] -> http://fpdownload2.macromedia.com/get/shoc...ash/swflash.cab[Shockwave Flash Object] ->
{DE22A7AB-A739-4C58-AD52-21F9CD6306B7}[HKEY_LOCAL_MACHINE] -> http://download.microsoft.com/download/7/E...04/clearadj.cab[Reg Error: Key SOFTWARE\Classes\CLSID\{DE22A7AB-A739-4C58-AD52-21F9CD6306B7} does not exist or could not be opened.] ->
{E77C0D62-882A-456F-AD8F-7C6C9569B8C7}[HKEY_LOCAL_MACHINE] -> https://www-secure.symantec.com/techsupp/ac.../ActiveData.cab[ActiveDataObj Class] ->


[Registry - Additional Scans - Non-Microsoft Only]
< BotCheck > -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\\DefaultLaunchPermission -> (binary data) ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\\EnableDCOM -> Y ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\\MachineLaunchRestriction -> (binary data) ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\\MachineAccessRestriction -> (binary data) ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat\ActivationSecurityCheckExemptionList\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat\ActivationSecurityCheckExemptionList\\{A50398B8-9075-4FBF-A7A1-456BF21937AD} -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat\ActivationSecurityCheckExemptionList\\{AD65A69D-3831-40D7-9629-9B0B50A93843} -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat\ActivationSecurityCheckExemptionList\\{0040D221-54A1-11D1-9DE0-006097042D69} -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\AppCompat\ActivationSecurityCheckExemptionList\\{2A6D72F1-6E7E-4702-B99C-E40D3DED33C3} -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\NONREDIST\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Ole\NONREDIST\\System.EnterpriseServices.Thunk.dll -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\\AntiVirusDisableNotify -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\\FirewallDisableNotify -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\\UpdatesDisableNotify -> 0 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\\AntiVirusOverride -> 0 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\\FirewallOverride -> 0 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\AhnlabAntiVirus\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ComputerAssociatesAntiVirus\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\KasperskyAntiVirus\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeAntiVirus\\DisableMonitoring -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\McAfeeFirewall\\DisableMonitoring -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaAntiVirus\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\PandaFirewall\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SophosAntiVirus\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecAntiVirus\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\SymantecFirewall\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TinyFirewall\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendAntiVirus\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\TrendFirewall\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\Microsoft\Security Center\Monitoring\ZoneLabsFirewall\ -> ->
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\Windows\WindowsUpdate\ not found. -> ->
Registry key HKEY_LOCAL_MACHINE\SOFTWARE\Policies\Microsoft\WindowsFirewall\DomainProfile\ not found. -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\ -> ->
*Authentication Packages* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\Authentication Packages ->
msv1_0 -> %System32%\msv1_0.dll -> Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 129536 bytes | Modified Date = 8/4/2004 2:56:43 AM | Attr = ]
*MultiFile Done* -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\Bounds -> (binary data) ->
*Security Packages* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\Security Packages ->
kerberos -> %System32%\kerberos.dll -> Microsoft Corporation [Ver = 5.1.2600.2698 (xpsp_sp2_gdr.050614-1522) | Size = 295936 bytes | Modified Date = 6/15/2005 12:49:30 PM | Attr = ]
msv1_0 -> %System32%\msv1_0.dll -> Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 129536 bytes | Modified Date = 8/4/2004 2:56:43 AM | Attr = ]
schannel -> %System32%\schannel.dll -> Microsoft Corporation [Ver = 5.1.2600.3126 (xpsp_sp2_gdr.070425-0226) | Size = 144896 bytes | Modified Date = 4/25/2007 9:21:15 AM | Attr = ]
wdigest -> %System32%\wdigest.dll -> Microsoft Corporation [Ver = 5.1.2600.2874 (xpsp_sp2_gdr.060323-1516) | Size = 49152 bytes | Modified Date = 3/23/2006 11:37:50 PM | Attr = ]
*MultiFile Done* -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\LsaPid -> 536 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\SecureBoot -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\auditbaseobjects -> 0 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\crashonauditfail -> 0 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\disabledomaincreds -> 0 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\everyoneincludesanonymous -> 0 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\fipsalgorithmpolicy -> 0 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\forceguest -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\fullprivilegeauditing -> (binary data) ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\limitblankpassworduse -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\lmcompatibilitylevel -> 0 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\nodefaultadminowner -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\nolmhash -> 0 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\restrictanonymous -> 0 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\restrictanonymoussam -> 1 ->
*Notification Packages* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\Notification Packages ->
scecli -> %System32%\scecli.dll -> Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 180224 bytes | Modified Date = 8/4/2004 2:56:44 AM | Attr = ]
*MultiFile Done* -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\\ImpersonatePrivilegeUpgradeToolHasRun -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\AccessProviders\ -> ->
*ProviderOrder* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\AccessProviders\\ProviderOrder ->
Windows NT Access Provider -> -> File not found
*MultiFile Done* -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\AccessProviders\Windows NT Access Provider\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\AccessProviders\Windows NT Access Provider\\ProviderPath -> C:\WINDOWS\system32\ntmarta.dll [%SystemRoot%\system32\ntmarta.dll] -> Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 118784 bytes | Modified Date = 8/4/2004 2:56:44 AM | Attr = ]
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\Audit\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\Audit\PerUserAuditing\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\Audit\PerUserAuditing\System\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\Data\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\Data\\Pattern -> (binary data) ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\GBG\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\GBG\\GrafBlumGroup -> (binary data) ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\JD\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\JD\\Lookup -> (binary data) ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\Kerberos\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\Kerberos\Domains\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\Kerberos\SidCache\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\msv1_0\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\msv1_0\\ntlmminclientsec -> 0 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\msv1_0\\ntlmminserversec -> 0 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\Skew1\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\Skew1\\SkewMatrix -> (binary data) ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SSO\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SSO\Passport1.4\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SSO\Passport1.4\\SSOURL -> http:\www.passport.com [http://www.passport.com] -> File not found
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\\Time -> (binary data) ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\digest.dll\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\digest.dll\\Name -> Digest ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\digest.dll\\Comment -> Digest SSPI Authentication Package ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\digest.dll\\Capabilities -> 16464 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\digest.dll\\RpcId -> 65535 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\digest.dll\\Version -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\digest.dll\\TokenSize -> 65535 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\digest.dll\\Time -> (binary data) ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\digest.dll\\Type -> 49 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\msapsspc.dll\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\msapsspc.dll\\Name -> DPA ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\msapsspc.dll\\Comment -> DPA Security Package ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\msapsspc.dll\\Capabilities -> 55 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\msapsspc.dll\\RpcId -> 17 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\msapsspc.dll\\Version -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\msapsspc.dll\\TokenSize -> 768 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\msapsspc.dll\\Time -> (binary data) ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\msapsspc.dll\\Type -> 49 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\msnsspc.dll\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\msnsspc.dll\\Name -> MSN ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\msnsspc.dll\\Comment -> MSN Security Package ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\msnsspc.dll\\Capabilities -> 55 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\msnsspc.dll\\RpcId -> 18 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\msnsspc.dll\\Version -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\msnsspc.dll\\TokenSize -> 768 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\msnsspc.dll\\Time -> (binary data) ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Control\Lsa\SspiCache\msnsspc.dll\\Type -> 49 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\\Type -> 32 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\\Start -> 2 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\\ErrorControl -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\\ImagePath -> C:\WINDOWS\system32\svchost.exe [%SystemRoot%\System32\svchost.exe -k netsvcs] -> Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 14336 bytes | Modified Date = 8/4/2004 2:56:57 AM | Attr = ]
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\\DisplayName -> Windows Firewall/Internet Connection Sharing (ICS) ->
*DependOnService* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\\DependOnService ->
Netman -> %System32%\netman.dll -> Microsoft Corporation [Ver = 5.1.2600.2743 (xpsp_sp2_gdr.050819-1525) | Size = 197632 bytes | Modified Date = 8/22/2005 1:29:46 PM | Attr = ]
WinMgmt -> -> File not found
*MultiFile Done* -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\\DependOnGroup -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\\ObjectName -> LocalSystem ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\\Description -> Provides network address translation, addressing, name resolution and/or intrusion prevention services for a home or small office network. ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Epoch\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Epoch\\Epoch -> 44464 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\\ServiceDll -> C:\WINDOWS\system32\ipnathlp.dll [%SystemRoot%\System32\ipnathlp.dll] -> Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 331264 bytes | Modified Date = 8/4/2004 2:56:42 AM | Attr = ]
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List\ -> ->
*%windir%\system32\sessmgr.exe* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List\\%windir%\system32\sessmgr.exe ->
%windir%\system32\sessmgr.exe:*:enabled:@xpsp2res.dll -> %System32%\sessmgr.exe:*:enabled:@xpsp2res.dll -> File not found
-22019 -> -> File not found
*MultiFile Done* -> ->
*%windir%\Network Diagnostic\xpnetdiag.exe* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\AuthorizedApplications\List\\%windir%\Network Diagnostic\xpnetdiag.exe ->
%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll -> %SystemRoot%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll -> File not found
-20000 -> -> File not found
*MultiFile Done* -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List\ -> ->
*139:TCP* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List\\139:TCP ->
139:TCP:*:Enabled:@xpsp2res.dll -> 139:TCP:*:Enabled:@xpsp2res.dll -> File not found
-22004 -> -> File not found
*MultiFile Done* -> ->
*445:TCP* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List\\445:TCP ->
445:TCP:*:Enabled:@xpsp2res.dll -> 445:TCP:*:Enabled:@xpsp2res.dll -> File not found
-22005 -> -> File not found
*MultiFile Done* -> ->
*137:UDP* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List\\137:UDP ->
137:UDP:*:Enabled:@xpsp2res.dll -> 137:UDP:*:Enabled:@xpsp2res.dll -> File not found
-22001 -> -> File not found
*MultiFile Done* -> ->
*138:UDP* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List\\138:UDP ->
138:UDP:*:Enabled:@xpsp2res.dll -> 138:UDP:*:Enabled:@xpsp2res.dll -> File not found
-22002 -> -> File not found
*MultiFile Done* -> ->
*1900:UDP* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List\\1900:UDP ->
1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll -> 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll -> File not found
-22007 -> -> File not found
*MultiFile Done* -> ->
*2869:TCP* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\DomainProfile\GloballyOpenPorts\List\\2869:TCP ->
2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll -> 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll -> File not found
-22008 -> -> File not found
*MultiFile Done* -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\\EnableFirewall -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\\DoNotAllowExceptions -> 0 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\\DisableNotifications -> 0 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\WINDOWS\system32\LEXPPS.EXE -> C:\WINDOWS\system32\LEXPPS.EXE:*:Enabled:LEXPPS.EXE [C:\WINDOWS\system32\LEXPPS.EXE:*:Enabled:LEXPPS.EXE] -> File not found
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files\TiVo\Desktop\TiVoServer.exe -> C:\Program Files\TiVo\Desktop\TiVoServer.exe [C:\Program Files\TiVo\Desktop\TiVoServer.exe:*:Enabled:TiVo Server] -> File not found
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files\Real\RealOne Player\realplay.exe -> C:\Program Files\Real\RealOne Player\realplay.exe [C:\Program Files\Real\RealOne Player\realplay.exe:*:Enabled:RealOne Player] -> RealNetworks, Inc. [Ver = 6.0.12.1465 | Size = 208941 bytes | Modified Date = 1/18/2006 8:27:31 AM | Attr = ]
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files\support.com\bin\tgcmd.exe -> C:\Program Files\support.com\bin\tgcmd.exe [C:\Program Files\support.com\bin\tgcmd.exe:*:Enabled:BellSouth Bulletin and Job processor] -> BellSouth [Ver = 5,5,726,0 | Size = 1847296 bytes | Modified Date = 9/14/2003 7:44:03 PM | Attr = ]
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files\AIM\aim.exe -> C:\Program Files\AIM\aim.exe [C:\Program Files\AIM\aim.exe:*:Enabled:AOL Instant Messenger] -> File not found
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\D:\Program Files\Palm\HOTSYNC.EXE -> D:\Program Files\Palm\HOTSYNC.EXE [D:\Program Files\Palm\HOTSYNC.EXE:*:Enabled:HotSync® Manager Application] -> Palm, Inc. [Ver = 4.0 | Size = 299008 bytes | Modified Date = 7/19/2003 8:13:50 PM | Attr = ]
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\WINDOWS\system32\fxsclnt.exe -> C:\WINDOWS\system32\fxsclnt.exe [C:\WINDOWS\system32\fxsclnt.exe:*:Enabled:Microsoft Fax Console] -> Microsoft Corporation [Ver = 5.2.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 143360 bytes | Modified Date = 8/4/2004 2:56:49 AM | Attr = ]
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\D:\StubInstaller.exe -> D:\StubInstaller.exe [D:\StubInstaller.exe:*:Enabled:LimeWire swarmed installer] -> File not found
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\D:\Program Files\LimeWire\LimeWire.exe -> D:\Program Files\LimeWire\LimeWire.exe [D:\Program Files\LimeWire\LimeWire.exe:*:Enabled:LimeWire] -> Lime Wire, LLC [Ver = 1, 0, 0, 2 | Size = 81920 bytes | Modified Date = 1/19/2006 4:26:35 PM | Attr = ]
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\D:\Program Files\AIM\aim.exe -> D:\Program Files\AIM\aim.exe [D:\Program Files\AIM\aim.exe:*:Disabled:AOL Instant Messenger] -> File not found
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files\Common Files\AOL\Loader\aolload.exe -> C:\Program Files\Common Files\AOL\Loader\aolload.exe [C:\Program Files\Common Files\AOL\Loader\aolload.exe:*:Enabled:AOL Loader] -> File not found
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files\Common Files\AOL\1152288963\ee\aolsoftware.exe -> C:\Program Files\Common Files\AOL\1152288963\ee\aolsoftware.exe [C:\Program Files\Common Files\AOL\1152288963\ee\aolsoftware.exe:*:Enabled:AOL Services] -> File not found
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files\Common Files\AOL\1152288963\ee\aim6.exe -> C:\Program Files\Common Files\AOL\1152288963\ee\aim6.exe [C:\Program Files\Common Files\AOL\1152288963\ee\aim6.exe:*:Enabled:AIM] -> File not found
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\D:\Program Files\TiVo\Desktop\TiVoServer.exe -> D:\Program Files\TiVo\Desktop\TiVoServer.exe [D:\Program Files\TiVo\Desktop\TiVoServer.exe:*:Enabled:TiVo Server] -> TiVo Inc. [Ver = 1.3 | Size = 1313792 bytes | Modified Date = 6/20/2006 6:27:22 AM | Attr = ]
*%windir%\Network Diagnostic\xpnetdiag.exe* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\%windir%\Network Diagnostic\xpnetdiag.exe ->
%windir%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll -> %SystemRoot%\Network Diagnostic\xpnetdiag.exe:*:Enabled:@xpsp3res.dll -> File not found
-20000 -> -> File not found
*MultiFile Done* -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files\Internet Explorer\iexplore.exe -> C:\Program Files\Internet Explorer\iexplore.exe [C:\Program Files\Internet Explorer\iexplore.exe:*:Enabled:Internet Explorer] -> Microsoft Corporation [Ver = 7.00.6000.16574 (vista_gdr.071008-1500) | Size = 625152 bytes | Modified Date = 10/10/2007 5:59:52 AM | Attr = ]
*C:\WINDOWS\system32\sessmgr.exe* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\WINDOWS\system32\sessmgr.exe ->
C:\WINDOWS\system32\sessmgr.exe:LocalSubNet:Enabled:@xpsp2res.dll -> %System32%\sessmgr.exe:LocalSubNet:Enabled:@xpsp2res.dll -> File not found
-22019 -> -> File not found
*MultiFile Done* -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Documents and Settings\Isabel Perez\Local Settings\Temp\~os7.tmp\ossproxy.exe -> C:\Documents and Settings\Isabel Perez\Local Settings\Temp\~os7.tmp\ossproxy.exe:*:Enabled:ossproxy.exe [C:\Documents and Settings\Isabel Perez\Local Settings\Temp\~os7.tmp\ossproxy.exe:*:Enabled:ossproxy.exe] -> File not found
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Documents and Settings\Isabel Perez\Local Settings\Temp\~os774.tmp\ossproxy.exe -> C:\Documents and Settings\Isabel Perez\Local Settings\Temp\~os774.tmp\ossproxy.exe:*:Enabled:ossproxy.exe [C:\Documents and Settings\Isabel Perez\Local Settings\Temp\~os774.tmp\ossproxy.exe:*:Enabled:ossproxy.exe] -> File not found
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\C:\Program Files\Common Files\McAfee\MNA\McNASvc.exe -> C:\Program Files\Common Files\McAfee\MNA\McNASvc.exe [C:\Program Files\Common Files\McAfee\MNA\McNASvc.exe:*:Enabled:McAfee Network Agent] -> McAfee, Inc. [Ver = 2,0,136,0 | Size = 2376992 bytes | Modified Date = 7/22/2007 8:15:18 PM | Attr = ]
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\c:\windows\system32\opnsqr.exe -> c:\windows\system32\opnsqr.exe:*:Enabled:opnsqr.exe [c:\windows\system32\opnsqr.exe:*:Enabled:opnsqr.exe] -> File not found
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\AuthorizedApplications\List\\D:\Program Files\iTunes.exe -> D:\Program Files\iTunes.exe [D:\Program Files\iTunes.exe:*:Enabled:iTunes] -> Apple Inc. [Ver = 7.5.0.20 | Size = 17152808 bytes | Modified Date = 12/11/2007 12:10:18 PM | Attr = ]
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List\ -> ->
*139:TCP* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List\\139:TCP ->
139:TCP:LocalSubNet:Enabled:@xpsp2res.dll -> 139:TCP:LocalSubNet:Enabled:@xpsp2res.dll -> File not found
-22004 -> -> File not found
*MultiFile Done* -> ->
*445:TCP* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List\\445:TCP ->
445:TCP:LocalSubNet:Enabled:@xpsp2res.dll -> 445:TCP:LocalSubNet:Enabled:@xpsp2res.dll -> File not found
-22005 -> -> File not found
*MultiFile Done* -> ->
*137:UDP* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List\\137:UDP ->
137:UDP:LocalSubNet:Enabled:@xpsp2res.dll -> 137:UDP:LocalSubNet:Enabled:@xpsp2res.dll -> File not found
-22001 -> -> File not found
*MultiFile Done* -> ->
*138:UDP* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List\\138:UDP ->
138:UDP:LocalSubNet:Enabled:@xpsp2res.dll -> 138:UDP:LocalSubNet:Enabled:@xpsp2res.dll -> File not found
-22002 -> -> File not found
*MultiFile Done* -> ->
*1900:UDP* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List\\1900:UDP ->
1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll -> 1900:UDP:LocalSubNet:Enabled:@xpsp2res.dll -> File not found
-22007 -> -> File not found
*MultiFile Done* -> ->
*2869:TCP* -> HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Parameters\FirewallPolicy\StandardProfile\GloballyOpenPorts\List\\2869:TCP ->
2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll -> 2869:TCP:LocalSubNet:Enabled:@xpsp2res.dll -> File not found
-22008 -> -> File not found
*MultiFile Done* -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Security\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Security\\Security -> (binary data) ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Setup\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Setup\\ServiceUpgrade -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Setup\InterfacesUnfirewalledAtUpdate\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Setup\InterfacesUnfirewalledAtUpdate\\{72BC9B6D-F8FD-4A3D-9E81-8932CF816451} -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Setup\InterfacesUnfirewalledAtUpdate\\{ABF1A106-9B83-438A-BDF5-A1C418155D52} -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Setup\InterfacesUnfirewalledAtUpdate\\{3668C776-FBAE-4553-B49C-B22E9D268B9A} -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Setup\InterfacesUnfirewalledAtUpdate\\{2A2327EB-D6D2-47E4-993D-868FBE1322A2} -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Setup\InterfacesUnfirewalledAtUpdate\\{ED3ABC48-C062-4D26-8185-244DA3C0CD90} -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Setup\InterfacesUnfirewalledAtUpdate\\{59790D31-42A6-4B59-86E6-DD1D5EE87BA6} -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Setup\InterfacesUnfirewalledAtUpdate\\{4943A422-1FEB-429A-B609-9B9D8602ABA7} -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Setup\InterfacesUnfirewalledAtUpdate\\{F791D4CC-0A17-4D40-B503-0AB9C07133D5} -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Enum\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Enum\\0 -> Root\LEGACY_SHAREDACCESS\0000 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Enum\\Count -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\SharedAccess\Enum\\NextInstance -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv\\Type -> 32 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv\\Start -> 2 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv\\ErrorControl -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv\\ImagePath -> C:\WINDOWS\system32\svchost.exe [%systemroot%\system32\svchost.exe -k netsvcs] -> Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 14336 bytes | Modified Date = 8/4/2004 2:56:57 AM | Attr = ]
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv\\DisplayName -> Automatic Updates ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv\\ObjectName -> LocalSystem ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv\\Description -> Enables the download and installation of critical Windows updates. If the service is disabled, the operating system can be manually updated at the Windows Update Web site. ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv\Parameters\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv\Parameters\\ServiceDll -> C:\WINDOWS\system32\wuauserv.dll [C:\WINDOWS\system32\wuauserv.dll] -> Microsoft Corporation [Ver = 5.4.3790.2180 (xpsp_sp2_rtm.040803-2158) | Size = 6656 bytes | Modified Date = 8/4/2004 2:56:46 AM | Attr = ]
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv\Security\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv\Security\\Security -> (binary data) ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv\Enum\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv\Enum\\0 -> Root\LEGACY_WUAUSERV\0000 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv\Enum\\Count -> 1 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\wuauserv\Enum\\NextInstance -> 1 ->
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\RemoteRegistry\ not found. -> ->
Registry key HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Services\TlntSvr\ not found. -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Hardware Profiles\Current\Software\Microsoft\windows\CurrentVersion\Internet Settings\ -> ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Hardware Profiles\Current\Software\Microsoft\windows\CurrentVersion\Internet Settings\\ProxyEnable -> 0 ->
HKEY_LOCAL_MACHINE\SYSTEM\CurrentControlSet\Hardware Profiles\Current\Software\Microsoft\windows\CurrentVersion\Internet Settings\\EnableAutodial -> 0 ->
< Desktop Components > -> HKEY_CURRENT_USER\Software\Microsoft\Internet Explorer\Desktop\Components\ ->
0 -> [Key] ->
0 -> FriendlyName = My Current Home Page ->
0 -> Source = About:Home ->
0 -> SubscribedURL = About:Home ->
< Software Policy Settings [HKEY_LOCAL_MACHINE] > -> HKEY_LOCAL_MACHINE\SOFTWARE\policies\ ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Conferencing\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\MRT\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\DriverSearching\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\DriverSearching\\DontSearchWindowsUpdate -> 0 ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\DriverSearching\\DontPromptForWindowsUpdate -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Installer\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Installer\\EnableAdminTSRemote -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\RTC\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\RTC\PortRange\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\RTC\PortRange\\Enabled -> 0 ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\ -> ->
*ExecutableTypes* -> HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\\ExecutableTypes ->
ADE -> -> File not found
ADP -> -> File not found
BAS -> -> File not found
BAT -> -> File not found
CHM -> -> File not found
CMD -> %System32%\cmd.exe -> Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 388608 bytes | Modified Date = 8/4/2004 2:56:48 AM | Attr = ]
COM -> -> File not found
CPL -> -> File not found
CRT -> -> File not found
EXE -> -> File not found
HLP -> -> File not found
HTA -> -> File not found
INF -> -> File not found
INS -> -> File not found
ISP -> -> File not found
LNK -> -> File not found
MDB -> -> File not found
MDE -> -> File not found
MSC -> -> File not found
MSI -> %System32%\msi.dll -> Microsoft Corporation [Ver = 3.1.4000.4039 | Size = 2854400 bytes | Modified Date = 4/18/2007 11:12:23 AM | Attr = ]
MSP -> -> File not found
MST -> -> File not found
OCX -> -> File not found
PCD -> -> File not found
PIF -> -> File not found
REG -> %System32%\reg.exe -> Microsoft Corporation [Ver = 5.1.2600.2180 (xpsp_sp2_rtm.040803-2158) | Size = 50176 bytes | Modified Date = 8/4/2004 2:56:55 AM | Attr = ]
SCR -> -> File not found
SHS -> -> File not found
URL -> %System32%\url.dll -> Microsoft Corporation [Ver = 7.00.6000.16574 (vista_gdr.071008-1500) | Size = 105984 bytes | Modified Date = 10/10/2007 6:55:59 PM | Attr = ]
VB -> -> File not found
WSC -> -> File not found
*MultiFile Done* -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\\TransparentEnabled -> 1 ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\\DefaultLevel -> 262144 ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\\AuthenticodeEnabled -> 0 ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\\PolicyScope -> 0 ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{349d35ab-37b5-462f-9b89-edd5fbde1328}\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{349d35ab-37b5-462f-9b89-edd5fbde1328}\\Description -> Stop the download of this file ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{349d35ab-37b5-462f-9b89-edd5fbde1328}\\FriendlyName -> Mdac11.cab [Mdac11.cab] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{349d35ab-37b5-462f-9b89-edd5fbde1328}\\SaferFlags -> 0 ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{349d35ab-37b5-462f-9b89-edd5fbde1328}\\HashAlg -> 32771 ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{349d35ab-37b5-462f-9b89-edd5fbde1328}\\ItemData -> (binary data) ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{349d35ab-37b5-462f-9b89-edd5fbde1328}\\LastModified -> ->
*ItemSize* -> HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{349d35ab-37b5-462f-9b89-edd5fbde1328}\\ItemSize ->
̋ -> -> File not found
*MultiFile Done* -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{7fb9cd2e-3076-4df9-a57b-b813f72dbb91}\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{7fb9cd2e-3076-4df9-a57b-b813f72dbb91}\\Description -> Stop the download of this file ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{7fb9cd2e-3076-4df9-a57b-b813f72dbb91}\\FriendlyName -> mdac20.cab [mdac20.cab] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{7fb9cd2e-3076-4df9-a57b-b813f72dbb91}\\SaferFlags -> 0 ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{7fb9cd2e-3076-4df9-a57b-b813f72dbb91}\\HashAlg -> 32771 ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{7fb9cd2e-3076-4df9-a57b-b813f72dbb91}\\ItemData -> (binary data) ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{7fb9cd2e-3076-4df9-a57b-b813f72dbb91}\\LastModified -> ->
*ItemSize* -> HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{7fb9cd2e-3076-4df9-a57b-b813f72dbb91}\\ItemSize ->
ȅ -> -> File not found
*MultiFile Done* -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{81d1fe15-dd9d-4762-b16d-7c29ddecae3f}\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{81d1fe15-dd9d-4762-b16d-7c29ddecae3f}\\Description -> Stop the download of this file ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{81d1fe15-dd9d-4762-b16d-7c29ddecae3f}\\FriendlyName -> mdac20_a.cab [mdac20_a.cab] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{81d1fe15-dd9d-4762-b16d-7c29ddecae3f}\\SaferFlags -> 0 ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{81d1fe15-dd9d-4762-b16d-7c29ddecae3f}\\HashAlg -> 32771 ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{81d1fe15-dd9d-4762-b16d-7c29ddecae3f}\\ItemData -> (binary data) ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{81d1fe15-dd9d-4762-b16d-7c29ddecae3f}\\LastModified -> ->
*ItemSize* -> HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{81d1fe15-dd9d-4762-b16d-7c29ddecae3f}\\ItemSize ->
Ζ -> -> File not found
*MultiFile Done* -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{94e3e076-8f53-42a5-8411-085bcc18a68d}\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{94e3e076-8f53-42a5-8411-085bcc18a68d}\\Description -> Stop the download of this file ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{94e3e076-8f53-42a5-8411-085bcc18a68d}\\FriendlyName -> _msadc10.cab [_msadc10.cab] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{94e3e076-8f53-42a5-8411-085bcc18a68d}\\SaferFlags -> 0 ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{94e3e076-8f53-42a5-8411-085bcc18a68d}\\HashAlg -> 32771 ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{94e3e076-8f53-42a5-8411-085bcc18a68d}\\ItemData -> (binary data) ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{94e3e076-8f53-42a5-8411-085bcc18a68d}\\LastModified -> ->
*ItemSize* -> HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{94e3e076-8f53-42a5-8411-085bcc18a68d}\\ItemSize ->
å -> -> File not found
*MultiFile Done* -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{dc971ee5-44eb-4fe4-ae2e-b91490411bfc}\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{dc971ee5-44eb-4fe4-ae2e-b91490411bfc}\\Description -> Stop the download of this file ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{dc971ee5-44eb-4fe4-ae2e-b91490411bfc}\\FriendlyName -> msadc11.cab [msadc11.cab] -> File not found
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{dc971ee5-44eb-4fe4-ae2e-b91490411bfc}\\SaferFlags -> 0 ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{dc971ee5-44eb-4fe4-ae2e-b91490411bfc}\\HashAlg -> 32771 ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{dc971ee5-44eb-4fe4-ae2e-b91490411bfc}\\ItemData -> (binary data) ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{dc971ee5-44eb-4fe4-ae2e-b91490411bfc}\\LastModified -> ->
*ItemSize* -> HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Hashes\{dc971ee5-44eb-4fe4-ae2e-b91490411bfc}\\ItemSize ->
Ų -> -> File not found
*MultiFile Done* -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Paths\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Paths\{dda3f824-d8cb-441b-834d-be2efd2c1a33}\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Paths\{dda3f824-d8cb-441b-834d-be2efd2c1a33}\\Description -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Paths\{dda3f824-d8cb-441b-834d-be2efd2c1a33}\\SaferFlags -> 0 ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Paths\{dda3f824-d8cb-441b-834d-be2efd2c1a33}\\ItemData -> %HKEY_CURRENT_USER\Software\Microsoft\Windows\CurrentVersion\Explorer\Shell Folders\Cache%OLK* ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows\Safer\CodeIdentifiers\0\Paths\{dda3f824-d8cb-441b-834d-be2efd2c1a33}\\LastModified -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows NT\ -> ->
HKEY_LOCAL_MACHINE\SOFTWARE\policies\Microsoft\Windows NT\Terminal Services\ -> ->
< Software Policy Settings [HKEY_CURRENT_USER] > -> HKEY_CURRENT_USER\SOFTWARE\policies\ ->
HKEY_CURRENT_USER\Software\Policies\ -> ->
HKEY_CURRENT_USER\Software\Policies\Microsoft\ -> ->


[Files/Folders - Created Within 30 days]
Config.Msi -> %SystemDrive%\Config.Msi -> [Folder | Created Date = 12/25/2007 7:34:39 PM | Attr = HS]
hiberfil.sys -> %SystemDrive%\hiberfil.sys -> [Ver = | Size = 527880192 bytes | Created Date = 12/14/2007 2:56:18 PM | Attr = HS]
DRVSTORE -> %System32%\DRVSTORE -> [Folder | Created Date = 12/25/2007 7:33:33 PM | Attr = ]
dumphive.exe -> %System32%\dumphive.exe -> [Ver = | Size = 51200 bytes | Created Date = 12/19/2007 10:40:04 PM | Attr = ]
IEDFix.exe -> %System32%\IEDFix.exe -> S!Ri.URZ [Ver = | Size = 81920 bytes | Created Date = 12/19/2007 10:40:04 PM | Attr = ]
QuickTime.qts -> %System32%\QuickTime.qts -> Apple Inc. [Ver = 7.3.1 | Size = 49152 bytes | Created Date = 12/11/2007 10:57:06 AM | Attr = ]
QuickTimeVR.qtx -> %System32%\QuickTimeVR.qtx -> Apple Inc. [Ver = 7.3.1 | Size = 65536 bytes | Created Date = 12/11/2007 10:57:06 AM | Attr = ]
SrchSTS.exe -> %System32%\SrchSTS.exe -> S!Ri [Ver = | Size = 288417 bytes | Created Date = 12/19/2007 10:40:03 PM | Attr = ]
swreg.exe -> %System32%\swreg.exe -> SteelWerX [Ver = 2.0.1.0 | Size = 135168 bytes | Created Date = 12/19/2007 10:40:03 PM | Attr = ]
swsc.exe -> %System32%\swsc.exe -> [Ver = | Size = 40960 bytes | Created Date = 12/19/2007 10:40:03 PM | Attr = ]
swxcacls.exe -> %System32%\swxcacls.exe -> SteelWerX [Ver = 1.0.1.1 | Size = 79360 bytes | Created Date = 12/19/2007 10:40:04 PM | Attr = ]
VCCLSID.exe -> %System32%\VCCLSID.exe -> S!Ri [Ver = | Size = 289144 bytes | Created Date = 12/19/2007 10:40:04 PM | Attr = ]
WS2Fix.exe -> %System32%\WS2Fix.exe -> [Ver = | Size = 25600 bytes | Created Date = 12/19/2007 10:40:04 PM | Attr = ]
AvgAsCln.sys -> %System32%\drivers\AvgAsCln.sys -> GRISOFT, s.r.o. [Ver = 1.0.0.14 | Size = 10872 bytes | Created Date = 12/21/2007 11:26:27 AM | Attr = ]
usbaapl.sys -> %System32%\drivers\usbaapl.sys -> Apple, Inc. [Ver = 1, 25, 0, 0 | Size = 30464 bytes | Created Date = 12/25/2007 7:33:33 PM | Attr = ]
[File Created- Additional Folder Scans - Non-Microsoft Only]
Apple -> %AllUsersAppData%\Apple -> [Folder | Created Date = 12/25/2007 7:32:51 PM | Attr = ]
Grisoft -> %AllUsersAppData%\Grisoft -> [Folder | Created Date = 12/14/2007 4:30:56 PM | Attr = ]
Grisoft -> %UserAppData%\Grisoft -> [Folder | Created Date = 12/21/2007 11:26:41 AM | Attr = ]
Apple -> %LocalAppData%\Apple -> [Folder | Created Date = 12/25/2007 7:33:54 PM | Attr = ]
CCleaner registry backup -> %UserDocuments%\CCleaner registry backup -> [Folder | Created Date = 12/20/2007 12:19:21 PM | Attr = ]
copies of logs to fix pc 1207 -> %UserDocuments%\copies of logs to fix pc 1207 -> [Folder | Created Date = 12/21/2007 11:11:29 AM | Attr = ]
Scan Logs for PC Help.doc -> %UserDocuments%\Scan Logs for PC Help.doc -> [Ver = | Size = 19456 bytes | Created Date = 12/21/2007 11:34:08 AM | Attr = ]
AVG Anti-Spyware.lnk -> %AllUsersDesktop%\AVG Anti-Spyware.lnk -> [Ver = | Size = 709 bytes | Created Date = 12/21/2007 11:26:31 AM | Attr = ]
iTunes.lnk -> %AllUsersDesktop%\iTunes.lnk -> [Ver = | Size = 1997 bytes | Created Date = 12/25/2007 7:38:12 PM | Attr = ]
QuickTime Player.lnk -> %AllUsersDesktop%\QuickTime Player.lnk -> [Ver = | Size = 1604 bytes | Created Date = 12/25/2007 7:35:44 PM | Attr = ]
Registry Mechanic.lnk -> %AllUsersDesktop%\Registry Mechanic.lnk -> [Ver = | Size = 616 bytes | Created Date = 12/17/2007 10:44:04 AM | Attr = ]
Amas De Casas Profitability.xls -> %UserDesktop%\Amas De Casas Profitability.xls -> [Ver = | Size = 26624 bytes | Created Date = 12/4/2007 4:51:28 PM | Attr = ]
Amas De Casas Talent Costs.xls -> %UserDesktop%\Amas De Casas Talent Costs.xls -> [Ver = | Size = 50688 bytes | Created Date = 12/4/2007 4:50:20 PM | Attr = ]
El Chavo Program Profitability (2).xls -> %UserDesktop%\El Chavo Program Profitability (2).xls -> [Ver = | Size = 51712 bytes | Created Date = 12/4/2007 4:23:44 PM | Attr = ]
El Chavo Program Profitability (rev).xls -> %UserDesktop%\El Chavo Program Profitability (rev).xls -> [Ver = | Size = 68608 bytes | Created Date = 12/4/2007 4:07:37 PM | Attr = ]
HijackThis.lnk -> %UserDesktop%\HijackThis.lnk -> [Ver = | Size = 808 bytes | Created Date = 12/20/2007 4:59:00 PM | Attr = ]
nodesktop.reg -> %UserDesktop%\nodesktop.reg -> [Ver = | Size = 4312 bytes | Created Date = 12/15/2007 4:37:50 PM | Attr = ]
@Alternate Data Stream - 26 bytes -> %UserDesktop%\nodesktop.reg:Zone.Identifier
WinPFind35u -> %UserDesktop%\WinPFind35u -> [Folder | Created Date = 1/3/2008 3:15:56 PM | Attr = ]
WinPFind35u.exe -> %UserDesktop%\WinPFind35u.exe -> [Ver = | Size = 605654 bytes | Created Date = 1/3/2008 3:12:37 PM | Attr = ]
@Alternate Data Stream - 26 bytes -> %UserDesktop%\WinPFind35u.exe:Zone.Identifier
Adobe Gamma Loader.lnk -> %AllUsersStartup%\Adobe Gamma Loader.lnk -> [Ver = | Size = 986 bytes | Created Date = 12/19/2007 10:47:35 PM | Attr = ]
Microsoft Office.lnk -> %AllUsersStartup%\Microsoft Office.lnk -> [Ver = | Size = 1725 bytes | Created Date = 12/19/2007 10:47:35 PM | Attr = ]
NkvMon.exe.lnk -> %AllUsersStartup%\NkvMon.exe.lnk -> [Ver = | Size = 1567 bytes | Created Date = 12/19/2007 10:47:35 PM | Attr = ]
SpywareGuard.lnk -> %UserStartup%\SpywareGuard.lnk -> [Ver = | Size = 528 bytes | Created Date = 12/19/2007 10:47:35 PM | Attr = ]
Webshots.lnk -> %UserStartup%\Webshots.lnk -> [Ver = | Size = 558 bytes | Created Date = 12/19/2007 10:47:35 PM | Attr = ]
Apple -> %CommonProgramFiles%\Apple -> [Folder | Created Date = 12/25/2007 7:32:52 PM | Attr = ]

[Files/Folders - Modified Within 30 days]
boot.ini -> %SystemDrive%\boot.ini -> [Ver = | Size = 211 bytes | Modified Date = 12/19/2007 10:48:00 PM | Attr = HS]
Config.Msi -> %SystemDrive%\Config.Msi -> [Folder | Modified Date = 12/28/2007 10:24:33 PM | Attr = HS]
hiberfil.sys -> %SystemDrive%\hiberfil.sys -> [Ver = | Size = 527880192 bytes | Modified Date = 1/3/2008 11:56:29 AM | Attr = HS]
My Download Files -> %SystemDrive%\My Download Files -> [Folder | Modified Date = 12/14/2007 11:36:02 AM | Attr = ]
My Games -> %SystemDrive%\My Games -> [Folder | Modified Date = 12/14/2007 11:46:05 AM | Attr = ]
Program Files -> %ProgramFiles% -> [Folder | Modified Date = 12/25/2007 7:37:25 PM | Attr = ]
System Volume Information -> %SystemDrive%\System Volume Information -> [Folder | Modified Date = 12/19/2007 10:49:44 PM | Attr = HS]
WINDOWS -> %SystemRoot% -> [Folder | Modified Date = 12/28/2007 10:25:11 PM | Attr = ]
$hf_mig$ -> %SystemRoot%\$hf_mig$ -> [Folder | Modified Date = 12/14/2007 4:48:36 PM | Attr = H ]
bootstat.dat -> %SystemRoot%\bootstat.dat -> [Ver = | Size = 2048 bytes | Modified Date = 1/3/2008 11:56:30 AM | Attr = S]
Debug -> %SystemRoot%\Debug -> [Folder | Modified Date = 12/20/2007 12:05:40 PM | Attr = ]
Help -> %SystemRoot%\Help -> [Folder | Modified Date = 12/14/2007 3:06:03 PM | Attr = ]
ie7updates -> %SystemRoot%\ie7updates -> [Folder | Modified Date = 12/15/2007 1:25:18 PM | Attr = ]
inf -> %SystemRoot%\inf -> [Folder | Modified Date = 12/25/2007 9:49:23 PM | Attr = H ]
Installer -> %SystemRoot%\Installer -> [Folder | Modified Date = 12/25/2007 7:38:41 PM | Attr = HS]
Minidump -> %SystemRoot%\Minidump -> [Folder | Modified Date = 12/20/2007 12:05:38 PM | Attr = ]
network diagnostic -> %SystemRoot%\network diagnostic -> [Folder | Modified Date = 12/21/2007 11:13:53 AM | Attr = ]
Prefetch -> %SystemRoot%\Prefetch -> [Folder | Modified Date = 1/3/2008 3:15:00 PM | Attr = ]
pss -> %SystemRoot%\pss -> [Folder | Modified Date = 12/19/2007 10:34:58 PM | Attr = ]
QUICKEN.INI -> %SystemRoot%\QUICKEN.INI -> [Ver = | Size = 1102 bytes | Modified Date = 12/14/2007 11:44:40 AM | Attr = ]
system.ini -> %SystemRoot%\system.ini -> [Ver = | Size = 227 bytes | Modified Date = 12/19/2007 10:48:00 PM | Attr = ]
system32 -> %System32% -> [Folder | Modified Date = 12/25/2007 7:35:13 PM | Attr = ]
Tasks -> %SystemRoot%\Tasks -> [Folder | Modified Date = 12/25/2007 7:33:55 PM | Attr = S]
Temp -> %SystemRoot%\Temp -> [Folder | Modified Date = 1/3/2008 2:13:46 PM | Attr = ]
win.ini -> %SystemRoot%\win.ini -> [Ver = | Size = 501 bytes | Modified Date = 12/19/2007 10:48:00 PM | Attr = ]
WinSxS -> %SystemRoot%\WinSxS -> [Folder | Modified Date = 12/25/2007 7:32:52 PM | Attr = ]
AppleSoftwareUpdate.job -> %SystemRoot%\tasks\AppleSoftwareUpdate.job -> [Ver = | Size = 284 bytes | Modified Date = 12/29/2007 1:29:05 PM | Attr = ]
McAfee.com Scan for Viruses - My Computer (HOME-Administrator Isi).job -> %SystemRoot%\tasks\McAfee.com Scan for Viruses - My Computer (HOME-Administrator Isi).job -> [Ver = | Size = 438 bytes | Modified Date = 12/21/2007 6:30:00 AM | Attr = ]
SA.DAT -> %SystemRoot%\tasks\SA.DAT -> [Ver = | Size = 6 bytes | Modified Date = 1/3/2008 11:56:32 AM | Attr = H ]
CatRoot2 -> %System32%\CatRoot2 -> [Folder | Modified Date = 12/25/2007 7:12:55 PM | Attr = ]
Config.MPF -> %System32%\Config.MPF -> [Ver = | Size = 55478 bytes | Modified Date = 1/3/2008 11:57:08 AM | Attr = ]
dllcache -> %System32%\dllcache -> [Folder | Modified Date = 12/15/2007 1:26:42 PM | Attr = ]
drivers -> %System32%\drivers -> [Folder | Modified Date = 12/25/2007 9:49:26 PM | Attr = ]
DRVSTORE -> %System32%\DRVSTORE -> [Folder | Modified Date = 12/25/2007 7:33:33 PM | Attr = ]
IEDFix.exe -> %System32%\IEDFix.exe -> S!Ri.URZ [Ver = | Size = 81920 bytes | Modified Date = 12/19/2007 10:57:43 PM | Attr = ]
QuickTime.qts -> %System32%\QuickTime.qts -> Apple Inc. [Ver = 7.3.1 | Size = 49152 bytes | Modified Date = 12/11/2007 10:57:06 AM | Attr = ]
QuickTimeVR.qtx -> %System32%\QuickTimeVR.qtx -> Apple Inc. [Ver = 7.3.1 | Size = 65536 bytes | Modified Date = 12/11/2007 10:57:06 AM | Attr = ]
Restore -> %System32%\Restore -> [Folder | Modified Date = 12/19/2007 10:49:44 PM | Attr = ]
wpa.dbl -> %System32%\wpa.dbl -> [Ver = | Size = 1158 bytes | Modified Date = 1/3/2008 11:57:29 AM | Attr = ]

[CatchMe Rootkit Scan by GMER]
< Windows folder & sub-folders >
scanning hidden processes ...
IPC error: 2 The system cannot find the file specified.
scanning hidden services & system hive ...
scanning hidden registry entries ...
scanning hidden files ...
C:\WINDOWS\SONYSYS\ICONS\Thumbs.db:encryptable 0 bytes
C:\WINDOWS\system32\temp:98JgMDVwqCpmIYuDn7K78yJ 825 bytes
C:\WINDOWS\system32\temp:uiSbNOOgsnvTlXRFaTHcE3G 805 bytes
scan completed successfully
hidden processes: 0
hidden services: 0
hidden files: 3
< Document and Settings folder & sub folders >
scanning hidden files ...
IPC error: 2 The system cannot find the file specified.
C:\Documents and Settings\All Users\Documents\Main Network Deanna\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\All Users\Documents\Main Network Isabel\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\All Users\Documents\Main Network Kristina\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\All Users\Start Menu\Programs\Games\Sony Online Games.url:favicon 4286 bytes
C:\Documents and Settings\Deanna Perez\Desktop\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Deanna Perez\Favorites\hooray for pictures. - A Xanga Blogring.url:favicon 1406 bytes
C:\Documents and Settings\Deanna Perez\Favorites\PostSecret.url:favicon 3638 bytes
C:\Documents and Settings\Deanna Perez\My Documents\My Pictures\icons\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Deanna Perez\My Documents\My Pictures\My Music\Kenny Chesney\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Deanna Perez\My Documents\My Pictures\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Deanna Perez\My Documents\Deanna\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Deanna Perez\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\Desktop\CLEANUP\StartupList.exe:SummaryInformation 148 bytes
C:\Documents and Settings\Isabel Perez\Desktop\CLEANUP\StartupList.exe:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} 0 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Disney Info & Hotels\The DIS Discussion Forums - DISboards.com - Powered by vBulletin.url:favicon 10134 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Fall TV Guide on MSN TV.url:favicon 15086 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Free Samples\Free Samples.url:favicon 3638 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Free Samples\Kroger Free Samples.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Free Samples\Special Offers from Health Expressions.url:favicon 318 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Free Samples\Walgreens Sweepstakes & Promotions.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\FUJI MOM\fuji a330 help forums - Google Search.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\FUJI MOM\fujifilm Support & Contact Center Manuals & Brochures FinePix A330 FinePix A330 & A340 Manual.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\FUJI MOM\http--www.fujifilmusa.com-JSP-fuji-epartners-bin-A330A340Manual_1.pdf.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Black Friday Ads\Black Friday Ads - The Official Black Friday 2007 Website.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Black Friday Ads\GottaDeal.com .url:favicon 3638 bytes
C:\Documents and Settings\Isabel Perez\Favorites\CalorieKing - Calorie Counter - Calories in Atlanta Bread Company, Chili Hearty Beef.url:favicon 22486 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\All Pub Tables & Sets Pub Tables & Sets - Shop at Bar Stools.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\Gabriella 3-Piece Pub Set.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\3 Piece Black Round Bar Table & Stool Set.url:favicon 634 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\3 Piece Black Round Bar Table & Swivel Bar Stools.url:favicon 634 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\3 Piece Scroll Bar Table Set.url:favicon 634 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\4D Concepts Resin Wicker Bistro Set w - 2 Stools [139014-FS-DCON] BizChair.com.url:favicon 6598 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\5-pc. Pub Table Set with Saddle Stools.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\5-Piece Counter Height Dining Set.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\5-Piece Retro-Style Dining Set.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\Home Styles Black Bar Table Set with Veneer Top [5982-358-FS-HMS] BizChair.com.url:favicon 6598 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\Home Styles Black Soda Shoppe Table Set [5993-358-FS-HMS] BizChair.com.url:favicon 6598 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\Linea 3-Piece Island Set with Metal Accents.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\Retro Polished Chrome Bar Table & Blue Stool Set.url:favicon 634 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\Retro Soda Shoppe Set.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\Silver Metal Bar Table With Matching Bar Stools.url:favicon 634 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\Tavern Bar Table and Stools.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\Apollo Bar Table and Stools.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\Bar Table With 2 White Swivel Barstools.url:favicon 634 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\Black Bar Table W- White Laminated Top & 2 Stools.url:favicon 634 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\Black Swivel Barstools With Glass Top Bar Table.url:favicon 634 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\Black Three Piece Bar Set.url:favicon 634 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\Café Table and Chairs.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\Chrome Classical Designed Red And Blue Bar Set.url:favicon 634 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Condo furniture\Counter Stools BizChair.com.url:favicon 6598 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Coupon Codes\Coupon Codes, Promotional Codes and Discounts at CurrentCodes.com.url:favicon 766 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Coupon Codes\Dealnews.com coupons.url:favicon 5430 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Coupon Codes\Free Coupons, coupon codes, online coupons and promotional codes - CouponCabin.url:favicon 318 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Coupon Codes\Printable coupons and coupon codes for online discount shopping - CouponAlbum.url:favicon 3638 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Coupon Codes\Printable Coupons Retail Coupons.url:favicon 3638 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Coupon Codes\Wow-Coupons.com - Free Online Coupons and Codes.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Cruising\Cruise Critic Cruise reviews, Cruise message boards, cruise bargains, and cruise information.url:favicon 3638 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Cruising\Princess Cruises - Golden Princess - Roundtrip Seattle (II) from Clean Cruising.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Satellite Beach Condo\About Brevard County.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Satellite Beach Condo\All Brevard Magazine - Florida's Space Coast - Melbourne, Brevard County, Florida - Simple Design, Intense Content.url:favicon 1078 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Satellite Beach Condo\Brevard County, Florida - Wikipedia, the free encyclopedia.url:favicon 318 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Satellite Beach Condo\Brevard County, Florida.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Satellite Beach Condo\City of Satellite Beach, Florida Information Resources for Satellite Beach Residents and Visitors..url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Satellite Beach Condo\faq Environmentally Endangered Lands Program, Brevard County, Florida.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Satellite Beach Condo\livingchoices.com Real Estate - New Homes, Homes for Sale, Apartment Rentals.url:favicon 3638 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Satellite Beach Condo\My SpaceCoast.com Main Page.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Satellite Beach Condo\OSI-IDX BRV.url:favicon 3774 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Satellite Beach Condo\Places to Go - Things to Do - Titusville, Florida.url:favicon 3638 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Satellite Beach Condo\SATELLITE BCH real estate listing MLS #456459, SATELLITE BCH Condo.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Satellite Beach Condo\SATELLITE BCH real estate listing MLS #459764, SATELLITE BCH Condo.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Satellite Beach Condo\Satellite Beach, Florida.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Scanner\DriverZone.com.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Norwegian Cruise Lines, Norwegian Cruise Line from CruiseDeals.com.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\PC REPAIR INFO\broadband help » BBR is DSL · Cable · VOIP · Security · Satellite · Fiber · News · Tips · Reviews · Community · Tools.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\PC REPAIR INFO\NotebookForums.com - Notebookforums.com Notebook reviews - laptops reviews.url:favicon 3638 bytes
C:\Documents and Settings\Isabel Perez\Favorites\PC REPAIR INFO\D-Link TechSupport - Welcome.url:favicon 894 bytes
C:\Documents and Settings\Isabel Perez\Favorites\PC REPAIR INFO\DriverZone.com.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\PC REPAIR INFO\Firewall\broadband help » Testing your broadband connection.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\PC REPAIR INFO\Firewall\dsniff - tools for network auditing.url:favicon 2238 bytes
C:\Documents and Settings\Isabel Perez\Favorites\PC REPAIR INFO\Firewall\Firewall Q&A.url:favicon 894 bytes
C:\Documents and Settings\Isabel Perez\Favorites\PC REPAIR INFO\gearlog Cell Phones & Services.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\PC REPAIR INFO\WiredSafety - the world's largest Internet safety and help group.url:favicon 9158 bytes
C:\Documents and Settings\Isabel Perez\Favorites\PC REPAIR INFO\Sony eSupport - PCV-RS510.url:favicon 25214 bytes
C:\Documents and Settings\Isabel Perez\Favorites\PC REPAIR INFO\CERT- Computer Emergency Response Team.url:favicon 3638 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Hot Deals Club - updated many times daily with the best deals.url:favicon 318 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Wilkesboro Information\McGrady, North Carolina NC Community Profile City Data, Resources, Demographics.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Wilkesboro Information\McGrady, North Carolina, United States.url:favicon 198 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Wilkesboro Information\North Wilkesboro News - Topix.url:favicon 15086 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Wilkesboro Information\Search - LocalHarvest.url:favicon 3638 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Wilkesboro Information\THINGS TO DO IN NORTH CAROLINA.url:favicon 318 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Wilkesboro Information\Wilkesboro Services (NC) - Classifieds & Want Ads.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Wilkesboro rentals\Favorites\Blue Ridge Mountain Cabin - Log Cabin.url:favicon 3638 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Wilkesboro rentals\Favorites\http--www.vrconnection.com-PeakABooCreek.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Wilkesboro rentals\Favorites\Photos of AboveTheRiver (VRC#1730) Brand New Cabin In West Jefferson With River Views.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Wilkesboro rentals\Favorites\Seven Devils Vacation Rentals cabin - Beautiful mountain cabin with spectacular views.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Wilkesboro rentals\Sugar Bear's Overlook Cabin - Secluded, Yet Convenient - #3017 - Find Vacation Rentals .com.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Wine\What to Drink Now at Epicurious.com.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Wine\Wine Reviews of Red Wine, White Wine, Champagne, & Dessert Wine at Ken's Wine Guide.url:favicon 894 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Wine\Wine Tasting Party\Wine Tasting Party Top Two Types of Wine Tasting Wine Score Sheets.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Instant Wins and Sweeps\Freeb's Freebie Forum - Freebies - Discounts - Deals - Coupon Codes (Powered by Invision Power Board).url:favicon 10134 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Instant Wins and Sweeps\Online-Sweepstakes.com - The web's premier sweepstakes and contest directory and community..url:favicon 4710 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Instant Wins and Sweeps\Welcome to Your Daily Freebies...Enter Here! www.dailyfreebies.com.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Music\ DiscoMusic.com.url:favicon 318 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Music\allmusic ((( Rhapsody in White Overview ))).url:favicon 318 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Music\allmusic.url:favicon 318 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Music\Amant discography, information, albums and hits - PumpTheMusic.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Music\Lyrics\Diamond Rio - Meet In The Middle Lyrics - Meet In The Middle - Lyrics On Demand.url:favicon 318 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Music\Lyrics\Fulltext Lyrics Search.url:favicon 4286 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Recipies\Seared Scallops with Creamy Noodles and Peas Recipe at Epicurious.com.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Sutter\Gated Communities, Wilkes County, North Carolina.url:favicon 3638 bytes
C:\Documents and Settings\Isabel Perez\Favorites\TIVO\TiVo Community - Forum Home and Store.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\TIVO\TiVo.com Frequently asked Questions - transfer show to pc for dvd copy.url:favicon 2550 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Top 100 Undiscovered Web Sites - Top 100 Undiscovered Web Sites - News and Analysis by PC Magazine.url:favicon 2238 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Tutorials - Free Classes\amazon.com Learn QuickBooks Pro 2007 Step by Step Training Software.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Tutorials - Free Classes\Online Video Quickbooks Pro 2007 Tutorial #1 Veoh Video Network.url:favicon 2550 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Tutorials - Free Classes\QuickBooks Community - QuickBooks Tasks Forums.url:favicon 894 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Tutorials - Free Classes\QuickBooks Tutorial - Training.url:favicon 318 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Tutorials - Free Classes\Quickbooks Tutorial.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\Tutorials - Free Classes\YouTube - Quickbooks Tutorial Part 3.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\FrequentFlier.com .url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\North Carolina\Discover North Carolina Wines www.ncwine.org.url:favicon 15086 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\North Carolina\Scenic byway brochure http--www.ncdot.org-doh-operations-dp_chief_eng-roadside-scenic-pdf-sb.pdf.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\North Carolina\visitnc.com-_brochures-_downloads-Itineraries.pdf.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\Cabin Rentals\Vacation Rentals - Vacation Rentals by Owner - Cyber Rentals.url:favicon 3638 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\Cabin Rentals\World Vacation Rentals, World Rentals, Vacation Rentals around the World, A1 Vacations.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\CALIFORNIA\Wine Country\SF Gate Wine Reviews, Wine Country Guide, Recommendations.url:favicon 894 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\CALIFORNIA\Wine Country\Wine Country Top 10 ,Vineyard Stays.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\Explore Byways.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\pointmaven.com Earn the Most Hotel Points on Every Trip.url:favicon 1078 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\Specials - TripRes.com.url:favicon 318 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\Vacation Packages, Discount Vacations, Travel Package Deals, Hotel and Vacation Reviews.url:favicon 1150 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\Welcome to The Travel Insider.url:favicon 1366 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\InsideFlyer.com.url:favicon 318 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\Massassusetts\Boston\Boston CVB City Map.url:favicon 2238 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\Massassusetts\Boston\City of Boston.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\Massassusetts\Boston\Radisson Boston code BREAKPKG Search Results.url:favicon 318 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\Massassusetts\Boston\Viator.com Boston Tours, Day Trips, Sightseeing & Things to Do.url:favicon 894 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\Massassusetts\Cape Cod\Cape Cod lodging Bed and Breakfasts, Inn, Guest Houses, Cottages.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\Massassusetts\Cape Cod\http--www.iloveinns.com-west-harwich-massachusetts-bed-breakfast.htm.url:favicon 894 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\Massassusetts\Cape Cod\Old King's Highway (Route 6A) - Maps & Directions.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\Massassusetts\Essex National Heritage Area Scenic Byway - Maps & Directions.url:favicon 1406 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\Massassusetts\MA.StateGuide Harwich Port Massachusetts Travel - Vacation - Relocation - Retirement.url:favicon 318 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\Massassusetts\Massachusetts National parks.url:favicon 2494 bytes
C:\Documents and Settings\Isabel Perez\Favorites\VACATION\Massassusetts\Massachusetts Visitor Information.url:favicon 2366 bytes
C:\Documents and Settings\Isabel Perez\Local Settings\Temporary Internet Files:5438sdMkbuCKI4juZEWiktEz 952 bytes
C:\Documents and Settings\Isabel Perez\My Documents\TurboTax Help Center_files\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\My Documents\UNIVERSITY OF FLORIDA\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\My Documents\Vacations\California\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\My Documents\Vacations\Italy\receipt calling card_files\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\My Documents\Vacations\Italy\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\My Documents\Vacations\Massassusetts\Boston\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\My Documents\Vacations\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\My Documents\Recipies\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\My Documents\EastWind Condo\Beach Condo\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\My Documents\EastWind Condo\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\My Documents\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\My Documents\Deanna's Quinces\pictures\Dresses\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\My Documents\Deanna's Quinces\pictures\Hair\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\My Documents\Deanna's Quinces\pictures\Jacaranda\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\My Documents\Deanna's Quinces\pictures\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\My Documents\Deanna's Quinces\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\My Documents\My DVDs\Alex\Alex.dvd:Afp_AfpInfo 48 bytes
C:\Documents and Settings\Isabel Perez\My Documents\My Photo Albums\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\My Documents\My Pictures\Thumbs(1).db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\My Documents\My Pictures\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\My Documents\My Videos\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\My Documents\Important Documents\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Isabel Perez\My Documents\Important Documents\Thumbs1.db:encryptable 0 bytes
C:\Documents and Settings\Kristina Perez\My Documents\My Pictures\3-30-2004\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Kristina Perez\My Documents\My Pictures\4-29-2004\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Kristina Perez\My Documents\My Pictures\5-23-04\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Kristina Perez\My Documents\My Pictures\5-23-2004\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Kristina Perez\My Documents\My Pictures\5-9-2004 (4)\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Kristina Perez\My Documents\My Pictures\6-21-2004\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Kristina Perez\My Documents\My Pictures\7-12-2004\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Kristina Perez\My Documents\My Pictures\9-23-2004\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Kristina Perez\My Documents\My Pictures\Brittany\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Kristina Perez\My Documents\My Pictures\Disney Trip 6-11-04\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Kristina Perez\My Documents\My Pictures\Jackie\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Kristina Perez\My Documents\My Pictures\Kaytie\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Kristina Perez\My Documents\My Pictures\Kira\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Kristina Perez\My Documents\My Pictures\Kristina Pictures\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Kristina Perez\My Documents\My Pictures\SGA\Thumbs.db:encryptable 0 bytes
C:\Documents and Settings\Kristina Perez\My Documents\My Pictures\Thumbs.db:encryptable 0 bytes
scan completed successfully
hidden files: 216

< End of report >

#6 OldTimer

OldTimer

    Malware Expert


  • Members
  • 11,092 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:North Carolina
  • Local time:02:00 PM

Posted 03 January 2008 - 06:15 PM

Hi Desperate I. There's a couple of things it could be at this point. Let's try the following in the order listed. After each item, reboot and see if the desktop and icons are back. If not, go to the next step.

Step #1

Start WinPFind35U. Copy/Paste the information in the quotebox below into the pane where it says "Paste fix here" and then click the Run Fix button.

[File Created- Additional Folder Scans - Non-Microsoft Only]
YN -> @Alternate Data Stream - 825 bytes -> C:\WINDOWS\system32\temp:98JgMDVwqCpmIYuDn7K78yJ
YN -> @Alternate Data Stream - 805 bytes -> C:\WINDOWS\system32\temp:uiSbNOOgsnvTlXRFaTHcE3G
YN -> @Alternate Data Stream - 0 bytes -> C:\Documents and Settings\Isabel Perez\Desktop\CLEANUP\StartupList.exe:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d}
YN -> @Alternate Data Stream - 952 bytes -> C:\Documents and Settings\Isabel Perez\Local Settings\Temporary Internet Files:5438sdMkbuCKI4juZEWiktEz


The fix should only take a very short time. When the fix is completed a message box will popup telling you that it is finished. CLick the Ok button and Notepad will open with a log of actions taken during the fix. Post that information back here. Then reboot the machine and see if the desktop and taskbar are back. If not, go to step 2.

Step #2

Sometimes, setting up a new user can reset the desktop on all user accounts. Let's try that next.

If you are using Task Manager, start a new task for control.exe. This is the Control Panel. Set up a new user account (name it anything you want and give it any access you want). When that is done, reboot Windows and log in with the new user account. See where you're at with the desktop and task bar. If it's still the same, go to step 3.

Step #3

Download this file: http://www.kellys-korner-xp.com/regs_edits...ktop_fixall.vbs

Save it to a place where you can find it. Run the file and follow the prompts. Note: If there is an anti-virus application it may warn that some script files are unsafe. Allow this script file to run, it is Ok. Reboot the machine and see if the desktop and taskbar are back. If not, go to step 4.

Step #4

This step involves removing and reinstalling your video drivers. If you do not have (or do not know if you have) the drivers or are not knowledgeable about how to perform this action then do not proceed.

Start a new task named sysdm.cpl. This is the System applet from Control Panel. Go to the Hardware tab and click the Device Manager button to open the device manager. Locate the Display Adapter in the list and select your particular display adapter underneath it. Click the Action menu and choose Uninstall to remove it. Then click the Action menu item again and click the Scan for hardware changes item. The system should find a new device (which will be your display adapter again). Reinstall the display adapter and when finished reboot the machine.

Let me know where you are at at this point.

Cheers.

OT
I do not respond to PM's requesting help. That's what the forums are here for. Please use them so that others may benefit from your questions and the responses you receive.
OldTimer

Posted Image

#7 Desperate I

Desperate I
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:01:00 PM

Posted 03 January 2008 - 10:03 PM

Did fix in step 1. Here is result log...

[File Created- Additional Folder Scans - Non-Microsoft Only]
ADS C:\WINDOWS\system32\temp:98JgMDVwqCpmIYuDn7K78yJ deleted successfully.
ADS C:\WINDOWS\system32\temp:uiSbNOOgsnvTlXRFaTHcE3G deleted successfully.
ADS C:\Documents and Settings\Isabel Perez\Desktop\CLEANUP\StartupList.exe:{4c8cc155-6c1e-11d1-8e41-00c04fb9386d} deleted successfully.
Unable to delete ADS C:\Documents and Settings\Isabel Perez\Local Settings\Temporary Internet Files:5438sdMkbuCKI4juZEWik .
< End of log >
Created on 01032008_220114

I will now reboot and let you know if it worked.

#8 Desperate I

Desperate I
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:01:00 PM

Posted 03 January 2008 - 10:12 PM

still not task bar/desk top after step one.

Tried step 2, opening through task manager and control.exe but nothing opens. There is however a brief flash of the task bar (start button) on the bottom of the screen and then nothing. The task manager remains blank as if no request to open control panel was made. Should I just skip 2 and go to step 3 or do I have a new/different problem by not being able to open the control panel?

#9 OldTimer

OldTimer

    Malware Expert


  • Members
  • 11,092 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:North Carolina
  • Local time:02:00 PM

Posted 04 January 2008 - 09:52 AM

Hi Desperate I. Yes, you can try skipping and going to Step 3 but let's try something else first. If there are no other user accounts installed on this machine then let's try booting to Safe Mode and logging in as the Administrator. You might want to print the previous directions since they won't be available from Safe Mode.

Start in Safe Mode Using the F8 method:
  • Restart the computer.
  • As soon as the BIOS is loaded begin tapping the F8 key until the boot menu appears.
  • Use the arrow keys to select the Safe Mode menu item.
  • Press the Enter key.
Unless you set a password on the Administrator account when Windows XP was installed the password should be blank. Now try to do Step 2 again and see if there is any difference.

Let me know.

Cheers.

OT
I do not respond to PM's requesting help. That's what the forums are here for. Please use them so that others may benefit from your questions and the responses you receive.
OldTimer

Posted Image

#10 Desperate I

Desperate I
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:01:00 PM

Posted 04 January 2008 - 11:36 AM

OT, I think I have another problem. I can't seem to get into safe mode. When I F8 when rebooting, I don't see the page you describe; there is no safe mode option. What I see is a page that has the following:
Please select boot device:
SM-Sony DVD RW DW-U14A
1st Floppy Drive
PM-ST3120022A
Also I do have other user accounts set up on the machine.
Thanks again!

#11 OldTimer

OldTimer

    Malware Expert


  • Members
  • 11,092 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:North Carolina
  • Local time:02:00 PM

Posted 04 January 2008 - 12:39 PM

Hi Desperate I. Try using one of the accounts other than the one you have been using and see what happens.

Cheers.

OT
I do not respond to PM's requesting help. That's what the forums are here for. Please use them so that others may benefit from your questions and the responses you receive.
OldTimer

Posted Image

#12 Desperate I

Desperate I
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:01:00 PM

Posted 04 January 2008 - 01:02 PM

Tried step 2 on all other accounts. Can not open control panel on any. Get a brief flash of the task bar on the bottom of the screen and it seems like it tries to open since there is one more process on the bottom (38) and then it goes back to 37. Also it is briefly listed in the process tab on the task manager and then just goes away.
Tried F8 reboot from all other accounts, nothing. Just get the same message as I told you before. None of the accounts have task bar or desktop.
Would trying msconfig to get into safe mode from the administrator account get me in the safe mode?

#13 OldTimer

OldTimer

    Malware Expert


  • Members
  • 11,092 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:North Carolina
  • Local time:02:00 PM

Posted 04 January 2008 - 01:15 PM

Hi Desperate I. Let's see if there is something that is not showing up in any of the scans.

Download GMER from here:
http://www.majorgeeks.com/GMER_d5198.html

Unzip it to the desktop and start GMER.exe
Click the Rootkit tab and click the Scan button.

Warning! Please do not select the "Show all" checkbox during the scan.

Once done, click the Copy button.
This will copy the results to your clipboard.
Paste the results here in your next reply.

If you're having problems with running GMER.exe, try it in safe mode. This tool works in safe mode. Most other rootkit revealers don't.

OT
I do not respond to PM's requesting help. That's what the forums are here for. Please use them so that others may benefit from your questions and the responses you receive.
OldTimer

Posted Image

#14 Desperate I

Desperate I
  • Topic Starter

  • Members
  • 13 posts
  • OFFLINE
  •  
  • Local time:01:00 PM

Posted 04 January 2008 - 05:59 PM

Still can not get into safe mode, so ran it regular. It took a very long time and then just stopped without a message saying it finished, so I am not sure it is complete. Here is the scan...(I can run it again if it is not enough)
GMER 1.0.13.12551 - http://www.gmer.net
Rootkit scan 2008-01-04 17:58:45
Windows 5.1.2600 Service Pack 2


---- System - GMER 1.0.13 ----

SSDT \??\d:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys ZwOpenProcess
SSDT \??\d:\Program Files\Grisoft\AVG Anti-Spyware 7.5\guard.sys ZwTerminateProcess

Code \SystemRoot\system32\drivers\mfehidk.sys ZwCreateFile
Code \SystemRoot\system32\drivers\mfehidk.sys ZwCreateKey
Code \SystemRoot\system32\drivers\mfehidk.sys ZwCreateProcess
Code \SystemRoot\system32\drivers\mfehidk.sys ZwCreateProcessEx
Code \SystemRoot\system32\drivers\mfehidk.sys ZwDeleteKey
Code \SystemRoot\system32\drivers\mfehidk.sys ZwDeleteValueKey
Code \SystemRoot\system32\drivers\mfehidk.sys ZwEnumerateKey
Code \SystemRoot\system32\drivers\mfehidk.sys ZwEnumerateValueKey
Code \SystemRoot\system32\drivers\mfehidk.sys ZwMapViewOfSection
Code \SystemRoot\system32\drivers\mfehidk.sys ZwNotifyChangeKey
Code \SystemRoot\system32\drivers\mfehidk.sys ZwOpenKey
Code \SystemRoot\system32\drivers\mfehidk.sys ZwOpenThread
Code \SystemRoot\system32\drivers\mfehidk.sys ZwProtectVirtualMemory
Code \SystemRoot\system32\drivers\mfehidk.sys ZwQueryKey
Code \SystemRoot\system32\drivers\mfehidk.sys ZwQueryMultipleValueKey
Code \SystemRoot\system32\drivers\mfehidk.sys ZwQueryValueKey
Code \SystemRoot\system32\drivers\mfehidk.sys ZwRenameKey
Code \SystemRoot\system32\drivers\mfehidk.sys ZwReplaceKey
Code \SystemRoot\system32\drivers\mfehidk.sys ZwRestoreKey
Code \SystemRoot\system32\drivers\mfehidk.sys ZwSetContextThread
Code \SystemRoot\system32\drivers\mfehidk.sys ZwSetInformationProcess
Code \SystemRoot\system32\drivers\mfehidk.sys ZwSetValueKey
Code \SystemRoot\system32\drivers\mfehidk.sys ZwUnloadKey
Code \SystemRoot\system32\drivers\mfehidk.sys ZwUnmapViewOfSection
Code \SystemRoot\system32\drivers\mfehidk.sys ZwYieldExecution
Code \SystemRoot\system32\drivers\mfehidk.sys NtCreateFile
Code \SystemRoot\system32\drivers\mfehidk.sys NtMapViewOfSection
Code \SystemRoot\system32\drivers\mfehidk.sys NtOpenThread
Code \SystemRoot\system32\drivers\mfehidk.sys NtSetInformationProcess

---- Kernel code sections - GMER 1.0.13 ----

.text ntoskrnl.exe!ZwYieldExecution 80509014 7 Bytes JMP EEDBE9AC \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!ZwOpenKey 80571CBC 5 Bytes JMP EEDBEA05 \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!ZwQueryValueKey 80572100 7 Bytes JMP EEDBEA85 \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!ZwCreateKey 80577237 5 Bytes JMP EEDBEA19 \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!ZwQueryKey 80577FAC 7 Bytes JMP EEDBEB2F \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!ZwEnumerateKey 805783AC 7 Bytes JMP EEDBEAC7 \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!ZwProtectVirtualMemory 805793A1 7 Bytes JMP EEDBE996 \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!NtCreateFile 8057D3C4 5 Bytes JMP EEDBE982 \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!ZwUnmapViewOfSection 8057E2A3 5 Bytes JMP EEDBE9D8 \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!NtMapViewOfSection 8057E71B 7 Bytes JMP EEDBE9C2 \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!ZwSetValueKey 8057FF13 7 Bytes JMP EEDBEA6F \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!NtSetInformationProcess 80581B2D 5 Bytes JMP EEDBE95A \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!ZwCreateProcessEx 8058AB10 7 Bytes JMP EEDBE944 \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!ZwEnumerateValueKey 8058F45B 7 Bytes JMP EEDBEAB1 \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!ZwDeleteValueKey 805969F3 7 Bytes JMP EEDBEA59 \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!ZwDeleteKey 80598177 2 Bytes JMP EEDBEA2D \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!ZwDeleteKey + 3 8059817A 4 Bytes [ 82, 6E, 90, 90 ]
PAGE ntoskrnl.exe!NtOpenThread 805B132C 5 Bytes JMP EEDBE91C \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!ZwNotifyChangeKey 805B1B9B 5 Bytes JMP EEDBEAF3 \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!ZwCreateProcess 805C0BF0 5 Bytes JMP EEDBE930 \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!ZwSetContextThread 80633D53 5 Bytes JMP EEDBE96E \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!ZwRestoreKey 8065311C 5 Bytes JMP EEDBEB07 \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!ZwUnloadKey 806533F5 7 Bytes JMP EEDBEADD \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!ZwQueryMultipleValueKey 80653CC4 7 Bytes JMP EEDBEA9B \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!ZwRenameKey 8065410B 7 Bytes JMP EEDBEA43 \SystemRoot\system32\drivers\mfehidk.sys
PAGE ntoskrnl.exe!ZwReplaceKey 806545FE 5 Bytes JMP EEDBEB1B \SystemRoot\system32\drivers\mfehidk.sys

---- User code sections - GMER 1.0.13 ----

.text C:\WINDOWS\system32\services.exe[524] kernel32.dll!CreateFileA 7C801A24 5 Bytes JMP 00F70000
.text C:\WINDOWS\system32\services.exe[524] kernel32.dll!VirtualProtectEx 7C801A5D 5 Bytes JMP 00F70086
.text C:\WINDOWS\system32\services.exe[524] kernel32.dll!VirtualProtect 7C801AD0 5 Bytes JMP 00F70075
.text C:\WINDOWS\system32\services.exe[524] kernel32.dll!LoadLibraryExW 7C801AF1 5 Bytes JMP 00F70F9B
.text C:\WINDOWS\system32\services.exe[524] kernel32.dll!LoadLibraryExA 7C801D4F 5 Bytes JMP 00F70058
.text C:\WINDOWS\system32\services.exe[524] kernel32.dll!LoadLibraryA 7C801D77 5 Bytes JMP 00F70FC0
.text C:\WINDOWS\system32\services.exe[524] kernel32.dll!GetStartupInfoW 7C801E50 5 Bytes JMP 00F700D9
.text C:\WINDOWS\system32\services.exe[524] kernel32.dll!GetStartupInfoA 7C801EEE 5 Bytes JMP 00F700BC
.text C:\WINDOWS\system32\services.exe[524] kernel32.dll!CreateProcessW 7C802332 5 Bytes JMP 00F70105
.text C:\WINDOWS\system32\services.exe[524] kernel32.dll!CreateProcessA 7C802367 5 Bytes JMP 00F700F4
.text C:\WINDOWS\system32\services.exe[524] kernel32.dll!GetProcAddress 7C80ADA0 5 Bytes JMP 00F70F5B
.text C:\WINDOWS\system32\services.exe[524] kernel32.dll!LoadLibraryW 7C80AE4B 5 Bytes JMP 00F70047
.text C:\WINDOWS\system32\services.exe[524] kernel32.dll!CreateFileW 7C810760 5 Bytes JMP 00F7001B
.text C:\WINDOWS\system32\services.exe[524] kernel32.dll!CreatePipe 7C81E0C7 5 Bytes JMP 00F700AB
.text C:\WINDOWS\system32\services.exe[524] kernel32.dll!CreateNamedPipeW 7C82F0D4 5 Bytes JMP 00F70FDB
.text C:\WINDOWS\system32\services.exe[524] kernel32.dll!CreateNamedPipeA 7C85FC74 5 Bytes JMP 00F70036
.text C:\WINDOWS\system32\services.exe[524] kernel32.dll!WinExec 7C86136D 5 Bytes JMP 00F70F76
.text C:\WINDOWS\system32\services.exe[524] ADVAPI32.dll!RegOpenKeyExW 77DD6A78 5 Bytes JMP 00960FC0
.text C:\WINDOWS\system32\services.exe[524] ADVAPI32.dll!RegCreateKeyExW 77DD7535 5 Bytes JMP 00960058
.text C:\WINDOWS\system32\services.exe[524] ADVAPI32.dll!RegOpenKeyExA 77DD761B 5 Bytes JMP 00960011
.text C:\WINDOWS\system32\services.exe[524] ADVAPI32.dll!RegOpenKeyW 77DD770F 5 Bytes JMP 00960FDB
.text C:\WINDOWS\system32\services.exe[524] ADVAPI32.dll!RegCreateKeyExA 77DDEAF4 5 Bytes JMP 00960F9B
.text C:\WINDOWS\system32\services.exe[524] ADVAPI32.dll!RegCreateKeyW 77DF8F7D 5 Bytes JMP 00960047
.text C:\WINDOWS\system32\services.exe[524] ADVAPI32.dll!RegOpenKeyA 77DFC41B 5 Bytes JMP 00960000
.text C:\WINDOWS\system32\services.exe[524] ADVAPI32.dll!RegCreateKeyA 77DFD5BB 5 Bytes JMP 0096002C
.text C:\WINDOWS\system32\services.exe[524] WS2_32.dll!socket 71AB3B91 5 Bytes JMP 00930FE5
.text C:\WINDOWS\system32\services.exe[524] WS2_32.dll!bind 71AB3E00 5 Bytes JMP 00930FD4
.text C:\WINDOWS\system32\lsass.exe[536] kernel32.dll!CreateFileA 7C801A24 5 Bytes JMP 00F00FEF
.text C:\WINDOWS\system32\lsass.exe[536] kernel32.dll!VirtualProtectEx 7C801A5D 5 Bytes JMP 00F00073
.text C:\WINDOWS\system32\lsass.exe[536] kernel32.dll!VirtualProtect 7C801AD0 5 Bytes JMP 00F00062
.text C:\WINDOWS\system32\lsass.exe[536] kernel32.dll!LoadLibraryExW 7C801AF1 5 Bytes JMP 00F00051
.text C:\WINDOWS\system32\lsass.exe[536] kernel32.dll!LoadLibraryExA 7C801D4F 5 Bytes JMP 00F00040
.text C:\WINDOWS\system32\lsass.exe[536] kernel32.dll!LoadLibraryA 7C801D77 5 Bytes JMP 00F00FB9
.text C:\WINDOWS\system32\lsass.exe[536] kernel32.dll!GetStartupInfoW 7C801E50 5 Bytes JMP 00F00F41
.text C:\WINDOWS\system32\lsass.exe[536] kernel32.dll!GetStartupInfoA 7C801EEE 5 Bytes JMP 00F00F52
.text C:\WINDOWS\system32\lsass.exe[536] kernel32.dll!CreateProcessW 7C802332 5 Bytes JMP 00F00F26
.text C:\WINDOWS\system32\lsass.exe[536] kernel32.dll!CreateProcessA 7C802367 5 Bytes JMP 00F000BF
.text C:\WINDOWS\system32\lsass.exe[536] kernel32.dll!GetProcAddress 7C80ADA0 5 Bytes JMP 00F00F15
.text C:\WINDOWS\system32\lsass.exe[536] kernel32.dll!LoadLibraryW 7C80AE4B 5 Bytes JMP 00F00FA8
.text C:\WINDOWS\system32\lsass.exe[536] kernel32.dll!CreateFileW 7C810760 5 Bytes JMP 00F00000
.text C:\WINDOWS\system32\lsass.exe[536] kernel32.dll!CreatePipe 7C81E0C7 5 Bytes JMP 00F00F6D
.text C:\WINDOWS\system32\lsass.exe[536] kernel32.dll!CreateNamedPipeW 7C82F0D4 5 Bytes JMP 00F00FCA
.text C:\WINDOWS\system32\lsass.exe[536] kernel32.dll!CreateNamedPipeA 7C85FC74 5 Bytes JMP 00F0001B
.text C:\WINDOWS\system32\lsass.exe[536] kernel32.dll!WinExec 7C86136D 5 Bytes JMP 00F0009A
.text C:\WINDOWS\system32\lsass.exe[536] ADVAPI32.dll!RegOpenKeyExW 77DD6A78 5 Bytes JMP 00EF0FA8
.text C:\WINDOWS\system32\lsass.exe[536] ADVAPI32.dll!RegCreateKeyExW 77DD7535 5 Bytes JMP 00EF0F50
.text C:\WINDOWS\system32\lsass.exe[536] ADVAPI32.dll!RegOpenKeyExA 77DD761B 5 Bytes JMP 00EF0FC3
.text C:\WINDOWS\system32\lsass.exe[536] ADVAPI32.dll!RegOpenKeyW 77DD770F 5 Bytes JMP 00EF0FDE
.text C:\WINDOWS\system32\lsass.exe[536] ADVAPI32.dll!RegCreateKeyExA 77DDEAF4 5 Bytes JMP 00EF0F61
.text C:\WINDOWS\system32\lsass.exe[536] ADVAPI32.dll!RegCreateKeyW 77DF8F7D 5 Bytes JMP 00EF0F7C
.text C:\WINDOWS\system32\lsass.exe[536] ADVAPI32.dll!RegOpenKeyA 77DFC41B 5 Bytes JMP 00EF0FEF
.text C:\WINDOWS\system32\lsass.exe[536] ADVAPI32.dll!RegCreateKeyA 77DFD5BB 5 Bytes JMP 00EF0F8D
.text C:\WINDOWS\system32\lsass.exe[536] WS2_32.dll!socket 71AB3B91 5 Bytes JMP 00ED0000
.text C:\WINDOWS\system32\lsass.exe[536] WS2_32.dll!bind 71AB3E00 5 Bytes JMP 00ED001B
.text C:\WINDOWS\system32\svchost.exe[696] kernel32.dll!CreateFileA 7C801A24 5 Bytes JMP 00820FE5
.text C:\WINDOWS\system32\svchost.exe[696] kernel32.dll!VirtualProtectEx 7C801A5D 5 Bytes JMP 00820F43
.text C:\WINDOWS\system32\svchost.exe[696] kernel32.dll!VirtualProtect 7C801AD0 5 Bytes JMP 00820038
.text C:\WINDOWS\system32\svchost.exe[696] kernel32.dll!LoadLibraryExW 7C801AF1 5 Bytes JMP 0082001B
.text C:\WINDOWS\system32\svchost.exe[696] kernel32.dll!LoadLibraryExA 7C801D4F 5 Bytes JMP 00820F5E
.text C:\WINDOWS\system32\svchost.exe[696] kernel32.dll!LoadLibraryA 7C801D77 5 Bytes JMP 00820F8D
.text C:\WINDOWS\system32\svchost.exe[696] kernel32.dll!GetStartupInfoW 7C801E50 5 Bytes JMP 0082007A
.text C:\WINDOWS\system32\svchost.exe[696] kernel32.dll!GetStartupInfoA 7C801EEE 5 Bytes JMP 0082005D
.text C:\WINDOWS\system32\svchost.exe[696] kernel32.dll!CreateProcessW 7C802332 5 Bytes JMP 00820F0D
.text C:\WINDOWS\system32\svchost.exe[696] kernel32.dll!CreateProcessA 7C802367 5 Bytes JMP 008200A6
.text C:\WINDOWS\system32\svchost.exe[696] kernel32.dll!GetProcAddress 7C80ADA0 5 Bytes JMP 00820EFC
.text C:\WINDOWS\system32\svchost.exe[696] kernel32.dll!LoadLibraryW 7C80AE4B 5 Bytes JMP 0082000A
.text C:\WINDOWS\system32\svchost.exe[696] kernel32.dll!CreateFileW 7C810760 5 Bytes JMP 00820FD4
.text C:\WINDOWS\system32\svchost.exe[696] kernel32.dll!CreatePipe 7C81E0C7 5 Bytes JMP 00820F32
.text C:\WINDOWS\system32\svchost.exe[696] kernel32.dll!CreateNamedPipeW 7C82F0D4 5 Bytes JMP 00820FA8
.text C:\WINDOWS\system32\svchost.exe[696] kernel32.dll!CreateNamedPipeA 7C85FC74 5 Bytes JMP 00820FB9
.text C:\WINDOWS\system32\svchost.exe[696] kernel32.dll!WinExec 7C86136D 5 Bytes JMP 0082008B
.text C:\WINDOWS\system32\svchost.exe[696] ADVAPI32.dll!RegOpenKeyExW 77DD6A78 5 Bytes JMP 00810022
.text C:\WINDOWS\system32\svchost.exe[696] ADVAPI32.dll!RegCreateKeyExW 77DD7535 5 Bytes JMP 0081006C
.text C:\WINDOWS\system32\svchost.exe[696] ADVAPI32.dll!RegOpenKeyExA 77DD761B 5 Bytes JMP 00810011
.text C:\WINDOWS\system32\svchost.exe[696] ADVAPI32.dll!RegOpenKeyW 77DD770F 5 Bytes JMP 00810000
.text C:\WINDOWS\system32\svchost.exe[696] ADVAPI32.dll!RegCreateKeyExA 77DDEAF4 5 Bytes JMP 00810FA5
.text C:\WINDOWS\system32\svchost.exe[696] ADVAPI32.dll!RegCreateKeyW 77DF8F7D 5 Bytes JMP 00810FB6
.text C:\WINDOWS\system32\svchost.exe[696] ADVAPI32.dll!RegOpenKeyA 77DFC41B 5 Bytes JMP 00810FE5
.text C:\WINDOWS\system32\svchost.exe[696] ADVAPI32.dll!RegCreateKeyA 77DFD5BB 5 Bytes JMP 00810033
.text C:\WINDOWS\system32\svchost.exe[696] WS2_32.dll!socket 71AB3B91 5 Bytes JMP 007F0000
.text C:\WINDOWS\system32\svchost.exe[696] WS2_32.dll!bind 71AB3E00 5 Bytes JMP 007F0011
.text C:\WINDOWS\system32\svchost.exe[744] kernel32.dll!CreateFileA 7C801A24 5 Bytes JMP 00950FEF
.text C:\WINDOWS\system32\svchost.exe[744] kernel32.dll!VirtualProtectEx 7C801A5D 5 Bytes JMP 0095005B
.text C:\WINDOWS\system32\svchost.exe[744] kernel32.dll!VirtualProtect 7C801AD0 5 Bytes JMP 00950F66
.text C:\WINDOWS\system32\svchost.exe[744] kernel32.dll!LoadLibraryExW 7C801AF1 5 Bytes JMP 00950F83
.text C:\WINDOWS\system32\svchost.exe[744] kernel32.dll!LoadLibraryExA 7C801D4F 5 Bytes JMP 00950F94
.text C:\WINDOWS\system32\svchost.exe[744] kernel32.dll!LoadLibraryA 7C801D77 5 Bytes JMP 00950FCA
.text C:\WINDOWS\system32\svchost.exe[744] kernel32.dll!GetStartupInfoW 7C801E50 5 Bytes JMP 00950089
.text C:\WINDOWS\system32\svchost.exe[744] kernel32.dll!GetStartupInfoA 7C801EEE 5 Bytes JMP 00950078
.text C:\WINDOWS\system32\svchost.exe[744] kernel32.dll!CreateProcessW 7C802332 5 Bytes JMP 0095009A
.text C:\WINDOWS\system32\svchost.exe[744] kernel32.dll!CreateProcessA 7C802367 5 Bytes JMP 00950F01
.text C:\WINDOWS\system32\svchost.exe[744] kernel32.dll!GetProcAddress 7C80ADA0 5 Bytes JMP 009500AB
.text C:\WINDOWS\system32\svchost.exe[744] kernel32.dll!LoadLibraryW 7C80AE4B 5 Bytes JMP 00950FB9
.text C:\WINDOWS\system32\svchost.exe[744] kernel32.dll!CreateFileW 7C810760 5 Bytes JMP 00950014
.text C:\WINDOWS\system32\svchost.exe[744] kernel32.dll!CreatePipe 7C81E0C7 5 Bytes JMP 00950F41
.text C:\WINDOWS\system32\svchost.exe[744] kernel32.dll!CreateNamedPipeW 7C82F0D4 5 Bytes JMP 00950040
.text C:\WINDOWS\system32\svchost.exe[744] kernel32.dll!CreateNamedPipeA 7C85FC74 5 Bytes JMP 00950025
.text C:\WINDOWS\system32\svchost.exe[744] kernel32.dll!WinExec 7C86136D 5 Bytes JMP 00950F26
.text C:\WINDOWS\system32\svchost.exe[744] ADVAPI32.dll!RegOpenKeyExW 77DD6A78 5 Bytes JMP 0094002C
.text C:\WINDOWS\system32\svchost.exe[744] ADVAPI32.dll!RegCreateKeyExW 77DD7535 5 Bytes JMP 00940F8A
.text C:\WINDOWS\system32\svchost.exe[744] ADVAPI32.dll!RegOpenKeyExA 77DD761B 5 Bytes JMP 0094001B
.text C:\WINDOWS\system32\svchost.exe[744] ADVAPI32.dll!RegOpenKeyW 77DD770F 5 Bytes JMP 0094000A
.text C:\WINDOWS\system32\svchost.exe[744] ADVAPI32.dll!RegCreateKeyExA 77DDEAF4 5 Bytes JMP 00940F9B
.text C:\WINDOWS\system32\svchost.exe[744] ADVAPI32.dll!RegCreateKeyW 77DF8F7D 5 Bytes JMP 00940FB6
.text C:\WINDOWS\system32\svchost.exe[744] ADVAPI32.dll!RegOpenKeyA 77DFC41B 5 Bytes JMP 00940FEF
.text C:\WINDOWS\system32\svchost.exe[744] ADVAPI32.dll!RegCreateKeyA 77DFD5BB 5 Bytes JMP 0094003D
.text C:\WINDOWS\system32\svchost.exe[744] WS2_32.dll!socket 71AB3B91 5 Bytes JMP 00920FEF
.text C:\WINDOWS\system32\svchost.exe[744] WS2_32.dll!bind 71AB3E00 5 Bytes JMP 0092000A
.text C:\WINDOWS\System32\svchost.exe[812] kernel32.dll!CreateFileA 7C801A24 5 Bytes JMP 01A90000
.text C:\WINDOWS\System32\svchost.exe[812] kernel32.dll!VirtualProtectEx 7C801A5D 5 Bytes JMP 01A90F8A
.text C:\WINDOWS\System32\svchost.exe[812] kernel32.dll!VirtualProtect 7C801AD0 5 Bytes JMP 01A9007F
.text C:\WINDOWS\System32\svchost.exe[812] kernel32.dll!LoadLibraryExW 7C801AF1 5 Bytes JMP 01A90FA5
.text C:\WINDOWS\System32\svchost.exe[812] kernel32.dll!LoadLibraryExA 7C801D4F 5 Bytes JMP 01A90062
.text C:\WINDOWS\System32\svchost.exe[812] kernel32.dll!LoadLibraryA 7C801D77 5 Bytes JMP 01A90FE5
.text C:\WINDOWS\System32\svchost.exe[812] kernel32.dll!GetStartupInfoW 7C801E50 5 Bytes JMP 01A90F6D
.text C:\WINDOWS\System32\svchost.exe[812] kernel32.dll!GetStartupInfoA 7C801EEE 3 Bytes JMP 01A900B5
.text C:\WINDOWS\System32\svchost.exe[812] kernel32.dll!GetStartupInfoA + 4 7C801EF2 1 Byte [ 85 ]
.text C:\WINDOWS\System32\svchost.exe[812] kernel32.dll!CreateProcessW 7C802332 5 Bytes JMP 01A900DA
.text C:\WINDOWS\System32\svchost.exe[812] kernel32.dll!CreateProcessA 7C802367 5 Bytes JMP 01A90F41
.text C:\WINDOWS\System32\svchost.exe[812] kernel32.dll!GetProcAddress 7C80ADA0 5 Bytes JMP 01A900EB
.text C:\WINDOWS\System32\svchost.exe[812] kernel32.dll!LoadLibraryW 7C80AE4B 5 Bytes JMP 01A90FC0
.text C:\WINDOWS\System32\svchost.exe[812] kernel32.dll!CreateFileW 7C810760 5 Bytes JMP 01A90025
.text C:\WINDOWS\System32\svchost.exe[812] kernel32.dll!CreatePipe 7C81E0C7 5 Bytes JMP 01A900A4
.text C:\WINDOWS\System32\svchost.exe[812] kernel32.dll!CreateNamedPipeW 7C82F0D4 5 Bytes JMP 01A90051
.text C:\WINDOWS\System32\svchost.exe[812] kernel32.dll!CreateNamedPipeA 7C85FC74 5 Bytes JMP 01A90036
.text C:\WINDOWS\System32\svchost.exe[812] kernel32.dll!WinExec 7C86136D 5 Bytes JMP 01A90F5C
.text C:\WINDOWS\System32\svchost.exe[812] ADVAPI32.dll!RegOpenKeyExW 77DD6A78 5 Bytes JMP 01A80FC3
.text C:\WINDOWS\System32\svchost.exe[812] ADVAPI32.dll!RegCreateKeyExW 77DD7535 5 Bytes JMP 01A80F7C
.text C:\WINDOWS\System32\svchost.exe[812] ADVAPI32.dll!RegOpenKeyExA 77DD761B 5 Bytes JMP 01A80FD4
.text C:\WINDOWS\System32\svchost.exe[812] ADVAPI32.dll!RegOpenKeyW 77DD770F 5 Bytes JMP 01A8000A
.text C:\WINDOWS\System32\svchost.exe[812] ADVAPI32.dll!RegCreateKeyExA 77DDEAF4 5 Bytes JMP 01A80F97
.text C:\WINDOWS\System32\svchost.exe[812] ADVAPI32.dll!RegCreateKeyW 77DF8F7D 5 Bytes JMP 01A80FB2
.text C:\WINDOWS\System32\svchost.exe[812] ADVAPI32.dll!RegOpenKeyA 77DFC41B 5 Bytes JMP 01A80FEF
.text C:\WINDOWS\System32\svchost.exe[812] ADVAPI32.dll!RegCreateKeyA 77DFD5BB 5 Bytes JMP 01A8002F
.text C:\WINDOWS\System32\svchost.exe[812] WS2_32.dll!socket 71AB3B91 5 Bytes JMP 01A6000A
.text C:\WINDOWS\System32\svchost.exe[812] WS2_32.dll!bind 71AB3E00 5 Bytes JMP 01A60FEF
.text C:\WINDOWS\System32\svchost.exe[812] WININET.dll!InternetOpenA 42C2C8A1 5 Bytes JMP 01A50000
.text C:\WINDOWS\System32\svchost.exe[812] WININET.dll!InternetOpenW 42C2CED1 5 Bytes JMP 01A50011
.text C:\WINDOWS\System32\svchost.exe[812] WININET.dll!InternetOpenUrlA 42C30BFA 5 Bytes JMP 01A50022
.text C:\WINDOWS\System32\svchost.exe[812] WININET.dll!InternetOpenUrlW 42C7AC51 5 Bytes JMP 01A50033
.text C:\WINDOWS\System32\svchost.exe[972] kernel32.dll!CreateFileA 7C801A24 5 Bytes JMP 007A0FEF
.text C:\WINDOWS\System32\svchost.exe[972] kernel32.dll!VirtualProtectEx 7C801A5D 5 Bytes JMP 007A008A
.text C:\WINDOWS\System32\svchost.exe[972] kernel32.dll!VirtualProtect 7C801AD0 5 Bytes JMP 007A0079
.text C:\WINDOWS\System32\svchost.exe[972] kernel32.dll!LoadLibraryExW 7C801AF1 5 Bytes JMP 007A005E
.text C:\WINDOWS\System32\svchost.exe[972] kernel32.dll!LoadLibraryExA 7C801D4F 5 Bytes JMP 007A0FAB
.text C:\WINDOWS\System32\svchost.exe[972] kernel32.dll!LoadLibraryA 7C801D77 5 Bytes JMP 007A0FBC
.text C:\WINDOWS\System32\svchost.exe[972] kernel32.dll!GetStartupInfoW 7C801E50 5 Bytes JMP 007A00B8
.text C:\WINDOWS\System32\svchost.exe[972] kernel32.dll!GetStartupInfoA 7C801EEE 5 Bytes JMP 007A009B
.text C:\WINDOWS\System32\svchost.exe[972] kernel32.dll!CreateProcessW 7C802332 5 Bytes JMP 007A00EE
.text C:\WINDOWS\System32\svchost.exe[972] kernel32.dll!CreateProcessA 7C802367 5 Bytes JMP 007A0F55
.text C:\WINDOWS\System32\svchost.exe[972] kernel32.dll!GetProcAddress 7C80ADA0 5 Bytes JMP 007A0F3A
.text C:\WINDOWS\System32\svchost.exe[972] kernel32.dll!LoadLibraryW 7C80AE4B 5 Bytes JMP 007A0043
.text C:\WINDOWS\System32\svchost.exe[972] kernel32.dll!CreateFileW 7C810760 5 Bytes JMP 007A000A
.text C:\WINDOWS\System32\svchost.exe[972] kernel32.dll!CreatePipe 7C81E0C7 5 Bytes JMP 007A0F7A
.text C:\WINDOWS\System32\svchost.exe[972] kernel32.dll!CreateNamedPipeW 7C82F0D4 5 Bytes JMP 007A0FCD
.text C:\WINDOWS\System32\svchost.exe[972] kernel32.dll!CreateNamedPipeA 7C85FC74 5 Bytes JMP 007A0FDE
.text C:\WINDOWS\System32\svchost.exe[972] kernel32.dll!WinExec 7C86136D 5 Bytes JMP 007A00D3
.text C:\WINDOWS\System32\svchost.exe[972] ADVAPI32.dll!RegOpenKeyExW 77DD6A78 5 Bytes JMP 0079002F
.text C:\WINDOWS\System32\svchost.exe[972] ADVAPI32.dll!RegCreateKeyExW 77DD7535 5 Bytes JMP 00790FA8
.text C:\WINDOWS\System32\svchost.exe[972] ADVAPI32.dll!RegOpenKeyExA 77DD761B 5 Bytes JMP 00790014
.text C:\WINDOWS\System32\svchost.exe[972] ADVAPI32.dll!RegOpenKeyW 77DD770F 5 Bytes JMP 00790FDE
.text C:\WINDOWS\System32\svchost.exe[972] ADVAPI32.dll!RegCreateKeyExA 77DDEAF4 5 Bytes JMP 00790065
.text C:\WINDOWS\System32\svchost.exe[972] ADVAPI32.dll!RegCreateKeyW 77DF8F7D 5 Bytes JMP 00790FCD
.text C:\WINDOWS\System32\svchost.exe[972] ADVAPI32.dll!RegOpenKeyA 77DFC41B 5 Bytes JMP 00790FEF
.text C:\WINDOWS\System32\svchost.exe[972] ADVAPI32.dll!RegCreateKeyA 77DFD5BB 5 Bytes JMP 0079004A
.text C:\WINDOWS\System32\svchost.exe[972] WS2_32.dll!socket 71AB3B91 5 Bytes JMP 00770000
.text C:\WINDOWS\System32\svchost.exe[972] WS2_32.dll!bind 71AB3E00 5 Bytes JMP 00770FE5
.text C:\WINDOWS\System32\svchost.exe[1036] kernel32.dll!CreateFileA 7C801A24 5 Bytes JMP 0099000A
.text C:\WINDOWS\System32\svchost.exe[1036] kernel32.dll!VirtualProtectEx 7C801A5D 5 Bytes JMP 009900A4
.text C:\WINDOWS\System32\svchost.exe[1036] kernel32.dll!VirtualProtect 7C801AD0 5 Bytes JMP 00990FA5
.text C:\WINDOWS\System32\svchost.exe[1036] kernel32.dll!LoadLibraryExW 7C801AF1 5 Bytes JMP 00990089
.text C:\WINDOWS\System32\svchost.exe[1036] kernel32.dll!LoadLibraryExA 7C801D4F 5 Bytes JMP 0099006C
.text C:\WINDOWS\System32\svchost.exe[1036] kernel32.dll!LoadLibraryA 7C801D77 5 Bytes JMP 0099003D
.text C:\WINDOWS\System32\svchost.exe[1036] kernel32.dll!GetStartupInfoW 7C801E50 5 Bytes JMP 00990F8A
.text C:\WINDOWS\System32\svchost.exe[1036] kernel32.dll!GetStartupInfoA 7C801EEE 5 Bytes JMP 009900D2
.text C:\WINDOWS\System32\svchost.exe[1036] kernel32.dll!CreateProcessW 7C802332 5 Bytes JMP 00990F4A
.text C:\WINDOWS\System32\svchost.exe[1036] kernel32.dll!CreateProcessA 7C802367 5 Bytes JMP 00990F65
.text C:\WINDOWS\System32\svchost.exe[1036] kernel32.dll!GetProcAddress 7C80ADA0 5 Bytes JMP 009900FE
.text C:\WINDOWS\System32\svchost.exe[1036] kernel32.dll!LoadLibraryW 7C80AE4B 5 Bytes JMP 00990FC0
.text C:\WINDOWS\System32\svchost.exe[1036] kernel32.dll!CreateFileW 7C810760 5 Bytes JMP 0099001B
.text C:\WINDOWS\System32\svchost.exe[1036] kernel32.dll!CreatePipe 7C81E0C7 5 Bytes JMP 009900B5
.text C:\WINDOWS\System32\svchost.exe[1036] kernel32.dll!CreateNamedPipeW 7C82F0D4 5 Bytes JMP 00990FDB
.text C:\WINDOWS\System32\svchost.exe[1036] kernel32.dll!CreateNamedPipeA 7C85FC74 5 Bytes JMP 0099002C
.text C:\WINDOWS\System32\svchost.exe[1036] kernel32.dll!WinExec 7C86136D 5 Bytes JMP 009900ED
.text C:\WINDOWS\System32\svchost.exe[1036] ADVAPI32.dll!RegOpenKeyExW 77DD6A78 5 Bytes JMP 0072000A
.text C:\WINDOWS\System32\svchost.exe[1036] ADVAPI32.dll!RegCreateKeyExW 77DD7535 5 Bytes JMP 00720040
.text C:\WINDOWS\System32\svchost.exe[1036] ADVAPI32.dll!RegOpenKeyExA 77DD761B 5 Bytes JMP 00720FB9
.text C:\WINDOWS\System32\svchost.exe[1036] ADVAPI32.dll!RegOpenKeyW 77DD770F 5 Bytes JMP 00720FD4
.text C:\WINDOWS\System32\svchost.exe[1036] ADVAPI32.dll!RegCreateKeyExA 77DDEAF4 5 Bytes JMP 00720F8D
.text C:\WINDOWS\System32\svchost.exe[1036] ADVAPI32.dll!RegCreateKeyW 77DF8F7D 5 Bytes JMP 00720F9E
.text C:\WINDOWS\System32\svchost.exe[1036] ADVAPI32.dll!RegOpenKeyA 77DFC41B 5 Bytes JMP 00720FE5
.text C:\WINDOWS\System32\svchost.exe[1036] ADVAPI32.dll!RegCreateKeyA 77DFD5BB 5 Bytes JMP 0072001B
.text C:\WINDOWS\System32\svchost.exe[1036] WS2_32.dll!socket 71AB3B91 5 Bytes JMP 0070000A
.text C:\WINDOWS\System32\svchost.exe[1036] WS2_32.dll!bind 71AB3E00 5 Bytes JMP 0070001B
.text C:\WINDOWS\System32\svchost.exe[1036] WININET.dll!InternetOpenA 42C2C8A1 5 Bytes JMP 006F0FEF
.text C:\WINDOWS\System32\svchost.exe[1036] WININET.dll!InternetOpenW 42C2CED1 5 Bytes JMP 006F0FD4
.text C:\WINDOWS\System32\svchost.exe[1036] WININET.dll!InternetOpenUrlA 42C30BFA 5 Bytes JMP 006F000A
.text C:\WINDOWS\System32\svchost.exe[1036] WININET.dll!InternetOpenUrlW 42C7AC51 5 Bytes JMP 006F0FB9
.text D:\WINZIP\winzip32.exe[1468] kernel32.dll!CreateFileA 7C801A24 5 Bytes JMP 00260000
.text D:\WINZIP\winzip32.exe[1468] kernel32.dll!VirtualProtectEx 7C801A5D 5 Bytes JMP 00260086
.text D:\WINZIP\winzip32.exe[1468] kernel32.dll!VirtualProtect 7C801AD0 5 Bytes JMP 00260075
.text D:\WINZIP\winzip32.exe[1468] kernel32.dll!LoadLibraryExW 7C801AF1 5 Bytes JMP 00260064
.text D:\WINZIP\winzip32.exe[1468] kernel32.dll!LoadLibraryExA 7C801D4F 5 Bytes JMP 00260047
.text D:\WINZIP\winzip32.exe[1468] kernel32.dll!LoadLibraryA 7C801D77 5 Bytes JMP 00260FAF
.text D:\WINZIP\winzip32.exe[1468] kernel32.dll!GetStartupInfoW 7C801E50 5 Bytes JMP 00260F62
.text D:\WINZIP\winzip32.exe[1468] kernel32.dll!GetStartupInfoA 7C801EEE 5 Bytes JMP 002600A8
.text D:\WINZIP\winzip32.exe[1468] kernel32.dll!CreateProcessW 7C802332 5 Bytes JMP 002600D6
.text D:\WINZIP\winzip32.exe[1468] kernel32.dll!CreateProcessA 7C802367 5 Bytes JMP 00260F3D
.text D:\WINZIP\winzip32.exe[1468] kernel32.dll!GetProcAddress 7C80ADA0 5 Bytes JMP 002600E7
.text D:\WINZIP\winzip32.exe[1468] kernel32.dll!LoadLibraryW 7C80AE4B 5 Bytes JMP 0026002C
.text D:\WINZIP\winzip32.exe[1468] kernel32.dll!CreateFileW 7C810760 5 Bytes JMP 00260FE5
.text D:\WINZIP\winzip32.exe[1468] kernel32.dll!CreatePipe 7C81E0C7 5 Bytes JMP 00260097
.text D:\WINZIP\winzip32.exe[1468] kernel32.dll!CreateNamedPipeW 7C82F0D4 5 Bytes JMP 0026001B
.text D:\WINZIP\winzip32.exe[1468] kernel32.dll!CreateNamedPipeA 7C85FC74 5 Bytes JMP 00260FCA
.text D:\WINZIP\winzip32.exe[1468] kernel32.dll!WinExec 7C86136D 5 Bytes JMP 002600C5
.text D:\WINZIP\winzip32.exe[1468] ADVAPI32.dll!RegOpenKeyExW 77DD6A78 5 Bytes JMP 00340FD4
.text D:\WINZIP\winzip32.exe[1468] ADVAPI32.dll!RegCreateKeyExW 77DD7535 5 Bytes JMP 00340F8D
.text D:\WINZIP\winzip32.exe[1468] ADVAPI32.dll!RegOpenKeyExA 77DD761B 5 Bytes JMP 00340FEF
.text D:\WINZIP\winzip32.exe[1468] ADVAPI32.dll!RegOpenKeyW 77DD770F 5 Bytes JMP 0034001B
.text D:\WINZIP\winzip32.exe[1468] ADVAPI32.dll!RegCreateKeyExA 77DDEAF4 5 Bytes JMP 00340FA8
.text D:\WINZIP\winzip32.exe[1468] ADVAPI32.dll!RegCreateKeyW 77DF8F7D 5 Bytes JMP 00340FB9
.text D:\WINZIP\winzip32.exe[1468] ADVAPI32.dll!RegOpenKeyA 77DFC41B 5 Bytes JMP 0034000A
.text D:\WINZIP\winzip32.exe[1468] ADVAPI32.dll!RegCreateKeyA 77DFD5BB 5 Bytes JMP 00340040
.text c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe[1728] kernel32.dll!LoadLibraryA 7C801D77 5 Bytes JMP 0041C340 c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
.text c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe[1728] kernel32.dll!LoadLibraryW 7C80AE4B 5 Bytes JMP 0041C3C0 c:\PROGRA~1\COMMON~1\mcafee\mcproxy\mcproxy.exe
.text C:\WINDOWS\System32\svchost.exe[2004] kernel32.dll!CreateFileA 7C801A24 5 Bytes JMP 001A0FEF
.text C:\WINDOWS\System32\svchost.exe[2004] kernel32.dll!VirtualProtectEx 7C801A5D 5 Bytes JMP 001A0F69
.text C:\WINDOWS\System32\svchost.exe[2004] kernel32.dll!VirtualProtect 7C801AD0 5 Bytes JMP 001A0F7A
.text C:\WINDOWS\System32\svchost.exe[2004] kernel32.dll!LoadLibraryExW 7C801AF1 5 Bytes JMP 001A0FA1
.text C:\WINDOWS\System32\svchost.exe[2004] kernel32.dll!LoadLibraryExA 7C801D4F 5 Bytes JMP 001A005E
.text C:\WINDOWS\System32\svchost.exe[2004] kernel32.dll!LoadLibraryA 7C801D77 5 Bytes JMP 001A0FC3
.text C:\WINDOWS\System32\svchost.exe[2004] kernel32.dll!GetStartupInfoW 7C801E50 5 Bytes JMP 001A0F4C
.text C:\WINDOWS\System32\svchost.exe[2004] kernel32.dll!GetStartupInfoA 7C801EEE 5 Bytes JMP 001A0094
.text C:\WINDOWS\System32\svchost.exe[2004] kernel32.dll!CreateProcessW 7C802332 5 Bytes JMP 001A00B6
.text C:\WINDOWS\System32\svchost.exe[2004] kernel32.dll!CreateProcessA 7C802367 5 Bytes JMP 001A0F1D
.text C:\WINDOWS\System32\svchost.exe[2004] kernel32.dll!GetProcAddress 7C80ADA0 5 Bytes JMP 001A0F02
.text C:\WINDOWS\System32\svchost.exe[2004] kernel32.dll!LoadLibraryW 7C80AE4B 5 Bytes JMP 001A0FB2
.text C:\WINDOWS\System32\svchost.exe[2004] kernel32.dll!CreateFileW 7C810760 5 Bytes JMP 001A000A
.text C:\WINDOWS\System32\svchost.exe[2004] kernel32.dll!CreatePipe 7C81E0C7 5 Bytes JMP 001A0079
.text C:\WINDOWS\System32\svchost.exe[2004] kernel32.dll!CreateNamedPipeW 7C82F0D4 5 Bytes JMP 001A002F
.text C:\WINDOWS\System32\svchost.exe[2004] kernel32.dll!CreateNamedPipeA 7C85FC74 5 Bytes JMP 001A0FDE
.text C:\WINDOWS\System32\svchost.exe[2004] kernel32.dll!WinExec 7C86136D 5 Bytes JMP 001A00A5
.text C:\WINDOWS\System32\svchost.exe[2004] ADVAPI32.dll!RegOpenKeyExW 77DD6A78 5 Bytes JMP 0028002C
.text C:\WINDOWS\System32\svchost.exe[2004] ADVAPI32.dll!RegCreateKeyExW 77DD7535 5 Bytes JMP 00280073
.text C:\WINDOWS\System32\svchost.exe[2004] ADVAPI32.dll!RegOpenKeyExA 77DD761B 5 Bytes JMP 0028001B
.text C:\WINDOWS\System32\svchost.exe[2004] ADVAPI32.dll!RegOpenKeyW 77DD770F 5 Bytes JMP 0028000A
.text C:\WINDOWS\System32\svchost.exe[2004] ADVAPI32.dll!RegCreateKeyExA 77DDEAF4 5 Bytes JMP 00280062
.text C:\WINDOWS\System32\svchost.exe[2004] ADVAPI32.dll!RegCreateKeyW 77DF8F7D 5 Bytes JMP 00280047
.text C:\WINDOWS\System32\svchost.exe[2004] ADVAPI32.dll!RegOpenKeyA 77DFC41B 5 Bytes JMP 00280FEF
.text C:\WINDOWS\System32\svchost.exe[2004] ADVAPI32.dll!RegCreateKeyA 77DFD5BB 5 Bytes JMP 00280FC0
.text C:\WINDOWS\System32\svchost.exe[3272] kernel32.dll!CreateFileA 7C801A24 5 Bytes JMP 001A0FE5
.text C:\WINDOWS\System32\svchost.exe[3272] kernel32.dll!VirtualProtectEx 7C801A5D 5 Bytes JMP 001A0F1F
.text C:\WINDOWS\System32\svchost.exe[3272] kernel32.dll!VirtualProtect 7C801AD0 5 Bytes JMP 001A0014
.text C:\WINDOWS\System32\svchost.exe[3272] kernel32.dll!LoadLibraryExW 7C801AF1 5 Bytes JMP 001A0F3A
.text C:\WINDOWS\System32\svchost.exe[3272] kernel32.dll!LoadLibraryExA 7C801D4F 5 Bytes JMP 001A0F61
.text C:\WINDOWS\System32\svchost.exe[3272] kernel32.dll!LoadLibraryA 7C801D77 5 Bytes JMP 001A0F8D
.text C:\WINDOWS\System32\svchost.exe[3272] kernel32.dll!GetStartupInfoW 7C801E50 5 Bytes JMP 001A0EEE
.text C:\WINDOWS\System32\svchost.exe[3272] kernel32.dll!GetStartupInfoA 7C801EEE 5 Bytes JMP 001A0040
.text C:\WINDOWS\System32\svchost.exe[3272] kernel32.dll!CreateProcessW 7C802332 5 Bytes JMP 001A0EA7
.text C:\WINDOWS\System32\svchost.exe[3272] kernel32.dll!CreateProcessA 7C802367 5 Bytes JMP 001A0EC2
.text C:\WINDOWS\System32\svchost.exe[3272] kernel32.dll!GetProcAddress 7C80ADA0 5 Bytes JMP 001A005B
.text C:\WINDOWS\System32\svchost.exe[3272] kernel32.dll!LoadLibraryW 7C80AE4B 5 Bytes JMP 001A0F7C
.text C:\WINDOWS\System32\svchost.exe[3272] kernel32.dll!CreateFileW 7C810760 5 Bytes JMP 001A0FD4
.text C:\WINDOWS\System32\svchost.exe[3272] kernel32.dll!CreatePipe 7C81E0C7 5 Bytes JMP 001A0025
.text C:\WINDOWS\System32\svchost.exe[3272] kernel32.dll!CreateNamedPipeW 7C82F0D4 5 Bytes JMP 001A0F9E
.text C:\WINDOWS\System32\svchost.exe[3272] kernel32.dll!CreateNamedPipeA 7C85FC74 5 Bytes JMP 001A0FAF
.text C:\WINDOWS\System32\svchost.exe[3272] kernel32.dll!WinExec 7C86136D 5 Bytes JMP 001A0EDD
.text C:\WINDOWS\System32\svchost.exe[3272] ADVAPI32.dll!RegOpenKeyExW 77DD6A78 5 Bytes JMP 0028001B
.text C:\WINDOWS\System32\svchost.exe[3272] ADVAPI32.dll!RegCreateKeyExW 77DD7535 5 Bytes JMP 00280F9E
.text C:\WINDOWS\System32\svchost.exe[3272] ADVAPI32.dll!RegOpenKeyExA 77DD761B 5 Bytes JMP 00280FD4
.text C:\WINDOWS\System32\svchost.exe[3272] ADVAPI32.dll!RegOpenKeyW 77DD770F 5 Bytes JMP 00280FE5
.text C:\WINDOWS\System32\svchost.exe[3272] ADVAPI32.dll!RegCreateKeyExA 77DDEAF4 5 Bytes JMP 00280FB9
.text C:\WINDOWS\System32\svchost.exe[3272] ADVAPI32.dll!RegCreateKeyW 77DF8F7D 5 Bytes JMP 00280051
.text C:\WINDOWS\System32\svchost.exe[3272] ADVAPI32.dll!RegOpenKeyA 77DFC41B 5 Bytes JMP 00280000
.text C:\WINDOWS\System32\svchost.exe[3272] ADVAPI32.dll!RegCreateKeyA 77DFD5BB 5 Bytes JMP 00280040
.text C:\WINDOWS\System32\svchost.exe[3272] WS2_32.dll!socket 71AB3B91 5 Bytes JMP 006D0000
.text C:\WINDOWS\System32\svchost.exe[3272] WS2_32.dll!bind 71AB3E00 5 Bytes JMP 006D0FE5

AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_CREATE [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_CREATE_NAMED_PIPE [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_CLOSE [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_READ [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_WRITE [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_INFORMATION [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SET_INFORMATION [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_EA [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SET_EA [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_FLUSH_BUFFERS [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_VOLUME_INFORMATION [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SET_VOLUME_INFORMATION [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_DIRECTORY_CONTROL [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_FILE_SYSTEM_CONTROL [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_DEVICE_CONTROL [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_INTERNAL_DEVICE_CONTROL [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SHUTDOWN [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_LOCK_CONTROL [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_CLEANUP [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_CREATE_MAILSLOT [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_SECURITY [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SET_SECURITY [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_POWER [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SYSTEM_CONTROL [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_DEVICE_CHANGE [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_QUERY_QUOTA [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Ntfs \Ntfs IRP_MJ_SET_QUOTA [EEDC12C7] mfehidk.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_CREATE [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_CREATE_NAMED_PIPE [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_CLOSE [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_READ [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_WRITE [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_QUERY_INFORMATION [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SET_INFORMATION [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_QUERY_EA [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SET_EA [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_FLUSH_BUFFERS [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_QUERY_VOLUME_INFORMATION [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SET_VOLUME_INFORMATION [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_DIRECTORY_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_FILE_SYSTEM_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_DEVICE_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_INTERNAL_DEVICE_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SHUTDOWN [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_LOCK_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_CLEANUP [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_CREATE_MAILSLOT [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_QUERY_SECURITY [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SET_SECURITY [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_POWER [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SYSTEM_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_DEVICE_CHANGE [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_QUERY_QUOTA [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Ip IRP_MJ_SET_QUOTA [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_CREATE [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_CREATE_NAMED_PIPE [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_CLOSE [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_READ [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_WRITE [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_QUERY_INFORMATION [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SET_INFORMATION [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_QUERY_EA [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SET_EA [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_FLUSH_BUFFERS [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_QUERY_VOLUME_INFORMATION [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SET_VOLUME_INFORMATION [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_DIRECTORY_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_FILE_SYSTEM_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_DEVICE_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_INTERNAL_DEVICE_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SHUTDOWN [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_LOCK_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_CLEANUP [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_CREATE_MAILSLOT [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_QUERY_SECURITY [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SET_SECURITY [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_POWER [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SYSTEM_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_DEVICE_CHANGE [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_QUERY_QUOTA [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Tcp IRP_MJ_SET_QUOTA [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_CREATE [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_CREATE_NAMED_PIPE [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_CLOSE [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_READ [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_WRITE [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_QUERY_INFORMATION [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_SET_INFORMATION [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_QUERY_EA [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_SET_EA [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_FLUSH_BUFFERS [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_QUERY_VOLUME_INFORMATION [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_SET_VOLUME_INFORMATION [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_DIRECTORY_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_FILE_SYSTEM_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_DEVICE_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_INTERNAL_DEVICE_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_SHUTDOWN [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_LOCK_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_CLEANUP [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_CREATE_MAILSLOT [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_QUERY_SECURITY [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_SET_SECURITY [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_POWER [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_SYSTEM_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_DEVICE_CHANGE [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_QUERY_QUOTA [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\Udp IRP_MJ_SET_QUOTA [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_CREATE [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_CREATE_NAMED_PIPE [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_CLOSE [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_READ [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_WRITE [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_QUERY_INFORMATION [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_SET_INFORMATION [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_QUERY_EA [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_SET_EA [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_FLUSH_BUFFERS [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_QUERY_VOLUME_INFORMATION [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_SET_VOLUME_INFORMATION [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_DIRECTORY_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_FILE_SYSTEM_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_DEVICE_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_INTERNAL_DEVICE_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_SHUTDOWN [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_LOCK_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_CLEANUP [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_CREATE_MAILSLOT [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_QUERY_SECURITY [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_SET_SECURITY [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_POWER [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_SYSTEM_CONTROL [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_DEVICE_CHANGE [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_QUERY_QUOTA [EEF7D10E] Mpfp.sys
AttachedDevice \Driver\Tcpip \Device\RawIp IRP_MJ_SET_QUOTA [EEF7D10E] Mpfp.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_CREATE [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_CREATE_NAMED_PIPE [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_CLOSE [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_READ [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_WRITE [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_QUERY_INFORMATION [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_SET_INFORMATION [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_QUERY_EA [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_SET_EA [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_FLUSH_BUFFERS [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_QUERY_VOLUME_INFORMATION [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_SET_VOLUME_INFORMATION [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_DIRECTORY_CONTROL [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_FILE_SYSTEM_CONTROL [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_DEVICE_CONTROL [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_INTERNAL_DEVICE_CONTROL [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_SHUTDOWN [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_LOCK_CONTROL [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_CLEANUP [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_CREATE_MAILSLOT [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_QUERY_SECURITY [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_SET_SECURITY [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_POWER [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_SYSTEM_CONTROL [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_DEVICE_CHANGE [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_QUERY_QUOTA [EEDC12C7] mfehidk.sys
AttachedDevice \FileSystem\Fastfat \Fat IRP_MJ_SET_QUOTA [EEDC12C7] mfehidk.sys

---- Threads - GMER 1.0.13 ----

Thread 4:2392 EDA5D1F0

#15 OldTimer

OldTimer

    Malware Expert


  • Members
  • 11,092 posts
  • OFFLINE
  •  
  • Gender:Male
  • Location:North Carolina
  • Local time:02:00 PM

Posted 05 January 2008 - 11:27 PM

Hi Desperate I. Well, I don't see anything in the GMER log. Since we can't run Control.exe just go to step 3 and let's see where we are after that.

Cheers.

OT
I do not respond to PM's requesting help. That's what the forums are here for. Please use them so that others may benefit from your questions and the responses you receive.
OldTimer

Posted Image




0 user(s) are reading this topic

0 members, 0 guests, 0 anonymous users